Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:59:09.911 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:00:09.911 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 08:59:09.912 00:01:00.001 TCP 179.27.28.27:53088 -> 179.27.28.28:179 4 246 1 2025-11-20 09:00:12.666 00:00:00.021 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:00:12.665 00:00:00.021 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:01:09.910 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:01:09.911 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:02:09.910 00:00:00.004 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:02:09.911 00:00:00.001 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:03:09.913 00:00:00.002 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:03:09.912 00:00:00.003 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:04:09.911 00:00:00.004 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:05:09.911 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:04:09.912 00:01:00.001 TCP 179.27.28.27:53088 -> 179.27.28.28:179 4 246 1 2025-11-20 09:05:12.803 00:00:00.023 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:05:12.799 00:00:00.023 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:06:09.912 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:06:09.910 00:00:00.004 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:07:09.914 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:07:09.913 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:08:09.914 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:08:09.913 00:00:00.004 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:09:09.915 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:10:09.915 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:10:12.847 00:00:00.021 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:09:09.915 00:01:00.003 TCP 179.27.28.27:53088 -> 179.27.28.28:179 4 246 1 2025-11-20 09:10:12.845 00:00:00.022 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:11:09.915 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:11:09.915 00:01:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:12:09.916 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:13:09.915 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:13:09.915 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:14:09.917 00:00:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:14:09.915 00:00:00.003 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:15:09.916 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:15:09.917 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:15:13.108 00:00:00.021 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:15:13.111 00:00:00.021 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:16:09.918 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:16:09.916 00:01:00.004 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:17:09.918 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:18:09.919 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:18:09.917 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:19:09.916 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:19:09.920 00:00:00.040 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:20:09.916 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:20:13.157 00:00:00.025 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:20:09.919 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:20:13.154 00:00:00.025 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:21:09.919 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:21:09.917 00:01:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:22:09.919 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:23:09.920 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:23:09.917 00:00:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:24:09.920 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:24:09.917 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:25:09.920 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:25:09.917 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:25:13.277 00:00:00.027 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:25:13.274 00:00:00.028 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:26:09.917 00:00:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:26:09.921 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:27:09.917 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:27:09.921 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:28:09.918 00:00:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:28:09.921 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:29:09.918 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:29:09.921 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:30:09.921 00:00:00.040 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 123 1 2025-11-20 09:30:09.918 00:00:00.005 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:30:13.437 00:00:00.023 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:30:13.440 00:00:00.022 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:31:09.918 00:00:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:32:09.917 00:00:00.007 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:31:09.921 00:01:00.002 TCP 179.27.28.27:53088 -> 179.27.28.28:179 3 194 1 2025-11-20 09:33:09.920 00:00:00.006 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:33:09.923 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:34:09.924 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:34:09.918 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:35:09.918 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:35:09.923 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:35:13.439 00:00:00.023 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:35:13.437 00:00:00.022 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:36:09.919 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:36:09.924 00:01:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 142 1 2025-11-20 09:37:09.919 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:38:09.926 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:38:09.918 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:39:09.925 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:39:09.919 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:40:09.919 00:00:00.009 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:40:09.925 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:40:13.376 00:00:00.021 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:40:13.380 00:00:00.021 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:41:09.919 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:42:09.920 00:00:00.008 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:41:09.925 00:01:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 2 142 1 2025-11-20 09:43:09.924 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:43:09.919 00:01:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:44:09.927 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:45:09.920 00:00:00.009 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:45:09.927 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:45:14.016 00:00:00.021 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:45:14.013 00:00:00.022 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:46:09.920 00:00:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:46:09.927 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:47:09.921 00:00:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:47:09.928 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:48:09.928 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:49:09.929 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:48:09.921 00:01:00.011 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:50:09.920 00:00:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:50:09.927 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:50:13.610 00:00:00.023 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:50:13.613 00:00:00.022 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:51:09.928 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:51:09.923 00:00:00.009 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:52:09.927 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:52:09.922 00:00:00.009 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:53:09.928 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:54:09.929 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:53:09.922 00:01:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 4 246 1 2025-11-20 09:55:09.923 00:00:00.009 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:55:09.929 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:55:13.945 00:00:00.022 ICMP 28.107.0.1:0 -> 27.0.198.2:0.0 3 252 1 2025-11-20 09:55:13.944 00:00:00.021 ICMP 27.0.198.2:0 -> 28.107.0.1:8.0 3 252 1 2025-11-20 09:56:09.922 00:00:00.010 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:56:09.930 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:57:09.932 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 2025-11-20 09:57:09.923 00:00:00.012 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:58:09.922 00:00:00.012 TCP 179.27.28.28:179 -> 179.27.28.27:53088 2 123 1 2025-11-20 09:58:09.933 00:00:00.000 TCP 179.27.28.27:53088 -> 179.27.28.28:179 1 71 1 Summary: total flows: 132, total bytes: 18936, total packets: 276, avg bps: 42, avg pps: 0, avg bpp: 68 Time window: 2025-11-20 08:59:09 - 2025-11-20 09:58:09 Total flows processed: 132, passed: 132, Blocks skipped: 0, Bytes read: 13792 Sys: 0.0045s User: 0.0011s Wall: 0.0023s flows/second: 56918.7 Runtime: 0.0023s