Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 12:58:50.977 00:00:11.808 TCP 12.102.0.1:59900 -> 1.101.0.1:3000 11 1507 1 2025-11-01 12:59:52.820 00:00:12.235 TCP 12.102.0.1:59784 -> 1.101.0.1:3000 15 1926 1 2025-11-01 12:56:00.046 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 12:56:00.050 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:01:08.724 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:01:08.973 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:00:55.095 00:00:11.816 TCP 12.102.0.1:55404 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:01:08.746 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:01:08.946 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:01:08.908 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:01:09.056 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:01:09.019 00:00:00.019 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:01:56.941 00:00:11.805 TCP 12.102.0.1:39554 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:02:58.786 00:00:11.803 TCP 12.102.0.1:60042 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:04:00.630 00:00:11.809 TCP 12.102.0.1:37150 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:05:02.475 00:00:11.797 TCP 12.102.0.1:37218 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:06:09.041 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:06:09.162 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:06:09.019 00:00:00.019 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:06:09.025 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:06:09.064 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:06:09.114 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:06:09.068 00:00:00.015 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:06:04.322 00:00:11.762 TCP 12.102.0.1:36302 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:07:06.126 00:00:11.760 TCP 12.102.0.1:45036 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:03:00.052 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:03:00.048 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:08:07.926 00:00:11.823 TCP 12.102.0.1:43340 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:09:09.785 00:00:11.805 TCP 12.102.0.1:60282 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:10:11.620 00:00:11.803 TCP 12.102.0.1:53722 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:11:09.262 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:11:09.860 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.158 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.618 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.284 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.446 00:00:00.035 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:11:09.345 00:00:00.028 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:11:13.462 00:00:11.803 TCP 12.102.0.1:43674 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:12:15.302 00:00:11.757 TCP 12.102.0.1:35742 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:13:17.099 00:00:11.762 TCP 12.102.0.1:49054 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:14:18.901 00:00:11.800 TCP 12.102.0.1:59730 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:10:00.052 00:06:00.051 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:10:00.055 00:06:00.045 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:15:20.735 00:00:11.807 TCP 12.102.0.1:35690 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:16:08.984 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:16:09.115 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:16:09.042 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:16:09.284 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:16:09.006 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:16:09.283 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:16:09.285 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:16:22.584 00:00:11.797 TCP 12.102.0.1:46918 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:17:24.416 00:00:13.147 TCP 12.102.0.1:33930 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:18:27.601 00:00:11.799 TCP 12.102.0.1:44378 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:19:29.441 00:00:11.800 TCP 12.102.0.1:46496 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:20:31.281 00:00:11.802 TCP 12.102.0.1:56842 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:21:09.311 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:21:09.236 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.437 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.468 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.334 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.422 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:21:09.118 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:21:33.119 00:00:11.800 TCP 12.102.0.1:44444 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:17:00.057 00:06:00.050 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:17:00.060 00:06:00.045 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:22:34.959 00:00:11.804 TCP 12.102.0.1:46512 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:23:36.799 00:00:11.805 TCP 12.102.0.1:40260 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:24:38.641 00:00:12.312 TCP 12.102.0.1:34618 -> 1.101.0.1:3000 15 1926 1 2025-11-01 13:25:41.002 00:00:11.805 TCP 12.102.0.1:58844 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:26:09.395 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:26:09.430 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:26:09.486 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:26:09.418 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:26:09.454 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:26:09.089 00:00:00.045 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:26:09.461 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:26:42.851 00:00:11.798 TCP 12.102.0.1:50508 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:27:44.687 00:00:11.775 TCP 12.102.0.1:56666 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:28:46.503 00:00:11.798 TCP 12.102.0.1:41554 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:24:00.059 00:06:00.048 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:24:00.057 00:06:00.054 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:29:48.340 00:00:11.820 TCP 12.102.0.1:50006 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:30:50.199 00:00:11.761 TCP 12.102.0.1:59508 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:31:09.429 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:31:09.575 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.604 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.604 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.452 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.585 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:31:09.645 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:31:52.002 00:00:11.808 TCP 12.102.0.1:48582 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:32:53.850 00:00:11.804 TCP 12.102.0.1:32942 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:33:55.691 00:00:12.255 TCP 12.102.0.1:36202 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:34:57.983 00:00:11.805 TCP 12.102.0.1:41104 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:31:00.062 00:06:00.050 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:31:00.060 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:36:09.408 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:36:09.616 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:36:09.725 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:35:59.832 00:00:11.773 TCP 12.102.0.1:57112 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:36:09.558 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:36:09.430 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:36:09.822 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:36:09.613 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:37:01.639 00:00:11.947 TCP 12.102.0.1:49624 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:38:03.626 00:00:11.804 TCP 12.102.0.1:60348 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:39:05.465 00:00:11.815 TCP 12.102.0.1:40648 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:40:07.315 00:00:11.804 TCP 12.102.0.1:41484 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:41:10.320 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:41:10.473 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:41:10.525 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:41:10.500 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:41:10.343 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:41:10.353 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:41:10.352 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:41:09.161 00:00:11.773 TCP 12.102.0.1:60702 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:42:10.967 00:00:11.810 TCP 12.102.0.1:51328 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:38:00.062 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:38:00.061 00:06:00.056 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:43:12.817 00:00:11.806 TCP 12.102.0.1:46464 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:44:14.664 00:00:11.810 TCP 12.102.0.1:41222 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:45:16.515 00:00:11.807 TCP 12.102.0.1:57586 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:46:09.857 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:46:09.751 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:46:10.027 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:46:09.853 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:46:09.880 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:46:09.848 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:46:09.734 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:46:18.361 00:00:11.824 TCP 12.102.0.1:51534 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:47:20.222 00:00:11.802 TCP 12.102.0.1:55226 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:48:22.080 00:00:11.836 TCP 12.102.0.1:40734 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:49:23.954 00:00:11.799 TCP 12.102.0.1:40614 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:45:00.062 00:06:00.055 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:45:00.064 00:06:00.051 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:50:25.791 00:00:11.807 TCP 12.102.0.1:52156 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:51:09.895 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:51:10.076 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:51:09.916 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:51:09.692 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:51:10.065 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:51:09.890 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:51:09.670 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:51:27.641 00:00:11.848 TCP 12.102.0.1:53278 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:52:29.529 00:00:11.853 TCP 12.102.0.1:46448 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:53:31.422 00:00:11.804 TCP 12.102.0.1:59452 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:54:33.267 00:00:11.802 TCP 12.102.0.1:54214 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:55:35.114 00:00:11.809 TCP 12.102.0.1:47238 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:56:10.416 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.259 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.400 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.257 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.217 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.400 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 13:56:10.236 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 13:56:36.961 00:00:11.843 TCP 12.102.0.1:44322 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:52:00.064 00:06:00.053 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 13:52:00.066 00:06:00.049 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 13:57:38.850 00:00:11.804 TCP 12.102.0.1:42252 -> 1.101.0.1:3000 11 1507 1 2025-11-01 13:58:40.700 00:00:11.818 TCP 12.102.0.1:46694 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 126417, total packets: 1161, avg bps: 268, avg pps: 0, avg bpp: 108 Time window: 2025-11-01 12:56:00 - 2025-11-01 13:58:52 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0055s User: 0.0000s Wall: 0.0021s flows/second: 76045.4 Runtime: 0.0021s