Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-20 06:58:43.737 00:00:11.857 TCP 12.102.0.1:58684 -> 1.101.0.1:3000 11 1507 1 2025-10-20 06:59:45.636 00:00:11.769 TCP 12.102.0.1:55724 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:00:14.688 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:00:14.827 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:00:15.011 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:00:14.550 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:00:14.711 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:00:14.856 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:00:14.794 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:00:47.448 00:00:11.826 TCP 12.102.0.1:47142 -> 1.101.0.1:3000 11 1507 1 2025-10-20 06:56:54.078 00:06:00.119 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:01:49.314 00:00:11.804 TCP 12.102.0.1:40320 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:02:51.156 00:00:11.806 TCP 12.102.0.1:58890 -> 1.101.0.1:3000 11 1507 1 2025-10-20 06:58:54.082 00:06:00.115 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:03:52.998 00:00:11.802 TCP 12.102.0.1:40740 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:04:54.838 00:00:11.797 TCP 12.102.0.1:48316 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:05:14.888 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:05:15.046 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:05:15.106 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:05:14.911 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:05:14.956 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:05:14.994 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:05:15.028 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:05:56.672 00:00:11.812 TCP 12.102.0.1:49800 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:06:58.527 00:00:11.815 TCP 12.102.0.1:55582 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:08:00.377 00:00:11.820 TCP 12.102.0.1:58060 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:03:54.079 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:09:02.240 00:00:11.833 TCP 12.102.0.1:36460 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:10:14.921 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:10:14.971 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:10:04.101 00:00:11.762 TCP 12.102.0.1:48196 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:10:15.068 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:10:14.996 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:10:14.942 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:10:15.135 00:00:00.034 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:10:15.006 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:05:54.083 00:06:00.113 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:11:05.904 00:00:11.813 TCP 12.102.0.1:43910 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:12:07.754 00:00:11.800 TCP 12.102.0.1:44642 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:13:09.595 00:00:11.880 TCP 12.102.0.1:50842 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:14:11.522 00:00:11.952 TCP 12.102.0.1:47766 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:15:15.330 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.105 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.242 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.216 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.107 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.255 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:15:15.194 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:15:13.514 00:00:11.760 TCP 12.102.0.1:49072 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:10:54.082 00:06:00.118 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:16:15.314 00:00:11.764 TCP 12.102.0.1:51742 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:17:17.116 00:00:11.806 TCP 12.102.0.1:57484 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:12:54.085 00:06:00.112 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:18:18.958 00:00:11.804 TCP 12.102.0.1:46386 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:19:20.800 00:00:11.865 TCP 12.102.0.1:36402 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:20:15.123 00:00:00.049 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.338 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.166 00:00:00.053 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.171 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.288 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.265 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:20:15.150 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:20:22.704 00:00:11.803 TCP 12.102.0.1:57522 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:21:24.552 00:00:11.766 TCP 12.102.0.1:45800 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:22:26.361 00:00:11.853 TCP 12.102.0.1:35480 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:17:54.084 00:06:00.118 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:23:28.251 00:00:11.808 TCP 12.102.0.1:45090 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:24:30.102 00:00:11.789 TCP 12.102.0.1:40416 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:19:54.087 00:06:00.111 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:25:15.304 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:25:15.444 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:25:15.328 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:25:15.362 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:25:15.318 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:25:15.411 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:25:15.350 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:25:31.921 00:00:11.828 TCP 12.102.0.1:35920 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:26:33.785 00:00:11.815 TCP 12.102.0.1:33076 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:27:35.653 00:00:11.816 TCP 12.102.0.1:56950 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:28:37.510 00:00:11.796 TCP 12.102.0.1:42290 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:29:39.348 00:00:11.821 TCP 12.102.0.1:41984 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:24:54.086 00:06:00.117 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:30:15.501 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.608 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.431 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.382 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.503 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.395 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:30:15.361 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:30:41.240 00:00:11.802 TCP 12.102.0.1:49444 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:31:43.081 00:00:11.811 TCP 12.102.0.1:38484 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:26:54.088 00:06:00.111 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:32:44.931 00:00:11.812 TCP 12.102.0.1:33000 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:33:46.791 00:00:11.823 TCP 12.102.0.1:33668 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:34:48.651 00:00:11.848 TCP 12.102.0.1:56250 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:35:15.391 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:35:15.575 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.658 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.550 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.414 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.524 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:35:15.608 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:35:50.536 00:00:11.804 TCP 12.102.0.1:50622 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:31:54.088 00:06:00.115 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:36:52.374 00:00:11.807 TCP 12.102.0.1:33216 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:37:54.220 00:00:11.763 TCP 12.102.0.1:52106 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:33:54.091 00:06:00.111 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:38:56.025 00:00:11.764 TCP 12.102.0.1:60928 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:39:57.824 00:00:11.807 TCP 12.102.0.1:54950 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:40:15.653 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.655 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.791 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.618 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.562 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.619 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:40:15.597 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:40:59.666 00:00:11.761 TCP 12.102.0.1:40910 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:42:01.466 00:00:11.803 TCP 12.102.0.1:52984 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:43:03.313 00:00:12.229 TCP 12.102.0.1:45490 -> 1.101.0.1:3000 15 1926 1 2025-10-20 07:38:54.091 00:06:00.114 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:44:05.578 00:00:11.766 TCP 12.102.0.1:56142 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:45:15.673 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.779 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.597 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.747 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.768 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.580 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:45:15.724 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:45:07.380 00:00:11.767 TCP 12.102.0.1:37984 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:40:54.094 00:06:00.110 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:46:09.184 00:00:11.765 TCP 12.102.0.1:57358 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:47:10.992 00:00:11.812 TCP 12.102.0.1:47266 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:48:12.847 00:00:12.237 TCP 12.102.0.1:54424 -> 1.101.0.1:3000 15 1926 1 2025-10-20 07:49:15.121 00:00:11.767 TCP 12.102.0.1:36162 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:50:15.788 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:50:16.052 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:50:15.813 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:50:16.086 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:50:15.811 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:50:15.931 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:50:15.981 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:50:16.929 00:00:11.812 TCP 12.102.0.1:36330 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:45:54.091 00:06:00.115 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:51:18.779 00:00:12.285 TCP 12.102.0.1:33310 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:52:21.094 00:00:11.761 TCP 12.102.0.1:55928 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:47:54.095 00:06:00.110 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-20 07:53:22.894 00:00:11.763 TCP 12.102.0.1:41270 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:54:24.699 00:00:11.802 TCP 12.102.0.1:58900 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:55:15.937 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-20 07:55:15.954 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-20 07:55:16.033 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-20 07:55:15.723 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-20 07:55:15.944 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-20 07:55:15.963 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-20 07:55:15.699 00:00:00.027 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-20 07:55:26.543 00:00:11.802 TCP 12.102.0.1:59788 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:56:28.380 00:00:11.817 TCP 12.102.0.1:33358 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:57:30.230 00:00:11.815 TCP 12.102.0.1:42424 -> 1.101.0.1:3000 11 1507 1 2025-10-20 07:52:54.094 00:06:00.122 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-20 07:58:32.082 00:00:11.800 TCP 12.102.0.1:47310 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 160, total bytes: 125556, total packets: 1147, avg bps: 270, avg pps: 0, avg bpp: 109 Time window: 2025-10-20 06:56:54 - 2025-10-20 07:58:54 Total flows processed: 160, passed: 160, Blocks skipped: 0, Bytes read: 16704 Sys: 0.0055s User: 0.0008s Wall: 0.0022s flows/second: 71751.2 Runtime: 0.0022s