Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-07 23:58:46.919 00:00:11.827 TCP 12.102.0.1:44248 -> 1.101.0.1:3000 11 1507 1 2025-11-07 23:59:15.269 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-07 23:59:15.294 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-07 23:59:15.344 00:00:00.031 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-07 23:59:15.445 00:00:00.020 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-07 23:59:15.320 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-07 23:59:15.433 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-07 23:59:15.546 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-07 23:59:48.784 00:00:11.807 TCP 12.102.0.1:44674 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:00:50.630 00:00:11.799 TCP 12.102.0.1:54746 -> 1.101.0.1:3000 11 1507 1 2025-11-07 23:57:02.969 00:05:00.204 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-07 23:58:02.974 00:05:00.197 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:01:52.468 00:00:11.802 TCP 12.102.0.1:54228 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:02:54.309 00:00:11.798 TCP 12.102.0.1:55122 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:03:56.148 00:00:11.815 TCP 12.102.0.1:33228 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:04:15.287 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.730 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.551 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.512 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.405 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.395 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:04:15.264 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:04:58.002 00:00:11.762 TCP 12.102.0.1:48326 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:05:59.801 00:00:11.814 TCP 12.102.0.1:42420 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:03:02.971 00:05:00.205 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:07:01.648 00:00:11.810 TCP 12.102.0.1:44760 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:04:02.974 00:05:00.200 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:08:03.496 00:00:11.801 TCP 12.102.0.1:49544 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:09:15.531 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:09:15.552 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:09:15.681 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:09:15.709 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:09:15.568 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:09:15.488 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:09:15.643 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:09:05.332 00:00:11.810 TCP 12.102.0.1:33020 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:10:07.180 00:00:11.766 TCP 12.102.0.1:34552 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:11:08.985 00:00:11.798 TCP 12.102.0.1:43150 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:12:10.820 00:00:11.773 TCP 12.102.0.1:42100 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:09:02.973 00:05:00.205 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:13:12.633 00:00:11.811 TCP 12.102.0.1:49820 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:10:02.976 00:05:00.199 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:14:15.763 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:14:15.785 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:14:15.816 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:14:15.550 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:14:15.719 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:14:15.872 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:14:15.612 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:14:14.481 00:00:11.814 TCP 12.102.0.1:51114 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:15:16.333 00:00:11.803 TCP 12.102.0.1:39770 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:16:18.178 00:00:11.797 TCP 12.102.0.1:53708 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:17:20.027 00:00:11.761 TCP 12.102.0.1:59154 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:18:21.825 00:00:11.802 TCP 12.102.0.1:44032 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:15:02.975 00:05:00.204 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:19:15.595 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.877 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.919 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.898 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.893 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.934 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:19:15.572 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:19:23.670 00:00:11.819 TCP 12.102.0.1:44228 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:16:02.978 00:05:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:20:25.528 00:00:11.812 TCP 12.102.0.1:39328 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:21:27.374 00:00:11.844 TCP 12.102.0.1:52380 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:22:29.258 00:00:12.267 TCP 12.102.0.1:34902 -> 1.101.0.1:3000 15 1926 1 2025-11-08 00:23:31.568 00:00:11.815 TCP 12.102.0.1:56718 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:24:15.791 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:24:15.813 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:24:15.944 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:24:15.946 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:24:15.990 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:24:15.956 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:24:15.895 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:24:33.424 00:00:11.920 TCP 12.102.0.1:40972 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:21:02.979 00:05:00.202 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:25:35.384 00:00:11.823 TCP 12.102.0.1:39866 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:22:02.982 00:05:00.197 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:26:37.244 00:00:11.776 TCP 12.102.0.1:43034 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:27:39.077 00:00:12.167 TCP 12.102.0.1:36906 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:28:41.282 00:00:11.802 TCP 12.102.0.1:39062 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:29:16.125 00:00:00.033 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.083 