Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-02 01:57:51.446 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 01:58:54.986 00:00:00.000 UDP 28.104.0.1:42950 -> 198.28.0.2:53 1 64 1 2025-07-02 01:58:54.985 00:00:00.000 UDP 28.104.0.1:56666 -> 198.28.0.2:53 1 64 1 2025-07-02 01:58:54.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42950 1 80 1 2025-07-02 01:58:54.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56666 1 109 1 2025-07-02 01:59:55.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54629 1 109 1 2025-07-02 01:59:55.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54903 1 80 1 2025-07-02 01:59:55.276 00:00:00.000 UDP 28.104.0.1:54629 -> 198.28.0.2:53 1 64 1 2025-07-02 01:59:55.276 00:00:00.000 UDP 28.104.0.1:54903 -> 198.28.0.2:53 1 64 1 2025-07-02 01:55:50.447 00:06:00.292 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 01:55:50.496 00:06:00.242 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:00:55.530 00:00:00.000 UDP 28.104.0.1:52478 -> 198.28.0.2:53 1 64 1 2025-07-02 02:00:55.530 00:00:00.000 UDP 28.104.0.1:48230 -> 198.28.0.2:53 1 64 1 2025-07-02 02:00:55.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52478 1 109 1 2025-07-02 02:00:55.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48230 1 80 1 2025-07-02 01:57:12.745 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-07-02 01:59:51.446 00:02:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 01:56:50.456 00:06:00.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:01:55.775 00:00:00.000 UDP 28.104.0.1:49780 -> 198.28.0.2:53 1 64 1 2025-07-02 02:01:55.775 00:00:00.000 UDP 28.104.0.1:60584 -> 198.28.0.2:53 1 64 1 2025-07-02 02:01:55.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49780 1 80 1 2025-07-02 02:01:55.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60584 1 109 1 2025-07-02 02:02:04.216 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:02:56.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37240 1 80 1 2025-07-02 02:02:56.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59544 1 109 1 2025-07-02 02:02:56.076 00:00:00.000 UDP 28.104.0.1:37240 -> 198.28.0.2:53 1 64 1 2025-07-02 02:02:56.076 00:00:00.000 UDP 28.104.0.1:59544 -> 198.28.0.2:53 1 64 1 2025-07-02 02:02:51.447 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:03:56.373 00:00:00.000 UDP 28.104.0.1:44732 -> 198.28.0.2:53 1 64 1 2025-07-02 02:03:56.373 00:00:00.000 UDP 28.104.0.1:50853 -> 198.28.0.2:53 1 64 1 2025-07-02 02:03:56.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44732 1 80 1 2025-07-02 02:03:56.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50853 1 109 1 2025-07-02 01:59:50.448 00:06:00.298 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 01:59:50.722 00:06:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:04:56.666 00:00:00.000 UDP 28.104.0.1:59550 -> 198.28.0.2:53 1 64 1 2025-07-02 02:04:56.666 00:00:00.000 UDP 28.104.0.1:59189 -> 198.28.0.2:53 1 64 1 2025-07-02 02:04:56.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59550 1 109 1 2025-07-02 02:04:56.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59189 1 80 1 2025-07-02 02:05:56.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40631 1 109 1 2025-07-02 02:05:56.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50986 1 80 1 2025-07-02 02:04:51.449 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:05:56.959 00:00:00.000 UDP 28.104.0.1:50986 -> 198.28.0.2:53 1 64 1 2025-07-02 02:05:56.959 00:00:00.000 UDP 28.104.0.1:40631 -> 198.28.0.2:53 1 64 1 2025-07-02 02:02:32.755 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-07-02 02:06:51.450 00:00:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 02:06:57.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46120 1 109 1 2025-07-02 02:06:57.