Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-25 18:54:41.090 00:06:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-25 18:54:41.093 00:06:00.066 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-25 18:59:31.910 00:00:11.826 TCP 12.102.0.1:47128 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:00:33.765 00:00:11.855 TCP 12.102.0.1:33262 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:01:35.663 00:00:11.811 TCP 12.102.0.1:60456 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:02:37.515 00:00:11.804 TCP 12.102.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:03:27.015 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:03:27.325 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:03:27.165 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:03:27.191 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:03:27.307 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:03:27.283 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:03:27.038 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:03:39.354 00:00:11.830 TCP 12.102.0.1:55452 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:04:41.220 00:00:11.800 TCP 12.102.0.1:39794 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:05:43.079 00:00:11.806 TCP 12.102.0.1:42702 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:01:41.093 00:06:00.065 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-25 19:01:41.092 00:06:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-25 19:06:44.918 00:00:11.823 TCP 12.102.0.1:37580 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:07:46.778 00:00:11.797 TCP 12.102.0.1:49276 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:08:27.254 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:08:27.276 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:08:27.400 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:08:27.437 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:08:27.487 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:08:27.155 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:08:27.158 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:08:41.093 00:00:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 2 123 1 2025-09-25 19:08:41.095 00:00:00.064 TCP 179.10.12.10:179 -> 179.10.12.12:58070 2 123 1 2025-09-25 19:08:48.613 00:00:11.801 TCP 12.102.0.1:47326 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:09:50.454 00:00:11.755 TCP 12.102.0.1:46896 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:10:52.246 00:00:11.935 TCP 12.102.0.1:40632 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:11:54.218 00:00:12.252 TCP 12.102.0.1:55248 -> 1.101.0.1:3000 15 1926 1 2025-09-25 19:12:56.509 00:00:11.802 TCP 12.102.0.1:34006 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:13:27.535 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.643 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.419 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.578 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.494 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.355 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:13:27.513 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:09:41.096 00:04:00.065 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-09-25 19:09:41.094 00:04:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:13:58.351 00:00:11.813 TCP 12.102.0.1:33320 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:15:00.199 00:00:11.765 TCP 12.102.0.1:42846 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:16:02.000 00:00:11.761 TCP 12.102.0.1:44126 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:17:03.803 00:00:11.800 TCP 12.102.0.1:37820 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:18:05.639 00:00:11.799 TCP 12.102.0.1:42114 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:18:27.590 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:18:27.614 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:18:27.364 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:18:27.663 00:00:00.031 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:18:27.619 00:00:00.028 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:18:27.666 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:18:27.448 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:14:41.096 00:04:00.067 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-09-25 19:14:41.093 00:04:00.072 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:19:07.476 00:00:11.796 TCP 12.102.0.1:54790 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:20:09.315 00:00:11.762 TCP 12.102.0.1:51268 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:21:11.112 00:00:11.800 TCP 12.102.0.1:54394 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:22:12.954 00:00:11.799 TCP 12.102.0.1:60218 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:23:14.793 00:00:11.815 TCP 12.102.0.1:44480 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:23:28.170 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:23:28.193 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:23:27.880 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:23:28.330 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:23:27.990 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:23:27.769 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:23:28.127 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:19:41.098 00:04:00.065 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-09-25 19:19:41.095 00:04:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:24:16.663 00:00:11.808 TCP 12.102.0.1:57290 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:25:18.506 00:00:11.803 TCP 12.102.0.1:48568 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:26:20.348 00:00:11.816 TCP 12.102.0.1:32956 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:27:22.203 00:00:11.761 TCP 12.102.0.1:60370 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:28:27.656 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.720 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.782 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.753 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.871 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.636 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:28:27.632 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:28:24.002 00:00:11.797 TCP 12.102.0.1:41060 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:29:25.837 00:00:11.765 TCP 12.102.0.1:42340 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:24:41.098 00:06:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-25 19:24:41.100 