Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 23:58:42.002 00:00:10.938 TCP 1.101.0.1:3000 -> 23.104.0.1:59208 10 6452 1 2025-10-04 23:58:39.277 00:01:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-04 23:57:39.279 00:02:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-04 23:59:42.977 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44612 10 6452 1 2025-10-05 00:00:43.380 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:57276 10 6452 1 2025-10-05 00:00:39.279 00:01:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:01:43.790 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:41904 10 6452 1 2025-10-05 00:00:39.277 00:02:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 00:02:53.074 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:02:52.932 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:02:53.087 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:02:53.073 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:02:44.154 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46770 10 6452 1 2025-10-05 00:02:53.156 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:03:44.553 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:33570 10 6452 1 2025-10-05 00:02:39.280 00:02:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 00:03:39.277 00:01:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:04:44.956 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42382 10 6452 1 2025-10-05 00:05:45.320 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46816 10 6452 1 2025-10-05 00:05:39.281 00:01:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:06:45.723 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45890 10 6452 1 2025-10-05 00:07:53.360 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:07:53.056 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:07:53.175 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:07:53.203 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:07:53.278 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:07:46.135 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52028 10 6452 1 2025-10-05 00:08:46.541 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:55144 10 6452 1 2025-10-05 00:05:39.279 00:04:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:09:46.904 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47370 12 6556 1 2025-10-05 00:10:47.315 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54020 10 6452 1 2025-10-05 00:07:39.281 00:04:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:11:47.716 00:00:10.415 TCP 1.101.0.1:3000 -> 23.104.0.1:45908 11 6504 1 2025-10-05 00:12:53.362 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:12:53.280 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:12:53.188 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:12:53.273 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:12:53.193 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:12:48.171 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54432 10 6452 1 2025-10-05 00:13:48.571 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35776 10 6452 1 2025-10-05 00:10:39.278 00:04:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:14:48.934 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:45202 10 6452 1 2025-10-05 00:15:49.313 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43482 10 6452 1 2025-10-05 00:12:39.282 00:04:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:16:49.719 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38784 10 6452 1 2025-10-05 00:17:53.470 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:17:53.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:17:53.405 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:17:53.470 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:17:53.553 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:17:50.131 00:00:10.656 TCP 1.101.0.1:3000 -> 23.104.0.1:50676 10 6452 1 2025-10-05 00:18:50.826 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57860 10 6452 1 2025-10-05 00:15:39.282 00:04:00.386 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:19:51.231 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:47092 10 6452 1 2025-10-05 00:20:51.662 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41220 10 6452 1 2025-10-05 00:17:39.285 00:04:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:20:39.283 00:01:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:21:52.100 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:46814 10 6452 1 2025-10-05 00:22:53.685 00:00:00.036 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:22:53.976 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:22:53.329 00:00:00.036 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:22:53.604 00:00:00.036 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:22:53.981 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:22:52.462 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36466 10 6452 1 2025-10-05 00:23:52.821 00:00:10.726 TCP 1.101.0.1:3000 -> 23.104.0.1:40770 10 6452 1 2025-10-05 00:22:39.285 00:02:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 00:24:53.586 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45728 10 6452 1 2025-10-05 00:25:53.993 00:00:10.892 TCP 1.101.0.1:3000 -> 23.104.0.1:58346 10 6452 1 2025-10-05 00:25:39.285 00:01:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:22:39.287 00:04:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:26:54.926 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43192 10 6452 1 2025-10-05 00:27:53.887 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:27:53.591 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:27:53.733 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:27:53.525 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:27:53.804 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:27:55.345 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53792 10 6452 1 2025-10-05 00:27:39.287 00:01:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:28:55.750 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39678 10 6452 1 2025-10-05 00:27:39.285 00:02:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 00:29:56.151 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 10 6452 1 2025-10-05 00:30:56.559 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56220 10 6452 1 2025-10-05 00:29:39.287 00:02:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 00:30:39.285 00:01:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:31:56.959 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:38460 10 6452 1 2025-10-05 00:32:53.736 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:32:53.653 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:32:53.787 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:32:53.652 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:32:53.790 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:32:57.363 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51718 10 6452 1 2025-10-05 00:32:39.288 00:01:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:33:57.726 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:32914 10 6452 1 2025-10-05 00:32:39.285 00:02:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 00:34:58.138 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46614 10 6452 1 2025-10-05 00:35:58.546 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-10-05 00:34:39.289 00:02:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 00:35:39.287 00:01:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:36:58.949 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-05 00:37:53.621 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:37:53.769 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:37:53.719 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:37:53.707 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:37:53.789 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:37:59.358 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44362 10 6452 1 2025-10-05 00:37:39.289 00:01:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:38:59.757 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47662 10 6452 1 2025-10-05 00:40:00.166 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:42930 10 6452 1 2025-10-05 00:41:00.524 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33278 10 6452 1 2025-10-05 00:37:39.286 00:04:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:42:00.925 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-10-05 00:42:54.812 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:42:54.640 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:42:54.810 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:42:54.479 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:42:54.892 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:43:01.342 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-10-05 00:39:39.289 00:04:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:44:01.749 00:00:10.441 TCP 1.101.0.1:3000 -> 23.104.0.1:41294 12 10375 1 2025-10-05 00:45:02.225 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54208 10 6452 1 2025-10-05 00:46:02.625 00:00:14.729 TCP 1.101.0.1:3000 -> 23.104.0.1:48538 10 6452 1 2025-10-05 00:42:39.289 00:04:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:47:07.392 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50428 10 6452 1 2025-10-05 00:47:54.116 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:47:53.858 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:47:54.044 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:47:54.118 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:47:54.202 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:48:07.792 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39274 10 6452 1 2025-10-05 00:44:39.291 00:04:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:49:08.200 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40462 10 6452 1 2025-10-05 00:50:08.607 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:46736 10 6452 1 2025-10-05 00:51:09.070 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58504 10 6452 1 2025-10-05 00:47:39.291 00:04:00.383 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 00:52:09.483 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42694 10 6452 1 2025-10-05 00:52:54.164 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:52:54.185 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:52:54.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:52:53.914 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:52:54.081 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:53:09.891 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:34682 10 6452 1 2025-10-05 00:49:39.292 00:04:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 00:52:39.290 00:01:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:54:10.300 00:00:10.601 TCP 1.101.0.1:3000 -> 23.104.0.1:36606 10 6452 1 2025-10-05 00:55:10.939 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:42678 10 6452 1 2025-10-05 00:54:39.292 00:01:00.380 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 00:56:11.316 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44808 10 6452 1 2025-10-05 00:54:39.291 00:02:00.385 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 00:57:11.719 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:34134 10 6452 1 2025-10-05 00:57:54.213 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 00:57:54.229 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:57:54.283 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 00:57:54.284 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 00:57:54.366 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 00:58:12.104 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34854 10 6452 1 2025-10-05 00:57:39.291 00:01:00.384 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 00:56:39.293 00:02:00.379 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 Summary: total flows: 157, total bytes: 421448, total packets: 1031, avg bps: 921, avg pps: 0, avg bpp: 408 Time window: 2025-10-04 23:57:39 - 2025-10-05 00:58:39 Total flows processed: 157, passed: 157, Blocks skipped: 0, Bytes read: 16392 Sys: 0.0024s User: 0.0024s Wall: 0.0027s flows/second: 57849.9 Runtime: 0.0027s