Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 17:58:46.985 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:44256 10 6452 1 2025-11-10 17:54:54.721 00:05:03.943 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 17:59:47.387 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:51934 10 6452 1 2025-11-10 17:55:54.701 00:05:03.983 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:00:34.850 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:00:34.959 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:00:47.797 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:57496 10 6452 1 2025-11-10 17:56:55.599 00:05:03.104 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:01:58.528 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50220 1 40 1 2025-11-10 17:57:50.081 00:05:10.033 OSPF 23.0.7.2:0 -> 224.0.0.5:0 39 2872 1 2025-11-10 17:58:56.925 00:05:01.800 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:02:48.560 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:54890 10 6452 1 2025-11-10 17:58:56.946 00:05:01.719 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:03:48.982 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:41378 10 6452 1 2025-11-10 18:04:49.389 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:33706 9 6412 1 2025-11-10 18:00:54.720 00:05:03.945 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:05:35.080 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:05:35.082 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:05:49.749 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:57366 9 6412 1 2025-11-10 18:01:54.702 00:05:03.984 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:02:55.600 00:05:03.106 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:03:10.086 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2304 1 2025-11-10 18:07:50.543 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:33344 10 6452 1 2025-11-10 18:04:56.924 00:05:01.802 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:04:56.946 00:05:01.721 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:09:01.344 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51272 1 40 1 2025-11-10 18:10:02.333 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41574 1 40 1 2025-11-10 18:10:34.877 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:10:34.775 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:06:54.721 00:05:03.945 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:10:52.370 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:38342 9 6412 1 2025-11-10 18:07:54.701 00:05:03.985 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:11:52.777 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:34376 9 6412 1 2025-11-10 18:08:30.093 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2668 1 2025-11-10 18:08:55.601 00:05:03.106 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:12:53.197 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:49074 9 6412 1 2025-11-10 18:14:03.983 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39034 1 40 1 2025-11-10 18:10:56.925 00:05:01.802 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:10:56.945 00:05:01.723 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:15:35.283 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:15:35.277 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:15:55.795 00:00:10.379 TCP 1.101.0.1:3000 -> 23.104.0.1:49002 10 6452 1 2025-11-10 18:12:54.723 00:05:03.945 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:13:50.100 00:05:10.011 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2448 1 2025-11-10 18:13:54.702 00:05:03.987 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:17:56.616 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:36212 9 6412 1 2025-11-10 18:14:55.602 00:05:03.108 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:18:56.977 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:59564 10 6452 1 2025-11-10 18:19:57.386 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:48398 9 6412 1 2025-11-10 18:20:35.271 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:20:35.190 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:16:56.948 00:05:01.723 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:16:56.928 00:05:01.803 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:21:58.290 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:44774 9 6412 1 2025-11-10 18:18:54.726 00:05:03.946 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:22:58.695 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:57286 9 6412 1 2025-11-10 18:19:10.114 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2576 1 2025-11-10 18:19:54.706 00:05:03.985 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:24:09.424 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51202 1 40 1 2025-11-10 18:20:55.603 00:05:03.118 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:25:35.321 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:25:35.317 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:26:10.195 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41228 1 40 1 2025-11-10 18:22:56.949 00:05:01.723 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:22:56.928 00:05:01.804 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:27:00.238 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58616 10 6452 1 2025-11-10 18:28:00.642 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:46556 9 6412 1 2025-11-10 18:24:30.116 00:05:10.002 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2696 1 2025-11-10 18:24:54.727 00:05:03.946 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:29:11.413 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:38976 1 40 1 2025-11-10 18:25:54.707 00:05:03.986 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:30:11.817 