Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 05:59:01.856 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:59:01.914 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:59:01.599 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:59:02.000 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:59:02.083 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:59:40.027 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-11-28 06:00:40.433 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-11-28 06:01:40.834 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-11-28 05:58:07.406 00:05:02.032 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:02:41.216 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44990 10 6452 1 2025-11-28 05:59:07.409 00:05:02.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:03:41.623 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:37364 10 6452 1 2025-11-28 06:04:02.042 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:04:01.913 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:04:01.913 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:04:01.653 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:04:01.960 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:04:42.048 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58020 10 6452 1 2025-11-28 06:05:42.455 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-11-28 06:06:42.873 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-11-28 06:07:43.285 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-11-28 06:04:07.407 00:05:02.031 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:08:43.687 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40270 10 6452 1 2025-11-28 06:09:02.007 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:09:01.982 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:09:01.981 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:09:01.864 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:09:01.923 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:05:07.410 00:05:02.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:09:44.110 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6452 1 2025-11-28 06:10:44.468 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41362 10 6452 1 2025-11-28 06:11:44.876 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-11-28 06:12:45.281 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-11-28 06:13:45.639 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51334 10 6452 1 2025-11-28 06:14:02.117 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:14:02.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:14:02.102 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:14:01.857 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:14:01.940 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:10:07.416 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:14:46.042 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-11-28 06:11:07.418 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:15:46.405 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35846 10 6452 1 2025-11-28 06:16:46.806 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:58916 12 10369 1 2025-11-28 06:17:47.257 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-11-28 06:18:47.656 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60732 10 6452 1 2025-11-28 06:19:02.448 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:19:02.434 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:19:02.371 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:19:02.444 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:19:02.365 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:19:48.064 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-11-28 06:16:07.417 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:20:48.429 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47028 10 6452 1 2025-11-28 06:17:07.419 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:21:48.795 00:00:10.778 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-11-28 06:22:49.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47338 10 6452 1 2025-11-28 06:24:02.303 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:24:02.297 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:24:02.365 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:24:02.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:24:02.220 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:23:50.018 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45888 10 6452 1 2025-11-28 06:24:50.416 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37330 10 6452 1 2025-11-28 06:25:50.780 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-11-28 06:22:07.421 00:05:02.023 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:26:51.148 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-11-28 06:23:07.423 00:05:02.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:27:51.548 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 10 6452 1 2025-11-28 06:29:02.428 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:29:02.353 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:29:02.279 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:28:51.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43674 10 6452 1 2025-11-28 06:29:02.330 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:29:02.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:29:52.373 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:55782 10 6452 1 2025-11-28 06:30:52.784 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-11-28 06:31:53.183 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-11-28 06:28:07.423 00:05:02.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:32:53.587 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-11-28 06:29:07.425 00:05:02.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:34:02.527 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:34:02.464 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:34:02.293 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:33:53.984 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40924 10 6452 1 2025-11-28 06:34:02.527 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:34:02.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:34:54.385 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-11-28 06:35:54.784 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-28 06:36:55.188 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-11-28 06:37:55.550 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-11-28 06:34:07.424 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:39:02.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:39:02.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:38:55.953 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44168 10 6452 1 2025-11-28 06:35:07.426 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:39:56.319 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-11-28 06:40:56.723 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35082 10 6452 1 2025-11-28 06:41:57.147 00:00:10.796 TCP 1.101.0.1:3000 -> 23.104.0.1:38874 12 10375 1 2025-11-28 06:42:57.980 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45456 10 6452 1 2025-11-28 06:44:02.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:40:07.426 00:05:02.028 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:44:02.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:44:02.659 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:44:02.615 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:44:02.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:43:58.392 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-11-28 06:41:07.428 00:05:02.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:44:58.797 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-11-28 06:45:59.206 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52560 10 6452 1 2025-11-28 06:46:59.605 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 10 6452 1 2025-11-28 06:48:00.013 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-11-28 06:49:02.894 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:49:02.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:49:02.946 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:49:02.787 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:49:02.811 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:49:00.417 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:37150 11 6504 1 2025-11-28 06:50:00.874 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 2025-11-28 06:46:07.427 00:05:02.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:47:07.429 00:05:02.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:51:01.281 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6452 1 2025-11-28 06:52:01.652 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-11-28 06:53:02.058 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 10 6452 1 2025-11-28 06:54:03.140 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:54:02.931 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:54:02.871 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:54:02.991 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:54:03.057 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:54:02.421 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57816 10 6452 1 2025-11-28 06:55:02.831 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-11-28 06:52:07.427 00:05:02.030 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:56:03.259 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-11-28 06:53:07.431 00:05:02.026 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:57:03.652 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50372 10 6452 1 2025-11-28 06:58:04.072 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:59010 10 6452 1 Summary: total flows: 139, total bytes: 418440, total packets: 1015, avg bps: 928, avg pps: 0, avg bpp: 412 Time window: 2025-11-28 05:58:07 - 2025-11-28 06:58:14 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0039s User: 0.0019s Wall: 0.0021s flows/second: 64829.1 Runtime: 0.0022s