Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 04:59:23.936 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:44062 10 6452 1 2025-11-14 04:59:00.407 00:01:00.194 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:00:24.359 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54546 10 6452 1 2025-11-14 05:01:00.416 00:00:00.191 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-11-14 04:59:00.405 00:02:00.207 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:01:24.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:55422 10 6452 1 2025-11-14 05:02:14.790 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:02:14.573 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:02:14.547 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:02:14.665 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:02:14.629 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:02:25.184 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50838 10 6452 1 2025-11-14 05:02:00.418 00:01:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:02:00.416 00:01:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:03:25.595 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 10 6452 1 2025-11-14 05:04:25.999 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60472 10 6452 1 2025-11-14 05:04:00.418 00:01:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:04:00.415 00:01:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:05:26.369 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:37208 10 6452 1 2025-11-14 05:06:26.731 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43936 10 6452 1 2025-11-14 05:07:14.944 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:07:14.905 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:07:14.735 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:07:14.862 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:07:14.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:07:27.116 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:58124 10 6452 1 2025-11-14 05:06:00.417 00:02:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:06:00.420 00:02:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:08:27.524 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:42970 10 6452 1 2025-11-14 05:09:27.882 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47090 10 6452 1 2025-11-14 05:09:00.417 00:01:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:09:00.419 00:01:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:10:28.286 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45362 10 6452 1 2025-11-14 05:11:28.694 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53942 10 6452 1 2025-11-14 05:12:14.970 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:12:14.887 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:12:14.885 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:12:14.822 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:12:14.862 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:12:29.105 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60252 10 6452 1 2025-11-14 05:11:00.420 00:02:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:11:00.418 00:02:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:13:29.502 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42130 10 6452 1 2025-11-14 05:14:29.905 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51010 10 6452 1 2025-11-14 05:14:00.418 00:01:00.194 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:14:00.420 00:01:00.188 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:15:30.314 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:46044 10 6452 1 2025-11-14 05:16:30.715 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34496 10 6452 1 2025-11-14 05:17:14.938 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:17:14.810 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:17:14.856 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:17:15.017 00:00:00.038 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:17:14.930 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:17:31.108 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59922 10 6452 1 2025-11-14 05:16:00.421 00:02:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:16:00.425 00:02:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:18:31.520 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:55548 10 6452 1 2025-11-14 05:19:31.929 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:37604 10 6452 1 2025-11-14 05:19:00.425 00:01:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:19:00.428 00:01:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:20:32.353 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42648 10 6452 1 2025-11-14 05:21:32.755 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:56704 10 6452 1 2025-11-14 05:22:15.010 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:22:15.105 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:22:14.876 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:22:14.926 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:22:14.834 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:22:33.181 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:53720 10 6452 1 2025-11-14 05:21:00.427 00:02:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:21:00.429 00:02:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:23:33.579 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:54458 10 6452 1 2025-11-14 05:24:33.992 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40760 10 6452 1 2025-11-14 05:24:00.427 00:01:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:24:00.429 00:01:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:25:34.403 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49442 10 6452 1 2025-11-14 05:26:34.811 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47920 10 6452 1 2025-11-14 05:27:15.