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50480 1 80 1 2025-07-02 02:06:57.232 00:00:00.000 UDP 28.104.0.1:46120 -> 198.28.0.2:53 1 64 1 2025-07-02 02:06:57.233 00:00:00.000 UDP 28.104.0.1:50480 -> 198.28.0.2:53 1 64 1 2025-07-02 02:07:04.575 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:02:50.499 00:06:00.238 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:02:50.449 00:06:00.286 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:07:57.534 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50132 1 80 1 2025-07-02 02:07:57.534 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35350 1 109 1 2025-07-02 02:07:57.525 00:00:00.000 UDP 28.104.0.1:35350 -> 198.28.0.2:53 1 64 1 2025-07-02 02:07:57.526 00:00:00.000 UDP 28.104.0.1:50132 -> 198.28.0.2:53 1 64 1 2025-07-02 02:07:51.450 00:01:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:03:50.459 00:06:00.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:08:57.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46715 1 80 1 2025-07-02 02:08:57.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58264 1 109 1 2025-07-02 02:08:57.821 00:00:00.000 UDP 28.104.0.1:58264 -> 198.28.0.2:53 1 64 1 2025-07-02 02:08:57.821 00:00:00.000 UDP 28.104.0.1:46715 -> 198.28.0.2:53 1 64 1 2025-07-02 02:09:58.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60440 1 80 1 2025-07-02 02:09:58.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39794 1 109 1 2025-07-02 02:09:58.073 00:00:00.000 UDP 28.104.0.1:60440 -> 198.28.0.2:53 1 64 1 2025-07-02 02:09:58.072 00:00:00.000 UDP 28.104.0.1:39794 -> 198.28.0.2:53 1 64 1 2025-07-02 02:09:51.450 00:01:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:10:58.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40542 1 109 1 2025-07-02 02:10:58.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58151 1 80 1 2025-07-02 02:10:58.380 00:00:00.000 UDP 28.104.0.1:40542 -> 198.28.0.2:53 1 64 1 2025-07-02 02:10:58.380 00:00:00.000 UDP 28.104.0.1:58151 -> 198.28.0.2:53 1 64 1 2025-07-02 02:06:50.724 00:06:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:06:50.451 00:06:00.306 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:11:58.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58321 1 80 1 2025-07-02 02:11:58.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50294 1 109 1 2025-07-02 02:11:58.675 00:00:00.000 UDP 28.104.0.1:58321 -> 198.28.0.2:53 1 64 1 2025-07-02 02:11:58.675 00:00:00.000 UDP 28.104.0.1:50294 -> 198.28.0.2:53 1 64 1 2025-07-02 02:12:04.540 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:07:52.765 00:05:10.016 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2592 1 2025-07-02 02:12:58.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40269 1 80 1 2025-07-02 02:12:58.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60622 1 109 1 2025-07-02 02:12:58.932 00:00:00.000 UDP 28.104.0.1:60622 -> 198.28.0.2:53 1 64 1 2025-07-02 02:12:58.932 00:00:00.000 UDP 28.104.0.1:40269 -> 198.28.0.2:53 1 64 1 2025-07-02 02:11:51.450 00:02:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:13:59.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51468 1 80 1 2025-07-02 02:13:59.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34302 1 109 1 2025-07-02 02:13:59.241 00:00:00.000 UDP 28.104.0.1:34302 -> 198.28.0.2:53 1 64 1 2025-07-02 02:13:59.241 00:00:00.000 UDP 28.104.0.1:51468 -> 198.28.0.2:53 1 64 1 2025-07-02 02:09:50.451 00:06:00.286 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:09:50.501 00:06:00.246 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:14:59.531 00:00:00.000 UDP 28.104.0.1:36657 -> 198.28.0.2:53 1 64 1 2025-07-02 02:14:59.531 00:00:00.000 UDP 28.104.0.1:43861 -> 198.28.0.2:53 1 64 1 2025-07-02 02:14:59.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36657 1 109 1 2025-07-02 02:14:59.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43861 1 80 1 2025-07-02 02:14:51.450 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:10:50.461 00:06:00.267 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:15:59.826 00:00:00.000 UDP 28.104.0.1:56375 -> 198.28.0.2:53 1 64 1 2025-07-02 02:15:59.826 00:00:00.000 UDP 28.104.0.1:58438 -> 198.28.0.2:53 1 64 1 2025-07-02 02:15:59.