Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-01 15:59:21.833 00:00:11.802 TCP 12.102.0.1:52230 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:00:23.681 00:00:11.808 TCP 12.102.0.1:36200 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:01:12.663 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.716 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.543 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.505 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.716 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.634 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:01:12.483 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:01:25.527 00:00:11.803 TCP 12.102.0.1:51390 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:02:27.366 00:00:12.794 TCP 12.102.0.1:56738 -> 1.101.0.1:3000 11 1507 1 2025-11-01 15:58:00.088 00:06:00.068 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 15:58:00.092 00:06:00.062 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:03:30.196 00:00:11.793 TCP 12.102.0.1:52050 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:04:32.040 00:00:11.800 TCP 12.102.0.1:33878 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:05:33.878 00:00:11.811 TCP 12.102.0.1:48462 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:06:12.658 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.850 00:00:00.025 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.745 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.604 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.490 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.563 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:06:12.582 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:06:35.731 00:00:11.801 TCP 12.102.0.1:39200 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:07:37.572 00:00:11.798 TCP 12.102.0.1:39034 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:08:39.410 00:00:11.805 TCP 12.102.0.1:37424 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:09:41.251 00:00:11.807 TCP 12.102.0.1:43262 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:05:00.093 00:06:00.061 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:05:00.090 00:06:00.067 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:10:43.097 00:00:11.799 TCP 12.102.0.1:39230 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:11:12.749 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:11:12.806 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:11:12.570 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:11:12.750 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:11:12.771 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:11:12.827 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:11:12.706 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:11:44.935 00:00:11.813 TCP 12.102.0.1:36254 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:12:46.787 00:00:11.802 TCP 12.102.0.1:39370 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:13:48.627 00:00:12.539 TCP 12.102.0.1:54894 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:14:51.213 00:00:11.808 TCP 12.102.0.1:37108 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:15:53.076 00:00:11.759 TCP 12.102.0.1:35680 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:16:13.542 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.590 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.588 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.362 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.656 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.269 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:16:13.338 00:00:00.026 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:12:00.091 00:06:00.068 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:12:00.094 00:06:00.062 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:16:54.871 00:00:11.766 TCP 12.102.0.1:35542 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:17:56.669 00:00:11.818 TCP 12.102.0.1:49606 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:18:58.529 00:00:11.802 TCP 12.102.0.1:41982 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:20:00.373 00:00:11.811 TCP 12.102.0.1:54546 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:21:12.862 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:21:12.906 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:21:13.073 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:21:13.156 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:21:12.885 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:21:13.095 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:21:13.037 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:21:02.225 00:00:11.850 TCP 12.102.0.1:46030 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:22:04.110 00:00:11.799 TCP 12.102.0.1:53330 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:23:05.951 00:00:11.778 TCP 12.102.0.1:38658 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:19:00.096 00:06:00.063 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:19:00.094 00:06:00.068 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:24:07.767 00:00:11.805 TCP 12.102.0.1:48506 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:25:09.608 00:00:11.795 TCP 12.102.0.1:33286 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:26:12.834 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:26:13.052 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:26:13.148 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:26:13.070 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:26:12.858 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:26:13.076 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:26:13.179 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:26:11.445 00:00:11.811 TCP 12.102.0.1:41662 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:27:13.293 00:00:11.804 TCP 12.102.0.1:34586 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:28:15.133 00:00:11.759 TCP 12.102.0.1:49724 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:29:16.931 00:00:11.767 TCP 12.102.0.1:41116 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:30:18.739 00:00:11.762 TCP 12.102.0.1:53566 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:26:00.094 00:06:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:26:00.097 00:06:00.064 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:31:12.933 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.158 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.370 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.024 00:00:00.020 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.159 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.264 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:31:13.000 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:31:20.544 00:00:11.803 TCP 12.102.0.1:41792 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:32:22.384 00:00:11.808 TCP 12.102.0.1:41908 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:33:24.230 00:00:11.807 TCP 12.102.0.1:49128 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:34:26.078 00:00:17.106 TCP 12.102.0.1:50848 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:35:33.223 00:00:11.798 TCP 12.102.0.1:47264 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:36:13.430 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:36:13.452 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.465 00:00:00.027 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.485 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.454 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.473 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:36:13.212 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:36:35.085 00:00:11.807 TCP 12.102.0.1:60420 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:37:36.928 00:00:11.825 TCP 12.102.0.1:38740 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:33:00.097 00:06:00.064 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:33:00.095 00:06:00.069 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:38:38.790 00:00:11.804 TCP 12.102.0.1:51932 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:39:40.632 00:00:11.777 TCP 12.102.0.1:43358 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:40:42.446 00:00:11.756 TCP 12.102.0.1:42412 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:41:13.466 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.495 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.489 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.272 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.417 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.468 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:41:13.248 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:41:44.242 00:00:11.795 TCP 12.102.0.1:47110 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:42:46.082 00:00:11.797 TCP 12.102.0.1:51078 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:43:47.913 00:00:11.822 TCP 12.102.0.1:44598 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:40:00.095 00:06:00.070 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:44:49.777 00:00:11.809 TCP 12.102.0.1:40452 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:40:00.097 00:06:00.065 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:45:51.629 00:00:11.797 TCP 12.102.0.1:50688 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:46:13.537 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.475 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.573 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.443 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.582 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.441 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:46:13.419 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:46:53.464 00:00:11.804 TCP 12.102.0.1:45524 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:47:55.300 00:00:11.761 TCP 12.102.0.1:34432 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:48:57.099 00:00:11.808 TCP 12.102.0.1:43744 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:49:58.955 00:00:11.756 TCP 12.102.0.1:37178 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:51:13.317 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:51:13.632 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:51:00.756 00:00:11.806 TCP 12.102.0.1:59256 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:51:13.454 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:51:13.719 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:51:13.339 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:51:13.739 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:51:13.701 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:47:00.104 00:06:00.060 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-01 16:47:00.100 00:06:00.065 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-01 16:52:02.606 00:00:11.770 TCP 12.102.0.1:47564 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:53:04.421 00:00:11.810 TCP 12.102.0.1:60604 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:54:06.270 00:00:11.765 TCP 12.102.0.1:58174 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:55:08.075 00:00:11.807 TCP 12.102.0.1:36030 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:56:13.753 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-01 16:56:13.764 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-01 16:56:13.816 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-01 16:56:14.021 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-01 16:56:14.069 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-01 16:56:14.008 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-01 16:56:13.984 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-01 16:56:09.926 00:00:11.785 TCP 12.102.0.1:42140 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:57:11.746 00:00:11.773 TCP 12.102.0.1:52370 -> 1.101.0.1:3000 11 1507 1 2025-11-01 16:58:13.556 00:00:11.768 TCP 12.102.0.1:38642 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 158, total bytes: 122350, total packets: 1114, avg bps: 269, avg pps: 0, avg bpp: 109 Time window: 2025-11-01 15:58:00 - 2025-11-01 16:58:25 Total flows processed: 158, passed: 158, Blocks skipped: 0, Bytes read: 16496 Sys: 0.0052s User: 0.0010s Wall: 0.0024s flows/second: 64540.3 Runtime: 0.0025s