Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 04:59:00.677 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 04:59:00.595 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 04:59:00.234 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:59:00.594 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 04:59:00.591 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 04:59:14.937 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33226 10 6452 1 2025-11-28 05:00:15.351 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37660 10 6452 1 2025-11-28 05:01:15.754 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55042 10 6452 1 2025-11-28 04:58:07.385 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 04:58:07.388 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:02:16.154 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 10 6452 1 2025-11-28 05:03:16.552 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:34572 11 6504 1 2025-11-28 05:04:00.880 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:04:00.667 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.617 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.799 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:04:00.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:04:17.012 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54614 10 6452 1 2025-11-28 05:05:17.416 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49868 10 6452 1 2025-11-28 05:06:17.831 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:55872 12 10369 1 2025-11-28 05:07:18.319 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:54096 10 6452 1 2025-11-28 05:04:07.388 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:04:07.390 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:08:18.700 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:54496 10 6452 1 2025-11-28 05:09:00.897 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:09:00.818 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:09:00.673 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:09:00.815 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:09:00.730 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:09:19.089 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34216 10 6452 1 2025-11-28 05:10:19.501 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55920 10 6452 1 2025-11-28 05:11:19.912 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58262 10 6452 1 2025-11-28 05:12:20.329 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53642 10 6452 1 2025-11-28 05:13:20.730 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:57904 10 6452 1 2025-11-28 05:14:01.530 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:14:01.446 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.307 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.446 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:14:01.446 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:10:07.389 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:10:07.391 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:14:21.146 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46252 10 6452 1 2025-11-28 05:15:21.546 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55820 10 6452 1 2025-11-28 05:16:21.904 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45592 10 6452 1 2025-11-28 05:17:22.313 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59766 10 6452 1 2025-11-28 05:18:22.717 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33270 10 6452 1 2025-11-28 05:19:01.132 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:19:00.950 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:19:00.692 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:19:00.892 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:19:01.048 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:19:23.129 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:50568 10 6452 1 2025-11-28 05:16:07.393 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:16:07.390 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:20:23.492 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:34914 10 6452 1 2025-11-28 05:21:23.865 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56564 10 6452 1 2025-11-28 05:22:24.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54220 10 6452 1 2025-11-28 05:23:24.675 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55170 10 6452 1 2025-11-28 05:24:00.938 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:24:01.205 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:24:01.102 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:24:01.122 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:24:01.054 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:24:25.106 00:00:10.755 TCP 1.101.0.1:3000 -> 23.104.0.1:36526 10 6452 1 2025-11-28 05:25:25.901 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6452 1 2025-11-28 05:22:07.393 00:05:02.023 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:22:07.390 00:05:02.028 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:26:26.319 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:50980 10 6452 1 2025-11-28 05:27:26.679 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36584 10 6452 1 2025-11-28 05:28:27.111 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46910 10 6452 1 2025-11-28 05:29:00.961 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:29:00.971 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:29:01.235 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:29:01.149 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:29:01.152 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:29:27.517 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37194 10 6452 1 2025-11-28 05:30:27.916 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47256 10 6452 1 2025-11-28 05:31:28.323 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6452 1 2025-11-28 05:28:07.397 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:28:07.394 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:32:28.734 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53418 10 6452 1 2025-11-28 05:33:29.113 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:56324 10 6452 1 2025-11-28 05:34:01.419 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:34:01.337 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.267 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.336 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:34:01.418 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:34:29.488 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:58854 10 6452 1 2025-11-28 05:35:29.902 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-11-28 05:36:30.326 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44278 10 6452 1 2025-11-28 05:37:30.739 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49550 10 6452 1 2025-11-28 05:34:07.398 00:05:02.022 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:34:07.395 00:05:02.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:38:31.162 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48674 10 6452 1 2025-11-28 05:39:01.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:39:01.463 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:39:01.466 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:39:01.546 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:39:01.545 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:39:31.571 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33914 10 6452 1 2025-11-28 05:40:31.974 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-11-28 05:41:32.397 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38186 10 6452 1 2025-11-28 05:42:32.810 00:00:10.412 TCP 1.101.0.1:3000 -> 23.104.0.1:37182 10 6452 1 2025-11-28 05:43:33.260 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40660 10 6452 1 2025-11-28 05:44:01.490 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.288 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.619 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:44:01.410 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:44:01.702 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:40:07.399 00:05:02.026 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:40:07.401 00:05:02.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:44:33.663 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50534 10 6452 1 2025-11-28 05:45:34.093 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39574 10 6452 1 2025-11-28 05:46:34.456 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43602 10 6452 1 2025-11-28 05:47:34.858 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-11-28 05:48:35.284 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:51462 10 6452 1 2025-11-28 05:49:01.712 00:00:00.014 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:49:01.554 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:49:01.515 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:49:01.620 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:49:01.709 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:49:35.689 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37974 10 6452 1 2025-11-28 05:46:07.403 00:05:02.021 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:46:07.400 00:05:02.027 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:50:36.102 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58504 10 6452 1 2025-11-28 05:51:36.509 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53318 10 6452 1 2025-11-28 05:52:36.877 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41374 10 6452 1 2025-11-28 05:53:37.283 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:50250 10 6452 1 2025-11-28 05:54:01.886 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:54:01.807 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:54:01.624 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:54:01.805 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:54:01.802 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:54:37.682 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45876 10 6452 1 2025-11-28 05:55:38.111 00:00:10.717 TCP 1.101.0.1:3000 -> 23.104.0.1:36672 10 6452 1 2025-11-28 05:52:07.405 00:05:02.029 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 05:52:07.403 00:05:02.033 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:56:38.865 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:53114 10 6452 1 2025-11-28 05:57:39.231 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39412 10 6452 1 2025-11-28 05:58:39.633 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:36282 10 6452 1 Summary: total flows: 140, total bytes: 420969, total packets: 1023, avg bps: 924, avg pps: 0, avg bpp: 411 Time window: 2025-11-28 04:58:07 - 2025-11-28 05:58:49 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0059s User: 0.0000s Wall: 0.0015s flows/second: 91807.8 Runtime: 0.0015s