Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 03:58:59.881 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 03:58:41.822 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 10 6452 1 2025-11-28 03:58:59.734 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 03:58:59.557 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:58:59.799 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 03:58:59.735 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 03:59:42.220 00:00:10.845 TCP 1.101.0.1:3000 -> 23.104.0.1:56022 10 6452 1 2025-11-28 04:00:43.112 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49958 10 6452 1 2025-11-28 04:01:43.513 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:43624 12 10375 1 2025-11-28 03:58:07.370 00:05:02.000 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 03:58:07.373 00:05:01.995 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:02:43.955 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:41452 10 6452 1 2025-11-28 04:03:44.343 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35976 10 6452 1 2025-11-28 04:03:59.473 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:03:59.482 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:03:59.085 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:03:59.392 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:03:59.316 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:04:44.749 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:56426 10 6452 1 2025-11-28 04:05:45.118 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60900 10 6452 1 2025-11-28 04:06:45.524 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56170 10 6452 1 2025-11-28 04:07:45.927 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36602 10 6452 1 2025-11-28 04:04:07.374 00:05:01.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:04:07.372 00:05:02.003 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:08:46.302 00:00:11.699 TCP 1.101.0.1:3000 -> 23.104.0.1:44952 10 6452 1 2025-11-28 04:08:59.589 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:08:59.492 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:08:59.582 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:08:59.586 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:08:59.664 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:09:48.058 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-11-28 04:10:48.466 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50504 10 6452 1 2025-11-28 04:11:48.875 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 10 6452 1 2025-11-28 04:12:49.281 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52744 10 6452 1 2025-11-28 04:13:59.825 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:14:00.024 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:13:59.817 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:13:59.818 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:13:49.680 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:38146 10 6452 1 2025-11-28 04:13:59.900 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:10:07.374 00:05:02.002 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:10:07.376 00:05:01.998 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:14:50.115 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47186 10 6452 1 2025-11-28 04:15:50.520 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38810 10 6452 1 2025-11-28 04:16:50.928 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:42166 10 6452 1 2025-11-28 04:17:51.356 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39630 10 6452 1 2025-11-28 04:18:59.856 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:18:59.480 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:18:59.736 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:18:59.773 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:18:59.595 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:18:51.759 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:44378 10 6452 1 2025-11-28 04:19:52.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45062 10 6452 1 2025-11-28 04:16:07.375 00:05:02.008 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:16:07.378 00:05:02.002 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:20:52.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43864 10 6452 1 2025-11-28 04:21:52.996 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:44436 10 6452 1 2025-11-28 04:22:53.360 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51764 10 6452 1 2025-11-28 04:24:00.149 00:00:00.016 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:23:59.834 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:23:59.745 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:24:00.058 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:24:00.214 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:23:53.765 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55612 10 6452 1 2025-11-28 04:24:54.140 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54642 10 6452 1 2025-11-28 04:25:54.540 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36024 10 6452 1 2025-11-28 04:22:07.377 00:05:02.018 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:22:07.379 00:05:02.013 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:26:54.948 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54018 10 6452 1 2025-11-28 04:27:55.353 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37948 10 6452 1 2025-11-28 04:28:59.919 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:28:59.937 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:28:59.720 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:28:59.837 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:29:00.068 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:28:55.763 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55102 10 6452 1 2025-11-28 04:29:56.182 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50600 10 6452 1 2025-11-28 04:30:56.584 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:47894 10 6452 1 2025-11-28 04:28:07.379 00:05:02.017 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:31:56.948 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:53014 10 6452 1 2025-11-28 04:28:07.383 00:05:02.012 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:32:57.358 00:00:12.941 TCP 1.101.0.1:3000 -> 23.104.0.1:59026 10 6452 1 2025-11-28 04:34:00.139 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:34:00.083 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.090 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.056 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:34:00.064 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:34:00.339 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-11-28 04:35:00.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38936 10 6452 1 2025-11-28 04:36:01.148 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37470 10 6452 1 2025-11-28 04:37:01.550 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:48212 10 6452 1 2025-11-28 04:34:07.382 00:05:02.014 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:34:07.381 00:05:02.018 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:38:01.950 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50820 10 6452 1 2025-11-28 04:39:00.069 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:39:00.110 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:39:00.186 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:38:59.986 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:39:00.173 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:39:02.358 00:00:14.555 TCP 1.101.0.1:3000 -> 23.104.0.1:54122 10 6452 1 2025-11-28 04:40:06.971 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58084 10 6452 1 2025-11-28 04:41:07.339 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44802 10 6452 1 2025-11-28 04:42:07.743 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45496 10 6452 1 2025-11-28 04:43:08.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51036 10 6452 1 2025-11-28 04:44:00.413 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:44:00.092 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:44:00.322 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:44:00.413 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:44:00.406 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:40:07.383 00:05:02.019 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:40:07.385 00:05:02.015 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:44:08.554 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 10 6452 1 2025-11-28 04:45:08.964 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44348 10 6452 1 2025-11-28 04:46:09.365 00:00:10.668 TCP 1.101.0.1:3000 -> 23.104.0.1:40736 10 6452 1 2025-11-28 04:47:10.100 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40156 10 6452 1 2025-11-28 04:48:10.504 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35084 10 6452 1 2025-11-28 04:49:00.282 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:49:00.324 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:49:00.082 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:49:00.376 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:49:00.165 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:49:10.908 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42702 10 6452 1 2025-11-28 04:46:07.387 00:05:02.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:46:07.384 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:50:11.318 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53658 10 6452 1 2025-11-28 04:51:11.722 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:50726 10 6452 1 2025-11-28 04:52:12.112 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48540 10 6452 1 2025-11-28 04:53:12.514 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48110 10 6452 1 2025-11-28 04:54:00.642 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:54:00.903 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:54:00.403 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:54:00.617 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:54:00.488 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:54:12.920 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:57374 10 6452 1 2025-11-28 04:55:13.334 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56380 10 6452 1 2025-11-28 04:52:07.384 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:52:07.387 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 04:56:13.748 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33580 10 6452 1 2025-11-28 04:57:14.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41536 10 6452 1 2025-11-28 04:58:14.515 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:50166 10 6452 1 Summary: total flows: 140, total bytes: 420923, total packets: 1022, avg bps: 930, avg pps: 0, avg bpp: 411 Time window: 2025-11-28 03:58:07 - 2025-11-28 04:58:24 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0062s User: 0.0000s Wall: 0.0022s flows/second: 62441.8 Runtime: 0.0023s