Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 17:59:01.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 17:59:01.095 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:58:53.981 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52934 10 6452 1 2025-10-17 17:59:01.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 17:59:01.496 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 17:59:01.407 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 17:55:45.799 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 17:59:54.384 00:00:10.757 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-10-17 18:00:55.175 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56336 10 6452 1 2025-10-17 18:01:55.533 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44298 10 6452 1 2025-10-17 17:58:45.795 00:05:00.322 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:02:55.939 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:33572 10 6452 1 2025-10-17 18:04:01.552 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:04:01.412 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:04:01.480 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:04:01.469 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:04:01.330 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:03:56.362 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-10-17 18:04:56.725 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39112 10 6452 1 2025-10-17 18:01:45.800 00:05:00.316 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:05:57.107 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60068 10 6452 1 2025-10-17 18:06:57.510 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50282 10 6452 1 2025-10-17 18:07:57.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35016 10 6452 1 2025-10-17 18:04:45.797 00:05:00.321 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:09:01.511 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:09:01.387 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:09:01.523 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:09:01.510 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:09:01.606 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:08:58.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-10-17 18:09:58.738 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49072 10 6452 1 2025-10-17 18:10:59.151 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53906 10 6452 1 2025-10-17 18:07:45.803 00:05:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:11:59.553 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36266 10 6452 1 2025-10-17 18:12:59.914 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-10-17 18:14:01.693 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:14:01.385 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:14:01.368 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:14:01.570 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:14:01.453 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:14:00.320 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44478 10 6452 1 2025-10-17 18:10:45.800 00:05:00.320 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:15:00.689 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37632 10 6452 1 2025-10-17 18:16:01.060 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50460 10 6452 1 2025-10-17 18:17:01.465 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48838 10 6452 1 2025-10-17 18:13:45.804 00:05:00.315 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:18:01.866 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:40732 10 6452 1 2025-10-17 18:19:01.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:19:01.643 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:19:01.683 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:19:01.507 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:19:01.765 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:19:02.237 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42156 10 6452 1 2025-10-17 18:20:02.640 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42030 10 6452 1 2025-10-17 18:16:45.805 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:21:03.039 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35070 10 6452 1 2025-10-17 18:22:03.405 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-10-17 18:23:03.808 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54904 10 6452 1 2025-10-17 18:19:45.807 00:05:00.317 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:24:01.671 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:24:01.576 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:24:01.838 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:24:01.881 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:24:01.921 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:24:04.212 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35096 12 6556 1 2025-10-17 18:25:04.622 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59732 10 6452 1 2025-10-17 18:26:04.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55400 10 6452 1 2025-10-17 18:22:45.806 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:27:05.390 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-10-17 18:28:05.788 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47042 10 6452 1 2025-10-17 18:29:02.360 00:00:00.050 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:29:02.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:29:01.732 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:29:02.277 00:00:00.051 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:29:02.197 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:29:06.204 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53870 10 6452 1 2025-10-17 18:25:45.809 00:05:00.314 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:30:06.565 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:37222 10 6452 1 2025-10-17 18:31:07.001 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42150 10 6452 1 2025-10-17 18:32:07.360 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 10 6452 1 2025-10-17 18:28:45.807 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:33:07.767 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:36678 10 6452 1 2025-10-17 18:34:01.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:34:01.875 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:34:01.995 00:00:00.048 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:34:01.795 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:34:02.109 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:34:08.158 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55660 10 6452 1 2025-10-17 18:35:08.566 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-10-17 18:31:45.812 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:36:08.969 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48798 10 6452 1 2025-10-17 18:37:09.372 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-10-17 18:38:09.777 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50882 10 6452 1 2025-10-17 18:34:45.810 00:05:00.316 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:39:02.175 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:39:01.832 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:39:02.182 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:39:02.170 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:39:02.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:39:10.183 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38788 10 6452 1 2025-10-17 18:40:10.585 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:55558 10 6452 1 2025-10-17 18:41:10.978 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57530 10 6452 1 2025-10-17 18:37:45.816 00:05:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:42:11.377 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42564 10 6452 1 2025-10-17 18:43:11.781 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:41312 10 6452 1 2025-10-17 18:44:02.262 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:44:02.113 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:44:02.159 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:44:02.179 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:44:02.176 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:44:12.186 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53150 10 6452 1 2025-10-17 18:40:45.811 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:45:12.590 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47268 10 6452 1 2025-10-17 18:46:12.991 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54646 10 6452 1 2025-10-17 18:47:13.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40762 10 6452 1 2025-10-17 18:43:45.816 00:05:00.312 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:48:13.759 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:50916 10 6452 1 2025-10-17 18:49:02.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:49:02.360 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:49:02.326 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:49:02.365 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:49:02.268 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:49:14.182 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37648 10 6452 1 2025-10-17 18:50:14.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48946 10 6452 1 2025-10-17 18:46:45.812 00:05:00.319 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:51:14.988 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54866 10 6452 1 2025-10-17 18:52:15.394 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40188 10 6452 1 2025-10-17 18:53:15.795 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45654 10 6452 1 2025-10-17 18:49:45.816 00:05:00.313 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-10-17 18:54:02.596 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 18:54:02.539 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 18:54:02.293 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:54:02.514 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 18:54:02.388 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 18:54:16.201 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51680 10 6452 1 2025-10-17 18:55:16.602 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47720 10 6452 1 2025-10-17 18:56:17.016 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-10-17 18:52:45.813 00:05:00.318 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-10-17 18:57:17.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33240 10 6452 1 2025-10-17 18:58:17.820 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46454 10 6452 1 Summary: total flows: 140, total bytes: 417104, total packets: 1022, avg bps: 886, avg pps: 0, avg bpp: 408 Time window: 2025-10-17 17:55:45 - 2025-10-17 18:58:28 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0022s User: 0.0022s Wall: 0.0013s flows/second: 107783.1 Runtime: 0.0013s