Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-02 03:59:30.135 00:00:00.000 UDP 28.104.0.1:55104 -> 198.28.0.2:53 1 64 1 2025-07-02 03:59:30.135 00:00:00.000 UDP 28.104.0.1:39914 -> 198.28.0.2:53 1 64 1 2025-07-02 03:59:30.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55104 1 80 1 2025-07-02 03:59:30.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39914 1 109 1 2025-07-02 03:54:50.529 00:06:00.274 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 03:57:51.492 00:02:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 03:54:50.480 00:06:00.283 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:00:30.430 00:00:00.000 UDP 28.104.0.1:50435 -> 198.28.0.2:53 1 64 1 2025-07-02 04:00:30.429 00:00:00.000 UDP 28.104.0.1:37448 -> 198.28.0.2:53 1 64 1 2025-07-02 04:00:30.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37448 1 109 1 2025-07-02 04:00:30.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50435 1 80 1 2025-07-02 03:55:50.491 00:06:00.263 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:01:30.723 00:00:00.000 UDP 28.104.0.1:54355 -> 198.28.0.2:53 1 64 1 2025-07-02 04:01:30.722 00:00:00.000 UDP 28.104.0.1:60947 -> 198.28.0.2:53 1 64 1 2025-07-02 04:01:30.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54355 1 80 1 2025-07-02 04:01:30.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60947 1 109 1 2025-07-02 04:00:51.494 00:01:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:02:07.053 00:00:00.016 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:02:31.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57760 1 80 1 2025-07-02 04:02:31.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49028 1 109 1 2025-07-02 04:02:31.054 00:00:00.000 UDP 28.104.0.1:49028 -> 198.28.0.2:53 1 64 1 2025-07-02 04:02:31.054 00:00:00.000 UDP 28.104.0.1:57760 -> 198.28.0.2:53 1 64 1 2025-07-02 03:58:42.981 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2256 1 2025-07-02 04:03:31.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39411 1 80 1 2025-07-02 04:03:31.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34248 1 109 1 2025-07-02 04:03:31.349 00:00:00.000 UDP 28.104.0.1:39411 -> 198.28.0.2:53 1 64 1 2025-07-02 04:03:31.349 00:00:00.000 UDP 28.104.0.1:34248 -> 198.28.0.2:53 1 64 1 2025-07-02 03:58:50.482 00:06:00.335 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 03:58:50.752 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:04:31.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38712 1 80 1 2025-07-02 04:04:31.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53149 1 109 1 2025-07-02 04:04:31.652 00:00:00.000 UDP 28.104.0.1:38712 -> 198.28.0.2:53 1 64 1 2025-07-02 04:04:31.652 00:00:00.000 UDP 28.104.0.1:53149 -> 198.28.0.2:53 1 64 1 2025-07-02 04:02:51.494 00:02:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 04:05:31.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41455 1 109 1 2025-07-02 04:05:31.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51453 1 80 1 2025-07-02 04:05:31.965 00:00:00.000 UDP 28.104.0.1:41455 -> 198.28.0.2:53 1 64 1 2025-07-02 04:05:31.964 00:00:00.000 UDP 28.104.0.1:51453 -> 198.28.0.2:53 1 64 1 2025-07-02 04:06:32.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56770 1 109 1 2025-07-02 04:06:32.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39118 1 80 1 2025-07-02 04:06:32.261 00:00:00.000 UDP 28.104.0.1:39118 -> 198.28.0.2:53 1 64 1 2025-07-02 04:06:32.261 00:00:00.000 UDP 28.104.0.1:56770 -> 198.28.0.2:53 1 64 1 2025-07-02 04:01:50.482 00:06:00.283 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:01:50.533 00:06:00.274 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:05:51.497 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:07:06.939 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:07:32.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53207 1 80 1 2025-07-02 04:07:32.