Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 18:59:17.448 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 18:59:17.366 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 18:59:17.442 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 18:59:17.401 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:59:17.365 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 18:59:21.258 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 10 6452 1 2025-11-28 19:00:21.666 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:47798 10 6452 1 2025-11-28 19:01:22.029 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42190 10 6452 1 2025-11-28 18:58:07.659 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:02:22.433 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:41128 10 6452 1 2025-11-28 18:59:07.663 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:03:22.796 00:00:10.863 TCP 1.101.0.1:3000 -> 23.104.0.1:49296 10 6452 1 2025-11-28 19:04:17.713 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:04:17.630 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:04:17.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:04:17.630 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:04:17.479 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:04:23.703 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-11-28 19:05:24.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45904 10 6452 1 2025-11-28 19:06:24.515 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58738 10 6452 1 2025-11-28 19:07:24.922 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:58670 10 6452 1 2025-11-28 19:04:07.661 00:05:02.110 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:08:25.354 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47758 10 6452 1 2025-11-28 19:09:18.274 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:05:07.666 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:09:18.177 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:09:18.291 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:09:17.763 00:00:00.028 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:09:18.191 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:09:25.780 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 10 6452 1 2025-11-28 19:10:26.189 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59978 10 6452 1 2025-11-28 19:11:26.589 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56162 10 6452 1 2025-11-28 19:12:26.994 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35838 10 6452 1 2025-11-28 19:13:27.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34536 10 6452 1 2025-11-28 19:10:07.665 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:14:17.895 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:14:17.832 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:14:17.556 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:14:17.625 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:14:17.706 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:14:27.806 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58718 10 6452 1 2025-11-28 19:11:07.669 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:15:28.225 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:56876 10 6452 1 2025-11-28 19:16:28.585 00:00:10.526 TCP 1.101.0.1:3000 -> 23.104.0.1:34650 10 6452 1 2025-11-28 19:17:29.163 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57760 10 6452 1 2025-11-28 19:18:29.571 00:00:10.815 TCP 1.101.0.1:3000 -> 23.104.0.1:38692 10 6452 1 2025-11-28 19:19:17.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:19:17.902 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:19:17.982 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:19:17.761 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:19:17.902 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:19:30.422 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56908 10 6452 1 2025-11-28 19:16:07.669 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:20:30.788 00:00:10.701 TCP 1.101.0.1:3000 -> 23.104.0.1:48720 10 6452 1 2025-11-28 19:17:07.672 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:21:31.528 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49164 10 6452 1 2025-11-28 19:22:31.931 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:54400 10 6452 1 2025-11-28 19:23:32.359 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35820 10 6452 1 2025-11-28 19:24:17.942 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:24:17.777 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:24:17.995 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:24:17.943 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:24:17.860 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:24:32.758 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:33596 10 6452 1 2025-11-28 19:25:33.189 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37026 10 6452 1 2025-11-28 19:22:07.672 00:05:02.117 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:26:33.589 00:00:10.515 TCP 1.101.0.1:3000 -> 23.104.0.1:42876 10 6452 1 2025-11-28 19:23:07.675 00:05:02.112 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:27:34.140 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:38082 10 6452 1 2025-11-28 19:28:34.501 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48928 10 6452 1 2025-11-28 19:29:18.012 00:00:00.039 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:29:18.093 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:29:17.949 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:29:18.091 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:29:18.174 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:29:34.906 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49132 10 6452 1 2025-11-28 19:30:35.310 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42882 10 6452 1 2025-11-28 19:31:35.713 00:00:10.455 TCP 1.101.0.1:3000 -> 23.104.0.1:33702 12 10375 1 2025-11-28 19:28:07.675 00:05:02.118 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:32:36.207 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51236 10 6452 1 2025-11-28 19:29:07.679 00:05:02.113 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:33:36.605 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59578 10 6452 1 2025-11-28 19:34:18.232 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:34:18.186 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:34:18.103 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:34:18.274 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:34:18.358 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:34:37.012 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56834 10 6452 1 2025-11-28 19:35:37.414 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:52394 10 6452 1 2025-11-28 19:36:37.826 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41436 10 6452 1 2025-11-28 19:37:38.224 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34136 10 6452 1 2025-11-28 19:34:07.677 00:05:02.121 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:38:38.627 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:56366 10 6452 1 2025-11-28 19:35:07.681 00:05:02.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:39:18.308 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:39:18.046 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:39:18.347 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:39:18.261 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:39:18.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:39:39.016 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43368 10 6452 1 2025-11-28 19:40:39.423 00:00:10.716 TCP 1.101.0.1:3000 -> 23.104.0.1:53668 10 6452 1 2025-11-28 19:41:40.187 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33826 10 6452 1 2025-11-28 19:42:40.552 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49120 10 6452 1 2025-11-28 19:43:40.930 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:46484 10 6452 1 2025-11-28 19:40:07.678 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:44:18.431 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:44:18.429 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:44:18.283 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:44:18.375 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:44:18.514 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:44:41.316 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:60018 10 6452 1 2025-11-28 19:41:07.680 00:05:02.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:45:41.740 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59630 10 6452 1 2025-11-28 19:46:42.152 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:56956 10 6452 1 2025-11-28 19:47:42.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53502 10 6452 1 2025-11-28 19:48:42.924 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54984 10 6452 1 2025-11-28 19:49:18.551 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:49:18.644 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:49:18.428 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:49:18.558 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:49:18.640 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:49:43.327 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51834 10 6452 1 2025-11-28 19:46:07.680 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:50:43.732 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:41454 10 6452 1 2025-11-28 19:47:07.682 00:05:02.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:51:44.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47130 10 6452 1 2025-11-28 19:52:44.548 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45942 10 6452 1 2025-11-28 19:53:44.956 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:53934 10 6452 1 2025-11-28 19:54:18.557 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 19:54:18.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:54:18.615 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:54:18.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:54:18.475 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 19:54:45.399 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43822 10 6452 1 2025-11-28 19:55:45.801 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:32788 10 6452 1 2025-11-28 19:52:07.681 00:05:02.129 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 19:56:46.172 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45340 10 6452 1 2025-11-28 19:53:07.683 00:05:02.132 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 19:57:46.533 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45480 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 920, avg pps: 0, avg bpp: 409 Time window: 2025-11-28 18:58:07 - 2025-11-28 19:58:09 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0027s Wall: 0.0016s flows/second: 89322.5 Runtime: 0.0016s