Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-28 19:58:46.954 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:44940 9 6412 1 2025-11-28 19:55:05.751 00:05:02.015 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 19:59:18.749 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 19:59:18.835 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 19:59:57.699 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:32856 1 40 1 2025-11-28 19:56:05.035 00:05:02.670 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 19:56:36.370 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-28 20:00:47.736 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:42450 10 6452 1 2025-11-28 19:58:05.774 00:05:01.936 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 19:58:05.016 00:05:02.713 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:02:48.526 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47264 10 6452 1 2025-11-28 20:03:59.353 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53070 1 40 1 2025-11-28 20:00:05.199 00:05:02.554 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:04:18.562 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:04:18.750 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:04:59.768 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36180 1 40 1 2025-11-28 20:01:05.755 00:05:02.016 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:01:56.373 00:05:10.008 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2732 1 2025-11-28 20:02:05.063 00:05:02.649 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:04:05.774 00:05:01.938 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:04:05.041 00:05:02.691 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:09:01.378 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37936 1 40 1 2025-11-28 20:09:18.688 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:09:18.841 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:09:51.416 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:45808 9 6412 1 2025-11-28 20:06:05.202 00:05:02.551 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:10:51.818 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:57220 10 6452 1 2025-11-28 20:07:05.759 00:05:02.014 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:07:16.382 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-28 20:11:52.220 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:57684 10 6452 1 2025-11-28 20:08:05.049 00:05:02.668 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:10:05.049 00:05:02.688 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:10:05.779 00:05:01.938 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:14:18.811 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:14:18.801 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:15:03.798 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:47316 1 40 1 2025-11-28 20:15:53.839 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:33498 10 6452 1 2025-11-28 20:12:05.203 00:05:02.555 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:12:36.385 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 40 2832 1 2025-11-28 20:16:54.251 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:53364 10 6452 1 2025-11-28 20:13:05.761 00:05:02.017 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:14:05.072 00:05:02.647 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:17:54.654 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33888 10 6452 1 2025-11-28 20:18:55.058 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:33592 9 6412 1 2025-11-28 20:19:19.040 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:19:19.033 00:00:00.041 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:16:05.051 00:05:02.688 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:16:05.782 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:19:55.478 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:39006 9 6412 1 2025-11-28 20:18:05.203 00:05:02.556 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:17:56.387 00:05:10.054 OSPF 23.0.7.1:0 -> 224.0.0.5:0 41 3056 1 2025-11-28 20:21:56.262 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51898 10 6452 1 2025-11-28 20:22:56.663 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33738 10 6452 1 2025-11-28 20:19:05.763 00:05:02.017 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:20:05.073 00:05:02.646 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:23:57.061 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37418 10 6452 1 2025-11-28 20:24:19.324 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:24:19.272 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:25:07.800 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:59726 1 40 1 2025-11-28 20:22:05.783 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:26:08.207 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51458 1 40 1 2025-11-28 20:22:05.062 00:05:02.678 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:27:08.610 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36640 1 40 1 2025-11-28 20:23:16.395 00:05:10.011 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2608 1 2025-11-28 20:27:58.649 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:46078 11 6516 1 2025-11-28 20:24:05.207 00:05:02.554 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:29:09.416 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54560 1 40 1 2025-11-28 20:25:05.765 00:05:02.016 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:29:19.241 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:29:19.305 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:26:05.083 00:05:02.638 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:30:09.825 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55562 1 40 1 2025-11-28 20:30:59.865 00:00:10.346 TCP 1.101.0.1:3000 -> 23.104.0.1:38110 9 6412 1 2025-11-28 20:28:05.062 00:05:02.679 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:28:05.784 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:32:10.613 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42992 1 40 1 2025-11-28 20:28:36.407 00:05:10.005 OSPF 23.0.7.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-28 20:30:05.207 00:05:02.555 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:34:19.441 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:34:19.542 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:31:05.765 00:05:02.019 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:35:11.797 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:52276 1 40 1 2025-11-28 20:32:05.083 00:05:02.640 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:36:12.203 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44902 1 40 1 2025-11-28 20:37:12.615 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48584 1 40 1 2025-11-28 20:34:05.785 00:05:01.938 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:34:05.066 00:05:02.678 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:33:56.412 00:05:10.007 OSPF 23.0.7.1:0 -> 224.0.0.5:0 38 2732 1 2025-11-28 20:38:02.649 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:41740 10 6452 1 2025-11-28 20:39:13.418 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40848 1 40 1 2025-11-28 20:39:19.604 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:39:19.320 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:36:05.207 00:05:02.557 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:40:13.827 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:45684 1 40 1 2025-11-28 20:37:05.765 00:05:02.019 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:38:05.091 00:05:02.634 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:42:04.291 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:34366 9 6412 1 2025-11-28 20:39:16.422 00:05:00.888 OSPF 23.0.7.1:0 -> 224.0.0.5:0 34 2332 1 2025-11-28 20:40:05.071 00:05:02.673 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:40:05.787 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:44:19.902 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:44:15.421 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:40434 1 40 1 2025-11-28 20:44:19.775 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:45:15.834 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54888 1 40 1 2025-11-28 20:42:05.208 00:05:02.557 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:43:05.767 00:05:02.019 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:47:06.298 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:60550 10 6452 1 2025-11-28 20:44:05.092 00:05:02.633 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:48:06.708 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:34934 9 6412 1 2025-11-28 20:44:26.435 00:05:10.003 OSPF 23.0.7.1:0 -> 224.0.0.5:0 42 3184 1 2025-11-28 20:49:19.680 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:49:17.499 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:44926 1 40 1 2025-11-28 20:49:19.391 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:46:05.073 00:05:02.673 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:46:05.789 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:50:07.539 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:39820 10 6452 1 2025-11-28 20:51:18.266 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46398 1 40 1 2025-11-28 20:48:05.209 00:05:02.557 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:52:18.668 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:56770 1 40 1 2025-11-28 20:49:05.770 00:05:02.017 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-28 20:53:19.033 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37902 1 40 1 2025-11-28 20:49:46.437 00:05:10.002 OSPF 23.0.7.1:0 -> 224.0.0.5:0 39 2768 1 2025-11-28 20:50:05.093 00:05:02.633 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-28 20:54:19.859 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-28 20:54:19.862 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-28 20:54:19.434 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43110 1 40 1 2025-11-28 20:55:09.473 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41410 9 6412 1 2025-11-28 20:52:05.074 00:05:02.675 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-28 20:52:05.793 00:05:01.937 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-28 20:56:20.260 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:53098 1 40 1 2025-11-28 20:57:20.673 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:49076 1 40 1 2025-11-28 20:54:05.211 00:05:02.559 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-28 20:58:10.709 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57164 9 6412 1 Summary: total flows: 133, total bytes: 221828, total packets: 1337, avg bps: 461, avg pps: 0, avg bpp: 165 Time window: 2025-11-28 19:55:05 - 2025-11-28 20:59:07 Total flows processed: 133, passed: 133, Blocks skipped: 0, Bytes read: 13896 Sys: 0.0052s User: 0.0009s Wall: 0.0022s flows/second: 61093.2 Runtime: 0.0022s