Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-22 18:59:11.285 00:00:11.760 TCP 12.102.0.1:50144 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:00:13.084 00:00:11.809 TCP 12.102.0.1:50370 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:01:24.235 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:01:24.258 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:01:24.212 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:01:24.386 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:01:14.945 00:00:11.813 TCP 12.102.0.1:42062 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:01:24.299 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:01:24.280 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:01:24.268 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:02:16.795 00:00:11.819 TCP 12.102.0.1:53688 -> 1.101.0.1:3000 11 1507 1 2025-11-22 18:59:10.432 00:05:00.573 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 18:59:10.434 00:05:00.568 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:03:18.653 00:00:11.810 TCP 12.102.0.1:49348 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:04:20.503 00:00:11.801 TCP 12.102.0.1:55202 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:05:22.348 00:00:11.797 TCP 12.102.0.1:38176 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:06:24.409 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:06:24.431 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.694 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.641 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.448 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.559 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.434 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:06:24.186 00:00:11.800 TCP 12.102.0.1:33616 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:07:26.038 00:00:11.803 TCP 12.102.0.1:34914 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:08:27.883 00:00:11.800 TCP 12.102.0.1:38368 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:05:10.437 00:05:00.600 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:05:10.440 00:05:00.595 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:09:29.722 00:00:12.664 TCP 12.102.0.1:60186 -> 1.101.0.1:3000 17 2241 1 2025-11-22 19:10:32.427 00:00:11.773 TCP 12.102.0.1:42154 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:11:24.476 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:11:24.549 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:11:24.451 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:11:24.507 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:11:24.500 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:11:24.509 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:11:24.541 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:11:34.238 00:00:11.798 TCP 12.102.0.1:42874 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:12:36.079 00:00:11.799 TCP 12.102.0.1:33088 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:13:37.920 00:00:11.825 TCP 12.102.0.1:37568 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:14:39.780 00:00:11.835 TCP 12.102.0.1:35088 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:11:10.438 00:05:00.599 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:11:10.441 00:05:00.594 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:15:41.646 00:00:11.802 TCP 12.102.0.1:38938 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:16:25.054 00:00:00.034 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:16:25.236 00:00:00.038 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:16:24.792 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:16:25.012 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:16:25.138 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:16:25.194 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:16:25.032 00:00:00.034 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:16:43.489 00:00:11.800 TCP 12.102.0.1:52846 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:17:45.330 00:00:11.797 TCP 12.102.0.1:51846 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:18:47.169 00:00:11.815 TCP 12.102.0.1:53424 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:19:49.025 00:00:12.963 TCP 12.102.0.1:45296 -> 1.101.0.1:3000 15 1926 1 2025-11-22 19:20:52.034 00:00:11.805 TCP 12.102.0.1:47902 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:17:10.445 00:05:00.594 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:17:10.440 00:05:00.599 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:21:24.519 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:21:24.542 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:21:24.920 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:21:24.896 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:21:24.753 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:21:24.566 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:21:24.716 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:21:53.882 00:00:11.764 TCP 12.102.0.1:40534 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:22:55.684 00:00:11.799 TCP 12.102.0.1:49166 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:23:57.519 00:00:11.802 TCP 12.102.0.1:47822 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:24:59.365 00:00:11.827 TCP 12.102.0.1:46572 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:26:01.231 00:00:11.823 TCP 12.102.0.1:34604 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:26:24.780 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:26:25.021 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:26:24.823 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:26:24.803 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:26:24.884 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:26:24.773 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:26:24.758 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:23:10.443 00:05:00.598 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:23:10.446 00:05:00.593 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:27:03.089 00:00:11.810 TCP 12.102.0.1:39864 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:28:04.938 00:00:11.808 TCP 12.102.0.1:33978 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:29:06.793 00:00:11.803 TCP 12.102.0.1:46948 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:30:08.632 00:00:11.990 TCP 