Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-26 08:59:16.674 00:00:10.958 TCP 1.101.0.1:3000 -> 23.104.0.1:46022 10 6661 1 2025-10-26 08:57:50.318 00:02:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 08:58:50.321 00:01:00.203 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:00:17.669 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:53304 10 6661 1 2025-10-26 09:01:18.105 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:51194 10 6661 1 2025-10-26 09:00:50.317 00:01:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:02:18.464 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:39180 10 6661 1 2025-10-26 09:03:12.347 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:03:12.189 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:03:12.133 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:03:12.264 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:03:12.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:03:18.863 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:57178 10 6661 1 2025-10-26 09:04:19.234 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54236 10 6661 1 2025-10-26 09:00:50.321 00:04:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 09:02:50.318 00:02:00.209 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:05:19.637 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:45244 10 6661 1 2025-10-26 09:06:19.997 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:60268 10 6661 1 2025-10-26 09:05:50.321 00:01:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:07:20.408 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:45206 10 6661 1 2025-10-26 09:08:10.969 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:08:10.928 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:08:10.967 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:08:10.842 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:08:11.050 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:08:20.820 00:00:10.760 TCP 1.101.0.1:3000 -> 23.104.0.1:50938 10 6661 1 2025-10-26 09:09:21.629 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:47824 10 6661 1 2025-10-26 09:07:50.320 00:02:00.208 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:05:50.324 00:04:00.204 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 09:10:22.004 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50502 10 6661 1 2025-10-26 09:11:22.418 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52794 10 6661 1 2025-10-26 09:10:50.321 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:10:50.324 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:12:22.822 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:52288 10 6661 1 2025-10-26 09:13:10.954 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:13:11.183 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:13:11.104 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:13:11.123 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:13:11.100 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:13:23.226 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58478 10 6661 1 2025-10-26 09:14:23.633 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39580 10 6661 1 2025-10-26 09:12:50.324 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:15:24.036 00:00:14.819 TCP 1.101.0.1:3000 -> 23.104.0.1:45460 10 6661 1 2025-10-26 09:16:28.889 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:57628 10 6661 1 2025-10-26 09:15:50.325 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:12:50.322 00:04:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 09:17:29.269 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51816 10 6661 1 2025-10-26 09:18:10.916 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:18:10.940 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:18:11.244 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:18:11.161 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:18:11.162 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:18:29.676 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:57400 10 6661 1 2025-10-26 09:19:30.110 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:35762 10 6661 1 2025-10-26 09:17:50.327 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:20:30.516 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:49756 10 6661 1 2025-10-26 09:17:50.324 00:04:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 09:21:30.924 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:53422 10 6661 1 2025-10-26 09:20:50.328 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:22:31.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57100 10 6661 1 2025-10-26 09:23:11.169 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:23:11.520 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:23:11.550 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:23:11.433 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:23:11.633 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:23:31.739 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44464 10 6661 1 2025-10-26 09:22:50.324 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:24:32.144 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45700 10 6661 1 2025-10-26 09:22:50.326 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:25:32.513 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:56026 12 6765 1 2025-10-26 09:24:50.324 00:02:00.220 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:26:32.922 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:55388 10 6661 1 2025-10-26 09:25:50.327 00:01:00.215 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:27:33.302 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:43870 10 6661 1 2025-10-26 09:28:11.435 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:28:11.343 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:28:11.099 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:28:11.352 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:28:11.278 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:28:33.715 00:00:10.663 TCP 1.101.0.1:3000 -> 23.104.0.1:44706 10 6661 1 2025-10-26 09:27:50.324 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:29:34.416 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56700 10 6661 1 2025-10-26 09:27:50.327 