Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-22 13:59:08.794 00:00:11.806 TCP 12.102.0.1:59416 -> 1.101.0.1:3000 11 1507 1 2025-10-22 13:54:55.109 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:00:10.638 00:00:11.798 TCP 12.102.0.1:44138 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:01:21.077 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:01:21.208 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:01:21.119 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:01:21.036 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:01:21.100 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:01:21.103 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:01:21.091 00:00:00.051 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:01:12.490 00:00:11.801 TCP 12.102.0.1:43916 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:02:14.331 00:00:11.805 TCP 12.102.0.1:54650 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:03:16.169 00:00:11.763 TCP 12.102.0.1:37744 -> 1.101.0.1:3000 11 1507 1 2025-10-22 13:58:55.111 00:06:00.116 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:04:17.976 00:00:11.796 TCP 12.102.0.1:35144 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:05:19.813 00:00:11.799 TCP 12.102.0.1:54772 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:06:21.135 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:06:21.088 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.217 00:00:00.041 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.129 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.159 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.304 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.162 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:06:21.650 00:00:11.795 TCP 12.102.0.1:54976 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:01:55.112 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:07:23.487 00:00:11.797 TCP 12.102.0.1:37542 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:08:25.327 00:00:11.807 TCP 12.102.0.1:54934 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:09:27.171 00:00:11.809 TCP 12.102.0.1:59986 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:10:29.025 00:00:11.808 TCP 12.102.0.1:37726 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:05:55.113 00:06:00.115 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:11:21.063 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.285 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.147 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.175 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.150 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.238 00:00:00.020 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:11:21.125 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:11:30.870 00:00:11.794 TCP 12.102.0.1:48688 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:12:32.703 00:00:11.806 TCP 12.102.0.1:42720 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:13:34.545 00:00:11.793 TCP 12.102.0.1:56968 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:08:55.111 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:14:36.375 00:00:12.252 TCP 12.102.0.1:44404 -> 1.101.0.1:3000 15 1926 1 2025-10-22 14:15:38.663 00:00:11.760 TCP 12.102.0.1:39960 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:16:21.213 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:16:21.446 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:16:21.433 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:16:21.524 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:16:21.237 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:16:21.430 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:16:21.228 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:16:40.466 00:00:11.809 TCP 12.102.0.1:42768 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:12:55.114 00:06:00.116 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:17:42.316 00:00:11.807 TCP 12.102.0.1:36956 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:18:44.167 00:00:11.762 TCP 12.102.0.1:49432 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:19:45.981 00:00:11.809 TCP 12.102.0.1:59228 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:15:55.115 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:20:47.830 00:00:11.802 TCP 12.102.0.1:43406 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:21:21.479 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.602 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.654 00:00:00.033 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.454 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.595 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.624 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:21:21.430 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:21:49.673 00:00:11.810 TCP 12.102.0.1:47606 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:22:51.536 00:00:11.816 TCP 12.102.0.1:49076 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:23:53.389 00:00:11.763 TCP 12.102.0.1:58654 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:19:55.117 00:06:00.118 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:24:55.190 00:00:12.408 TCP 12.102.0.1:50246 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:25:57.634 00:00:11.806 TCP 12.102.0.1:48310 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:26:21.544 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:26:21.536 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:26:21.536 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:26:21.461 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:26:21.568 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:26:21.622 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:26:21.499 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:26:59.472 00:00:11.797 TCP 12.102.0.1:55778 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:22:55.116 00:06:00.120 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:28:01.306 00:00:11.801 TCP 12.102.0.1:54546 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:29:03.145 00:00:11.820 TCP 12.102.0.1:35902 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:30:05.007 00:00:11.802 TCP 12.102.0.1:48114 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:31:06.848 00:00:11.854 TCP 12.102.0.1:32890 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:31:21.405 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.685 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.440 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.652 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.628 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.627 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:31:21.630 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:26:55.119 00:06:00.115 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:32:08.740 00:00:11.797 TCP 12.102.0.1:39404 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:33:10.578 00:00:11.804 TCP 12.102.0.1:41772 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:34:12.427 00:00:11.803 TCP 12.102.0.1:38842 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:29:55.118 00:06:00.121 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:35:14.265 00:00:11.763 TCP 12.102.0.1:42840 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:36:21.615 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:36:21.683 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:36:21.778 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:36:21.640 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:36:21.637 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:36:21.709 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:36:21.579 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:36:16.079 00:00:11.761 TCP 12.102.0.1:48404 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:37:17.881 00:00:11.797 TCP 12.102.0.1:34356 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:38:19.721 00:00:11.806 TCP 12.102.0.1:55596 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:33:55.120 00:06:00.116 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:39:21.565 00:00:12.647 TCP 12.102.0.1:33040 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:40:24.252 00:00:11.808 TCP 12.102.0.1:52120 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:41:21.808 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:41:22.058 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:41:21.721 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:41:21.618 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:41:21.900 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:41:21.799 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:41:21.595 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:41:26.096 00:00:11.799 TCP 12.102.0.1:38036 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:36:55.117 00:06:00.124 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:42:27.936 00:00:11.812 TCP 12.102.0.1:34220 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:43:29.787 00:00:11.806 TCP 12.102.0.1:53572 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:44:31.637 00:00:11.759 TCP 12.102.0.1:39354 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:45:33.443 00:00:11.805 TCP 12.102.0.1:43184 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:40:55.120 00:06:00.119 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:46:22.218 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:46:22.064 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:46:22.305 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:46:21.854 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:46:21.753 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:46:22.052 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:46:21.832 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:46:35.289 00:00:11.803 TCP 12.102.0.1:46520 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:47:37.133 00:00:11.806 TCP 12.102.0.1:36220 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:48:38.983 00:00:11.768 TCP 12.102.0.1:42238 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:43:55.120 00:06:00.124 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:49:40.793 00:00:11.798 TCP 12.102.0.1:48160 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:50:42.633 00:00:11.802 TCP 12.102.0.1:44134 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:51:22.057 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.168 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.172 00:00:00.032 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.120 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.284 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.030 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:51:22.097 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:51:44.475 00:00:11.807 TCP 12.102.0.1:35380 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:52:46.308 00:00:11.763 TCP 12.102.0.1:51192 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:47:55.122 00:06:00.120 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-22 14:53:48.113 00:00:11.762 TCP 12.102.0.1:48252 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:54:49.914 00:00:11.824 TCP 12.102.0.1:39394 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:50:55.121 00:06:00.125 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-22 14:55:51.774 00:00:11.801 TCP 12.102.0.1:42250 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:56:22.208 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.295 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.149 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.072 00:00:00.032 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.013 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.086 00:00:00.040 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-22 14:56:22.048 00:00:00.033 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-22 14:56:53.614 00:00:11.802 TCP 12.102.0.1:40638 -> 1.101.0.1:3000 11 1507 1 2025-10-22 14:57:55.451 00:00:11.809 TCP 12.102.0.1:51912 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 159, total bytes: 123630, total packets: 1132, avg bps: 260, avg pps: 0, avg bpp: 109 Time window: 2025-10-22 13:54:55 - 2025-10-22 14:58:07 Total flows processed: 159, passed: 159, Blocks skipped: 0, Bytes read: 16600 Sys: 0.0033s User: 0.0011s Wall: 0.0014s flows/second: 112045.4 Runtime: 0.0014s