Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 23:59:19.629 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 23:59:08.707 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58142 10 6452 1 2025-10-07 23:59:19.546 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 23:59:19.870 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 23:59:19.876 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 23:59:19.767 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:00:09.113 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:51568 10 6452 1 2025-10-08 00:01:09.486 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57958 10 6452 1 2025-10-07 23:57:40.895 00:05:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-07 23:57:40.891 00:05:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:02:09.894 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:52932 12 6556 1 2025-10-08 00:03:10.311 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:42528 10 6452 1 2025-10-08 00:04:19.831 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:04:19.747 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.739 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.748 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:04:19.750 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:04:10.711 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35506 10 6452 1 2025-10-08 00:05:11.079 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-10-08 00:06:11.446 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50324 10 6452 1 2025-10-08 00:07:11.848 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:50366 10 6452 1 2025-10-08 00:03:40.893 00:05:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:03:40.896 00:05:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:08:12.276 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49554 10 6452 1 2025-10-08 00:09:19.639 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:09:19.876 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:09:19.689 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:09:19.555 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:09:19.836 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:09:12.686 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:53240 10 6452 1 2025-10-08 00:10:13.069 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41654 10 6452 1 2025-10-08 00:11:13.467 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55550 10 6452 1 2025-10-08 00:12:13.871 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32826 10 6452 1 2025-10-08 00:13:14.277 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35188 10 6452 1 2025-10-08 00:09:40.897 00:05:00.342 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:09:40.896 00:05:00.347 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:14:20.092 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:14:19.964 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:14:19.987 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:14:20.010 00:00:00.043 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:14:19.769 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:14:14.642 00:00:10.429 TCP 1.101.0.1:3000 -> 23.104.0.1:56124 11 6504 1 2025-10-08 00:15:15.115 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44322 10 6452 1 2025-10-08 00:16:15.485 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46882 10 6452 1 2025-10-08 00:17:15.901 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:59684 10 6452 1 2025-10-08 00:18:16.316 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39720 10 6452 1 2025-10-08 00:19:20.358 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.252 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:19:20.283 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:19:20.372 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:19:16.725 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33236 10 6452 1 2025-10-08 00:15:40.899 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:15:40.899 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:20:17.138 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40040 10 6452 1 2025-10-08 00:21:17.546 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40222 10 6452 1 2025-10-08 00:22:17.969 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51200 10 6452 1 2025-10-08 00:23:18.393 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:41034 10 6452 1 2025-10-08 00:24:20.123 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:24:19.987 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:24:20.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:24:19.909 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:24:20.205 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:24:18.752 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34920 10 6452 1 2025-10-08 00:25:19.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53064 10 6452 1 2025-10-08 00:21:40.901 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:21:40.903 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:26:19.523 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42560 10 6452 1 2025-10-08 00:27:19.932 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56050 10 6452 1 2025-10-08 00:28:20.346 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33302 10 6452 1 2025-10-08 00:29:20.252 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.316 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:29:20.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:29:20.400 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:29:20.756 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49036 10 6452 1 2025-10-08 00:30:21.144 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43516 10 6452 1 2025-10-08 00:31:21.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40636 10 6452 1 2025-10-08 00:27:40.903 00:05:00.338 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:27:40.905 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:32:21.962 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55492 10 6452 1 2025-10-08 00:33:22.364 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32870 10 6452 1 2025-10-08 00:34:20.289 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:34:20.454 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:34:20.380 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:34:20.207 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:34:20.084 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:34:22.770 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58804 10 6452 1 2025-10-08 00:35:23.207 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38754 10 6452 1 2025-10-08 00:36:23.613 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41132 10 6452 1 2025-10-08 00:37:24.015 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:39070 10 6452 1 2025-10-08 00:33:40.905 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:33:40.909 00:05:00.333 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:38:24.414 00:00:10.598 TCP 1.101.0.1:3000 -> 23.104.0.1:52760 10 6452 1 2025-10-08 00:39:20.423 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:39:20.264 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:39:20.417 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:39:20.538 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:39:20.500 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:39:25.063 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42352 10 6452 1 2025-10-08 00:40:25.466 00:00:11.048 TCP 1.101.0.1:3000 -> 23.104.0.1:58244 10 6452 1 2025-10-08 00:41:26.553 00:00:10.654 TCP 1.101.0.1:3000 -> 23.104.0.1:56954 10 6452 1 2025-10-08 00:42:27.247 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34874 10 6452 1 2025-10-08 00:43:27.659 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33178 10 6452 1 2025-10-08 00:39:40.905 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:39:40.908 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:44:20.443 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:44:20.500 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:44:20.542 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:44:20.361 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:44:20.358 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:44:28.067 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48510 10 6452 1 2025-10-08 00:45:28.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40164 10 6452 1 2025-10-08 00:46:28.874 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43934 10 6452 1 2025-10-08 00:47:29.283 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55798 10 6452 1 2025-10-08 00:48:29.683 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55494 10 6452 1 2025-10-08 00:49:20.677 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:49:20.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:49:20.676 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:49:20.505 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:49:20.758 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:49:30.101 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42580 10 6452 1 2025-10-08 00:45:40.909 00:05:00.334 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:45:40.908 00:05:00.339 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:50:30.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-08 00:51:30.929 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35300 10 6452 1 2025-10-08 00:52:31.355 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-10-08 00:53:31.763 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:54368 10 6452 1 2025-10-08 00:54:20.719 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-08 00:54:20.595 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:54:20.884 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-08 00:54:20.806 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-08 00:54:20.966 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-08 00:54:32.178 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54956 10 6452 1 2025-10-08 00:51:40.907 00:05:00.351 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-08 00:55:32.583 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57388 10 6452 1 2025-10-08 00:51:40.911 00:05:00.346 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-08 00:56:32.943 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57298 10 6452 1 2025-10-08 00:57:33.356 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52782 10 6452 1 2025-10-08 00:58:33.712 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43510 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 911, avg pps: 0, avg bpp: 407 Time window: 2025-10-07 23:57:40 - 2025-10-08 00:58:44 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0047s User: 0.0009s Wall: 0.0017s flows/second: 80560.1 Runtime: 0.0018s