Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 16:59:14.916 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:59:15.175 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:59:15.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:59:15.203 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:59:14.988 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:59:20.186 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6661 1 2025-11-28 17:00:20.562 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6661 1 2025-11-28 17:01:21.143 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 12 10369 1 2025-11-28 16:58:07.630 00:05:02.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:02:21.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49112 10 6452 1 2025-11-28 16:59:07.632 00:05:02.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:03:21.989 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 10 6452 1 2025-11-28 17:04:14.867 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:04:15.328 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:04:15.236 00:00:00.037 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:04:15.030 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:04:15.038 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:04:22.395 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-11-28 17:05:22.800 00:00:10.407 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-28 17:06:23.242 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 10 6452 1 2025-11-28 17:07:23.644 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45132 10 6452 1 2025-11-28 17:04:07.631 00:05:02.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:08:24.057 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55748 10 6452 1 2025-11-28 17:05:07.633 00:05:02.095 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:09:15.253 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.255 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:09:15.093 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.173 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.255 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:09:24.466 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-11-28 17:10:24.870 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-11-28 17:11:25.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57008 10 6452 1 2025-11-28 17:12:25.685 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56942 10 6452 1 2025-11-28 17:13:26.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-11-28 17:10:07.633 00:05:02.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:14:15.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:14:15.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.122 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.355 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:14:26.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57596 10 6452 1 2025-11-28 17:11:07.636 00:05:02.097 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:15:26.875 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-11-28 17:16:27.238 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35740 10 6452 1 2025-11-28 17:17:27.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-11-28 17:18:28.058 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-11-28 17:19:15.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:19:15.395 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:19:15.406 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:19:15.348 00:00:00.015 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:19:15.399 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:19:28.421 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57836 10 6452 1 2025-11-28 17:16:07.633 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:20:28.824 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-28 17:17:07.637 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:21:29.232 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-11-28 17:22:29.594 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-11-28 17:23:29.995 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-28 17:24:15.533 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.513 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:24:15.211 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.652 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:24:30.399 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-11-28 17:25:30.800 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:60404 10 6452 1 2025-11-28 17:22:07.634 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:26:31.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 10 6452 1 2025-11-28 17:23:07.637 00:05:02.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:27:31.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50630 10 6452 1 2025-11-28 17:28:31.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-11-28 17:29:15.776 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:29:16.006 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:29:15.317 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:29:15.919 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:29:16.004 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:29:32.403 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56496 10 6452 1 2025-11-28 17:30:32.804 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:46216 10 6452 1 2025-11-28 17:31:33.182 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:53806 12 10369 1 2025-11-28 17:28:07.635 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:32:33.835 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-11-28 17:29:07.638 00:05:02.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:33:34.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-11-28 17:34:15.705 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.522 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:34:15.653 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.785 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.867 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:34:34.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6452 1 2025-11-28 17:35:35.063 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6452 1 2025-11-28 17:36:35.466 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-11-28 17:37:35.827 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35602 11 6492 1 2025-11-28 17:34:07.639 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:38:36.231 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36764 10 6452 1 2025-11-28 17:35:07.640 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:39:15.820 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:39:15.951 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:39:15.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:39:15.947 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:39:16.029 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:39:36.658 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58926 10 6452 1 2025-11-28 17:40:37.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39740 10 6452 1 2025-11-28 17:41:37.501 00:00:10.434 TCP 1.101.0.1:3000 -> 23.104.0.1:42978 12 10369 1 2025-11-28 17:42:37.979 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-28 17:43:38.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-11-28 17:40:07.639 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:44:16.148 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:44:15.933 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:44:15.995 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:44:15.796 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:44:16.065 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:44:38.806 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:39658 10 6452 1 2025-11-28 17:41:07.641 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:45:39.176 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:59518 10 6452 1 2025-11-28 17:46:39.578 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-11-28 17:47:39.982 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-11-28 17:48:40.389 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33246 10 6452 1 2025-11-28 17:49:16.054 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:49:15.960 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:49:15.979 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:49:15.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:49:16.050 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:49:40.803 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45034 10 6452 1 2025-11-28 17:46:07.640 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:50:41.169 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-11-28 17:47:07.643 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:51:41.537 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37428 10 6452 1 2025-11-28 17:52:41.945 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-11-28 17:53:42.361 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34332 11 6492 1 2025-11-28 17:54:16.313 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:54:16.231 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:54:15.978 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:54:16.171 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:54:16.140 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:54:42.724 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-28 17:55:43.138 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-11-28 17:52:07.641 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:56:43.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-11-28 17:53:07.643 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:57:43.911 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45236 10 6452 1 Summary: total flows: 139, total bytes: 422797, total packets: 1018, avg bps: 938, avg pps: 0, avg bpp: 415 Time window: 2025-11-28 16:58:07 - 2025-11-28 17:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0034s User: 0.0017s Wall: 0.0025s flows/second: 55089.1 Runtime: 0.0025s