Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 17:59:37.430 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:42250 10 6452 1 2025-10-06 18:00:37.831 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:57740 10 6452 1 2025-10-06 18:01:38.216 00:00:11.033 TCP 1.101.0.1:3000 -> 23.104.0.1:35750 10 6452 1 2025-10-06 17:58:40.203 00:04:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 17:58:40.207 00:04:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:02:39.286 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:37392 10 6452 1 2025-10-06 18:03:43.747 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:03:43.756 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:03:43.623 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:03:43.664 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:03:43.712 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:03:39.644 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 10 6452 1 2025-10-06 18:04:40.055 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:47254 10 6452 1 2025-10-06 18:05:40.461 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35092 10 6452 1 2025-10-06 18:06:40.861 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:35062 10 6452 1 2025-10-06 18:03:40.205 00:04:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:03:40.207 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:07:41.277 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-10-06 18:08:43.641 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:08:43.780 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:08:43.726 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:08:43.712 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:08:43.809 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:08:41.674 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:36860 10 6452 1 2025-10-06 18:09:42.108 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56134 10 6452 1 2025-10-06 18:10:42.509 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33258 10 6452 1 2025-10-06 18:11:42.913 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54678 10 6452 1 2025-10-06 18:08:40.209 00:04:00.359 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:08:40.206 00:04:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:12:43.275 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47726 10 6452 1 2025-10-06 18:13:44.009 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:13:43.862 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:13:43.590 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:13:43.925 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:13:43.929 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:13:43.675 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:48242 10 6452 1 2025-10-06 18:13:40.210 00:01:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 18:14:44.037 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:49410 10 6452 1 2025-10-06 18:15:44.400 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 10 6452 1 2025-10-06 18:16:44.759 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:58220 10 6452 1 2025-10-06 18:15:40.211 00:02:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 18:13:40.207 00:04:00.364 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:17:45.175 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:57814 10 6452 1 2025-10-06 18:18:44.163 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:18:43.988 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:18:43.998 00:00:00.025 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:18:44.081 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:18:43.809 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:18:45.575 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58810 10 6452 1 2025-10-06 18:18:40.209 00:01:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 18:18:40.211 00:01:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 18:19:45.984 00:00:10.621 TCP 1.101.0.1:3000 -> 23.104.0.1:47446 10 6452 1 2025-10-06 18:20:46.646 00:00:10.316 TCP 1.101.0.1:3000 -> 23.104.0.1:57370 10 6452 1 2025-10-06 18:21:47.001 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46056 10 6452 1 2025-10-06 18:22:47.402 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41288 10 6452 1 2025-10-06 18:23:44.378 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:23:44.242 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:23:43.798 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:23:44.295 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:23:44.238 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:23:47.800 00:00:10.351 TCP 1.101.0.1:3000 -> 23.104.0.1:60664 10 6452 1 2025-10-06 18:20:40.213 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:20:40.209 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:24:48.193 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33802 10 6452 1 2025-10-06 18:25:48.593 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:39220 10 6452 1 2025-10-06 18:26:49.000 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54518 10 6452 1 2025-10-06 18:27:49.402 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44072 10 6452 1 2025-10-06 18:28:44.320 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:28:44.238 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:28:43.989 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:28:44.234 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:28:44.235 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:28:49.811 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:41480 10 6452 1 2025-10-06 18:25:40.213 00:04:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:25:40.210 00:04:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:29:50.192 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:40650 10 6452 1 2025-10-06 18:30:50.603 00:00:12.606 TCP 1.101.0.1:3000 -> 23.104.0.1:39922 10 6452 1 2025-10-06 18:31:53.290 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:38984 10 6452 1 2025-10-06 18:32:53.689 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54564 10 6452 1 2025-10-06 18:33:44.332 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:33:43.965 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:33:44.181 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:33:44.333 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:33:44.263 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:33:54.110 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55208 10 6452 1 2025-10-06 18:30:40.212 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:30:40.214 00:04:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:34:54.515 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:43836 10 6452 1 2025-10-06 18:35:54.934 00:00:10.389 TCP 1.101.0.1:3000 -> 23.104.0.1:46756 10 6452 1 2025-10-06 18:36:55.362 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33622 10 6452 1 2025-10-06 18:37:55.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:53138 10 6452 1 2025-10-06 18:38:44.344 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:38:44.546 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:38:44.740 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:38:44.528 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:38:44.821 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:38:56.180 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:51988 10 6452 1 2025-10-06 18:35:40.215 00:04:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:35:40.214 00:04:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:39:56.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55730 10 6452 1 2025-10-06 18:40:56.993 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41708 10 6452 1 2025-10-06 18:41:57.397 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:38646 10 6452 1 2025-10-06 18:42:57.795 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42192 10 6452 1 2025-10-06 18:43:44.421 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:43:44.506 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:43:44.550 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:43:44.337 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:43:44.732 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:43:58.200 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:41100 10 6452 1 2025-10-06 18:40:40.215 00:04:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:40:40.218 00:04:00.362 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:44:58.559 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41450 10 6452 1 2025-10-06 18:45:58.959 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47532 10 6452 1 2025-10-06 18:45:40.216 00:01:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 18:45:40.220 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 18:46:59.367 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:57618 10 6452 1 2025-10-06 18:47:59.728 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:56808 10 6452 1 2025-10-06 18:48:44.522 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:48:44.548 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:48:44.604 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:48:44.531 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:48:44.697 00:00:00.020 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:49:00.113 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:38142 10 6452 1 2025-10-06 18:47:40.218 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-06 18:47:40.221 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 18:50:00.518 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:43760 10 6452 1 2025-10-06 18:51:00.879 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57018 10 6452 1 2025-10-06 18:50:40.220 00:01:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 18:50:40.222 00:01:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 18:52:01.280 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:40088 10 6452 1 2025-10-06 18:53:01.683 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:54012 10 6452 1 2025-10-06 18:53:44.784 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:53:44.702 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:53:44.576 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:53:44.700 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:53:44.699 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 18:54:02.110 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37406 10 6452 1 2025-10-06 18:55:02.526 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50224 10 6452 1 2025-10-06 18:56:02.949 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:53540 10 6452 1 2025-10-06 18:52:40.219 00:04:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 18:52:40.221 00:04:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 18:57:03.322 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:37066 10 6452 1 2025-10-06 18:58:03.723 00:00:10.342 TCP 1.101.0.1:3000 -> 23.104.0.1:42568 10 6452 1 2025-10-06 18:58:44.877 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 18:58:44.670 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 18:58:44.483 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:58:44.795 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 18:58:44.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 Summary: total flows: 148, total bytes: 410302, total packets: 1006, avg bps: 910, avg pps: 0, avg bpp: 407 Time window: 2025-10-06 17:58:40 - 2025-10-06 18:58:44 Total flows processed: 148, passed: 148, Blocks skipped: 0, Bytes read: 15456 Sys: 0.0028s User: 0.0019s Wall: 0.0020s flows/second: 73013.1 Runtime: 0.0020s