Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-25 09:58:48.987 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50592 9 6412 1 2025-08-25 09:54:18.467 00:06:00.509 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 09:55:18.975 00:05:01.355 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 09:55:43.620 00:05:10.004 OSPF 23.0.4.2:0 -> 224.0.0.5:0 32 2176 1 2025-08-25 09:59:59.755 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50796 1 40 1 2025-08-25 09:56:18.975 00:05:00.094 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 09:56:18.975 00:05:00.174 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 09:55:18.446 00:06:00.550 TCP 23.151.0.1:42035 -> 23.155.0.1:179 14 861 1 2025-08-25 10:01:00.167 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39028 1 40 1 2025-08-25 09:56:19.046 00:06:00.010 TCP 23.158.0.1:40787 -> 23.155.0.1:179 14 861 1 2025-08-25 10:01:50.210 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:59706 9 6412 1 2025-08-25 09:58:17.498 00:05:01.477 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:03:01.025 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:41782 1 40 1 2025-08-25 10:03:13.611 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:03:13.445 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:03:13.551 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 09:59:19.017 00:05:01.296 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:03:51.085 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:34262 10 6452 1 2025-08-25 09:59:19.036 00:06:00.094 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:05:01.816 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:39390 1 40 1 2025-08-25 10:01:03.624 00:05:10.004 OSPF 23.0.4.2:0 -> 224.0.0.5:0 35 2452 1 2025-08-25 10:01:18.976 00:05:01.356 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:05:51.851 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:36232 10 6452 1 2025-08-25 10:01:18.471 00:06:00.506 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:02:18.976 00:05:00.093 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:02:18.976 00:05:00.174 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:02:18.450 00:06:00.546 TCP 23.151.0.1:42035 -> 23.155.0.1:179 14 861 1 2025-08-25 10:08:03.045 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:51550 1 40 1 2025-08-25 10:08:14.169 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:08:13.763 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:08:14.109 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:04:17.510 00:05:01.467 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:03:19.050 00:06:00.009 TCP 23.158.0.1:40787 -> 23.155.0.1:179 14 861 1 2025-08-25 10:09:03.474 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33490 1 40 1 2025-08-25 10:05:19.018 00:05:01.296 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:09:53.521 00:00:10.777 TCP 1.101.0.1:3000 -> 23.104.0.1:43750 10 6452 1 2025-08-25 10:06:23.629 00:05:10.005 OSPF 23.0.4.2:0 -> 224.0.0.5:0 38 2692 1 2025-08-25 10:06:19.037 00:06:00.100 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:07:18.979 00:05:01.356 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:12:05.115 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:33174 1 40 1 2025-08-25 10:08:18.978 00:05:00.178 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:08:18.978 00:05:00.117 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:13:13.879 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:09:18.455 00:05:00.547 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:13:13.704 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:13:13.819 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:08:18.476 00:06:00.506 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:10:17.504 00:05:01.477 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:14:55.916 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:56646 10 6452 1 2025-08-25 10:11:19.020 00:05:01.297 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:10:19.049 00:06:00.030 TCP 23.158.0.1:40787 -> 23.155.0.1:179 9 601 1 2025-08-25 10:11:43.636 00:05:10.013 OSPF 23.0.4.2:0 -> 224.0.0.5:0 36 2560 1 2025-08-25 10:16:06.768 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:50872 1 40 1 2025-08-25 10:16:56.809 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:58198 9 6412 1 2025-08-25 10:13:18.980 00:05:01.355 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:18:13.734 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:18:13.924 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:18:13.984 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:13:19.041 00:06:00.096 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:14:18.980 00:05:00.121 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:14:18.980 00:05:00.176 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:15:18.456 00:05:00.553 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:15:18.477 00:06:00.514 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:16:17.507 00:05:01.484 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:17:02.734 00:05:00.921 OSPF 23.0.4.2:0 -> 224.0.0.5:0 38 2660 1 2025-08-25 10:21:08.793 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58550 1 40 1 2025-08-25 10:17:19.022 00:05:01.295 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:17:19.080 00:06:00.002 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:23:14.189 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:22:59.240 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:43928 10 6452 1 2025-08-25 10:23:13.940 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:23:14.128 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:19:18.981 00:05:01.355 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:23:59.646 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:54662 10 6452 1 2025-08-25 10:20:18.988 00:05:00.114 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:20:18.988 00:05:00.170 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:25:00.013 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:44216 10 6452 1 2025-08-25 10:21:18.458 00:05:00.554 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:20:19.049 00:06:00.089 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:26:00.393 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:52152 10 6452 1 2025-08-25 10:22:17.524 00:05:01.466 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:22:13.655 00:05:10.008 OSPF 23.0.4.2:0 -> 224.0.0.5:0 35 2384 1 2025-08-25 10:27:00.753 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:58544 10 6452 1 2025-08-25 10:23:19.030 00:05:01.289 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:22:18.478 00:06:00.513 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:28:14.009 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:28:13.827 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:28:11.526 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37130 