Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 11:59:09.053 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 11:59:08.934 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 11:59:09.046 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 11:59:08.968 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 11:59:09.136 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 11:59:10.040 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-11-28 12:00:10.443 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-11-28 12:01:10.798 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:58654 10 6452 1 2025-11-28 11:58:07.524 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:02:11.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58038 10 6452 1 2025-11-28 11:59:07.526 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:03:11.587 00:00:10.982 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-11-28 12:04:08.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:04:08.983 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:04:08.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:04:09.139 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:04:09.221 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:04:12.605 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-11-28 12:05:13.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-28 12:06:13.419 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:51996 10 6452 1 2025-11-28 12:07:13.793 00:00:10.874 TCP 1.101.0.1:3000 -> 23.104.0.1:56282 10 6452 1 2025-11-28 12:04:07.530 00:05:02.068 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:08:14.716 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59968 10 6452 1 2025-11-28 12:09:09.329 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.129 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:09:08.768 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.196 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:05:07.532 00:05:02.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:09:15.139 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-11-28 12:10:15.547 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-11-28 12:11:15.951 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34290 10 6452 1 2025-11-28 12:12:16.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-11-28 12:13:16.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 10 6452 1 2025-11-28 12:14:09.375 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.421 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:14:09.076 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.383 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:10:07.533 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:14:17.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-28 12:11:07.537 00:05:02.062 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:15:17.588 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-11-28 12:16:17.992 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 11 6504 1 2025-11-28 12:17:18.452 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-11-28 12:18:18.856 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-11-28 12:19:09.540 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.571 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:19:09.474 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.408 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.490 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:19:19.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-11-28 12:16:07.536 00:05:02.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:20:19.684 00:00:10.498 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-11-28 12:17:07.537 00:05:02.066 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:21:20.226 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-11-28 12:22:20.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-11-28 12:23:21.038 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-11-28 12:24:09.687 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:24:09.524 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:24:09.641 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:24:09.363 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:24:09.603 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:24:21.441 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-11-28 12:25:21.840 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-11-28 12:22:07.536 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:26:22.270 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-11-28 12:23:07.539 00:05:02.070 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:27:22.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-11-28 12:28:23.113 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-11-28 12:29:09.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.478 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:29:09.482 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:29:23.518 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52434 10 6452 1 2025-11-28 12:30:23.924 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6452 1 2025-11-28 12:31:24.293 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 10 6452 1 2025-11-28 12:28:07.543 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:32:24.691 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:59696 10 6452 1 2025-11-28 12:29:07.545 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:33:25.064 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35518 10 6452 1 2025-11-28 12:34:09.754 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:34:09.783 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:34:09.593 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:34:09.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:34:09.671 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:34:25.469 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-11-28 12:35:25.873 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50628 10 6452 1 2025-11-28 12:36:26.241 00:00:15.712 TCP 1.101.0.1:3000 -> 23.104.0.1:58792 10 6452 1 2025-11-28 12:37:32.014 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6452 1 2025-11-28 12:34:07.543 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:38:32.418 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-11-28 12:39:09.722 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:39:10.047 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:35:07.545 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:39:09.991 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:39:09.988 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:39:10.073 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:39:32.822 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53310 10 6452 1 2025-11-28 12:40:33.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46916 10 6452 1 2025-11-28 12:41:33.601 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 12 10369 1 2025-11-28 12:42:34.053 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-11-28 12:43:34.457 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47458 10 6452 1 2025-11-28 12:44:09.848 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:44:09.737 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:44:09.922 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:44:09.912 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:44:10.028 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:40:07.546 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:44:34.815 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52802 10 6452 1 2025-11-28 12:41:07.549 00:05:02.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:45:35.217 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6452 1 2025-11-28 12:46:35.629 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-11-28 12:47:35.996 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-11-28 12:48:36.397 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43262 10 6452 1 2025-11-28 12:49:09.951 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:49:09.873 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:49:10.109 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:49:10.131 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:49:10.214 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:49:36.810 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-11-28 12:46:07.549 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:50:37.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-28 12:47:07.552 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:51:37.619 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-28 12:52:37.984 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59742 10 6452 1 2025-11-28 12:53:38.391 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44160 10 6452 1 2025-11-28 12:54:10.144 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:54:10.070 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:54:10.094 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:54:10.058 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:54:10.206 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:54:38.756 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52402 10 6452 1 2025-11-28 12:55:39.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40382 10 6452 1 2025-11-28 12:52:07.553 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:56:39.587 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44980 10 6452 1 2025-11-28 12:53:07.556 00:05:02.065 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:57:39.953 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 Summary: total flows: 139, total bytes: 414517, total packets: 1013, avg bps: 920, avg pps: 0, avg bpp: 409 Time window: 2025-11-28 11:58:07 - 2025-11-28 12:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0056s User: 0.0011s Wall: 0.0022s flows/second: 62844.5 Runtime: 0.0022s