Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 14:59:12.721 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 14:59:12.467 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 14:59:12.478 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:59:12.640 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 14:59:12.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 14:59:29.899 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:43666 10 6452 1 2025-11-28 15:00:30.267 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42864 10 6452 1 2025-11-28 15:01:30.669 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55354 10 6452 1 2025-11-28 14:58:07.594 00:05:02.086 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 14:58:07.596 00:05:02.081 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:02:31.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34562 10 6452 1 2025-11-28 15:03:31.515 00:00:10.962 TCP 1.101.0.1:3000 -> 23.104.0.1:60682 10 6452 1 2025-11-28 15:04:12.863 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:04:12.686 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:04:12.921 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:04:12.852 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:04:13.005 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:04:32.523 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43590 10 6452 1 2025-11-28 15:05:32.937 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:43964 10 6452 1 2025-11-28 15:06:33.326 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:37780 12 10375 1 2025-11-28 15:07:33.802 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:53728 10 6452 1 2025-11-28 15:04:07.596 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:04:07.599 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:08:34.174 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34182 10 6452 1 2025-11-28 15:09:12.674 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:09:12.951 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:09:12.933 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:09:12.744 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:09:13.017 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:09:34.577 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56794 10 6452 1 2025-11-28 15:10:34.996 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46042 10 6452 1 2025-11-28 15:11:35.356 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58678 10 6452 1 2025-11-28 15:12:35.720 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40206 10 6452 1 2025-11-28 15:13:36.132 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56814 10 6452 1 2025-11-28 15:10:07.600 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:10:07.597 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:14:12.942 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:14:12.989 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:14:13.109 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:14:13.064 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:14:13.192 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:14:36.537 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:32894 10 6452 1 2025-11-28 15:15:36.950 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-11-28 15:16:37.358 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40038 10 6452 1 2025-11-28 15:17:37.769 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46966 10 6452 1 2025-11-28 15:18:38.182 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33024 10 6452 1 2025-11-28 15:19:13.035 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:19:12.939 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:19:12.962 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:19:12.952 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:19:12.958 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:19:38.580 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-11-28 15:16:07.599 00:05:02.084 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:16:07.602 00:05:02.079 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:20:38.985 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:55720 10 6452 1 2025-11-28 15:21:39.352 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:45790 10 6452 1 2025-11-28 15:22:39.717 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:49062 10 6452 1 2025-11-28 15:23:40.132 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:52446 10 6452 1 2025-11-28 15:24:13.223 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:24:13.142 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:24:13.135 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:24:13.141 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:24:12.949 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:24:40.532 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52642 10 6452 1 2025-11-28 15:25:40.939 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:53682 10 6452 1 2025-11-28 15:22:07.602 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:22:07.605 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:26:41.360 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49612 10 6452 1 2025-11-28 15:27:41.726 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50154 10 6452 1 2025-11-28 15:28:42.139 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:60106 10 6452 1 2025-11-28 15:29:13.283 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:29:12.986 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:29:13.170 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:29:13.166 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:29:13.254 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:29:42.506 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40110 10 6452 1 2025-11-28 15:30:42.872 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:54226 10 6452 1 2025-11-28 15:31:43.287 00:00:10.522 TCP 1.101.0.1:3000 -> 23.104.0.1:40974 14 14292 1 2025-11-28 15:28:07.605 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:28:07.603 00:05:02.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:32:43.847 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43502 10 6452 1 2025-11-28 15:33:44.276 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54548 10 6452 1 2025-11-28 15:34:13.373 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:34:13.299 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:34:13.290 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:34:13.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:34:13.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:34:44.677 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:40954 12 6556 1 2025-11-28 15:35:45.114 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:60484 10 6452 1 2025-11-28 15:36:45.475 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50622 10 6452 1 2025-11-28 15:37:45.882 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48056 10 6452 1 2025-11-28 15:34:07.606 00:05:02.085 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:34:07.603 00:05:02.090 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:38:46.290 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:55448 10 6452 1 2025-11-28 15:39:13.777 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:39:13.531 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:39:13.605 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:39:13.694 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:39:13.766 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:39:46.690 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46408 10 6452 1 2025-11-28 15:40:47.105 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46572 10 6452 1 2025-11-28 15:41:47.508 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45550 10 6452 1 2025-11-28 15:42:47.914 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 10 6452 1 2025-11-28 15:43:48.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53046 10 6452 1 2025-11-28 15:40:07.611 00:05:02.085 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:40:07.613 00:05:02.080 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:44:13.692 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:44:13.634 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:44:13.253 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:44:13.610 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:44:13.654 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:44:48.726 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:47686 10 6452 1 2025-11-28 15:45:49.104 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56710 10 6452 1 2025-11-28 15:46:49.515 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:58886 12 10375 1 2025-11-28 15:47:49.990 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 10 6452 1 2025-11-28 15:48:50.400 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36422 10 6452 1 2025-11-28 15:49:13.603 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:49:13.534 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:49:13.600 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:49:13.752 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:49:13.684 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:46:07.613 00:05:02.088 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:49:50.803 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53826 10 6452 1 2025-11-28 15:46:07.616 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:50:51.219 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49104 10 6452 1 2025-11-28 15:51:51.622 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:33082 10 6452 1 2025-11-28 15:52:52.036 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54622 10 6452 1 2025-11-28 15:53:52.439 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56960 10 6452 1 2025-11-28 15:54:13.765 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 15:54:13.761 00:00:00.029 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 15:54:13.405 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:54:13.683 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 15:54:13.671 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 15:54:52.844 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:56662 10 6452 1 2025-11-28 15:55:53.268 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47974 10 6452 1 2025-11-28 15:52:07.616 00:05:02.083 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 15:52:07.615 00:05:02.087 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 15:56:53.670 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:38356 10 6452 1 2025-11-28 15:57:54.036 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:51138 10 6452 1 Summary: total flows: 139, total bytes: 426338, total packets: 1020, avg bps: 948, avg pps: 0, avg bpp: 417 Time window: 2025-11-28 14:58:07 - 2025-11-28 15:58:04 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0029s User: 0.0029s Wall: 0.0018s flows/second: 76580.6 Runtime: 0.0018s