Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 02:58:58.462 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 02:58:58.321 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:58:58.194 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 02:58:58.380 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 02:58:58.279 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 02:59:08.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39366 10 6452 1 2025-11-28 03:00:08.513 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-11-28 03:01:08.916 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:34416 10 6452 1 2025-11-28 02:58:07.350 00:05:01.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 02:58:07.348 00:05:02.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:02:09.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41008 10 6452 1 2025-11-28 03:03:09.727 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38134 10 6452 1 2025-11-28 03:03:58.411 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:03:58.311 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:03:58.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:03:58.328 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:03:58.328 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:04:10.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42028 10 6452 1 2025-11-28 03:05:10.542 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54528 10 6452 1 2025-11-28 03:06:10.952 00:00:11.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-11-28 03:07:12.361 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55208 10 6452 1 2025-11-28 03:04:07.349 00:05:02.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:04:07.352 00:05:01.997 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:08:12.762 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45904 10 6452 1 2025-11-28 03:08:58.515 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:08:58.316 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:08:58.313 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:08:58.433 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:08:58.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:09:13.182 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58066 10 6452 1 2025-11-28 03:10:13.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59492 10 6452 1 2025-11-28 03:11:13.986 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:43232 10 6452 1 2025-11-28 03:12:14.431 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:41234 10 6452 1 2025-11-28 03:13:14.830 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49886 10 6452 1 2025-11-28 03:13:58.716 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:13:58.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:13:58.282 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:13:58.633 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:13:58.632 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:10:07.352 00:05:02.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:10:07.354 00:05:01.997 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:14:15.244 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37034 10 6452 1 2025-11-28 03:15:15.652 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42346 10 6452 1 2025-11-28 03:16:16.097 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:59728 10 6452 1 2025-11-28 03:17:16.464 00:00:11.341 TCP 1.101.0.1:3000 -> 23.104.0.1:56734 10 6452 1 2025-11-28 03:18:17.847 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:59562 10 6452 1 2025-11-28 03:18:58.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:18:58.578 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:18:58.488 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:18:58.554 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:18:58.571 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:19:18.274 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:41332 10 6452 1 2025-11-28 03:16:07.355 00:05:02.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:16:07.358 00:05:01.995 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:20:18.671 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44930 10 6452 1 2025-11-28 03:21:19.103 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33540 10 6452 1 2025-11-28 03:22:19.507 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38510 10 6452 1 2025-11-28 03:23:19.911 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44904 10 6452 1 2025-11-28 03:23:59.075 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:23:58.992 00:00:00.027 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:23:58.666 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:23:58.895 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:23:59.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:24:20.288 00:00:10.671 TCP 1.101.0.1:3000 -> 23.104.0.1:59860 10 6452 1 2025-11-28 03:25:20.994 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:50942 10 6452 1 2025-11-28 03:22:07.355 00:05:02.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:22:07.358 00:05:01.996 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:26:21.361 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45940 10 6452 1 2025-11-28 03:27:21.722 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:51278 10 6452 1 2025-11-28 03:28:22.145 00:00:16.904 TCP 1.101.0.1:3000 -> 23.104.0.1:44366 10 6452 1 2025-11-28 03:28:58.994 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:28:58.701 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:28:58.645 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:28:58.910 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:28:58.769 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:29:29.104 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34310 10 6452 1 2025-11-28 03:30:29.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54332 10 6452 1 2025-11-28 03:31:29.866 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45664 10 6452 1 2025-11-28 03:28:07.362 00:05:01.996 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:28:07.360 00:05:02.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:32:30.284 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60360 10 6452 1 2025-11-28 03:33:30.684 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38844 10 6452 1 2025-11-28 03:33:58.911 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:33:58.916 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:33:58.873 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:33:58.878 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:33:58.956 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:34:31.058 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60598 10 6452 1 2025-11-28 03:35:31.419 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53904 10 6452 1 2025-11-28 03:36:31.823 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:33404 10 6452 1 2025-11-28 03:37:32.184 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40334 10 6452 1 2025-11-28 03:34:07.365 00:05:01.997 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:34:07.367 00:05:01.991 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:38:32.595 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:44394 10 6452 1 2025-11-28 03:38:59.209 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:38:58.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:38:58.801 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:38:59.127 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:38:58.895 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:39:33.003 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51416 10 6452 1 2025-11-28 03:40:33.404 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48072 10 6452 1 2025-11-28 03:41:33.764 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52018 10 6452 1 2025-11-28 03:42:34.167 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:56224 10 6452 1 2025-11-28 03:43:34.532 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59254 10 6452 1 2025-11-28 03:43:58.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:43:58.892 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:43:59.041 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:43:59.108 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:43:59.124 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:40:07.368 00:05:01.991 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:40:07.366 00:05:01.997 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:44:34.892 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:48842 10 6452 1 2025-11-28 03:45:35.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49434 10 6452 1 2025-11-28 03:46:35.680 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50588 10 6452 1 2025-11-28 03:47:36.114 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44176 10 6452 1 2025-11-28 03:48:36.475 00:00:11.682 TCP 1.101.0.1:3000 -> 23.104.0.1:52380 10 6452 1 2025-11-28 03:48:59.329 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:48:59.301 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:48:59.054 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:48:59.247 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:48:59.180 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:49:38.194 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49556 10 6452 1 2025-11-28 03:46:07.367 00:05:01.999 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:46:07.369 00:05:01.993 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:50:38.593 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56934 10 6452 1 2025-11-28 03:51:38.986 00:00:10.404 TCP 1.101.0.1:3000 -> 23.104.0.1:56444 12 10375 1 2025-11-28 03:52:39.432 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46526 10 6452 1 2025-11-28 03:53:39.797 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52786 10 6452 1 2025-11-28 03:53:59.388 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:53:59.310 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:53:59.052 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:53:59.307 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:53:59.257 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:54:40.199 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:53622 10 6452 1 2025-11-28 03:55:40.604 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36500 10 6452 1 2025-11-28 03:52:07.369 00:05:01.996 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 03:52:07.368 00:05:02.001 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:56:41.016 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52552 10 6452 1 2025-11-28 03:57:41.412 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42324 10 6452 1 Summary: total flows: 139, total bytes: 414471, total packets: 1012, avg bps: 925, avg pps: 0, avg bpp: 409 Time window: 2025-11-28 02:58:07 - 2025-11-28 03:57:51 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0046s User: 0.0009s Wall: 0.0019s flows/second: 71569.9 Runtime: 0.0020s