Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-23 15:58:47.740 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:37720 9 6412 1 2025-11-23 15:55:03.220 00:05:01.971 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:00:48.556 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45966 9 6412 1 2025-11-23 15:57:02.730 00:05:02.402 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:01:49.673 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:01:49.551 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:01:59.337 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40306 1 40 1 2025-11-23 15:58:03.244 00:05:01.888 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 15:58:02.708 00:05:02.442 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 15:58:36.255 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2908 1 2025-11-23 16:02:49.377 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:60002 10 6452 1 2025-11-23 16:00:02.770 00:05:02.402 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:04:50.204 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:51000 10 6452 1 2025-11-23 16:01:03.224 00:05:01.967 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:05:50.601 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:47922 10 6452 1 2025-11-23 16:06:49.991 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:06:49.987 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:06:51.019 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:53498 9 6412 1 2025-11-23 16:03:02.731 00:05:02.402 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:04:02.710 00:05:02.442 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:03:56.259 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 2872 1 2025-11-23 16:08:01.751 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38208 1 40 1 2025-11-23 16:04:03.244 00:05:01.888 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:09:52.203 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:53902 10 6452 1 2025-11-23 16:06:02.770 00:05:02.404 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:10:52.609 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:37962 10 6452 1 2025-11-23 16:07:03.226 00:05:01.968 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:11:49.567 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:11:49.565 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:11:52.971 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:45524 10 6452 1 2025-11-23 16:12:53.390 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:58302 9 6412 1 2025-11-23 16:09:02.732 00:05:02.401 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:09:16.270 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-23 16:13:53.790 00:00:10.333 TCP 1.101.0.1:3000 -> 23.104.0.1:41266 10 6452 1 2025-11-23 16:10:03.248 00:05:01.887 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:10:02.714 00:05:02.441 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:14:54.157 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:36818 9 6412 1 2025-11-23 16:12:02.772 00:05:02.403 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:16:49.652 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:16:49.746 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:16:54.960 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:42418 9 6412 1 2025-11-23 16:13:03.227 00:05:01.970 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:18:05.749 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37914 1 40 1 2025-11-23 16:14:36.274 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2544 1 2025-11-23 16:15:02.734 00:05:02.401 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:18:55.786 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:45746 9 6412 1 2025-11-23 16:16:03.249 00:05:01.885 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:19:56.161 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58624 10 6452 1 2025-11-23 16:16:02.713 00:05:02.441 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:21:49.897 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:21:49.897 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:18:02.772 00:05:02.404 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:23:07.707 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47620 1 40 1 2025-11-23 16:19:03.230 00:05:01.966 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:19:56.280 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2740 1 2025-11-23 16:23:57.747 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:55076 9 6412 1 2025-11-23 16:24:58.154 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:50932 10 6452 1 2025-11-23 16:21:02.735 00:05:02.402 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:22:03.252 00:05:01.887 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:22:02.716 00:05:02.443 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:26:50.229 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:26:50.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:26:58.955 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53158 9 6412 1 2025-11-23 16:24:02.774 00:05:02.406 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:25:03.231 00:05:01.968 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:29:11.806 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45490 1 40 1 2025-11-23 16:25:16.284 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2724 1 2025-11-23 16:27:02.736 00:05:02.403 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:31:02.247 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:36452 10 6452 1 2025-11-23 16:31:50.214 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:31:50.256 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:28:03.252 00:05:01.889 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:28:02.717 00:05:02.444 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:32:02.610 00:00:10.414 TCP 1.101.0.1:3000 -> 23.104.0.1:59806 9 6412 1 2025-11-23 16:30:02.785 00:05:02.396 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:34:14.513 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47682 1 40 1 2025-11-23 16:30:36.289 00:05:10.033 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3040 1 2025-11-23 16:31:03.234 00:05:01.968 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:35:04.548 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:59676 10 6452 1 2025-11-23 16:36:15.334 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60036 1 40 1 2025-11-23 16:36:50.242 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:36:50.242 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:33:02.736 00:05:02.405 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:37:15.699 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54108 1 40 1 2025-11-23 16:34:03.252 00:05:01.888 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:34:02.718 00:05:02.444 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:38:16.120 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46424 1 40 1 2025-11-23 16:39:16.531 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55752 1 40 1 2025-11-23 16:36:02.786 00:05:02.396 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:35:56.322 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2416 1 2025-11-23 16:40:16.939 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46110 1 40 1 2025-11-23 16:37:03.242 00:05:01.960 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:41:50.308 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:41:50.310 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:42:17.843 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45668 1 40 1 2025-11-23 16:39:02.738 00:05:02.405 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:40:02.717 00:05:02.446 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:40:03.264 00:05:01.879 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:45:08.658 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:57784 10 6452 1 2025-11-23 16:41:16.331 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2732 1 2025-11-23 16:42:02.791 00:05:02.392 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:46:50.577 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:46:50.383 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:43:03.245 00:05:01.959 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:47:19.803 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54022 1 40 1 2025-11-23 16:48:09.843 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:37106 10 6452 1 2025-11-23 16:45:02.738 00:05:02.407 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:49:10.210 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33130 9 6412 1 2025-11-23 16:46:03.264 00:05:01.881 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:46:02.720 00:05:02.446 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:50:10.611 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:45800 10 6452 1 2025-11-23 16:46:36.332 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2740 1 2025-11-23 16:51:10.981 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:54282 10 6452 1 2025-11-23 16:51:50.670 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:51:50.807 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:48:02.794 00:05:02.392 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:49:03.246 00:05:01.961 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-23 16:54:12.157 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:44670 9 6412 1 2025-11-23 16:51:02.740 00:05:02.406 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-23 16:52:03.264 00:05:01.882 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-23 16:52:02.721 00:05:02.445 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-23 16:51:56.335 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2868 1 2025-11-23 16:56:50.625 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-23 16:56:50.606 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-23 16:57:13.454 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:32946 10 6452 1 2025-11-23 16:54:02.795 00:05:02.393 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-23 16:58:13.870 00:00:10.386 TCP 1.101.0.1:3000 -> 23.104.0.1:53104 9 6412 1 Summary: total flows: 127, total bytes: 260084, total packets: 1382, avg bps: 541, avg pps: 0, avg bpp: 188 Time window: 2025-11-23 15:55:03 - 2025-11-23 16:59:05 Total flows processed: 127, passed: 127, Blocks skipped: 0, Bytes read: 13272 Sys: 0.0041s User: 0.0020s Wall: 0.0015s flows/second: 85460.7 Runtime: 0.0015s