Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 13:59:37.243 00:00:11.873 TCP 12.102.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-10-01 13:55:45.100 00:06:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:00:39.164 00:00:11.801 TCP 12.102.0.1:34442 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:01:14.851 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:01:14.900 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.891 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.666 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.874 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.869 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.933 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:01:41.007 00:00:11.797 TCP 12.102.0.1:36838 -> 1.101.0.1:3000 11 1507 1 2025-10-01 13:57:45.098 00:06:00.137 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:02:42.842 00:00:11.803 TCP 12.102.0.1:39630 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:03:44.688 00:00:11.797 TCP 12.102.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:04:46.519 00:00:11.765 TCP 12.102.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:05:48.320 00:00:11.763 TCP 12.102.0.1:51598 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:06:14.671 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.573 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.725 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.615 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.713 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.487 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.648 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:06:50.119 00:00:11.810 TCP 12.102.0.1:57806 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:02:45.102 00:06:00.131 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:07:51.966 00:00:11.801 TCP 12.102.0.1:56686 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:08:53.806 00:00:11.806 TCP 12.102.0.1:50396 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:04:45.099 00:06:00.136 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:09:55.662 00:00:11.818 TCP 12.102.0.1:36824 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:10:57.518 00:00:11.808 TCP 12.102.0.1:41524 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:11:14.765 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:11:14.787 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.749 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.751 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.646 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.850 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.644 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:11:59.367 00:00:11.795 TCP 12.102.0.1:37934 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:13:01.204 00:00:11.807 TCP 12.102.0.1:60702 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:14:03.075 00:00:11.806 TCP 12.102.0.1:39480 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:09:45.103 00:06:00.131 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:15:04.932 00:00:11.812 TCP 12.102.0.1:37002 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:16:14.901 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:16:15.108 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.811 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:16:15.016 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.890 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.841 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.878 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:16:06.783 00:00:11.803 TCP 12.102.0.1:34268 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:11:45.102 00:06:00.136 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:17:08.628 00:00:11.800 TCP 12.102.0.1:48546 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:18:10.467 00:00:11.796 TCP 12.102.0.1:42632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:19:12.300 00:00:11.815 TCP 12.102.0.1:51230 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:20:14.152 00:00:11.817 TCP 12.102.0.1:53192 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:21:15.315 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.230 00:00:00.047 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.281 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.166 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.275 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.055 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.292 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:21:16.007 00:00:11.851 TCP 12.102.0.1:52730 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:16:45.105 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:22:17.896 00:00:11.759 TCP 12.102.0.1:55106 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:23:19.691 00:00:11.803 TCP 12.102.0.1:38388 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:18:45.105 00:06:00.135 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:24:21.532 00:00:11.803 TCP 12.102.0.1:57442 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:25:23.372 00:00:11.808 TCP 12.102.0.1:40376 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:26:15.189 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:26:15.212 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:26:14.972 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.479 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.439 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.721 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.595 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:26:25.221 00:00:11.804 TCP 12.102.0.1:55600 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:27:27.085 00:00:11.765 TCP 12.102.0.1:42752 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:28:28.882 00:00:11.863 TCP 12.102.0.1:44400 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:23:45.107 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:29:30.787 00:00:11.808 TCP 12.102.0.1:41322 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:25:45.108 00:06:00.131 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:30:32.634 00:00:11.874 TCP 12.102.0.1:49562 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:31:15.127 00:00:00.009 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:31:15.150 00:00:00.008 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.311 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.286 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.109 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.358 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.240 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:31:34.544 00:00:11.803 TCP 12.102.0.1:43298 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:32:36.385 00:00:11.815 TCP 12.102.0.1:50372 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:33:38.246 00:00:11.758 TCP 12.102.0.1:43920 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:34:40.069 00:00:11.807 TCP 12.102.0.1:47380 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:30:45.113 00:06:00.124 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:35:41.906 00:00:11.767 TCP 12.102.0.1:36992 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:36:15.072 00:00:00.044 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.430 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.316 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.220 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.220 00:00:00.035 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.251 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.049 00:00:00.044 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:36:43.712 00:00:11.809 TCP 12.102.0.1:54636 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:32:45.111 00:06:00.129 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:37:45.567 00:00:11.801 TCP 12.102.0.1:40930 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:38:47.408 00:00:11.752 TCP 12.102.0.1:36604 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:39:49.197 00:00:11.820 TCP 12.102.0.1:48692 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:40:51.080 00:00:11.862 TCP 12.102.0.1:57688 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:41:15.397 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.450 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.515 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.539 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.345 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.336 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.375 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:41:52.982 00:00:11.761 TCP 12.102.0.1:42174 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:37:45.115 00:06:00.126 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:42:54.781 00:00:11.764 TCP 12.102.0.1:35198 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:43:56.596 00:00:11.805 TCP 12.102.0.1:57414 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:39:45.113 00:06:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:44:58.437 00:00:11.815 TCP 12.102.0.1:43410 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:46:15.585 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:46:00.290 00:00:11.803 TCP 12.102.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:46:15.607 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.728 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.597 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.556 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.871 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.632 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:47:02.130 00:00:11.802 TCP 12.102.0.1:38558 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:48:03.964 00:00:11.802 TCP 12.102.0.1:42502 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:49:05.802 00:00:11.761 TCP 12.102.0.1:55916 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:44:45.115 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:50:07.601 00:00:11.805 TCP 12.102.0.1:33722 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:51:15.529 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:51:15.552 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.505 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.619 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.510 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.535 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.497 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:51:09.447 00:00:11.763 TCP 12.102.0.1:33696 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:46:45.115 00:06:00.134 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:52:11.244 00:00:11.814 TCP 12.102.0.1:53656 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:53:13.091 00:00:11.796 TCP 12.102.0.1:57386 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:54:14.932 00:00:11.823 TCP 12.102.0.1:39434 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:55:16.793 00:00:11.806 TCP 12.102.0.1:36134 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:56:15.568 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.689 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.740 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.728 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.887 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.647 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.545 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:56:18.646 00:00:11.808 TCP 12.102.0.1:52492 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:51:45.117 00:06:00.131 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:57:20.509 00:00:11.800 TCP 12.102.0.1:41170 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:58:22.346 00:00:11.803 TCP 12.102.0.1:34534 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:53:45.116 00:06:00.135 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 Summary: total flows: 160, total bytes: 124072, total packets: 1142, avg bps: 258, avg pps: 0, avg bpp: 108 Time window: 2025-10-01 13:55:45 - 2025-10-01 14:59:45 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0041s User: 0.0010s Wall: 0.0020s flows/second: 80447.0 Runtime: 0.0020s