Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 21:59:17.254 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 21:59:17.322 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 21:59:17.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 21:59:17.343 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 21:59:17.265 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 21:59:17.232 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46274 10 6452 1 2025-10-07 22:00:17.634 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-10-07 22:01:18.039 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41328 10 6452 1 2025-10-07 21:57:40.847 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 21:57:40.845 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:02:18.442 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52068 10 6452 1 2025-10-07 22:03:18.860 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43856 10 6452 1 2025-10-07 22:04:17.647 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:04:17.381 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:04:17.562 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:04:17.564 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:04:17.562 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:04:19.274 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42884 10 6452 1 2025-10-07 22:05:19.677 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48502 10 6452 1 2025-10-07 22:06:20.036 00:00:10.849 TCP 1.101.0.1:3000 -> 23.104.0.1:53366 10 6452 1 2025-10-07 22:07:20.924 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:36090 10 6452 1 2025-10-07 22:03:40.845 00:05:00.341 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:03:40.847 00:05:00.336 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:08:21.328 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:50066 10 6452 1 2025-10-07 22:09:17.633 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:09:17.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:09:17.452 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:09:17.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:09:17.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:09:21.716 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:40094 10 6452 1 2025-10-07 22:10:22.122 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49354 10 6452 1 2025-10-07 22:11:22.527 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43298 10 6452 1 2025-10-07 22:12:22.946 00:00:10.919 TCP 1.101.0.1:3000 -> 23.104.0.1:54192 10 6452 1 2025-10-07 22:13:23.903 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40190 10 6452 1 2025-10-07 22:09:40.855 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:09:40.853 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:14:17.642 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:14:17.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:14:17.505 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:14:17.688 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:14:17.587 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:14:24.312 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36896 10 6452 1 2025-10-07 22:15:24.719 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:56286 10 6452 1 2025-10-07 22:16:25.108 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44822 10 6452 1 2025-10-07 22:17:25.522 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-10-07 22:18:25.940 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:39872 10 6452 1 2025-10-07 22:19:17.796 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:19:17.541 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:19:17.514 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:19:17.713 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:19:17.712 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:19:26.363 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57098 10 6452 1 2025-10-07 22:15:40.853 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:15:40.857 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:20:26.776 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44336 10 6452 1 2025-10-07 22:21:27.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56134 10 6452 1 2025-10-07 22:22:27.593 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33378 10 6452 1 2025-10-07 22:23:27.997 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-10-07 22:24:17.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:24:17.604 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:24:17.737 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:24:17.806 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:24:17.824 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:24:28.402 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:38122 12 10375 1 2025-10-07 22:25:28.886 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:47296 10 6452 1 2025-10-07 22:21:40.860 00:05:00.332 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:21:40.859 00:05:00.337 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:26:29.314 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-10-07 22:27:29.711 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35058 10 6452 1 2025-10-07 22:28:30.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49172 10 6452 1 2025-10-07 22:29:17.913 00:00:00.030 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:29:17.827 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:29:17.844 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:29:17.828 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:29:18.115 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:29:30.519 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-10-07 22:30:30.919 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:32916 10 6452 1 2025-10-07 22:27:40.868 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:31:31.325 00:00:10.467 TCP 1.101.0.1:3000 -> 23.104.0.1:59540 10 6452 1 2025-10-07 22:27:40.871 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:32:31.823 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53848 10 6452 1 2025-10-07 22:33:32.225 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 10 6452 1 2025-10-07 22:34:18.003 00:00:00.040 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:34:17.778 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:34:18.166 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:34:17.872 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:34:18.249 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:34:32.626 00:00:10.448 TCP 1.101.0.1:3000 -> 23.104.0.1:55552 12 10375 1 2025-10-07 22:35:33.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45398 10 6452 1 2025-10-07 22:36:33.520 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:33102 10 6452 1 2025-10-07 22:33:40.869 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:33:40.871 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:37:33.919 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-10-07 22:38:34.342 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46820 10 6452 1 2025-10-07 22:39:18.060 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:39:17.983 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:39:18.112 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:39:18.139 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:39:18.196 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:39:34.750 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37302 10 6452 1 2025-10-07 22:40:35.157 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42036 10 6452 1 2025-10-07 22:41:35.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34834 10 6452 1 2025-10-07 22:42:35.934 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:48712 10 6452 1 2025-10-07 22:39:40.872 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:39:40.870 00:05:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:43:36.327 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59098 10 6452 1 2025-10-07 22:44:18.290 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:44:17.949 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:44:18.209 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:44:18.207 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:44:18.209 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:44:36.728 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:45628 12 10369 1 2025-10-07 22:45:37.225 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34836 10 6452 1 2025-10-07 22:46:37.632 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6452 1 2025-10-07 22:47:38.004 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 10 6452 1 2025-10-07 22:48:38.409 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60008 10 6452 1 2025-10-07 22:49:18.377 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:49:18.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:49:18.258 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:49:18.295 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:49:18.227 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:45:40.873 00:05:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:45:40.871 00:05:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:49:38.815 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41550 10 6452 1 2025-10-07 22:50:39.220 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46286 10 6452 1 2025-10-07 22:51:39.626 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45560 10 6452 1 2025-10-07 22:52:40.032 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-10-07 22:53:40.448 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:38916 10 6452 1 2025-10-07 22:54:18.451 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 22:54:18.342 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:54:18.455 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 22:54:18.448 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 22:54:18.537 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 22:54:40.843 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:54558 10 6452 1 2025-10-07 22:51:40.875 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 22:51:40.873 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-07 22:55:41.269 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36204 10 6452 1 2025-10-07 22:56:41.675 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:59536 10 6452 1 2025-10-07 22:57:42.037 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56918 10 6452 1 Summary: total flows: 139, total bytes: 422311, total packets: 1016, avg bps: 935, avg pps: 0, avg bpp: 415 Time window: 2025-10-07 21:57:40 - 2025-10-07 22:57:52 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0020s Wall: 0.0018s flows/second: 76671.3 Runtime: 0.0018s