Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 09:55:14.987 00:05:00.186 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-15 09:59:37.319 00:00:11.808 TCP 12.102.0.1:37060 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:00:39.164 00:00:11.826 TCP 12.102.0.1:45228 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:01:41.027 00:00:11.799 TCP 12.102.0.1:55212 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:02:42.869 00:00:11.799 TCP 12.102.0.1:53684 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:03:24.791 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:03:24.729 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:03:24.897 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:03:24.765 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:03:24.814 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:03:24.774 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:03:24.764 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:03:44.704 00:00:11.770 TCP 12.102.0.1:33278 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:00:14.990 00:05:00.182 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-15 10:04:46.514 00:00:11.799 TCP 12.102.0.1:36478 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:01:14.987 00:05:00.189 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-15 10:05:48.351 00:00:11.806 TCP 12.102.0.1:51372 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:06:50.193 00:00:11.797 TCP 12.102.0.1:59640 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:07:52.041 00:00:11.764 TCP 12.102.0.1:46216 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:08:24.891 00:00:00.035 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.714 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.827 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.967 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.979 00:00:00.037 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.858 00:00:00.026 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:08:24.945 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:08:53.844 00:00:11.810 TCP 12.102.0.1:34186 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:09:55.688 00:00:11.806 TCP 12.102.0.1:39478 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:06:14.992 00:05:00.182 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-15 10:10:57.531 00:00:11.811 TCP 12.102.0.1:33852 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:07:14.990 00:05:00.189 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-15 10:11:59.379 00:00:11.820 TCP 12.102.0.1:43470 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:13:01.235 00:00:11.804 TCP 12.102.0.1:58114 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:13:24.868 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:13:24.982 00:00:00.032 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:13:24.983 00:00:00.031 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:13:25.104 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:13:24.891 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:13:24.934 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:13:24.786 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:14:03.091 00:00:11.808 TCP 12.102.0.1:37216 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:15:04.937 00:00:11.821 TCP 12.102.0.1:59200 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:12:14.993 00:05:00.183 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-08-15 10:16:06.789 00:00:11.811 TCP 12.102.0.1:42038 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:13:14.990 00:05:00.189 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-08-15 10:17:08.638 00:00:11.861 TCP 12.102.0.1:36788 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:18:10.537 00:00:11.823 TCP 12.102.0.1:47072 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:18:24.990 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:18:24.920 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:18:24.951 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:18:24.952 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:18:25.023 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:18:25.031 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:18:24.929 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:19:12.414 00:00:11.801 TCP 12.102.0.1:43938 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:20:14.259 00:00:11.811 TCP 12.102.0.1:48674 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:21:16.111 00:00:11.806 TCP 12.102.0.1:54954 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:22:17.955 00:00:11.804 TCP 12.102.0.1:39202 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:18:15.039 00:06:00.139 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:23:25.597 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.276 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.002 00:00:00.027 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.454 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.396 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.308 00:00:00.027 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:23:25.432 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:23:19.799 00:00:11.801 TCP 12.102.0.1:43582 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:19:15.036 00:06:00.145 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-15 10:24:21.641 00:00:11.804 TCP 12.102.0.1:42610 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:25:23.482 00:00:11.999 TCP 12.102.0.1:51904 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:26:25.522 00:00:11.806 TCP 12.102.0.1:39950 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:27:27.367 00:00:11.810 TCP 12.102.0.1:49658 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:28:25.263 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:28:25.334 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:28:25.215 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:28:25.437 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:28:25.286 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:28:25.496 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:28:25.231 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:28:29.215 00:00:11.808 TCP 12.102.0.1:48362 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:29:31.083 00:00:11.797 TCP 12.102.0.1:38612 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:25:15.053 00:06:00.126 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:30:32.916 00:00:11.832 TCP 12.102.0.1:47516 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:26:15.060 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-15 10:31:34.788 00:00:11.810 TCP 12.102.0.1:42378 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:32:36.641 00:00:11.815 TCP 12.102.0.1:40252 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:33:25.374 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.369 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.527 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.437 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.378 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.463 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:33:25.415 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:33:38.493 00:00:11.867 TCP 12.102.0.1:41800 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:34:40.398 00:00:11.809 TCP 12.102.0.1:38438 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:35:42.243 00:00:11.810 TCP 12.102.0.1:33518 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:36:44.090 00:00:11.807 TCP 12.102.0.1:43854 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:32:15.053 00:06:00.136 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:37:45.937 00:00:11.816 TCP 12.102.0.1:49144 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:33:15.051 00:06:00.141 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-15 10:38:25.576 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.289 00:00:00.030 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.674 00:00:00.036 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.583 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.683 00:00:00.027 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.638 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:38:25.561 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:38:47.790 00:00:11.807 TCP 12.102.0.1:48794 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:39:49.638 00:00:11.802 TCP 12.102.0.1:43400 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:40:51.478 00:00:11.804 TCP 12.102.0.1:32958 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:41:53.320 00:00:11.756 TCP 12.102.0.1:49200 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:42:55.113 00:00:11.816 TCP 12.102.0.1:34232 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:43:25.640 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:43:25.959 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:43:25.836 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:43:26.090 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:43:25.965 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:43:25.993 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:43:25.813 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:43:56.968 00:00:11.762 TCP 12.102.0.1:46228 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:39:15.056 00:06:00.137 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:44:58.764 00:00:11.802 TCP 12.102.0.1:51634 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:40:15.053 00:06:00.142 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-15 10:46:00.603 00:00:11.756 TCP 12.102.0.1:51174 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:47:02.396 00:00:11.765 TCP 12.102.0.1:59222 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:48:04.198 00:00:11.811 TCP 12.102.0.1:54040 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:48:25.658 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:48:25.760 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:48:25.587 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:48:25.732 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:48:25.680 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:48:25.456 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:48:25.447 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:49:06.079 00:00:11.798 TCP 12.102.0.1:42768 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:50:07.916 00:00:11.830 TCP 12.102.0.1:39168 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:46:15.062 00:06:00.132 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:51:09.783 00:00:11.802 TCP 12.102.0.1:52726 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:47:15.059 00:06:00.137 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-08-15 10:52:11.625 00:00:11.811 TCP 12.102.0.1:48806 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:53:25.613 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:53:13.474 00:00:11.773 TCP 12.102.0.1:54932 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:53:25.819 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:53:26.022 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:53:25.749 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:53:25.636 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:53:25.516 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:53:25.866 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:54:15.287 00:00:11.803 TCP 12.102.0.1:38814 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:55:17.128 00:00:12.224 TCP 12.102.0.1:52166 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:56:19.386 00:00:11.881 TCP 12.102.0.1:60022 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:57:21.305 00:00:11.825 TCP 12.102.0.1:38132 -> 1.101.0.1:3000 11 1507 1 2025-08-15 10:53:15.062 00:06:00.132 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-08-15 10:58:25.751 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.854 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.945 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.858 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.749 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.812 00:00:00.020 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-08-15 10:58:25.835 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-08-15 10:58:23.170 00:00:11.802 TCP 12.102.0.1:46230 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 123211, total packets: 1128, avg bps: 256, avg pps: 0, avg bpp: 109 Time window: 2025-08-15 09:55:14 - 2025-08-15 10:59:15 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0037s User: 0.0009s Wall: 0.0024s flows/second: 65625.7 Runtime: 0.0025s