Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 08:59:05.568 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 08:58:54.427 00:00:10.992 TCP 1.101.0.1:3000 -> 23.104.0.1:37780 10 6452 1 2025-11-28 08:59:05.491 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 08:59:05.246 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:59:05.485 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 08:59:05.495 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 08:59:55.458 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45146 10 6452 1 2025-11-28 09:00:55.864 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35184 10 6452 1 2025-11-28 09:01:56.227 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-28 08:58:07.471 00:05:02.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 08:58:07.470 00:05:02.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:02:56.636 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45912 10 6452 1 2025-11-28 09:04:05.522 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:04:05.616 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:04:05.645 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:04:05.348 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:04:05.730 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:03:56.995 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42322 10 6452 1 2025-11-28 09:04:57.400 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43558 10 6452 1 2025-11-28 09:05:57.812 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55510 11 6504 1 2025-11-28 09:06:58.236 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59460 10 6452 1 2025-11-28 09:04:07.469 00:05:02.043 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:07:58.637 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:32912 10 6452 1 2025-11-28 09:04:07.471 00:05:02.038 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:09:05.732 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:09:05.872 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:09:05.462 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:09:05.650 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:09:05.592 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:08:59.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44860 10 6452 1 2025-11-28 09:09:59.439 00:00:10.410 TCP 1.101.0.1:3000 -> 23.104.0.1:52796 11 6504 1 2025-11-28 09:10:59.887 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:59198 10 6452 1 2025-11-28 09:12:00.257 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40356 10 6452 1 2025-11-28 09:13:00.654 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36944 10 6452 1 2025-11-28 09:14:05.879 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:10:07.481 00:05:02.033 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:14:05.426 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:14:05.470 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:14:05.795 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:14:05.623 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:10:07.484 00:05:02.028 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:14:01.063 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:52826 10 6452 1 2025-11-28 09:15:01.433 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33800 10 6452 1 2025-11-28 09:16:01.837 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:58134 11 6504 1 2025-11-28 09:17:02.315 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53552 10 6452 1 2025-11-28 09:18:02.714 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40164 10 6452 1 2025-11-28 09:19:05.826 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:19:05.619 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:19:05.782 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:19:05.614 00:00:00.018 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:19:05.865 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:19:03.134 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42312 10 6452 1 2025-11-28 09:16:07.483 00:05:02.038 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:16:07.485 00:05:02.032 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:20:03.539 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51330 10 6452 1 2025-11-28 09:21:03.939 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:50178 10 6452 1 2025-11-28 09:22:04.371 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:42924 10 6452 1 2025-11-28 09:23:04.749 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49366 10 6452 1 2025-11-28 09:24:05.928 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:24:05.626 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:24:05.853 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:24:05.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:24:06.048 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:24:05.156 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54114 10 6452 1 2025-11-28 09:25:05.563 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56062 10 6452 1 2025-11-28 09:22:07.486 00:05:02.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:22:07.483 00:05:02.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:26:05.965 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51320 10 6452 1 2025-11-28 09:27:06.333 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34474 10 6452 1 2025-11-28 09:28:06.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48570 10 6452 1 2025-11-28 09:29:06.200 00:00:00.030 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:29:06.337 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:29:06.315 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:29:06.429 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:29:06.397 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:29:07.115 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60676 10 6452 1 2025-11-28 09:30:07.520 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47806 10 6452 1 2025-11-28 09:31:07.925 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56182 10 6452 1 2025-11-28 09:28:07.486 00:05:02.036 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:28:07.488 00:05:02.031 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:32:08.346 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38458 10 6452 1 2025-11-28 09:33:08.751 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44040 10 6452 1 2025-11-28 09:34:06.293 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:34:06.168 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:34:06.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:34:06.210 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:34:06.141 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:34:09.151 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:40102 10 6452 1 2025-11-28 09:35:09.575 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44032 10 6452 1 2025-11-28 09:36:09.978 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51800 10 6452 1 2025-11-28 09:37:10.386 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49060 10 6452 1 2025-11-28 09:34:07.489 00:05:02.037 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:34:07.485 00:05:02.042 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:38:10.789 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:41502 10 6452 1 2025-11-28 09:39:06.356 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:39:06.198 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:39:05.986 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:39:06.274 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:39:06.265 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:39:11.203 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:34148 10 6452 1 2025-11-28 09:40:11.578 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:47622 10 6452 1 2025-11-28 09:41:11.946 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:56392 10 6452 1 2025-11-28 09:42:12.365 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57298 10 6452 1 2025-11-28 09:43:12.765 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:40726 10 6452 1 2025-11-28 09:44:06.146 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:44:06.063 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:44:06.438 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:44:06.434 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:40:07.489 00:05:02.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:40:07.487 00:05:02.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:44:06.521 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:44:13.140 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37566 10 6452 1 2025-11-28 09:45:13.549 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50346 10 6452 1 2025-11-28 09:46:13.911 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52672 10 6452 1 2025-11-28 09:47:14.319 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60826 10 6452 1 2025-11-28 09:48:14.721 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50852 10 6452 1 2025-11-28 09:49:06.531 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:49:06.564 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:49:06.395 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:49:06.447 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:49:06.747 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:49:15.131 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51814 10 6452 1 2025-11-28 09:46:07.487 00:05:02.044 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:46:07.490 00:05:02.039 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:50:15.529 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43638 10 6452 1 2025-11-28 09:51:15.926 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39422 10 6452 1 2025-11-28 09:52:16.339 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41490 10 6452 1 2025-11-28 09:53:16.747 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38682 10 6452 1 2025-11-28 09:54:06.519 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:54:06.735 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:54:06.649 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:54:06.437 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:54:06.731 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:54:17.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40888 10 6452 1 2025-11-28 09:55:17.551 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:34368 10 6452 1 2025-11-28 09:52:07.491 00:05:02.045 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:52:07.495 00:05:02.040 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 09:56:17.959 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41442 10 6452 1 2025-11-28 09:57:18.366 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:60308 10 6452 1 2025-11-28 09:58:18.782 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59570 10 6452 1 Summary: total flows: 140, total bytes: 417156, total packets: 1023, avg bps: 921, avg pps: 0, avg bpp: 407 Time window: 2025-11-28 08:58:07 - 2025-11-28 09:58:29 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0055s User: 0.0009s Wall: 0.0019s flows/second: 73026.1 Runtime: 0.0019s