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49411 1 109 1 2025-07-02 04:07:32.551 00:00:00.000 UDP 28.104.0.1:53207 -> 198.28.0.2:53 1 64 1 2025-07-02 04:07:32.551 00:00:00.000 UDP 28.104.0.1:49411 -> 198.28.0.2:53 1 64 1 2025-07-02 04:02:50.491 00:06:00.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:04:02.984 00:05:00.020 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2588 1 2025-07-02 04:08:32.846 00:00:00.000 UDP 28.104.0.1:38422 -> 198.28.0.2:53 1 64 1 2025-07-02 04:08:32.846 00:00:00.000 UDP 28.104.0.1:38706 -> 198.28.0.2:53 1 64 1 2025-07-02 04:08:32.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38706 1 80 1 2025-07-02 04:08:32.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38422 1 109 1 2025-07-02 04:07:51.496 00:01:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:09:33.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53774 1 80 1 2025-07-02 04:09:33.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42528 1 109 1 2025-07-02 04:09:33.171 00:00:00.000 UDP 28.104.0.1:53774 -> 198.28.0.2:53 1 64 1 2025-07-02 04:09:33.171 00:00:00.000 UDP 28.104.0.1:42528 -> 198.28.0.2:53 1 64 1 2025-07-02 04:09:51.496 00:00:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:10:33.460 00:00:00.000 UDP 28.104.0.1:56215 -> 198.28.0.2:53 1 64 1 2025-07-02 04:10:33.460 00:00:00.000 UDP 28.104.0.1:38309 -> 198.28.0.2:53 1 64 1 2025-07-02 04:10:33.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56215 1 80 1 2025-07-02 04:10:33.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38309 1 109 1 2025-07-02 04:05:50.482 00:06:00.335 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:05:50.755 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:11:33.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59393 1 109 1 2025-07-02 04:11:33.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58112 1 80 1 2025-07-02 04:11:33.756 00:00:00.000 UDP 28.104.0.1:59393 -> 198.28.0.2:53 1 64 1 2025-07-02 04:11:33.756 00:00:00.000 UDP 28.104.0.1:58112 -> 198.28.0.2:53 1 64 1 2025-07-02 04:10:51.496 00:01:00.062 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:12:07.048 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:12:34.060 00:00:00.000 UDP 28.104.0.1:51590 -> 198.28.0.2:53 1 64 1 2025-07-02 04:12:34.060 00:00:00.000 UDP 28.104.0.1:53345 -> 198.28.0.2:53 1 64 1 2025-07-02 04:12:34.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51590 1 80 1 2025-07-02 04:12:34.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53345 1 109 1 2025-07-02 04:09:07.439 00:05:05.568 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2868 1 2025-07-02 04:13:34.326 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34464 1 80 1 2025-07-02 04:13:34.326 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34554 1 109 1 2025-07-02 04:13:34.316 00:00:00.000 UDP 28.104.0.1:34464 -> 198.28.0.2:53 1 64 1 2025-07-02 04:13:34.316 00:00:00.000 UDP 28.104.0.1:34554 -> 198.28.0.2:53 1 64 1 2025-07-02 04:08:50.483 00:06:00.285 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:12:51.497 00:01:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:08:50.533 00:06:00.274 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:14:34.572 00:00:00.000 UDP 28.104.0.1:45022 -> 198.28.0.2:53 1 64 1 2025-07-02 04:14:34.572 00:00:00.000 UDP 28.104.0.1:37907 -> 198.28.0.2:53 1 64 1 2025-07-02 04:14:34.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45022 1 109 1 2025-07-02 04:14:34.582 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37907 1 80 1 2025-07-02 04:14:51.497 00:00:00.062 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:09:50.493 00:06:00.265 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:15:34.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52728 1 80 1 2025-07-02 04:15:34.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58274 1 109 1 2025-07-02 04:15:34.858 00:00:00.000 UDP 28.104.0.1:58274 -> 198.28.0.2:53 1 64 1 2025-07-02 04:15:34.858 00:00:00.000 UDP 28.104.0.1:52728 -> 198.28.0.2:53 1 64 1 2025-07-02 04:16:35.167 00:00:00.000 UDP 28.104.0.1:47243 -> 198.28.0.2:53 1 64 1 2025-07-02 04:16:35.167 00:00:00.000 UDP 28.104.0.1:59666 -> 198.28.0.2:53 1 64 1 2025-07-02 04:16:35.