Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-03 05:54:00.795 00:06:00.056 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 05:59:08.623 00:00:11.809 TCP 12.102.0.1:41102 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:00:10.472 00:00:12.238 TCP 12.102.0.1:57470 -> 1.101.0.1:3000 15 1926 1 2025-11-03 06:01:12.743 00:00:11.799 TCP 12.102.0.1:41744 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:01:58.211 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 05:57:00.798 00:06:00.054 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:01:58.233 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:01:58.216 00:00:00.047 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:01:58.267 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:01:58.256 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:01:58.447 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:01:58.408 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:02:14.593 00:00:11.766 TCP 12.102.0.1:46616 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:03:16.394 00:00:11.766 TCP 12.102.0.1:55438 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:04:18.197 00:00:11.806 TCP 12.102.0.1:38566 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:05:20.073 00:00:11.804 TCP 12.102.0.1:42796 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:01:00.796 00:06:00.058 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:06:21.909 00:00:11.824 TCP 12.102.0.1:45110 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:06:58.280 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:06:58.302 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:06:58.344 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:06:58.353 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:06:58.328 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:06:58.433 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:06:58.450 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:07:23.773 00:00:11.803 TCP 12.102.0.1:33960 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:08:25.614 00:00:11.758 TCP 12.102.0.1:54246 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:04:00.801 00:06:00.052 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:09:27.410 00:00:11.799 TCP 12.102.0.1:37978 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:10:29.247 00:00:11.800 TCP 12.102.0.1:58792 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:11:31.090 00:00:11.799 TCP 12.102.0.1:40640 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:11:58.311 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.520 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.546 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.669 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.619 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.497 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:11:58.288 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:12:32.929 00:00:11.784 TCP 12.102.0.1:40718 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:08:00.799 00:06:00.058 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:13:34.747 00:00:11.815 TCP 12.102.0.1:46980 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:14:36.598 00:00:11.808 TCP 12.102.0.1:39028 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:15:38.443 00:00:11.811 TCP 12.102.0.1:50918 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:11:00.801 00:06:00.054 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:16:40.307 00:00:11.852 TCP 12.102.0.1:37396 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:16:58.512 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.759 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.767 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.612 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.727 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.503 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:16:58.490 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:17:42.199 00:00:11.807 TCP 12.102.0.1:60826 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:18:44.072 00:00:11.798 TCP 12.102.0.1:38562 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:19:45.908 00:00:11.824 TCP 12.102.0.1:53156 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:15:00.800 00:06:00.058 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:20:47.770 00:00:11.760 TCP 12.102.0.1:38080 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:21:49.567 00:00:11.799 TCP 12.102.0.1:35494 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:21:58.804 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.748 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.880 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.887 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.976 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.759 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:21:58.783 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:18:00.804 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:22:51.405 00:00:11.800 TCP 12.102.0.1:46644 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:23:53.244 00:00:11.812 TCP 12.102.0.1:47380 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:24:55.085 00:00:11.802 TCP 12.102.0.1:46330 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:25:56.933 00:00:11.814 TCP 12.102.0.1:41702 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:26:58.964 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:26:58.986 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:22:00.805 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:26:59.024 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:26:58.867 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:26:59.060 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:26:59.149 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:26:58.985 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:26:58.786 00:00:11.804 TCP 12.102.0.1:59496 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:28:00.636 00:00:11.823 TCP 12.102.0.1:54710 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:29:02.497 00:00:11.829 TCP 12.102.0.1:49224 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:25:00.807 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:30:04.359 00:00:11.822 TCP 12.102.0.1:59966 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:31:06.221 00:00:11.809 TCP 12.102.0.1:38552 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:31:58.827 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:31:58.851 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:31:59.035 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:31:58.886 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:31:58.949 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:31:59.032 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:31:58.841 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:32:08.088 00:00:11.812 TCP 12.102.0.1:57012 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:33:09.939 00:00:21.041 TCP 12.102.0.1:47960 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:29:00.806 00:06:00.056 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:34:21.041 00:00:11.771 TCP 12.102.0.1:32882 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:35:22.858 00:00:11.804 TCP 12.102.0.1:55046 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:36:24.702 00:00:11.843 TCP 12.102.0.1:49418 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:36:58.975 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:36:59.084 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:36:58.946 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:36:58.886 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:36:58.906 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:36:59.080 00:00:00.041 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:36:58.952 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:32:00.807 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:37:26.583 00:00:11.855 TCP 12.102.0.1:39448 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:38:28.478 00:00:11.992 TCP 12.102.0.1:40866 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:39:30.505 00:00:11.801 TCP 12.102.0.1:57900 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:40:32.348 00:00:11.806 TCP 12.102.0.1:38420 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:36:00.806 00:06:00.057 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:41:34.193 00:00:11.796 TCP 12.102.0.1:55830 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:41:59.036 00:00:00.045 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:41:59.059 00:00:00.045 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:41:59.265 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:41:59.140 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:41:59.093 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:41:59.280 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:41:59.220 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:42:36.034 00:00:11.801 TCP 12.102.0.1:53734 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:43:37.871 00:00:11.806 TCP 12.102.0.1:53748 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:39:00.810 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:44:39.721 00:00:11.769 TCP 12.102.0.1:43164 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:45:41.528 00:00:11.799 TCP 12.102.0.1:33692 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:46:43.362 00:00:11.812 TCP 12.102.0.1:56518 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:46:59.200 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:46:59.224 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:46:59.199 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:46:59.112 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:46:59.094 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:46:59.223 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:46:59.273 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:47:45.211 00:00:11.757 TCP 12.102.0.1:42254 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:43:00.809 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:48:47.007 00:00:12.341 TCP 12.102.0.1:42628 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:49:49.391 00:00:11.809 TCP 12.102.0.1:50902 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:46:00.812 00:06:00.050 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:50:51.237 00:00:11.807 TCP 12.102.0.1:32790 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:51:59.713 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.894 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.632 00:00:00.014 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.598 00:00:00.034 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.914 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.580 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:51:59.689 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:51:53.085 00:00:11.761 TCP 12.102.0.1:52224 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:52:54.891 00:00:11.804 TCP 12.102.0.1:42856 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:53:56.741 00:00:11.826 TCP 12.102.0.1:39500 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:50:00.810 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-03 06:54:58.610 00:00:11.832 TCP 12.102.0.1:36492 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:56:00.482 00:00:12.060 TCP 12.102.0.1:41622 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:56:59.393 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.427 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.343 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.322 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.357 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.362 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-03 06:56:59.370 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-03 06:57:02.580 00:00:11.806 TCP 12.102.0.1:39172 -> 1.101.0.1:3000 11 1507 1 2025-11-03 06:53:00.816 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-03 06:58:04.425 00:00:11.830 TCP 12.102.0.1:56016 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124491, total packets: 1146, avg bps: 255, avg pps: 0, avg bpp: 108 Time window: 2025-11-03 05:54:00 - 2025-11-03 06:59:00 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0029s User: 0.0020s Wall: 0.0031s flows/second: 51845.5 Runtime: 0.0031s