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:54066 1 40 1 2025-11-10 18:30:35.313 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:30:35.448 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:26:55.606 00:05:03.109 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:31:12.220 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:43600 1 40 1 2025-11-10 18:32:02.258 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:45318 9 6412 1 2025-11-10 18:28:56.950 00:05:01.725 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:28:56.929 00:05:01.804 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:33:02.666 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:39250 10 6452 1 2025-11-10 18:29:50.119 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-10 18:34:03.089 00:00:11.182 TCP 1.101.0.1:3000 -> 23.104.0.1:39342 10 6452 1 2025-11-10 18:30:54.728 00:05:03.946 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:35:04.321 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:34206 9 6412 1 2025-11-10 18:35:35.592 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:35:35.525 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:31:54.708 00:05:03.986 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:36:04.724 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:56742 9 6412 1 2025-11-10 18:32:55.605 00:05:03.110 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:37:05.131 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56126 11 6504 1 2025-11-10 18:38:15.885 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:42978 1 40 1 2025-11-10 18:34:56.932 00:05:01.806 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:34:56.952 00:05:01.726 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:35:10.124 00:05:10.006 OSPF 23.0.7.2:0 -> 224.0.0.5:0 37 2528 1 2025-11-10 18:39:16.289 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36274 1 40 1 2025-11-10 18:40:06.330 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:42590 9 6412 1 2025-11-10 18:40:35.566 00:00:00.024 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:40:35.691 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:36:54.728 00:05:03.949 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:41:17.020 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39196 1 40 1 2025-11-10 18:37:54.708 00:05:03.989 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:42:07.059 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:57726 10 6452 1 2025-11-10 18:38:55.607 00:05:03.111 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:43:07.457 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50876 9 6412 1 2025-11-10 18:44:07.858 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54248 10 6452 1 2025-11-10 18:40:30.130 00:05:10.004 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2604 1 2025-11-10 18:40:56.954 00:05:01.725 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:40:56.934 00:05:01.805 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:45:08.275 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:33896 10 6452 1 2025-11-10 18:45:36.368 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:45:36.183 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:46:19.024 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:55328 1 40 1 2025-11-10 18:42:54.736 00:05:03.944 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:47:09.062 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:45326 9 6412 1 2025-11-10 18:43:54.718 00:05:03.984 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:48:09.472 00:00:10.432 TCP 1.101.0.1:3000 -> 23.104.0.1:60410 10 6464 1 2025-11-10 18:44:55.607 00:05:03.114 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:49:09.942 00:00:10.391 TCP 1.101.0.1:3000 -> 23.104.0.1:48002 10 6452 1 2025-11-10 18:45:50.134 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 38 2720 1 2025-11-10 18:50:10.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40336 9 6412 1 2025-11-10 18:50:35.880 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:50:35.882 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:46:56.934 00:05:01.808 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:46:56.955 00:05:01.728 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:51:10.778 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:39726 10 6452 1 2025-11-10 18:52:11.205 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:55996 9 6412 1 2025-11-10 18:48:54.738 00:05:03.944 TCP 23.155.0.1:42479 -> 23.152.0.1:179 12 738 1 2025-11-10 18:53:11.610 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:42578 10 6452 1 2025-11-10 18:49:54.718 00:05:03.985 TCP 23.152.0.1:179 -> 23.155.0.1:42479 12 738 1 2025-11-10 18:54:12.016 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:42442 9 6412 1 2025-11-10 18:50:55.607 00:05:03.115 TCP 23.154.0.1:179 -> 23.155.0.1:42089 12 738 1 2025-11-10 18:51:10.140 00:05:10.005 OSPF 23.0.7.2:0 -> 224.0.0.5:0 36 2568 1 2025-11-10 18:55:35.954 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-10 18:55:35.918 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-10 18:56:23.191 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:48452 1 40 1 2025-11-10 18:52:56.955 00:05:01.728 TCP 23.155.0.1:179 -> 23.156.0.1:36051 12 738 1 2025-11-10 18:52:56.935 00:05:01.809 TCP 23.156.0.1:36051 -> 23.155.0.1:179 12 738 1 2025-11-10 18:57:13.227 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:55344 9 6412 1 Summary: total flows: 138, total bytes: 322704, total packets: 1458, avg bps: 682, avg pps: 0, avg bpp: 221 Time window: 2025-11-10 17:54:54 - 2025-11-10 18:57:58 Total flows processed: 138, passed: 138, Blocks skipped: 0, Bytes read: 14416 Sys: 0.0033s User: 0.0025s Wall: 0.0033s flows/second: 41994.8 Runtime: 0.0033s