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47243 1 109 1 2025-07-02 04:16:35.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59666 1 80 1 2025-07-02 04:15:51.500 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:17:07.076 00:00:00.041 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:17:35.461 00:00:00.000 UDP 28.104.0.1:41748 -> 198.28.0.2:53 1 64 1 2025-07-02 04:17:35.461 00:00:00.000 UDP 28.104.0.1:39740 -> 198.28.0.2:53 1 64 1 2025-07-02 04:17:35.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39740 1 109 1 2025-07-02 04:17:35.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41748 1 80 1 2025-07-02 04:12:50.484 00:06:00.334 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:12:50.757 00:06:00.176 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:14:23.007 00:05:10.037 OSPF 28.0.2.1:0 -> 224.0.0.5:0 49 3728 1 2025-07-02 04:18:35.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54930 1 80 1 2025-07-02 04:18:35.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58816 1 109 1 2025-07-02 04:18:35.764 00:00:00.000 UDP 28.104.0.1:58816 -> 198.28.0.2:53 1 64 1 2025-07-02 04:18:35.766 00:00:00.000 UDP 28.104.0.1:54930 -> 198.28.0.2:53 1 64 1 2025-07-02 04:17:51.500 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:19:36.065 00:00:00.000 UDP 28.104.0.1:59541 -> 198.28.0.2:53 1 64 1 2025-07-02 04:19:36.065 00:00:00.000 UDP 28.104.0.1:39982 -> 198.28.0.2:53 1 64 1 2025-07-02 04:19:36.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39982 1 80 1 2025-07-02 04:19:36.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59541 1 109 1 2025-07-02 04:19:51.502 00:00:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:20:36.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43481 1 109 1 2025-07-02 04:20:36.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54333 1 80 1 2025-07-02 04:20:36.363 00:00:00.000 UDP 28.104.0.1:43481 -> 198.28.0.2:53 1 64 1 2025-07-02 04:20:36.363 00:00:00.000 UDP 28.104.0.1:54333 -> 198.28.0.2:53 1 64 1 2025-07-02 04:15:50.535 00:06:00.276 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:15:50.484 00:06:00.285 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:21:36.614 00:00:00.000 UDP 28.104.0.1:40702 -> 198.28.0.2:53 1 64 1 2025-07-02 04:21:36.614 00:00:00.000 UDP 28.104.0.1:35188 -> 198.28.0.2:53 1 64 1 2025-07-02 04:21:36.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40702 1 80 1 2025-07-02 04:21:36.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35188 1 109 1 2025-07-02 04:20:51.502 00:01:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:16:50.496 00:06:00.265 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:22:07.123 00:00:00.032 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:22:36.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52424 1 109 1 2025-07-02 04:22:36.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47906 1 80 1 2025-07-02 04:22:36.867 00:00:00.000 UDP 28.104.0.1:47906 -> 198.28.0.2:53 1 64 1 2025-07-02 04:22:36.867 00:00:00.000 UDP 28.104.0.1:52424 -> 198.28.0.2:53 1 64 1 2025-07-02 04:23:37.200 00:00:00.000 UDP 28.104.0.1:58663 -> 198.28.0.2:53 1 64 1 2025-07-02 04:23:37.200 00:00:00.000 UDP 28.104.0.1:46597 -> 198.28.0.2:53 1 64 1 2025-07-02 04:23:37.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46597 1 80 1 2025-07-02 04:23:37.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58663 1 109 1 2025-07-02 04:19:42.072 00:05:01.026 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2172 1 2025-07-02 04:22:51.503 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:24:37.492 00:00:00.000 UDP 28.104.0.1:56741 -> 198.28.0.2:53 1 64 1 2025-07-02 04:24:37.492 00:00:00.000 UDP 28.104.0.1:41965 -> 198.28.0.2:53 1 64 1 2025-07-02 04:24:37.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41965 1 80 1 2025-07-02 04:24:37.