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58438 1 80 1 2025-07-02 02:15:59.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56375 1 109 1 2025-07-02 02:17:00.123 00:00:00.000 UDP 28.104.0.1:37059 -> 198.28.0.2:53 1 64 1 2025-07-02 02:17:00.123 00:00:00.000 UDP 28.104.0.1:40391 -> 198.28.0.2:53 1 64 1 2025-07-02 02:17:00.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40391 1 109 1 2025-07-02 02:17:00.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37059 1 80 1 2025-07-02 02:17:04.997 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:13:07.230 00:05:05.560 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2980 1 2025-07-02 02:18:00.416 00:00:00.000 UDP 28.104.0.1:50333 -> 198.28.0.2:53 1 64 1 2025-07-02 02:18:00.416 00:00:00.000 UDP 28.104.0.1:50658 -> 198.28.0.2:53 1 64 1 2025-07-02 02:18:00.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50333 1 109 1 2025-07-02 02:18:00.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50658 1 80 1 2025-07-02 02:13:50.454 00:06:00.305 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:16:51.451 00:02:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:13:50.728 00:06:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:19:00.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54431 1 80 1 2025-07-02 02:19:00.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47269 1 109 1 2025-07-02 02:19:00.710 00:00:00.000 UDP 28.104.0.1:54431 -> 198.28.0.2:53 1 64 1 2025-07-02 02:19:00.710 00:00:00.000 UDP 28.104.0.1:47269 -> 198.28.0.2:53 1 64 1 2025-07-02 02:20:01.006 00:00:00.000 UDP 28.104.0.1:35175 -> 198.28.0.2:53 1 64 1 2025-07-02 02:20:01.006 00:00:00.000 UDP 28.104.0.1:37511 -> 198.28.0.2:53 1 64 1 2025-07-02 02:20:01.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35175 1 109 1 2025-07-02 02:20:01.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37511 1 80 1 2025-07-02 02:19:51.452 00:01:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:21:01.303 00:00:00.000 UDP 28.104.0.1:44995 -> 198.28.0.2:53 1 64 1 2025-07-02 02:21:01.302 00:00:00.000 UDP 28.104.0.1:37452 -> 198.28.0.2:53 1 64 1 2025-07-02 02:21:01.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44995 1 80 1 2025-07-02 02:21:01.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37452 1 109 1 2025-07-02 02:16:50.454 00:06:00.285 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:16:50.504 00:06:00.244 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:22:01.556 00:00:00.000 UDP 28.104.0.1:38048 -> 198.28.0.2:53 1 64 1 2025-07-02 02:22:01.557 00:00:00.000 UDP 28.104.0.1:44069 -> 198.28.0.2:53 1 64 1 2025-07-02 02:22:01.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38048 1 109 1 2025-07-02 02:22:01.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44069 1 80 1 2025-07-02 02:22:04.867 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:18:22.793 00:05:07.349 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3296 1 2025-07-02 02:17:50.465 00:06:00.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:23:01.856 00:00:00.000 UDP 28.104.0.1:46140 -> 198.28.0.2:53 1 64 1 2025-07-02 02:23:01.856 00:00:00.000 UDP 28.104.0.1:52818 -> 198.28.0.2:53 1 64 1 2025-07-02 02:23:01.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52818 1 80 1 2025-07-02 02:23:01.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46140 1 109 1 2025-07-02 02:21:51.453 00:02:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:24:02.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33954 1 80 1 2025-07-02 02:24:02.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59082 1 109 1 2025-07-02 02:24:02.171 00:00:00.000 UDP 28.104.0.1:59082 -> 198.28.0.2:53 1 64 1 2025-07-02 02:24:02.171 00:00:00.000 UDP 28.104.0.1:33954 -> 198.28.0.2:53 1 64 1 2025-07-02 02:25:02.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59095 1 109 1 2025-07-02 02:25:02.