Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-10 13:59:42.076 00:00:11.804 TCP 12.102.0.1:38646 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:00:43.928 00:00:11.838 TCP 12.102.0.1:43800 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:01:05.365 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.139 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.367 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.025 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.060 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.113 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:01:05.003 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:01:45.781 00:00:11.771 TCP 12.102.0.1:47614 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:57:12.340 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:02:47.600 00:00:11.775 TCP 12.102.0.1:42660 -> 1.101.0.1:3000 11 1507 1 2025-08-10 13:58:12.336 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:03:49.413 00:00:11.807 TCP 12.102.0.1:38214 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:04:51.263 00:00:11.770 TCP 12.102.0.1:38268 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:05:53.079 00:00:11.762 TCP 12.102.0.1:49296 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:06:05.379 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.206 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.248 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.441 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.174 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.438 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:06:05.225 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:06:54.879 00:00:11.805 TCP 12.102.0.1:51776 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:07:56.722 00:00:11.803 TCP 12.102.0.1:36402 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:04:12.339 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:08:58.559 00:00:11.776 TCP 12.102.0.1:39222 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:10:00.368 00:00:11.830 TCP 12.102.0.1:47510 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:05:12.337 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:11:05.369 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.384 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.315 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.270 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.556 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.282 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:11:05.248 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:11:02.235 00:00:11.800 TCP 12.102.0.1:36680 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:12:04.078 00:00:11.803 TCP 12.102.0.1:60622 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:13:05.917 00:00:11.831 TCP 12.102.0.1:51110 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:14:07.790 00:00:11.826 TCP 12.102.0.1:55818 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:15:09.655 00:00:11.801 TCP 12.102.0.1:59542 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:16:05.274 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:16:05.569 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.438 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.447 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.296 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.602 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:16:05.576 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:11:12.340 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:16:11.493 00:00:11.801 TCP 12.102.0.1:47752 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:12:12.338 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:17:13.331 00:00:11.803 TCP 12.102.0.1:34592 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:18:15.172 00:00:11.757 TCP 12.102.0.1:55190 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:19:16.971 00:00:12.235 TCP 12.102.0.1:49478 -> 1.101.0.1:3000 15 1926 1 2025-08-10 14:20:19.240 00:00:11.802 TCP 12.102.0.1:36168 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:21:05.914 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:21:05.759 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:21:05.933 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:21:06.023 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:21:05.770 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:21:05.969 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:21:06.001 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:21:21.083 00:00:11.806 TCP 12.102.0.1:37442 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:22:22.927 00:00:11.823 TCP 12.102.0.1:35842 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:18:12.343 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:23:24.785 00:00:11.812 TCP 12.102.0.1:58040 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:19:12.340 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:24:26.639 00:00:12.242 TCP 12.102.0.1:55630 -> 1.101.0.1:3000 15 1926 1 2025-08-10 14:25:28.919 00:00:11.818 TCP 12.102.0.1:42652 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:26:05.800 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.627 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.762 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.846 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.729 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.520 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:26:05.496 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:26:30.778 00:00:11.756 TCP 12.102.0.1:54028 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:27:32.574 00:00:11.801 TCP 12.102.0.1:33568 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:28:34.417 00:00:11.808 TCP 12.102.0.1:54988 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:29:36.274 00:00:11.806 TCP 12.102.0.1:43386 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:25:12.344 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:30:38.116 00:00:11.757 TCP 12.102.0.1:52568 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:31:05.746 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:31:05.805 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.808 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.739 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.768 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.786 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:31:05.774 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:26:12.342 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:31:39.915 00:00:11.769 TCP 12.102.0.1:36160 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:32:41.721 00:00:11.803 TCP 12.102.0.1:53006 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:33:43.562 00:00:11.798 TCP 12.102.0.1:58624 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:34:45.400 00:00:11.802 TCP 12.102.0.1:46008 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:36:05.710 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:35:47.243 00:00:11.797 TCP 12.102.0.1:38086 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:36:05.940 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.943 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.872 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.732 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.691 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:36:05.917 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:36:49.081 00:00:11.803 TCP 12.102.0.1:59158 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:32:12.345 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:37:50.922 00:00:12.295 TCP 12.102.0.1:57716 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:33:12.344 00:06:00.591 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:38:53.257 00:00:11.804 TCP 12.102.0.1:42586 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:39:55.097 00:00:11.759 TCP 12.102.0.1:46934 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:41:05.733 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:41:05.997 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:40:56.893 00:00:11.804 TCP 12.102.0.1:39168 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:41:05.692 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:41:06.075 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:41:05.756 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:41:06.037 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:41:05.977 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:41:58.740 00:00:11.810 TCP 12.102.0.1:37966 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:43:00.592 00:00:11.878 TCP 12.102.0.1:45406 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:39:12.347 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:44:02.506 00:00:11.805 TCP 12.102.0.1:49484 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:40:12.344 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:45:04.350 00:00:11.818 TCP 12.102.0.1:45486 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:46:06.329 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:46:05.954 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:46:06.145 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:46:05.973 00:00:00.031 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:46:06.352 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:46:06.077 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:46:06.064 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:46:06.206 00:00:11.800 TCP 12.102.0.1:50546 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:47:08.073 00:00:11.853 TCP 12.102.0.1:37372 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:48:09.969 00:00:11.825 TCP 12.102.0.1:33588 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:49:11.833 00:00:11.804 TCP 12.102.0.1:33594 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:50:13.676 00:00:11.806 TCP 12.102.0.1:42064 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:51:06.198 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:51:06.255 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:51:06.341 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:51:06.340 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:51:06.220 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:51:06.299 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:51:06.179 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:46:12.348 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:51:15.516 00:00:11.802 TCP 12.102.0.1:59066 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:47:12.345 00:06:00.590 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-10 14:52:17.362 00:00:11.794 TCP 12.102.0.1:40862 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:53:19.205 00:00:11.757 TCP 12.102.0.1:39290 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:54:21.002 00:00:11.758 TCP 12.102.0.1:54374 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:55:22.804 00:00:11.814 TCP 12.102.0.1:54992 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:56:06.274 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-10 14:56:06.350 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.375 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.317 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.296 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.447 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-10 14:56:06.316 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-10 14:56:24.658 00:00:11.814 TCP 12.102.0.1:57428 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:57:26.510 00:00:11.765 TCP 12.102.0.1:34162 -> 1.101.0.1:3000 11 1507 1 2025-08-10 14:53:12.348 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-10 14:58:28.313 00:00:11.847 TCP 12.102.0.1:38552 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 124049, total packets: 1136, avg bps: 266, avg pps: 0, avg bpp: 109 Time window: 2025-08-10 13:57:12 - 2025-08-10 14:59:12 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0050s User: 0.0000s Wall: 0.0024s flows/second: 65671.5 Runtime: 0.0024s