Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 11:58:42.048 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:48932 10 6452 1 2025-10-24 11:59:42.453 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:53724 10 6452 1 2025-10-24 12:00:42.860 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48058 10 6452 1 2025-10-24 11:57:49.257 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 11:57:49.255 00:04:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:01:43.267 00:00:24.806 TCP 1.101.0.1:3000 -> 23.104.0.1:58172 10 6452 1 2025-10-24 12:02:16.644 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:02:16.581 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:02:16.642 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:02:16.653 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:02:16.726 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:02:58.119 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33710 10 6452 1 2025-10-24 12:03:58.522 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:37100 10 6452 1 2025-10-24 12:04:58.882 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46934 10 6452 1 2025-10-24 12:05:59.286 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35434 10 6452 1 2025-10-24 12:02:49.257 00:04:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:02:49.260 00:04:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:07:16.774 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:06:59.690 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45972 10 6452 1 2025-10-24 12:07:16.676 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:07:16.789 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:07:16.702 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:07:16.692 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:08:00.109 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:59630 10 6452 1 2025-10-24 12:07:49.258 00:01:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:09:00.523 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:60188 10 6452 1 2025-10-24 12:10:00.934 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:49212 10 6452 1 2025-10-24 12:11:01.364 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:47624 10 6452 1 2025-10-24 12:07:49.260 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:09:49.258 00:02:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 12:12:01.778 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 10 6452 1 2025-10-24 12:12:16.890 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:12:17.079 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:12:16.811 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:12:16.882 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:12:16.965 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:13:02.183 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49510 10 6452 1 2025-10-24 12:12:49.261 00:01:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:14:02.585 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51470 10 6452 1 2025-10-24 12:15:02.990 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 10 6452 1 2025-10-24 12:16:03.398 00:00:10.975 TCP 1.101.0.1:3000 -> 23.104.0.1:48862 10 6452 1 2025-10-24 12:12:49.262 00:04:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:14:49.260 00:02:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 12:17:04.409 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37706 10 6452 1 2025-10-24 12:17:16.960 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:17:16.964 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:17:17.135 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:17:17.046 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:17:17.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:18:04.812 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:33824 10 6452 1 2025-10-24 12:17:49.261 00:01:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:17:49.263 00:01:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 12:19:05.193 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43594 10 6452 1 2025-10-24 12:20:05.599 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:42364 10 6452 1 2025-10-24 12:21:06.002 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:34886 10 6452 1 2025-10-24 12:19:49.265 00:02:00.220 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 12:22:17.332 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:22:16.808 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:22:06.363 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51358 10 6452 1 2025-10-24 12:22:17.030 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:22:17.182 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:22:17.113 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:23:06.774 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54498 10 6452 1 2025-10-24 12:22:49.267 00:01:00.218 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 12:19:49.263 00:04:00.225 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:24:07.183 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41718 10 6452 1 2025-10-24 12:25:07.556 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:49438 10 6452 1 2025-10-24 12:26:07.922 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42252 10 6452 1 2025-10-24 12:24:49.269 00:02:00.217 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 12:27:17.221 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:27:17.139 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:27:17.203 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:27:08.333 00:00:10.318 TCP 1.101.0.1:3000 -> 23.104.0.1:43378 10 6452 1 2025-10-24 12:27:17.085 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:27:17.139 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:28:08.687 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45656 10 6452 1 2025-10-24 12:27:49.271 00:01:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 12:24:49.266 00:04:00.222 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:29:09.112 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:51948 10 6452 1 2025-10-24 12:30:09.522 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:57570 10 6452 1 2025-10-24 12:31:09.884 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34448 10 6452 1 2025-10-24 12:32:17.186 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:32:17.118 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:32:17.257 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:32:17.175 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:32:17.339 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:32:10.292 00:00:10.478 TCP 1.101.0.1:3000 -> 23.104.0.1:49166 10 6452 1 2025-10-24 12:33:10.808 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32794 10 6452 1 2025-10-24 12:29:49.271 00:04:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:29:49.274 00:04:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:34:11.212 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:44650 10 6452 1 2025-10-24 12:35:11.581 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55374 10 6452 1 2025-10-24 12:36:11.992 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55666 10 6452 1 2025-10-24 12:37:18.344 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:37:18.422 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:37:18.249 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:37:18.104 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:37:18.427 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:37:12.393 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59934 10 6452 1 2025-10-24 12:38:12.796 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:49100 10 6452 1 2025-10-24 12:34:49.272 00:04:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:34:49.276 00:04:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:39:13.160 00:00:10.512 TCP 1.101.0.1:3000 -> 23.104.0.1:52148 10 6452 1 2025-10-24 12:40:13.707 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54400 10 6452 1 2025-10-24 12:39:49.273 00:01:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:41:14.102 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33368 10 6452 1 2025-10-24 12:42:17.483 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:42:17.561 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:42:17.591 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:42:17.737 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:42:17.820 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:42:14.512 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:43230 10 6452 1 2025-10-24 12:43:14.874 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33512 10 6452 1 2025-10-24 12:39:49.277 00:04:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:41:49.274 00:02:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 12:44:15.276 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38540 10 6452 1 2025-10-24 12:45:15.641 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:34488 10 6452 1 2025-10-24 12:44:49.275 00:01:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:46:16.040 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-10-24 12:47:17.692 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:47:17.498 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:47:17.545 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:47:17.609 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:47:17.486 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:47:16.398 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34070 10 6452 1 2025-10-24 12:48:16.802 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:58948 10 6452 1 2025-10-24 12:44:49.278 00:04:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 12:46:49.276 00:02:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 12:49:17.181 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60022 10 6452 1 2025-10-24 12:50:17.583 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:41516 10 6452 1 2025-10-24 12:49:49.279 00:01:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 12:49:49.277 00:01:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 12:51:17.951 00:00:10.587 TCP 1.101.0.1:3000 -> 23.104.0.1:37226 10 6452 1 2025-10-24 12:52:17.756 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:52:17.465 00:00:00.026 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:52:17.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:52:17.295 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:52:17.674 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:52:18.577 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48044 10 6452 1 2025-10-24 12:53:18.983 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 10 6452 1 2025-10-24 12:51:49.281 00:02:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 12:54:19.343 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:48352 10 6452 1 2025-10-24 12:55:19.742 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:60938 10 6452 1 2025-10-24 12:54:49.279 00:01:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 12:51:49.277 00:04:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 12:56:20.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42218 10 6452 1 2025-10-24 12:57:17.813 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 12:57:17.656 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 12:57:17.726 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 12:57:17.382 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:57:17.730 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 12:57:20.519 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55684 10 6452 1 2025-10-24 12:58:20.923 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35388 10 6452 1 2025-10-24 12:56:49.280 00:02:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 Summary: total flows: 154, total bytes: 417123, total packets: 1022, avg bps: 911, avg pps: 0, avg bpp: 408 Time window: 2025-10-24 11:57:49 - 2025-10-24 12:58:49 Total flows processed: 154, passed: 154, Blocks skipped: 0, Bytes read: 16080 Sys: 0.0044s User: 0.0011s Wall: 0.0020s flows/second: 75714.8 Runtime: 0.0021s