Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-18 06:59:16.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 06:59:16.809 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 06:59:16.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 06:59:16.815 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 06:59:16.721 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 06:59:26.227 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42202 10 6452 1 2025-10-18 07:00:26.590 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45130 10 6452 1 2025-10-18 06:55:46.104 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:01:26.992 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51786 10 6452 1 2025-10-18 07:02:27.403 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:56018 10 6452 1 2025-10-18 06:58:46.102 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:03:27.821 00:00:18.552 TCP 1.101.0.1:3000 -> 23.104.0.1:46862 10 6452 1 2025-10-18 07:04:17.714 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:04:16.893 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:04:16.964 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:04:17.189 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:04:17.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:04:36.410 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:43394 10 6452 1 2025-10-18 07:05:36.807 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51332 10 6452 1 2025-10-18 07:06:37.212 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35774 10 6452 1 2025-10-18 07:02:46.106 00:06:00.282 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:07:37.617 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42312 10 6452 1 2025-10-18 07:08:38.026 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:40666 10 6452 1 2025-10-18 07:09:17.465 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:09:17.511 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:09:16.963 00:00:00.047 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:09:17.333 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:09:17.416 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:09:38.425 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 2025-10-18 07:05:46.105 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:10:38.828 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52370 10 6452 1 2025-10-18 07:11:39.230 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59388 10 6452 1 2025-10-18 07:12:39.636 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41714 10 6452 1 2025-10-18 07:13:40.037 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42634 10 6452 1 2025-10-18 07:14:17.190 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:14:17.101 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:14:17.377 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:14:17.105 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:14:17.187 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:09:46.108 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:14:40.432 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39710 10 6452 1 2025-10-18 07:15:40.836 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36274 10 6452 1 2025-10-18 07:16:41.251 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-10-18 07:12:46.106 00:06:00.287 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:17:41.656 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35780 10 6452 1 2025-10-18 07:18:42.099 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48612 10 6452 1 2025-10-18 07:19:17.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:19:17.118 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:19:17.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:19:17.285 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:19:17.367 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:19:42.499 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35332 10 6452 1 2025-10-18 07:20:42.903 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44894 10 6452 1 2025-10-18 07:16:46.112 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:21:43.321 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40498 10 6452 1 2025-10-18 07:22:43.694 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:36570 10 6452 1 2025-10-18 07:23:44.106 00:00:16.605 TCP 1.101.0.1:3000 -> 23.104.0.1:45636 10 6452 1 2025-10-18 07:24:17.251 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:24:17.479 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:24:17.286 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:24:17.360 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:24:17.442 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:19:46.110 00:06:00.284 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:24:50.783 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40294 10 6452 1 2025-10-18 07:25:51.190 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57190 10 6452 1 2025-10-18 07:26:51.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:36888 10 6452 1 2025-10-18 07:27:51.991 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55274 10 6452 1 2025-10-18 07:23:46.113 00:06:00.279 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:28:52.401 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46880 10 6452 1 2025-10-18 07:29:17.546 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:29:17.464 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:29:17.543 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:29:17.467 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:29:17.534 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:29:52.808 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33778 10 6452 1 2025-10-18 07:30:53.215 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57414 10 6452 1 2025-10-18 07:26:46.110 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:31:53.613 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52186 10 6452 1 2025-10-18 07:32:54.018 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38070 10 6452 1 2025-10-18 07:33:54.420 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47352 10 6452 1 2025-10-18 07:34:17.804 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:34:17.721 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:34:17.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:34:17.727 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:34:17.612 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:34:54.781 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:37384 10 6452 1 2025-10-18 07:30:46.114 00:06:00.280 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:35:55.188 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45918 10 6452 1 2025-10-18 07:36:55.595 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57600 10 6452 1 2025-10-18 07:37:56.000 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34198 10 6452 1 2025-10-18 07:33:46.112 00:06:00.286 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:38:56.412 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-10-18 07:39:18.085 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:39:17.876 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:39:17.710 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:39:18.116 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:39:18.199 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:39:56.766 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:59142 10 6452 1 2025-10-18 07:40:57.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37400 10 6452 1 2025-10-18 07:41:57.582 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52764 10 6452 1 2025-10-18 07:37:46.116 00:06:00.281 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:42:57.985 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50542 10 6452 1 2025-10-18 07:43:58.351 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60506 10 6452 1 2025-10-18 07:44:18.056 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:44:17.943 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:44:17.786 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:44:17.946 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:44:18.029 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:44:58.753 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:43728 10 6452 1 2025-10-18 07:40:46.115 00:06:00.285 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:45:59.178 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37860 10 6452 1 2025-10-18 07:46:59.542 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50366 10 6452 1 2025-10-18 07:47:59.951 00:00:10.517 TCP 1.101.0.1:3000 -> 23.104.0.1:48032 14 14286 1 2025-10-18 07:49:00.514 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34910 10 6452 1 2025-10-18 07:49:17.984 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:49:17.981 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:49:17.676 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:49:18.191 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:49:18.273 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:44:46.117 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:50:00.934 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:51150 10 6452 1 2025-10-18 07:51:01.351 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37832 10 6452 1 2025-10-18 07:52:01.710 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-10-18 07:47:46.115 00:06:00.288 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-10-18 07:53:02.095 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43462 10 6452 1 2025-10-18 07:54:02.520 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:40218 10 6452 1 2025-10-18 07:54:17.841 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-18 07:54:17.840 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-18 07:54:17.725 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:54:17.850 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-18 07:54:17.933 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-18 07:55:02.887 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42464 12 6556 1 2025-10-18 07:56:03.297 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43076 10 6452 1 2025-10-18 07:51:46.120 00:06:00.284 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-10-18 07:57:03.722 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:50596 10 6452 1 2025-10-18 07:58:04.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53824 10 6452 1 Summary: total flows: 136, total bytes: 418363, total packets: 1014, avg bps: 892, avg pps: 0, avg bpp: 412 Time window: 2025-10-18 06:55:46 - 2025-10-18 07:58:14 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0019s Wall: 0.0019s flows/second: 70214.8 Runtime: 0.0020s