1 40 1 2025-08-25 10:28:13.950 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:29:01.566 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 9 6412 1 2025-08-25 10:24:19.081 00:06:00.001 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:25:18.990 00:05:01.348 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:26:18.991 00:05:00.114 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:26:18.991 00:05:00.168 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:27:18.458 00:05:00.556 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:27:33.664 00:05:10.010 OSPF 23.0.4.2:0 -> 224.0.0.5:0 33 2240 1 2025-08-25 10:28:17.523 00:05:01.471 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:27:19.052 00:06:00.087 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:33:14.398 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:33:14.320 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:33:14.459 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:29:19.031 00:05:01.288 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:34:13.884 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:37278 1 40 1 2025-08-25 10:29:18.478 00:06:00.515 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:31:18.994 00:05:01.346 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:36:04.339 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40674 10 6452 1 2025-08-25 10:32:18.993 00:05:00.113 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:32:18.993 00:05:00.168 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:31:19.084 00:06:00.002 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:32:53.672 00:05:10.010 OSPF 23.0.4.2:0 -> 224.0.0.5:0 38 2776 1 2025-08-25 10:37:04.744 00:00:10.378 TCP 1.101.0.1:3000 -> 23.104.0.1:45528 9 6412 1 2025-08-25 10:33:18.460 00:05:00.555 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:38:14.197 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:38:05.159 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:45304 10 6452 1 2025-08-25 10:38:14.078 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:38:14.137 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:34:17.523 00:05:01.471 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:35:19.034 00:05:01.286 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:34:19.054 00:06:00.087 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:36:18.481 00:06:00.515 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:37:18.995 00:05:01.347 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:41:16.748 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:58692 1 40 1 2025-08-25 10:38:13.682 00:05:00.500 OSPF 23.0.4.2:0 -> 224.0.0.5:0 35 2380 1 2025-08-25 10:38:18.995 00:05:00.112 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:42:17.179 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:35814 1 40 1 2025-08-25 10:38:18.995 00:05:00.168 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:43:14.362 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:43:14.204 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:43:14.421 00:00:00.026 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:39:18.462 00:05:00.554 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:38:19.086 00:06:00.001 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:40:17.528 00:05:01.468 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:45:07.980 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:41488 10 6452 1 2025-08-25 10:41:19.035 00:05:01.287 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:46:18.765 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:36562 1 40 1 2025-08-25 10:41:19.056 00:06:00.088 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:47:08.799 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:46850 10 6452 1 2025-08-25 10:43:18.995 00:05:01.348 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:43:23.694 00:05:10.011 OSPF 23.0.4.2:0 -> 224.0.0.5:0 37 2528 1 2025-08-25 10:48:14.434 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:48:14.374 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:48:14.107 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:43:18.482 00:06:00.515 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:44:18.995 00:05:00.112 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:48:09.203 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:60796 9 6412 1 2025-08-25 10:44:18.995 00:05:00.168 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:45:18.466 00:05:00.552 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:49:09.605 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:50792 10 6452 1 2025-08-25 10:50:10.013 00:00:10.336 TCP 1.101.0.1:3000 -> 23.104.0.1:51896 9 6412 1 2025-08-25 10:46:17.528 00:05:01.469 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:45:19.088 00:06:00.002 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:47:19.037 00:05:01.287 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:52:21.121 00:00:00.000 TCP 1.101.0.1:3000 -> 23.104.0.1:46284 1 40 1 2025-08-25 10:48:43.706 00:05:10.011 OSPF 23.0.4.2:0 -> 224.0.0.5:0 39 2728 1 2025-08-25 10:53:14.500 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:53:14.685 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:53:14.746 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:49:18.997 00:05:01.347 TCP 23.155.0.1:37249 -> 23.153.0.1:179 12 738 1 2025-08-25 10:48:19.059 00:06:00.087 TCP 23.157.0.1:40165 -> 23.155.0.1:179 14 861 1 2025-08-25 10:53:11.166 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:56570 10 6452 1 2025-08-25 10:50:18.997 00:05:00.112 TCP 23.155.0.1:179 -> 23.158.0.1:40787 12 738 1 2025-08-25 10:50:18.997 00:05:00.167 TCP 23.155.0.1:179 -> 23.157.0.1:40165 12 738 1 2025-08-25 10:54:11.573 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:37048 9 6412 1 2025-08-25 10:50:18.487 00:06:00.513 TCP 23.155.0.1:179 -> 23.151.0.1:42035 14 861 1 2025-08-25 10:51:18.469 00:05:00.551 TCP 23.151.0.1:42035 -> 23.155.0.1:179 12 738 1 2025-08-25 10:52:17.530 00:05:01.474 TCP 23.155.0.1:42089 -> 23.154.0.1:179 12 738 1 2025-08-25 10:53:19.038 00:05:01.288 TCP 23.153.0.1:179 -> 23.155.0.1:37249 12 738 1 2025-08-25 10:52:19.091 00:06:00.002 TCP 23.158.0.1:40787 -> 23.155.0.1:179 7 497 1 2025-08-25 10:58:15.059 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-08-25 10:58:14.794 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:58:14.998 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-08-25 10:54:03.716 00:05:10.751 OSPF 23.0.4.2:0 -> 224.0.0.5:0 33 2240 1 2025-08-25 10:58:13.169 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:51028 10 6452 1 Summary: total flows: 173, total bytes: 258484, total packets: 1825, avg bps: 530, avg pps: 0, avg bpp: 141 Time window: 2025-08-25 09:54:18 - 2025-08-25 10:59:14 Total flows processed: 173, passed: 173, Blocks skipped: 0, Bytes read: 18056 Sys: 0.0040s User: 0.0010s Wall: 0.0028s flows/second: 61981.3 Runtime: 0.0028s