Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-26 17:58:56.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 17:58:56.496 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 17:58:56.491 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 17:58:56.416 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 17:58:56.729 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 17:55:02.891 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 17:59:33.694 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56460 10 6452 1 2025-07-26 18:00:34.115 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48722 10 6452 1 2025-07-26 17:57:02.895 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:01:34.521 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33650 10 6452 1 2025-07-26 18:02:34.921 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6452 1 2025-07-26 18:03:35.337 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46970 10 6452 1 2025-07-26 18:03:56.717 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:03:56.796 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:03:56.732 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:03:56.500 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:03:56.634 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:04:35.740 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41776 10 6452 1 2025-07-26 18:01:02.893 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:05:36.147 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48918 10 6452 1 2025-07-26 18:06:36.550 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48120 10 6452 1 2025-07-26 18:03:02.896 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:07:36.949 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:49128 10 6452 1 2025-07-26 18:08:37.317 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:33666 10 6452 1 2025-07-26 18:08:56.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:08:56.796 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:08:56.560 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:08:56.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:08:56.882 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:09:37.677 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56632 10 6452 1 2025-07-26 18:10:38.111 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:54642 10 6452 1 2025-07-26 18:07:02.894 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:11:38.478 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44422 10 6452 1 2025-07-26 18:12:38.934 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41606 10 6452 1 2025-07-26 18:09:02.897 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:13:39.363 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35080 10 6452 1 2025-07-26 18:13:56.883 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:13:57.167 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:13:56.787 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:13:56.920 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:13:56.801 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:14:39.774 00:00:10.552 TCP 1.101.0.1:3000 -> 23.104.0.1:59422 10 6452 1 2025-07-26 18:15:40.369 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36678 10 6452 1 2025-07-26 18:16:40.774 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39390 10 6452 1 2025-07-26 18:13:02.896 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:17:41.186 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59200 10 6452 1 2025-07-26 18:18:41.553 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42186 10 6452 1 2025-07-26 18:18:57.570 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:18:57.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:18:57.271 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:18:57.439 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:18:57.521 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:15:02.899 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:19:41.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41390 10 6452 1 2025-07-26 18:20:42.372 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48186 10 6452 1 2025-07-26 18:21:42.779 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:40924 10 6452 1 2025-07-26 18:22:43.143 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 10 6452 1 2025-07-26 18:19:02.897 00:05:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:23:43.547 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:44560 12 10367 1 2025-07-26 18:23:57.155 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:23:57.446 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:23:57.355 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:23:57.423 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:23:57.438 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:24:43.988 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40570 10 6452 1 2025-07-26 18:21:02.900 00:05:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:25:44.401 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51994 10 6452 1 2025-07-26 18:26:44.814 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44220 10 6452 1 2025-07-26 18:27:45.212 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34628 10 6452 1 2025-07-26 18:28:45.615 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35038 10 6452 1 2025-07-26 18:28:57.226 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:28:57.233 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:28:57.305 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:28:57.171 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:28:57.308 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:25:02.899 00:05:00.403 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:29:46.014 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35544 10 6452 1 2025-07-26 18:30:46.417 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52416 10 6452 1 2025-07-26 18:27:02.902 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:31:46.822 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44128 10 6452 1 2025-07-26 18:32:47.233 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-07-26 18:33:57.441 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:33:47.631 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:33200 10 6452 1 2025-07-26 18:33:57.255 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:33:57.261 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:33:57.433 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:33:57.516 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:34:48.035 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:39826 10 6452 1 2025-07-26 18:31:02.899 00:05:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:35:48.396 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39336 10 6452 1 2025-07-26 18:36:48.799 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48866 10 6452 1 2025-07-26 18:33:02.903 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:37:49.203 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34058 10 6452 1 2025-07-26 18:38:57.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:38:57.530 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:38:57.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:38:49.609 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44714 10 6452 1 2025-07-26 18:38:57.421 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:38:57.419 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:39:50.018 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58330 10 6452 1 2025-07-26 18:40:50.419 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 10 6452 1 2025-07-26 18:37:02.903 00:05:00.402 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:41:50.832 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53534 10 6452 1 2025-07-26 18:39:02.905 00:05:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:42:51.249 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56494 10 6452 1 2025-07-26 18:43:57.791 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:43:57.778 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:43:57.698 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:43:57.525 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:43:57.708 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:43:51.667 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58908 10 6452 1 2025-07-26 18:44:52.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59090 10 6452 1 2025-07-26 18:45:52.496 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49930 10 6452 1 2025-07-26 18:43:02.903 00:05:00.404 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:46:52.893 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:38268 10 6452 1 2025-07-26 18:47:53.324 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:51982 10 6452 1 2025-07-26 18:48:57.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:48:57.584 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:48:57.387 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:48:57.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:48:57.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:48:53.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:51122 10 6452 1 2025-07-26 18:45:02.906 00:05:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:49:54.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35332 10 6452 1 2025-07-26 18:50:54.507 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:54146 10 6452 1 2025-07-26 18:51:54.883 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:40990 10 6452 1 2025-07-26 18:49:02.905 00:05:00.401 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-07-26 18:52:55.303 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49506 10 6452 1 2025-07-26 18:53:57.779 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-07-26 18:53:57.789 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-07-26 18:53:57.907 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-07-26 18:53:57.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:53:57.697 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-07-26 18:53:55.706 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38892 10 6452 1 2025-07-26 18:51:02.909 00:05:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-07-26 18:54:56.111 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48874 10 6452 1 2025-07-26 18:55:56.512 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-07-26 18:56:56.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37874 10 6452 1 2025-07-26 18:57:57.325 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 Summary: total flows: 139, total bytes: 414463, total packets: 1012, avg bps: 876, avg pps: 0, avg bpp: 409 Time window: 2025-07-26 17:55:02 - 2025-07-26 18:58:07 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0028s User: 0.0019s Wall: 0.0023s flows/second: 61531.2 Runtime: 0.0023s