Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 13:59:26.130 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:57486 9 6412 1 2025-10-22 13:55:47.505 00:05:00.775 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:00:26.528 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45644 9 6412 1 2025-10-22 13:56:45.268 00:05:03.011 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 13:57:10.447 00:05:10.769 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2888 1 2025-10-22 14:01:20.987 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:01:20.967 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:01:26.930 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51506 9 6412 1 2025-10-22 13:57:45.878 00:05:02.441 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 13:57:45.247 00:05:03.052 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:02:27.331 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47548 9 6412 1 2025-10-22 14:03:38.098 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48438 1 40 1 2025-10-22 14:04:28.138 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:35866 10 6452 1 2025-10-22 14:00:47.485 00:05:00.855 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:05:38.869 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51452 1 40 1 2025-10-22 14:01:47.507 00:05:00.775 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:06:20.856 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:06:20.874 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:06:39.298 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50412 1 40 1 2025-10-22 14:02:30.452 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2516 1 2025-10-22 14:02:45.268 00:05:03.012 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:07:29.344 00:00:10.426 TCP 1.101.0.1:3000 -> 23.104.0.1:42408 11 6504 1 2025-10-22 14:03:45.884 00:05:02.438 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:03:45.250 00:05:03.052 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:08:40.190 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47030 1 40 1 2025-10-22 14:09:30.228 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:51248 9 6412 1 2025-10-22 14:10:30.628 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:58966 10 6452 1 2025-10-22 14:06:47.485 00:05:00.857 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:11:21.129 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:11:21.120 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:07:47.507 00:05:00.775 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:07:50.454 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2480 1 2025-10-22 14:08:45.271 00:05:03.011 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:13:31.810 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57102 10 6452 1 2025-10-22 14:09:45.885 00:05:02.437 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:09:45.251 00:05:03.051 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:15:32.691 00:00:10.995 TCP 1.101.0.1:3000 -> 23.104.0.1:53996 10 6452 1 2025-10-22 14:16:21.276 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:16:21.096 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:16:33.723 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54276 9 6412 1 2025-10-22 14:12:47.489 00:05:00.854 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:13:10.459 00:05:10.997 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2808 1 2025-10-22 14:17:44.511 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50688 1 40 1 2025-10-22 14:13:47.509 00:05:00.774 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:18:34.551 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:33296 9 6412 1 2025-10-22 14:14:45.271 00:05:03.012 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:15:45.886 00:05:02.437 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:15:45.252 00:05:03.051 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:19:45.295 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58974 1 40 1 2025-10-22 14:20:35.333 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:60332 9 6412 1 2025-10-22 14:21:21.549 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:21:21.612 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:21:46.074 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39986 1 40 1 2025-10-22 14:18:30.461 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2788 1 2025-10-22 14:18:47.490 00:05:00.853 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:22:36.133 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:41794 9 6412 1 2025-10-22 14:23:36.495 00:00:10.788 TCP 1.101.0.1:3000 -> 23.104.0.1:45934 10 6452 1 2025-10-22 14:19:47.511 00:05:00.774 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:20:45.274 00:05:03.011 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:21:45.254 00:05:03.051 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:21:45.890 00:05:02.436 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:26:21.448 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:26:21.574 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:26:38.103 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:51420 10 6452 1 2025-10-22 14:27:38.506 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39646 9 6412 1 2025-10-22 14:23:50.468 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2728 1 2025-10-22 14:24:47.491 00:05:00.855 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:28:49.297 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46692 1 40 1 2025-10-22 14:25:47.512 00:05:00.773 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:29:39.333 00:00:23.793 TCP 1.101.0.1:3000 -> 23.104.0.1:43686 10 6452 1 2025-10-22 14:26:45.276 00:05:03.010 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:30:53.169 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60078 10 6452 1 2025-10-22 14:31:21.544 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:31:21.579 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:27:45.891 00:05:02.435 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:27:45.256 00:05:03.050 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:31:53.576 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:36356 10 6452 1 2025-10-22 14:29:10.475 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2796 1 2025-10-22 14:34:04.704 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:34022 1 40 1 2025-10-22 14:30:47.492 00:05:00.854 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:31:47.513 00:05:00.773 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:36:05.517 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44918 1 40 1 2025-10-22 14:36:21.348 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:36:21.552 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:32:45.277 00:05:03.009 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:36:55.557 00:00:10.357 TCP 1.101.0.1:3000 -> 23.104.0.1:57562 9 6412 1 2025-10-22 14:33:45.891 00:05:02.435 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:33:45.256 00:05:03.050 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:34:30.482 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2548 1 2025-10-22 14:39:06.736 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37350 1 40 1 2025-10-22 14:36:47.495 00:05:00.853 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:40:57.202 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:51364 10 6452 1 2025-10-22 14:41:21.679 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:41:21.816 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:37:47.515 00:05:00.774 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:42:07.981 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32902 1 40 1 2025-10-22 14:38:45.278 00:05:03.011 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:42:58.021 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41694 10 6452 1 2025-10-22 14:39:45.893 00:05:02.436 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:39:45.257 00:05:03.051 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:39:50.491 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2440 1 2025-10-22 14:43:58.427 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:43964 9 6412 1 2025-10-22 14:45:59.245 00:00:10.765 TCP 1.101.0.1:3000 -> 23.104.0.1:33584 9 6412 1 2025-10-22 14:46:22.152 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:46:21.844 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:42:47.498 00:05:00.850 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:47:00.045 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39900 9 6412 1 2025-10-22 14:43:47.518 00:05:00.771 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:48:10.812 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44738 1 40 1 2025-10-22 14:44:45.280 00:05:03.011 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:45:10.498 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2948 1 2025-10-22 14:45:45.893 00:05:02.437 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:45:45.259 00:05:03.051 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:50:11.579 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59114 1 40 1 2025-10-22 14:51:22.008 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:51:21.994 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:52:02.029 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:53234 9 6412 1 2025-10-22 14:48:47.498 00:05:00.852 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-10-22 14:49:47.519 00:05:00.771 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-10-22 14:54:02.850 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:56396 9 6412 1 2025-10-22 14:50:30.505 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2776 1 2025-10-22 14:50:45.282 00:05:03.009 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-10-22 14:55:03.248 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:36246 9 6412 1 2025-10-22 14:51:45.896 00:05:02.436 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-10-22 14:51:45.262 00:05:03.049 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-10-22 14:56:03.611 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:53922 9 6412 1 2025-10-22 14:56:22.165 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-10-22 14:56:21.874 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-10-22 14:58:04.431 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54750 10 6452 1 2025-10-22 14:54:47.502 00:05:00.849 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 Summary: total flows: 130, total bytes: 272568, total packets: 1395, avg bps: 567, avg pps: 0, avg bpp: 195 Time window: 2025-10-22 13:55:47 - 2025-10-22 14:59:48 Total flows processed: 130, passed: 130, Blocks skipped: 0, Bytes read: 13584 Sys: 0.0034s User: 0.0023s Wall: 0.0022s flows/second: 58642.7 Runtime: 0.0022s