Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 04:59:02.953 00:00:11.800 TCP 12.102.0.1:57842 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:00:12.590 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:00:12.612 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:00:12.550 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:00:12.479 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:00:12.239 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:00:12.885 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:00:12.502 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:00:04.790 00:00:12.413 TCP 12.102.0.1:37108 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:01:07.240 00:00:11.799 TCP 12.102.0.1:34602 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:02:09.079 00:00:11.767 TCP 12.102.0.1:33620 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:03:10.882 00:00:12.232 TCP 12.102.0.1:56988 -> 1.101.0.1:3000 15 1926 1 2025-10-20 04:58:54.048 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:04:13.158 00:00:11.805 TCP 12.102.0.1:40438 -> 1.101.0.1:3000 11 1507 1 2025-10-20 04:59:54.052 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:05:12.873 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:05:12.898 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:05:12.742 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:05:12.775 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:05:12.854 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:05:12.768 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:05:12.830 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:05:15.005 00:00:12.089 TCP 12.102.0.1:59884 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:06:17.123 00:00:11.804 TCP 12.102.0.1:32906 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:07:18.968 00:00:11.806 TCP 12.102.0.1:37074 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:08:20.809 00:00:11.850 TCP 12.102.0.1:60584 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:09:22.694 00:00:11.801 TCP 12.102.0.1:58920 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:10:12.718 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:10:12.741 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.482 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.681 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.778 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.768 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:10:12.783 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:10:24.531 00:00:11.802 TCP 12.102.0.1:39012 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:05:54.053 00:06:00.095 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:11:26.375 00:00:11.814 TCP 12.102.0.1:41498 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:06:54.052 00:06:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:12:28.230 00:00:11.766 TCP 12.102.0.1:56990 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:13:30.056 00:00:11.808 TCP 12.102.0.1:45680 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:14:31.902 00:00:11.793 TCP 12.102.0.1:51814 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:15:12.773 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:15:12.796 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:15:12.723 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:15:12.733 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:15:12.836 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:15:12.644 00:00:00.029 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:15:12.476 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:15:33.730 00:00:11.817 TCP 12.102.0.1:49700 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:16:35.579 00:00:11.809 TCP 12.102.0.1:60328 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:17:37.431 00:00:11.765 TCP 12.102.0.1:54902 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:12:54.052 00:06:00.099 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:18:39.233 00:00:12.318 TCP 12.102.0.1:60370 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:13:54.053 00:06:00.095 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:19:41.588 00:00:11.806 TCP 12.102.0.1:60180 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:20:12.737 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:20:12.759 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:20:13.088 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:20:13.043 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:20:13.089 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:20:13.025 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:20:12.900 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:20:43.432 00:00:11.824 TCP 12.102.0.1:35904 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:21:45.296 00:00:11.807 TCP 12.102.0.1:60734 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:22:47.138 00:00:11.821 TCP 12.102.0.1:47274 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:23:48.998 00:00:11.795 TCP 12.102.0.1:57864 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:19:54.057 00:06:00.095 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:24:50.839 00:00:11.800 TCP 12.102.0.1:48054 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:25:12.680 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:25:12.704 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:25:13.075 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:25:12.868 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:25:12.989 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:25:12.942 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:25:12.889 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:20:54.059 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:25:52.677 00:00:11.806 TCP 12.102.0.1:43158 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:26:54.521 00:00:11.800 TCP 12.102.0.1:47898 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:27:56.362 00:00:11.781 TCP 12.102.0.1:58028 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:28:58.185 00:00:11.809 TCP 12.102.0.1:58086 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:30:00.037 00:00:11.804 TCP 12.102.0.1:53768 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:30:12.989 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:30:13.013 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:30:13.031 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:30:13.080 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:30:12.918 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:30:13.050 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:30:13.094 00:00:00.035 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:31:01.878 00:00:11.807 TCP 12.102.0.1:47906 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:26:54.059 00:06:00.094 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:32:03.722 00:00:11.816 TCP 12.102.0.1:48052 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:27:54.061 00:06:00.090 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:33:05.573 00:00:11.803 TCP 12.102.0.1:54768 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:34:07.414 00:00:11.801 TCP 12.102.0.1:36588 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:35:12.968 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:35:12.848 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:35:13.025 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:35:13.120 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:35:12.985 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:35:12.965 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:35:13.001 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:35:09.255 00:00:11.762 TCP 12.102.0.1:40200 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:36:11.080 00:00:11.798 TCP 12.102.0.1:47318 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:37:12.916 00:00:12.311 TCP 12.102.0.1:50434 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:38:15.270 00:00:11.806 TCP 12.102.0.1:58772 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:33:54.059 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:39:17.112 00:00:11.800 TCP 12.102.0.1:34428 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:34:54.061 00:06:00.091 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:40:13.080 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:40:13.104 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:40:13.095 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:40:13.242 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:40:13.209 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:40:13.173 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:40:13.258 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:40:18.949 00:00:11.806 TCP 12.102.0.1:39520 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:41:20.793 00:00:11.858 TCP 12.102.0.1:37432 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:42:22.693 00:00:11.799 TCP 12.102.0.1:54250 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:43:24.527 00:00:11.805 TCP 12.102.0.1:44146 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:44:26.370 00:00:11.817 TCP 12.102.0.1:38038 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:45:13.287 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:45:13.310 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:45:13.419 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:45:13.312 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:45:13.316 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:45:13.505 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:45:13.309 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:45:28.227 00:00:11.820 TCP 12.102.0.1:52426 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:40:54.060 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:46:30.087 00:00:11.759 TCP 12.102.0.1:37430 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:41:54.063 00:06:00.091 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:47:31.885 00:00:11.808 TCP 12.102.0.1:48924 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:48:33.733 00:00:11.759 TCP 12.102.0.1:36538 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:49:35.544 00:00:11.798 TCP 12.102.0.1:53986 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:50:13.339 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:50:13.362 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:50:13.300 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:50:13.429 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:50:13.406 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:50:13.318 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:50:13.366 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:50:37.380 00:00:11.808 TCP 12.102.0.1:60708 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:51:39.226 00:00:11.813 TCP 12.102.0.1:57984 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:52:41.078 00:00:11.802 TCP 12.102.0.1:48514 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:47:54.062 00:06:00.097 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 05:53:42.921 00:00:11.824 TCP 12.102.0.1:47972 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:48:54.066 00:06:00.091 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 05:54:44.780 00:00:11.801 TCP 12.102.0.1:49450 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:55:13.364 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 05:55:13.706 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.201 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.558 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.534 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.395 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 05:55:13.387 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 05:55:46.621 00:00:11.762 TCP 12.102.0.1:50064 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:56:48.420 00:00:11.764 TCP 12.102.0.1:58104 -> 1.101.0.1:3000 11 1507 1 2025-10-20 05:57:50.223 00:00:11.764 TCP 12.102.0.1:35160 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 122769, total packets: 1118, avg bps: 276, avg pps: 0, avg bpp: 109 Time window: 2025-10-20 04:58:54 - 2025-10-20 05:58:01 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0042s User: 0.0008s Wall: 0.0031s flows/second: 50836.1 Runtime: 0.0031s