Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 21:59:20.786 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 21:59:20.888 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 21:59:21.008 00:00:00.044 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:59:21.130 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 21:59:21.213 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 21:59:37.553 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-28 22:00:37.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38468 10 6452 1 2025-11-28 22:01:38.372 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:54706 10 6452 1 2025-11-28 21:58:07.766 00:05:02.098 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 21:58:07.763 00:05:02.103 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:02:38.769 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:47658 10 6452 1 2025-11-28 22:03:39.186 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 10 6452 1 2025-11-28 22:04:21.260 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:04:21.079 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:04:20.992 00:00:00.045 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:04:21.261 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:04:21.076 00:00:00.044 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:04:39.569 00:00:11.478 TCP 1.101.0.1:3000 -> 23.104.0.1:42436 10 6452 1 2025-11-28 22:05:41.115 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39730 10 6452 1 2025-11-28 22:06:41.481 00:00:19.552 TCP 1.101.0.1:3000 -> 23.104.0.1:35154 10 6452 1 2025-11-28 22:07:51.108 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51372 10 6452 1 2025-11-28 22:04:07.763 00:05:02.106 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:04:07.764 00:05:02.101 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:08:51.478 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39368 10 6452 1 2025-11-28 22:09:21.094 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:09:21.008 00:00:00.046 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:09:21.172 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:09:21.337 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:09:21.253 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:09:51.885 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38036 10 6452 1 2025-11-28 22:10:52.297 00:00:10.847 TCP 1.101.0.1:3000 -> 23.104.0.1:36406 10 6452 1 2025-11-28 22:11:53.184 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:36688 12 10375 1 2025-11-28 22:12:53.663 00:00:11.798 TCP 1.101.0.1:3000 -> 23.104.0.1:45508 10 6452 1 2025-11-28 22:10:07.764 00:05:02.105 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:13:55.502 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:38346 10 6452 1 2025-11-28 22:10:07.766 00:05:02.100 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:14:21.485 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:14:21.145 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:14:21.422 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:14:21.524 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:14:21.505 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:14:55.902 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 12 6556 1 2025-11-28 22:15:56.318 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46454 12 6556 1 2025-11-28 22:16:56.721 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:40204 10 6452 1 2025-11-28 22:17:57.134 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38860 10 6452 1 2025-11-28 22:18:57.541 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:36046 10 6452 1 2025-11-28 22:19:21.580 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:19:21.338 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:19:21.511 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:19:21.497 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:19:21.556 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:16:07.765 00:05:02.107 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:19:57.944 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:38596 10 6452 1 2025-11-28 22:16:07.768 00:05:02.102 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:20:58.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49164 10 6452 1 2025-11-28 22:21:58.767 00:00:10.400 TCP 1.101.0.1:3000 -> 23.104.0.1:40934 10 6452 1 2025-11-28 22:22:59.208 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38528 10 6452 1 2025-11-28 22:23:59.613 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38308 10 6452 1 2025-11-28 22:24:21.826 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:24:21.552 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:24:21.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:24:21.820 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:24:21.863 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:25:00.014 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36716 10 6452 1 2025-11-28 22:22:07.769 00:05:02.104 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:26:00.425 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-11-28 22:22:07.772 00:05:02.099 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:27:00.826 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52864 10 6452 1 2025-11-28 22:28:01.236 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58694 10 6452 1 2025-11-28 22:29:01.645 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40720 10 6452 1 2025-11-28 22:29:21.804 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:29:21.759 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:29:21.633 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:29:21.722 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:29:21.589 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:30:02.059 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:40716 10 6452 1 2025-11-28 22:31:02.420 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47230 10 6452 1 2025-11-28 22:28:07.768 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:28:07.772 00:05:02.110 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:32:02.825 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:48810 10 6452 1 2025-11-28 22:33:03.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46644 10 6452 1 2025-11-28 22:34:03.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:35376 10 6452 1 2025-11-28 22:34:21.983 00:00:00.027 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:34:21.725 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:34:21.763 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:34:21.900 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:34:21.901 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:35:04.030 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58920 10 6452 1 2025-11-28 22:36:04.439 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53256 10 6452 1 2025-11-28 22:37:04.844 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:60698 10 6452 1 2025-11-28 22:34:07.773 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:34:07.771 00:05:02.116 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:38:05.275 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35120 10 6452 1 2025-11-28 22:39:21.899 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:39:05.686 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41996 10 6452 1 2025-11-28 22:39:21.894 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:39:21.634 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:39:21.816 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:39:21.820 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:40:06.113 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 10 6452 1 2025-11-28 22:41:06.509 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50122 10 6452 1 2025-11-28 22:42:06.925 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:50388 10 6452 1 2025-11-28 22:43:07.338 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:33882 10 6452 1 2025-11-28 22:40:07.775 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:40:07.773 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:44:07.714 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:58098 10 6452 1 2025-11-28 22:44:22.248 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:44:22.089 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:44:21.869 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:44:22.165 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:44:22.051 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:45:08.104 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59224 10 6452 1 2025-11-28 22:46:08.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48078 10 6452 1 2025-11-28 22:47:08.917 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55086 10 6452 1 2025-11-28 22:48:09.283 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36734 10 6452 1 2025-11-28 22:49:09.693 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:34798 10 6452 1 2025-11-28 22:49:22.166 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:49:22.182 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:49:22.162 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:49:22.254 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:49:22.246 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:46:07.774 00:05:02.115 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:46:07.777 00:05:02.111 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:50:10.067 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:35906 10 6452 1 2025-11-28 22:51:10.434 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:47968 10 6452 1 2025-11-28 22:52:10.804 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:47374 10 6452 1 2025-11-28 22:53:11.179 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50966 10 6452 1 2025-11-28 22:54:22.474 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-28 22:54:22.129 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 22:54:22.117 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:54:22.391 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-28 22:54:22.219 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 22:54:11.594 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52332 10 6452 1 2025-11-28 22:55:11.998 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57668 10 6452 1 2025-11-28 22:52:07.777 00:05:02.115 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-28 22:52:07.774 00:05:02.119 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-28 22:56:12.399 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:39842 10 6452 1 2025-11-28 22:57:12.773 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53688 10 6452 1 2025-11-28 22:58:13.180 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55530 10 6452 1 Summary: total flows: 139, total bytes: 414679, total packets: 1016, avg bps: 917, avg pps: 0, avg bpp: 408 Time window: 2025-11-28 21:58:07 - 2025-11-28 22:58:23 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0022s User: 0.0022s Wall: 0.0012s flows/second: 113008.0 Runtime: 0.0012s