Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-13 06:58:41.896 00:00:11.798 TCP 12.102.0.1:60936 -> 1.101.0.1:3000 11 1507 1 2025-10-13 06:54:50.711 00:06:00.039 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 06:59:43.733 00:00:11.803 TCP 12.102.0.1:54902 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:00:45.574 00:00:11.813 TCP 12.102.0.1:51288 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:01:52.639 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.633 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.503 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.628 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.692 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.606 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:01:52.481 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:01:47.413 00:00:11.799 TCP 12.102.0.1:37064 -> 1.101.0.1:3000 11 1507 1 2025-10-13 06:57:50.747 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:02:49.258 00:00:11.764 TCP 12.102.0.1:60682 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:03:51.073 00:00:11.755 TCP 12.102.0.1:56142 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:04:52.867 00:00:12.272 TCP 12.102.0.1:41008 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:05:55.179 00:00:11.807 TCP 12.102.0.1:36952 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:01:50.712 00:06:00.038 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:06:52.693 00:00:00.020 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:06:52.715 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.851 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.770 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.754 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.762 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:06:52.773 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:06:57.032 00:00:11.800 TCP 12.102.0.1:51700 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:07:58.872 00:00:11.768 TCP 12.102.0.1:52992 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:09:00.679 00:00:11.765 TCP 12.102.0.1:48688 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:04:50.747 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:10:02.489 00:00:11.799 TCP 12.102.0.1:58504 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:11:04.323 00:00:11.802 TCP 12.102.0.1:36930 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:11:52.713 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:11:52.737 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:11:52.865 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:11:52.890 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:11:53.062 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:11:53.006 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:11:52.994 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:12:06.164 00:00:11.803 TCP 12.102.0.1:60234 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:13:08.017 00:00:11.799 TCP 12.102.0.1:38946 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:08:50.714 00:06:00.037 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:14:09.853 00:00:11.803 TCP 12.102.0.1:54186 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:15:11.699 00:00:11.799 TCP 12.102.0.1:44790 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:16:13.542 00:00:12.286 TCP 12.102.0.1:48538 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:11:50.748 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:16:53.210 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:16:53.233 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:16:52.881 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:16:53.238 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:16:53.189 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:16:53.292 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:16:53.175 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:17:15.865 00:00:11.796 TCP 12.102.0.1:34786 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:18:17.699 00:00:11.806 TCP 12.102.0.1:33532 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:19:19.544 00:00:11.802 TCP 12.102.0.1:46738 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:20:21.384 00:00:11.810 TCP 12.102.0.1:34808 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:15:50.717 00:06:00.035 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:21:23.230 00:00:11.830 TCP 12.102.0.1:44388 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:21:53.035 00:00:00.034 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:21:53.057 00:00:00.034 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:21:53.039 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:21:53.132 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:21:53.019 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:21:53.136 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:21:52.812 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:22:25.086 00:00:11.764 TCP 12.102.0.1:48640 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:23:26.893 00:00:11.808 TCP 12.102.0.1:51098 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:18:50.750 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:24:28.737 00:00:11.805 TCP 12.102.0.1:33366 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:25:30.579 00:00:11.775 TCP 12.102.0.1:40610 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:26:32.382 00:00:12.201 TCP 12.102.0.1:37222 -> 1.101.0.1:3000 15 1926 1 2025-10-13 07:26:52.990 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:26:53.013 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:26:53.407 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:26:53.299 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:26:53.119 00:00:00.039 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:26:53.394 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:26:53.015 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:27:34.626 00:00:11.805 TCP 12.102.0.1:41674 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:22:50.718 00:06:00.035 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:28:36.468 00:00:11.818 TCP 12.102.0.1:32862 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:29:38.328 00:00:11.808 TCP 12.102.0.1:55550 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:25:50.750 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:30:40.200 00:00:11.810 TCP 12.102.0.1:49436 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:31:53.227 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:31:42.072 00:00:11.847 TCP 12.102.0.1:51102 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:31:53.250 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:31:53.286 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:31:53.329 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:31:53.027 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:31:53.389 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:31:53.177 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:32:43.954 00:00:11.814 TCP 12.102.0.1:35152 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:33:45.804 00:00:11.802 TCP 12.102.0.1:36054 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:29:50.719 00:06:00.036 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:34:47.647 00:00:11.817 TCP 12.102.0.1:43702 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:35:49.500 00:00:12.258 TCP 12.102.0.1:53370 -> 1.101.0.1:3000 15 1926 1 2025-10-13 07:36:53.517 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.596 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.560 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.491 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.537 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.614 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:36:53.592 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:36:51.798 00:00:11.761 TCP 12.102.0.1:42334 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:32:50.752 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:37:53.591 00:00:11.764 TCP 12.102.0.1:35280 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:38:55.394 00:00:11.796 TCP 12.102.0.1:36990 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:39:57.233 00:00:11.822 TCP 12.102.0.1:51802 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:40:59.097 00:00:11.802 TCP 12.102.0.1:45814 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:36:50.721 00:06:00.035 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:41:53.332 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:41:53.354 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.350 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.627 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.498 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.479 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:41:53.430 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:42:00.939 00:00:11.807 TCP 12.102.0.1:50042 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:43:02.786 00:00:11.804 TCP 12.102.0.1:51640 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:44:04.627 00:00:12.280 TCP 12.102.0.1:58780 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:39:50.753 00:06:00.000 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:45:06.942 00:00:11.804 TCP 12.102.0.1:57308 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:46:08.781 00:00:11.811 TCP 12.102.0.1:33694 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:46:53.482 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:46:53.505 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:46:53.637 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:46:53.564 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:46:53.442 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:46:53.649 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:46:53.563 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:47:10.629 00:00:11.812 TCP 12.102.0.1:49950 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:48:12.480 00:00:11.801 TCP 12.102.0.1:45802 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:43:50.723 00:06:00.033 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:49:14.329 00:00:11.803 TCP 12.102.0.1:47088 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:50:16.171 00:00:11.869 TCP 12.102.0.1:39112 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:51:18.082 00:00:11.824 TCP 12.102.0.1:41100 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:46:50.752 00:06:00.002 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 2025-10-13 07:51:53.690 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.702 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.568 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.647 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.739 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.689 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:51:53.668 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:52:19.943 00:00:11.836 TCP 12.102.0.1:35918 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:53:21.815 00:00:11.814 TCP 12.102.0.1:48196 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:54:23.669 00:00:11.872 TCP 12.102.0.1:54584 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:55:25.579 00:00:11.821 TCP 12.102.0.1:45762 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:50:50.726 00:06:00.033 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-13 07:56:27.439 00:00:11.800 TCP 12.102.0.1:57100 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:56:53.742 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-13 07:56:53.763 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-13 07:56:53.885 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-13 07:56:53.689 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-13 07:56:53.597 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-13 07:56:53.807 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-13 07:56:53.763 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-13 07:57:29.279 00:00:11.770 TCP 12.102.0.1:50786 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:58:31.086 00:00:11.799 TCP 12.102.0.1:46072 -> 1.101.0.1:3000 11 1507 1 2025-10-13 07:53:50.755 00:06:00.001 TCP 179.10.12.12:58070 -> 179.10.12.10:179 7 497 1 Summary: total flows: 161, total bytes: 123141, total packets: 1098, avg bps: 252, avg pps: 0, avg bpp: 112 Time window: 2025-10-13 06:54:50 - 2025-10-13 07:59:50 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0048s User: 0.0000s Wall: 0.0014s flows/second: 116831.0 Runtime: 0.0014s