Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 02:59:01.298 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 02:59:01.280 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 02:59:01.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 02:59:01.363 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 02:59:01.383 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 02:58:58.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:36622 10 6452 1 2025-10-28 02:59:58.676 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60286 10 6452 1 2025-10-28 03:00:59.112 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-10-28 03:01:59.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49836 10 6452 1 2025-10-28 03:02:59.927 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:60170 10 6452 1 2025-10-28 02:58:51.211 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:04:01.488 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:04:01.517 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:04:01.479 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:04:01.614 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:04:01.562 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:04:00.346 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40454 10 6452 1 2025-10-28 02:59:51.212 00:06:00.311 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:05:00.754 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39204 10 6452 1 2025-10-28 03:06:01.156 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:49150 10 6452 1 2025-10-28 03:07:01.520 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56526 10 6452 1 2025-10-28 03:08:01.937 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:33252 10 6452 1 2025-10-28 03:09:01.578 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:09:01.603 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:09:01.305 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:09:01.496 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:09:01.616 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:09:02.323 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53074 10 6452 1 2025-10-28 03:10:02.727 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55960 10 6452 1 2025-10-28 03:05:51.213 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:11:03.141 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 10 6452 1 2025-10-28 03:06:51.216 00:06:00.308 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:12:03.541 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36330 10 6452 1 2025-10-28 03:13:03.960 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-10-28 03:14:01.636 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:14:01.651 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:14:01.152 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:14:01.554 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:14:01.646 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:14:04.369 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46172 10 6452 1 2025-10-28 03:15:04.772 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46700 10 6452 1 2025-10-28 03:16:05.142 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53612 10 6452 1 2025-10-28 03:17:05.545 00:00:10.812 TCP 1.101.0.1:3000 -> 23.104.0.1:58348 10 6452 1 2025-10-28 03:12:51.214 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:18:06.400 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50982 10 6452 1 2025-10-28 03:13:51.217 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:19:01.790 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:19:01.642 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:19:01.369 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:19:01.707 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:19:01.706 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:19:06.803 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:58150 10 6452 1 2025-10-28 03:20:07.179 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43262 10 6452 1 2025-10-28 03:21:07.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38130 10 6452 1 2025-10-28 03:22:07.984 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-10-28 03:23:08.398 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:59212 10 6452 1 2025-10-28 03:24:01.887 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:24:01.771 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:24:01.712 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:24:01.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:24:01.796 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:24:08.807 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55746 10 6452 1 2025-10-28 03:19:51.215 00:06:00.315 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:25:09.206 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34922 10 6452 1 2025-10-28 03:20:51.218 00:06:00.310 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:26:09.610 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:48134 10 6452 1 2025-10-28 03:27:09.972 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:47960 12 10369 1 2025-10-28 03:28:10.445 00:00:23.820 TCP 1.101.0.1:3000 -> 23.104.0.1:43738 10 6452 1 2025-10-28 03:29:02.361 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:29:02.452 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:29:02.306 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:29:02.278 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:29:02.279 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:29:24.309 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35094 10 6452 1 2025-10-28 03:30:24.670 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43290 10 6452 1 2025-10-28 03:31:25.100 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:42844 10 6452 1 2025-10-28 03:26:51.218 00:06:00.314 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:32:25.501 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44646 10 6452 1 2025-10-28 03:27:51.220 00:06:00.309 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:33:25.904 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35788 10 6452 1 2025-10-28 03:34:02.196 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:34:01.639 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:34:02.090 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:34:01.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:34:02.174 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:34:26.312 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38220 10 6452 1 2025-10-28 03:35:26.677 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50696 10 6452 1 2025-10-28 03:36:27.107 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51980 10 6452 1 2025-10-28 03:37:27.511 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39928 10 6452 1 2025-10-28 03:38:27.914 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59670 10 6452 1 2025-10-28 03:33:51.223 00:06:00.313 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:39:02.180 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:39:02.218 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:39:01.984 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:39:01.881 00:00:00.031 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:39:02.263 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:39:28.316 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:54930 10 6452 1 2025-10-28 03:34:51.227 00:06:00.305 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:40:28.694 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54104 10 6452 1 2025-10-28 03:41:29.102 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50346 10 6452 1 2025-10-28 03:42:29.505 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51138 10 6452 1 2025-10-28 03:43:29.906 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-10-28 03:44:02.192 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:44:02.128 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:44:02.194 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:44:02.252 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:44:02.277 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:44:30.314 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53580 10 6452 1 2025-10-28 03:45:30.717 00:00:11.087 TCP 1.101.0.1:3000 -> 23.104.0.1:59350 10 6452 1 2025-10-28 03:40:51.227 00:06:00.311 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:46:31.843 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:53770 10 6452 1 2025-10-28 03:41:51.229 00:06:00.304 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:47:32.280 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:49630 10 6452 1 2025-10-28 03:48:32.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46166 10 6452 1 2025-10-28 03:49:02.684 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:49:02.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:49:02.897 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:49:02.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:49:02.981 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:49:33.052 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-10-28 03:50:33.436 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36990 10 6452 1 2025-10-28 03:51:33.838 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:56550 10 6452 1 2025-10-28 03:52:34.220 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49942 10 6452 1 2025-10-28 03:47:51.228 00:06:00.309 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 03:53:34.624 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51682 10 6452 1 2025-10-28 03:48:51.231 00:06:00.303 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 03:54:02.682 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 03:54:02.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 03:54:02.601 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:54:02.599 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 03:54:02.599 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 03:54:35.031 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60154 10 6452 1 2025-10-28 03:55:35.451 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-10-28 03:56:35.858 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:58944 10 6452 1 2025-10-28 03:57:36.245 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48464 10 6452 1 2025-10-28 03:58:36.654 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55534 10 6452 1 Summary: total flows: 136, total bytes: 419933, total packets: 1006, avg bps: 934, avg pps: 0, avg bpp: 417 Time window: 2025-10-28 02:58:51 - 2025-10-28 03:58:47 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0036s User: 0.0018s Wall: 0.0031s flows/second: 43771.1 Runtime: 0.0031s