Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 20:59:19.835 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 20:59:19.900 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:59:19.690 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:59:19.753 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 20:59:19.912 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:59:11.129 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38774 10 6452 1 2025-11-28 21:00:11.536 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:48930 10 6452 1 2025-11-28 21:01:11.958 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60048 10 6452 1 2025-11-28 20:58:07.713 00:05:02.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 20:58:07.712 00:05:02.138 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:02:12.364 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60202 10 6452 1 2025-11-28 21:03:12.765 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:43614 10 6452 1 2025-11-28 21:04:20.188 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:04:20.204 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:04:20.339 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:04:20.239 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:04:20.423 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:04:13.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52046 10 6452 1 2025-11-28 21:05:13.537 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:32802 10 6452 1 2025-11-28 21:06:13.940 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:34420 10 6452 1 2025-11-28 21:07:14.358 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58132 10 6452 1 2025-11-28 21:04:07.713 00:05:02.137 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:04:07.715 00:05:02.133 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:08:14.763 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:43706 10 6452 1 2025-11-28 21:09:20.220 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:09:20.296 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:09:20.093 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:09:20.137 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:09:20.459 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:09:15.182 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:50144 10 6452 1 2025-11-28 21:10:15.594 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:52060 10 6452 1 2025-11-28 21:11:16.011 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:57436 10 6452 1 2025-11-28 21:12:16.407 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:57330 10 6452 1 2025-11-28 21:13:16.773 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45612 10 6452 1 2025-11-28 21:10:07.722 00:05:02.132 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:10:07.725 00:05:02.126 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:14:20.287 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:14:20.258 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:14:20.057 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:14:20.203 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:14:20.298 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:14:17.184 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:57930 10 6452 1 2025-11-28 21:15:17.557 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-11-28 21:16:17.958 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46350 10 6452 1 2025-11-28 21:17:18.359 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46390 10 6452 1 2025-11-28 21:18:18.761 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:53042 10 6452 1 2025-11-28 21:19:20.310 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:19:20.296 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:19:20.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:19:20.227 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:19:20.241 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:19:19.186 00:00:11.081 TCP 1.101.0.1:3000 -> 23.104.0.1:57380 10 6452 1 2025-11-28 21:16:07.727 00:05:02.127 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:16:07.730 00:05:02.122 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:20:20.305 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44866 10 6452 1 2025-11-28 21:21:20.719 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:47876 11 6492 1 2025-11-28 21:22:21.129 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 10 6452 1 2025-11-28 21:23:21.543 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:57408 10 6452 1 2025-11-28 21:24:20.544 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:24:20.703 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:24:20.544 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:24:20.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:24:20.628 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:24:21.952 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:52576 10 6452 1 2025-11-28 21:25:22.339 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40134 10 6452 1 2025-11-28 21:22:07.730 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:22:07.732 00:05:02.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:26:22.753 00:00:10.461 TCP 1.101.0.1:3000 -> 23.104.0.1:43704 12 10369 1 2025-11-28 21:27:23.252 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 10 6452 1 2025-11-28 21:28:23.662 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36594 10 6452 1 2025-11-28 21:29:20.407 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:29:20.352 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:29:20.489 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:29:20.404 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:29:20.574 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:29:24.070 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60988 10 6452 1 2025-11-28 21:30:24.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34288 10 6452 1 2025-11-28 21:31:24.883 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51056 12 6556 1 2025-11-28 21:28:07.730 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:28:07.735 00:05:02.120 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:32:25.293 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43220 10 6452 1 2025-11-28 21:33:25.693 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38430 10 6452 1 2025-11-28 21:34:20.632 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:34:20.408 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:34:20.632 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:34:20.592 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:34:20.715 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:34:26.109 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46900 10 6452 1 2025-11-28 21:35:26.510 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35926 10 6452 1 2025-11-28 21:36:26.912 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:37524 12 10375 1 2025-11-28 21:37:27.391 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38470 10 6452 1 2025-11-28 21:34:07.734 00:05:02.123 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:34:07.732 00:05:02.128 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:38:27.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36872 10 6452 1 2025-11-28 21:39:20.516 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:39:20.751 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:39:20.683 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:39:20.434 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:39:20.533 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:39:28.201 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48592 10 6452 1 2025-11-28 21:40:28.603 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42020 10 6452 1 2025-11-28 21:41:29.008 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57294 10 6452 1 2025-11-28 21:42:29.420 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41506 10 6452 1 2025-11-28 21:43:29.827 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-11-28 21:40:07.737 00:05:02.121 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:40:07.734 00:05:02.126 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:44:20.861 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:44:20.872 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:44:21.204 00:00:00.027 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:44:21.134 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:44:21.216 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:44:30.191 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55942 10 6452 1 2025-11-28 21:45:30.599 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45460 10 6452 1 2025-11-28 21:46:31.004 00:00:11.633 TCP 1.101.0.1:3000 -> 23.104.0.1:41500 10 6452 1 2025-11-28 21:47:32.677 00:00:10.417 TCP 1.101.0.1:3000 -> 23.104.0.1:36836 11 6504 1 2025-11-28 21:48:33.128 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:44426 10 6452 1 2025-11-28 21:49:20.528 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:49:20.573 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:49:20.862 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:49:20.812 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:49:20.945 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:49:33.533 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43932 10 6452 1 2025-11-28 21:46:07.759 00:05:02.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:46:07.758 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:50:33.898 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40184 10 6452 1 2025-11-28 21:51:34.303 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54266 10 6452 1 2025-11-28 21:52:34.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42248 10 6452 1 2025-11-28 21:53:35.113 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48350 10 6452 1 2025-11-28 21:54:20.925 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:54:20.908 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:54:20.780 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:54:20.842 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:54:20.749 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:54:35.514 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38394 10 6452 1 2025-11-28 21:55:35.919 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-28 21:52:07.759 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 21:52:07.763 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:56:36.321 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-11-28 21:57:36.735 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50964 10 6452 1 2025-11-28 21:58:37.137 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46256 10 6452 1 Summary: total flows: 140, total bytes: 425036, total packets: 1028, avg bps: 934, avg pps: 0, avg bpp: 413 Time window: 2025-11-28 20:58:07 - 2025-11-28 21:58:47 Total flows processed: 140, passed: 140, Blocks skipped: 0, Bytes read: 14624 Sys: 0.0042s User: 0.0017s Wall: 0.0021s flows/second: 65881.6 Runtime: 0.0021s