Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 23:59:03.787 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58458 10 6452 1 2025-10-16 23:58:45.388 00:01:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-16 23:57:45.392 00:02:00.322 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:00:04.190 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43318 10 6452 1 2025-10-17 00:01:04.556 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34130 10 6452 1 2025-10-17 00:00:45.391 00:01:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:02:04.957 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51970 10 6452 1 2025-10-17 00:00:45.389 00:02:00.328 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:03:05.335 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51874 10 6452 1 2025-10-17 00:03:39.619 00:00:00.028 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:03:39.538 00:00:00.033 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:03:39.723 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:03:39.536 00:00:00.028 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:03:39.536 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:02:45.391 00:01:00.323 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:04:05.740 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54204 10 6452 1 2025-10-17 00:03:45.389 00:01:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:05:06.151 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46718 10 6452 1 2025-10-17 00:06:06.554 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:45804 10 6452 1 2025-10-17 00:04:45.391 00:02:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:07:06.970 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:48074 10 6452 1 2025-10-17 00:05:45.390 00:02:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:08:07.379 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60342 10 6452 1 2025-10-17 00:08:39.986 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:08:39.962 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:08:39.864 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:08:39.796 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:08:39.948 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:07:45.391 00:01:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:09:07.784 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:50692 10 6452 1 2025-10-17 00:08:45.390 00:01:00.329 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:10:08.190 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:42278 10 6452 1 2025-10-17 00:11:08.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44140 10 6452 1 2025-10-17 00:09:45.392 00:02:00.325 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:12:08.996 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58744 10 6452 1 2025-10-17 00:10:45.390 00:02:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:13:09.395 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:59930 10 6452 1 2025-10-17 00:13:39.944 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:13:39.655 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:13:39.813 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:13:39.985 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:13:39.896 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:12:45.393 00:01:00.324 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:14:09.760 00:00:10.758 TCP 1.101.0.1:3000 -> 23.104.0.1:60908 10 6452 1 2025-10-17 00:13:45.391 00:01:00.330 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:15:10.557 00:00:10.769 TCP 1.101.0.1:3000 -> 23.104.0.1:35274 10 6452 1 2025-10-17 00:16:11.369 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49498 10 6452 1 2025-10-17 00:14:45.393 00:02:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:17:11.778 00:00:10.447 TCP 1.101.0.1:3000 -> 23.104.0.1:40938 12 10375 1 2025-10-17 00:15:45.391 00:02:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:18:12.269 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58618 10 6452 1 2025-10-17 00:18:40.349 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:18:40.440 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:18:40.404 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:18:40.122 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:18:40.432 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:17:45.393 00:01:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:19:12.667 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38506 10 6452 1 2025-10-17 00:18:45.391 00:01:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:20:13.097 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42402 10 6452 1 2025-10-17 00:21:13.458 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39108 10 6452 1 2025-10-17 00:19:45.394 00:02:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:22:13.863 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:60072 10 6452 1 2025-10-17 00:20:45.391 00:02:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:23:14.288 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:58602 10 6452 1 2025-10-17 00:23:40.195 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:23:40.038 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:23:39.919 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:23:40.112 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:23:40.124 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:22:45.393 00:01:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:24:14.697 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:33074 10 6452 1 2025-10-17 00:23:45.391 00:01:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:25:15.117 00:00:10.854 TCP 1.101.0.1:3000 -> 23.104.0.1:51760 10 6452 1 2025-10-17 00:26:16.017 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:49848 10 6452 1 2025-10-17 00:24:45.394 00:02:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:27:16.376 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43942 10 6452 1 2025-10-17 00:25:45.392 00:02:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:28:16.779 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46958 10 6452 1 2025-10-17 00:28:40.383 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:28:40.355 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:28:40.249 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:28:40.300 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:28:40.359 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:27:45.394 00:01:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:29:17.183 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49718 10 6452 1 