Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 03:55:00.385 00:04:00.195 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-14 03:58:48.676 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42354 10 6452 1 2025-11-14 03:57:00.386 00:02:00.190 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 03:59:49.104 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56056 10 6452 1 2025-11-14 04:00:00.385 00:01:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:00:49.521 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:58182 10 6452 1 2025-11-14 04:00:00.387 00:01:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:01:49.921 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:33254 10 6452 1 2025-11-14 04:02:13.658 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:02:13.692 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:02:13.139 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:02:13.576 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:02:13.575 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:02:50.349 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42280 10 6452 1 2025-11-14 04:02:00.385 00:02:00.196 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:02:00.387 00:02:00.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:03:50.748 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:38484 10 6452 1 2025-11-14 04:04:51.160 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49352 10 6452 1 2025-11-14 04:05:00.385 00:01:00.197 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:05:00.389 00:01:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:05:51.561 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:55112 10 6452 1 2025-11-14 04:06:52.011 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46854 10 6452 1 2025-11-14 04:07:13.709 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:07:13.703 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:07:13.523 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:07:13.626 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:07:13.791 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:07:52.382 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58340 10 6452 1 2025-11-14 04:07:00.385 00:02:00.198 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:07:00.388 00:02:00.192 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:08:52.787 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38954 10 6452 1 2025-11-14 04:09:53.188 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37414 10 6452 1 2025-11-14 04:10:00.389 00:01:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:10:00.386 00:01:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:10:53.586 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:43690 10 6452 1 2025-11-14 04:11:53.997 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37596 10 6452 1 2025-11-14 04:12:13.813 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:12:13.610 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:12:13.780 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:12:13.844 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:12:13.862 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:12:54.402 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34322 10 6452 1 2025-11-14 04:12:00.389 00:02:00.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:12:00.386 00:02:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:13:54.809 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:52814 10 6452 1 2025-11-14 04:14:55.211 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:35744 10 6452 1 2025-11-14 04:15:00.389 00:01:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:15:00.386 00:01:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:15:55.574 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:47008 10 6452 1 2025-11-14 04:16:55.982 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:40042 10 6452 1 2025-11-14 04:17:13.907 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:17:13.753 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:17:13.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:17:13.824 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:17:13.678 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:17:56.343 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54184 10 6452 1 2025-11-14 04:17:00.391 00:02:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:17:00.388 00:02:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:18:56.747 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56944 10 6452 1 2025-11-14 04:19:57.150 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:40246 10 6452 1 2025-11-14 04:20:00.389 00:01:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:20:00.392 00:01:00.193 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:20:57.555 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:42396 10 6452 1 2025-11-14 04:22:14.188 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:21:57.919 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:49216 10 6452 1 2025-11-14 04:22:14.109 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:22:14.170 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:22:14.106 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:22:14.335 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:22:58.320 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35840 10 6452 1 2025-11-14 04:22:00.392 00:02:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:22:00.390 00:02:00.201 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:23:58.724 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:43844 10 6452 1 2025-11-14 04:24:59.135 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:43620 10 6452 1 2025-11-14 04:25:00.393 00:01:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:25:00.390 00:01:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:25:59.497 00:00:10.887 TCP 1.101.0.1:3000 -> 23.104.0.1:51648 10 6452 1 2025-11-14 04:27:00.417 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:44518 10 6452 1 2025-11-14 04:27:13.958 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:27:13.812 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:27:14.123 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:27:14.017 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:27:14.205 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:27:00.394 00:01:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:28:00.793 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:44052 10 6452 1 2025-11-14 04:29:00.394 00:00:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-11-14 04:29:01.225 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:41806 