Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 16:59:00.132 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 16:59:00.133 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:58:59.936 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 16:58:59.800 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 16:59:00.020 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 16:59:28.902 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51278 12 6556 1 2025-10-17 16:55:45.764 00:05:00.337 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:00:29.308 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60374 10 6452 1 2025-10-17 17:01:29.711 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50926 10 6452 1 2025-10-17 17:02:30.129 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:44964 12 10375 1 2025-10-17 16:58:45.763 00:05:00.342 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:03:30.605 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38002 10 6452 1 2025-10-17 17:04:00.071 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:04:00.144 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:04:00.238 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:04:00.173 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:04:00.321 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:04:31.017 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42060 10 6452 1 2025-10-17 17:05:31.417 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50706 10 6452 1 2025-10-17 17:01:45.776 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:06:31.826 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:48462 10 6452 1 2025-10-17 17:07:32.228 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-10-17 17:08:32.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60486 10 6452 1 2025-10-17 17:04:45.776 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:09:00.438 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:09:00.237 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:09:00.541 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:09:00.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:09:00.624 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:09:32.996 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56154 10 6452 1 2025-10-17 17:10:33.404 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-10-17 17:11:33.807 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51254 10 6452 1 2025-10-17 17:07:45.779 00:05:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:12:34.215 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:38220 10 6452 1 2025-10-17 17:13:34.627 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:47852 10 6452 1 2025-10-17 17:14:00.246 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:14:00.424 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:14:00.292 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:14:00.164 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:14:00.431 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:14:35.038 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38908 10 6452 1 2025-10-17 17:10:45.777 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:15:35.447 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60564 10 6452 1 2025-10-17 17:16:35.854 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:32828 10 6452 1 2025-10-17 17:17:36.275 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34368 10 6452 1 2025-10-17 17:13:45.781 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:18:36.681 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46676 10 6452 1 2025-10-17 17:19:00.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:19:00.480 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:19:00.516 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:19:00.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:19:00.599 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:19:37.094 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52756 10 6452 1 2025-10-17 17:16:45.779 00:05:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:20:37.499 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41614 10 6452 1 2025-10-17 17:21:37.902 00:00:11.029 TCP 1.101.0.1:3000 -> 23.104.0.1:53676 10 6452 1 2025-10-17 17:22:38.973 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59354 10 6452 1 2025-10-17 17:19:45.781 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:23:39.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42596 10 6452 1 2025-10-17 17:24:00.712 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:24:00.725 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:24:00.448 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:24:00.629 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:24:00.461 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:24:39.775 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39292 10 6452 1 2025-10-17 17:25:40.179 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47236 10 6452 1 2025-10-17 17:26:40.577 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54388 10 6452 1 2025-10-17 17:22:45.782 00:05:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:27:40.980 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43382 10 6452 1 2025-10-17 17:29:00.887 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:28:41.390 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57752 10 6452 1 2025-10-17 17:29:00.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:29:00.987 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:29:01.014 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:29:00.993 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:25:45.783 00:05:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:29:41.752 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38228 10 6452 1 2025-10-17 17:30:42.158 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42112 10 6452 1 2025-10-17 17:31:42.555 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37514 10 6452 1 2025-10-17 17:28:45.782 00:05:00.331 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:32:42.953 00:00:10.491 TCP 1.101.0.1:3000 -> 23.104.0.1:40350 14 14298 1 2025-10-17 17:34:00.916 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:33:43.484 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53160 10 6452 1 2025-10-17 17:34:00.926 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:34:00.751 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:34:00.834 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:34:01.033 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:34:43.888 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55626 10 6452 1 2025-10-17 17:31:45.785 00:05:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:35:44.315 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38618 10 6452 1 2025-10-17 17:36:44.720 00:00:10.430 TCP 1.101.0.1:3000 -> 23.104.0.1:52224 11 6504 1 2025-10-17 17:37:45.193 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48804 10 6452 1 2025-10-17 17:34:45.788 00:05:00.325 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:38:45.595 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38640 10 6452 1 2025-10-17 17:39:00.845 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:39:00.794 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:39:00.815 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:39:00.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:39:00.985 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:39:45.954 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56402 10 6452 1 2025-10-17 17:40:46.363 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:53926 10 6452 1 2025-10-17 17:37:45.792 00:05:00.320 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:41:46.745 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33482 10 6452 1 2025-10-17 17:42:47.150 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35254 10 6452 1 2025-10-17 17:44:00.960 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:44:00.854 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:43:47.551 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:37988 11 6504 1 2025-10-17 17:44:00.958 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:44:00.891 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:44:01.040 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:40:45.790 00:05:00.324 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:44:48.000 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54814 10 6452 1 2025-10-17 17:45:48.406 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35062 10 6452 1 2025-10-17 17:46:48.826 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:40150 10 6452 1 2025-10-17 17:43:45.798 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:47:49.226 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-10-17 17:48:49.623 00:00:10.690 TCP 1.101.0.1:3000 -> 23.104.0.1:47556 10 6452 1 2025-10-17 17:49:01.409 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:49:01.321 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:49:01.540 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:49:01.499 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:49:01.623 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:49:50.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43560 10 6452 1 2025-10-17 17:46:45.794 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:50:50.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38854 10 6452 1 2025-10-17 17:51:51.187 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:53044 12 10375 1 2025-10-17 17:52:51.636 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50886 10 6452 1 2025-10-17 17:49:45.796 00:05:00.318 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:54:01.388 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:54:01.355 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:54:01.159 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:54:01.306 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:53:52.039 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-10-17 17:54:01.315 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:54:52.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36328 10 6452 1 2025-10-17 17:55:52.804 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36032 10 6452 1 2025-10-17 17:52:45.795 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 17:56:53.220 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:42892 10 6452 1 2025-10-17 17:57:53.584 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48954 10 6452 1 Summary: total flows: 139, total bytes: 426448, total packets: 1022, avg bps: 912, avg pps: 0, avg bpp: 417 Time window: 2025-10-17 16:55:45 - 2025-10-17 17:58:03 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0035s User: 0.0018s Wall: 0.0019s flows/second: 71350.9 Runtime: 0.0020s