Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-06 10:59:01.636 00:00:00.040 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 10:59:01.518 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 10:59:01.181 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 10:59:01.530 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 10:59:01.553 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 10:59:28.446 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-09-06 10:55:25.455 00:06:00.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:00:28.854 00:00:10.532 TCP 1.101.0.1:3000 -> 23.104.0.1:33078 10 6452 1 2025-09-06 11:01:29.422 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43980 10 6452 1 2025-09-06 11:02:29.821 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42810 10 6452 1 2025-09-06 10:58:25.454 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:03:30.222 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37864 10 6452 1 2025-09-06 11:04:01.720 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:04:01.382 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:04:01.638 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:04:01.597 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:04:01.638 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:04:30.584 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42614 10 6452 1 2025-09-06 11:05:30.988 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54154 10 6452 1 2025-09-06 11:06:31.398 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58228 10 6452 1 2025-09-06 11:02:25.457 00:06:00.141 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:07:31.799 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:51476 10 6452 1 2025-09-06 11:08:32.183 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:33356 10 6452 1 2025-09-06 11:09:01.835 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:09:01.638 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:09:01.631 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:09:01.717 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:09:01.752 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:09:32.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45610 10 6452 1 2025-09-06 11:05:25.455 00:06:00.146 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:10:32.961 00:00:10.643 TCP 1.101.0.1:3000 -> 23.104.0.1:38990 10 6452 1 2025-09-06 11:11:33.643 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54596 10 6452 1 2025-09-06 11:12:34.047 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:40546 10 6452 1 2025-09-06 11:13:34.406 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:49514 10 6452 1 2025-09-06 11:14:02.198 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:14:01.930 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:14:01.976 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:14:02.332 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:14:02.414 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:09:25.463 00:06:00.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:14:34.774 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55542 10 6452 1 2025-09-06 11:15:35.173 00:00:19.851 TCP 1.101.0.1:3000 -> 23.104.0.1:48536 10 6452 1 2025-09-06 11:16:45.109 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51586 10 6452 1 2025-09-06 11:12:25.461 00:06:00.142 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:17:45.508 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55638 10 6452 1 2025-09-06 11:18:45.908 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55318 10 6452 1 2025-09-06 11:19:02.007 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:19:02.008 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:19:01.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:19:01.949 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:19:02.033 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:19:46.274 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:53838 10 6452 1 2025-09-06 11:20:46.679 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54778 10 6452 1 2025-09-06 11:16:25.465 00:06:00.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:21:47.111 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53250 10 6452 1 2025-09-06 11:22:47.514 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51622 10 6452 1 2025-09-06 11:23:47.921 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46960 10 6452 1 2025-09-06 11:24:02.382 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:24:02.188 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:24:02.102 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:24:01.942 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:24:02.299 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:19:25.461 00:06:00.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:24:48.329 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35008 10 6452 1 2025-09-06 11:25:48.701 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57664 10 6452 1 2025-09-06 11:26:49.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56382 10 6452 1 2025-09-06 11:27:49.512 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53842 10 6452 1 2025-09-06 11:23:25.467 00:06:00.136 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:29:02.011 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:29:02.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:28:49.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59586 10 6452 1 2025-09-06 11:29:02.033 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:29:02.330 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:29:01.927 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:29:50.321 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55300 10 6452 1 2025-09-06 11:30:50.725 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-09-06 11:26:25.466 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:31:51.139 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58652 10 6452 1 2025-09-06 11:32:51.548 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:50496 10 6452 1 2025-09-06 11:34:02.279 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:34:02.130 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:34:02.126 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:34:02.066 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:33:51.908 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:59692 10 6452 1 2025-09-06 11:34:02.196 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:34:52.270 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57564 10 6452 1 2025-09-06 11:30:25.470 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:35:52.675 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:44908 10 6452 1 2025-09-06 11:36:53.131 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-09-06 11:37:53.489 00:00:10.402 TCP 1.101.0.1:3000 -> 23.104.0.1:34158 12 10367 1 2025-09-06 11:33:25.469 00:06:00.141 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:39:02.399 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:39:02.395 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:39:02.398 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:38:53.927 00:00:10.907 TCP 1.101.0.1:3000 -> 23.104.0.1:41642 10 6452 1 2025-09-06 11:39:02.266 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:39:02.317 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:39:54.868 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34510 10 6452 1 2025-09-06 11:40:55.239 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59048 10 6452 1 2025-09-06 11:41:55.600 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55904 10 6452 1 2025-09-06 11:37:25.473 00:06:00.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:42:56.007 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50418 10 6452 1 2025-09-06 11:44:02.454 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:44:02.383 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:44:02.316 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:44:02.452 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:44:02.535 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:43:56.408 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47136 10 6452 1 2025-09-06 11:44:56.815 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44658 10 6452 1 2025-09-06 11:40:25.471 00:06:00.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:45:57.221 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:48064 10 6452 1 2025-09-06 11:46:57.585 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47436 10 6452 1 2025-09-06 11:47:57.991 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45224 10 6452 1 2025-09-06 11:49:02.879 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:49:02.639 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:49:02.777 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:49:02.585 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:49:02.668 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:48:58.411 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54452 10 6452 1 2025-09-06 11:44:25.478 00:06:00.131 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:49:58.826 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:50842 10 6452 1 2025-09-06 11:50:59.257 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54120 10 6452 1 2025-09-06 11:51:59.673 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:40292 10 6452 1 2025-09-06 11:47:25.474 00:06:00.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 11:53:00.036 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60452 10 6452 1 2025-09-06 11:54:02.603 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 11:54:02.661 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 11:54:02.439 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:54:02.663 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 11:54:02.746 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 11:54:00.445 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43382 10 6452 1 2025-09-06 11:55:00.815 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49598 10 6452 1 2025-09-06 11:56:01.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33120 10 6452 1 2025-09-06 11:51:25.478 00:06:00.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 11:57:01.617 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34214 10 6452 1 2025-09-06 11:58:02.023 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:40464 12 10365 1 Summary: total flows: 136, total bytes: 418253, total packets: 1012, avg bps: 888, avg pps: 0, avg bpp: 413 Time window: 2025-09-06 10:55:25 - 2025-09-06 11:58:12 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0036s User: 0.0012s Wall: 0.0019s flows/second: 70249.4 Runtime: 0.0020s