Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 09:59:14.225 00:00:11.804 TCP 12.102.0.1:42430 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:00:16.078 00:00:11.799 TCP 12.102.0.1:37794 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:01:00.393 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.351 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.796 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.538 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.507 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.530 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:01:00.515 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:01:17.917 00:00:11.830 TCP 12.102.0.1:47550 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:02:19.786 00:00:11.800 TCP 12.102.0.1:45454 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:03:21.624 00:00:11.800 TCP 12.102.0.1:47208 -> 1.101.0.1:3000 11 1507 1 2025-08-10 09:59:12.264 00:06:00.549 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:04:23.465 00:00:11.761 TCP 12.102.0.1:41192 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:00:12.261 00:06:00.554 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:05:25.265 00:00:11.760 TCP 12.102.0.1:36178 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:06:00.613 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.519 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.548 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.481 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.688 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.575 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:06:00.459 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:06:27.078 00:00:11.803 TCP 12.102.0.1:39488 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:07:28.919 00:00:11.782 TCP 12.102.0.1:37836 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:08:30.739 00:00:11.758 TCP 12.102.0.1:47328 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:09:32.537 00:00:11.758 TCP 12.102.0.1:52116 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:10:34.336 00:00:11.804 TCP 12.102.0.1:36516 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:11:00.687 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.410 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.686 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.540 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.641 00:00:00.019 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.474 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:11:00.519 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:06:12.265 00:06:00.558 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:11:36.180 00:00:11.801 TCP 12.102.0.1:47686 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:07:12.262 00:06:00.562 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:12:38.028 00:00:11.805 TCP 12.102.0.1:52624 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:13:39.873 00:00:11.801 TCP 12.102.0.1:36522 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:14:41.712 00:00:11.763 TCP 12.102.0.1:48084 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:16:02.329 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:15:43.509 00:00:11.816 TCP 12.102.0.1:57644 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:16:02.332 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.373 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.361 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.352 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.353 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:16:02.230 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:16:45.372 00:00:11.814 TCP 12.102.0.1:40334 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:17:47.225 00:00:11.803 TCP 12.102.0.1:56412 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:13:12.267 00:06:00.556 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:18:49.083 00:00:11.800 TCP 12.102.0.1:54254 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:14:12.264 00:06:00.561 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:19:50.920 00:00:11.826 TCP 12.102.0.1:38456 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:21:00.828 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:21:00.702 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.985 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.834 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.851 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.739 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:21:00.584 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:20:52.789 00:00:11.799 TCP 12.102.0.1:43292 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:21:54.626 00:00:11.758 TCP 12.102.0.1:50274 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:22:56.431 00:00:11.800 TCP 12.102.0.1:35636 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:23:58.269 00:00:11.805 TCP 12.102.0.1:55262 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:20:12.269 00:06:00.555 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:25:00.108 00:00:11.803 TCP 12.102.0.1:56524 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:26:01.038 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:26:00.915 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:26:01.069 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:26:01.028 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:26:01.087 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:26:00.870 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:26:01.006 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:26:01.958 00:00:11.855 TCP 12.102.0.1:43156 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:21:12.267 00:06:00.560 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:27:03.853 00:00:11.797 TCP 12.102.0.1:47424 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:28:05.683 00:00:11.811 TCP 12.102.0.1:54032 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:29:07.531 00:00:11.815 TCP 12.102.0.1:57084 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:30:09.380 00:00:11.804 TCP 12.102.0.1:40094 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:31:01.199 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:31:01.291 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:31:01.026 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:31:00.908 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:31:01.138 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:31:00.814 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:31:00.885 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:31:11.217 00:00:16.430 TCP 12.102.0.1:52366 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:27:12.272 00:06:00.572 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:32:17.687 00:00:11.796 TCP 12.102.0.1:39290 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:28:12.271 00:06:00.577 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:33:19.519 00:00:11.807 TCP 12.102.0.1:48390 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:34:21.367 00:00:11.784 TCP 12.102.0.1:34300 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:35:23.196 00:00:11.805 TCP 12.102.0.1:46106 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:36:01.027 00:00:00.037 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:36:01.099 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:36:01.152 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:36:00.821 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:36:01.011 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:36:01.159 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:36:00.800 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:36:25.071 00:00:11.814 TCP 12.102.0.1:53908 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:37:26.935 00:00:11.810 TCP 12.102.0.1:33786 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:38:28.803 00:00:11.822 TCP 12.102.0.1:47872 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:34:12.272 00:06:00.577 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:39:30.663 00:00:11.821 TCP 12.102.0.1:51188 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:35:12.272 00:06:00.581 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:40:32.526 00:00:11.805 TCP 12.102.0.1:34084 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:41:01.337 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.198 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.041 00:00:00.028 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.345 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.112 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.094 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:41:01.175 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:41:34.381 00:00:11.818 TCP 12.102.0.1:55548 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:42:36.243 00:00:11.799 TCP 12.102.0.1:57106 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:43:38.088 00:00:11.807 TCP 12.102.0.1:42442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:44:39.927 00:00:11.834 TCP 12.102.0.1:40686 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:45:41.798 00:00:11.800 TCP 12.102.0.1:60506 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:46:01.266 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.481 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.447 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.158 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.068 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.303 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:46:01.138 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:41:12.278 00:06:00.574 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:46:43.633 00:00:11.802 TCP 12.102.0.1:33040 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:42:12.275 00:06:00.580 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:47:45.473 00:00:11.826 TCP 12.102.0.1:40034 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:48:47.333 00:00:11.862 TCP 12.102.0.1:48256 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:49:49.230 00:00:11.815 TCP 12.102.0.1:35248 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:51:01.041 00:00:00.050 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:51:01.509 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.393 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.411 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.064 00:00:00.050 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.539 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:51:01.259 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:50:51.078 00:00:11.801 TCP 12.102.0.1:35514 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:51:52.920 00:00:11.833 TCP 12.102.0.1:43174 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:52:54.794 00:00:11.802 TCP 12.102.0.1:47266 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:48:12.278 00:06:00.577 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 10:53:56.640 00:00:11.762 TCP 12.102.0.1:56660 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:49:12.275 00:06:00.583 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 10:54:58.445 00:00:11.801 TCP 12.102.0.1:40486 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:56:01.264 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 10:56:01.616 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.287 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.711 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.495 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.591 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 10:56:01.417 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 10:56:00.289 00:00:11.760 TCP 12.102.0.1:40610 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:57:02.084 00:00:11.799 TCP 12.102.0.1:58624 -> 1.101.0.1:3000 11 1507 1 2025-08-10 10:58:03.927 00:00:11.865 TCP 12.102.0.1:40082 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 122350, total packets: 1114, avg bps: 276, avg pps: 0, avg bpp: 109 Time window: 2025-08-10 09:59:12 - 2025-08-10 10:58:15 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0022s User: 0.0022s Wall: 0.0021s flows/second: 74527.7 Runtime: 0.0021s