00:06:00.065 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-25 19:30:27.634 00:00:11.807 TCP 12.102.0.1:46236 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:31:29.479 00:00:11.799 TCP 12.102.0.1:46104 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:32:31.320 00:00:11.815 TCP 12.102.0.1:46496 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:33:27.944 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:33:28.023 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:33:28.019 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:33:27.757 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:33:27.890 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:33:27.764 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:33:27.921 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:33:33.159 00:00:11.810 TCP 12.102.0.1:46262 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:34:35.008 00:00:11.800 TCP 12.102.0.1:49588 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:35:36.849 00:00:11.809 TCP 12.102.0.1:43196 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:31:41.098 00:06:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-09-25 19:31:41.102 00:06:00.064 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-25 19:36:38.695 00:00:11.799 TCP 12.102.0.1:60846 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:37:40.532 00:00:11.805 TCP 12.102.0.1:46704 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:38:27.848 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:38:27.873 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:38:28.122 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:38:27.905 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:38:27.746 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:38:28.008 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:38:27.994 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:38:42.375 00:00:11.810 TCP 12.102.0.1:50662 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:39:44.222 00:00:11.804 TCP 12.102.0.1:42334 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:38:41.108 00:02:00.061 TCP 179.10.12.12:58070 -> 179.10.12.10:179 6 369 1 2025-09-25 19:40:46.078 00:00:11.801 TCP 12.102.0.1:35326 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:41:47.923 00:00:11.833 TCP 12.102.0.1:52602 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:42:49.794 00:00:11.800 TCP 12.102.0.1:51418 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:43:28.140 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:43:28.136 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:43:28.157 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:43:28.164 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:43:28.231 00:00:00.041 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:43:28.023 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:43:28.117 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:38:41.112 00:06:00.058 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-09-25 19:43:51.637 00:00:11.797 TCP 12.102.0.1:38744 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:44:53.480 00:00:11.803 TCP 12.102.0.1:57238 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:45:41.115 00:00:00.054 TCP 179.10.12.10:179 -> 179.10.12.12:58070 2 123 1 2025-09-25 19:41:41.112 00:04:00.060 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:45:55.331 00:00:11.763 TCP 12.102.0.1:57464 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:46:57.137 00:00:11.772 TCP 12.102.0.1:56200 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:47:58.951 00:00:11.765 TCP 12.102.0.1:52872 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:48:28.206 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:48:28.337 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:48:28.230 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:48:28.325 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:48:28.271 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:48:28.361 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:48:28.019 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:49:00.761 00:00:11.762 TCP 12.102.0.1:58282 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:50:02.565 00:00:11.813 TCP 12.102.0.1:54108 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:46:41.114 00:04:00.058 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-09-25 19:46:41.112 00:04:00.062 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:51:04.407 00:00:11.800 TCP 12.102.0.1:54412 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:52:06.249 00:00:12.009 TCP 12.102.0.1:55996 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:53:08.296 00:00:11.805 TCP 12.102.0.1:43794 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:53:28.361 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.289 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.367 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.200 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.179 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.334 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-09-25 19:53:28.339 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:54:10.137 00:00:11.818 TCP 12.102.0.1:55752 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:55:11.996 00:00:11.801 TCP 12.102.0.1:54206 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:51:41.116 00:04:00.056 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-09-25 19:51:41.115 00:04:00.061 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-09-25 19:56:13.833 00:00:11.798 TCP 12.102.0.1:56800 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:57:15.671 00:00:11.807 TCP 12.102.0.1:52160 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:58:28.470 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-09-25 19:58:17.516 00:00:11.760 TCP 12.102.0.1:52768 -> 1.101.0.1:3000 11 1507 1 2025-09-25 19:58:28.493 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-09-25 19:58:28.516 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-09-25 19:58:28.487 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-09-25 19:58:28.374 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-09-25 19:58:28.549 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-09-25 19:58:28.383 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 Summary: total flows: 166, total bytes: 124245, total packets: 1142, avg bps: 259, avg pps: 0, avg bpp: 108 Time window: 2025-09-25 18:54:41 - 2025-09-25 19:58:29 Total flows processed: 166, passed: 166, Blocks skipped: 0, Bytes read: 17328 Sys: 0.0036s User: 0.0018s Wall: 0.0023s flows/second: 71491.4 Runtime: 0.0023s