Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 04:58:53.515 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54294 10 6452 1 2025-10-05 04:58:39.380 00:01:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 04:59:53.919 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36074 10 6452 1 2025-10-05 04:58:39.378 00:02:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:00:54.323 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:49716 10 6452 1 2025-10-05 05:01:54.682 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55558 10 6452 1 2025-10-05 05:01:39.377 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:00:39.381 00:02:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:02:59.129 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.133 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:02:59.073 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.343 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:02:59.426 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:02:55.107 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40424 10 6452 1 2025-10-05 05:03:55.513 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-10-05 05:03:39.381 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:04:55.912 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46414 10 6452 1 2025-10-05 05:03:39.378 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:05:56.317 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:44260 10 6452 1 2025-10-05 05:06:56.676 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58938 10 6452 1 2025-10-05 05:06:39.381 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:05:39.382 00:02:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:07:59.273 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:07:59.103 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:07:59.243 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:07:59.212 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:07:59.190 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:07:57.102 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36080 10 6452 1 2025-10-05 05:08:57.507 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42610 10 6452 1 2025-10-05 05:08:39.385 00:01:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:08:39.382 00:01:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:09:57.913 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36508 10 6452 1 2025-10-05 05:10:58.323 00:00:10.577 TCP 1.101.0.1:3000 -> 23.104.0.1:36576 10 6452 1 2025-10-05 05:10:39.384 00:01:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:11:58.941 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:48256 10 6452 1 2025-10-05 05:10:39.381 00:02:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:12:59.273 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:12:59.350 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.451 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:12:59.216 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.189 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:12:59.351 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43328 10 6452 1 2025-10-05 05:13:59.752 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36940 10 6452 1 2025-10-05 05:13:39.383 00:01:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:12:39.386 00:02:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:15:00.117 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38432 10 6452 1 2025-10-05 05:16:00.524 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42722 10 6452 1 2025-10-05 05:15:39.385 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:17:00.927 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:50878 10 6452 1 2025-10-05 05:15:39.383 00:02:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:17:59.519 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:17:59.439 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:17:59.399 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:17:59.436 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:17:59.281 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:18:01.349 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:40606 10 6452 1 2025-10-05 05:19:01.749 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:60544 10 6452 1 2025-10-05 05:17:39.385 00:02:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:18:39.384 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:20:02.152 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:42326 10 6452 1 2025-10-05 05:21:02.550 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49546 10 6452 1 2025-10-05 05:20:39.386 00:01:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:22:02.967 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:55198 10 6452 1 2025-10-05 05:20:39.384 00:02:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:22:59.814 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.818 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:22:59.833 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.904 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:22:59.985 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:23:03.373 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49362 10 6452 1 2025-10-05 05:24:03.774 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:56970 10 6452 1 2025-10-05 05:23:39.385 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:22:39.386 00:02:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:25:04.182 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:35372 10 6452 1 2025-10-05 05:26:04.549 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50958 10 6452 1 2025-10-05 05:25:39.387 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:27:04.955 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44716 10 6452 1 2025-10-05 05:25:39.385 00:02:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:27:59.645 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.639 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:27:59.814 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.726 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:27:59.809 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:28:05.372 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53928 10 6452 1 2025-10-05 05:29:05.778 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42766 10 6452 1 2025-10-05 05:27:39.388 00:02:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:28:39.385 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:30:06.145 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49126 10 6452 1 2025-10-05 05:31:06.544 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39636 10 6452 1 2025-10-05 05:30:39.388 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:32:06.947 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51838 10 6452 1 2025-10-05 05:30:39.386 00:02:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:32:59.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:32:59.799 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:32:59.628 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:32:59.738 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:32:59.793 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:33:07.360 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33176 10 6452 1 2025-10-05 05:34:07.769 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:60952 10 6452 1 2025-10-05 05:33:39.386 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:32:39.388 00:02:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:35:08.181 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45002 10 6452 1 2025-10-05 05:36:08.588 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 10 6452 1 2025-10-05 05:35:39.389 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:37:08.952 00:00:11.059 TCP 1.101.0.1:3000 -> 23.104.0.1:37876 10 6452 1 2025-10-05 05:35:39.386 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:37:59.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.943 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:37:59.783 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.855 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:37:59.938 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:38:10.050 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60514 10 6452 1 2025-10-05 05:39:10.418 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:53986 10 6452 1 2025-10-05 05:38:39.387 00:01:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:37:39.389 00:02:00.386 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:40:10.782 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-10-05 05:41:11.195 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46888 10 6452 1 2025-10-05 05:40:39.390 00:01:00.387 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:40:39.387 00:01:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:42:11.600 00:00:10.733 TCP 1.101.0.1:3000 -> 23.104.0.1:40820 10 6452 1 2025-10-05 05:42:59.877 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:42:59.896 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:43:00.083 00:00:00.054 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:42:59.994 00:00:00.041 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:43:00.001 00:00:00.053 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:43:12.377 00:00:11.068 TCP 1.101.0.1:3000 -> 23.104.0.1:41214 12 10375 1 2025-10-05 05:42:39.390 00:01:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:44:13.486 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38076 10 6452 1 2025-10-05 05:42:39.388 00:02:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:45:13.889 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:47770 10 6452 1 2025-10-05 05:46:14.305 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35088 12 6556 1 2025-10-05 05:45:39.388 00:01:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:44:39.389 00:02:00.390 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:47:14.710 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:38114 10 6452 1 2025-10-05 05:48:00.278 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:48:00.131 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:48:00.251 00:00:00.026 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:48:00.163 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:48:00.195 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:48:15.114 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45308 10 6452 1 2025-10-05 05:47:39.391 00:01:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:49:15.517 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:35502 10 6452 1 2025-10-05 05:47:39.389 00:02:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:50:15.915 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52890 10 6452 1 2025-10-05 05:51:16.321 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:33422 10 6452 1 2025-10-05 05:49:39.391 00:02:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:50:39.389 00:01:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:52:16.685 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:45432 10 6452 1 2025-10-05 05:52:59.904 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:53:00.207 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:53:00.217 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:53:00.076 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:53:00.159 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:53:17.061 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56122 10 6452 1 2025-10-05 05:52:39.392 00:01:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 05:54:17.461 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48564 10 6452 1 2025-10-05 05:52:39.390 00:02:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 05:55:17.869 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36200 10 6452 1 2025-10-05 05:56:18.235 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:57848 10 6452 1 2025-10-05 05:55:39.391 00:01:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 05:54:39.394 00:02:00.387 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 05:57:18.642 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51224 10 6452 1 2025-10-05 05:58:00.266 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.270 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 05:58:00.061 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.273 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 05:58:00.356 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 05:58:19.047 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-10-05 05:57:39.393 00:01:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 Summary: total flows: 169, total bytes: 421027, total packets: 1024, avg bps: 935, avg pps: 0, avg bpp: 411 Time window: 2025-10-05 04:58:39 - 2025-10-05 05:58:39 Total flows processed: 169, passed: 169, Blocks skipped: 0, Bytes read: 17640 Sys: 0.0029s User: 0.0022s Wall: 0.0030s flows/second: 56485.6 Runtime: 0.0030s