Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 07:59:03.987 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 07:59:04.121 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 07:59:04.057 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 07:59:04.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 07:59:04.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 07:59:30.041 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45420 10 6452 1 2025-11-28 08:00:30.449 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:35652 10 6452 1 2025-11-28 08:01:30.811 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46382 10 6452 1 2025-11-28 07:58:07.443 00:05:02.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:02:31.212 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46394 10 6452 1 2025-11-28 07:59:07.447 00:05:02.035 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:03:31.586 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37884 10 6452 1 2025-11-28 08:04:04.961 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:04:04.876 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:04:04.865 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:04:04.862 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:04:04.877 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:04:31.946 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39092 10 6452 1 2025-11-28 08:05:32.358 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:50314 10 6452 1 2025-11-28 08:06:32.722 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:50340 10 6452 1 2025-11-28 08:07:33.136 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56702 10 6452 1 2025-11-28 08:04:07.447 00:05:02.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:08:33.542 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46006 10 6452 1 2025-11-28 08:09:04.508 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:09:04.426 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:09:04.421 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:09:04.416 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:09:04.456 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:05:07.450 00:05:02.034 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:09:33.952 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35022 10 6452 1 2025-11-28 08:10:34.320 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42444 10 6452 1 2025-11-28 08:11:34.722 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:34056 10 6452 1 2025-11-28 08:12:35.144 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:47698 10 6452 1 2025-11-28 08:13:35.547 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-11-28 08:14:04.828 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:14:04.700 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:14:04.188 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:14:04.932 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:14:05.017 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:10:07.449 00:05:02.040 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:14:35.953 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39718 10 6452 1 2025-11-28 08:11:07.452 00:05:02.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:15:36.359 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-28 08:16:36.768 00:00:10.454 TCP 1.101.0.1:3000 -> 23.104.0.1:58164 12 10375 1 2025-11-28 08:17:37.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45660 10 6452 1 2025-11-28 08:18:37.660 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50920 10 6452 1 2025-11-28 08:19:04.669 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:19:04.669 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:19:04.586 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:19:04.512 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:19:04.586 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:19:38.081 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57230 10 6452 1 2025-11-28 08:16:07.449 00:05:02.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:20:38.493 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59248 10 6452 1 2025-11-28 08:17:07.453 00:05:02.036 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:21:38.894 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:56852 10 6452 1 2025-11-28 08:22:39.310 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50838 10 6452 1 2025-11-28 08:23:39.725 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:40858 10 6452 1 2025-11-28 08:24:05.061 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:24:05.131 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:24:05.133 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:24:05.041 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:24:04.979 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:24:40.113 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:33660 10 6452 1 2025-11-28 08:25:40.481 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38536 10 6452 1 2025-11-28 08:22:07.450 00:05:02.041 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:26:40.879 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46124 10 6452 1 2025-11-28 08:23:07.453 00:05:02.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:27:41.289 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41012 10 6452 1 2025-11-28 08:28:41.691 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51620 10 6452 1 2025-11-28 08:29:04.852 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:29:04.896 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:29:04.695 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:29:04.657 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:29:04.740 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:29:42.059 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6452 1 2025-11-28 08:30:42.464 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:46014 10 6452 1 2025-11-28 08:31:42.881 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38536 10 6452 1 2025-11-28 08:28:07.458 00:05:02.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:32:43.248 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48394 10 6452 1 2025-11-28 08:29:07.461 00:05:02.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:33:43.663 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-11-28 08:34:04.968 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:34:04.734 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:34:04.823 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:34:04.493 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:34:04.885 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:34:44.088 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56596 10 6452 1 2025-11-28 08:35:44.460 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:60182 10 6452 1 2025-11-28 08:36:44.824 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52444 10 6452 1 2025-11-28 08:37:45.227 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55986 10 6452 1 2025-11-28 08:34:07.460 00:05:02.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:38:45.629 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37868 10 6452 1 2025-11-28 08:39:05.080 00:00:00.038 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:39:04.893 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:39:04.944 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:35:07.463 00:05:02.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:39:05.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:39:04.997 00:00:00.038 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:39:46.031 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52236 10 6452 1 2025-11-28 08:40:46.439 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:49672 10 6452 1 2025-11-28 08:41:46.867 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:34360 10 6452 1 2025-11-28 08:42:47.279 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:48738 10 6452 1 2025-11-28 08:43:47.647 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:34336 10 6452 1 2025-11-28 08:44:05.579 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:40:07.462 00:05:02.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:44:05.499 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:44:05.648 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:44:05.539 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:44:05.496 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:44:48.004 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50404 10 6452 1 2025-11-28 08:41:07.464 00:05:02.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:45:48.404 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:56496 11 6504 1 2025-11-28 08:46:48.855 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:57588 10 6452 1 2025-11-28 08:47:49.274 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55762 10 6452 1 2025-11-28 08:48:49.680 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44218 10 6452 1 2025-11-28 08:49:05.186 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:49:05.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:49:05.207 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:49:05.188 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:49:05.271 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:49:50.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:49860 10 6452 1 2025-11-28 08:46:07.463 00:05:02.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:50:50.506 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57310 10 6452 1 2025-11-28 08:47:07.467 00:05:02.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:51:50.908 00:00:11.039 TCP 1.101.0.1:3000 -> 23.104.0.1:58680 12 6556 1 2025-11-28 08:52:51.985 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:39322 10 6452 1 2025-11-28 08:53:52.403 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-11-28 08:54:05.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:54:05.304 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:54:05.079 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:54:05.439 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:54:05.523 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:54:52.802 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51268 10 6452 1 2025-11-28 08:55:53.208 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44958 10 6452 1 2025-11-28 08:52:07.465 00:05:02.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 08:56:53.612 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49874 10 6452 1 2025-11-28 08:53:07.470 00:05:02.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:57:54.025 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60828 10 6452 1 Summary: total flows: 139, total bytes: 414627, total packets: 1015, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 07:58:07 - 2025-11-28 08:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0027s Wall: 0.0021s flows/second: 67705.1 Runtime: 0.0021s