Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 20:59:09.379 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49110 10 6452 1 2025-10-06 20:58:40.270 00:01:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 20:58:40.272 00:01:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:00:09.786 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45444 10 6452 1 2025-10-06 21:01:10.148 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41444 10 6452 1 2025-10-06 21:02:10.557 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:51492 10 6452 1 2025-10-06 21:00:40.270 00:02:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-06 21:00:40.274 00:02:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 21:03:10.919 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:40108 10 6452 1 2025-10-06 21:03:47.455 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:03:47.237 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:03:47.246 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:03:47.373 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:03:47.243 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:04:11.296 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59734 10 6452 1 2025-10-06 21:03:40.271 00:01:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 21:03:40.273 00:01:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:05:11.696 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:53010 10 6452 1 2025-10-06 21:06:12.108 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:51384 10 6452 1 2025-10-06 21:07:12.506 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-10-06 21:05:40.274 00:02:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 21:05:40.272 00:02:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-06 21:08:12.909 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48176 12 6556 1 2025-10-06 21:08:47.434 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:08:47.354 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:08:47.376 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:08:47.353 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:08:47.351 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:09:13.314 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43798 10 6452 1 2025-10-06 21:08:40.274 00:01:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:08:40.272 00:01:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 21:10:13.715 00:00:10.563 TCP 1.101.0.1:3000 -> 23.104.0.1:58352 10 6452 1 2025-10-06 21:11:14.321 00:00:10.734 TCP 1.101.0.1:3000 -> 23.104.0.1:35632 10 6452 1 2025-10-06 21:12:15.117 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:43508 10 6452 1 2025-10-06 21:13:15.523 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51886 10 6452 1 2025-10-06 21:13:47.625 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:13:47.313 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:13:47.505 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:13:47.542 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:13:47.404 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:14:15.930 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:44412 10 6452 1 2025-10-06 21:10:40.275 00:04:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:10:40.272 00:04:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:15:16.355 00:00:10.334 TCP 1.101.0.1:3000 -> 23.104.0.1:48904 10 6452 1 2025-10-06 21:16:16.732 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54206 10 6452 1 2025-10-06 21:17:17.122 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:37052 10 6452 1 2025-10-06 21:18:17.548 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34300 10 6452 1 2025-10-06 21:18:47.831 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:18:47.844 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:18:47.749 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:18:47.908 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:18:47.831 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:19:17.962 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:46258 10 6452 1 2025-10-06 21:15:40.276 00:04:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:15:40.274 00:04:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:20:18.372 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:38998 10 6452 1 2025-10-06 21:21:18.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35392 10 6452 1 2025-10-06 21:22:19.155 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:38864 10 6452 1 2025-10-06 21:23:19.512 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:57990 10 6452 1 2025-10-06 21:23:47.818 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:23:47.819 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:23:47.616 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:23:47.736 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:23:47.817 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:24:19.932 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55784 10 6452 1 2025-10-06 21:20:40.279 00:04:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:20:40.275 00:04:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:25:20.346 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46434 10 6452 1 2025-10-06 21:26:20.747 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59644 10 6452 1 2025-10-06 21:25:40.279 00:01:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:27:21.152 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37356 10 6452 1 2025-10-06 21:28:21.559 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:49144 10 6452 1 2025-10-06 21:28:47.821 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:28:47.583 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:28:47.738 00:00:00.026 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:28:47.736 00:00:00.028 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:28:47.825 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:29:21.967 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:40240 10 6452 1 2025-10-06 21:25:40.276 00:04:00.372 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:27:40.280 00:02:00.367 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 21:30:22.330 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:37522 10 6452 1 2025-10-06 21:31:22.734 00:00:10.497 TCP 1.101.0.1:3000 -> 23.104.0.1:46610 10 6452 1 2025-10-06 21:30:40.277 00:01:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 21:30:40.279 00:01:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:32:23.272 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:55836 10 6452 1 2025-10-06 21:33:23.675 00:00:11.100 TCP 1.101.0.1:3000 -> 23.104.0.1:48544 10 6452 1 2025-10-06 21:33:47.722 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:33:47.728 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:33:48.109 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:33:47.838 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:33:48.191 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:34:24.813 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:58696 10 6452 1 2025-10-06 21:32:40.281 00:02:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 21:32:40.278 00:02:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-06 21:35:25.182 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:36694 10 6452 1 2025-10-06 21:36:25.587 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50230 10 6452 1 2025-10-06 21:35:40.283 00:01:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:35:40.281 00:01:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 21:37:25.991 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:48328 10 6452 1 2025-10-06 21:38:26.362 00:00:10.344 TCP 1.101.0.1:3000 -> 23.104.0.1:48536 10 6452 1 2025-10-06 21:38:47.995 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:38:47.908 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:38:47.838 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:38:47.914 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:38:48.120 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:39:26.747 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36628 10 6452 1 2025-10-06 21:37:40.294 00:02:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-06 21:37:40.290 00:02:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-06 21:40:27.147 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:37148 10 6452 1 2025-10-06 21:41:27.545 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:46034 10 6452 1 2025-10-06 21:40:40.293 00:01:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:40:40.291 00:01:00.361 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 21:42:27.955 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:49310 10 6452 1 2025-10-06 21:43:28.358 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60042 10 6452 1 2025-10-06 21:43:48.088 00:00:00.031 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:43:48.171 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:43:47.821 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:43:48.006 00:00:00.030 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:43:48.105 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:44:28.768 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49368 10 6452 1 2025-10-06 21:45:29.177 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:33238 10 6452 1 2025-10-06 21:42:40.293 00:04:00.359 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:42:40.296 00:04:00.354 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:46:29.576 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:48574 10 6452 1 2025-10-06 21:47:29.966 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-10-06 21:48:30.376 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59362 10 6452 1 2025-10-06 21:48:48.321 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:48:48.072 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:48:47.966 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:48:48.238 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:48:48.150 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:49:30.743 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:37906 10 6452 1 2025-10-06 21:50:31.157 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52222 10 6452 1 2025-10-06 21:47:40.296 00:04:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:47:40.293 00:04:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:51:31.560 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60634 10 6452 1 2025-10-06 21:52:31.961 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51084 10 6452 1 2025-10-06 21:53:32.365 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:35208 10 6452 1 2025-10-06 21:53:48.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-06 21:53:48.315 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:53:48.066 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:53:48.154 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:53:48.505 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:54:32.772 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47218 10 6452 1 2025-10-06 21:55:33.188 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33506 10 6452 1 2025-10-06 21:52:40.295 00:04:00.360 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-06 21:52:40.297 00:04:00.355 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-06 21:56:33.594 00:00:10.423 TCP 1.101.0.1:3000 -> 23.104.0.1:35276 11 6504 1 2025-10-06 21:57:34.062 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:43534 10 6452 1 2025-10-06 21:57:40.300 00:01:00.356 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-06 21:58:34.462 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:39352 10 6452 1 2025-10-06 21:58:48.322 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-06 21:58:48.501 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:58:48.402 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-06 21:58:48.471 00:00:00.030 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-06 21:58:48.484 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 Summary: total flows: 156, total bytes: 417156, total packets: 1023, avg bps: 924, avg pps: 0, avg bpp: 407 Time window: 2025-10-06 20:58:40 - 2025-10-06 21:58:48 Total flows processed: 156, passed: 156, Blocks skipped: 0, Bytes read: 16288 Sys: 0.0045s User: 0.0000s Wall: 0.0032s flows/second: 48615.2 Runtime: 0.0032s