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:30:34.815 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:34732 10 6661 1 2025-10-26 09:31:35.215 00:00:10.443 TCP 1.101.0.1:3000 -> 23.104.0.1:56708 12 10375 1 2025-10-26 09:30:50.328 00:01:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:29:50.327 00:02:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:32:35.702 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:37474 10 6452 1 2025-10-26 09:33:12.336 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:33:11.545 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:33:11.361 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:33:12.253 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:33:12.232 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:33:36.114 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:55424 10 6452 1 2025-10-26 09:32:50.327 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:34:36.473 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:41310 10 6452 1 2025-10-26 09:35:36.907 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:37062 10 6452 1 2025-10-26 09:34:50.328 00:02:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:36:37.317 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:60772 10 6452 1 2025-10-26 09:32:50.330 00:04:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 09:37:37.719 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:34988 10 6452 1 2025-10-26 09:38:11.503 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:38:11.508 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:38:11.380 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:38:11.422 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:38:11.213 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:37:50.329 00:01:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:38:38.135 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-10-26 09:39:38.496 00:00:10.347 TCP 1.101.0.1:3000 -> 23.104.0.1:56798 10 6452 1 2025-10-26 09:40:38.895 00:00:10.340 TCP 1.101.0.1:3000 -> 23.104.0.1:54242 10 6452 1 2025-10-26 09:41:39.274 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:49728 10 6452 1 2025-10-26 09:37:50.332 00:04:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 10 615 1 2025-10-26 09:39:50.329 00:02:00.212 TCP 179.21.23.23:179 -> 179.21.23.21:38570 6 369 1 2025-10-26 09:42:39.687 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45346 10 6452 1 2025-10-26 09:43:11.662 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:43:11.490 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:43:11.669 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:43:11.659 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:43:11.580 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:43:40.107 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40552 10 6452 1 2025-10-26 09:42:50.333 00:01:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:42:50.331 00:01:00.210 TCP 179.21.23.23:179 -> 179.21.23.21:38570 4 246 1 2025-10-26 09:44:40.510 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:59466 10 6452 1 2025-10-26 09:45:40.917 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:33028 10 6452 1 2025-10-26 09:44:50.333 00:02:00.205 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:46:41.331 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:53280 10 6452 1 2025-10-26 09:47:41.700 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:38942 10 6452 1 2025-10-26 09:48:11.743 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:48:11.710 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:48:11.625 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:48:11.753 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:48:11.708 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:47:50.333 00:01:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:44:50.330 00:04:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 09:48:42.110 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33902 10 6452 1 2025-10-26 09:49:42.508 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:50684 10 6452 1 2025-10-26 09:50:42.914 00:00:10.514 TCP 1.101.0.1:3000 -> 23.104.0.1:37764 14 14507 1 2025-10-26 09:49:50.333 00:02:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:51:43.460 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:45944 10 6661 1 2025-10-26 09:52:43.822 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:59490 10 6661 1 2025-10-26 09:53:11.780 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:53:11.726 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:53:11.852 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:53:11.678 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:53:11.935 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:52:50.334 00:01:00.206 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 2025-10-26 09:49:50.332 00:04:00.211 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 09:53:44.190 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:55962 10 6661 1 2025-10-26 09:54:44.602 00:00:10.375 TCP 1.101.0.1:3000 -> 23.104.0.1:49594 10 6661 1 2025-10-26 09:55:45.016 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:40742 10 6661 1 2025-10-26 09:54:50.334 00:02:00.208 TCP 179.21.23.21:38570 -> 179.21.23.23:179 6 369 1 2025-10-26 09:56:45.415 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60606 10 6661 1 2025-10-26 09:57:45.818 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:49418 10 6661 1 2025-10-26 09:58:12.018 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-10-26 09:58:11.930 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-26 09:58:11.886 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:58:11.934 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-10-26 09:58:11.975 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-26 09:54:50.332 00:04:00.214 TCP 179.21.23.23:179 -> 179.21.23.21:38570 10 615 1 2025-10-26 09:57:50.337 00:01:00.207 TCP 179.21.23.21:38570 -> 179.21.23.23:179 4 246 1 Summary: total flows: 160, total bytes: 431150, total packets: 1024, avg bps: 942, avg pps: 0, avg bpp: 421 Time window: 2025-10-26 08:57:50 - 2025-10-26 09:58:50 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0042s User: 0.0011s Wall: 0.0028s flows/second: 57842.5 Runtime: 0.0028s