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46614 1 80 1 2025-07-02 02:25:02.431 00:00:00.000 UDP 28.104.0.1:59095 -> 198.28.0.2:53 1 64 1 2025-07-02 02:25:02.430 00:00:00.000 UDP 28.104.0.1:46614 -> 198.28.0.2:53 1 64 1 2025-07-02 02:24:51.455 00:01:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:20:50.728 00:06:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:20:50.455 00:06:00.304 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:26:02.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33159 1 80 1 2025-07-02 02:26:02.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57124 1 109 1 2025-07-02 02:26:02.729 00:00:00.000 UDP 28.104.0.1:33159 -> 198.28.0.2:53 1 64 1 2025-07-02 02:26:02.729 00:00:00.000 UDP 28.104.0.1:57124 -> 198.28.0.2:53 1 64 1 2025-07-02 02:27:03.056 00:00:00.000 UDP 28.104.0.1:50906 -> 198.28.0.2:53 1 64 1 2025-07-02 02:27:03.056 00:00:00.000 UDP 28.104.0.1:34806 -> 198.28.0.2:53 1 64 1 2025-07-02 02:27:04.920 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:27:03.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50906 1 80 1 2025-07-02 02:27:03.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34806 1 109 1 2025-07-02 02:23:32.798 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-07-02 02:28:03.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39254 1 109 1 2025-07-02 02:28:03.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46094 1 80 1 2025-07-02 02:28:03.356 00:00:00.000 UDP 28.104.0.1:39254 -> 198.28.0.2:53 1 64 1 2025-07-02 02:28:03.355 00:00:00.000 UDP 28.104.0.1:46094 -> 198.28.0.2:53 1 64 1 2025-07-02 02:23:50.456 00:06:00.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:23:50.507 00:06:00.244 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:26:51.457 00:02:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:29:03.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54830 1 109 1 2025-07-02 02:29:03.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46916 1 80 1 2025-07-02 02:29:03.610 00:00:00.000 UDP 28.104.0.1:46916 -> 198.28.0.2:53 1 64 1 2025-07-02 02:29:03.610 00:00:00.000 UDP 28.104.0.1:54830 -> 198.28.0.2:53 1 64 1 2025-07-02 02:24:50.467 00:06:00.265 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:30:03.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47885 1 80 1 2025-07-02 02:30:03.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51870 1 109 1 2025-07-02 02:30:03.904 00:00:00.000 UDP 28.104.0.1:51870 -> 198.28.0.2:53 1 64 1 2025-07-02 02:30:03.904 00:00:00.000 UDP 28.104.0.1:47885 -> 198.28.0.2:53 1 64 1 2025-07-02 02:29:51.458 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:31:04.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42101 1 80 1 2025-07-02 02:31:04.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59011 1 109 1 2025-07-02 02:31:04.201 00:00:00.000 UDP 28.104.0.1:42101 -> 198.28.0.2:53 1 64 1 2025-07-02 02:31:04.201 00:00:00.000 UDP 28.104.0.1:59011 -> 198.28.0.2:53 1 64 1 2025-07-02 02:32:04.852 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:32:04.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59575 1 80 1 2025-07-02 02:32:04.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44127 1 109 1 2025-07-02 02:32:04.453 00:00:00.000 UDP 28.104.0.1:59575 -> 198.28.0.2:53 1 64 1 2025-07-02 02:32:04.453 00:00:00.000 UDP 28.104.0.1:44127 -> 198.28.0.2:53 1 64 1 2025-07-02 02:27:50.457 00:06:00.303 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:31:51.460 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:27:50.731 00:06:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:28:52.806 00:05:10.050 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-07-02 02:33:04.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36457 1 109 1 2025-07-02 02:33:04.