Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 23:59:37.023 00:00:11.809 TCP 12.102.0.1:39744 -> 1.101.0.1:3000 11 1507 1 2025-11-24 23:56:11.855 00:05:00.219 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:00:38.871 00:00:11.804 TCP 12.102.0.1:53542 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:01:40.714 00:00:11.809 TCP 12.102.0.1:47480 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:02:28.271 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.234 00:00:00.045 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.400 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.124 00:00:00.048 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.357 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.233 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:02:28.249 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:02:42.563 00:00:11.770 TCP 12.102.0.1:50126 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:03:44.375 00:00:11.817 TCP 12.102.0.1:50886 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:00:11.857 00:05:00.215 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:04:46.232 00:00:11.802 TCP 12.102.0.1:42016 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:05:48.082 00:00:11.770 TCP 12.102.0.1:51540 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:02:11.856 00:05:00.219 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:06:49.885 00:00:11.800 TCP 12.102.0.1:38340 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:07:28.004 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:07:28.027 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.230 00:00:00.045 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.150 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.234 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.216 00:00:00.030 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:07:28.145 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:07:51.730 00:00:11.802 TCP 12.102.0.1:60860 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:08:53.568 00:00:11.807 TCP 12.102.0.1:45934 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:09:55.409 00:00:11.761 TCP 12.102.0.1:40942 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:06:11.860 00:05:00.214 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:10:57.206 00:00:11.800 TCP 12.102.0.1:47976 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:11:59.073 00:00:11.802 TCP 12.102.0.1:38310 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:08:11.859 00:05:00.217 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:12:28.020 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.236 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.249 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.364 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.442 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.485 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:12:28.211 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:13:00.937 00:00:12.113 TCP 12.102.0.1:55048 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:14:03.077 00:00:11.807 TCP 12.102.0.1:46780 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:15:04.921 00:00:11.814 TCP 12.102.0.1:44930 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:12:11.862 00:05:00.212 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:16:06.773 00:00:11.805 TCP 12.102.0.1:50384 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:17:08.617 00:00:11.820 TCP 12.102.0.1:49528 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:17:28.404 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:17:28.426 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:17:28.654 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:17:28.654 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:17:28.356 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:17:28.553 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:17:28.219 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:14:11.871 00:05:00.207 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:18:10.481 00:00:11.798 TCP 12.102.0.1:39766 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:19:12.317 00:00:11.800 TCP 12.102.0.1:48440 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:20:14.157 00:00:11.760 TCP 12.102.0.1:59904 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:21:15.960 00:00:11.759 TCP 12.102.0.1:45760 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:18:11.871 00:05:00.205 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:22:28.448 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:22:28.445 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:22:17.760 00:00:11.801 TCP 12.102.0.1:57770 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:22:28.677 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:22:28.327 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:22:28.393 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:22:28.508 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:22:28.370 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:23:19.599 00:00:11.808 TCP 12.102.0.1:51582 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:20:11.869 00:05:00.210 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:24:21.442 00:00:11.808 TCP 12.102.0.1:39670 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:25:23.318 00:00:11.854 TCP 12.102.0.1:57716 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:26:25.212 00:00:11.815 TCP 12.102.0.1:44454 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:27:28.585 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:27:28.607 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:27:28.588 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:27:28.423 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:27:28.566 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:27:28.618 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:27:28.614 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:27:27.076 00:00:11.801 TCP 12.102.0.1:33586 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:24:11.871 00:05:00.206 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:28:28.916 00:00:11.824 TCP 12.102.0.1:56720 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:29:30.774 00:00:11.760 TCP 12.102.0.1:57326 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:26:11.869 00:05:00.211 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:30:32.577 00:00:11.757 TCP 12.102.0.1:60486 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:31:34.375 00:00:11.817 TCP 12.102.0.1:41482 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:32:28.697 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.731 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.700 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.734 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.808 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.536 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:32:28.674 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:32:36.229 00:00:11.848 TCP 12.102.0.1:53916 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:33:38.086 00:00:11.803 TCP 12.102.0.1:41316 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:30:11.876 00:05:00.204 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:34:39.931 00:00:11.869 TCP 12.102.0.1:55672 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:35:41.842 00:00:11.803 TCP 12.102.0.1:50820 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:32:11.872 00:05:00.210 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:36:43.676 00:00:11.809 TCP 12.102.0.1:59488 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:37:28.837 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:37:28.860 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:37:28.709 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:37:28.902 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:37:28.677 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:37:28.784 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:37:28.797 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:37:45.528 00:00:11.827 TCP 12.102.0.1:60830 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:38:47.394 00:00:11.798 TCP 12.102.0.1:37366 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:39:49.237 00:00:11.802 TCP 12.102.0.1:42656 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:36:11.876 00:05:00.205 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:40:51.082 00:00:12.563 TCP 12.102.0.1:52702 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:41:53.684 00:00:11.761 TCP 12.102.0.1:49952 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:38:11.873 00:05:00.209 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:42:28.664 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.994 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.922 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.886 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:42:29.045 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.924 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:42:28.641 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:42:55.484 00:00:11.802 TCP 12.102.0.1:39624 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:43:57.326 00:00:11.814 TCP 12.102.0.1:38054 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:44:59.175 00:00:12.544 TCP 12.102.0.1:59426 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:42:11.876 00:05:00.205 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:46:01.756 00:00:11.802 TCP 12.102.0.1:44924 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:47:03.593 00:00:11.818 TCP 12.102.0.1:57064 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:47:28.840 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:47:28.862 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:47:28.906 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:47:29.045 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:47:28.783 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:47:28.913 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:47:28.944 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:44:11.875 00:05:00.212 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:48:05.453 00:00:11.802 TCP 12.102.0.1:49460 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:49:07.292 00:00:11.803 TCP 12.102.0.1:45276 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:50:09.133 00:00:11.818 TCP 12.102.0.1:46100 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:51:10.999 00:00:11.759 TCP 12.102.0.1:54434 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:48:11.884 00:05:00.201 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:52:12.808 00:00:11.803 TCP 12.102.0.1:42174 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:52:29.021 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:52:29.163 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:52:28.921 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:52:28.803 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:52:29.014 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:52:28.764 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:52:28.997 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:53:14.651 00:00:11.840 TCP 12.102.0.1:51158 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:50:11.882 00:05:00.205 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-25 00:54:16.524 00:00:11.817 TCP 12.102.0.1:35376 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:55:18.380 00:00:11.810 TCP 12.102.0.1:51462 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:56:20.232 00:00:12.246 TCP 12.102.0.1:43348 -> 1.101.0.1:3000 15 1926 1 2025-11-25 00:57:29.003 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-25 00:57:29.026 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.235 00:00:00.044 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.154 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.131 00:00:00.025 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.162 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-25 00:57:29.218 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-25 00:57:22.523 00:00:11.802 TCP 12.102.0.1:44926 -> 1.101.0.1:3000 11 1507 1 2025-11-25 00:54:11.885 00:05:00.199 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-25 00:58:24.368 00:00:11.770 TCP 12.102.0.1:36762 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 162, total bytes: 123753, total packets: 1134, avg bps: 261, avg pps: 0, avg bpp: 109 Time window: 2025-11-24 23:56:11 - 2025-11-25 00:59:12 Total flows processed: 162, passed: 162, Blocks skipped: 0, Bytes read: 16912 Sys: 0.0047s User: 0.0016s Wall: 0.0022s flows/second: 72231.0 Runtime: 0.0023s