Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 16:59:15.176 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 16:59:15.095 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:59:14.990 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 16:59:15.205 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 16:59:14.916 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 16:59:20.186 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:49124 10 6661 1 2025-11-28 17:00:20.562 00:00:10.537 TCP 1.101.0.1:3000 -> 23.104.0.1:46776 10 6661 1 2025-11-28 17:01:21.143 00:00:10.409 TCP 1.101.0.1:3000 -> 23.104.0.1:35282 12 10369 1 2025-11-28 16:58:07.633 00:05:02.093 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 16:58:07.631 00:05:02.098 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:02:21.593 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49112 10 6452 1 2025-11-28 17:03:21.990 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 10 6452 1 2025-11-28 17:04:15.030 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:04:14.866 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:04:15.237 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:04:15.038 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:04:15.329 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:04:22.396 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33990 10 6452 1 2025-11-28 17:05:22.799 00:00:10.408 TCP 1.101.0.1:3000 -> 23.104.0.1:43878 10 6452 1 2025-11-28 17:06:23.243 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52658 10 6452 1 2025-11-28 17:07:23.645 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45132 10 6452 1 2025-11-28 17:04:07.635 00:05:02.094 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:04:07.631 00:05:02.100 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:08:24.057 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55748 10 6452 1 2025-11-28 17:09:15.255 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:09:15.254 00:00:00.038 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.173 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:09:15.255 00:00:00.037 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:09:24.466 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55298 10 6452 1 2025-11-28 17:10:24.870 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56272 10 6452 1 2025-11-28 17:11:25.277 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57008 10 6452 1 2025-11-28 17:12:25.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56942 10 6452 1 2025-11-28 17:13:26.114 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47738 10 6452 1 2025-11-28 17:10:07.636 00:05:02.096 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:10:07.633 00:05:02.102 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:14:15.354 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:14:15.122 00:00:00.028 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.329 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.272 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:14:15.271 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:14:26.515 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57596 10 6452 1 2025-11-28 17:15:26.876 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:48522 10 6452 1 2025-11-28 17:16:27.239 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35740 10 6452 1 2025-11-28 17:17:27.644 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51344 10 6452 1 2025-11-28 17:18:28.060 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:50270 10 6452 1 2025-11-28 17:19:15.482 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:19:15.397 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:19:15.349 00:00:00.015 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:19:15.400 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:19:15.407 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:19:28.421 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57836 10 6452 1 2025-11-28 17:16:07.637 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:16:07.633 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:20:28.823 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-28 17:21:29.233 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:48854 10 6452 1 2025-11-28 17:22:29.593 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33274 10 6452 1 2025-11-28 17:23:29.995 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53204 10 6452 1 2025-11-28 17:24:15.736 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:24:15.535 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.213 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.654 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:24:15.515 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:24:30.398 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34470 10 6452 1 2025-11-28 17:25:30.799 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:60404 10 6452 1 2025-11-28 17:22:07.634 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:22:07.636 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:26:31.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49792 10 6452 1 2025-11-28 17:27:31.593 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50630 10 6452 1 2025-11-28 17:28:31.998 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57796 10 6452 1 2025-11-28 17:29:15.776 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:29:15.318 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:29:15.920 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:29:16.004 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:29:16.007 00:00:00.036 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:29:32.403 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56496 10 6452 1 2025-11-28 17:30:32.805 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:46216 10 6452 1 2025-11-28 17:31:33.182 00:00:10.607 TCP 1.101.0.1:3000 -> 23.104.0.1:53806 12 10369 1 2025-11-28 17:28:07.635 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:28:07.638 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:32:33.835 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:55026 10 6452 1 2025-11-28 17:33:34.255 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50716 10 6452 1 2025-11-28 17:34:15.868 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:34:15.707 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.786 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:34:15.524 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:34:34.651 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48082 10 6452 1 2025-11-28 17:35:35.063 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46228 10 6452 1 2025-11-28 17:36:35.465 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39886 10 6452 1 2025-11-28 17:37:35.827 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35602 11 6492 1 2025-11-28 17:34:07.638 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:34:07.641 00:05:02.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:38:36.232 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36764 10 6452 1 2025-11-28 17:39:15.820 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:39:15.776 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:39:15.947 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:39:15.952 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:39:16.030 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:39:36.659 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58926 10 6452 1 2025-11-28 17:40:37.095 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39740 10 6452 1 2025-11-28 17:41:37.501 00:00:10.435 TCP 1.101.0.1:3000 -> 23.104.0.1:42978 12 10369 1 2025-11-28 17:42:37.979 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40910 10 6452 1 2025-11-28 17:43:38.405 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35998 10 6452 1 2025-11-28 17:40:07.639 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:40:07.642 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:44:15.934 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:44:15.798 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:44:16.148 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:44:16.066 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:44:15.996 00:00:00.039 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:44:38.806 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39658 10 6452 1 2025-11-28 17:45:39.176 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59518 10 6452 1 2025-11-28 17:46:39.578 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55450 10 6452 1 2025-11-28 17:47:39.983 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56330 10 6452 1 2025-11-28 17:48:40.389 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33246 10 6452 1 2025-11-28 17:49:15.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:49:15.959 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:49:16.053 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:49:15.978 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:49:16.051 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:49:40.802 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45034 10 6452 1 2025-11-28 17:46:07.640 00:05:02.108 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:46:07.642 00:05:02.103 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:50:41.168 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47970 10 6452 1 2025-11-28 17:51:41.538 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37428 10 6452 1 2025-11-28 17:52:41.944 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:57608 10 6452 1 2025-11-28 17:53:42.360 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34332 11 6492 1 2025-11-28 17:54:15.976 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 17:54:16.138 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:54:16.229 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 17:54:16.170 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 17:54:16.313 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 17:54:42.724 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-28 17:55:43.139 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:46554 10 6452 1 2025-11-28 17:52:07.643 00:05:02.104 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 17:52:07.640 00:05:02.109 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 17:56:43.500 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46892 10 6452 1 2025-11-28 17:57:43.910 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45236 10 6452 1 Summary: total flows: 139, total bytes: 422797, total packets: 1018, avg bps: 943, avg pps: 0, avg bpp: 415 Time window: 2025-11-28 16:58:07 - 2025-11-28 17:57:54 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0027s User: 0.0027s Wall: 0.0020s flows/second: 69846.4 Runtime: 0.0020s