Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-12 08:59:29.790 00:00:00.000 UDP 28.104.0.1:54439 -> 198.28.0.2:53 1 64 1 2025-07-12 08:59:29.790 00:00:00.000 UDP 28.104.0.1:51793 -> 198.28.0.2:53 1 64 1 2025-07-12 08:59:29.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51793 1 109 1 2025-07-12 08:59:29.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54439 1 80 1 2025-07-12 08:55:55.293 00:05:00.855 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 08:57:56.332 00:02:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:00:30.106 00:00:00.000 UDP 28.104.0.1:44256 -> 198.28.0.2:53 1 64 1 2025-07-12 09:00:30.106 00:00:00.000 UDP 28.104.0.1:41890 -> 198.28.0.2:53 1 64 1 2025-07-12 09:00:30.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44256 1 80 1 2025-07-12 09:00:30.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41890 1 109 1 2025-07-12 08:56:55.254 00:05:01.239 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:01:30.408 00:00:00.000 UDP 28.104.0.1:53334 -> 198.28.0.2:53 1 64 1 2025-07-12 09:01:30.407 00:00:00.000 UDP 28.104.0.1:58055 -> 198.28.0.2:53 1 64 1 2025-07-12 09:01:30.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58055 1 80 1 2025-07-12 09:01:30.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53334 1 109 1 2025-07-12 08:57:56.248 00:04:00.244 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:00:56.332 00:01:00.160 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:02:01.598 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:02:30.660 00:00:00.000 UDP 28.104.0.1:48257 -> 198.28.0.2:53 1 64 1 2025-07-12 09:02:30.659 00:00:00.000 UDP 28.104.0.1:42234 -> 198.28.0.2:53 1 64 1 2025-07-12 09:02:30.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48257 1 109 1 2025-07-12 09:02:30.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42234 1 80 1 2025-07-12 08:58:55.243 00:05:01.261 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 08:59:15.334 00:05:10.464 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2916 1 2025-07-12 09:03:30.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43980 1 109 1 2025-07-12 09:03:30.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50347 1 80 1 2025-07-12 09:03:30.958 00:00:00.000 UDP 28.104.0.1:50347 -> 198.28.0.2:53 1 64 1 2025-07-12 09:03:30.958 00:00:00.000 UDP 28.104.0.1:43980 -> 198.28.0.2:53 1 64 1 2025-07-12 08:59:55.247 00:05:00.911 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:04:31.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52939 1 80 1 2025-07-12 09:04:31.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36085 1 109 1 2025-07-12 09:04:31.257 00:00:00.000 UDP 28.104.0.1:36085 -> 198.28.0.2:53 1 64 1 2025-07-12 09:04:31.257 00:00:00.000 UDP 28.104.0.1:52939 -> 198.28.0.2:53 1 64 1 2025-07-12 09:05:31.553 00:00:00.000 UDP 28.104.0.1:36859 -> 198.28.0.2:53 1 64 1 2025-07-12 09:05:31.553 00:00:00.000 UDP 28.104.0.1:36963 -> 198.28.0.2:53 1 64 1 2025-07-12 09:05:31.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36859 1 109 1 2025-07-12 09:05:31.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36963 1 80 1 2025-07-12 09:01:55.294 00:05:00.855 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:06:31.855 00:00:00.000 UDP 28.104.0.1:39479 -> 198.28.0.2:53 1 64 1 2025-07-12 09:06:31.855 00:00:00.000 UDP 28.104.0.1:56396 -> 198.28.0.2:53 1 64 1 2025-07-12 09:06:31.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56396 1 109 1 2025-07-12 09:06:31.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39479 1 80 1 2025-07-12 09:07:01.836 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:02:56.249 00:04:00.246 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:02:56.333 00:04:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-07-12 09:02:55.253 00:05:01.242 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:07:32.175 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36182 1 80 1 2025-07-12 09:07:32.175 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59714 1 109 1 2025-07-12 09:07:32.165 00:00:00.000 UDP 28.104.0.1:59714 -> 198.28.0.2:53 1 64 1 2025-07-12 09:07:32.165 00:00:00.000 UDP 28.104.0.1:36182 -> 198.28.0.2:53 1 64 1 2025-07-12 09:08:32.461 00:00:00.000 UDP 28.104.0.1:43580 -> 198.28.0.2:53 1 64 1 2025-07-12 09:08:32.461 00:00:00.000 UDP 28.104.0.1:45220 -> 198.28.0.2:53 1 64 1 2025-07-12 09:08:32.