12.102.0.1:49620 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:31:24.813 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:31:10.656 00:00:11.754 TCP 12.102.0.1:39870 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:31:24.835 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:31:25.166 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:31:24.967 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:31:24.959 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:31:24.807 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:31:24.943 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:32:12.449 00:00:11.809 TCP 12.102.0.1:44492 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:29:10.453 00:05:00.588 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:29:10.451 00:05:00.593 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:33:14.295 00:00:11.760 TCP 12.102.0.1:53812 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:34:16.099 00:00:11.806 TCP 12.102.0.1:35852 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:35:17.945 00:00:11.768 TCP 12.102.0.1:48852 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:36:24.721 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:36:24.744 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:36:25.125 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:36:25.064 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:36:24.752 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:36:24.995 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:36:24.646 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:36:19.748 00:00:11.820 TCP 12.102.0.1:42712 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:37:21.607 00:00:11.759 TCP 12.102.0.1:54292 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:38:23.397 00:00:11.800 TCP 12.102.0.1:43544 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:35:10.452 00:05:00.594 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:35:10.453 00:05:00.589 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:39:25.236 00:00:11.804 TCP 12.102.0.1:57416 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:40:27.080 00:00:11.802 TCP 12.102.0.1:40648 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:41:24.928 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:41:24.951 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:41:25.155 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:41:25.050 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:41:25.010 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:41:24.950 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:41:24.943 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:41:28.916 00:00:11.831 TCP 12.102.0.1:33394 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:42:30.781 00:00:11.797 TCP 12.102.0.1:50400 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:43:32.617 00:00:11.757 TCP 12.102.0.1:44514 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:44:34.415 00:00:11.801 TCP 12.102.0.1:50824 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:41:10.453 00:05:00.593 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:41:10.456 00:05:00.588 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:45:36.260 00:00:11.803 TCP 12.102.0.1:50882 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:46:25.214 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:46:25.237 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:46:25.107 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:46:25.232 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:46:25.027 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:46:25.129 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:46:25.068 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:46:38.096 00:00:11.797 TCP 12.102.0.1:34424 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:47:39.932 00:00:11.813 TCP 12.102.0.1:51298 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:48:41.785 00:00:11.801 TCP 12.102.0.1:35790 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:49:43.627 00:00:11.806 TCP 12.102.0.1:41428 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:50:45.472 00:00:11.771 TCP 12.102.0.1:42668 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:47:10.456 00:05:00.589 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:47:10.455 00:05:00.594 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:51:25.366 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:51:25.389 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:51:25.354 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:51:25.457 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:51:25.257 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:51:25.455 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:51:25.235 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:51:47.279 00:00:11.802 TCP 12.102.0.1:53884 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:52:49.121 00:00:11.802 TCP 12.102.0.1:58756 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:53:50.963 00:00:11.815 TCP 12.102.0.1:52138 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:54:52.816 00:00:11.813 TCP 12.102.0.1:42866 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:55:54.670 00:00:11.808 TCP 12.102.0.1:53274 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:56:25.308 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-22 19:56:25.331 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-22 19:56:25.364 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-22 19:56:25.400 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-22 19:56:25.449 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-22 19:56:25.075 00:00:00.031 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-22 19:56:25.345 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-22 19:56:56.517 00:00:11.813 TCP 12.102.0.1:56050 -> 1.101.0.1:3000 11 1507 1 2025-11-22 19:53:10.455 00:05:00.594 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-22 19:53:10.458 00:05:00.588 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-22 19:57:58.368 00:00:11.810 TCP 12.102.0.1:45598 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 124487, total packets: 1140, avg bps: 281, avg pps: 0, avg bpp: 109 Time window: 2025-11-22 18:59:10 - 2025-11-22 19:58:11 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0046s User: 0.0018s Wall: 0.0027s flows/second: 60516.3 Runtime: 0.0027s