Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 15:59:36.757 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:44458 10 6452 1 2025-10-24 16:00:37.178 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:46696 10 6452 1 2025-10-24 15:56:49.339 00:04:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 15:58:49.339 00:02:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:01:37.595 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:56778 10 6452 1 2025-10-24 16:02:21.494 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:02:21.419 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:02:21.327 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:02:21.420 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:02:21.503 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:02:38.011 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43014 10 6452 1 2025-10-24 16:01:49.339 00:01:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:03:38.429 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51334 10 6452 1 2025-10-24 16:04:38.831 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:43804 10 6452 1 2025-10-24 16:03:49.339 00:02:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:05:39.258 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:47086 10 6452 1 2025-10-24 16:01:49.342 00:04:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 16:06:39.616 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:48102 10 6452 1 2025-10-24 16:07:21.502 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:07:21.419 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:07:21.595 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:07:21.516 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:07:21.437 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:06:49.341 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:06:49.339 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:07:40.017 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44540 10 6452 1 2025-10-24 16:08:40.420 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:46100 10 6452 1 2025-10-24 16:09:40.779 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:53698 10 6452 1 2025-10-24 16:08:49.344 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:08:49.342 00:02:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:10:41.185 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38738 10 6452 1 2025-10-24 16:11:41.592 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34050 10 6452 1 2025-10-24 16:12:21.656 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:12:21.651 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:12:21.655 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:12:21.748 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:12:21.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:11:49.344 00:01:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:11:49.342 00:01:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:12:41.995 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53458 11 6504 1 2025-10-24 16:13:42.412 00:00:10.552 TCP 1.101.0.1:3000 -> 23.104.0.1:57022 10 6452 1 2025-10-24 16:14:42.999 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:42964 10 6452 1 2025-10-24 16:13:49.348 00:02:00.202 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:15:43.412 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43064 10 6452 1 2025-10-24 16:16:43.815 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33014 10 6452 1 2025-10-24 16:17:21.753 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:17:21.745 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:17:21.679 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:17:21.714 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:17:21.836 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:16:49.348 00:01:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:13:49.346 00:04:00.213 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 16:17:44.217 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46290 10 6452 1 2025-10-24 16:18:44.623 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53974 10 6452 1 2025-10-24 16:19:45.026 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33092 10 6452 1 2025-10-24 16:18:49.349 00:02:00.209 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:20:45.430 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:47248 10 6452 1 2025-10-24 16:21:45.837 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49230 10 6452 1 2025-10-24 16:22:21.805 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:22:21.643 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:22:21.729 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:22:21.562 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:22:21.723 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:21:49.350 00:01:00.210 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:18:49.347 00:04:00.215 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 16:22:46.250 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44700 10 6452 1 2025-10-24 16:23:46.671 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:34240 10 6452 1 2025-10-24 16:23:49.348 00:01:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:24:47.038 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40316 10 6452 1 2025-10-24 16:23:49.350 00:02:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:25:47.403 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33714 10 6452 1 2025-10-24 16:26:47.816 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:42268 10 6452 1 2025-10-24 16:27:21.810 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:27:22.008 00:00:00.045 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:27:22.061 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:27:21.858 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:27:21.727 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:26:49.352 00:01:00.212 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:25:49.349 00:02:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:27:48.218 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57352 10 6452 1 2025-10-24 16:28:48.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:44030 10 6452 1 2025-10-24 16:28:49.351 00:01:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:29:49.027 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33640 10 6452 1 2025-10-24 16:30:49.441 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:44862 10 6452 1 2025-10-24 16:31:49.840 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:49350 10 6452 1 2025-10-24 16:32:22.264 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:32:22.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:32:22.213 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:32:22.025 00:00:00.031 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:32:21.929 00:00:00.026 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:28:49.353 00:04:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 16:30:49.350 00:02:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:32:50.261 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56100 10 6452 1 2025-10-24 16:33:50.662 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59510 10 6452 1 2025-10-24 16:33:49.351 00:01:00.218 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:34:51.097 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52256 10 6452 1 2025-10-24 16:35:51.500 00:00:25.213 TCP 1.101.0.1:3000 -> 23.104.0.1:45898 12 10375 1 2025-10-24 16:37:06.789 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:53678 10 6452 1 2025-10-24 16:37:22.092 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:37:22.154 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:37:21.966 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:37:22.160 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:37:22.242 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:33:49.354 00:04:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-24 16:35:49.351 00:02:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:38:07.188 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:43526 10 6452 1 2025-10-24 16:39:07.589 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 10 6452 1 2025-10-24 16:38:49.355 00:01:00.213 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:38:49.352 00:01:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:40:08.004 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:41246 10 6452 1 2025-10-24 16:41:08.409 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:54864 10 6452 1 2025-10-24 16:42:08.807 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51884 10 6452 1 2025-10-24 16:42:22.303 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:42:22.249 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:42:22.183 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:42:22.262 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:42:22.385 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:40:49.352 00:02:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:40:49.354 00:02:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:43:09.213 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:55752 10 6452 1 2025-10-24 16:44:09.617 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37712 10 6452 1 2025-10-24 16:43:49.355 00:01:00.216 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:43:49.353 00:01:00.221 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:45:10.021 00:00:11.004 TCP 1.101.0.1:3000 -> 23.104.0.1:49746 10 6452 1 2025-10-24 16:46:11.065 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48330 10 6452 1 2025-10-24 16:47:22.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:47:22.913 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:47:22.913 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:47:22.985 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:47:22.950 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:47:11.471 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57194 10 6452 1 2025-10-24 16:45:49.357 00:02:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:45:49.356 00:02:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 16:48:11.875 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55944 10 6452 1 2025-10-24 16:49:12.236 00:00:18.094 TCP 1.101.0.1:3000 -> 23.104.0.1:41640 10 6452 1 2025-10-24 16:48:49.357 00:01:00.214 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:48:49.356 00:01:00.219 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:50:20.379 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:39398 10 6452 1 2025-10-24 16:51:20.742 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6452 1 2025-10-24 16:52:22.654 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:52:22.485 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:52:22.485 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:52:22.323 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:52:22.571 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:52:21.151 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:48134 10 6452 1 2025-10-24 16:50:49.392 00:02:00.181 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:53:21.550 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:42890 10 6452 1 2025-10-24 16:54:21.957 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50646 10 6452 1 2025-10-24 16:53:49.358 00:01:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 16:50:49.365 00:04:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 16:55:22.358 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:47776 10 6452 1 2025-10-24 16:56:22.759 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59294 10 6452 1 2025-10-24 16:55:49.356 00:01:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 16:57:22.633 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 16:57:22.547 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 16:57:22.667 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 16:57:22.485 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:57:22.539 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 16:57:23.165 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35310 10 6452 1 2025-10-24 16:55:49.358 00:02:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 16:58:23.570 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33372 10 6452 1 Summary: total flows: 161, total bytes: 414646, total packets: 1015, avg bps: 895, avg pps: 0, avg bpp: 408 Time window: 2025-10-24 15:56:49 - 2025-10-24 16:58:33 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0025s User: 0.0025s Wall: 0.0023s flows/second: 71428.3 Runtime: 0.0023s