Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 09:59:06.609 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 09:59:06.563 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:59:06.678 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 09:59:06.677 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 09:59:06.762 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 09:59:19.190 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60318 10 6452 1 2025-11-28 10:00:19.601 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44684 10 6452 1 2025-11-28 10:01:20.007 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59268 10 6452 1 2025-11-28 09:58:07.491 00:05:02.046 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 09:58:07.496 00:05:02.041 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:02:20.412 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39572 10 6452 1 2025-11-28 10:03:20.818 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52974 10 6452 1 2025-11-28 10:04:06.537 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:04:06.698 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:04:06.711 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:04:06.526 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:04:06.793 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:04:21.217 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:32862 10 6452 1 2025-11-28 10:05:21.625 00:00:10.387 TCP 1.101.0.1:3000 -> 23.104.0.1:35828 10 6452 1 2025-11-28 10:06:22.064 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50540 10 6452 1 2025-11-28 10:07:22.472 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56294 10 6452 1 2025-11-28 10:04:07.497 00:05:02.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:04:07.494 00:05:02.053 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:08:22.841 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:44696 10 6452 1 2025-11-28 10:09:06.937 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:09:06.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:09:06.665 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:09:06.856 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:09:06.728 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:09:23.274 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45120 10 6452 1 2025-11-28 10:10:23.680 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55384 10 6452 1 2025-11-28 10:11:24.106 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40686 10 6452 1 2025-11-28 10:12:24.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54238 10 6452 1 2025-11-28 10:13:24.877 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:39588 10 6452 1 2025-11-28 10:10:07.497 00:05:02.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:14:07.259 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:14:06.973 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.195 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:14:07.174 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:10:07.500 00:05:02.046 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:14:25.294 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35244 10 6452 1 2025-11-28 10:15:25.657 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:45014 10 6452 1 2025-11-28 10:16:26.056 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:43630 10 6452 1 2025-11-28 10:17:26.419 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45864 10 6452 1 2025-11-28 10:18:26.820 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48802 10 6452 1 2025-11-28 10:19:07.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:19:07.109 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:19:06.874 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:19:07.100 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:19:07.009 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:19:27.227 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43800 10 6452 1 2025-11-28 10:16:07.501 00:05:02.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:16:07.499 00:05:02.050 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:20:27.633 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:33816 10 6452 1 2025-11-28 10:21:28.052 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40064 10 6452 1 2025-11-28 10:22:28.450 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47112 10 6452 1 2025-11-28 10:23:28.849 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:39998 10 6452 1 2025-11-28 10:24:06.785 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:24:07.007 00:00:00.042 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:24:07.114 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:24:07.067 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:24:06.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:24:29.268 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53366 10 6452 1 2025-11-28 10:25:29.678 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42400 10 6452 1 2025-11-28 10:22:07.503 00:05:02.044 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:22:07.501 00:05:02.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:26:30.115 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-11-28 10:27:30.529 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:41070 10 6452 1 2025-11-28 10:28:30.894 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-11-28 10:29:07.481 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:29:07.202 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:29:07.227 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:29:07.397 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:29:07.350 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:29:31.274 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:60012 10 6452 1 2025-11-28 10:30:31.652 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:52556 10 6452 1 2025-11-28 10:31:32.020 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:58640 12 10375 1 2025-11-28 10:28:07.503 00:05:02.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:28:07.502 00:05:02.049 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:32:32.502 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6452 1 2025-11-28 10:33:32.901 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48506 12 6556 1 2025-11-28 10:34:07.463 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.531 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:34:07.601 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:34:07.689 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:34:33.308 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:44644 10 6452 1 2025-11-28 10:35:33.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33894 10 6452 1 2025-11-28 10:36:34.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44928 10 6452 1 2025-11-28 10:37:34.500 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33922 10 6452 1 2025-11-28 10:34:07.504 00:05:02.048 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:34:07.507 00:05:02.043 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:38:34.908 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60278 10 6452 1 2025-11-28 10:39:07.593 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:39:07.287 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.288 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.512 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:39:07.481 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:39:35.316 00:00:11.015 TCP 1.101.0.1:3000 -> 23.104.0.1:40260 10 6452 1 2025-11-28 10:40:36.369 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58844 10 6452 1 2025-11-28 10:41:36.772 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32858 10 6452 1 2025-11-28 10:42:37.184 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:41874 10 6452 1 2025-11-28 10:43:37.580 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:38990 10 6452 1 2025-11-28 10:40:07.505 00:05:02.051 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:44:07.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:44:07.523 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:44:07.410 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:44:07.526 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:44:07.350 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:40:07.508 00:05:02.045 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:44:37.984 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58508 10 6452 1 2025-11-28 10:45:38.390 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:46318 10 6452 1 2025-11-28 10:46:38.794 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6452 1 2025-11-28 10:47:39.167 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40852 10 6452 1 2025-11-28 10:48:39.574 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33982 10 6452 1 2025-11-28 10:49:07.625 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:49:07.456 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:49:07.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:49:07.543 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:49:07.534 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:49:39.978 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:39680 10 6452 1 2025-11-28 10:46:07.505 00:05:02.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:46:07.510 00:05:02.049 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:50:40.395 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:44016 10 6452 1 2025-11-28 10:51:40.759 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:48100 10 6452 1 2025-11-28 10:52:41.181 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38300 10 6452 1 2025-11-28 10:53:41.581 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46634 10 6452 1 2025-11-28 10:54:07.989 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 10:54:07.830 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 10:54:07.917 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:54:07.905 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 10:54:07.947 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 10:54:41.981 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:53938 10 6452 1 2025-11-28 10:55:42.347 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52024 10 6452 1 2025-11-28 10:52:07.507 00:05:02.054 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 10:52:07.510 00:05:02.048 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 10:56:42.753 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:36032 10 6452 1 2025-11-28 10:57:43.188 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33688 10 6452 1 Summary: total flows: 139, total bytes: 414575, total packets: 1014, avg bps: 924, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 09:58:07 - 2025-11-28 10:57:53 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0044s User: 0.0011s Wall: 0.0018s flows/second: 79245.4 Runtime: 0.0018s