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56741 1 109 1 2025-07-02 04:19:50.486 00:06:00.342 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:24:51.502 00:00:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:19:50.759 00:06:00.176 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:25:37.790 00:00:00.000 UDP 28.104.0.1:33551 -> 198.28.0.2:53 1 64 1 2025-07-02 04:25:37.790 00:00:00.000 UDP 28.104.0.1:37415 -> 198.28.0.2:53 1 64 1 2025-07-02 04:25:37.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37415 1 109 1 2025-07-02 04:25:37.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33551 1 80 1 2025-07-02 04:26:38.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39619 1 109 1 2025-07-02 04:26:38.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33171 1 80 1 2025-07-02 04:26:38.102 00:00:00.000 UDP 28.104.0.1:33171 -> 198.28.0.2:53 1 64 1 2025-07-02 04:26:38.102 00:00:00.000 UDP 28.104.0.1:39619 -> 198.28.0.2:53 1 64 1 2025-07-02 04:25:51.503 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:27:07.449 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:27:38.396 00:00:00.000 UDP 28.104.0.1:57718 -> 198.28.0.2:53 1 64 1 2025-07-02 04:27:38.396 00:00:00.000 UDP 28.104.0.1:32974 -> 198.28.0.2:53 1 64 1 2025-07-02 04:27:38.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32974 1 80 1 2025-07-02 04:27:38.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57718 1 109 1 2025-07-02 04:22:50.489 00:06:00.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:22:50.539 00:06:00.280 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:28:38.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54432 1 80 1 2025-07-02 04:28:38.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57479 1 109 1 2025-07-02 04:28:38.690 00:00:00.000 UDP 28.104.0.1:54432 -> 198.28.0.2:53 1 64 1 2025-07-02 04:28:38.690 00:00:00.000 UDP 28.104.0.1:57479 -> 198.28.0.2:53 1 64 1 2025-07-02 04:27:51.504 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:23:50.500 00:06:00.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:24:53.097 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-07-02 04:29:38.987 00:00:00.000 UDP 28.104.0.1:46115 -> 198.28.0.2:53 1 64 1 2025-07-02 04:29:38.987 00:00:00.000 UDP 28.104.0.1:46476 -> 198.28.0.2:53 1 64 1 2025-07-02 04:29:38.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46115 1 80 1 2025-07-02 04:29:38.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46476 1 109 1 2025-07-02 04:30:39.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41071 1 80 1 2025-07-02 04:30:39.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59135 1 109 1 2025-07-02 04:30:39.285 00:00:00.000 UDP 28.104.0.1:41071 -> 198.28.0.2:53 1 64 1 2025-07-02 04:30:39.285 00:00:00.000 UDP 28.104.0.1:59135 -> 198.28.0.2:53 1 64 1 2025-07-02 04:31:39.585 00:00:00.000 UDP 28.104.0.1:41327 -> 198.28.0.2:53 1 64 1 2025-07-02 04:31:39.585 00:00:00.000 UDP 28.104.0.1:33674 -> 198.28.0.2:53 1 64 1 2025-07-02 04:31:39.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33674 1 80 1 2025-07-02 04:31:39.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41327 1 109 1 2025-07-02 04:26:50.489 00:06:00.341 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:29:51.504 00:02:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 04:26:50.762 00:06:00.176 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:32:07.490 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:32:39.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55375 1 80 1 2025-07-02 04:32:39.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54039 1 109 1 2025-07-02 04:32:39.885 00:00:00.000 UDP 28.104.0.1:55375 -> 198.28.0.2:53 1 64 1 2025-07-02 04:32:39.885 00:00:00.000 UDP 28.104.0.1:54039 -> 198.28.0.2:53 1 64 1 2025-07-02 04:33:40.151 00:00:00.000 UDP 28.104.0.1:49908 -> 198.28.0.2:53 1 64 1 2025-07-02 04:33:40.151 00:00:00.000 UDP 28.104.0.1:43424 -> 198.28.0.2:53 1 64 1 2025-07-02 04:33:40.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49908 1 80 1 2025-07-02 04:33:40.