10 6452 1 2025-11-14 04:30:01.637 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58508 10 6452 1 2025-11-14 04:30:00.396 00:01:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:27:00.392 00:04:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-11-14 04:31:02.041 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58354 10 6452 1 2025-11-14 04:32:14.199 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:32:14.186 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:32:02.443 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:36134 10 6452 1 2025-11-14 04:32:14.096 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:32:14.086 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:32:14.179 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:32:00.394 00:01:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:32:00.396 00:01:00.197 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:33:02.844 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:52688 10 6452 1 2025-11-14 04:34:03.259 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60810 10 6452 1 2025-11-14 04:35:03.666 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:37306 10 6452 1 2025-11-14 04:34:00.394 00:02:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:34:00.397 00:02:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:36:04.096 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:56446 10 6452 1 2025-11-14 04:37:14.510 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:37:14.279 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:37:14.344 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:37:04.452 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40564 10 6452 1 2025-11-14 04:37:14.427 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:37:14.426 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:37:00.399 00:01:00.196 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:37:00.395 00:01:00.202 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:38:04.818 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39876 10 6452 1 2025-11-14 04:39:05.222 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:39244 10 6452 1 2025-11-14 04:40:05.633 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50718 10 6452 1 2025-11-14 04:39:00.397 00:02:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:39:00.395 00:02:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:41:06.034 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60032 10 6452 1 2025-11-14 04:42:14.369 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:42:14.230 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:42:14.208 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:42:14.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:42:14.291 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:42:06.432 00:00:10.419 TCP 1.101.0.1:3000 -> 23.104.0.1:57992 10 6452 1 2025-11-14 04:42:00.398 00:01:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:42:00.396 00:01:00.204 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:43:06.892 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:35090 10 6452 1 2025-11-14 04:44:07.318 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:50176 10 6452 1 2025-11-14 04:45:07.690 00:00:10.457 TCP 1.101.0.1:3000 -> 23.104.0.1:38898 14 10479 1 2025-11-14 04:44:00.397 00:02:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:44:00.398 00:02:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:46:08.185 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:58528 10 6452 1 2025-11-14 04:47:14.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:47:14.400 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:47:14.289 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:47:14.352 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:47:14.193 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:47:08.544 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48548 10 6452 1 2025-11-14 04:47:00.397 00:01:00.206 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:47:00.400 00:01:00.201 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:48:08.948 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:52966 10 6452 1 2025-11-14 04:49:09.356 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53908 10 6452 1 2025-11-14 04:50:09.757 00:00:10.394 TCP 1.101.0.1:3000 -> 23.104.0.1:43276 10 6452 1 2025-11-14 04:49:00.397 00:02:00.205 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:49:00.399 00:02:00.200 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:51:10.185 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46202 10 6452 1 2025-11-14 04:52:14.442 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:52:14.225 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:52:14.438 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:52:14.438 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:52:14.520 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:52:10.593 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59956 10 6452 1 2025-11-14 04:52:00.401 00:01:00.199 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:52:00.399 00:01:00.203 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:53:11.000 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37778 10 6452 1 2025-11-14 04:54:11.403 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:55552 10 6452 1 2025-11-14 04:55:11.775 00:00:20.911 TCP 1.101.0.1:3000 -> 23.104.0.1:42376 10 6452 1 2025-11-14 04:54:00.402 00:02:00.200 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 04:54:00.405 00:02:00.195 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 04:56:22.733 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:39900 10 6452 1 2025-11-14 04:57:14.810 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 04:57:14.565 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 04:57:14.489 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:57:14.727 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 04:57:14.635 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 04:57:23.170 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34458 10 6452 1 2025-11-14 04:57:00.404 00:01:00.199 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 04:57:00.406 00:01:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 04:58:23.571 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42740 10 6452 1 Summary: total flows: 170, total bytes: 421765, total packets: 1036, avg bps: 884, avg pps: 0, avg bpp: 407 Time window: 2025-11-14 03:55:00 - 2025-11-14 04:58:33 Total flows processed: 170, passed: 170, Blocks skipped: 0, Bytes read: 17744 Sys: 0.0027s User: 0.0027s Wall: 0.0062s flows/second: 27362.2 Runtime: 0.0062s