Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-06 23:59:25.511 00:00:10.474 TCP 1.101.0.1:3000 -> 23.104.0.1:39968 14 14298 1 2025-10-06 23:58:40.339 00:01:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-06 23:58:40.340 00:01:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:00:26.025 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45960 10 6452 1 2025-10-07 00:01:26.427 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49472 10 6452 1 2025-10-07 00:02:26.829 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50974 10 6452 1 2025-10-07 00:03:27.230 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:53618 10 6452 1 2025-10-07 00:03:51.153 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:03:51.183 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:03:51.153 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:03:51.084 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:03:51.236 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:00:40.338 00:04:00.371 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-07 00:00:40.342 00:04:00.366 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-07 00:04:27.594 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:42134 10 6452 1 2025-10-07 00:05:27.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51056 10 6452 1 2025-10-07 00:06:28.398 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40790 10 6452 1 2025-10-07 00:05:40.343 00:01:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:07:28.795 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50986 10 6452 1 2025-10-07 00:08:29.201 00:00:10.492 TCP 1.101.0.1:3000 -> 23.104.0.1:38622 10 6452 1 2025-10-07 00:08:51.210 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:08:51.200 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:08:51.008 00:00:00.049 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:08:51.127 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:08:51.232 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:09:29.742 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 10 6452 1 2025-10-07 00:07:40.343 00:02:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:05:40.342 00:04:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-07 00:10:30.150 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:51386 10 6452 1 2025-10-07 00:11:30.513 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:59332 10 6452 1 2025-10-07 00:10:40.345 00:01:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:10:40.343 00:01:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:12:30.916 00:00:10.397 TCP 1.101.0.1:3000 -> 23.104.0.1:51300 10 6452 1 2025-10-07 00:13:31.340 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41062 10 6452 1 2025-10-07 00:13:50.970 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:13:50.902 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:13:51.247 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:13:51.164 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:13:51.164 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:12:40.344 00:02:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:12:40.345 00:02:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:14:31.742 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:54264 10 6452 1 2025-10-07 00:15:32.154 00:00:10.348 TCP 1.101.0.1:3000 -> 23.104.0.1:43332 10 6452 1 2025-10-07 00:15:40.344 00:01:00.369 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:15:40.346 00:01:00.364 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:16:32.542 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:52892 10 6452 1 2025-10-07 00:17:32.941 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:55296 10 6452 1 2025-10-07 00:18:33.363 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46706 10 6452 1 2025-10-07 00:18:50.823 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:18:51.136 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:18:51.203 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:18:51.208 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:18:51.285 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:17:40.348 00:02:00.365 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:17:40.347 00:02:00.370 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:19:33.765 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:42988 10 6452 1 2025-10-07 00:20:34.184 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-10-07 00:20:40.351 00:01:00.363 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:20:40.348 00:01:00.368 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:21:34.589 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44854 10 6452 1 2025-10-07 00:22:34.995 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40628 10 6452 1 2025-10-07 00:23:35.400 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41580 10 6452 1 2025-10-07 00:23:51.504 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:23:51.562 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:23:51.495 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:23:51.360 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:23:51.586 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:22:40.349 00:02:00.367 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:22:40.353 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:24:35.800 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:37790 10 6452 1 2025-10-07 00:25:36.206 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:46646 10 6452 1 2025-10-07 00:25:40.354 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:25:40.352 00:01:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:26:36.609 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53218 10 6452 1 2025-10-07 00:27:37.015 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:40996 10 6452 1 2025-10-07 00:28:37.420 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36048 10 6452 1 2025-10-07 00:28:51.531 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:28:51.122 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:28:51.525 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:28:51.327 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:28:51.607 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:27:40.351 00:02:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:27:40.354 00:02:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:29:37.787 00:00:22.036 TCP 1.101.0.1:3000 -> 23.104.0.1:54348 10 6452 1 2025-10-07 00:30:49.867 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37494 10 6452 1 2025-10-07 00:30:40.353 00:01:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:30:40.355 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:31:50.277 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38396 10 6452 1 2025-10-07 00:32:50.678 00:00:10.319 TCP 1.101.0.1:3000 -> 23.104.0.1:45426 10 6452 1 2025-10-07 00:33:51.579 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:33:51.508 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:33:51.463 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:33:51.498 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:33:51.320 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:33:51.051 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41394 10 6452 1 2025-10-07 00:34:51.458 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:56304 10 6452 1 2025-10-07 00:35:51.859 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 10 6452 1 2025-10-07 00:32:40.355 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-07 00:32:40.352 00:04:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-07 00:36:52.271 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:58252 10 6452 1 2025-10-07 00:37:52.678 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:45910 10 6452 1 2025-10-07 00:38:51.687 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:38:51.664 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:38:51.463 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:38:51.605 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:38:51.611 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:38:53.103 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:34644 10 6452 1 2025-10-07 00:39:53.464 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 10 6452 1 2025-10-07 00:40:53.823 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45744 10 6452 1 2025-10-07 00:37:40.357 00:04:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-07 00:37:40.356 00:04:00.366 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-07 00:41:54.190 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:52538 10 6452 1 2025-10-07 00:42:54.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60186 10 6452 1 2025-10-07 00:42:40.360 00:01:00.361 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:42:40.357 00:01:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:43:51.679 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:43:51.649 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:43:51.622 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:43:51.596 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:43:51.597 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:43:54.997 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55058 10 6452 1 2025-10-07 00:44:55.407 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:39386 10 6452 1 2025-10-07 00:45:55.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:60238 10 6452 1 2025-10-07 00:44:40.358 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:44:40.360 00:02:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:46:56.187 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55470 10 6452 1 2025-10-07 00:47:56.543 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:52974 10 6452 1 2025-10-07 00:47:40.361 00:01:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:47:40.358 00:01:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:48:51.829 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:48:51.648 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:48:51.834 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:48:51.747 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:48:51.806 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:48:56.907 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44106 10 6452 1 2025-10-07 00:49:57.325 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:43732 10 6452 1 2025-10-07 00:50:57.747 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:55866 10 6452 1 2025-10-07 00:49:40.359 00:02:00.365 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:49:40.361 00:02:00.360 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:51:58.163 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:39464 10 6452 1 2025-10-07 00:52:58.563 00:00:10.317 TCP 1.101.0.1:3000 -> 23.104.0.1:51866 10 6452 1 2025-10-07 00:52:40.364 00:01:00.357 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-07 00:52:40.362 00:01:00.362 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:53:51.998 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-07 00:53:51.806 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-07 00:53:51.820 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:53:51.915 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-07 00:53:51.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-07 00:53:58.921 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:35474 10 6452 1 2025-10-07 00:54:59.331 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:44500 10 6452 1 2025-10-07 00:55:59.692 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52756 10 6452 1 2025-10-07 00:54:40.361 00:02:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-07 00:54:40.364 00:02:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-07 00:57:00.121 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:35696 10 6452 1 2025-10-07 00:58:00.481 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42652 10 6452 1 2025-10-07 00:57:40.363 00:01:00.363 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-07 00:57:40.365 00:01:00.358 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 Summary: total flows: 157, total bytes: 417380, total packets: 1003, avg bps: 927, avg pps: 0, avg bpp: 416 Time window: 2025-10-06 23:58:40 - 2025-10-07 00:58:40 Total flows processed: 157, passed: 157, Blocks skipped: 0, Bytes read: 16392 Sys: 0.0041s User: 0.0010s Wall: 0.0024s flows/second: 66636.9 Runtime: 0.0024s