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43424 1 109 1 2025-07-02 04:32:51.504 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:30:13.106 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2528 1 2025-07-02 04:34:40.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43840 1 80 1 2025-07-02 04:34:40.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41583 1 109 1 2025-07-02 04:34:40.455 00:00:00.000 UDP 28.104.0.1:43840 -> 198.28.0.2:53 1 64 1 2025-07-02 04:34:40.454 00:00:00.000 UDP 28.104.0.1:41583 -> 198.28.0.2:53 1 64 1 2025-07-02 04:29:50.492 00:06:00.283 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:29:50.542 00:06:00.281 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:35:40.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34957 1 109 1 2025-07-02 04:35:40.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35801 1 80 1 2025-07-02 04:35:40.755 00:00:00.000 UDP 28.104.0.1:35801 -> 198.28.0.2:53 1 64 1 2025-07-02 04:35:40.755 00:00:00.000 UDP 28.104.0.1:34957 -> 198.28.0.2:53 1 64 1 2025-07-02 04:30:50.500 00:06:00.265 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:36:41.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54843 1 109 1 2025-07-02 04:36:41.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46120 1 80 1 2025-07-02 04:36:41.062 00:00:00.000 UDP 28.104.0.1:54843 -> 198.28.0.2:53 1 64 1 2025-07-02 04:36:41.062 00:00:00.000 UDP 28.104.0.1:46120 -> 198.28.0.2:53 1 64 1 2025-07-02 04:34:51.504 00:02:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-02 04:37:07.641 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:37:41.313 00:00:00.000 UDP 28.104.0.1:58673 -> 198.28.0.2:53 1 64 1 2025-07-02 04:37:41.313 00:00:00.000 UDP 28.104.0.1:48321 -> 198.28.0.2:53 1 64 1 2025-07-02 04:37:41.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48321 1 109 1 2025-07-02 04:37:41.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58673 1 80 1 2025-07-02 04:38:41.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37378 1 80 1 2025-07-02 04:38:41.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38078 1 109 1 2025-07-02 04:38:41.603 00:00:00.000 UDP 28.104.0.1:38078 -> 198.28.0.2:53 1 64 1 2025-07-02 04:38:41.603 00:00:00.000 UDP 28.104.0.1:37378 -> 198.28.0.2:53 1 64 1 2025-07-02 04:33:50.492 00:06:00.343 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:37:51.505 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:33:50.766 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:39:41.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34900 1 109 1 2025-07-02 04:39:41.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45929 1 80 1 2025-07-02 04:39:41.900 00:00:00.000 UDP 28.104.0.1:34900 -> 198.28.0.2:53 1 64 1 2025-07-02 04:39:41.900 00:00:00.000 UDP 28.104.0.1:45929 -> 198.28.0.2:53 1 64 1 2025-07-02 04:35:33.116 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3112 1 2025-07-02 04:40:42.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37846 1 109 1 2025-07-02 04:40:42.215 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47269 1 80 1 2025-07-02 04:40:42.204 00:00:00.000 UDP 28.104.0.1:37846 -> 198.28.0.2:53 1 64 1 2025-07-02 04:40:42.204 00:00:00.000 UDP 28.104.0.1:47269 -> 198.28.0.2:53 1 64 1 2025-07-02 04:39:51.506 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:41:42.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35584 1 109 1 2025-07-02 04:41:42.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38926 1 80 1 2025-07-02 04:41:42.495 00:00:00.000 UDP 28.104.0.1:35584 -> 198.28.0.2:53 1 64 1 2025-07-02 04:41:42.495 00:00:00.000 UDP 28.104.0.1:38926 -> 198.28.0.2:53 1 64 1 2025-07-02 04:36:50.544 00:06:00.281 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:41:51.505 00:00:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:36:50.494 00:06:00.282 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:42:07.537 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:42:42.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43966 1 80 1 2025-07-02 04:42:42.