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45496 1 80 1 2025-07-02 02:33:04.713 00:00:00.000 UDP 28.104.0.1:36457 -> 198.28.0.2:53 1 64 1 2025-07-02 02:33:04.713 00:00:00.000 UDP 28.104.0.1:45496 -> 198.28.0.2:53 1 64 1 2025-07-02 02:33:51.459 00:00:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 02:34:05.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60058 1 109 1 2025-07-02 02:34:05.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52011 1 80 1 2025-07-02 02:34:05.002 00:00:00.000 UDP 28.104.0.1:60058 -> 198.28.0.2:53 1 64 1 2025-07-02 02:34:05.002 00:00:00.000 UDP 28.104.0.1:52011 -> 198.28.0.2:53 1 64 1 2025-07-02 02:35:05.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34055 1 109 1 2025-07-02 02:35:05.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48097 1 80 1 2025-07-02 02:35:05.309 00:00:00.000 UDP 28.104.0.1:48097 -> 198.28.0.2:53 1 64 1 2025-07-02 02:35:05.309 00:00:00.000 UDP 28.104.0.1:34055 -> 198.28.0.2:53 1 64 1 2025-07-02 02:30:50.457 00:06:00.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:30:50.509 00:06:00.244 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:34:51.461 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:36:05.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55347 1 109 1 2025-07-02 02:36:05.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43223 1 80 1 2025-07-02 02:36:05.602 00:00:00.000 UDP 28.104.0.1:43223 -> 198.28.0.2:53 1 64 1 2025-07-02 02:36:05.602 00:00:00.000 UDP 28.104.0.1:55347 -> 198.28.0.2:53 1 64 1 2025-07-02 02:31:50.469 00:06:00.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:37:05.861 00:00:00.000 UDP 28.104.0.1:60030 -> 198.28.0.2:53 1 64 1 2025-07-02 02:37:05.861 00:00:00.000 UDP 28.104.0.1:47818 -> 198.28.0.2:53 1 64 1 2025-07-02 02:37:05.066 00:00:00.042 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:37:05.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60030 1 80 1 2025-07-02 02:37:05.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47818 1 109 1 2025-07-02 02:36:51.462 00:01:00.064 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:38:06.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57776 1 109 1 2025-07-02 02:38:06.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47660 1 80 1 2025-07-02 02:38:06.137 00:00:00.000 UDP 28.104.0.1:47660 -> 198.28.0.2:53 1 64 1 2025-07-02 02:38:06.137 00:00:00.000 UDP 28.104.0.1:57776 -> 198.28.0.2:53 1 64 1 2025-07-02 02:34:12.855 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-07-02 02:38:51.474 00:00:00.054 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 02:39:06.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48991 1 109 1 2025-07-02 02:39:06.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45818 1 80 1 2025-07-02 02:39:06.440 00:00:00.000 UDP 28.104.0.1:45818 -> 198.28.0.2:53 1 64 1 2025-07-02 02:39:06.440 00:00:00.000 UDP 28.104.0.1:48991 -> 198.28.0.2:53 1 64 1 2025-07-02 02:34:50.458 00:06:00.304 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:34:50.732 00:06:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:40:06.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45255 1 80 1 2025-07-02 02:40:06.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52415 1 109 1 2025-07-02 02:40:06.742 00:00:00.000 UDP 28.104.0.1:52415 -> 198.28.0.2:53 1 64 1 2025-07-02 02:40:06.742 00:00:00.000 UDP 28.104.0.1:45255 -> 198.28.0.2:53 1 64 1 2025-07-02 02:39:51.475 00:01:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:41:07.053 00:00:00.000 UDP 28.104.0.1:54533 -> 198.28.0.2:53 1 64 1 2025-07-02 02:41:07.052 00:00:00.000 UDP 28.104.0.1:57605 -> 198.28.0.2:53 1 64 1 2025-07-02 02:41:07.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54533 1 80 1 2025-07-02 02:41:07.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57605 1 109 1 2025-07-02 02:42:05.447 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:42:07.320 00:00:00.000 UDP 28.104.0.1:34364 -> 198.28.0.2:53 1 64 1 2025-07-02 02:42:07.320 00:00:00.000 UDP 28.104.0.1:37307 -> 198.28.0.2:53 1 64 1 2025-07-02 02:42:07.330 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34364 1 109 1 2025-07-02 02:42:07.330 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37307 1 80 1 2025-07-02 02:37:50.459 00:06:00.