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:27:15.340 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:27:15.429 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:27:15.271 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:27:15.512 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:27:35.220 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:50438 10 6452 1 2025-11-14 05:26:00.427 00:02:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:26:00.429 00:02:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:28:35.635 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:36360 10 6452 1 2025-11-14 05:29:36.003 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:45234 10 6452 1 2025-11-14 05:29:00.428 00:01:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:29:00.430 00:01:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:30:36.404 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:40112 10 6452 1 2025-11-14 05:31:36.805 00:00:10.585 TCP 1.101.0.1:3000 -> 23.104.0.1:60902 10 6452 1 2025-11-14 05:31:00.430 00:01:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:32:15.553 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:32:15.047 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:32:15.256 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:32:15.262 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:32:15.339 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:32:37.438 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33534 10 6452 1 2025-11-14 05:31:00.428 00:02:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:33:00.431 00:00:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-11-14 05:33:37.801 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42382 10 6452 1 2025-11-14 05:34:38.204 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43308 10 6452 1 2025-11-14 05:34:00.432 00:01:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:34:00.429 00:01:00.188 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:35:38.607 00:00:16.033 TCP 1.101.0.1:3000 -> 23.104.0.1:50800 10 6452 1 2025-11-14 05:36:44.684 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:36060 10 6452 1 2025-11-14 05:36:00.430 00:01:00.189 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:36:00.432 00:01:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:37:15.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:37:15.476 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:37:15.340 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:37:15.377 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:37:15.308 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:37:45.109 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:43748 10 6452 1 2025-11-14 05:38:00.433 00:00:00.183 TCP 179.21.23.21:38570 -> 179.21.23.23:179 2 123 1 2025-11-14 05:38:45.509 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55128 10 6452 1 2025-11-14 05:39:45.882 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45300 10 6452 1 2025-11-14 05:39:00.432 00:01:00.182 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:38:00.430 00:02:00.187 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:40:46.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-11-14 05:41:00.430 00:01:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:41:46.716 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:55230 10 6452 1 2025-11-14 05:41:00.433 00:01:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:42:15.466 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:42:15.497 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:42:15.682 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:42:15.680 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:42:15.765 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:42:47.132 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:41702 10 6452 1 2025-11-14 05:43:47.486 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50644 10 6452 1 2025-11-14 05:43:00.431 00:02:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:44:47.885 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:36604 10 6452 1 2025-11-14 05:43:00.432 00:02:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:45:48.309 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 10 6452 1 2025-11-14 05:46:00.431 00:01:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:46:48.707 00:00:10.576 TCP 1.101.0.1:3000 -> 23.104.0.1:49436 10 6452 1 2025-11-14 05:46:00.434 00:01:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:47:15.542 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:47:15.462 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:47:15.408 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:47:15.461 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:47:15.578 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:47:49.324 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37138 10 6452 1 2025-11-14 05:48:49.724 00:00:10.381 TCP 1.101.0.1:3000 -> 23.104.0.1:40354 10 6452 1 2025-11-14 05:49:50.144 00:00:10.442 TCP 1.101.0.1:3000 -> 23.104.0.1:59276 12 10375 1 2025-11-14 05:48:00.435 00:02:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:48:00.433 00:02:00.190 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:50:50.627 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:37080 10 6452 1 2025-11-14 05:51:00.433 00:01:00.191 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:51:00.436 00:01:00.185 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:51:51.027 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51594 10 6452 1 2025-11-14 05:52:15.963 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:52:15.832 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:52:15.741 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:52:15.881 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:52:15.665 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:52:51.435 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:49684 10 6452 1 2025-11-14 05:53:51.847 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42706 10 6452 1 2025-11-14 05:53:00.436 00:02:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-11-14 05:53:00.432 00:02:00.193 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-11-14 05:54:52.267 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40310 10 6452 1 2025-11-14 05:55:52.635 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:50472 10 6452 1 2025-11-14 05:56:00.436 00:01:00.187 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-11-14 05:56:00.435 00:01:00.192 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-11-14 05:56:53.057 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50968 12 6556 1 2025-11-14 05:57:15.930 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 05:57:15.700 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 05:57:15.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:57:15.846 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 05:57:15.489 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 05:57:53.457 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:44188 10 6452 1 Summary: total flows: 170, total bytes: 414329, total packets: 1010, avg bps: 935, avg pps: 0, avg bpp: 410 Time window: 2025-11-14 04:59:00 - 2025-11-14 05:58:03 Total flows processed: 170, passed: 170, Blocks skipped: 0, Bytes read: 17744 Sys: 0.0045s User: 0.0011s Wall: 0.0024s flows/second: 70422.9 Runtime: 0.0024s