Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-24 05:59:36.206 00:00:11.765 TCP 12.102.0.1:56990 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:00:38.006 00:00:11.794 TCP 12.102.0.1:41898 -> 1.101.0.1:3000 11 1507 1 2025-10-24 05:55:55.893 00:06:00.088 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:01:39.845 00:00:11.768 TCP 12.102.0.1:54014 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:02:09.293 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.365 00:00:00.028 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.584 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.500 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.468 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.146 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:02:09.479 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:02:41.651 00:00:11.817 TCP 12.102.0.1:34134 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:03:43.505 00:00:11.765 TCP 12.102.0.1:43062 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:04:45.307 00:00:11.762 TCP 12.102.0.1:51364 -> 1.101.0.1:3000 11 1507 1 2025-10-24 05:59:55.898 00:06:00.081 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:05:47.105 00:00:11.757 TCP 12.102.0.1:38042 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:06:48.895 00:00:11.801 TCP 12.102.0.1:52008 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:07:09.371 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.373 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.417 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.279 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.466 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.288 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:07:09.258 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:02:55.897 00:06:00.087 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:07:50.734 00:00:11.771 TCP 12.102.0.1:60036 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:08:52.539 00:00:11.799 TCP 12.102.0.1:33204 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:09:54.375 00:00:11.823 TCP 12.102.0.1:60018 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:10:56.237 00:00:11.802 TCP 12.102.0.1:36220 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:06:55.899 00:06:00.082 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:12:09.283 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:12:09.365 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:12:09.130 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:12:09.166 00:00:00.036 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:12:09.307 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:12:09.442 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:12:09.285 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:11:58.080 00:00:24.748 TCP 12.102.0.1:53238 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:13:12.861 00:00:11.765 TCP 12.102.0.1:36502 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:14:14.661 00:00:11.814 TCP 12.102.0.1:37652 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:09:55.899 00:06:00.086 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:15:16.513 00:00:11.855 TCP 12.102.0.1:46720 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:16:18.409 00:00:11.800 TCP 12.102.0.1:38318 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:17:09.580 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:17:09.497 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:17:09.370 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:17:09.458 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:17:09.196 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:17:09.723 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:17:09.603 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:17:20.259 00:00:11.761 TCP 12.102.0.1:60440 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:18:22.079 00:00:11.800 TCP 12.102.0.1:45202 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:13:55.903 00:06:00.081 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:19:23.918 00:00:11.781 TCP 12.102.0.1:39130 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:20:25.743 00:00:11.799 TCP 12.102.0.1:58010 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:21:27.588 00:00:11.780 TCP 12.102.0.1:33998 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:16:55.900 00:06:00.091 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:22:09.427 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:22:09.653 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.690 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.737 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.450 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.775 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:22:09.555 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:22:29.405 00:00:11.772 TCP 12.102.0.1:55176 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:23:31.215 00:00:11.776 TCP 12.102.0.1:43028 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:24:33.032 00:00:11.770 TCP 12.102.0.1:52296 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:25:34.843 00:00:11.803 TCP 12.102.0.1:34418 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:20:55.907 00:06:00.082 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:26:36.699 00:00:20.641 TCP 12.102.0.1:41788 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:27:09.563 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:27:09.551 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:27:09.734 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:27:09.732 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:27:09.585 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:27:09.457 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:27:09.595 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:27:47.385 00:00:11.820 TCP 12.102.0.1:53448 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:23:55.905 00:06:00.091 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:28:49.242 00:00:11.805 TCP 12.102.0.1:46788 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:29:51.087 00:00:24.906 TCP 12.102.0.1:39774 -> 1.101.0.1:3000 15 1926 1 2025-10-24 06:31:06.066 00:00:11.760 TCP 12.102.0.1:33618 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:32:11.302 00:00:00.031 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:32:11.484 00:00:00.026 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:32:11.175 00:00:00.092 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:32:12.181 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:32:11.814 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:32:11.497 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:32:12.157 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:32:07.879 00:00:11.817 TCP 12.102.0.1:48522 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:27:55.908 00:06:00.085 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:33:09.732 00:00:11.856 TCP 12.102.0.1:60688 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:34:11.630 00:00:11.808 TCP 12.102.0.1:45746 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:35:13.478 00:00:11.812 TCP 12.102.0.1:43730 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:30:55.908 00:06:00.090 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:36:15.325 00:00:11.766 TCP 12.102.0.1:54332 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:37:09.775 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:37:09.700 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:37:09.753 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:37:09.943 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:37:09.798 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:37:09.931 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:37:09.875 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:37:17.126 00:00:11.811 TCP 12.102.0.1:59746 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:38:18.971 00:00:11.812 TCP 12.102.0.1:56428 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:39:20.824 00:00:11.830 TCP 12.102.0.1:47242 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:34:55.910 00:06:00.085 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:40:22.706 00:00:11.774 TCP 12.102.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:41:24.535 00:00:11.815 TCP 12.102.0.1:56436 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:42:09.846 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:42:10.049 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.826 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.846 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.870 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.753 00:00:00.020 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:42:09.878 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:42:26.398 00:00:11.809 TCP 12.102.0.1:42918 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:37:55.908 00:06:00.090 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-24 06:43:28.257 00:00:11.813 TCP 12.102.0.1:40622 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:44:30.113 00:00:11.803 TCP 12.102.0.1:35762 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:45:31.952 00:00:11.826 TCP 12.102.0.1:47610 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:46:33.816 00:00:11.803 TCP 12.102.0.1:53570 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:41:55.912 00:06:00.084 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-24 06:47:10.002 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:47:10.118 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:47:10.098 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:47:09.967 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:47:10.101 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:47:10.189 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:47:09.943 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:47:35.656 00:00:11.807 TCP 12.102.0.1:59850 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:48:37.502 00:00:11.799 TCP 12.102.0.1:50260 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:44:55.911 00:05:00.090 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-24 06:49:39.342 00:00:11.803 TCP 12.102.0.1:51706 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:50:41.185 00:00:11.795 TCP 12.102.0.1:55540 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:51:43.030 00:00:11.797 TCP 12.102.0.1:42832 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:52:10.240 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:52:10.418 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.382 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.388 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.264 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.200 00:00:00.053 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:52:10.267 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:48:55.913 00:05:00.086 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-10-24 06:52:44.866 00:00:11.801 TCP 12.102.0.1:40564 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:53:46.704 00:00:11.801 TCP 12.102.0.1:38390 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:50:55.911 00:05:00.091 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-10-24 06:54:48.542 00:00:11.797 TCP 12.102.0.1:59890 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:55:50.373 00:00:11.781 TCP 12.102.0.1:56242 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:56:52.193 00:00:11.908 TCP 12.102.0.1:52042 -> 1.101.0.1:3000 11 1507 1 2025-10-24 06:57:10.337 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-24 06:57:09.948 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-24 06:57:10.297 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-24 06:57:10.371 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-24 06:57:10.369 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-24 06:57:10.256 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-24 06:57:10.349 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-24 06:57:54.141 00:00:11.807 TCP 12.102.0.1:60966 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 121754, total packets: 1115, avg bps: 261, avg pps: 0, avg bpp: 109 Time window: 2025-10-24 05:55:55 - 2025-10-24 06:58:05 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0040s User: 0.0010s Wall: 0.0020s flows/second: 80249.5 Runtime: 0.0020s