Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 05:59:02.082 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 05:59:01.857 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 05:59:01.599 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:59:02.000 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 05:59:01.915 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 05:59:40.028 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45786 10 6452 1 2025-11-28 06:00:40.434 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-11-28 06:01:40.835 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:52634 10 6452 1 2025-11-28 05:58:07.404 00:05:02.033 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 05:58:07.409 00:05:02.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:02:41.214 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44990 10 6452 1 2025-11-28 06:03:41.622 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:37364 10 6452 1 2025-11-28 06:04:02.044 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:04:01.912 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:04:01.652 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:04:01.960 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:04:01.912 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:04:42.047 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58020 10 6452 1 2025-11-28 06:05:42.454 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54404 10 6452 1 2025-11-28 06:06:42.872 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:43958 10 6452 1 2025-11-28 06:07:43.286 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41786 10 6452 1 2025-11-28 06:04:07.409 00:05:02.027 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:04:07.407 00:05:02.032 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:08:43.685 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:40270 10 6452 1 2025-11-28 06:09:01.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:09:01.863 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:09:01.922 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:09:01.980 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:09:02.007 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:09:44.112 00:00:10.314 TCP 1.101.0.1:3000 -> 23.104.0.1:55652 10 6452 1 2025-11-28 06:10:44.468 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:41362 10 6452 1 2025-11-28 06:11:44.876 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33388 10 6452 1 2025-11-28 06:12:45.281 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49246 10 6452 1 2025-11-28 06:13:45.638 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51334 10 6452 1 2025-11-28 06:14:01.940 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:14:02.118 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:14:02.103 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:14:01.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:14:02.073 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:10:07.419 00:05:02.020 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:10:07.416 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:14:46.043 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:38406 10 6452 1 2025-11-28 06:15:46.405 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35846 10 6452 1 2025-11-28 06:16:46.808 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:58916 12 10369 1 2025-11-28 06:17:47.257 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59038 10 6452 1 2025-11-28 06:18:47.656 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60732 10 6452 1 2025-11-28 06:19:02.447 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:19:02.433 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:19:02.443 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:19:02.364 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:19:02.370 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:19:48.064 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-11-28 06:16:07.417 00:05:02.025 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:16:07.419 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:20:48.427 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47028 10 6452 1 2025-11-28 06:21:48.794 00:00:10.778 TCP 1.101.0.1:3000 -> 23.104.0.1:49562 10 6452 1 2025-11-28 06:22:49.610 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47338 10 6452 1 2025-11-28 06:23:50.017 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:45888 10 6452 1 2025-11-28 06:24:02.304 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:24:02.297 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:24:02.078 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:24:02.221 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:24:02.366 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:24:50.417 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:37330 10 6452 1 2025-11-28 06:25:50.778 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:43532 10 6452 1 2025-11-28 06:22:07.419 00:05:02.023 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:22:07.423 00:05:02.018 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:26:51.147 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48786 10 6452 1 2025-11-28 06:27:51.549 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 10 6452 1 2025-11-28 06:29:02.412 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:29:02.428 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:29:02.280 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:29:02.331 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:29:02.354 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:28:51.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43674 10 6452 1 2025-11-28 06:29:52.374 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:55782 10 6452 1 2025-11-28 06:30:52.784 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-11-28 06:31:53.183 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36214 10 6452 1 2025-11-28 06:28:07.425 00:05:02.017 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:28:07.422 00:05:02.022 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:32:53.587 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41932 10 6452 1 2025-11-28 06:34:02.609 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:34:02.526 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:34:02.292 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:33:53.983 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40924 10 6452 1 2025-11-28 06:34:02.527 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:34:02.463 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:34:54.386 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:50812 10 6452 1 2025-11-28 06:35:54.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37972 10 6452 1 2025-11-28 06:36:55.188 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39380 10 6452 1 2025-11-28 06:37:55.551 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54720 10 6452 1 2025-11-28 06:34:07.426 00:05:02.019 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:34:07.424 00:05:02.024 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:39:02.713 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:39:02.593 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.206 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.631 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:39:02.587 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:38:55.953 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44168 10 6452 1 2025-11-28 06:39:56.319 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-11-28 06:40:56.724 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:35082 10 6452 1 2025-11-28 06:41:57.148 00:00:10.796 TCP 1.101.0.1:3000 -> 23.104.0.1:38874 12 10375 1 2025-11-28 06:42:57.981 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:45456 10 6452 1 2025-11-28 06:44:02.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:44:02.655 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:44:02.614 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:44:02.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:44:02.658 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:40:07.426 00:05:02.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:43:58.392 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55556 10 6452 1 2025-11-28 06:40:07.428 00:05:02.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:44:58.798 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35480 10 6452 1 2025-11-28 06:45:59.206 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52560 10 6452 1 2025-11-28 06:46:59.603 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58468 10 6452 1 2025-11-28 06:48:00.013 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35688 10 6452 1 2025-11-28 06:49:02.894 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:49:02.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:49:02.787 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:49:02.812 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:49:02.946 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:49:00.417 00:00:10.411 TCP 1.101.0.1:3000 -> 23.104.0.1:37150 11 6504 1 2025-11-28 06:46:07.429 00:05:02.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:46:07.426 00:05:02.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:50:00.873 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 2025-11-28 06:51:01.282 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:32844 10 6452 1 2025-11-28 06:52:01.653 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36000 10 6452 1 2025-11-28 06:53:02.057 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:55938 10 6452 1 2025-11-28 06:54:03.141 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 06:54:02.933 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 06:54:02.992 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:54:03.059 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 06:54:02.872 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 06:54:02.421 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57816 10 6452 1 2025-11-28 06:55:02.831 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:60074 10 6452 1 2025-11-28 06:52:07.427 00:05:02.029 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 06:52:07.431 00:05:02.024 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 06:56:03.260 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:50546 10 6452 1 2025-11-28 06:57:03.652 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50372 10 6452 1 2025-11-28 06:58:04.073 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59010 10 6452 1 Summary: total flows: 139, total bytes: 418440, total packets: 1015, avg bps: 928, avg pps: 0, avg bpp: 412 Time window: 2025-11-28 05:58:07 - 2025-11-28 06:58:14 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0052s User: 0.0010s Wall: 0.0019s flows/second: 74448.8 Runtime: 0.0019s