Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-06 21:59:14.662 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 21:59:14.754 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 21:59:14.813 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 21:59:14.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 21:59:14.579 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 21:59:19.852 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:59680 10 6452 1 2025-09-06 22:00:20.271 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51606 10 6452 1 2025-09-06 21:56:25.663 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:01:20.674 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51846 10 6452 1 2025-09-06 22:02:21.101 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36842 10 6452 1 2025-09-06 22:03:21.504 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47136 10 6452 1 2025-09-06 22:04:14.934 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:04:14.809 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:04:14.746 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:04:14.809 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:04:14.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:04:21.912 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45522 10 6452 1 2025-09-06 22:00:25.665 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:05:22.316 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:50374 10 6452 1 2025-09-06 22:06:22.717 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:38028 10 6452 1 2025-09-06 22:07:23.155 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55466 10 6452 1 2025-09-06 22:03:25.664 00:06:00.119 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:08:23.558 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44714 10 6452 1 2025-09-06 22:09:14.758 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:09:14.652 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:09:14.859 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:09:14.942 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:09:15.007 00:00:00.034 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:09:23.958 00:00:10.464 TCP 1.101.0.1:3000 -> 23.104.0.1:58560 10 6452 1 2025-09-06 22:10:24.464 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36108 10 6452 1 2025-09-06 22:11:24.826 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49408 10 6452 1 2025-09-06 22:07:25.667 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:12:25.231 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48600 10 6452 1 2025-09-06 22:13:25.637 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33744 10 6452 1 2025-09-06 22:14:15.226 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:14:15.277 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:14:14.990 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:14:15.268 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:14:15.351 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:14:26.039 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37736 10 6452 1 2025-09-06 22:10:25.667 00:06:00.117 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:15:26.445 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32836 10 6452 1 2025-09-06 22:16:26.804 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43016 10 6452 1 2025-09-06 22:17:27.209 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43566 10 6452 1 2025-09-06 22:18:27.609 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60370 10 6452 1 2025-09-06 22:19:14.941 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:19:14.889 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:19:15.147 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:19:15.122 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:19:15.064 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:14:25.670 00:06:00.112 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:19:28.008 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34828 10 6452 1 2025-09-06 22:20:28.407 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-09-06 22:21:28.765 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-09-06 22:17:25.670 00:06:00.114 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:22:29.190 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42976 10 6452 1 2025-09-06 22:23:29.549 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:39494 12 10367 1 2025-09-06 22:24:15.455 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:24:15.328 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:24:15.037 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:24:15.101 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:24:15.372 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:24:29.987 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43966 10 6452 1 2025-09-06 22:25:30.352 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44514 10 6452 1 2025-09-06 22:21:25.675 00:06:00.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:26:30.755 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:38818 10 6452 1 2025-09-06 22:27:31.203 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:43500 10 6452 1 2025-09-06 22:28:31.578 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:49574 12 10367 1 2025-09-06 22:29:15.353 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:29:15.203 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:29:15.241 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:29:15.202 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:29:15.285 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:24:25.672 00:06:00.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:29:32.055 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56174 10 6452 1 2025-09-06 22:30:32.458 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56194 10 6452 1 2025-09-06 22:31:32.863 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40410 10 6452 1 2025-09-06 22:32:33.272 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:59952 10 6452 1 2025-09-06 22:28:25.675 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:33:33.642 00:00:10.449 TCP 1.101.0.1:3000 -> 23.104.0.1:46244 12 10365 1 2025-09-06 22:34:15.576 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:34:15.656 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:34:15.428 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:34:15.572 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:34:15.656 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:34:34.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36530 10 6452 1 2025-09-06 22:35:34.540 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57302 10 6452 1 2025-09-06 22:31:25.673 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:36:34.939 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:53470 10 6452 1 2025-09-06 22:37:35.362 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:49802 10 6452 1 2025-09-06 22:38:35.737 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59964 10 6452 1 2025-09-06 22:39:15.613 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:39:15.528 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:39:15.791 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:39:15.288 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:39:15.530 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:39:36.143 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46964 10 6452 1 2025-09-06 22:35:25.677 00:06:00.114 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:40:36.553 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:57916 10 6452 1 2025-09-06 22:41:36.960 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:47376 10 6452 1 2025-09-06 22:42:37.384 00:00:10.349 TCP 1.101.0.1:3000 -> 23.104.0.1:48968 10 6452 1 2025-09-06 22:38:25.677 00:06:00.118 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:43:37.831 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59596 10 6452 1 2025-09-06 22:44:15.664 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:44:15.624 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:44:15.716 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:44:15.663 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:44:15.800 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:44:38.231 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36588 10 6452 1 2025-09-06 22:45:38.598 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55600 10 6452 1 2025-09-06 22:46:39.005 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39172 10 6452 1 2025-09-06 22:42:25.678 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:47:39.366 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57214 10 6452 1 2025-09-06 22:48:39.765 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:46864 10 6452 1 2025-09-06 22:49:16.116 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:49:15.642 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:49:16.113 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:49:16.120 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:49:16.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:49:40.182 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:40058 10 6452 1 2025-09-06 22:45:25.676 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:50:40.538 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34716 10 6452 1 2025-09-06 22:51:40.945 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34590 10 6452 1 2025-09-06 22:52:41.359 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6452 1 2025-09-06 22:53:41.766 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56140 10 6452 1 2025-09-06 22:54:15.837 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-09-06 22:54:15.753 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-09-06 22:54:15.751 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-09-06 22:54:15.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:54:15.755 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-09-06 22:49:25.679 00:06:00.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-09-06 22:54:42.177 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52624 10 6452 1 2025-09-06 22:55:42.577 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35386 10 6452 1 2025-09-06 22:56:42.939 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:33956 10 6452 1 2025-09-06 22:52:25.677 00:06:00.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-09-06 22:57:43.370 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:48614 10 6452 1 Summary: total flows: 136, total bytes: 422168, total packets: 1014, avg bps: 907, avg pps: 0, avg bpp: 416 Time window: 2025-09-06 21:56:25 - 2025-09-06 22:58:25 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0022s User: 0.0022s Wall: 0.0022s flows/second: 61428.5 Runtime: 0.0022s