Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-05 21:59:23.422 00:00:11.805 TCP 12.102.0.1:52912 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:00:25.265 00:00:11.807 TCP 12.102.0.1:33292 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:01:27.112 00:00:11.802 TCP 12.102.0.1:51770 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:02:28.954 00:00:11.807 TCP 12.102.0.1:57224 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:03:19.822 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:03:19.844 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:03:19.669 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:03:19.850 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:03:19.756 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:03:19.842 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:03:19.721 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:03:30.797 00:00:11.767 TCP 12.102.0.1:53030 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:04:32.602 00:00:11.799 TCP 12.102.0.1:39918 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:05:34.450 00:00:11.811 TCP 12.102.0.1:45800 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:00:47.080 00:06:00.117 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:00:47.082 00:06:00.112 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:06:36.297 00:00:11.799 TCP 12.102.0.1:45270 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:07:38.139 00:00:11.775 TCP 12.102.0.1:57598 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:08:19.863 00:00:00.019 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:08:19.886 00:00:00.018 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:08:19.792 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:08:19.905 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:08:19.794 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:08:19.573 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:08:19.687 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:08:39.956 00:00:12.239 TCP 12.102.0.1:43696 -> 1.101.0.1:3000 15 1926 1 2025-10-05 22:09:42.237 00:00:11.800 TCP 12.102.0.1:58546 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:10:44.082 00:00:11.759 TCP 12.102.0.1:51250 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:11:45.879 00:00:11.800 TCP 12.102.0.1:40436 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:07:47.083 00:06:00.116 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:07:47.086 00:06:00.111 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:12:47.719 00:00:11.816 TCP 12.102.0.1:48934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:13:19.905 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:13:19.927 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:13:20.006 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:13:19.998 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:13:19.915 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:13:19.701 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:13:19.789 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:13:49.566 00:00:11.798 TCP 12.102.0.1:47962 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:14:51.402 00:00:11.803 TCP 12.102.0.1:42400 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:15:53.243 00:00:11.804 TCP 12.102.0.1:37888 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:16:55.091 00:00:11.800 TCP 12.102.0.1:40944 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:17:56.929 00:00:11.830 TCP 12.102.0.1:49220 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:18:20.020 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:18:20.043 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:18:20.184 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:18:19.976 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:18:19.775 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:18:19.883 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:18:19.996 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:18:58.795 00:00:11.826 TCP 12.102.0.1:38582 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:14:47.084 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:14:47.086 00:06:00.114 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:20:00.663 00:00:11.811 TCP 12.102.0.1:60506 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:21:02.512 00:00:11.807 TCP 12.102.0.1:56158 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:22:04.359 00:00:11.817 TCP 12.102.0.1:58934 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:23:20.027 00:00:00.031 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:23:20.205 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:23:20.000 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:23:06.223 00:00:11.807 TCP 12.102.0.1:43170 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:23:20.223 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:23:20.159 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:23:20.099 00:00:00.042 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:23:20.004 00:00:00.030 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:24:08.079 00:00:11.807 TCP 12.102.0.1:35608 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:25:09.922 00:00:11.824 TCP 12.102.0.1:56536 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:26:11.783 00:00:11.796 TCP 12.102.0.1:39238 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:21:47.088 00:06:00.114 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:21:47.086 00:06:00.119 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:27:13.619 00:00:11.803 TCP 12.102.0.1:37622 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:28:19.982 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:28:20.194 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:28:20.374 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:28:20.388 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:28:20.426 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:28:20.307 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:28:19.960 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:28:15.461 00:00:11.802 TCP 12.102.0.1:38518 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:29:17.303 00:00:11.800 TCP 12.102.0.1:37184 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:30:19.137 00:00:11.820 TCP 12.102.0.1:34368 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:31:20.994 00:00:16.992 TCP 12.102.0.1:52060 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:32:28.060 00:00:11.796 TCP 12.102.0.1:34216 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:33:20.147 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:33:20.169 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:33:20.276 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:33:20.313 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:33:20.398 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:33:20.172 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:33:20.248 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:33:29.924 00:00:12.217 TCP 12.102.0.1:32944 -> 1.101.0.1:3000 15 1926 1 2025-10-05 22:28:47.087 00:06:00.119 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:28:47.090 00:06:00.114 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:34:32.197 00:00:11.808 TCP 12.102.0.1:45924 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:35:34.066 00:00:11.806 TCP 12.102.0.1:60572 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:36:35.920 00:00:11.793 TCP 12.102.0.1:60432 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:37:37.752 00:00:11.802 TCP 12.102.0.1:45924 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:38:20.480 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:38:20.503 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:38:20.452 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:38:20.488 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:38:20.373 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:38:20.558 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:38:20.355 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:38:39.594 00:00:11.805 TCP 12.102.0.1:46456 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:39:41.438 00:00:11.812 TCP 12.102.0.1:49584 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:35:47.089 00:06:00.115 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:35:47.086 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:40:43.291 00:00:11.856 TCP 12.102.0.1:56038 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:41:45.182 00:00:11.803 TCP 12.102.0.1:55790 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:42:47.032 00:00:11.801 TCP 12.102.0.1:58642 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:43:20.344 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:43:20.284 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:43:20.367 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:43:20.511 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:43:20.447 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:43:20.492 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:43:20.422 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:43:48.872 00:00:11.800 TCP 12.102.0.1:60630 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:44:50.721 00:00:11.761 TCP 12.102.0.1:59666 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:45:52.522 00:00:11.794 TCP 12.102.0.1:39294 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:46:54.355 00:00:11.820 TCP 12.102.0.1:58452 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:42:47.090 00:06:00.116 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:42:47.089 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:47:56.215 00:00:11.761 TCP 12.102.0.1:46968 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:48:20.718 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.856 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.771 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.655 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.629 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.806 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:48:20.696 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:48:58.033 00:00:11.812 TCP 12.102.0.1:59954 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:49:59.878 00:00:11.807 TCP 12.102.0.1:58018 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:51:01.722 00:00:12.854 TCP 12.102.0.1:53300 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:52:04.614 00:00:11.798 TCP 12.102.0.1:59204 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:53:20.528 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:53:20.550 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:53:06.455 00:00:11.765 TCP 12.102.0.1:53626 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:53:20.560 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:53:20.583 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:53:20.561 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:53:20.549 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:53:20.687 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:54:08.260 00:00:11.780 TCP 12.102.0.1:54910 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:49:47.094 00:06:00.116 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-05 22:49:47.091 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-05 22:55:10.083 00:00:11.804 TCP 12.102.0.1:46310 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:56:11.927 00:00:11.785 TCP 12.102.0.1:34568 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:57:13.749 00:00:11.806 TCP 12.102.0.1:55776 -> 1.101.0.1:3000 11 1507 1 2025-10-05 22:58:20.786 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.832 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.972 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.808 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.708 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.799 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-05 22:58:20.764 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-05 22:58:15.594 00:00:11.805 TCP 12.102.0.1:36716 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 123188, total packets: 1122, avg bps: 278, avg pps: 0, avg bpp: 109 Time window: 2025-10-05 21:59:23 - 2025-10-05 22:58:27 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0038s User: 0.0010s Wall: 0.0022s flows/second: 73421.2 Runtime: 0.0022s