Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-15 00:58:57.469 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50574 10 6452 1 2025-10-15 00:57:44.333 00:02:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 00:58:44.338 00:01:00.449 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 00:59:57.870 00:00:10.547 TCP 1.101.0.1:3000 -> 23.104.0.1:35656 10 6452 1 2025-10-15 01:00:58.452 00:00:10.779 TCP 1.101.0.1:3000 -> 23.104.0.1:39598 10 6452 1 2025-10-15 01:00:44.335 00:01:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:01:59.270 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37484 10 6452 1 2025-10-15 01:02:43.369 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:02:43.210 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:00:44.336 00:02:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:02:43.098 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:02:42.932 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:02:43.286 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:02:59.672 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44274 10 6452 1 2025-10-15 01:04:00.111 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:52824 10 6452 1 2025-10-15 01:03:44.337 00:01:00.450 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:02:44.335 00:02:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:05:00.518 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43362 10 6452 1 2025-10-15 01:06:00.937 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:46298 12 10369 1 2025-10-15 01:05:44.336 00:01:00.455 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:07:01.433 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45896 10 6452 1 2025-10-15 01:07:43.609 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:07:43.392 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:07:43.174 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:07:43.641 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:07:43.724 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:08:01.802 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55944 10 6452 1 2025-10-15 01:09:02.213 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36340 10 6452 1 2025-10-15 01:05:44.338 00:04:00.451 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-15 01:07:44.336 00:02:00.456 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:10:02.619 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56692 10 6452 1 2025-10-15 01:11:03.022 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:38754 10 6452 1 2025-10-15 01:10:44.338 00:01:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:10:44.336 00:01:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:12:03.384 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52072 10 6452 1 2025-10-15 01:12:43.505 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:12:43.286 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:12:43.395 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:12:43.195 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:12:43.277 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:13:03.792 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:39582 10 6452 1 2025-10-15 01:14:04.203 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52932 10 6452 1 2025-10-15 01:12:44.339 00:02:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:12:44.337 00:02:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:15:04.633 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 10 6452 1 2025-10-15 01:16:04.995 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:45008 10 6452 1 2025-10-15 01:15:44.337 00:01:00.457 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:15:44.339 00:01:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:17:05.412 00:00:10.692 TCP 1.101.0.1:3000 -> 23.104.0.1:56992 10 6452 1 2025-10-15 01:17:43.290 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:17:43.219 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:17:43.461 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:17:43.468 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:17:43.544 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:18:06.142 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53746 10 6452 1 2025-10-15 01:19:06.546 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45964 10 6452 1 2025-10-15 01:17:44.340 00:02:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:20:06.953 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:49730 10 6452 1 2025-10-15 01:21:07.358 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:37716 10 6452 1 2025-10-15 01:20:44.340 00:01:00.452 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:17:44.337 00:04:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-15 01:22:07.761 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:44490 10 6452 1 2025-10-15 01:22:43.482 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:22:43.765 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:22:43.196 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:22:43.858 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:22:43.941 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:23:08.184 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:34358 10 6452 1 2025-10-15 01:22:44.339 00:01:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:24:08.598 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39332 10 6452 1 2025-10-15 01:22:44.341 00:02:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:25:09.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43162 10 6452 1 2025-10-15 01:26:09.408 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43940 10 6452 1 2025-10-15 01:24:44.338 00:02:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:25:44.341 00:01:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:27:09.814 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36116 10 6452 1 2025-10-15 01:27:43.665 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:27:43.670 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:27:43.611 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:27:43.731 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:27:43.813 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:28:10.220 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47198 10 6452 1 2025-10-15 01:27:44.338 00:01:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:29:10.630 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:43908 10 6452 1 2025-10-15 01:27:44.341 00:02:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:30:11.001 