Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-01 13:59:37.242 00:00:11.873 TCP 12.102.0.1:48422 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:00:39.163 00:00:11.801 TCP 12.102.0.1:34442 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:01:14.851 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:01:14.901 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.871 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.934 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.875 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.892 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:01:14.667 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:01:41.008 00:00:11.796 TCP 12.102.0.1:36838 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:02:42.842 00:00:11.804 TCP 12.102.0.1:39630 -> 1.101.0.1:3000 11 1507 1 2025-10-01 13:58:45.098 00:06:00.137 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:03:44.688 00:00:11.797 TCP 12.102.0.1:32966 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:04:46.518 00:00:11.765 TCP 12.102.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:00:45.102 00:06:00.131 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:05:48.320 00:00:11.763 TCP 12.102.0.1:51598 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:06:14.615 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.572 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.724 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.670 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.713 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.487 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:06:14.648 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:06:50.120 00:00:11.809 TCP 12.102.0.1:57806 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:07:51.967 00:00:11.801 TCP 12.102.0.1:56686 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:08:53.806 00:00:11.806 TCP 12.102.0.1:50396 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:09:55.661 00:00:11.818 TCP 12.102.0.1:36824 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:05:45.100 00:06:00.136 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:11:14.764 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:10:57.520 00:00:11.808 TCP 12.102.0.1:41524 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:11:14.647 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.751 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.752 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.788 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.851 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:11:14.646 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:11:59.368 00:00:11.795 TCP 12.102.0.1:37934 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:07:45.103 00:06:00.131 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:13:01.204 00:00:11.808 TCP 12.102.0.1:60702 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:14:03.076 00:00:11.806 TCP 12.102.0.1:39480 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:15:04.932 00:00:11.812 TCP 12.102.0.1:37002 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:16:15.017 00:00:00.019 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:16:15.108 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.812 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.902 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:16:06.784 00:00:11.802 TCP 12.102.0.1:34268 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:16:14.890 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.841 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:16:14.878 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:17:08.628 00:00:11.800 TCP 12.102.0.1:48546 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:12:45.103 00:06:00.135 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:18:10.466 00:00:11.797 TCP 12.102.0.1:42632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:19:12.301 00:00:11.814 TCP 12.102.0.1:51230 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:14:45.105 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:20:14.153 00:00:11.817 TCP 12.102.0.1:53192 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:21:15.166 00:00:00.030 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.230 00:00:00.047 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.282 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.315 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.276 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.055 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:21:15.292 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:21:16.006 00:00:11.852 TCP 12.102.0.1:52730 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:22:17.896 00:00:11.758 TCP 12.102.0.1:55106 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:23:19.691 00:00:11.803 TCP 12.102.0.1:38388 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:24:21.533 00:00:11.803 TCP 12.102.0.1:57442 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:19:45.105 00:06:00.135 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:25:23.373 00:00:11.807 TCP 12.102.0.1:40376 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:26:15.441 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:26:14.974 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.480 00:00:00.026 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.213 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.723 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.596 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:26:15.189 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:26:25.221 00:00:11.803 TCP 12.102.0.1:55600 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:21:45.106 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:27:27.086 00:00:11.765 TCP 12.102.0.1:42752 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:28:28.883 00:00:11.863 TCP 12.102.0.1:44400 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:29:30.785 00:00:11.808 TCP 12.102.0.1:41322 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:30:32.635 00:00:11.874 TCP 12.102.0.1:49562 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:31:15.126 00:00:00.008 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:31:15.107 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.309 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.284 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.148 00:00:00.008 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.357 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:31:15.239 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:26:45.110 00:06:00.131 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:31:34.543 00:00:11.803 TCP 12.102.0.1:43298 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:32:36.386 00:00:11.816 TCP 12.102.0.1:50372 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:28:45.114 00:06:00.124 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:33:38.245 00:00:11.759 TCP 12.102.0.1:43920 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:34:40.070 00:00:11.807 TCP 12.102.0.1:47380 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:35:41.906 00:00:11.767 TCP 12.102.0.1:36992 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:36:15.222 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.432 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.317 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.073 00:00:00.045 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.222 00:00:00.035 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.253 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:36:15.050 00:00:00.045 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:36:43.712 00:00:11.809 TCP 12.102.0.1:54636 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:37:45.567 00:00:11.802 TCP 12.102.0.1:40930 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:33:45.112 00:06:00.130 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:38:47.409 00:00:11.752 TCP 12.102.0.1:36604 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:39:49.197 00:00:11.822 TCP 12.102.0.1:48692 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:35:45.114 00:06:00.124 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:40:51.079 00:00:11.862 TCP 12.102.0.1:57688 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:41:15.539 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.451 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.515 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.397 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.346 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.337 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:41:15.374 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:41:52.981 00:00:11.761 TCP 12.102.0.1:42174 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:42:54.783 00:00:11.764 TCP 12.102.0.1:35198 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:43:56.595 00:00:11.805 TCP 12.102.0.1:57414 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:44:58.438 00:00:11.815 TCP 12.102.0.1:43410 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:40:45.114 00:06:00.134 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:46:00.290 00:00:11.803 TCP 12.102.0.1:55632 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:46:15.585 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:46:15.556 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.729 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.598 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.608 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.872 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:46:15.632 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:47:02.130 00:00:11.802 TCP 12.102.0.1:38558 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:42:45.115 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:48:03.964 00:00:11.802 TCP 12.102.0.1:42502 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:49:05.802 00:00:11.762 TCP 12.102.0.1:55916 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:50:07.601 00:00:11.805 TCP 12.102.0.1:33722 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:51:15.529 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:51:15.552 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.535 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.497 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.510 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.505 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:51:15.620 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:51:09.447 00:00:11.763 TCP 12.102.0.1:33696 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:52:11.244 00:00:11.814 TCP 12.102.0.1:53656 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:47:45.114 00:06:00.136 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-01 14:53:13.092 00:00:11.797 TCP 12.102.0.1:57386 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:54:14.933 00:00:11.822 TCP 12.102.0.1:39434 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:49:45.117 00:06:00.130 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-01 14:55:16.794 00:00:11.807 TCP 12.102.0.1:36134 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:56:15.545 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-01 14:56:15.730 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.690 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.742 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.569 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.888 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-01 14:56:15.649 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-01 14:56:18.646 00:00:11.808 TCP 12.102.0.1:52492 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:57:20.510 00:00:11.800 TCP 12.102.0.1:41170 -> 1.101.0.1:3000 11 1507 1 2025-10-01 14:58:22.347 00:00:11.803 TCP 12.102.0.1:34534 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 122350, total packets: 1114, avg bps: 272, avg pps: 0, avg bpp: 109 Time window: 2025-10-01 13:58:45 - 2025-10-01 14:58:34 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0034s User: 0.0017s Wall: 0.0042s flows/second: 37184.4 Runtime: 0.0043s