Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-28 14:58:53.952 00:00:11.806 TCP 12.102.0.1:43814 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:59:15.815 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 14:59:15.799 00:00:00.020 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 14:59:15.867 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 14:59:15.837 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 14:59:15.984 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 14:59:15.843 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 14:59:15.835 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 14:59:55.796 00:00:11.802 TCP 12.102.0.1:53240 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:55:58.096 00:06:00.090 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 15:00:57.637 00:00:11.804 TCP 12.102.0.1:46268 -> 1.101.0.1:3000 11 1507 1 2025-10-28 14:57:58.099 00:04:00.086 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-10-28 15:01:59.481 00:00:11.801 TCP 12.102.0.1:34152 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:03:01.321 00:00:11.804 TCP 12.102.0.1:57716 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:04:16.288 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:04:16.458 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:04:16.246 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:04:16.352 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:04:16.365 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:04:16.239 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:04:03.161 00:00:11.800 TCP 12.102.0.1:52956 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:04:16.329 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:05:05.002 00:00:11.797 TCP 12.102.0.1:47444 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:06:06.840 00:00:11.819 TCP 12.102.0.1:42728 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:02:58.101 00:04:00.085 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-10-28 15:07:08.698 00:00:11.804 TCP 12.102.0.1:56046 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:02:58.099 00:06:00.090 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 15:08:10.537 00:00:11.768 TCP 12.102.0.1:39260 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:09:16.030 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:09:16.074 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:09:15.965 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:09:15.709 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:09:15.850 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:09:15.642 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:09:15.688 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:09:12.343 00:00:11.821 TCP 12.102.0.1:45370 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:10:14.200 00:00:11.814 TCP 12.102.0.1:44260 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:11:16.074 00:00:11.800 TCP 12.102.0.1:60576 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:09:58.100 00:02:00.089 TCP 179.10.12.10:179 -> 179.10.12.12:58070 6 369 1 2025-10-28 15:12:17.905 00:00:12.559 TCP 12.102.0.1:53394 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:07:58.102 00:06:00.085 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 15:13:20.500 00:00:11.803 TCP 12.102.0.1:55888 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:14:16.377 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:14:16.571 00:00:00.028 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:14:16.607 00:00:00.018 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:14:16.351 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:14:16.400 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:14:16.614 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:14:16.579 00:00:00.025 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:14:22.337 00:00:11.813 TCP 12.102.0.1:38506 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:15:24.174 00:00:11.801 TCP 12.102.0.1:45402 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:16:26.007 00:00:11.799 TCP 12.102.0.1:47038 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:12:58.101 00:04:00.091 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-10-28 15:17:27.843 00:00:11.803 TCP 12.102.0.1:41944 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:18:29.686 00:00:11.802 TCP 12.102.0.1:50902 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:19:16.182 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:19:16.081 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:19:16.170 00:00:00.037 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:19:15.933 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:19:16.184 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:19:16.214 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:19:15.910 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:19:31.526 00:00:11.806 TCP 12.102.0.1:34056 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:14:58.103 00:06:00.091 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 15:20:33.370 00:00:11.819 TCP 12.102.0.1:50272 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:21:35.228 00:00:11.803 TCP 12.102.0.1:47892 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:17:58.100 00:04:00.098 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-10-28 15:22:37.078 00:00:11.809 TCP 12.102.0.1:51770 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:23:38.931 00:00:11.819 TCP 12.102.0.1:56608 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:24:16.088 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.405 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.068 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.270 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.194 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.074 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:24:16.246 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:24:40.786 00:00:11.765 TCP 12.102.0.1:48038 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:25:42.591 00:00:11.801 TCP 12.102.0.1:43324 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:22:58.101 00:04:00.099 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-10-28 15:21:58.104 00:06:00.094 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 15:26:44.429 00:00:11.762 TCP 12.102.0.1:59092 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:27:46.229 00:00:11.802 TCP 12.102.0.1:39564 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:28:58.104 00:00:00.094 TCP 179.10.12.12:58070 -> 179.10.12.10:179 2 123 1 2025-10-28 15:28:48.079 00:00:11.778 TCP 