Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 03:58:59.882 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:58:41.822 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-11-28 03:58:59.733 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:58:59.734 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:58:59.557 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:58:59.798 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:59:42.220 00:00:10.845 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-11-28 04:00:43.111 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49958 10 6452 1 2025-11-28 04:01:43.513 00:00:10.399 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 12 10375 1 2025-11-28 03:58:07.370 00:05:02.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:02:43.955 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-11-28 03:59:07.372 00:05:01.996 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:03:44.344 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6452 1 2025-11-28 04:03:59.473 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:03:59.481 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:03:59.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:03:59.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:03:59.391 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:04:44.749 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56426 10 6452 1 2025-11-28 04:05:45.118 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-11-28 04:06:45.524 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56170 10 6452 1 2025-11-28 04:07:45.927 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36602 10 6452 1 2025-11-28 04:04:07.373 00:05:02.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:08:59.665 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:08:59.589 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:08:59.586 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:08:59.492 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:08:46.302 00:00:11.699 TCP 1.101.0.1:3000 -> 23.104.0.1:44952 10 6452 1 2025-11-28 04:08:59.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:05:07.374 00:05:01.999 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:09:48.058 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-11-28 04:10:48.467 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-28 04:11:48.875 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-11-28 04:12:49.279 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52744 10 6452 1 2025-11-28 04:13:59.824 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:13:59.817 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:13:59.816 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:13:59.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:13:49.679 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-11-28 04:14:00.023 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:10:07.374 00:05:02.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:14:50.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-11-28 04:11:07.379 00:05:01.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:15:50.519 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:38810 10 6452 1 2025-11-28 04:16:50.928 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-11-28 04:17:51.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-11-28 04:18:59.857 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:18:59.481 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:18:59.596 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:18:59.737 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:18:59.774 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:18:51.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-11-28 04:19:52.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45062 10 6452 1 2025-11-28 04:16:07.376 00:05:02.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:20:52.595 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-11-28 04:17:07.378 00:05:02.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:21:52.996 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44436 10 6452 1 2025-11-28 04:22:53.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-28 04:23:59.833 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:23:59.744 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:24:00.213 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:23:53.764 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55612 10 6452 1 2025-11-28 04:24:00.057 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:24:00.148 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:24:54.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54642 10 6452 1 2025-11-28 04:25:54.541 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-11-28 04:22:07.376 00:05:02.018 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:26:54.948 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-11-28 04:23:07.379 00:05:02.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:27:55.354 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-11-28 04:28:59.936 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:28:59.719 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:28:59.836 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:28:59.919 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:29:00.067 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:28:55.762 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-28 04:29:56.184 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-11-28 04:30:56.584 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-11-28 04:31:56.947 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6452 1 2025-11-28 04:28:07.380 00:05:02.017 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:29:07.382 00:05:02.012 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:32:57.359 00:00:12.940 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-11-28 04:34:00.139 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:34:00.084 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.065 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:34:00.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.058 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.338 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-11-28 04:35:00.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38936 10 6452 1 2025-11-28 04:36:01.146 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-11-28 04:37:01.552 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48212 10 6452 1 2025-11-28 04:34:07.381 00:05:02.019 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:38:01.951 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50820 10 6452 1 2025-11-28 04:39:00.110 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:39:00.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:39:00.186 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:38:59.986 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:39:00.068 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:35:07.383 00:05:02.016 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:39:02.358 00:00:14.555 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-11-28 04:40:06.971 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:58084 10 6452 1 2025-11-28 04:41:07.340 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44802 10 6452 1 2025-11-28 04:42:07.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-28 04:43:08.150 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-11-28 04:44:00.406 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:44:00.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:44:00.415 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:44:00.094 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:44:00.324 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:40:07.382 00:05:02.020 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:44:08.556 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-11-28 04:41:07.385 00:05:02.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:45:08.963 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-11-28 04:46:09.364 00:00:10.669 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-28 04:47:10.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-11-28 04:48:10.504 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-11-28 04:49:00.165 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:49:00.281 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:49:00.375 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:49:00.324 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:49:00.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:49:10.908 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-11-28 04:46:07.384 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:50:11.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53658 10 6452 1 2025-11-28 04:47:07.387 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:51:11.722 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:50726 10 6452 1 2025-11-28 04:52:12.113 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-11-28 04:53:12.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48110 10 6452 1 2025-11-28 04:54:00.487 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:54:00.643 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:54:00.618 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:54:00.904 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:54:00.404 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:54:12.919 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57374 10 6452 1 2025-11-28 04:55:13.334 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56380 10 6452 1 2025-11-28 04:52:07.385 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:56:13.750 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33580 10 6452 1 2025-11-28 04:53:07.387 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:57:14.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-11-28 04:58:14.516 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 930, avg pps: 0, avg bpp: 411 Time window: 2025-11-28 03:58:07 - 2025-11-28 04:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0025s User: 0.0025s Wall: 0.0023s flows/second: 59778.3 Runtime: 0.0024s