Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 19:59:22.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 19:59:22.613 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 19:59:22.734 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 19:59:21.925 00:00:00.081 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 19:59:22.434 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 19:59:19.966 00:00:11.457 TCP 1.101.0.1:3000 -> 23.104.0.1:45110 10 6452 1 2025-10-28 20:00:21.467 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38040 10 6452 1 2025-10-28 19:55:51.507 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:01:21.833 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45202 10 6452 1 2025-10-28 20:02:22.192 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43334 10 6452 1 2025-10-28 20:03:22.593 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55306 10 6452 1 2025-10-28 20:04:21.986 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:04:21.660 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:04:21.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:04:21.744 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:04:21.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:04:22.995 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:38380 10 6452 1 2025-10-28 19:59:51.511 00:06:00.340 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:05:23.371 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 10 6452 1 2025-10-28 20:06:23.769 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 10 6452 1 2025-10-28 20:07:24.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41492 10 6452 1 2025-10-28 20:02:51.510 00:06:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:08:24.540 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53342 10 6452 1 2025-10-28 20:09:22.028 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:09:21.859 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:09:21.997 00:00:00.035 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:09:21.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:09:21.943 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:09:24.940 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57788 10 6452 1 2025-10-28 20:10:25.352 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37696 10 6452 1 2025-10-28 20:11:25.754 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47904 10 6452 1 2025-10-28 20:06:51.514 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:12:26.183 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:54152 12 10369 1 2025-10-28 20:13:26.618 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50344 10 6452 1 2025-10-28 20:14:22.171 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:14:21.770 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:14:21.990 00:00:00.049 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:14:21.922 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:14:22.074 00:00:00.048 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:14:27.024 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54308 10 6452 1 2025-10-28 20:09:51.512 00:06:00.345 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:15:27.429 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50766 10 6452 1 2025-10-28 20:16:27.831 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54928 10 6452 1 2025-10-28 20:17:28.189 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54872 10 6452 1 2025-10-28 20:18:28.592 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37184 10 6452 1 2025-10-28 20:13:51.515 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:19:23.183 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:19:23.041 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:19:23.053 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:19:22.814 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:19:23.100 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:19:29.004 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48942 10 6452 1 2025-10-28 20:20:29.374 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41094 10 6452 1 2025-10-28 20:21:29.777 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 10 6452 1 2025-10-28 20:16:51.512 00:06:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:22:30.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51526 10 6452 1 2025-10-28 20:23:30.588 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 10 6452 1 2025-10-28 20:24:22.296 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:24:22.089 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:24:22.403 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:24:22.378 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:24:22.213 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:24:30.992 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50552 10 6452 1 2025-10-28 20:25:31.398 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35628 10 6452 1 2025-10-28 20:20:51.516 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:26:31.807 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39178 10 6452 1 2025-10-28 20:27:32.211 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45674 10 6452 1 2025-10-28 20:28:32.610 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38712 10 6452 1 2025-10-28 20:23:51.515 00:06:00.349 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:29:22.458 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:29:22.303 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:29:22.447 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:29:22.270 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:29:22.540 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:29:33.016 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55490 10 6452 1 2025-10-28 20:30:33.377 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58060 10 6452 1 2025-10-28 20:31:33.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44126 10 6452 1 2025-10-28 20:32:34.195 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38942 10 6452 1 2025-10-28 20:27:51.517 00:06:00.343 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:33:34.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59698 10 6452 1 2025-10-28 20:34:22.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:34:22.440 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:34:22.365 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:34:22.461 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:34:22.523 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:34:35.005 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50712 10 6452 1 2025-10-28 20:35:35.415 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:36764 10 6452 1 2025-10-28 20:30:51.517 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:36:35.845 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-10-28 20:37:36.260 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36182 10 6452 1 2025-10-28 20:38:36.666 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52356 10 6452 1 2025-10-28 20:39:22.521 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:39:22.473 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:39:22.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:39:22.472 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:39:22.555 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:39:37.095 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:46410 10 6452 1 2025-10-28 20:34:51.520 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:40:37.513 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39084 10 6452 1 2025-10-28 20:41:37.914 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-10-28 20:42:38.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40302 10 6452 1 2025-10-28 20:37:51.519 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:43:38.682 00:00:10.852 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-28 20:44:22.781 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:44:22.493 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:44:22.747 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:44:22.665 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:44:22.698 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:44:39.577 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-10-28 20:45:39.975 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33590 10 6452 1 2025-10-28 20:41:51.521 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:46:40.378 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54970 10 6452 1 2025-10-28 20:47:40.780 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-10-28 20:48:41.148 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53978 10 6452 1 2025-10-28 20:49:22.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:49:22.832 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:49:22.550 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:49:22.770 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:49:22.860 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:49:41.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38626 10 6452 1 2025-10-28 20:44:51.521 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:50:41.912 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6452 1 2025-10-28 20:51:42.324 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42082 10 6452 1 2025-10-28 20:52:42.726 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6452 1 2025-10-28 20:48:51.523 00:06:00.341 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 20:53:43.109 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34548 10 6452 1 2025-10-28 20:54:22.990 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 20:54:22.907 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:54:22.856 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 20:54:22.673 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 20:54:22.568 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 20:54:43.513 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59768 10 6452 1 2025-10-28 20:55:43.924 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:58708 10 6452 1 2025-10-28 20:51:51.522 00:06:00.346 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 20:56:44.343 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58466 10 6452 1 2025-10-28 20:57:44.755 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:44286 10 6452 1 Summary: total flows: 136, total bytes: 414342, total packets: 1010, avg bps: 890, avg pps: 0, avg bpp: 410 Time window: 2025-10-28 19:55:51 - 2025-10-28 20:57:55 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0035s User: 0.0018s Wall: 0.0028s flows/second: 48092.5 Runtime: 0.0028s