Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 04:58:52.544 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 04:58:52.548 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 04:58:52.438 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 04:58:52.498 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 04:58:52.581 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 04:59:05.950 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39888 10 6452 1 2025-11-07 05:00:06.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59320 10 6452 1 2025-11-07 05:01:06.727 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41192 10 6452 1 2025-11-07 05:02:07.135 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55180 10 6452 1 2025-11-07 04:57:56.514 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:03:07.493 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34936 10 6452 1 2025-11-07 05:03:52.607 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:03:52.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:03:52.582 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:03:52.610 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:03:52.694 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:04:07.904 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56168 10 6452 1 2025-11-07 04:59:56.513 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:05:08.307 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:55158 10 6452 1 2025-11-07 05:06:08.705 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46468 10 6452 1 2025-11-07 05:07:09.102 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50140 10 6452 1 2025-11-07 05:08:09.504 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59306 10 6452 1 2025-11-07 05:08:52.842 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:08:52.763 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:08:52.561 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:08:52.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:08:52.756 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:09:09.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46376 12 6556 1 2025-11-07 05:04:56.515 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:10:10.317 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57790 10 6452 1 2025-11-07 05:11:10.685 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:48996 10 6452 1 2025-11-07 05:06:56.515 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:12:11.043 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41264 10 6452 1 2025-11-07 05:13:11.446 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34804 10 6452 1 2025-11-07 05:13:52.897 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:13:52.689 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:13:52.742 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:13:52.692 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:13:52.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:14:11.849 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42448 10 6452 1 2025-11-07 05:15:12.271 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35536 10 6452 1 2025-11-07 05:16:12.677 00:00:10.918 TCP 1.101.0.1:3000 -> 23.104.0.1:47252 10 6452 1 2025-11-07 05:11:56.518 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:17:13.634 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49704 10 6452 1 2025-11-07 05:18:14.056 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6452 1 2025-11-07 05:18:53.011 00:00:00.040 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:18:52.833 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:18:52.794 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:18:52.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:18:52.878 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:13:56.515 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:19:14.467 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34948 10 6452 1 2025-11-07 05:20:14.873 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:48576 10 6452 1 2025-11-07 05:21:15.252 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51400 10 6452 1 2025-11-07 05:22:15.662 00:00:10.444 TCP 1.101.0.1:3000 -> 23.104.0.1:59182 12 10375 1 2025-11-07 05:23:16.144 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55926 10 6452 1 2025-11-07 05:23:53.327 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:23:53.312 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:23:53.160 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:23:53.269 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:23:53.244 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:18:56.517 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:24:16.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60288 10 6452 1 2025-11-07 05:25:16.912 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50656 10 6452 1 2025-11-07 05:20:56.515 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:26:17.317 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37618 10 6452 1 2025-11-07 05:27:17.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34938 10 6452 1 2025-11-07 05:28:18.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39346 10 6452 1 2025-11-07 05:28:53.145 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:28:53.154 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:28:52.762 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:28:53.199 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:28:53.281 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:29:18.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39376 10 6452 1 2025-11-07 05:30:18.922 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:55114 10 6452 1 2025-11-07 05:25:56.518 00:06:00.164 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:31:19.318 00:00:10.695 TCP 1.101.0.1:3000 -> 23.104.0.1:50536 10 6452 1 2025-11-07 05:32:20.057 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-11-07 05:27:56.516 00:06:00.170 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:33:20.464 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 10 6452 1 2025-11-07 05:33:53.230 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:33:53.147 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:33:53.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:33:53.322 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:33:53.128 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:34:20.862 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50578 10 6452 1 2025-11-07 05:35:21.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54110 10 6452 1 2025-11-07 05:36:21.679 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:47294 10 6452 1 2025-11-07 05:37:22.106 00:00:12.005 TCP 1.101.0.1:3000 -> 23.104.0.1:53114 10 6452 1 2025-11-07 05:32:56.525 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:38:24.147 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49008 10 6452 1 2025-11-07 05:38:53.292 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:38:53.400 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:38:53.121 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:38:53.151 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:38:53.210 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:39:24.549 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33900 10 6452 1 2025-11-07 05:34:56.520 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:40:24.947 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58222 10 6452 1 2025-11-07 05:41:25.354 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43280 10 6452 1 2025-11-07 05:42:25.752 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45986 10 6452 1 2025-11-07 05:43:26.152 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38260 10 6452 1 2025-11-07 05:43:53.386 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:43:53.442 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:43:53.410 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:43:53.293 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:43:53.375 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:44:26.558 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40154 10 6452 1 2025-11-07 05:39:56.523 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:45:26.963 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40020 10 6452 1 2025-11-07 05:46:27.365 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35552 10 6452 1 2025-11-07 05:41:56.521 00:06:00.169 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:47:27.766 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56384 10 6452 1 2025-11-07 05:48:28.175 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6452 1 2025-11-07 05:48:53.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:48:53.615 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:48:53.682 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:48:53.681 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:48:53.764 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:49:28.602 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:51398 10 6452 1 2025-11-07 05:50:28.962 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43350 10 6452 1 2025-11-07 05:51:29.367 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52044 10 6452 1 2025-11-07 05:46:56.527 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-07 05:52:29.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55770 10 6452 1 2025-11-07 05:53:30.188 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47784 10 6452 1 2025-11-07 05:53:53.309 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:53:53.591 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-07 05:53:53.588 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-07 05:53:53.630 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-07 05:53:53.675 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-07 05:48:56.527 00:06:00.165 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-07 05:54:30.588 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57856 10 6452 1 2025-11-07 05:55:30.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42364 10 6452 1 2025-11-07 05:56:31.406 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48080 10 6452 1 2025-11-07 05:57:31.767 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:58914 10 6452 1 2025-11-07 05:58:32.183 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56830 10 6452 1 Summary: total flows: 136, total bytes: 420043, total packets: 1008, avg bps: 921, avg pps: 0, avg bpp: 416 Time window: 2025-11-07 04:57:56 - 2025-11-07 05:58:42 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0039s User: 0.0010s Wall: 0.0021s flows/second: 65983.3 Runtime: 0.0021s