Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 12:59:23.963 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 12:59:23.988 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 12:59:24.157 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 12:59:24.153 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 12:59:24.240 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 12:59:25.153 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-10-18 13:00:25.517 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46246 10 6452 1 2025-10-18 13:01:25.926 00:00:11.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56334 10 6452 1 2025-10-18 13:02:27.291 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:42158 12 10375 1 2025-10-18 12:57:46.216 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:03:27.767 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36702 10 6452 1 2025-10-18 13:04:24.534 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:04:24.454 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:04:24.532 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:04:24.157 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:04:24.615 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:04:28.173 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59004 10 6452 1 2025-10-18 13:05:28.583 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53172 10 6452 1 2025-10-18 13:00:46.215 00:06:00.276 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:06:28.965 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:41704 10 6452 1 2025-10-18 13:07:29.333 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37732 10 6452 1 2025-10-18 13:08:29.736 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59244 10 6452 1 2025-10-18 13:09:24.422 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:09:24.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:09:24.435 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:09:24.341 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:09:24.424 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:09:30.146 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47160 10 6452 1 2025-10-18 13:04:46.219 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:10:30.550 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-10-18 13:11:30.952 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:39898 10 6452 1 2025-10-18 13:12:31.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54962 10 6452 1 2025-10-18 13:07:46.219 00:06:00.273 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:13:31.771 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42304 10 6452 1 2025-10-18 13:14:24.548 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:14:24.172 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:14:24.477 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:14:24.415 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:14:24.560 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:14:32.186 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43860 10 6452 1 2025-10-18 13:15:32.587 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52406 10 6452 1 2025-10-18 13:16:32.993 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 10 6452 1 2025-10-18 13:11:46.222 00:06:00.270 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:17:33.397 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35772 10 6452 1 2025-10-18 13:18:33.800 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44682 10 6452 1 2025-10-18 13:19:24.606 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:19:24.573 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:19:24.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:19:24.522 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:19:24.454 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:19:34.205 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:59266 10 6452 1 2025-10-18 13:14:46.219 00:06:00.275 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:20:34.622 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56730 10 6452 1 2025-10-18 13:21:35.027 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34900 10 6452 1 2025-10-18 13:22:35.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37984 10 6452 1 2025-10-18 13:18:46.222 00:06:00.271 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:23:35.836 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60866 10 6452 1 2025-10-18 13:24:24.720 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:24:24.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:24:24.760 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:24:24.705 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:24:24.842 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:24:36.250 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58928 10 6452 1 2025-10-18 13:25:36.656 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60258 10 6452 1 2025-10-18 13:26:37.097 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50868 10 6452 1 2025-10-18 13:21:46.221 00:06:00.277 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:27:37.501 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:36982 12 10375 1 2025-10-18 13:28:37.976 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52224 10 6452 1 2025-10-18 13:29:24.813 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:29:24.765 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:29:24.622 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:29:24.808 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:29:24.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:29:38.341 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44726 10 6452 1 2025-10-18 13:30:38.701 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42130 10 6452 1 2025-10-18 13:25:46.223 00:06:00.272 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:31:39.076 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42640 10 6452 1 2025-10-18 13:32:39.488 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53810 10 6452 1 2025-10-18 13:28:46.227 00:06:00.274 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:33:39.891 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58636 10 6452 1 2025-10-18 13:34:24.977 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:34:24.896 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:34:24.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:34:24.894 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:34:24.950 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:34:40.302 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6452 1 2025-10-18 13:35:40.711 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51216 10 6452 1 2025-10-18 13:36:41.118 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36018 10 6452 1 2025-10-18 13:32:46.234 00:06:00.266 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:37:41.514 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59506 10 6452 1 2025-10-18 13:38:41.923 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:49118 10 6452 1 2025-10-18 13:39:25.309 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:39:24.662 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:39:24.967 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:39:25.227 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:39:24.884 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:39:42.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-10-18 13:35:46.233 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:40:42.721 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32878 10 6452 1 2025-10-18 13:41:43.142 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33898 10 6452 1 2025-10-18 13:42:43.542 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56266 10 6452 1 2025-10-18 13:43:43.950 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50134 10 6452 1 2025-10-18 13:44:25.087 00:00:00.047 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:44:24.923 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:44:24.796 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:44:25.006 00:00:00.046 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:44:24.922 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:39:46.239 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:44:44.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-10-18 13:45:44.774 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42788 10 6452 1 2025-10-18 13:46:45.139 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39388 10 6452 1 2025-10-18 13:42:46.235 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:47:45.542 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60290 10 6452 1 2025-10-18 13:48:45.943 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41702 10 6452 1 2025-10-18 13:49:25.297 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:49:25.255 00:00:00.034 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:49:25.133 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:49:25.294 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:49:25.217 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:49:46.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46342 10 6452 1 2025-10-18 13:50:46.758 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:51304 10 6452 1 2025-10-18 13:46:46.238 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 13:51:47.183 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57522 10 6452 1 2025-10-18 13:52:47.583 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37434 10 6452 1 2025-10-18 13:53:47.987 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56764 10 6452 1 2025-10-18 13:54:25.190 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 13:54:25.135 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:54:25.090 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 13:54:25.191 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 13:54:25.172 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 13:49:46.236 00:06:00.271 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 13:54:48.407 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44848 10 6452 1 2025-10-18 13:55:48.821 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42188 10 6452 1 2025-10-18 13:56:49.228 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-10-18 13:57:49.649 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34708 10 6452 1 2025-10-18 13:53:46.241 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 Summary: total flows: 136, total bytes: 418271, total packets: 1012, avg bps: 899, avg pps: 0, avg bpp: 413 Time window: 2025-10-18 12:57:46 - 2025-10-18 13:59:46 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0023s Wall: 0.0027s flows/second: 50426.6 Runtime: 0.0027s