Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 12:59:37.989 00:00:11.762 TCP 12.102.0.1:33314 -> 1.101.0.1:3000 11 1507 1 2025-10-20 12:54:54.168 00:06:00.138 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:00:21.936 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.167 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.226 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.028 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.308 00:00:00.016 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.178 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:00:22.143 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:00:39.790 00:00:11.807 TCP 12.102.0.1:56694 -> 1.101.0.1:3000 11 1507 1 2025-10-20 12:55:54.171 00:06:00.133 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:01:41.629 00:00:11.753 TCP 12.102.0.1:50454 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:02:43.423 00:00:11.804 TCP 12.102.0.1:44904 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:03:45.261 00:00:11.803 TCP 12.102.0.1:57078 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:04:47.096 00:00:11.814 TCP 12.102.0.1:60202 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:05:21.881 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:05:21.859 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:05:22.208 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:05:22.019 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:05:22.186 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:05:22.113 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:05:22.168 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:05:48.950 00:00:11.799 TCP 12.102.0.1:49334 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:01:54.169 00:06:00.139 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:06:50.789 00:00:11.780 TCP 12.102.0.1:37424 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:02:54.172 00:06:00.135 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:07:52.608 00:00:13.141 TCP 12.102.0.1:48572 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:08:55.759 00:00:11.768 TCP 12.102.0.1:45776 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:09:57.567 00:00:11.891 TCP 12.102.0.1:35762 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:10:22.230 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.528 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.558 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.329 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.371 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.323 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:10:22.206 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:10:59.496 00:00:11.765 TCP 12.102.0.1:33760 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:12:01.304 00:00:11.949 TCP 12.102.0.1:39488 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:13:03.289 00:00:11.799 TCP 12.102.0.1:48740 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:08:54.170 00:06:00.148 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:14:05.125 00:00:14.162 TCP 12.102.0.1:51264 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:09:54.173 00:06:00.143 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:15:22.051 00:00:00.054 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:15:09.327 00:00:11.807 TCP 12.102.0.1:47536 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:15:22.073 00:00:00.054 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:15:22.304 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:15:22.438 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:15:22.293 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:15:22.553 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:15:22.234 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:16:11.173 00:00:11.780 TCP 12.102.0.1:48246 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:17:12.993 00:00:11.809 TCP 12.102.0.1:58322 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:18:14.837 00:00:11.803 TCP 12.102.0.1:60320 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:19:16.677 00:00:11.817 TCP 12.102.0.1:49992 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:20:22.358 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:20:22.380 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:20:22.431 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:20:22.363 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:20:22.502 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:20:22.436 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:20:22.535 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:20:18.534 00:00:11.807 TCP 12.102.0.1:46228 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:15:54.171 00:06:00.148 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:21:20.381 00:00:11.808 TCP 12.102.0.1:54896 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:16:54.173 00:06:00.143 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:22:22.230 00:00:11.796 TCP 12.102.0.1:37484 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:23:24.073 00:00:11.798 TCP 12.102.0.1:42806 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:24:25.913 00:00:11.823 TCP 12.102.0.1:47550 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:25:22.511 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.687 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.680 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.445 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.635 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.522 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:25:22.489 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:25:27.772 00:00:11.797 TCP 12.102.0.1:53676 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:26:29.609 00:00:11.762 TCP 12.102.0.1:58714 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:27:31.403 00:00:11.766 TCP 12.102.0.1:54526 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:22:54.172 00:06:00.148 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:28:33.224 00:00:11.805 TCP 12.102.0.1:45336 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:23:54.176 00:06:00.153 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:29:35.081 00:00:11.800 TCP 12.102.0.1:50740 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:30:22.540 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:30:22.563 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:30:22.817 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:30:22.566 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:30:22.674 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:30:22.658 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:30:22.537 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:30:36.917 00:00:11.827 TCP 12.102.0.1:55002 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:31:38.785 00:00:11.805 TCP 12.102.0.1:33354 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:32:40.630 00:00:11.813 TCP 12.102.0.1:34648 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:33:42.484 00:00:11.806 TCP 12.102.0.1:53732 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:34:44.326 00:00:11.801 TCP 12.102.0.1:36240 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:29:54.173 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:35:22.670 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.619 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.823 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.686 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.917 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.956 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:35:22.648 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:30:54.176 00:06:00.157 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:35:46.168 00:00:11.796 TCP 12.102.0.1:37186 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:36:48.007 00:00:11.797 TCP 12.102.0.1:44526 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:37:49.840 00:00:11.814 TCP 12.102.0.1:54770 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:38:51.696 00:00:11.803 TCP 12.102.0.1:59528 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:39:53.538 00:00:11.797 TCP 12.102.0.1:54114 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:40:22.850 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:40:22.874 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:40:22.841 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:40:22.857 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:40:22.883 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:40:22.932 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:40:22.920 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:40:55.378 00:00:11.770 TCP 12.102.0.1:54886 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:36:54.175 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:41:57.189 00:00:11.801 TCP 12.102.0.1:56184 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:37:54.177 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:42:59.031 00:00:11.798 TCP 12.102.0.1:60312 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:44:00.868 00:00:11.812 TCP 12.102.0.1:56302 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:45:02.713 00:00:11.807 TCP 12.102.0.1:47208 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:45:22.831 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:45:22.853 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:45:22.980 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:45:22.835 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:45:22.883 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:45:22.876 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:45:22.865 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:46:04.556 00:00:11.807 TCP 12.102.0.1:48770 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:47:06.404 00:00:11.806 TCP 12.102.0.1:53304 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:48:08.242 00:00:12.232 TCP 12.102.0.1:53262 -> 1.101.0.1:3000 15 1926 1 2025-10-20 13:43:54.175 00:06:00.164 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:49:10.518 00:00:11.816 TCP 12.102.0.1:59496 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:44:54.178 00:06:00.161 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:50:23.011 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:50:23.033 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:50:12.372 00:00:11.824 TCP 12.102.0.1:54046 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:50:23.149 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:50:23.145 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:50:23.193 00:00:00.036 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:50:23.316 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:50:23.165 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:51:14.232 00:00:11.807 TCP 12.102.0.1:40126 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:52:16.077 00:00:11.796 TCP 12.102.0.1:58230 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:53:17.912 00:00:11.820 TCP 12.102.0.1:35174 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:54:19.771 00:00:11.808 TCP 12.102.0.1:40532 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:55:23.050 00:00:00.044 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 13:55:23.073 00:00:00.044 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 13:55:22.936 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 13:55:23.269 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 13:55:23.113 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 13:55:23.059 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 13:55:23.083 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 13:55:21.619 00:00:11.809 TCP 12.102.0.1:51036 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:50:54.177 00:06:00.163 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 13:56:23.463 00:00:11.765 TCP 12.102.0.1:38266 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:51:54.180 00:06:00.159 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 13:57:25.264 00:00:11.796 TCP 12.102.0.1:54054 -> 1.101.0.1:3000 11 1507 1 2025-10-20 13:58:27.102 00:00:12.233 TCP 12.102.0.1:42144 -> 1.101.0.1:3000 15 1926 1 Summary: total flows: 160, total bytes: 124910, total packets: 1150, avg bps: 261, avg pps: 0, avg bpp: 108 Time window: 2025-10-20 12:54:54 - 2025-10-20 13:58:39 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0055s User: 0.0000s Wall: 0.0035s flows/second: 45172.9 Runtime: 0.0036s