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45955 1 109 1 2025-07-02 04:42:42.789 00:00:00.000 UDP 28.104.0.1:45955 -> 198.28.0.2:53 1 64 1 2025-07-02 04:42:42.789 00:00:00.000 UDP 28.104.0.1:43966 -> 198.28.0.2:53 1 64 1 2025-07-02 04:37:50.505 00:06:00.262 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:43:43.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52092 1 80 1 2025-07-02 04:43:43.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54985 1 109 1 2025-07-02 04:43:43.100 00:00:00.000 UDP 28.104.0.1:52092 -> 198.28.0.2:53 1 64 1 2025-07-02 04:43:43.100 00:00:00.000 UDP 28.104.0.1:54985 -> 198.28.0.2:53 1 64 1 2025-07-02 04:42:51.504 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:44:43.389 00:00:00.000 UDP 28.104.0.1:45827 -> 198.28.0.2:53 1 64 1 2025-07-02 04:44:43.389 00:00:00.000 UDP 28.104.0.1:37468 -> 198.28.0.2:53 1 64 1 2025-07-02 04:44:43.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37468 1 109 1 2025-07-02 04:44:43.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45827 1 80 1 2025-07-02 04:40:53.121 00:05:04.383 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3152 1 2025-07-02 04:45:43.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57995 1 109 1 2025-07-02 04:45:43.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53063 1 80 1 2025-07-02 04:40:50.494 00:06:00.342 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:45:43.678 00:00:00.000 UDP 28.104.0.1:53063 -> 198.28.0.2:53 1 64 1 2025-07-02 04:45:43.678 00:00:00.000 UDP 28.104.0.1:57995 -> 198.28.0.2:53 1 64 1 2025-07-02 04:44:51.505 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:40:50.765 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:46:44.004 00:00:00.000 UDP 28.104.0.1:38373 -> 198.28.0.2:53 1 64 1 2025-07-02 04:46:44.003 00:00:00.000 UDP 28.104.0.1:60924 -> 198.28.0.2:53 1 64 1 2025-07-02 04:46:44.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38373 1 80 1 2025-07-02 04:46:44.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60924 1 109 1 2025-07-02 04:46:51.505 00:00:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:47:07.721 00:00:00.016 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:47:44.304 00:00:00.000 UDP 28.104.0.1:52762 -> 198.28.0.2:53 1 64 1 2025-07-02 04:47:44.304 00:00:00.000 UDP 28.104.0.1:56126 -> 198.28.0.2:53 1 64 1 2025-07-02 04:47:44.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56126 1 80 1 2025-07-02 04:47:44.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52762 1 109 1 2025-07-02 04:48:44.555 00:00:00.000 UDP 28.104.0.1:32963 -> 198.28.0.2:53 1 64 1 2025-07-02 04:48:44.555 00:00:00.000 UDP 28.104.0.1:49059 -> 198.28.0.2:53 1 64 1 2025-07-02 04:48:44.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32963 1 80 1 2025-07-02 04:48:44.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49059 1 109 1 2025-07-02 04:43:50.544 00:06:00.282 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:47:51.505 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:43:50.495 00:06:00.286 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:49:44.847 00:00:00.000 UDP 28.104.0.1:47644 -> 198.28.0.2:53 1 64 1 2025-07-02 04:49:44.847 00:00:00.000 UDP 28.104.0.1:36888 -> 198.28.0.2:53 1 64 1 2025-07-02 04:49:44.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36888 1 80 1 2025-07-02 04:49:44.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47644 1 109 1 2025-07-02 04:44:50.505 00:06:00.267 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:46:03.133 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2892 1 2025-07-02 04:50:45.154 00:00:00.000 UDP 28.104.0.1:54877 -> 198.28.0.2:53 1 64 1 2025-07-02 04:50:45.154 00:00:00.000 UDP 28.104.0.1:42083 -> 198.28.0.2:53 1 64 1 2025-07-02 04:50:45.165 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42083 1 80 1 2025-07-02 04:50:45.165 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54877 1 109 1 2025-07-02 04:49:51.506 00:01:00.058 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:51:45.454 00:00:00.000 UDP 28.104.0.1:53540 -> 198.28.0.2:53 1 64 1 2025-07-02 04:51:45.454 00:00:00.000 UDP 28.104.0.1:44535 -> 198.28.0.2:53 1 64 1 2025-07-02 04:51:45.