12.102.0.1:40192 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:29:16.409 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:29:16.412 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.580 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.453 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.432 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.519 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:29:16.273 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:29:49.894 00:00:11.809 TCP 12.102.0.1:40964 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:30:51.738 00:00:11.812 TCP 12.102.0.1:59988 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:31:53.578 00:00:11.804 TCP 12.102.0.1:44358 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:27:58.102 00:06:00.100 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 15:32:55.419 00:00:11.805 TCP 12.102.0.1:52780 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:29:58.106 00:04:00.093 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-10-28 15:33:57.255 00:00:11.800 TCP 12.102.0.1:41408 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:34:16.556 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.479 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.579 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.513 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.686 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.276 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:34:16.491 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:34:59.097 00:00:11.760 TCP 12.102.0.1:60306 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:36:00.897 00:00:11.762 TCP 12.102.0.1:39216 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:37:02.695 00:00:11.801 TCP 12.102.0.1:48896 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:38:04.533 00:00:11.801 TCP 12.102.0.1:35572 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:34:58.105 00:04:00.095 TCP 179.10.12.12:58070 -> 179.10.12.10:179 10 615 1 2025-10-28 15:39:16.818 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:39:16.776 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:39:06.376 00:00:11.812 TCP 12.102.0.1:38038 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:39:16.976 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:39:16.956 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:39:16.840 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:39:16.878 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:39:16.836 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:34:58.103 00:06:00.100 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-10-28 15:40:08.225 00:00:11.805 TCP 12.102.0.1:46050 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:41:10.075 00:00:11.854 TCP 12.102.0.1:36524 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:42:11.968 00:00:11.760 TCP 12.102.0.1:50472 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:43:13.769 00:00:11.756 TCP 12.102.0.1:43582 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:41:58.104 00:02:00.099 TCP 179.10.12.10:179 -> 179.10.12.12:58070 6 369 1 2025-10-28 15:44:16.603 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.787 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.700 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.760 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.779 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.476 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:44:16.737 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:44:15.560 00:00:11.806 TCP 12.102.0.1:45072 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:39:58.106 00:06:00.094 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 15:45:17.409 00:00:11.837 TCP 12.102.0.1:33936 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:46:19.293 00:00:11.814 TCP 12.102.0.1:46222 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:47:21.142 00:00:11.809 TCP 12.102.0.1:46202 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:48:22.989 00:00:11.798 TCP 12.102.0.1:40772 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:44:58.104 00:04:00.105 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-10-28 15:49:16.770 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:49:16.769 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.774 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.805 00:00:00.037 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.794 00:00:00.042 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.787 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:49:16.989 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:49:24.823 00:00:11.801 TCP 12.102.0.1:50554 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:50:26.664 00:00:11.813 TCP 12.102.0.1:50476 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:51:28.514 00:00:11.768 TCP 12.102.0.1:38348 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:46:58.107 00:06:00.100 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-10-28 15:52:30.313 00:00:11.761 TCP 12.102.0.1:50434 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:53:32.108 00:00:11.764 TCP 12.102.0.1:50048 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:49:58.105 00:04:00.105 TCP 179.10.12.10:179 -> 179.10.12.12:58070 10 615 1 2025-10-28 15:54:16.967 00:00:00.026 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.711 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.923 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.801 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-10-28 15:54:17.014 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.799 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-10-28 15:54:16.778 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-10-28 15:54:33.920 00:00:11.795 TCP 12.102.0.1:51458 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:55:35.748 00:00:11.804 TCP 12.102.0.1:37584 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:53:58.109 00:02:00.101 TCP 179.10.12.12:58070 -> 179.10.12.10:179 6 369 1 2025-10-28 15:56:37.589 00:00:11.758 TCP 12.102.0.1:38426 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:57:39.391 00:00:11.778 TCP 12.102.0.1:35222 -> 1.101.0.1:3000 11 1507 1 2025-10-28 15:58:41.209 00:00:11.809 TCP 12.102.0.1:44108 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 165, total bytes: 124595, total packets: 1137, avg bps: 264, avg pps: 0, avg bpp: 109 Time window: 2025-10-28 14:55:58 - 2025-10-28 15:58:53 Total flows processed: 165, passed: 165, Blocks skipped: 0, Bytes read: 17224 Sys: 0.0043s User: 0.0017s Wall: 0.0021s flows/second: 77681.0 Runtime: 0.0021s