Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 14:53:51.421 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 14:59:15.564 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 14:59:15.584 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 14:59:15.788 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 14:59:15.673 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 14:59:15.871 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 14:59:13.039 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36988 10 6452 1 2025-10-28 15:00:13.440 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50778 10 6452 1 2025-10-28 15:01:13.851 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:58500 10 6452 1 2025-10-28 15:02:14.277 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:37606 10 6452 1 2025-10-28 15:03:14.670 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37264 10 6452 1 2025-10-28 15:04:16.353 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:04:16.099 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:04:16.313 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:04:16.010 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:04:16.397 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:04:15.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52530 10 6452 1 2025-10-28 14:59:51.419 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:05:15.505 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50462 10 6452 1 2025-10-28 15:00:51.423 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:06:15.914 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47084 10 6452 1 2025-10-28 15:07:16.281 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44730 10 6452 1 2025-10-28 15:08:16.686 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-10-28 15:09:15.827 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:09:15.711 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:09:15.827 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:09:15.828 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:09:15.910 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:09:17.055 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39942 10 6452 1 2025-10-28 15:10:17.458 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51132 10 6452 1 2025-10-28 15:11:17.859 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:56032 10 6452 1 2025-10-28 15:06:51.421 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:12:18.277 00:00:11.658 TCP 1.101.0.1:3000 -> 23.104.0.1:42490 10 6452 1 2025-10-28 15:07:51.423 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:13:19.973 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:41748 10 6452 1 2025-10-28 15:14:16.172 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:14:16.468 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:14:16.367 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:14:16.276 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:14:16.449 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:14:20.397 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41176 10 6452 1 2025-10-28 15:15:20.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-10-28 15:16:21.207 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:37004 11 6504 1 2025-10-28 15:17:21.669 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39462 10 6452 1 2025-10-28 15:18:22.100 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54298 10 6452 1 2025-10-28 15:13:51.424 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:19:15.904 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:19:16.354 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:19:16.151 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:19:16.117 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:19:16.271 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:19:22.505 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:47836 10 6452 1 2025-10-28 15:14:51.426 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:20:22.932 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51062 10 6452 1 2025-10-28 15:21:23.359 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42016 10 6452 1 2025-10-28 15:22:23.776 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49748 10 6452 1 2025-10-28 15:23:24.185 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-10-28 15:24:16.223 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.323 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:24:16.098 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:24:16.142 00:00:00.020 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:24:16.051 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:24:24.589 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47062 12 6556 1 2025-10-28 15:25:25.005 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59420 10 6452 1 2025-10-28 15:20:51.425 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:26:25.411 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60280 10 6452 1 2025-10-28 15:21:51.427 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:27:25.808 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34890 10 6452 1 2025-10-28 15:28:26.222 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52404 10 6452 1 2025-10-28 15:29:16.474 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:29:16.250 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:29:16.391 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:29:16.423 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:29:26.629 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47068 10 6452 1 2025-10-28 15:30:27.032 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43900 10 6452 1 2025-10-28 15:31:27.440 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53142 10 6452 1 2025-10-28 15:32:27.804 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37670 10 6452 1 2025-10-28 15:27:51.427 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:33:28.208 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34640 10 6452 1 2025-10-28 15:28:51.431 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:34:16.491 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.348 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:34:16.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:34:16.408 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:34:16.241 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:34:28.617 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55834 10 6452 1 2025-10-28 15:35:29.020 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42820 10 6452 1 2025-10-28 15:36:29.422 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:38964 10 6452 1 2025-10-28 15:37:29.802 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37430 10 6452 1 2025-10-28 15:38:30.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40214 10 6452 1 2025-10-28 15:39:16.829 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:39:16.753 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:39:16.727 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:39:16.859 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:39:16.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:39:30.607 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36682 10 6452 1 2025-10-28 15:34:51.436 00:06:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:40:30.968 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49132 10 6452 1 2025-10-28 15:35:51.438 00:06:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:41:31.370 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48406 10 6452 1 2025-10-28 15:42:31.769 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:59468 10 6452 1 2025-10-28 15:43:32.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60190 10 6452 1 2025-10-28 15:44:16.434 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:44:16.475 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:44:16.525 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:44:16.444 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:44:16.608 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:44:32.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:32830 10 6452 1 2025-10-28 15:45:32.988 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56872 10 6452 1 2025-10-28 15:46:33.356 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52568 10 6452 1 2025-10-28 15:41:51.437 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:47:33.763 00:00:10.421 TCP 1.101.0.1:3000 -> 23.104.0.1:43344 10 6452 1 2025-10-28 15:42:51.440 00:06:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:48:34.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54120 10 6452 1 2025-10-28 15:49:16.781 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.749 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:49:16.477 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:49:16.698 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:49:16.694 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:49:34.625 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:56562 10 6452 1 2025-10-28 15:50:34.988 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45394 10 6452 1 2025-10-28 15:51:35.394 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43184 10 6452 1 2025-10-28 15:52:35.809 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40324 10 6452 1 2025-10-28 15:53:36.219 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60120 10 6452 1 2025-10-28 15:48:51.438 00:06:00.327 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-28 15:54:16.652 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.842 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-28 15:54:16.666 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:54:16.570 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-28 15:54:16.899 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-28 15:54:36.632 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:51900 10 6452 1 2025-10-28 15:49:51.441 00:06:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-28 15:55:37.057 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58370 10 6452 1 2025-10-28 15:56:37.467 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:49154 10 6452 1 2025-10-28 15:57:37.872 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:34180 10 6452 1 2025-10-28 15:58:38.286 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:47972 10 6452 1 Summary: total flows: 137, total bytes: 417033, total packets: 1021, avg bps: 856, avg pps: 0, avg bpp: 408 Time window: 2025-10-28 14:53:51 - 2025-10-28 15:58:48 Total flows processed: 137, passed: 137, Blocks skipped: 0, Bytes read: 14312 Sys: 0.0041s User: 0.0010s Wall: 0.0020s flows/second: 70221.1 Runtime: 0.0020s