Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 07:54:06.054 00:05:57.970 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:00:37.523 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54320 1 40 1 2025-11-25 07:56:05.994 00:05:57.493 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 07:58:03.464 00:05:02.554 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 07:58:04.044 00:05:01.953 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:02:37.604 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:02:27.971 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:56588 10 6452 1 2025-11-25 08:02:37.690 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 07:59:49.575 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2908 1 2025-11-25 08:00:03.588 00:05:02.451 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:04:28.782 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:41344 9 6412 1 2025-11-25 08:00:06.055 00:05:57.970 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:05:29.195 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:36020 10 6452 1 2025-11-25 08:02:05.995 00:05:00.005 TCP 23.155.0.1:42479 -> 23.152.0.1:179 11 686 1 2025-11-25 08:06:39.886 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39768 1 40 1 2025-11-25 08:07:37.993 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:07:37.989 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:04:04.044 00:05:01.956 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:04:03.468 00:05:02.553 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:08:30.333 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:36976 10 6452 1 2025-11-25 08:05:09.583 00:05:10.009 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2792 1 2025-11-25 08:09:41.059 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58934 1 40 1 2025-11-25 08:06:03.589 00:05:02.451 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:06:06.059 00:05:57.969 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:11:31.531 00:00:10.398 TCP 1.101.0.1:3000 -> 23.104.0.1:43490 12 10375 1 2025-11-25 08:08:03.489 00:05:02.514 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:12:37.906 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:12:37.813 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:12:31.967 00:00:10.392 TCP 1.101.0.1:3000 -> 23.104.0.1:52048 9 6412 1 2025-11-25 08:10:03.468 00:05:02.557 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:10:04.049 00:05:01.955 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:10:29.591 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 36 2624 1 2025-11-25 08:14:43.167 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57492 1 40 1 2025-11-25 08:15:43.569 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54334 1 40 1 2025-11-25 08:12:03.591 00:05:02.453 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:16:43.918 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42504 1 40 1 2025-11-25 08:12:06.060 00:05:57.971 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:17:37.971 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:17:38.012 00:00:00.032 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:17:44.295 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44838 1 40 1 2025-11-25 08:14:03.490 00:05:02.516 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:18:34.337 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:58282 9 6412 1 2025-11-25 08:19:45.100 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54712 1 40 1 2025-11-25 08:15:49.597 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2724 1 2025-11-25 08:16:03.470 00:05:02.556 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:16:04.049 00:05:01.956 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:20:35.137 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:43904 9 6412 1 2025-11-25 08:18:03.591 00:05:02.454 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:22:38.125 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:22:38.064 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:18:06.066 00:05:57.967 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:23:46.717 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43970 1 40 1 2025-11-25 08:20:03.489 00:05:02.518 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:24:36.754 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:55686 10 6452 1 2025-11-25 08:21:09.602 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-25 08:25:47.563 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58328 1 40 1 2025-11-25 08:22:04.052 00:05:01.957 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:22:03.469 00:05:02.558 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:26:47.964 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42926 1 40 1 2025-11-25 08:27:38.736 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:27:38.413 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:27:38.005 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:59434 9 6412 1 2025-11-25 08:24:03.593 00:05:02.455 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:28:38.423 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57880 9 6412 1 2025-11-25 08:24:06.066 00:05:57.967 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:29:38.838 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40418 10 6452 1 2025-11-25 08:26:03.494 00:05:02.517 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:26:29.608 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2740 1 2025-11-25 08:30:49.618 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41014 1 40 1 2025-11-25 08:31:39.656 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58452 10 6452 1 2025-11-25 08:28:04.052 00:05:01.958 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:28:03.474 00:05:02.555 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:32:38.243 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:32:38.316 00:00:00.027 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:33:40.472 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:43092 9 6412 1 2025-11-25 08:30:03.593 00:05:02.457 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:34:40.875 00:00:10.384 TCP 1.101.0.1:3000 -> 23.104.0.1:40472 9 6412 1 2025-11-25 08:30:06.070 00:05:57.964 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:35:41.299 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:56218 9 6412 1 2025-11-25 08:31:49.615 00:05:10.507 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 2936 1 2025-11-25 08:32:03.495 00:05:02.516 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:36:41.704 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41470 9 6412 1 2025-11-25 08:37:38.257 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:37:38.324 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:37:52.490 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52996 1 40 1 2025-11-25 08:34:03.475 00:05:02.555 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:34:04.053 00:05:01.957 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:38:42.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:54602 9 6412 1 2025-11-25 08:36:03.603 00:05:02.447 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:40:43.369 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49684 10 6452 1 2025-11-25 08:36:06.070 00:05:57.969 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:37:09.620 00:05:10.006 OSPF 23.0.7.1:0 -> 224.0.0.5:0 35 2440 1 2025-11-25 08:38:03.496 00:05:02.515 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:42:38.470 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:42:38.472 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:42:44.172 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:47716 10 6452 1 2025-11-25 08:43:44.535 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:45194 10 6452 1 2025-11-25 08:40:03.477 00:05:02.556 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:40:04.059 00:05:01.953 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:45:55.664 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47024 1 40 1 2025-11-25 08:42:03.595 00:05:02.459 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:42:29.629 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2668 1 2025-11-25 08:46:45.709 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37590 9 6412 1 2025-11-25 08:42:06.071 00:05:57.994 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:47:38.532 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:47:38.416 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:47:46.131 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-11-25 08:44:03.498 00:05:02.516 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:48:46.531 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:52510 9 6412 1 2025-11-25 08:49:46.934 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:58420 10 6452 1 2025-11-25 08:46:03.477 00:05:02.559 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:46:04.069 00:05:01.948 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:50:47.301 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:45076 9 6412 1 2025-11-25 08:47:49.633 00:05:00.715 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2800 1 2025-11-25 08:48:03.598 00:05:02.460 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-25 08:52:38.574 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:52:38.378 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:52:58.499 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:57682 1 40 1 2025-11-25 08:48:06.082 00:05:57.989 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-25 08:53:48.541 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:46326 11 6516 1 2025-11-25 08:50:03.497 00:05:02.519 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-25 08:55:59.731 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41402 1 40 1 2025-11-25 08:52:03.479 00:05:02.558 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-25 08:52:04.090 00:05:01.927 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-25 08:56:49.772 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:51650 9 6412 1 2025-11-25 08:52:59.641 00:05:10.004 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2660 1 2025-11-25 08:57:38.845 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 08:57:38.793 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 08:58:00.552 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59932 1 40 1 2025-11-25 08:54:03.599 00:05:02.460 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 Summary: total flows: 130, total bytes: 257519, total packets: 1374, avg bps: 528, avg pps: 0, avg bpp: 187 Time window: 2025-11-25 07:54:06 - 2025-11-25 08:59:06 Total flows processed: 130, passed: 130, Blocks skipped: 0, Bytes read: 13584 Sys: 0.0034s User: 0.0017s Wall: 0.0014s flows/second: 93994.1 Runtime: 0.0014s