Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 01:59:37.206 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:57136 10 6452 1 2025-10-05 01:56:39.310 00:04:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 02:00:37.615 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35872 10 6452 1 2025-10-05 02:01:37.978 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6452 1 2025-10-05 02:01:39.310 00:01:00.395 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 01:58:39.313 00:04:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 02:02:38.380 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:42172 12 6556 1 2025-10-05 02:02:55.608 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:02:55.586 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:02:55.593 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:02:55.496 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:02:55.527 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:03:38.799 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:44718 10 6452 1 2025-10-05 02:03:39.313 00:01:00.391 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:04:39.166 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50572 10 6452 1 2025-10-05 02:03:39.311 00:02:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:05:39.566 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52482 10 6452 1 2025-10-05 02:06:39.969 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:51238 10 6452 1 2025-10-05 02:05:39.314 00:02:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:06:39.313 00:01:00.396 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:07:40.346 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43236 10 6452 1 2025-10-05 02:07:55.616 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:07:55.626 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:07:55.781 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:07:55.574 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:07:55.699 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:08:40.754 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:45622 10 6452 1 2025-10-05 02:08:39.315 00:01:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:09:41.181 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45466 10 6452 1 2025-10-05 02:08:39.313 00:02:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:10:41.584 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35572 10 6452 1 2025-10-05 02:11:42.008 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53960 10 6452 1 2025-10-05 02:11:39.313 00:01:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:10:39.317 00:02:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:12:42.378 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38272 10 6452 1 2025-10-05 02:12:55.754 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:12:55.745 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:12:55.623 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:12:55.673 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:12:55.667 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:13:42.784 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44994 10 6452 1 2025-10-05 02:13:39.316 00:01:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:14:43.187 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37414 10 6452 1 2025-10-05 02:13:39.315 00:02:00.397 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:15:43.594 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60758 10 6452 1 2025-10-05 02:16:43.994 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:53680 10 6452 1 2025-10-05 02:16:39.314 00:01:00.398 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:15:39.317 00:02:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:17:44.355 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35334 10 6452 1 2025-10-05 02:17:55.982 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:17:55.793 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:17:55.702 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:17:55.839 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:17:55.786 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:18:44.763 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:36316 10 6452 1 2025-10-05 02:18:39.318 00:01:00.392 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:19:45.141 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 10 6452 1 2025-10-05 02:20:45.542 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:39304 10 6452 1 2025-10-05 02:21:45.945 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49770 10 6452 1 2025-10-05 02:18:39.315 00:04:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 02:22:55.971 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:22:46.349 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44922 10 6452 1 2025-10-05 02:22:55.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:22:55.715 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:22:55.969 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:22:56.053 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:23:46.744 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48572 10 6452 1 2025-10-05 02:20:39.319 00:04:00.393 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 02:24:47.147 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49896 10 6452 1 2025-10-05 02:25:47.549 00:00:12.564 TCP 1.101.0.1:3000 -> 23.104.0.1:34166 10 6452 1 2025-10-05 02:26:50.155 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:54738 10 6452 1 2025-10-05 02:23:39.318 00:04:00.399 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 02:27:56.146 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:27:56.094 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:27:56.042 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:27:56.144 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:27:56.227 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:27:50.517 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60076 10 6452 1 2025-10-05 02:28:50.917 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:37042 10 6452 1 2025-10-05 02:28:39.317 00:01:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:25:39.319 00:04:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 02:29:51.314 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53520 10 6452 1 2025-10-05 02:30:51.714 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:57070 10 6452 1 2025-10-05 02:30:39.319 00:01:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:31:52.130 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:33790 10 6452 1 2025-10-05 02:30:39.318 00:02:00.400 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:32:56.155 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:32:56.314 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:32:56.189 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:32:56.087 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:32:56.169 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:32:52.533 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60904 10 6452 1 2025-10-05 02:33:52.935 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60642 10 6452 1 2025-10-05 02:33:39.318 00:01:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:32:39.321 00:02:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:34:53.357 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55086 10 6452 1 2025-10-05 02:35:53.760 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:41278 10 6452 1 2025-10-05 02:35:39.322 00:01:00.395 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:36:54.174 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:52134 10 6452 1 2025-10-05 02:35:39.319 00:02:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:37:56.287 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:37:56.372 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:37:56.279 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:37:56.155 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:37:56.204 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:37:54.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50710 10 6452 1 2025-10-05 02:38:54.943 00:00:11.637 TCP 1.101.0.1:3000 -> 23.104.0.1:35562 10 6452 1 2025-10-05 02:37:39.321 00:02:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:38:39.319 00:01:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:39:56.630 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:44722 10 6452 1 2025-10-05 02:40:57.026 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:58814 10 6452 1 2025-10-05 02:40:39.322 00:01:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:41:57.441 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48128 10 6452 1 2025-10-05 02:40:39.320 00:02:00.402 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:42:56.450 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:42:56.368 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:42:56.299 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:42:56.393 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:42:56.366 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:42:57.839 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-10-05 02:43:58.223 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:37500 10 6452 1 2025-10-05 02:42:39.322 00:02:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:43:39.322 00:01:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:44:58.632 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56936 10 6452 1 2025-10-05 02:45:59.040 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53506 10 6452 1 2025-10-05 02:45:39.323 00:01:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:46:59.445 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:37282 10 6452 1 2025-10-05 02:45:39.320 00:02:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 02:47:56.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:47:56.658 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:47:56.445 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:47:56.362 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:47:56.444 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:47:59.856 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45108 10 6452 1 2025-10-05 02:49:00.271 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39384 10 6452 1 2025-10-05 02:47:39.323 00:02:00.397 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 02:48:39.321 00:01:00.401 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 02:50:00.633 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50242 10 6452 1 2025-10-05 02:51:01.036 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:39440 10 6452 1 2025-10-05 02:50:39.324 00:01:00.396 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 02:52:01.415 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54862 10 6452 1 2025-10-05 02:52:56.629 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:52:56.474 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:52:56.563 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:52:56.430 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:52:56.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:53:01.815 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49752 10 6452 1 2025-10-05 02:54:02.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37662 10 6452 1 2025-10-05 02:50:39.322 00:04:00.404 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-05 02:55:02.621 00:00:10.782 TCP 1.101.0.1:3000 -> 23.104.0.1:34266 10 6452 1 2025-10-05 02:56:03.440 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:39044 10 6452 1 2025-10-05 02:52:39.324 00:04:00.398 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-05 02:57:03.805 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56252 10 6452 1 2025-10-05 02:57:56.948 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 02:57:56.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 02:57:56.506 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:57:56.933 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 02:57:57.016 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 02:58:04.209 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 Summary: total flows: 159, total bytes: 410406, total packets: 1008, avg bps: 888, avg pps: 0, avg bpp: 407 Time window: 2025-10-05 01:56:39 - 2025-10-05 02:58:14 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0033s User: 0.0022s Wall: 0.0029s flows/second: 55325.6 Runtime: 0.0029s