Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 01:59:21.079 00:00:11.802 TCP 12.102.0.1:60216 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:00:22.923 00:00:11.828 TCP 12.102.0.1:42256 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:00:50.699 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:00:50.810 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:00:50.740 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:00:51.018 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:00:50.722 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:00:50.765 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:00:50.791 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 01:56:12.125 00:06:00.548 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:01:24.788 00:00:11.805 TCP 12.102.0.1:57194 -> 1.101.0.1:3000 11 1507 1 2025-08-10 01:57:12.122 00:06:00.553 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:02:26.632 00:00:20.370 TCP 12.102.0.1:44974 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:03:37.072 00:00:11.805 TCP 12.102.0.1:57540 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:04:38.926 00:00:11.820 TCP 12.102.0.1:57574 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:05:50.941 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:05:50.817 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:05:50.910 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:05:50.830 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:05:50.964 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:05:40.786 00:00:11.801 TCP 12.102.0.1:36268 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:05:51.018 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:05:50.881 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:06:42.636 00:00:11.759 TCP 12.102.0.1:53852 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:07:44.435 00:00:11.811 TCP 12.102.0.1:60282 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:03:12.126 00:06:00.547 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:08:46.292 00:00:11.799 TCP 12.102.0.1:43996 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:04:12.123 00:06:00.552 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:09:48.132 00:00:11.762 TCP 12.102.0.1:50286 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:10:51.283 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.427 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.376 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.193 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.339 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.045 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:10:51.171 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:10:49.929 00:00:11.824 TCP 12.102.0.1:49962 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:11:51.787 00:00:11.805 TCP 12.102.0.1:59926 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:12:53.633 00:00:11.808 TCP 12.102.0.1:54454 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:13:55.481 00:00:11.801 TCP 12.102.0.1:47226 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:14:57.326 00:00:11.814 TCP 12.102.0.1:54702 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:10:12.129 00:06:00.547 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:15:51.032 00:00:00.029 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:15:51.242 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:15:50.974 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:15:51.096 00:00:00.019 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:15:51.055 00:00:00.030 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:15:51.270 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:15:51.049 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:15:59.183 00:00:11.777 TCP 12.102.0.1:37316 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:11:12.128 00:06:00.550 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:17:00.995 00:00:11.805 TCP 12.102.0.1:38714 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:18:02.839 00:00:11.857 TCP 12.102.0.1:53974 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:19:04.739 00:00:11.832 TCP 12.102.0.1:46894 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:20:06.605 00:00:11.808 TCP 12.102.0.1:37726 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:20:51.202 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.218 00:00:00.046 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.115 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.073 00:00:00.046 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.392 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.264 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:20:51.053 00:00:00.046 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:21:08.446 00:00:11.821 TCP 12.102.0.1:54022 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:17:12.129 00:06:00.546 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:22:10.306 00:00:11.758 TCP 12.102.0.1:43190 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:18:12.128 00:06:00.552 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:23:12.102 00:00:11.804 TCP 12.102.0.1:36218 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:24:13.945 00:00:11.854 TCP 12.102.0.1:49922 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:25:15.838 00:00:11.798 TCP 12.102.0.1:44440 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:25:51.217 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:25:51.337 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:25:50.991 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:25:51.218 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:25:51.241 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:25:51.289 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:25:51.307 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:26:17.675 00:00:11.806 TCP 12.102.0.1:51730 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:27:19.516 00:00:11.805 TCP 12.102.0.1:40404 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:28:21.362 00:00:11.813 TCP 12.102.0.1:55446 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:24:12.132 00:06:00.548 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:29:23.213 00:00:12.267 TCP 12.102.0.1:48706 -> 1.101.0.1:3000 15 1926 1 2025-08-10 02:25:12.129 00:06:00.554 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:30:25.521 00:00:11.801 TCP 12.102.0.1:50474 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:30:51.487 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.553 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.681 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.645 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.455 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.778 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:30:51.531 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:31:27.362 00:00:11.829 TCP 12.102.0.1:46040 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:32:29.231 00:00:11.759 TCP 12.102.0.1:50312 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:33:31.030 00:00:11.800 TCP 12.102.0.1:54134 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:34:32.869 00:00:11.810 TCP 12.102.0.1:33660 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:35:34.714 00:00:11.805 TCP 12.102.0.1:37242 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:35:51.552 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:35:51.694 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:35:51.232 00:00:00.046 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:35:51.520 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:35:51.575 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:35:51.698 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:35:51.663 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:31:12.137 00:06:00.546 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:36:36.556 00:00:11.797 TCP 12.102.0.1:45114 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:32:12.132 00:06:00.552 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:37:38.391 00:00:11.761 TCP 12.102.0.1:57114 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:38:40.194 00:00:11.802 TCP 12.102.0.1:39384 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:39:42.045 00:00:12.071 TCP 12.102.0.1:42134 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:40:51.326 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.758 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.422 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.621 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.749 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.567 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:40:51.599 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:40:44.154 00:00:11.769 TCP 12.102.0.1:43198 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:41:45.956 00:00:11.806 TCP 12.102.0.1:33844 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:42:47.804 00:00:11.824 TCP 12.102.0.1:38050 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:38:12.138 00:06:00.548 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:43:49.662 00:00:12.361 TCP 12.102.0.1:48398 -> 1.101.0.1:3000 15 1926 1 2025-08-10 02:39:12.135 00:06:00.553 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:44:52.083 00:00:11.835 TCP 12.102.0.1:59094 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:45:51.879 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.773 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.670 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.676 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.963 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.793 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:45:51.654 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:45:53.956 00:00:11.809 TCP 12.102.0.1:40968 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:46:55.802 00:00:11.759 TCP 12.102.0.1:33966 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:47:57.610 00:00:11.798 TCP 12.102.0.1:59706 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:48:59.446 00:00:11.814 TCP 12.102.0.1:37316 -> 1.101.0.1:3000 12 1559 1 2025-08-10 02:45:12.139 00:06:00.549 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:50:01.297 00:00:11.797 TCP 12.102.0.1:59192 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:50:51.744 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:50:51.827 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.767 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.825 00:00:00.019 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.585 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.949 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:50:51.880 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:46:12.137 00:06:00.556 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:51:03.134 00:00:11.757 TCP 12.102.0.1:43384 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:52:04.930 00:00:11.825 TCP 12.102.0.1:59818 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:53:06.793 00:00:11.831 TCP 12.102.0.1:60428 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:54:08.645 00:00:11.805 TCP 12.102.0.1:52496 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:55:10.492 00:00:11.813 TCP 12.102.0.1:52810 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:55:51.826 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 02:55:51.871 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 02:55:52.081 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 02:55:52.129 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 02:55:51.851 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 02:55:52.079 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 02:55:51.961 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 02:56:12.336 00:00:11.763 TCP 12.102.0.1:37540 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:52:12.142 00:06:00.550 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 02:57:14.137 00:00:11.828 TCP 12.102.0.1:44026 -> 1.101.0.1:3000 11 1507 1 2025-08-10 02:53:12.140 00:06:00.556 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 02:58:15.999 00:00:11.802 TCP 12.102.0.1:60578 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 124962, total packets: 1151, avg bps: 264, avg pps: 0, avg bpp: 108 Time window: 2025-08-10 01:56:12 - 2025-08-10 02:59:12 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0011s User: 0.0032s Wall: 0.0024s flows/second: 67944.6 Runtime: 0.0024s