Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 17:58:49.505 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:52530 10 6452 1 2025-10-24 17:59:49.918 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51978 10 6452 1 2025-10-24 17:59:49.379 00:01:00.232 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:00:50.322 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:55130 10 6452 1 2025-10-24 17:59:49.380 00:02:00.227 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:01:50.695 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:35082 10 6452 1 2025-10-24 18:02:23.887 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.955 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:02:23.606 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.884 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:02:23.967 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:02:51.058 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:38726 10 6452 1 2025-10-24 18:01:49.378 00:02:00.234 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:02:49.381 00:01:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:03:51.459 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:56636 10 6452 1 2025-10-24 18:04:51.864 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38840 10 6452 1 2025-10-24 18:04:49.379 00:01:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:05:52.275 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54770 10 6452 1 2025-10-24 18:04:49.382 00:02:00.228 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:06:52.674 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40286 10 6452 1 2025-10-24 18:07:23.771 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:07:24.071 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:07:23.871 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:07:24.071 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:07:24.155 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:07:53.037 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:49706 10 6452 1 2025-10-24 18:06:49.379 00:02:00.233 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:07:49.385 00:01:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:08:53.399 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40754 10 6452 1 2025-10-24 18:09:53.801 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:60320 12 10375 1 2025-10-24 18:09:49.384 00:01:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:09:49.386 00:01:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:10:54.281 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58238 10 6452 1 2025-10-24 18:11:54.683 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:36952 10 6452 1 2025-10-24 18:12:24.348 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:12:24.222 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:12:24.273 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:12:24.268 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:12:24.220 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:12:55.062 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:39272 10 6452 1 2025-10-24 18:11:49.387 00:02:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:11:49.386 00:02:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:13:55.472 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38610 10 6452 1 2025-10-24 18:14:55.885 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:39414 10 6452 1 2025-10-24 18:14:49.387 00:01:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:14:49.385 00:01:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:15:56.252 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:40658 10 6452 1 2025-10-24 18:16:56.651 00:00:10.739 TCP 1.101.0.1:3000 -> 23.104.0.1:33090 10 6452 1 2025-10-24 18:17:24.170 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:17:24.225 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:17:23.891 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:17:24.175 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:17:24.258 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:17:57.432 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:53266 10 6452 1 2025-10-24 18:16:49.384 00:02:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:16:49.387 00:02:00.226 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:18:57.840 00:00:10.345 TCP 1.101.0.1:3000 -> 23.104.0.1:53590 10 6452 1 2025-10-24 18:19:58.223 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60652 10 6452 1 2025-10-24 18:19:49.385 00:01:00.231 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:19:49.388 00:01:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:20:58.627 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38222 10 6452 1 2025-10-24 18:21:59.027 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40644 10 6452 1 2025-10-24 18:22:24.150 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.072 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:22:24.176 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.324 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:22:24.406 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:22:59.433 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53012 10 6452 1 2025-10-24 18:21:49.386 00:02:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:21:49.389 00:02:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:23:59.833 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60496 10 6452 1 2025-10-24 18:25:00.233 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:36612 10 6452 1 2025-10-24 18:24:49.387 00:01:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:24:49.389 00:01:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:26:00.648 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51220 10 6452 1 2025-10-24 18:27:01.064 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 10 6452 1 2025-10-24 18:27:24.445 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:27:24.143 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:27:24.432 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:27:24.448 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:27:24.362 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:28:01.441 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:56238 10 6452 1 2025-10-24 18:26:49.390 00:02:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:26:49.388 00:02:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:29:01.851 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:38834 10 6452 1 2025-10-24 18:30:02.269 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:34438 10 6452 1 2025-10-24 18:29:49.388 00:01:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:29:49.390 00:01:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:31:02.678 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:50696 10 6452 1 2025-10-24 18:32:03.116 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35874 10 6452 1 2025-10-24 18:32:24.501 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:32:24.542 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:32:24.577 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:32:24.498 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:32:24.419 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:33:03.526 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41834 10 6452 1 2025-10-24 18:31:49.390 00:02:00.225 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:34:03.888 00:00:10.393 TCP 1.101.0.1:3000 -> 23.104.0.1:52104 10 6452 1 2025-10-24 18:35:04.314 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:57052 10 6452 1 2025-10-24 18:34:49.391 00:01:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:31:49.389 00:04:00.230 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-24 18:36:04.718 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:60466 10 6452 1 2025-10-24 18:37:05.143 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:45874 10 6452 1 2025-10-24 18:37:24.549 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:37:24.516 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.596 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:37:24.680 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:36:49.390 00:01:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:38:05.507 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41464 10 6452 1 2025-10-24 18:36:49.394 00:02:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:39:05.906 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:51360 10 6452 1 2025-10-24 18:40:06.319 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56962 10 6452 1 2025-10-24 18:39:49.393 00:01:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:38:49.391 00:02:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:41:06.718 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35884 10 6452 1 2025-10-24 18:42:07.126 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48244 10 6452 1 2025-10-24 18:42:24.824 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:42:24.789 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:42:24.741 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:42:24.500 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:42:24.741 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:41:49.391 00:01:00.228 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:41:49.393 00:01:00.223 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:43:07.533 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:52164 10 6452 1 2025-10-24 18:44:07.940 00:00:10.401 TCP 1.101.0.1:3000 -> 23.104.0.1:49666 10 6452 1 2025-10-24 18:45:08.388 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:40548 10 6452 1 2025-10-24 18:43:49.393 00:02:00.224 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:43:49.392 00:02:00.229 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:46:08.792 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60270 10 6452 1 2025-10-24 18:47:09.199 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46000 10 6452 1 2025-10-24 18:47:24.863 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.656 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:47:24.683 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.750 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:47:24.836 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:46:49.396 00:01:00.222 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:46:49.393 00:01:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:48:09.600 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35066 10 6452 1 2025-10-24 18:49:10.002 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43122 10 6452 1 2025-10-24 18:50:10.401 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:58332 10 6452 1 2025-10-24 18:48:49.401 00:02:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:48:49.397 00:02:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:51:10.804 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52552 10 6452 1 2025-10-24 18:52:24.837 00:00:00.027 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:52:24.961 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:52:24.869 00:00:00.030 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:52:11.220 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:49820 10 6452 1 2025-10-24 18:52:24.860 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:52:24.942 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:51:49.398 00:01:00.224 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:51:49.401 00:01:00.219 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:53:11.621 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:35040 10 6452 1 2025-10-24 18:54:12.026 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33058 10 6452 1 2025-10-24 18:55:12.428 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39628 10 6452 1 2025-10-24 18:53:49.402 00:02:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-24 18:53:49.398 00:02:00.227 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-24 18:56:12.836 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:39258 10 6452 1 2025-10-24 18:57:13.260 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42208 10 6452 1 2025-10-24 18:57:25.271 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-24 18:57:25.191 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-24 18:57:25.091 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:57:25.189 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-24 18:57:25.190 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-24 18:56:49.400 00:01:00.226 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-24 18:56:49.403 00:01:00.221 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-24 18:58:13.661 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:38250 10 6452 1 Summary: total flows: 167, total bytes: 420677, total packets: 1018, avg bps: 941, avg pps: 0, avg bpp: 413 Time window: 2025-10-24 17:58:49 - 2025-10-24 18:58:24 Total flows processed: 167, passed: 167, Blocks skipped: 0, Bytes read: 17432 Sys: 0.0036s User: 0.0012s Wall: 0.0024s flows/second: 68982.5 Runtime: 0.0024s