2025-10-17 00:28:45.392 00:01:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:30:17.560 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43818 10 6452 1 2025-10-17 00:31:17.963 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48458 10 6452 1 2025-10-17 00:30:45.393 00:01:00.332 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:29:45.396 00:02:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:32:18.379 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54140 10 6452 1 2025-10-17 00:33:18.780 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58810 10 6452 1 2025-10-17 00:33:40.320 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:33:40.281 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:33:40.371 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:33:40.312 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:33:40.456 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:32:45.397 00:01:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:34:19.187 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57010 10 6452 1 2025-10-17 00:32:45.394 00:02:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:35:19.594 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45706 10 6452 1 2025-10-17 00:34:45.396 00:01:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:36:19.998 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:60034 12 6556 1 2025-10-17 00:35:45.395 00:01:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:37:20.410 00:00:10.478 TCP 1.101.0.1:3000 -> 23.104.0.1:56904 14 14298 1 2025-10-17 00:38:20.924 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56364 10 6452 1 2025-10-17 00:38:40.440 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:38:40.320 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:38:40.442 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:38:40.367 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:38:40.526 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:36:45.397 00:02:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:39:21.330 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:41270 10 6452 1 2025-10-17 00:37:45.395 00:02:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:40:21.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32898 10 6452 1 2025-10-17 00:39:45.400 00:01:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:41:22.138 00:00:10.550 TCP 1.101.0.1:3000 -> 23.104.0.1:44814 10 6452 1 2025-10-17 00:40:45.396 00:01:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:42:22.726 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46250 10 6452 1 2025-10-17 00:43:40.738 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:43:23.126 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:39012 10 6452 1 2025-10-17 00:43:40.560 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:43:40.574 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:43:40.656 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:43:40.502 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:41:45.399 00:02:00.328 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:44:23.495 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:42942 10 6452 1 2025-10-17 00:42:45.398 00:02:00.333 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:45:23.905 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-10-17 00:44:45.401 00:01:00.327 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:46:24.324 00:00:10.743 TCP 1.101.0.1:3000 -> 23.104.0.1:34494 10 6452 1 2025-10-17 00:45:45.396 00:01:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:47:25.119 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:35684 10 6452 1 2025-10-17 00:48:25.522 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48276 10 6452 1 2025-10-17 00:48:40.572 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:48:40.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:48:40.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:48:40.487 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:48:40.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:46:45.399 00:02:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:49:25.925 00:00:10.549 TCP 1.101.0.1:3000 -> 23.104.0.1:60782 10 6452 1 2025-10-17 00:47:45.397 00:02:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:50:26.512 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:52102 10 6452 1 2025-10-17 00:49:45.400 00:01:00.329 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:51:26.873 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36560 10 6452 1 2025-10-17 00:50:45.398 00:01:00.334 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:52:27.270 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35280 10 6452 1 2025-10-17 00:53:40.802 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:53:40.588 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:53:40.564 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:53:40.718 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:53:40.825 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:53:27.671 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43070 10 6452 1 2025-10-17 00:51:45.401 00:02:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-17 00:54:28.103 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51444 10 6452 1 2025-10-17 00:52:45.399 00:02:00.335 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-17 00:55:28.509 00:00:10.772 TCP 1.101.0.1:3000 -> 23.104.0.1:54340 10 6452 1 2025-10-17 00:54:45.401 00:01:00.330 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-17 00:56:29.322 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44688 10 6452 1 2025-10-17 00:55:45.398 00:01:00.336 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-17 00:57:29.722 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:42700 10 6452 1 2025-10-17 00:58:40.944 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-17 00:58:30.142 00:00:10.630 TCP 1.101.0.1:3000 -> 23.104.0.1:37130 10 6452 1 2025-10-17 00:58:40.843 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:58:40.862 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-17 00:58:40.863 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-17 00:58:41.066 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-17 00:56:45.402 00:02:00.331 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 Summary: total flows: 169, total bytes: 428996, total packets: 1030, avg bps: 937, avg pps: 0, avg bpp: 416 Time window: 2025-10-16 23:57:45 - 2025-10-17 00:58:45 Total flows processed: 169, passed: 169, Blocks skipped: 0, Bytes read: 17640 Sys: 0.0038s User: 0.0019s Wall: 0.0058s flows/second: 29043.6 Runtime: 0.0059s