Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 07:59:05.291 00:00:11.763 TCP 12.102.0.1:45212 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:00:23.155 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:00:07.088 00:00:11.800 TCP 12.102.0.1:36394 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:00:23.178 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:00:23.310 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:00:23.154 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:00:22.846 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:00:23.095 00:00:00.027 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:00:22.841 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:01:08.923 00:00:11.824 TCP 12.102.0.1:42584 -> 1.101.0.1:3000 11 1507 1 2025-11-10 07:57:04.171 00:06:00.113 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:02:10.784 00:00:11.797 TCP 12.102.0.1:42592 -> 1.101.0.1:3000 11 1507 1 2025-11-10 07:58:04.173 00:06:00.108 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:03:12.625 00:00:11.803 TCP 12.102.0.1:55976 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:04:14.464 00:00:11.760 TCP 12.102.0.1:44538 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:05:22.839 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:05:22.863 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:05:23.080 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:05:23.001 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:05:22.969 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:05:22.909 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:05:22.942 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:05:16.261 00:00:11.832 TCP 12.102.0.1:34700 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:06:18.129 00:00:11.802 TCP 12.102.0.1:56498 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:07:19.970 00:00:11.798 TCP 12.102.0.1:48980 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:08:21.809 00:00:12.303 TCP 12.102.0.1:34386 -> 1.101.0.1:3000 15 1926 1 2025-11-10 08:04:04.170 00:06:00.115 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:09:24.154 00:00:11.805 TCP 12.102.0.1:49362 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:05:04.174 00:06:00.109 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:10:23.008 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:10:23.031 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:10:23.099 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:10:23.308 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:10:23.125 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:10:22.976 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:10:22.933 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:10:26.004 00:00:11.800 TCP 12.102.0.1:44138 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:11:27.837 00:00:11.856 TCP 12.102.0.1:34824 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:12:29.733 00:00:11.802 TCP 12.102.0.1:43264 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:13:31.576 00:00:11.805 TCP 12.102.0.1:56312 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:14:33.416 00:00:11.811 TCP 12.102.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:15:23.065 00:00:00.048 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.296 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.119 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.337 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.075 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.251 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:15:23.044 00:00:00.047 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:15:35.263 00:00:11.800 TCP 12.102.0.1:55152 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:11:04.172 00:06:00.113 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:16:37.103 00:00:11.810 TCP 12.102.0.1:43478 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:12:04.176 00:06:00.108 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:17:38.955 00:00:11.803 TCP 12.102.0.1:50940 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:18:40.799 00:00:11.809 TCP 12.102.0.1:58000 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:19:42.648 00:00:11.814 TCP 12.102.0.1:57240 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:20:23.147 00:00:00.029 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.229 00:00:00.034 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.436 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.424 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.159 00:00:00.014 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.440 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:20:23.126 00:00:00.029 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:20:44.498 00:00:11.812 TCP 12.102.0.1:59782 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:21:46.349 00:00:12.467 TCP 12.102.0.1:56146 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:22:48.852 00:00:11.810 TCP 12.102.0.1:54812 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:18:04.174 00:06:00.113 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:23:50.700 00:00:11.805 TCP 12.102.0.1:46378 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:19:04.177 00:06:00.109 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:24:52.542 00:00:11.806 TCP 12.102.0.1:33764 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:25:23.150 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:25:23.175 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:25:23.586 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:25:23.517 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:25:23.523 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:25:23.291 00:00:00.033 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:25:23.158 00:00:00.031 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:25:54.388 00:00:11.799 TCP 12.102.0.1:38430 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:26:56.225 00:00:11.804 TCP 12.102.0.1:59336 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:27:58.084 00:00:11.867 TCP 12.102.0.1:49208 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:28:59.987 00:00:11.799 TCP 12.102.0.1:35014 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:25:04.176 00:06:00.113 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:30:01.830 00:00:11.759 TCP 12.102.0.1:59602 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:30:23.351 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:30:23.375 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:30:23.683 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:30:23.584 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:30:23.540 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:30:23.639 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:30:23.514 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:26:04.178 00:06:00.108 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:31:03.629 00:00:11.798 TCP 12.102.0.1:53272 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:32:05.467 00:00:11.857 TCP 12.102.0.1:51768 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:33:07.363 00:00:11.833 TCP 12.102.0.1:53930 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:34:09.234 00:00:11.800 TCP 12.102.0.1:44748 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:35:23.545 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:35:11.084 00:00:11.766 TCP 12.102.0.1:42992 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:35:23.567 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:35:23.500 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:35:23.544 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:35:23.499 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:35:23.759 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:35:23.490 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:36:12.894 00:00:11.760 TCP 12.102.0.1:47358 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:32:04.177 00:06:00.114 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:37:14.692 00:00:11.802 TCP 12.102.0.1:42136 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:33:04.180 00:06:00.109 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:38:16.537 00:00:11.802 TCP 12.102.0.1:53382 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:39:18.382 00:00:11.812 TCP 12.102.0.1:38758 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:40:23.696 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:40:23.719 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:40:23.808 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:40:23.848 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:40:23.705 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:40:23.964 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:40:23.870 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:40:20.233 00:00:11.767 TCP 12.102.0.1:59414 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:41:22.046 00:00:11.800 TCP 12.102.0.1:42554 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:42:23.882 00:00:11.807 TCP 12.102.0.1:58670 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:43:25.728 00:00:11.763 TCP 12.102.0.1:58466 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:39:04.181 00:06:00.111 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:44:27.530 00:00:11.847 TCP 12.102.0.1:55118 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:40:04.184 00:06:00.108 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:45:23.802 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:45:23.827 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:45:23.682 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:45:23.888 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:45:23.540 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:45:23.855 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:45:23.789 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:45:29.424 00:00:11.767 TCP 12.102.0.1:34992 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:46:31.233 00:00:11.800 TCP 12.102.0.1:37190 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:47:33.086 00:00:11.804 TCP 12.102.0.1:53144 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:48:34.927 00:00:11.814 TCP 12.102.0.1:43798 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:49:36.779 00:00:11.805 TCP 12.102.0.1:47550 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:50:23.803 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:50:23.826 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:50:23.975 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:50:24.060 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:50:23.788 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:50:24.022 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:50:23.749 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:50:38.632 00:00:11.897 TCP 12.102.0.1:59576 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:46:04.183 00:06:00.112 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-10 08:51:40.572 00:00:11.759 TCP 12.102.0.1:51320 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:47:04.187 00:06:00.107 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-10 08:52:42.371 00:00:11.777 TCP 12.102.0.1:35658 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:53:44.195 00:00:11.763 TCP 12.102.0.1:56152 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:54:45.997 00:00:11.802 TCP 12.102.0.1:56514 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:55:23.932 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-10 08:55:23.941 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-10 08:55:24.045 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-10 08:55:24.032 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-10 08:55:23.955 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-10 08:55:24.014 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-10 08:55:23.910 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-10 08:55:47.839 00:00:11.810 TCP 12.102.0.1:35788 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:56:49.686 00:00:11.795 TCP 12.102.0.1:41584 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:57:51.518 00:00:11.850 TCP 12.102.0.1:56218 -> 1.101.0.1:3000 11 1507 1 2025-11-10 08:53:04.184 00:06:00.114 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 Summary: total flows: 159, total bytes: 123630, total packets: 1132, avg bps: 265, avg pps: 0, avg bpp: 109 Time window: 2025-11-10 07:57:04 - 2025-11-10 08:59:04 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0029s User: 0.0029s Wall: 0.0029s flows/second: 55343.9 Runtime: 0.0029s