Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 04:58:52.154 00:00:11.880 TCP 12.102.0.1:53004 -> 1.101.0.1:3000 11 1507 1 2025-11-20 04:54:09.251 00:06:00.581 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 04:59:54.077 00:00:11.810 TCP 12.102.0.1:55600 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:00:07.756 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:00:07.983 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:00:07.941 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:00:08.121 00:00:00.024 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:00:08.070 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:00:07.867 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:00:07.918 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:00:55.926 00:00:11.820 TCP 12.102.0.1:52414 -> 1.101.0.1:3000 11 1507 1 2025-11-20 04:56:09.249 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:01:57.786 00:00:11.800 TCP 12.102.0.1:46474 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:02:59.626 00:00:11.804 TCP 12.102.0.1:38432 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:04:01.467 00:00:11.756 TCP 12.102.0.1:55304 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:05:07.851 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:05:07.906 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:05:08.152 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:05:08.002 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:05:07.875 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:05:08.007 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:05:07.872 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:05:03.268 00:00:11.799 TCP 12.102.0.1:55584 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:01:09.251 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:06:05.109 00:00:11.801 TCP 12.102.0.1:53376 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:07:06.953 00:00:11.821 TCP 12.102.0.1:51178 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:03:09.250 00:06:00.587 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:08:08.813 00:00:12.076 TCP 12.102.0.1:35376 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:09:10.935 00:00:11.816 TCP 12.102.0.1:45002 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:10:07.946 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.059 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.262 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.143 00:00:00.022 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.076 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.209 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:10:08.121 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:10:12.780 00:00:11.803 TCP 12.102.0.1:38580 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:11:14.619 00:00:11.800 TCP 12.102.0.1:45064 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:12:16.459 00:00:11.763 TCP 12.102.0.1:35344 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:08:09.253 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:13:18.259 00:00:11.770 TCP 12.102.0.1:35292 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:14:20.073 00:00:11.796 TCP 12.102.0.1:59504 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:15:08.510 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.288 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.359 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.286 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.292 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.267 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:15:08.335 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:10:09.250 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:15:21.913 00:00:11.816 TCP 12.102.0.1:53322 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:16:23.771 00:00:11.808 TCP 12.102.0.1:34164 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:17:25.618 00:00:11.796 TCP 12.102.0.1:54462 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:18:27.455 00:00:11.806 TCP 12.102.0.1:37130 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:19:29.300 00:00:11.806 TCP 12.102.0.1:52982 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:20:08.811 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.656 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.711 00:00:00.033 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.305 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.555 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.523 00:00:00.024 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:20:08.281 00:00:00.022 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:15:09.253 00:06:00.583 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:20:31.148 00:00:11.805 TCP 12.102.0.1:54848 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:21:32.997 00:00:11.798 TCP 12.102.0.1:56504 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:17:09.251 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:22:34.831 00:00:11.801 TCP 12.102.0.1:56572 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:23:36.673 00:00:11.807 TCP 12.102.0.1:49594 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:24:38.519 00:00:11.773 TCP 12.102.0.1:57896 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:25:08.162 00:00:00.027 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:25:08.354 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:25:08.712 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:25:08.315 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:25:08.186 00:00:00.026 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:25:08.647 00:00:00.025 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:25:08.590 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:25:40.326 00:00:13.019 TCP 12.102.0.1:41438 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:26:43.386 00:00:11.814 TCP 12.102.0.1:51440 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:22:09.256 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:27:45.240 00:00:11.776 TCP 12.102.0.1:58354 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:28:47.079 00:00:11.799 TCP 12.102.0.1:41720 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:24:09.254 00:06:00.588 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:29:48.924 00:00:11.833 TCP 12.102.0.1:54790 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:30:08.768 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:30:08.762 00:00:00.021 