Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 09:59:06.761 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:59:06.610 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:59:06.678 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:59:06.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:59:06.679 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:59:19.189 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-11-28 10:00:19.602 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44684 10 6452 1 2025-11-28 10:01:20.008 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-11-28 09:58:07.492 00:05:02.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:02:20.411 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39572 10 6452 1 2025-11-28 09:59:07.496 00:05:02.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:03:20.818 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52974 10 6452 1 2025-11-28 10:04:06.793 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:04:06.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:04:06.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:04:06.698 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:04:06.710 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:04:21.218 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:32862 10 6452 1 2025-11-28 10:05:21.624 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-11-28 10:06:22.063 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-11-28 10:07:22.472 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56294 10 6452 1 2025-11-28 10:04:07.494 00:05:02.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:08:22.841 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-11-28 10:09:06.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:09:06.799 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:09:06.728 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:09:06.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:09:06.856 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:05:07.496 00:05:02.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:09:23.273 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6452 1 2025-11-28 10:10:23.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55384 10 6452 1 2025-11-28 10:11:24.105 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 10 6452 1 2025-11-28 10:12:24.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-11-28 10:13:24.877 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-11-28 10:14:06.972 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:14:07.195 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.260 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:10:07.496 00:05:02.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:14:25.294 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-11-28 10:11:07.501 00:05:02.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:15:25.657 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-11-28 10:16:26.056 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-11-28 10:17:26.419 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45864 10 6452 1 2025-11-28 10:18:26.819 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-11-28 10:19:07.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:19:07.100 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:19:07.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:19:07.009 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:19:06.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:19:27.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43800 10 6452 1 2025-11-28 10:16:07.499 00:05:02.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:20:27.632 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33816 10 6452 1 2025-11-28 10:17:07.502 00:05:02.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:21:28.051 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40064 10 6452 1 2025-11-28 10:22:28.449 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-11-28 10:23:28.848 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39998 10 6452 1 2025-11-28 10:24:06.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:24:07.116 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:24:07.009 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:24:07.069 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:24:06.786 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:24:29.269 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53366 10 6452 1 2025-11-28 10:25:29.677 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:42400 10 6452 1 2025-11-28 10:22:07.500 00:05:02.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:26:30.114 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-11-28 10:23:07.503 00:05:02.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:27:30.531 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41070 10 6452 1 2025-11-28 10:28:30.894 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-11-28 10:29:07.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:29:07.202 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:29:07.350 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:29:07.227 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:29:07.397 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:29:31.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-11-28 10:30:31.650 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-11-28 10:31:32.020 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:58640 12 10375 1 2025-11-28 10:28:07.502 00:05:02.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:32:32.502 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6452 1 2025-11-28 10:29:07.505 00:05:02.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:33:32.900 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:48506 12 6556 1 2025-11-28 10:34:07.464 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.602 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:34:07.532 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:34:33.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-28 10:35:33.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-11-28 10:36:34.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44928 10 6452 1 2025-11-28 10:37:34.500 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-11-28 10:34:07.505 00:05:02.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:38:34.908 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-11-28 10:39:07.286 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:39:07.288 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.512 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.593 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:35:07.507 00:05:02.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:39:35.316 00:00:11.015 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-11-28 10:40:36.368 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58844 10 6452 1 2025-11-28 10:41:36.771 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-11-28 10:42:37.184 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41874 10 6452 1 2025-11-28 10:43:37.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38990 10 6452 1 2025-11-28 10:44:07.609 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:44:07.526 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:44:07.523 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:44:07.350 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:44:07.410 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:40:07.507 00:05:02.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:44:37.983 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58508 10 6452 1 2025-11-28 10:41:07.508 00:05:02.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:45:38.391 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-11-28 10:46:38.795 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6452 1 2025-11-28 10:47:39.168 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-11-28 10:48:39.573 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-28 10:49:07.626 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:49:07.457 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:49:07.534 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:49:07.624 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:49:07.543 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:49:39.977 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-11-28 10:46:07.507 00:05:02.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:50:40.394 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:44016 10 6452 1 2025-11-28 10:47:07.508 00:05:02.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:51:40.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:48100 10 6452 1 2025-11-28 10:52:41.180 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-11-28 10:53:41.581 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46634 10 6452 1 2025-11-28 10:54:07.988 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:54:07.830 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:54:07.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:54:07.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:54:07.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:54:41.980 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-11-28 10:55:42.347 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-11-28 10:52:07.507 00:05:02.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:56:42.753 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36032 10 6452 1 2025-11-28 10:53:07.509 00:05:02.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:57:43.189 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33688 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 920, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 09:58:07 - 2025-11-28 10:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0058s User: 0.0000s Wall: 0.0032s flows/second: 44097.1 Runtime: 0.0032s