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:37:50.508 00:06:00.244 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:41:51.475 00:01:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:43:07.609 00:00:00.000 UDP 28.104.0.1:54139 -> 198.28.0.2:53 1 64 1 2025-07-02 02:43:07.609 00:00:00.000 UDP 28.104.0.1:39654 -> 198.28.0.2:53 1 64 1 2025-07-02 02:43:07.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39654 1 109 1 2025-07-02 02:43:07.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54139 1 80 1 2025-07-02 02:39:32.868 00:05:12.590 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2928 1 2025-07-02 02:43:51.477 00:00:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 02:38:50.468 00:06:00.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:44:07.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51759 1 109 1 2025-07-02 02:44:07.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52440 1 80 1 2025-07-02 02:44:07.916 00:00:00.000 UDP 28.104.0.1:51759 -> 198.28.0.2:53 1 64 1 2025-07-02 02:44:07.916 00:00:00.000 UDP 28.104.0.1:52440 -> 198.28.0.2:53 1 64 1 2025-07-02 02:45:08.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44245 1 80 1 2025-07-02 02:45:08.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54855 1 109 1 2025-07-02 02:45:08.259 00:00:00.000 UDP 28.104.0.1:54855 -> 198.28.0.2:53 1 64 1 2025-07-02 02:45:08.259 00:00:00.000 UDP 28.104.0.1:44245 -> 198.28.0.2:53 1 64 1 2025-07-02 02:44:51.476 00:01:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:46:08.549 00:00:00.000 UDP 28.104.0.1:59244 -> 198.28.0.2:53 1 64 1 2025-07-02 02:46:08.549 00:00:00.000 UDP 28.104.0.1:51356 -> 198.28.0.2:53 1 64 1 2025-07-02 02:46:08.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51356 1 80 1 2025-07-02 02:46:08.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59244 1 109 1 2025-07-02 02:41:50.459 00:06:00.304 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:41:50.732 00:06:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:47:05.445 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:47:08.851 00:00:00.000 UDP 28.104.0.1:44267 -> 198.28.0.2:53 1 64 1 2025-07-02 02:47:08.851 00:00:00.000 UDP 28.104.0.1:41417 -> 198.28.0.2:53 1 64 1 2025-07-02 02:47:08.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41417 1 80 1 2025-07-02 02:47:08.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44267 1 109 1 2025-07-02 02:46:51.477 00:01:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:48:09.157 00:00:00.000 UDP 28.104.0.1:52200 -> 198.28.0.2:53 1 64 1 2025-07-02 02:48:09.157 00:00:00.000 UDP 28.104.0.1:52274 -> 198.28.0.2:53 1 64 1 2025-07-02 02:48:09.168 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52200 1 80 1 2025-07-02 02:48:09.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52274 1 109 1 2025-07-02 02:44:52.875 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2728 1 2025-07-02 02:49:09.480 00:00:00.000 UDP 28.104.0.1:48071 -> 198.28.0.2:53 1 64 1 2025-07-02 02:49:09.480 00:00:00.000 UDP 28.104.0.1:49186 -> 198.28.0.2:53 1 64 1 2025-07-02 02:49:09.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49186 1 80 1 2025-07-02 02:49:09.490 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48071 1 109 1 2025-07-02 02:44:50.510 00:06:00.244 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:44:50.458 00:06:00.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:50:09.731 00:00:00.000 UDP 28.104.0.1:40107 -> 198.28.0.2:53 1 64 1 2025-07-02 02:50:09.731 00:00:00.000 UDP 28.104.0.1:40119 -> 198.28.0.2:53 1 64 1 2025-07-02 02:50:09.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40107 1 80 1 2025-07-02 02:50:09.