Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 18:55:01.753 00:05:02.013 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 18:59:01.068 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35074 10 6452 1 2025-11-20 19:00:11.802 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49290 1 40 1 2025-11-20 19:00:26.378 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:00:26.467 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 18:57:01.100 00:05:02.608 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:01:12.232 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35792 1 40 1 2025-11-20 18:57:10.388 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2948 1 2025-11-20 18:58:01.079 00:05:02.647 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:02:02.278 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:35232 10 6452 1 2025-11-20 18:59:01.774 00:05:01.933 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:03:02.684 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:53302 9 6412 1 2025-11-20 19:00:01.129 00:05:02.619 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:04:13.484 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60588 1 40 1 2025-11-20 19:01:01.756 00:05:02.012 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:05:03.525 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:36096 10 6452 1 2025-11-20 19:05:26.480 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:05:26.395 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:06:03.933 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56388 11 6516 1 2025-11-20 19:02:30.391 00:05:10.393 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2668 1 2025-11-20 19:03:01.101 00:05:02.607 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:07:14.710 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55896 1 40 1 2025-11-20 19:04:01.080 00:05:02.647 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:08:04.747 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:55934 9 6412 1 2025-11-20 19:05:01.775 00:05:01.934 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:09:15.518 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42784 1 40 1 2025-11-20 19:06:01.130 00:05:02.619 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:10:26.699 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:10:26.700 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:07:01.755 00:05:02.014 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:11:16.327 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58266 1 40 1 2025-11-20 19:07:50.395 00:05:10.059 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2336 1 2025-11-20 19:12:06.361 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38708 10 6452 1 2025-11-20 19:09:01.102 00:05:02.608 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:13:06.766 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35686 10 6452 1 2025-11-20 19:10:01.081 00:05:02.649 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:14:17.531 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44314 1 40 1 2025-11-20 19:11:01.777 00:05:01.934 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:15:17.897 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44872 1 40 1 2025-11-20 19:15:26.477 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:15:26.683 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:12:01.144 00:05:02.606 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:16:07.929 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:57946 10 6452 1 2025-11-20 19:13:01.755 00:05:02.014 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:17:18.698 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39634 1 40 1 2025-11-20 19:13:10.398 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2820 1 2025-11-20 19:18:19.060 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35142 1 40 1 2025-11-20 19:15:01.118 00:05:02.594 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:19:09.122 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:60100 9 6412 1 2025-11-20 19:16:01.100 00:05:02.634 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:20:09.538 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58542 10 6452 1 2025-11-20 19:20:27.547 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:20:27.738 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:17:01.777 00:05:01.938 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:18:01.144 00:05:02.611 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:22:20.672 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38348 1 40 1 2025-11-20 19:18:30.406 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-20 19:19:01.758 00:05:02.019 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:24:11.270 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:55766 9 6412 1 2025-11-20 19:21:01.128 00:05:02.592 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:25:11.673 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:54244 9 6412 1 2025-11-20 19:25:27.088 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:25:26.898 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:22:01.108 00:05:02.632 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:26:22.449 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51336 1 40 1 2025-11-20 19:23:01.778 00:05:01.943 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:27:12.489 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41342 9 6412 1 2025-11-20 19:23:50.410 00:05:10.755 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3176 1 2025-11-20 19:24:01.149 00:05:02.613 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:28:12.892 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42136 10 6452 1 2025-11-20 19:25:01.760 00:05:02.021 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:29:23.806 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60580 1 40 1 2025-11-20 19:30:27.024 00:00:00.042 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:30:27.125 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:27:01.128 00:05:02.593 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:31:14.252 00:00:10.385 TCP 1.101.0.1:3000 -> 23.104.0.1:43022 10 6452 1 2025-11-20 19:28:01.108 00:05:02.633 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:32:14.685 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:44088 10 6452 1 2025-11-20 19:29:01.780 00:05:01.942 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:29:10.411 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2560 1 2025-11-20 19:30:01.149 00:05:02.613 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:34:15.554 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:43734 9 6412 1 2025-11-20 19:31:01.765 00:05:02.017 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:35:27.081 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:35:15.960 00:00:10.343 TCP 1.101.0.1:3000 -> 23.104.0.1:57118 9 6412 1 2025-11-20 19:35:27.265 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:36:16.340 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46512 10 6452 1 2025-11-20 19:33:01.130 00:05:02.593 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:37:27.070 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45852 1 40 1 2025-11-20 19:34:01.109 00:05:02.636 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:34:30.419 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2588 1 2025-11-20 19:35:01.787 00:05:01.938 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:36:01.152 00:05:02.614 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:40:27.215 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:40:27.813 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:40:19.334 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-11-20 19:37:01.765 00:05:02.021 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:42:20.150 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:60150 9 6412 1 2025-11-20 19:39:01.132 00:05:02.595 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:43:30.917 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 1 40 1 2025-11-20 19:40:01.112 00:05:02.636 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:39:50.424 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2596 1 2025-11-20 19:44:31.337 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33186 1 40 1 2025-11-20 19:41:01.789 00:05:01.939 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:45:27.395 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:45:27.338 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:45:21.376 00:00:10.321 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-11-20 19:42:01.151 00:05:02.620 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:46:21.738 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:41462 10 6452 1 2025-11-20 19:43:01.768 00:05:02.022 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:47:32.517 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36916 1 40 1 2025-11-20 19:48:22.564 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:60428 10 6452 1 2025-11-20 19:45:01.135 00:05:02.596 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:45:10.425 00:05:01.025 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2764 1 2025-11-20 19:49:22.929 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54512 10 6452 1 2025-11-20 19:46:01.115 00:05:02.637 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:50:27.422 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:50:27.153 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:50:23.344 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:39828 9 6412 1 2025-11-20 19:47:01.791 00:05:01.940 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:51:23.783 00:00:10.339 TCP 1.101.0.1:3000 -> 23.104.0.1:34272 9 6412 1 2025-11-20 19:48:01.156 00:05:02.615 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:52:24.163 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:60920 9 6412 1 2025-11-20 19:49:01.772 00:05:02.020 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-20 19:50:20.435 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2788 1 2025-11-20 19:54:24.968 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:57400 9 6412 1 2025-11-20 19:51:01.134 00:05:02.597 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-20 19:55:27.639 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-20 19:55:27.637 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-20 19:52:01.114 00:05:02.637 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-20 19:53:01.794 00:05:01.939 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-20 19:54:01.158 00:05:02.614 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-20 19:58:26.687 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:35178 9 6412 1 Summary: total flows: 133, total bytes: 272852, total packets: 1401, avg bps: 568, avg pps: 0, avg bpp: 194 Time window: 2025-11-20 18:55:01 - 2025-11-20 19:59:03 Total flows processed: 133, passed: 133, Blocks skipped: 0, Bytes read: 13896 Sys: 0.0048s User: 0.0010s Wall: 0.0021s flows/second: 64002.1 Runtime: 0.0021s