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.268 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.227 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.431 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.267 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:29:16.102 00:00:00.033 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:29:43.118 00:00:11.801 TCP 12.102.0.1:39892 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:30:44.961 00:00:11.811 TCP 12.102.0.1:35282 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:27:02.979 00:05:00.202 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:31:46.815 00:00:12.002 TCP 12.102.0.1:52040 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:28:02.982 00:05:00.198 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:32:48.857 00:00:12.204 TCP 12.102.0.1:33706 -> 1.101.0.1:3000 15 1926 1 2025-11-08 00:33:51.103 00:00:11.763 TCP 12.102.0.1:55040 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:34:16.185 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:34:16.209 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:34:16.125 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:34:16.135 00:00:00.033 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:34:16.112 00:00:00.012 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:34:16.010 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:34:16.073 00:00:00.039 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:34:52.902 00:00:11.767 TCP 12.102.0.1:33458 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:35:54.717 00:00:11.760 TCP 12.102.0.1:60110 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:33:02.981 00:05:00.210 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:36:56.526 00:00:11.758 TCP 12.102.0.1:33742 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:34:02.983 00:05:00.204 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:37:58.326 00:00:11.803 TCP 12.102.0.1:34302 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:39:00.165 00:00:11.813 TCP 12.102.0.1:45280 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:39:16.442 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.420 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.435 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.444 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.558 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.349 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:39:16.412 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:40:02.024 00:00:11.807 TCP 12.102.0.1:60250 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:41:03.870 00:00:11.802 TCP 12.102.0.1:58190 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:42:05.712 00:00:11.821 TCP 12.102.0.1:54518 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:39:02.981 00:05:00.209 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:43:07.579 00:00:11.813 TCP 12.102.0.1:59250 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:40:02.983 00:05:00.204 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:44:16.401 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.283 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.380 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.169 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.403 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.528 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:44:16.358 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:44:09.428 00:00:12.467 TCP 12.102.0.1:57012 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:45:11.929 00:00:11.817 TCP 12.102.0.1:33830 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:46:13.788 00:00:11.759 TCP 12.102.0.1:51180 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:47:15.593 00:00:11.815 TCP 12.102.0.1:58810 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:48:17.442 00:00:11.807 TCP 12.102.0.1:48256 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:45:02.983 00:05:00.210 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:49:16.426 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.606 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.610 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.520 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.461 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.433 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:49:16.403 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:49:19.290 00:00:11.760 TCP 12.102.0.1:40164 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:46:02.986 00:05:00.225 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:50:21.088 00:00:11.799 TCP 12.102.0.1:32874 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:51:22.928 00:00:11.815 TCP 12.102.0.1:46632 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:52:24.780 00:00:11.813 TCP 12.102.0.1:45880 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:53:26.632 00:00:11.773 TCP 12.102.0.1:53130 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:54:16.593 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-08 00:54:16.615 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-08 00:54:16.553 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-08 00:54:16.646 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-08 00:54:16.706 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-08 00:54:16.374 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-08 00:54:16.584 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-08 00:54:28.432 00:00:11.799 TCP 12.102.0.1:53608 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:51:02.984 00:05:00.233 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-08 00:55:30.271 00:00:11.769 TCP 12.102.0.1:47172 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:52:02.987 00:05:00.227 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-08 00:56:32.081 00:00:11.808 TCP 12.102.0.1:35094 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:57:33.928 00:00:11.777 TCP 12.102.0.1:44160 -> 1.101.0.1:3000 11 1507 1 2025-11-08 00:58:35.744 00:00:11.800 TCP 12.102.0.1:45382 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 163, total bytes: 125679, total packets: 1149, avg bps: 271, avg pps: 0, avg bpp: 109 Time window: 2025-11-07 23:57:02 - 2025-11-08 00:58:47 Total flows processed: 163, passed: 163, Blocks skipped: 0, Bytes read: 17016 Sys: 0.0030s User: 0.0020s Wall: 0.0021s flows/second: 77584.2 Runtime: 0.0021s