Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 03:59:55.668 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54386 10 6452 1 2025-08-15 03:56:12.239 00:05:01.816 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:00:56.079 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32872 12 6556 1 2025-08-15 03:57:13.763 00:05:00.351 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 03:57:10.067 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2728 1 2025-08-15 04:01:56.488 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36226 10 6452 1 2025-08-15 03:59:13.784 00:05:00.270 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:03:17.620 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:03:17.622 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:04:07.616 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38580 1 40 1 2025-08-15 04:00:12.535 00:05:01.560 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:00:12.220 00:05:01.855 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:04:57.656 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:60488 9 6412 1 2025-08-15 04:02:12.240 00:05:01.817 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:02:30.070 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-08-15 04:03:13.766 00:05:00.352 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:08:17.258 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:08:17.578 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:05:13.786 00:05:00.271 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:09:59.560 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52116 9 6412 1 2025-08-15 04:06:12.536 00:05:01.562 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:06:12.223 00:05:01.855 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:11:10.315 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37230 1 40 1 2025-08-15 04:07:50.076 00:05:10.044 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 3072 1 2025-08-15 04:12:00.366 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:56938 10 6452 1 2025-08-15 04:08:12.243 00:05:01.815 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:09:13.768 00:05:00.351 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:13:00.774 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:60542 10 6452 1 2025-08-15 04:13:17.670 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:13:17.502 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:14:01.202 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41460 10 6452 1 2025-08-15 04:15:11.974 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39336 1 40 1 2025-08-15 04:11:13.788 00:05:00.272 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:16:12.377 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44538 1 40 1 2025-08-15 04:12:12.537 00:05:01.563 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:12:12.223 00:05:01.857 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:17:02.418 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:48598 9 6412 1 2025-08-15 04:13:10.120 00:05:13.013 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2788 1 2025-08-15 04:14:12.244 00:05:01.816 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:18:02.825 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45640 9 6412 1 2025-08-15 04:18:17.525 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:18:17.918 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:19:13.557 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42392 1 40 1 2025-08-15 04:15:13.767 00:05:00.355 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:20:03.596 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:53324 10 6452 1 2025-08-15 04:17:13.788 00:05:00.273 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:21:04.004 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:48196 9 6412 1 2025-08-15 04:22:14.782 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58670 1 40 1 2025-08-15 04:18:12.538 00:05:01.563 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:18:12.225 00:05:01.856 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:18:30.123 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 2872 1 2025-08-15 04:23:17.948 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:23:04.817 00:00:10.350 TCP 1.101.0.1:3000 -> 23.104.0.1:36250 10 6452 1 2025-08-15 04:23:17.760 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:24:05.201 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:57728 10 6452 1 2025-08-15 04:20:12.246 00:05:01.818 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:21:13.769 00:05:00.354 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:25:05.601 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:37398 10 6452 1 2025-08-15 04:26:16.412 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34330 1 40 1 2025-08-15 04:23:13.791 00:05:00.272 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:27:16.816 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50536 1 40 1 2025-08-15 04:23:50.125 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2700 1 2025-08-15 04:24:12.538 00:05:01.566 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:24:12.227 00:05:01.857 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:28:17.249 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34082 1 40 1 2025-08-15 04:28:17.953 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:28:17.913 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:29:07.288 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60520 9 6412 1 2025-08-15 04:26:12.248 00:05:01.817 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:30:18.060 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33464 1 40 1 2025-08-15 04:27:13.773 00:05:00.353 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:31:18.497 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56784 1 40 1 2025-08-15 04:32:08.532 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:39694 10 6452 1 2025-08-15 04:29:13.793 00:05:00.272 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:33:18.022 00:00:00.056 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:33:17.858 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:33:19.306 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51742 1 40 1 2025-08-15 04:29:10.135 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-08-15 04:30:12.229 00:05:01.857 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:30:12.540 00:05:01.566 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:34:19.716 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 1 40 1 2025-08-15 04:32:12.248 00:05:01.817 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:33:13.776 00:05:00.350 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:37:20.904 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50678 1 40 1 2025-08-15 04:38:18.212 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:38:17.995 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:38:21.325 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35724 1 40 1 2025-08-15 04:34:30.138 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2668 1 2025-08-15 04:35:13.797 00:05:00.269 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:39:11.365 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40918 10 6452 1 2025-08-15 04:36:12.540 00:05:01.566 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:36:12.229 00:05:01.857 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:41:12.168 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:54976 9 6412 1 2025-08-15 04:38:12.249 00:05:01.817 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:42:23.021 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35996 1 40 1 2025-08-15 04:39:13.777 00:05:00.350 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:43:18.112 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:43:18.179 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:43:13.060 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:33868 9 6412 1 2025-08-15 04:39:50.141 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2904 1 2025-08-15 04:44:13.456 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41906 10 6452 1 2025-08-15 04:41:13.797 00:05:00.270 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:45:13.870 00:00:10.403 TCP 1.101.0.1:3000 -> 23.104.0.1:48314 10 6464 1 2025-08-15 04:42:12.541 00:05:01.566 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:42:12.230 00:05:01.857 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:47:25.059 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48462 1 40 1 2025-08-15 04:44:12.254 00:05:01.814 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:48:18.351 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:48:18.354 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:48:25.499 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37600 1 40 1 2025-08-15 04:45:13.778 00:05:00.351 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:45:10.148 00:05:02.319 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 2948 1 2025-08-15 04:47:13.797 00:05:00.271 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:51:26.718 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54858 1 40 1 2025-08-15 04:48:12.544 00:05:01.566 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:48:12.240 00:05:01.850 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:52:27.127 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 1 40 1 2025-08-15 04:53:18.527 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:53:18.399 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:53:17.163 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:33446 10 6452 1 2025-08-15 04:50:12.258 00:05:01.810 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-08-15 04:50:20.153 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2808 1 2025-08-15 04:51:13.778 00:05:00.352 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-08-15 04:56:18.383 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:50554 10 6452 1 2025-08-15 04:53:13.798 00:05:00.273 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-08-15 04:54:12.543 00:05:01.568 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-08-15 04:54:12.241 00:05:01.850 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-08-15 04:58:18.590 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-08-15 04:58:18.468 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-08-15 04:58:29.483 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42290 1 40 1 Summary: total flows: 130, total bytes: 228560, total packets: 1349, avg bps: 483, avg pps: 0, avg bpp: 169 Time window: 2025-08-15 03:56:12 - 2025-08-15 04:59:14 Total flows processed: 130, passed: 130, Blocks skipped: 0, Bytes read: 13584 Sys: 0.0045s User: 0.0000s Wall: 0.0024s flows/second: 54055.7 Runtime: 0.0024s