Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 04:59:00.678 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:59:00.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:59:00.591 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:59:00.234 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:59:00.594 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:59:14.937 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:33226 10 6452 1 2025-11-28 05:00:15.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37660 10 6452 1 2025-11-28 05:01:15.755 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6452 1 2025-11-28 04:58:07.386 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:02:16.154 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-28 04:59:07.389 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:03:16.552 00:00:10.416 TCP 1.101.0.1:3000 -> 23.104.0.1:34572 11 6504 1 2025-11-28 05:04:00.665 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.836 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:04:00.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.797 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:04:17.011 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-11-28 05:05:17.417 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-28 05:06:17.831 00:00:10.436 TCP 1.101.0.1:3000 -> 23.104.0.1:55872 12 10369 1 2025-11-28 05:07:18.319 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-11-28 05:04:07.387 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:08:18.699 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54496 10 6452 1 2025-11-28 05:09:00.898 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:09:00.817 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:09:00.729 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:09:00.672 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:09:00.814 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:05:07.389 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:09:19.090 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34216 10 6452 1 2025-11-28 05:10:19.501 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-11-28 05:11:19.912 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 10 6452 1 2025-11-28 05:12:20.329 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-11-28 05:13:20.730 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-11-28 05:14:01.447 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.448 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:14:01.308 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.448 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.531 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:10:07.390 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:14:21.146 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-11-28 05:11:07.392 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:15:21.545 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55820 10 6452 1 2025-11-28 05:16:21.903 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45592 10 6452 1 2025-11-28 05:17:22.312 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59766 10 6452 1 2025-11-28 05:18:22.717 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33270 10 6452 1 2025-11-28 05:19:01.132 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:19:00.949 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:19:00.892 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:19:00.691 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:19:01.048 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:19:23.128 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50568 10 6452 1 2025-11-28 05:16:07.391 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:20:23.493 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6452 1 2025-11-28 05:17:07.392 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:21:23.866 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-11-28 05:22:24.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-28 05:23:24.675 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-11-28 05:24:01.204 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:24:01.103 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:24:01.054 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:24:00.937 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:24:01.122 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:24:25.105 00:00:10.756 TCP 1.101.0.1:3000 -> 23.104.0.1:36526 10 6452 1 2025-11-28 05:25:25.901 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6452 1 2025-11-28 05:22:07.390 00:05:02.028 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:26:26.319 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50980 10 6452 1 2025-11-28 05:23:07.394 00:05:02.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:27:26.678 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:36584 10 6452 1 2025-11-28 05:28:27.110 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46910 10 6452 1 2025-11-28 05:29:01.149 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:29:00.970 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:29:00.961 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:29:01.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:29:01.235 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:29:27.518 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37194 10 6452 1 2025-11-28 05:30:27.917 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47256 10 6452 1 2025-11-28 05:31:28.323 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6452 1 2025-11-28 05:28:07.395 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:32:28.734 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6452 1 2025-11-28 05:29:07.397 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:33:29.113 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-28 05:34:01.337 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.417 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:34:01.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.336 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.418 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:34:29.487 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-11-28 05:35:29.901 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-11-28 05:36:30.326 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44278 10 6452 1 2025-11-28 05:37:30.738 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-11-28 05:34:07.393 00:05:02.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:38:31.163 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-11-28 05:39:01.629 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:39:01.463 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:39:01.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:39:01.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:39:01.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:35:07.400 00:05:02.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:39:31.572 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-28 05:40:31.973 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-11-28 05:41:32.396 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38186 10 6452 1 2025-11-28 05:42:32.811 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:37182 10 6452 1 2025-11-28 05:43:33.259 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-11-28 05:44:01.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.411 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:44:01.289 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.620 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:40:07.399 00:05:02.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:44:33.664 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-11-28 05:41:07.402 00:05:02.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:45:34.094 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-11-28 05:46:34.458 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43602 10 6452 1 2025-11-28 05:47:34.857 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-11-28 05:48:35.284 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-11-28 05:49:01.711 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:49:01.553 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:49:01.709 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:49:01.514 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:49:01.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:49:35.688 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37974 10 6452 1 2025-11-28 05:46:07.400 00:05:02.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:50:36.101 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58504 10 6452 1 2025-11-28 05:47:07.404 00:05:02.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:51:36.507 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53318 10 6452 1 2025-11-28 05:52:36.877 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-11-28 05:53:37.283 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50250 10 6452 1 2025-11-28 05:54:01.887 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:54:01.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:54:01.807 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:54:01.801 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:54:01.623 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:54:37.682 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-11-28 05:55:38.111 00:00:10.717 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 10 6452 1 2025-11-28 05:52:07.402 00:05:02.034 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:56:38.865 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53114 10 6452 1 2025-11-28 05:53:07.406 00:05:02.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:57:39.232 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39412 10 6452 1 2025-11-28 05:58:39.633 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 Summary: total flows: 140, total bytes: 420969, total packets: 1023, avg bps: 924, avg pps: 0, avg bpp: 411 Time window: 2025-11-28 04:58:07 - 2025-11-28 05:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0023s User: 0.0023s Wall: 0.0014s flows/second: 96946.1 Runtime: 0.0015s