Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 14:59:26.792 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 14:59:26.541 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 14:59:26.551 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:59:17.053 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42184 10 6452 1 2025-10-18 14:59:26.710 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 14:59:26.544 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:00:17.451 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60082 10 6452 1 2025-10-18 15:01:17.814 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39230 10 6452 1 2025-10-18 14:56:46.254 00:06:00.265 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:02:18.219 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51692 10 6452 1 2025-10-18 15:03:18.621 00:00:10.747 TCP 1.101.0.1:3000 -> 23.104.0.1:56178 10 6452 1 2025-10-18 15:04:27.170 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:04:27.077 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:04:26.629 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:04:27.086 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:04:27.081 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:04:19.406 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37224 10 6452 1 2025-10-18 14:59:46.253 00:06:00.270 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:05:19.809 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51696 10 6452 1 2025-10-18 15:06:20.221 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44676 10 6452 1 2025-10-18 15:07:20.586 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38524 10 6452 1 2025-10-18 15:08:20.985 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-10-18 15:03:46.258 00:06:00.264 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:09:27.071 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:09:26.786 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:09:26.421 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:09:26.988 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:09:27.106 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:09:21.390 00:00:10.766 TCP 1.101.0.1:3000 -> 23.104.0.1:45504 10 6452 1 2025-10-18 15:10:22.197 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56196 10 6452 1 2025-10-18 15:11:22.599 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37730 10 6452 1 2025-10-18 15:06:46.255 00:06:00.269 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:12:23.003 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43356 10 6452 1 2025-10-18 15:13:23.437 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:42300 12 10375 1 2025-10-18 15:14:26.665 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.570 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.881 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:14:26.932 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:14:26.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:14:23.916 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-10-18 15:15:24.319 00:00:10.844 TCP 1.101.0.1:3000 -> 23.104.0.1:50036 10 6452 1 2025-10-18 15:10:46.262 00:06:00.260 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:16:25.201 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45716 10 6452 1 2025-10-18 15:17:25.601 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40962 10 6452 1 2025-10-18 15:18:26.006 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34888 10 6452 1 2025-10-18 15:13:46.260 00:06:00.265 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:19:26.901 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:19:27.005 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.740 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.820 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:19:26.826 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:19:26.409 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36260 10 6452 1 2025-10-18 15:20:26.777 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40206 10 6452 1 2025-10-18 15:21:27.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42650 10 6452 1 2025-10-18 15:22:27.589 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47814 10 6452 1 2025-10-18 15:17:46.264 00:06:00.261 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:23:27.990 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47792 10 6452 1 2025-10-18 15:24:27.570 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:24:27.128 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:24:27.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:24:28.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58362 10 6452 1 2025-10-18 15:25:28.801 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44832 10 6452 1 2025-10-18 15:20:46.264 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:26:29.203 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44392 10 6452 1 2025-10-18 15:27:29.613 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:40076 10 6452 1 2025-10-18 15:28:30.032 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55156 10 6452 1 2025-10-18 15:29:27.173 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:29:27.090 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:29:27.167 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:29:30.442 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55532 10 6452 1 2025-10-18 15:24:46.267 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:30:30.863 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:44266 10 6452 1 2025-10-18 15:31:31.275 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38584 10 6452 1 2025-10-18 15:32:31.681 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35176 10 6452 1 2025-10-18 15:27:46.265 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:33:32.099 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49390 10 6452 1 2025-10-18 15:34:27.342 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:34:27.186 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.083 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.260 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:34:27.187 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:34:32.504 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35904 10 6452 1 2025-10-18 15:35:32.859 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:55068 10 6452 1 2025-10-18 15:36:33.275 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55602 10 6452 1 2025-10-18 15:31:46.269 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:37:33.677 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42738 10 6452 1 2025-10-18 15:38:34.123 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 10 6452 1 2025-10-18 15:39:27.156 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.349 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:39:27.430 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:39:27.432 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:39:34.492 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:32976 10 6452 1 2025-10-18 15:34:46.266 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:40:34.902 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:45658 10 6452 1 2025-10-18 15:41:35.275 00:00:12.167 TCP 1.101.0.1:3000 -> 23.104.0.1:56720 10 6452 1 2025-10-18 15:42:37.482 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39094 10 6452 1 2025-10-18 15:43:37.885 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:50916 10 6452 1 2025-10-18 15:38:46.271 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:44:27.534 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:44:27.390 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.329 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.452 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:44:27.395 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:44:38.260 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46476 10 6452 1 2025-10-18 15:45:38.670 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33362 10 6452 1 2025-10-18 15:46:39.091 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53772 10 6452 1 2025-10-18 15:41:46.270 00:06:00.267 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:47:39.458 00:00:10.566 TCP 1.101.0.1:3000 -> 23.104.0.1:54338 10 6452 1 2025-10-18 15:48:40.070 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48902 10 6452 1 2025-10-18 15:49:27.679 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:49:27.597 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:49:27.310 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:49:27.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:49:27.251 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:49:40.477 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 2025-10-18 15:45:46.272 00:06:00.263 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:50:40.835 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:47054 10 6452 1 2025-10-18 15:51:41.227 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60058 10 6452 1 2025-10-18 15:52:41.630 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36344 10 6452 1 2025-10-18 15:48:46.269 00:06:00.268 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 15:53:42.036 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59834 10 6452 1 2025-10-18 15:54:27.676 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 15:54:27.760 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.307 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.592 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 15:54:27.761 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 15:54:42.445 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-18 15:55:42.824 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-10-18 15:56:43.228 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:47708 10 6452 1 2025-10-18 15:52:46.276 00:06:00.262 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 15:57:43.666 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36178 10 6452 1 Summary: total flows: 136, total bytes: 414348, total packets: 1010, avg bps: 891, avg pps: 0, avg bpp: 410 Time window: 2025-10-18 14:56:46 - 2025-10-18 15:58:46 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0031s User: 0.0020s Wall: 0.0019s flows/second: 72610.2 Runtime: 0.0019s