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53692 10 6452 1 2025-10-15 01:31:11.404 00:00:11.027 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-10-15 01:29:44.338 00:02:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:30:44.342 00:01:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:32:12.456 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:59640 10 6452 1 2025-10-15 01:32:43.668 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:32:43.759 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:32:43.777 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:32:43.588 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:32:43.671 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:33:12.858 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56796 10 6452 1 2025-10-15 01:32:44.340 00:01:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:34:13.277 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56224 10 6452 1 2025-10-15 01:32:44.342 00:02:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:35:13.678 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:47096 10 6452 1 2025-10-15 01:36:14.102 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:44126 12 10375 1 2025-10-15 01:35:44.346 00:01:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:34:44.344 00:02:00.458 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:37:14.579 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33142 10 6452 1 2025-10-15 01:37:43.863 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:37:43.773 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:37:43.571 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:37:43.863 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:37:43.946 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:38:14.986 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35608 10 6452 1 2025-10-15 01:37:44.345 00:01:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:39:15.395 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:35650 10 6452 1 2025-10-15 01:40:15.756 00:00:10.395 TCP 1.101.0.1:3000 -> 23.104.0.1:56408 10 6452 1 2025-10-15 01:41:16.181 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50524 10 6452 1 2025-10-15 01:39:44.345 00:02:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:37:44.346 00:04:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-15 01:42:16.582 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37346 10 6452 1 2025-10-15 01:42:43.875 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:42:44.008 00:00:00.031 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:42:43.958 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:42:43.944 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:42:43.792 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:43:16.989 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38700 10 6452 1 2025-10-15 01:42:44.345 00:01:00.460 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:44:17.391 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59178 10 6452 1 2025-10-15 01:45:17.793 00:00:10.586 TCP 1.101.0.1:3000 -> 23.104.0.1:39512 10 6452 1 2025-10-15 01:46:18.414 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:55804 12 10375 1 2025-10-15 01:42:44.348 00:04:00.455 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-15 01:44:44.346 00:02:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:47:18.893 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:34832 10 6452 1 2025-10-15 01:47:44.099 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:47:44.120 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:47:43.981 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:47:44.151 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:47:44.065 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:48:19.312 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50414 10 6452 1 2025-10-15 01:47:44.349 00:01:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:47:44.345 00:01:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:49:19.724 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:33696 10 6452 1 2025-10-15 01:50:20.135 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59642 10 6452 1 2025-10-15 01:51:20.541 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49978 10 6452 1 2025-10-15 01:49:44.349 00:02:00.454 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:52:20.942 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:58822 10 6452 1 2025-10-15 01:52:44.024 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:52:44.038 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:52:43.938 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:52:43.944 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:52:43.940 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:53:21.319 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40688 10 6452 1 2025-10-15 01:52:44.350 00:01:00.453 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-15 01:49:44.346 00:04:00.459 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-15 01:54:21.721 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59918 10 6452 1 2025-10-15 01:55:22.134 00:00:11.080 TCP 1.101.0.1:3000 -> 23.104.0.1:54376 10 6452 1 2025-10-15 01:54:44.349 00:01:00.463 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-15 01:56:23.258 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36740 10 6452 1 2025-10-15 01:54:44.351 00:02:00.457 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-15 01:57:23.656 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 10 6452 1 2025-10-15 01:57:44.194 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-15 01:57:44.259 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-15 01:57:44.256 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-15 01:57:43.974 00:00:00.033 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:57:44.110 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-15 01:58:24.069 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:59452 10 6452 1 2025-10-15 01:56:44.348 00:02:00.461 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-15 01:57:44.352 00:01:00.456 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 Summary: total flows: 165, total bytes: 429132, total packets: 1032, avg bps: 937, avg pps: 0, avg bpp: 415 Time window: 2025-10-15 00:57:44 - 2025-10-15 01:58:44 Total flows processed: 165, passed: 165, Blocks skipped: 0, Bytes read: 17224 Sys: 0.0040s User: 0.0020s Wall: 0.0024s flows/second: 67849.0 Runtime: 0.0024s