Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 11:59:09.134 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 11:59:08.933 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 11:59:08.966 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 11:59:09.051 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 11:59:09.044 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 11:59:10.041 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39064 10 6452 1 2025-11-28 12:00:10.442 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:33526 10 6452 1 2025-11-28 12:01:10.798 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:58654 10 6452 1 2025-11-28 11:58:07.523 00:05:02.072 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 11:58:07.527 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:02:11.182 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58038 10 6452 1 2025-11-28 12:03:11.588 00:00:10.982 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-11-28 12:04:09.223 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:04:08.984 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:04:08.789 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:04:09.139 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:04:08.982 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:04:12.605 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-11-28 12:05:13.015 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40242 10 6452 1 2025-11-28 12:06:13.419 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:51996 10 6452 1 2025-11-28 12:07:13.792 00:00:10.875 TCP 1.101.0.1:3000 -> 23.104.0.1:56282 10 6452 1 2025-11-28 12:04:07.530 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:04:07.532 00:05:02.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:08:14.717 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:59968 10 6452 1 2025-11-28 12:09:08.768 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.197 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.130 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:09:09.330 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:09:09.279 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:09:15.138 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41364 10 6452 1 2025-11-28 12:10:15.548 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53890 10 6452 1 2025-11-28 12:11:15.952 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34290 10 6452 1 2025-11-28 12:12:16.357 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58986 10 6452 1 2025-11-28 12:13:16.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43058 10 6452 1 2025-11-28 12:10:07.532 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:14:09.465 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:14:09.374 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.076 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.382 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:14:09.420 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:10:07.535 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:14:17.182 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42908 10 6452 1 2025-11-28 12:15:17.587 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50196 10 6452 1 2025-11-28 12:16:17.991 00:00:10.418 TCP 1.101.0.1:3000 -> 23.104.0.1:54752 11 6504 1 2025-11-28 12:17:18.453 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55326 10 6452 1 2025-11-28 12:18:18.857 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40744 10 6452 1 2025-11-28 12:19:09.491 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:19:09.540 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.475 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.408 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:19:09.571 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:19:19.274 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47564 10 6452 1 2025-11-28 12:16:07.539 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:16:07.536 00:05:02.070 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:20:19.685 00:00:10.498 TCP 1.101.0.1:3000 -> 23.104.0.1:56572 10 6452 1 2025-11-28 12:21:20.224 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43484 10 6452 1 2025-11-28 12:22:20.634 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35748 10 6452 1 2025-11-28 12:23:21.037 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:59322 10 6452 1 2025-11-28 12:24:09.687 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:24:09.525 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:24:09.364 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:24:09.605 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:24:09.643 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:24:21.441 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:37844 10 6452 1 2025-11-28 12:25:21.839 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:37160 10 6452 1 2025-11-28 12:22:07.538 00:05:02.071 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:22:07.536 00:05:02.076 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:26:22.269 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43456 10 6452 1 2025-11-28 12:27:22.682 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-11-28 12:28:23.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53060 10 6452 1 2025-11-28 12:29:09.631 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.478 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:29:09.569 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.483 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:29:09.714 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:29:23.517 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52434 10 6452 1 2025-11-28 12:30:23.925 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:48160 10 6452 1 2025-11-28 12:31:24.293 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55924 10 6452 1 2025-11-28 12:28:07.543 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:28:07.547 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:32:24.692 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59696 10 6452 1 2025-11-28 12:33:25.064 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35518 10 6452 1 2025-11-28 12:34:09.783 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:34:09.490 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:34:09.671 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:34:09.594 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:34:09.755 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:34:25.469 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47930 10 6452 1 2025-11-28 12:35:25.873 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50628 10 6452 1 2025-11-28 12:36:26.241 00:00:15.713 TCP 1.101.0.1:3000 -> 23.104.0.1:58792 10 6452 1 2025-11-28 12:37:32.015 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48914 10 6452 1 2025-11-28 12:34:07.543 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:34:07.547 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:38:32.418 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:34150 10 6452 1 2025-11-28 12:39:10.072 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:39:10.048 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:39:09.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:39:09.989 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:39:09.992 00:00:00.050 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:39:32.823 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53310 10 6452 1 2025-11-28 12:40:33.196 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46916 10 6452 1 2025-11-28 12:41:33.600 00:00:10.406 TCP 1.101.0.1:3000 -> 23.104.0.1:39756 12 10369 1 2025-11-28 12:42:34.052 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39208 10 6452 1 2025-11-28 12:43:34.457 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:47458 10 6452 1 2025-11-28 12:40:07.546 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:44:10.028 00:00:00.019 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:44:09.850 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:44:09.924 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:44:09.914 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:44:09.739 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:40:07.551 00:05:02.063 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:44:34.817 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52802 10 6452 1 2025-11-28 12:45:35.217 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43896 10 6452 1 2025-11-28 12:46:35.629 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:50934 10 6452 1 2025-11-28 12:47:35.997 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57166 10 6452 1 2025-11-28 12:48:36.398 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:43262 10 6452 1 2025-11-28 12:49:10.213 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:49:09.953 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:49:10.110 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:49:10.132 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:49:09.875 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:49:36.812 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51906 10 6452 1 2025-11-28 12:46:07.549 00:05:02.073 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:46:07.552 00:05:02.067 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:50:37.217 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-11-28 12:51:37.621 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37658 10 6452 1 2025-11-28 12:52:37.983 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59742 10 6452 1 2025-11-28 12:53:38.391 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44160 10 6452 1 2025-11-28 12:54:10.145 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 12:54:10.207 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 12:54:10.094 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:54:10.059 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 12:54:10.070 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 12:54:38.755 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:52402 10 6452 1 2025-11-28 12:55:39.185 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40382 10 6452 1 2025-11-28 12:52:07.556 00:05:02.064 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 12:52:07.553 00:05:02.069 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 12:56:39.587 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:44980 10 6452 1 2025-11-28 12:57:39.953 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:58790 10 6452 1 2025-11-28 12:58:40.326 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42916 10 6452 1 Summary: total flows: 140, total bytes: 420969, total packets: 1023, avg bps: 924, avg pps: 0, avg bpp: 411 Time window: 2025-11-28 11:58:07 - 2025-11-28 12:58:50 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0027s User: 0.0044s Wall: 0.0025s flows/second: 56888.4 Runtime: 0.0025s