Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-07 08:59:01.966 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 08:59:01.704 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 08:59:01.782 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 08:59:01.657 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 08:59:01.883 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 08:54:40.570 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 08:59:36.756 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:56562 10 6452 1 2025-10-07 09:00:37.183 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56332 10 6452 1 2025-10-07 09:01:37.583 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47332 10 6452 1 2025-10-07 09:02:37.983 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50122 10 6452 1 2025-10-07 09:03:38.385 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32918 10 6452 1 2025-10-07 09:04:01.747 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:04:01.753 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:04:01.346 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:04:01.680 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:04:01.764 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:04:38.789 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46076 10 6452 1 2025-10-07 09:00:40.570 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:05:39.192 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53484 10 6452 1 2025-10-07 09:01:40.574 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:06:39.598 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37818 10 6452 1 2025-10-07 09:07:40.006 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-10-07 09:08:40.409 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:50112 10 6452 1 2025-10-07 09:09:01.844 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:09:01.755 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:09:01.694 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:09:01.761 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:09:01.636 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:09:40.779 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:36790 10 6452 1 2025-10-07 09:10:41.198 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-10-07 09:11:41.597 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-10-07 09:07:40.571 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:12:42.002 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44878 10 6452 1 2025-10-07 09:08:40.574 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:13:42.367 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39306 10 6452 1 2025-10-07 09:14:02.115 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:14:02.112 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:14:02.208 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:14:02.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:14:02.199 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:14:42.764 00:00:10.525 TCP 1.101.0.1:3000 -> 23.104.0.1:55574 14 14292 1 2025-10-07 09:15:43.324 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35294 10 6452 1 2025-10-07 09:16:43.721 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:41930 10 6452 1 2025-10-07 09:17:44.134 00:00:10.886 TCP 1.101.0.1:3000 -> 23.104.0.1:40388 10 6452 1 2025-10-07 09:18:45.066 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42780 10 6452 1 2025-10-07 09:19:02.080 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:19:01.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:19:02.004 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:19:01.954 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:19:02.037 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:14:40.571 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:19:45.469 00:00:10.548 TCP 1.101.0.1:3000 -> 23.104.0.1:37386 10 6452 1 2025-10-07 09:15:40.575 00:06:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:20:46.061 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42936 10 6452 1 2025-10-07 09:21:46.468 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35648 10 6452 1 2025-10-07 09:22:46.872 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:52106 10 6452 1 2025-10-07 09:23:47.280 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39750 10 6452 1 2025-10-07 09:24:02.110 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:24:02.114 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:24:02.126 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:24:02.187 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:24:02.272 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:24:47.696 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38796 10 6452 1 2025-10-07 09:25:48.114 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:53356 10 6452 1 2025-10-07 09:21:40.575 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:26:48.481 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47454 10 6452 1 2025-10-07 09:22:40.576 00:06:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:27:48.891 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:41664 10 6452 1 2025-10-07 09:28:49.268 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42094 10 6452 1 2025-10-07 09:29:02.361 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:29:02.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:29:02.276 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:29:02.164 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:29:02.278 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:29:49.629 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 12 10375 1 2025-10-07 09:30:50.092 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60620 10 6452 1 2025-10-07 09:31:50.486 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54384 10 6452 1 2025-10-07 09:32:50.891 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:35438 10 6452 1 2025-10-07 09:28:40.575 00:06:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:34:02.560 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:34:02.569 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:34:02.526 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:34:02.498 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:33:51.267 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60210 10 6452 1 2025-10-07 09:34:02.582 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:29:40.578 00:06:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:34:51.651 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-10-07 09:35:52.068 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59234 10 6452 1 2025-10-07 09:36:52.475 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39728 10 6452 1 2025-10-07 09:37:52.879 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54710 10 6452 1 2025-10-07 09:39:02.255 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:38:53.244 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56626 10 6452 1 2025-10-07 09:39:02.331 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:39:02.339 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:39:01.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:39:02.338 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:39:53.658 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:49050 10 6452 1 2025-10-07 09:35:40.579 00:06:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:40:54.135 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48206 10 6452 1 2025-10-07 09:36:40.582 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:41:54.536 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60500 10 6452 1 2025-10-07 09:42:54.945 00:00:10.353 TCP 1.101.0.1:3000 -> 23.104.0.1:53780 10 6452 1 2025-10-07 09:44:02.374 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:44:02.248 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:44:02.410 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:44:02.577 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:44:02.659 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:43:55.332 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40786 10 6452 1 2025-10-07 09:44:55.735 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45476 10 6452 1 2025-10-07 09:45:56.149 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49432 10 6452 1 2025-10-07 09:46:56.552 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53368 10 6452 1 2025-10-07 09:42:40.580 00:06:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:47:56.953 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51352 10 6452 1 2025-10-07 09:43:40.582 00:06:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:49:02.675 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:49:02.726 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:49:02.237 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:49:02.556 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:49:02.639 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:48:57.371 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-10-07 09:49:57.742 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41990 10 6452 1 2025-10-07 09:50:58.148 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60518 10 6452 1 2025-10-07 09:51:58.551 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46214 10 6452 1 2025-10-07 09:52:58.953 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:49344 10 6452 1 2025-10-07 09:54:02.675 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 09:54:02.621 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 09:54:02.310 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:54:02.521 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 09:54:02.603 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 09:53:59.369 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52202 10 6452 1 2025-10-07 09:49:40.584 00:06:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-07 09:54:59.735 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45716 10 6452 1 2025-10-07 09:50:40.587 00:06:00.326 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-07 09:56:00.150 00:00:10.420 TCP 1.101.0.1:3000 -> 23.104.0.1:47944 11 6504 1 2025-10-07 09:57:00.616 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42238 10 6452 1 2025-10-07 09:58:01.024 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39238 10 6452 1 Summary: total flows: 136, total bytes: 422240, total packets: 1015, avg bps: 886, avg pps: 0, avg bpp: 416 Time window: 2025-10-07 08:54:40 - 2025-10-07 09:58:11 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0028s User: 0.0019s Wall: 0.0020s flows/second: 68478.4 Runtime: 0.0020s