Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 06:58:44.909 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:37140 10 6452 1 2025-10-05 06:59:45.285 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58950 10 6452 1 2025-10-05 06:59:39.417 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 06:58:39.419 00:02:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:00:45.686 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47656 10 6452 1 2025-10-05 07:01:46.110 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60300 10 6452 1 2025-10-05 07:01:39.420 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:02:46.475 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48828 10 6452 1 2025-10-05 07:03:01.707 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:03:01.567 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:03:01.680 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:03:01.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:03:01.628 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:01:39.417 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:03:46.889 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:46050 12 6556 1 2025-10-05 07:04:47.308 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36454 10 6452 1 2025-10-05 07:04:39.417 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:03:39.420 00:02:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:05:47.712 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:49606 10 6452 1 2025-10-05 07:06:48.131 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:58876 10 6452 1 2025-10-05 07:06:39.420 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:07:48.537 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:36462 10 6452 1 2025-10-05 07:08:01.936 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:08:01.909 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:08:01.777 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:08:01.434 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:08:01.853 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:06:39.418 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:08:48.898 00:00:10.450 TCP 1.101.0.1:3000 -> 23.104.0.1:42774 14 10473 1 2025-10-05 07:09:49.383 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34702 10 6452 1 2025-10-05 07:09:39.419 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:08:39.421 00:02:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:10:49.788 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37912 10 6452 1 2025-10-05 07:11:50.191 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59342 10 6452 1 2025-10-05 07:11:39.422 00:01:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:13:01.767 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:13:01.627 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:13:01.687 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:13:01.608 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:12:50.594 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 10 6452 1 2025-10-05 07:13:01.770 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:11:39.420 00:02:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:13:50.995 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49560 10 6452 1 2025-10-05 07:14:51.408 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-10-05 07:13:39.423 00:02:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:14:39.420 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:15:51.816 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48594 10 6452 1 2025-10-05 07:16:52.230 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:57206 10 6452 1 2025-10-05 07:16:39.424 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:16:39.422 00:01:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:18:01.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:18:01.899 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:18:01.900 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:18:01.878 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:17:52.625 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39316 10 6452 1 2025-10-05 07:18:01.845 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:18:39.422 00:00:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-10-05 07:18:53.039 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59068 10 6452 1 2025-10-05 07:19:53.452 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46040 10 6452 1 2025-10-05 07:18:39.425 00:02:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:19:39.422 00:01:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:20:53.855 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58190 10 6452 1 2025-10-05 07:21:54.274 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34552 10 6452 1 2025-10-05 07:21:39.424 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:21:39.426 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:23:02.340 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:23:02.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:23:02.092 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:23:02.197 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:23:02.279 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:22:54.675 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40200 10 6452 1 2025-10-05 07:23:55.104 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45090 10 6452 1 2025-10-05 07:23:39.425 00:01:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:24:55.501 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50284 10 6452 1 2025-10-05 07:23:39.424 00:02:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:25:55.906 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:47494 10 6452 1 2025-10-05 07:26:56.276 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57514 10 6452 1 2025-10-05 07:25:39.426 00:02:00.383 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:26:39.425 00:01:00.388 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:28:02.239 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:28:02.077 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:28:01.949 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:28:01.771 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:28:02.156 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:27:56.679 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55474 10 6452 1 2025-10-05 07:28:57.113 00:00:10.780 TCP 1.101.0.1:3000 -> 23.104.0.1:58920 10 6452 1 2025-10-05 07:28:39.428 00:01:00.381 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:29:57.933 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:58388 10 6452 1 2025-10-05 07:28:39.425 00:02:00.387 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:30:58.350 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-10-05 07:31:58.750 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46230 10 6452 1 2025-10-05 07:30:39.431 00:02:00.382 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:31:39.427 00:01:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:33:02.141 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:33:02.118 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:33:02.061 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:33:01.926 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:33:02.058 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:32:59.157 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50188 10 6452 1 2025-10-05 07:33:59.565 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59678 10 6452 1 2025-10-05 07:33:39.429 00:01:00.384 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:34:59.978 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:49512 10 6452 1 2025-10-05 07:33:39.427 00:02:00.389 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:36:00.353 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57810 10 6452 1 2025-10-05 07:37:00.763 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:37794 10 6452 1 2025-10-05 07:36:39.426 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:35:39.430 00:02:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:38:02.282 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:38:02.426 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:38:02.315 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:38:02.201 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:38:02.560 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:38:01.211 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51630 10 6452 1 2025-10-05 07:39:01.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51680 10 6452 1 2025-10-05 07:38:39.430 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:40:02.021 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:46970 10 6452 1 2025-10-05 07:38:39.428 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:41:02.420 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-05 07:42:02.822 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52860 10 6452 1 2025-10-05 07:40:39.431 00:02:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:41:39.428 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:43:02.517 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:43:02.080 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.521 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:43:02.605 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:43:03.228 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:58022 10 6452 1 2025-10-05 07:44:03.639 00:00:10.437 TCP 1.101.0.1:3000 -> 23.104.0.1:35582 12 10375 1 2025-10-05 07:43:39.430 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:45:04.116 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59936 10 6452 1 2025-10-05 07:43:39.427 00:02:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:46:04.518 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54600 10 6452 1 2025-10-05 07:47:04.922 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41854 10 6452 1 2025-10-05 07:45:39.430 00:02:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-05 07:46:39.429 00:01:00.390 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:48:02.630 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:48:02.544 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:48:02.503 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:48:02.529 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:48:02.547 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:48:05.331 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46684 10 6452 1 2025-10-05 07:49:05.744 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:42026 12 10375 1 2025-10-05 07:48:39.430 00:01:00.387 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:48:39.428 00:01:00.391 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:50:06.226 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:48906 10 6452 1 2025-10-05 07:50:39.428 00:00:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 2 123 1 2025-10-05 07:51:06.651 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:52644 10 6452 1 2025-10-05 07:50:39.432 00:01:00.385 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:52:07.073 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-10-05 07:51:39.429 00:01:00.393 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:52:39.431 00:00:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-10-05 07:53:02.527 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:53:02.472 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:53:02.588 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:53:02.535 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:53:02.610 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:53:07.440 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-10-05 07:54:07.854 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:54514 10 6452 1 2025-10-05 07:53:39.433 00:01:00.387 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:53:39.429 00:01:00.392 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-05 07:55:08.237 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:45144 10 6452 1 2025-10-05 07:56:08.596 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38158 10 6452 1 2025-10-05 07:55:39.432 00:01:00.388 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-05 07:57:08.956 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:47438 10 6452 1 2025-10-05 07:55:39.429 00:02:00.394 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-05 07:58:02.980 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-05 07:58:02.650 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-05 07:58:02.767 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-05 07:58:02.579 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:58:02.899 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-05 07:58:09.369 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 Summary: total flows: 171, total bytes: 428725, total packets: 1026, avg bps: 957, avg pps: 0, avg bpp: 417 Time window: 2025-10-05 06:58:39 - 2025-10-05 07:58:19 Total flows processed: 171, passed: 171, Blocks skipped: 0, Bytes read: 17848 Sys: 0.0061s User: 0.0000s Wall: 0.0023s flows/second: 73141.5 Runtime: 0.0024s