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40119 1 109 1 2025-07-02 02:48:51.477 00:02:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:45:50.470 00:06:00.263 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:51:10.050 00:00:00.000 UDP 28.104.0.1:41000 -> 198.28.0.2:53 1 64 1 2025-07-02 02:51:10.050 00:00:00.000 UDP 28.104.0.1:59342 -> 198.28.0.2:53 1 64 1 2025-07-02 02:51:10.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59342 1 80 1 2025-07-02 02:51:10.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41000 1 109 1 2025-07-02 02:52:05.498 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:52:10.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45518 1 80 1 2025-07-02 02:52:10.358 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39230 1 109 1 2025-07-02 02:52:10.346 00:00:00.000 UDP 28.104.0.1:45518 -> 198.28.0.2:53 1 64 1 2025-07-02 02:52:10.346 00:00:00.000 UDP 28.104.0.1:39230 -> 198.28.0.2:53 1 64 1 2025-07-02 02:51:51.478 00:01:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:53:10.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58871 1 109 1 2025-07-02 02:53:10.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53104 1 80 1 2025-07-02 02:53:10.628 00:00:00.000 UDP 28.104.0.1:53104 -> 198.28.0.2:53 1 64 1 2025-07-02 02:53:10.629 00:00:00.000 UDP 28.104.0.1:58871 -> 198.28.0.2:53 1 64 1 2025-07-02 02:48:50.461 00:06:00.306 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 02:48:50.733 00:06:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 02:54:10.985 00:00:00.000 UDP 28.104.0.1:35684 -> 198.28.0.2:53 1 64 1 2025-07-02 02:54:10.985 00:00:00.000 UDP 28.104.0.1:34890 -> 198.28.0.2:53 1 64 1 2025-07-02 02:54:10.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35684 1 80 1 2025-07-02 02:54:10.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34890 1 109 1 2025-07-02 02:50:07.704 00:05:05.185 OSPF 28.0.2.1:0 -> 224.0.0.5:0 47 3580 1 2025-07-02 02:55:11.283 00:00:00.000 UDP 28.104.0.1:49552 -> 198.28.0.2:53 1 64 1 2025-07-02 02:55:11.283 00:00:00.000 UDP 28.104.0.1:44586 -> 198.28.0.2:53 1 64 1 2025-07-02 02:55:11.293 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44586 1 109 1 2025-07-02 02:55:11.293 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49552 1 80 1 2025-07-02 02:53:51.480 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 02:56:11.579 00:00:00.000 UDP 28.104.0.1:55898 -> 198.28.0.2:53 1 64 1 2025-07-02 02:56:11.579 00:00:00.000 UDP 28.104.0.1:39842 -> 198.28.0.2:53 1 64 1 2025-07-02 02:56:11.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39842 1 109 1 2025-07-02 02:56:11.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55898 1 80 1 2025-07-02 02:51:50.512 00:06:00.242 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 02:51:50.462 00:06:00.283 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 02:57:05.641 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 02:57:11.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55992 1 80 1 2025-07-02 02:57:11.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42256 1 109 1 2025-07-02 02:57:11.871 00:00:00.000 UDP 28.104.0.1:55992 -> 198.28.0.2:53 1 64 1 2025-07-02 02:57:11.871 00:00:00.000 UDP 28.104.0.1:42256 -> 198.28.0.2:53 1 64 1 2025-07-02 02:56:51.481 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 02:52:50.474 00:06:00.262 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 02:58:12.170 00:00:00.000 UDP 28.104.0.1:38681 -> 198.28.0.2:53 1 64 1 2025-07-02 02:58:12.170 00:00:00.000 UDP 28.104.0.1:43636 -> 198.28.0.2:53 1 64 1 2025-07-02 02:58:12.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38681 1 109 1 2025-07-02 02:58:12.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43636 1 80 1 Summary: total flows: 335, total bytes: 96270, total packets: 1421, avg bps: 203, avg pps: 0, avg bpp: 67 Time window: 2025-07-02 01:55:50 - 2025-07-02 02:58:50 Total flows processed: 335, passed: 335, Blocks skipped: 0, Bytes read: 34904 Sys: 0.0030s User: 0.0030s Wall: 0.0044s flows/second: 75380.5 Runtime: 0.0045s