Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 03:55:03.497 00:05:01.963 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 03:59:27.544 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:35348 10 6452 1 2025-11-24 04:00:38.336 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55310 1 40 1 2025-11-24 03:57:02.935 00:05:02.464 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:01:28.391 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47394 9 6412 1 2025-11-24 04:02:03.977 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:02:03.921 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 03:58:02.915 00:05:02.505 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 03:57:57.273 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2832 1 2025-11-24 03:58:03.517 00:05:01.883 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:02:28.793 00:00:10.422 TCP 1.101.0.1:3000 -> 23.104.0.1:34442 11 6504 1 2025-11-24 04:03:29.256 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48208 10 6452 1 2025-11-24 04:00:02.998 00:05:02.443 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:04:29.621 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:60004 10 6452 1 2025-11-24 04:01:03.498 00:05:01.963 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:05:40.387 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59722 1 40 1 2025-11-24 04:07:03.828 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:07:03.990 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:03:02.937 00:05:02.465 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:03:17.278 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2336 1 2025-11-24 04:07:41.195 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57074 1 40 1 2025-11-24 04:04:03.523 00:05:01.879 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:04:02.918 00:05:02.505 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:09:31.639 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:39434 10 6452 1 2025-11-24 04:06:03.001 00:05:02.442 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:10:42.337 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35316 1 40 1 2025-11-24 04:07:03.505 00:05:01.970 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:11:42.743 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53888 1 40 1 2025-11-24 04:12:03.845 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:12:03.849 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:08:37.286 00:05:10.024 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2800 1 2025-11-24 04:09:02.939 00:05:02.465 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:10:02.918 00:05:02.507 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:10:03.525 00:05:01.880 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:12:03.001 00:05:02.446 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:17:04.439 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:17:04.443 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:13:03.508 00:05:01.960 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:13:57.293 00:05:10.018 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2688 1 2025-11-24 04:18:45.500 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55772 1 40 1 2025-11-24 04:15:02.941 00:05:02.465 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:19:35.546 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36248 9 6412 1 2025-11-24 04:16:03.532 00:05:01.875 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:16:02.922 00:05:02.505 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:22:04.427 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:22:04.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:18:03.003 00:05:02.444 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:22:36.792 00:00:10.773 TCP 1.101.0.1:3000 -> 23.104.0.1:36324 9 6412 1 2025-11-24 04:19:03.513 00:05:01.955 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:19:17.313 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2644 1 2025-11-24 04:23:47.928 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57394 1 40 1 2025-11-24 04:21:02.943 00:05:02.465 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:25:48.749 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53394 1 40 1 2025-11-24 04:22:03.535 00:05:01.873 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:22:02.923 00:05:02.505 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:26:38.787 00:00:10.335 TCP 1.101.0.1:3000 -> 23.104.0.1:34302 10 6452 1 2025-11-24 04:27:04.368 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:27:04.272 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:27:39.160 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45674 9 6412 1 2025-11-24 04:24:03.003 00:05:02.445 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:24:37.315 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3056 1 2025-11-24 04:28:39.562 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 10 6452 1 2025-11-24 04:25:03.515 00:05:01.953 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:29:39.965 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:55616 9 6412 1 2025-11-24 04:30:40.375 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:40974 10 6452 1 2025-11-24 04:27:02.945 00:05:02.466 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:31:51.908 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36642 1 40 1 2025-11-24 04:32:04.514 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:32:04.354 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:28:03.536 00:05:01.874 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:28:02.924 00:05:02.507 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:33:52.744 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43476 1 40 1 2025-11-24 04:29:57.318 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2480 1 2025-11-24 04:30:03.008 00:05:02.444 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:34:42.783 00:00:10.380 TCP 1.101.0.1:3000 -> 23.104.0.1:56530 9 6412 1 2025-11-24 04:31:03.517 00:05:01.954 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:35:53.655 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59274 1 40 1 2025-11-24 04:36:54.061 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:60754 1 40 1 2025-11-24 04:37:04.724 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:37:04.627 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:33:02.944 00:05:02.468 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:34:03.539 00:05:01.875 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:34:02.925 00:05:02.508 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:38:54.903 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59584 1 40 1 2025-11-24 04:35:17.319 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2524 1 2025-11-24 04:39:44.934 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:41952 10 6452 1 2025-11-24 04:36:03.007 00:05:02.447 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:40:45.341 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:54656 10 6452 1 2025-11-24 04:37:03.522 00:05:01.953 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:41:45.745 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:45624 9 6412 1 2025-11-24 04:42:04.765 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:42:05.031 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:42:46.157 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:36684 10 6452 1 2025-11-24 04:39:02.947 00:05:02.468 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:43:56.890 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43460 1 40 1 2025-11-24 04:40:02.928 00:05:02.508 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:40:03.538 00:05:01.877 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:40:37.325 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2884 1 2025-11-24 04:45:47.332 00:00:10.438 TCP 1.101.0.1:3000 -> 23.104.0.1:52668 12 10375 1 2025-11-24 04:42:03.009 00:05:02.447 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:46:47.809 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:33128 9 6412 1 2025-11-24 04:47:04.789 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:47:04.967 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:43:03.520 00:05:01.957 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:47:48.216 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 10 6452 1 2025-11-24 04:45:02.948 00:05:02.468 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:46:02.928 00:05:02.508 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:45:57.329 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-24 04:46:03.541 00:05:01.875 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:52:04.896 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:52:00.259 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43634 1 40 1 2025-11-24 04:52:04.990 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:48:03.011 00:05:02.448 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-24 04:49:03.522 00:05:01.957 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-24 04:54:01.071 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44090 1 40 1 2025-11-24 04:54:51.129 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:38234 10 6452 1 2025-11-24 04:51:02.949 00:05:02.468 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-24 04:51:17.334 00:05:10.629 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2908 1 2025-11-24 04:52:02.929 00:05:02.508 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-24 04:55:51.540 00:00:10.440 TCP 1.101.0.1:3000 -> 23.104.0.1:50762 13 10648 1 2025-11-24 04:52:03.543 00:05:01.876 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-24 04:56:52.019 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:56920 10 6661 1 2025-11-24 04:57:04.992 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-24 04:57:05.141 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-24 04:54:03.011 00:05:02.447 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 Summary: total flows: 125, total bytes: 236256, total packets: 1343, avg bps: 491, avg pps: 0, avg bpp: 175 Time window: 2025-11-24 03:55:03 - 2025-11-24 04:59:05 Total flows processed: 125, passed: 125, Blocks skipped: 0, Bytes read: 13064 Sys: 0.0057s User: 0.0008s Wall: 0.0022s flows/second: 56765.7 Runtime: 0.0022s