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:30:08.560 00:00:00.021 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:30:08.427 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:30:08.791 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:30:08.611 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:30:08.726 00:00:00.017 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:30:50.793 00:00:11.863 TCP 12.102.0.1:60414 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:31:52.700 00:00:11.806 TCP 12.102.0.1:36544 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:32:54.542 00:00:11.818 TCP 12.102.0.1:45632 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:33:56.398 00:00:11.809 TCP 12.102.0.1:33218 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:29:09.257 00:06:00.581 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:35:08.856 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.688 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.493 00:00:00.033 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.898 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.900 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.931 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:35:08.471 00:00:00.033 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:34:58.246 00:00:11.817 TCP 12.102.0.1:46076 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:31:09.256 00:06:00.586 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:36:00.101 00:00:11.772 TCP 12.102.0.1:41474 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:37:01.911 00:00:11.816 TCP 12.102.0.1:45194 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:38:03.768 00:00:11.813 TCP 12.102.0.1:33108 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:39:05.620 00:00:11.800 TCP 12.102.0.1:39668 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:40:08.762 00:00:00.025 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:40:08.856 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:40:08.697 00:00:00.021 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:40:08.785 00:00:00.025 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:40:08.672 00:00:00.022 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:40:08.720 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:40:08.660 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:40:07.462 00:00:11.806 TCP 12.102.0.1:33826 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:36:09.259 00:06:00.582 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:41:09.306 00:00:11.800 TCP 12.102.0.1:38772 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:42:11.147 00:00:11.762 TCP 12.102.0.1:50138 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:38:09.260 00:06:00.583 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:43:12.945 00:00:11.801 TCP 12.102.0.1:52124 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:44:14.793 00:00:11.760 TCP 12.102.0.1:37876 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:45:08.734 00:00:00.024 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:45:08.700 00:00:00.021 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:45:08.957 00:00:00.022 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:45:08.678 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:45:08.988 00:00:00.024 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:45:09.083 00:00:00.024 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:45:09.082 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:45:16.590 00:00:11.825 TCP 12.102.0.1:58958 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:46:18.451 00:00:11.808 TCP 12.102.0.1:45672 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:47:20.301 00:00:11.799 TCP 12.102.0.1:48428 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:43:09.263 00:06:00.578 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:48:22.136 00:00:11.797 TCP 12.102.0.1:41256 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:49:23.975 00:00:11.771 TCP 12.102.0.1:48008 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:50:08.963 00:00:00.023 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:50:08.974 00:00:00.021 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:45:09.262 00:06:00.583 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:50:09.112 00:00:00.022 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:50:09.383 00:00:00.022 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:50:09.375 00:00:00.022 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:50:09.211 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:50:09.188 00:00:00.023 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:50:25.785 00:00:11.818 TCP 12.102.0.1:36352 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:51:27.643 00:00:11.801 TCP 12.102.0.1:48658 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:52:29.484 00:00:11.810 TCP 12.102.0.1:34686 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:53:31.332 00:00:11.862 TCP 12.102.0.1:35380 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:54:33.220 00:00:11.801 TCP 12.102.0.1:50806 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:55:08.970 00:00:00.021 ICMP 10.0.198.2:0 -> 12.102.0.1:8.0 3 252 1 2025-11-20 05:55:09.305 00:00:00.023 ICMP 12.102.0.1:0 -> 5.0.198.2:0.0 3 252 1 2025-11-20 05:55:09.396 00:00:00.023 ICMP 12.102.0.1:0 -> 1.0.198.2:0.0 3 252 1 2025-11-20 05:55:09.298 00:00:00.023 ICMP 12.102.0.1:0 -> 4.0.198.2:0.0 3 252 1 2025-11-20 05:55:08.992 00:00:00.023 ICMP 12.102.0.1:0 -> 10.0.198.2:0.0 3 252 1 2025-11-20 05:55:09.307 00:00:00.021 ICMP 12.102.0.1:0 -> 2.0.198.2:0.0 3 252 1 2025-11-20 05:55:09.188 00:00:00.023 ICMP 12.102.0.1:0 -> 7.0.198.2:0.0 3 252 1 2025-11-20 05:50:09.264 00:06:00.580 TCP 179.10.12.10:179 -> 179.10.12.12:58070 14 861 1 2025-11-20 05:55:35.077 00:00:11.801 TCP 12.102.0.1:38576 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:56:36.912 00:00:11.828 TCP 12.102.0.1:43710 -> 1.101.0.1:3000 11 1507 1 2025-11-20 05:52:09.263 00:06:00.585 TCP 179.10.12.12:58070 -> 179.10.12.10:179 14 861 1 2025-11-20 05:57:38.775 00:00:12.436 TCP 12.102.0.1:56738 -> 1.101.0.1:3000 15 1926 1 2025-11-20 05:58:41.255 00:00:11.809 TCP 12.102.0.1:43610 -> 1.101.0.1:3000 11 1507 1 Summary: total flows: 161, total bytes: 125998, total packets: 1157, avg bps: 259, avg pps: 0, avg bpp: 108 Time window: 2025-11-20 04:54:09 - 2025-11-20 05:58:53 Total flows processed: 161, passed: 161, Blocks skipped: 0, Bytes read: 16808 Sys: 0.0029s User: 0.0029s Wall: 0.0021s flows/second: 76780.3 Runtime: 0.0021s