Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 03:59:36.848 00:00:11.796 TCP 12.102.0.1:52160 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:00:38.683 00:00:11.799 TCP 12.102.0.1:52254 -> 1.101.0.1:3000 11 1507 1 2025-11-15 03:57:06.868 00:05:00.232 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:01:40.518 00:00:11.804 TCP 12.102.0.1:57582 -> 1.101.0.1:3000 11 1507 1 2025-11-15 03:58:06.871 00:05:00.226 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:02:42.491 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.568 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.387 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.345 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.381 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.353 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:02:42.323 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:02:42.362 00:00:11.820 TCP 12.102.0.1:58276 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:03:44.219 00:00:23.570 TCP 12.102.0.1:33386 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:04:57.828 00:00:11.842 TCP 12.102.0.1:42328 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:05:59.695 00:00:11.777 TCP 12.102.0.1:39216 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:03:06.870 00:05:00.231 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:07:01.509 00:00:11.803 TCP 12.102.0.1:48434 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:07:42.545 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:07:42.509 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:07:42.604 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:07:42.685 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:07:42.569 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:07:42.541 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:07:42.389 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:04:06.873 00:05:00.226 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:08:03.360 00:00:11.865 TCP 12.102.0.1:53108 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:09:05.268 00:00:11.819 TCP 12.102.0.1:59584 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:10:07.132 00:00:11.799 TCP 12.102.0.1:36946 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:11:08.975 00:00:11.806 TCP 12.102.0.1:42086 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:12:10.825 00:00:11.819 TCP 12.102.0.1:53828 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:12:42.750 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:12:42.860 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:12:42.863 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:12:43.051 00:00:00.025 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:12:42.773 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:12:42.568 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:12:42.889 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:09:06.871 00:05:00.232 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:13:12.687 00:00:11.806 TCP 12.102.0.1:45106 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:10:06.874 00:05:00.227 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:14:14.536 00:00:11.818 TCP 12.102.0.1:57672 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:15:16.392 00:00:11.813 TCP 12.102.0.1:51534 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:16:18.244 00:00:19.979 TCP 12.102.0.1:47576 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:17:42.654 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:17:42.679 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:17:42.596 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:17:42.630 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:17:28.276 00:00:11.806 TCP 12.102.0.1:58170 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:17:42.683 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:17:42.539 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:17:42.606 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:18:30.134 00:00:11.833 TCP 12.102.0.1:37946 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:15:06.874 00:05:00.231 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:19:32.071 00:00:11.801 TCP 12.102.0.1:46406 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:16:06.875 00:05:00.227 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:20:33.907 00:00:11.797 TCP 12.102.0.1:51606 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:21:35.749 00:00:11.829 TCP 12.102.0.1:56922 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:22:43.269 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:22:43.358 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:22:43.257 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:22:43.141 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:22:43.210 00:00:00.040 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:22:42.986 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:22:43.118 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:22:37.617 00:00:11.803 TCP 12.102.0.1:47292 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:23:39.455 00:00:11.806 TCP 12.102.0.1:35952 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:24:41.296 00:00:11.801 TCP 12.102.0.1:59250 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:21:06.874 00:05:00.231 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:25:43.129 00:00:11.798 TCP 12.102.0.1:47988 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:22:06.876 00:05:00.226 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:26:44.967 00:00:11.830 TCP 12.102.0.1:46670 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:27:43.085 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:27:43.055 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:27:42.796 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:27:42.581 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:27:43.090 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:27:42.969 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:27:42.557 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:27:46.819 00:00:11.763 TCP 12.102.0.1:35648 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:28:48.621 00:00:11.814 TCP 12.102.0.1:34306 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:29:50.471 00:00:11.781 TCP 12.102.0.1:49084 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:27:06.873 00:05:00.235 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:30:52.281 00:00:11.762 TCP 12.102.0.1:54076 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:28:06.877 00:05:00.229 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:31:54.085 00:00:11.755 TCP 12.102.0.1:50430 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:32:42.985 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:32:43.030 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:32:43.076 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:32:42.988 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:32:43.091 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:32:43.007 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:32:43.008 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:32:55.878 00:00:11.758 TCP 12.102.0.1:51174 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:33:57.676 00:00:11.807 TCP 12.102.0.1:40644 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:34:59.519 00:00:11.783 TCP 12.102.0.1:57988 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:36:01.342 00:00:11.802 TCP 12.102.0.1:42176 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:33:06.874 00:05:00.234 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:37:03.203 00:00:11.770 TCP 12.102.0.1:39396 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:37:43.155 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:37:43.069 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:37:42.926 00:00:00.024 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:37:43.048 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:37:43.181 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:37:43.027 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:37:42.905 00:00:00.024 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:34:06.876 00:05:00.230 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:38:05.018 00:00:11.807 TCP 12.102.0.1:50156 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:39:06.861 00:00:11.772 TCP 12.102.0.1:46678 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:40:08.669 00:00:11.813 TCP 12.102.0.1:51846 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:41:10.521 00:00:12.204 TCP 12.102.0.1:40044 -> 1.101.0.1:3000 15 1926 1 2025-11-15 04:42:12.753 00:00:11.810 TCP 12.102.0.1:53912 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:42:43.213 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.396 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.304 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.182 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.391 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.268 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:42:43.160 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:39:06.876 00:05:00.234 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:43:14.603 00:00:11.769 TCP 12.102.0.1:53748 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:40:06.878 00:05:00.237 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:44:16.412 00:00:11.765 TCP 12.102.0.1:49250 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:45:18.218 00:00:11.812 TCP 12.102.0.1:38088 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:46:20.078 00:00:11.802 TCP 12.102.0.1:48908 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:47:21.923 00:00:11.786 TCP 12.102.0.1:41880 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:47:43.369 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.520 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.464 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.406 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.272 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.354 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:47:43.383 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:48:23.752 00:00:11.797 TCP 12.102.0.1:49876 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:45:06.880 00:05:00.239 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:49:25.586 00:00:12.385 TCP 12.102.0.1:43142 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:46:06.880 00:05:00.237 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:50:28.010 00:00:11.804 TCP 12.102.0.1:42424 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:51:29.850 00:00:11.809 TCP 12.102.0.1:39034 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:52:43.542 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.200 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.386 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.558 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.327 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.480 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:52:43.456 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:52:31.703 00:00:12.823 TCP 12.102.0.1:41202 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:53:34.565 00:00:11.760 TCP 12.102.0.1:43292 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:54:36.364 00:00:11.818 TCP 12.102.0.1:52558 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:51:06.878 00:05:00.243 TCP 179.10.12.12:58070 -> 179.10.12.10:179 12 738 1 2025-11-15 04:55:38.223 00:00:11.810 TCP 12.102.0.1:46890 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:52:06.881 00:05:00.238 TCP 179.10.12.10:179 -> 179.10.12.12:58070 12 738 1 2025-11-15 04:56:40.093 00:00:11.762 TCP 12.102.0.1:44788 -> 1.101.0.1:3000 11 1507 1 2025-11-15 04:57:43.440 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.637 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.478 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.321 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.593 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.324 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-15 04:57:43.298 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-15 04:57:41.894 00:00:11.801 TCP 12.102.0.1:42668 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 122246, total packets: 1123, avg bps: 268, avg pps: 0, avg bpp: 108 Time window: 2025-11-15 03:57:06 - 2025-11-15 04:57:53 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0020s User: 0.0030s Wall: 0.0022s flows/second: 73624.4 Runtime: 0.0022s