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44535 1 80 1 2025-07-02 04:51:45.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53540 1 109 1 2025-07-02 04:51:51.507 00:00:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:52:07.792 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:52:45.710 00:00:00.000 UDP 28.104.0.1:56036 -> 198.28.0.2:53 1 64 1 2025-07-02 04:52:45.710 00:00:00.000 UDP 28.104.0.1:60515 -> 198.28.0.2:53 1 64 1 2025-07-02 04:52:45.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56036 1 109 1 2025-07-02 04:52:45.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60515 1 80 1 2025-07-02 04:47:50.496 00:06:00.343 TCP 28.151.0.1:39145 -> 28.156.0.1:179 14 861 1 2025-07-02 04:47:50.771 00:06:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-07-02 04:53:46.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38578 1 109 1 2025-07-02 04:53:46.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47098 1 80 1 2025-07-02 04:53:46.002 00:00:00.000 UDP 28.104.0.1:38578 -> 198.28.0.2:53 1 64 1 2025-07-02 04:53:46.002 00:00:00.000 UDP 28.104.0.1:47098 -> 198.28.0.2:53 1 64 1 2025-07-02 04:52:51.507 00:01:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:54:46.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40724 1 109 1 2025-07-02 04:54:46.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38001 1 80 1 2025-07-02 04:54:46.301 00:00:00.000 UDP 28.104.0.1:40724 -> 198.28.0.2:53 1 64 1 2025-07-02 04:54:46.301 00:00:00.000 UDP 28.104.0.1:38001 -> 198.28.0.2:53 1 64 1 2025-07-02 04:51:23.146 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-07-02 04:55:46.560 00:00:00.000 UDP 28.104.0.1:40947 -> 198.28.0.2:53 1 64 1 2025-07-02 04:55:46.560 00:00:00.000 UDP 28.104.0.1:53905 -> 198.28.0.2:53 1 64 1 2025-07-02 04:55:46.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40947 1 80 1 2025-07-02 04:55:46.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53905 1 109 1 2025-07-02 04:50:50.546 00:06:00.282 TCP 28.156.0.1:179 -> 28.151.0.1:39145 14 861 1 2025-07-02 04:54:51.506 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:50:50.498 00:06:00.285 TCP 28.151.0.1:179 -> 28.154.0.1:41239 14 861 1 2025-07-02 04:56:46.859 00:00:00.000 UDP 28.104.0.1:52336 -> 198.28.0.2:53 1 64 1 2025-07-02 04:56:46.859 00:00:00.000 UDP 28.104.0.1:56000 -> 198.28.0.2:53 1 64 1 2025-07-02 04:56:46.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52336 1 80 1 2025-07-02 04:56:46.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56000 1 109 1 2025-07-02 04:56:51.507 00:00:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-07-02 04:51:50.507 00:06:00.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 14 861 1 2025-07-02 04:57:07.804 00:00:00.027 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-02 04:57:47.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35187 1 80 1 2025-07-02 04:57:47.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36703 1 109 1 2025-07-02 04:57:47.179 00:00:00.000 UDP 28.104.0.1:35187 -> 198.28.0.2:53 1 64 1 2025-07-02 04:57:47.179 00:00:00.000 UDP 28.104.0.1:36703 -> 198.28.0.2:53 1 64 1 2025-07-02 04:58:47.475 00:00:00.000 UDP 28.104.0.1:38132 -> 198.28.0.2:53 1 64 1 2025-07-02 04:58:47.475 00:00:00.000 UDP 28.104.0.1:50688 -> 198.28.0.2:53 1 64 1 2025-07-02 04:57:51.506 00:01:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-02 04:58:47.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50688 1 109 1 2025-07-02 04:58:47.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38132 1 80 1 Summary: total flows: 339, total bytes: 96341, total packets: 1422, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-07-02 03:54:50 - 2025-07-02 04:58:51 Total flows processed: 339, passed: 339, Blocks skipped: 0, Bytes read: 35320 Sys: 0.0032s User: 0.0024s Wall: 0.0041s flows/second: 82965.9 Runtime: 0.0041s