Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-20 03:59:22.662 00:00:11.761 TCP 12.102.0.1:32842 -> 1.101.0.1:3000 11 1507 1 2025-09-20 03:54:37.001 00:06:00.066 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-20 03:55:36.998 00:05:00.071 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-09-20 04:00:24.464 00:00:11.797 TCP 12.102.0.1:38898 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:00:45.219 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:00:45.182 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:00:44.791 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:00:44.942 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:00:45.212 00:00:00.048 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:00:45.076 00:00:00.044 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:00:45.196 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:01:26.298 00:00:11.802 TCP 12.102.0.1:47826 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:02:28.143 00:00:11.813 TCP 12.102.0.1:35790 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:03:29.989 00:00:12.152 TCP 12.102.0.1:55674 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:04:32.172 00:00:11.803 TCP 12.102.0.1:43640 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:05:34.020 00:00:11.810 TCP 12.102.0.1:36516 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:05:44.715 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:05:45.012 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:05:44.934 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:05:44.975 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:05:44.929 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:05:44.944 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:05:44.694 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:01:37.000 00:06:00.073 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:01:37.003 00:06:00.068 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-20 04:06:35.866 00:00:11.813 TCP 12.102.0.1:43880 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:07:37.715 00:00:11.807 TCP 12.102.0.1:52028 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:08:39.558 00:00:24.561 TCP 12.102.0.1:40350 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:09:54.157 00:00:11.805 TCP 12.102.0.1:34956 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:10:44.764 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.880 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.899 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.789 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.976 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.927 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:10:44.742 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:10:56.008 00:00:11.765 TCP 12.102.0.1:42288 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:11:57.809 00:00:11.808 TCP 12.102.0.1:58614 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:12:59.656 00:00:11.815 TCP 12.102.0.1:40152 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:08:37.071 00:06:00.002 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:08:37.041 00:06:00.034 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:14:01.509 00:00:11.811 TCP 12.102.0.1:55734 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:15:03.365 00:00:19.857 TCP 12.102.0.1:45868 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:15:46.424 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.536 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.552 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.311 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.323 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.546 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:15:46.402 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:16:13.266 00:00:11.798 TCP 12.102.0.1:35488 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:17:15.110 00:00:11.816 TCP 12.102.0.1:51940 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:18:16.967 00:00:11.804 TCP 12.102.0.1:53022 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:19:18.810 00:00:11.807 TCP 12.102.0.1:37412 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:20:20.656 00:00:11.811 TCP 12.102.0.1:48614 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:15:37.048 00:06:00.028 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:15:37.072 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:20:45.031 00:00:00.028 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:20:45.054 00:00:00.028 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:20:45.060 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:20:45.282 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:20:45.244 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:20:45.171 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:20:45.153 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:21:22.504 00:00:11.799 TCP 12.102.0.1:48582 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:22:24.343 00:00:11.799 TCP 12.102.0.1:51788 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:23:26.178 00:00:11.800 TCP 12.102.0.1:39984 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:24:28.016 00:00:11.760 TCP 12.102.0.1:38014 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:25:45.335 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:25:29.813 00:00:11.853 TCP 12.102.0.1:40768 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:25:45.358 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:25:45.427 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:25:45.630 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:25:45.367 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:25:45.391 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:25:45.214 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:26:31.708 00:00:11.802 TCP 12.102.0.1:42948 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:22:37.074 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:22:37.054 00:06:00.024 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:27:33.552 00:00:11.764 TCP 12.102.0.1:52686 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:28:35.354 00:00:11.776 TCP 12.102.0.1:33794 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:29:37.164 00:00:11.800 TCP 12.102.0.1:52434 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:30:45.495 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.413 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.503 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.462 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.493 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.290 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:30:45.473 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:30:39.009 00:00:11.803 TCP 12.102.0.1:43864 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:31:40.850 00:00:11.804 TCP 12.102.0.1:46380 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:32:42.688 00:00:11.854 TCP 12.102.0.1:56066 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:33:44.584 00:00:11.799 TCP 12.102.0.1:43122 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:29:37.065 00:06:00.022 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:29:37.074 00:06:00.010 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:34:46.423 00:00:11.803 TCP 12.102.0.1:54806 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:35:45.487 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:35:45.513 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:35:45.697 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:35:45.551 00:00:00.027 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:35:45.454 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:35:45.628 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:35:45.431 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:35:48.271 00:00:11.806 TCP 12.102.0.1:47026 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:36:50.120 00:00:11.805 TCP 12.102.0.1:60014 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:37:51.968 00:00:11.803 TCP 12.102.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:38:53.805 00:00:11.803 TCP 12.102.0.1:37418 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:39:55.647 00:00:11.762 TCP 12.102.0.1:47972 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:40:45.470 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:40:45.492 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:40:45.788 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:40:45.645 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:40:45.413 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:40:45.521 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:40:45.713 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:40:57.446 00:00:12.239 TCP 12.102.0.1:47928 -> 1.101.0.1:3000 15 1926 1 2025-09-20 04:36:37.065 00:06:00.023 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:36:37.084 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:41:59.726 00:00:11.813 TCP 12.102.0.1:59460 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:43:01.586 00:00:11.811 TCP 12.102.0.1:40744 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:44:03.431 00:00:11.806 TCP 12.102.0.1:49062 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:45:05.274 00:00:12.881 TCP 12.102.0.1:37634 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:45:45.661 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.899 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.750 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.712 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.715 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.494 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:45:45.640 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:46:08.189 00:00:11.803 TCP 12.102.0.1:46316 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:47:10.034 00:00:11.761 TCP 12.102.0.1:47598 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:48:11.831 00:00:11.833 TCP 12.102.0.1:51842 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:43:37.086 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:43:37.067 00:06:00.023 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:49:13.673 00:00:11.817 TCP 12.102.0.1:58532 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:50:15.525 00:00:11.814 TCP 12.102.0.1:59492 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:50:45.866 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:50:45.888 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:50:46.140 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:50:45.697 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:50:45.931 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:50:46.089 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:50:46.013 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:51:17.372 00:00:11.819 TCP 12.102.0.1:39668 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:52:19.229 00:00:11.761 TCP 12.102.0.1:34592 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:53:21.040 00:00:11.802 TCP 12.102.0.1:37434 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:54:22.881 00:00:11.757 TCP 12.102.0.1:60472 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:55:24.675 00:00:11.804 TCP 12.102.0.1:33922 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:50:37.067 00:06:00.026 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-20 04:55:46.001 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-20 04:55:46.122 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-20 04:55:46.141 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-20 04:55:46.226 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-20 04:55:46.125 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-20 04:55:46.003 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-20 04:50:37.090 00:06:00.001 TCP 179.10.12.10:179 -> 179.10.12.12:58070 7 497 1 2025-09-20 04:55:45.978 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-20 04:56:26.522 00:00:11.759 TCP 12.102.0.1:40432 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:57:28.321 00:00:11.808 TCP 12.102.0.1:41458 -> 1.101.0.1:3000 11 1507 1 2025-09-20 04:58:30.164 00:00:11.798 TCP 12.102.0.1:46070 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 121820, total packets: 1095, avg bps: 253, avg pps: 0, avg bpp: 111 Time window: 2025-09-20 03:54:37 - 2025-09-20 04:58:41 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0038s User: 0.0019s Wall: 0.0036s flows/second: 44054.9 Runtime: 0.0037s