Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 01:58:43.026 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:54798 10 6452 1 2025-11-14 01:59:43.396 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34374 10 6452 1 2025-11-14 02:00:43.794 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42768 10 6452 1 2025-11-14 01:59:00.332 00:02:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 01:59:00.330 00:02:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:01:44.201 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 10 6452 1 2025-11-14 02:02:10.860 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:02:11.073 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:02:11.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:02:11.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:02:11.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:02:44.604 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58040 10 6452 1 2025-11-14 02:02:00.330 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:02:00.333 00:01:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:03:45.006 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:52896 10 6452 1 2025-11-14 02:04:45.370 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:57598 10 6452 1 2025-11-14 02:04:00.331 00:02:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:05:45.735 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:44976 10 6452 1 2025-11-14 02:04:00.334 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:06:46.141 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:37300 10 6452 1 2025-11-14 02:07:10.896 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:07:11.176 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:07:11.215 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:07:11.092 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:07:11.166 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:07:46.512 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:52846 10 6452 1 2025-11-14 02:07:00.333 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:07:00.332 00:01:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:08:46.876 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36402 10 6452 1 2025-11-14 02:09:47.282 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:56612 10 6452 1 2025-11-14 02:10:47.645 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42108 10 6452 1 2025-11-14 02:09:00.333 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:09:00.331 00:02:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:11:48.054 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56398 10 6452 1 2025-11-14 02:12:11.730 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.227 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.730 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:12:11.420 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:12:11.812 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:12:00.332 00:01:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:12:48.468 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60840 10 6452 1 2025-11-14 02:12:00.336 00:01:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:13:48.869 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:46402 10 6452 1 2025-11-14 02:14:49.236 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33898 10 6452 1 2025-11-14 02:15:49.638 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34144 10 6452 1 2025-11-14 02:16:50.055 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53326 10 6452 1 2025-11-14 02:17:11.494 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:17:11.354 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:17:11.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:17:11.411 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:17:11.280 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:17:50.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47546 10 6452 1 2025-11-14 02:14:00.335 00:04:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-14 02:14:00.333 00:04:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-14 02:18:50.869 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:55008 10 6452 1 2025-11-14 02:19:00.336 00:01:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:19:51.294 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:40732 10 6452 1 2025-11-14 02:20:51.717 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:38546 10 6452 1 2025-11-14 02:21:52.136 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38296 10 6452 1 2025-11-14 02:22:11.573 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:22:11.410 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:22:11.399 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:22:11.490 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:22:11.419 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:19:00.334 00:04:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-14 02:21:00.339 00:02:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:22:52.535 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40436 10 6452 1 2025-11-14 02:23:52.939 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:39732 10 6452 1 2025-11-14 02:24:00.338 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:24:00.335 00:01:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:24:53.359 00:00:14.799 TCP 1.101.0.1:3000 -> 23.104.0.1:54246 10 6452 1 2025-11-14 02:25:58.204 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53684 10 6452 1 2025-11-14 02:26:58.608 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-11-14 02:27:11.508 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.535 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.650 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:27:11.717 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:27:11.735 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:26:00.335 00:02:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:26:00.338 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:27:59.016 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60778 10 6452 1 2025-11-14 02:28:59.414 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50212 10 6452 1 2025-11-14 02:29:00.337 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:29:00.342 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:29:59.825 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37000 10 6452 1 2025-11-14 02:31:00.228 00:00:10.538 TCP 1.101.0.1:3000 -> 23.104.0.1:55370 10 6452 1 2025-11-14 02:32:00.803 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42216 10 6452 1 2025-11-14 02:32:12.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:32:12.185 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:32:12.275 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:32:12.549 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:32:12.359 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:31:00.338 00:02:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:31:00.341 00:02:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:33:01.208 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:49652 10 6452 1 2025-11-14 02:34:01.569 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45724 10 6452 1 2025-11-14 02:34:00.339 00:01:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:34:00.343 00:01:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:35:01.975 00:00:10.439 TCP 1.101.0.1:3000 -> 23.104.0.1:42662 12 10369 1 2025-11-14 02:36:02.452 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37528 10 6452 1 2025-11-14 02:37:11.631 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:37:11.799 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:37:11.773 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:37:11.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:37:11.554 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:37:02.851 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:43622 10 6452 1 2025-11-14 02:36:00.339 00:02:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:36:00.343 00:02:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:38:03.275 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:52886 10 6452 1 2025-11-14 02:39:03.684 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50102 10 6452 1 2025-11-14 02:39:00.345 00:01:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:39:00.342 00:01:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:40:04.107 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43300 10 6452 1 2025-11-14 02:41:04.504 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45524 10 6452 1 2025-11-14 02:42:11.709 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:42:11.828 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:42:11.971 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:42:04.928 00:00:10.396 TCP 1.101.0.1:3000 -> 23.104.0.1:42256 10 6452 1 2025-11-14 02:42:11.888 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:42:12.055 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:41:00.345 00:02:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:41:00.343 00:02:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:43:05.364 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40814 10 6452 1 2025-11-14 02:44:05.776 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-11-14 02:44:00.349 00:01:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:44:00.345 00:01:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:45:06.184 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:45538 10 6452 1 2025-11-14 02:46:06.588 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:36148 10 6452 1 2025-11-14 02:47:12.092 00:00:00.037 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:47:12.005 00:00:00.043 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:47:11.948 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:47:12.005 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:47:12.149 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:47:07.000 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57696 10 6452 1 2025-11-14 02:48:07.368 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38322 10 6452 1 2025-11-14 02:49:07.774 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:46826 10 6452 1 2025-11-14 02:46:00.348 00:04:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-11-14 02:46:00.347 00:04:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-14 02:50:08.186 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46708 10 6452 1 2025-11-14 02:51:08.588 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60040 10 6452 1 2025-11-14 02:51:00.349 00:01:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:51:00.347 00:01:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:52:12.129 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:52:12.058 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:52:12.067 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:52:12.047 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:52:12.166 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:52:08.988 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:52432 10 6452 1 2025-11-14 02:53:09.357 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35298 10 6452 1 2025-11-14 02:54:09.771 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 10 6452 1 2025-11-14 02:53:00.351 00:02:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 02:53:00.349 00:02:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 02:55:10.141 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-14 02:56:10.504 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:42468 10 6452 1 2025-11-14 02:56:00.352 00:01:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 02:56:00.349 00:01:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 02:57:12.259 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 02:57:12.256 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 02:57:11.880 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:57:12.176 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 02:57:12.222 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 02:57:10.908 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:42792 10 6452 1 2025-11-14 02:58:11.277 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55808 10 6452 1 Summary: total flows: 163, total bytes: 420671, total packets: 1018, avg bps: 940, avg pps: 0, avg bpp: 413 Time window: 2025-11-14 01:58:43 - 2025-11-14 02:58:21 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0042s User: 0.0011s Wall: 0.0034s flows/second: 48466.7 Runtime: 0.0034s