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45220 1 80 1 2025-07-12 09:08:32.470 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43580 1 109 1 2025-07-12 09:04:35.344 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3248 1 2025-07-12 09:07:56.250 00:01:00.248 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 09:07:56.334 00:01:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:04:55.244 00:05:01.262 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:09:32.752 00:00:00.000 UDP 28.104.0.1:36209 -> 198.28.0.2:53 1 64 1 2025-07-12 09:09:32.752 00:00:00.000 UDP 28.104.0.1:34342 -> 198.28.0.2:53 1 64 1 2025-07-12 09:09:32.762 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34342 1 80 1 2025-07-12 09:09:32.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36209 1 109 1 2025-07-12 09:05:55.244 00:05:00.916 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:10:33.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47539 1 80 1 2025-07-12 09:10:33.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37268 1 109 1 2025-07-12 09:10:33.008 00:00:00.000 UDP 28.104.0.1:47539 -> 198.28.0.2:53 1 64 1 2025-07-12 09:10:33.008 00:00:00.000 UDP 28.104.0.1:37268 -> 198.28.0.2:53 1 64 1 2025-07-12 09:11:33.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52452 1 80 1 2025-07-12 09:11:33.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49272 1 109 1 2025-07-12 09:11:33.302 00:00:00.000 UDP 28.104.0.1:52452 -> 198.28.0.2:53 1 64 1 2025-07-12 09:11:33.302 00:00:00.000 UDP 28.104.0.1:49272 -> 198.28.0.2:53 1 64 1 2025-07-12 09:07:55.294 00:05:00.856 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:09:56.251 00:02:00.247 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 09:09:56.335 00:02:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:12:01.919 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:12:33.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41015 1 109 1 2025-07-12 09:12:33.609 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36313 1 80 1 2025-07-12 09:12:33.598 00:00:00.000 UDP 28.104.0.1:36313 -> 198.28.0.2:53 1 64 1 2025-07-12 09:12:33.598 00:00:00.000 UDP 28.104.0.1:41015 -> 198.28.0.2:53 1 64 1 2025-07-12 09:08:55.254 00:05:01.244 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:13:33.907 00:00:00.000 UDP 28.104.0.1:37555 -> 198.28.0.2:53 1 64 1 2025-07-12 09:13:33.907 00:00:00.000 UDP 28.104.0.1:48763 -> 198.28.0.2:53 1 64 1 2025-07-12 09:13:33.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48763 1 80 1 2025-07-12 09:13:33.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37555 1 109 1 2025-07-12 09:12:56.250 00:01:00.248 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 09:12:56.336 00:01:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:09:55.351 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2916 1 2025-07-12 09:14:34.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45091 1 80 1 2025-07-12 09:14:34.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59794 1 109 1 2025-07-12 09:14:34.218 00:00:00.000 UDP 28.104.0.1:59794 -> 198.28.0.2:53 1 64 1 2025-07-12 09:14:34.219 00:00:00.000 UDP 28.104.0.1:45091 -> 198.28.0.2:53 1 64 1 2025-07-12 09:10:55.247 00:05:01.262 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:15:34.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45787 1 109 1 2025-07-12 09:15:34.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43214 1 80 1 2025-07-12 09:15:34.514 00:00:00.000 UDP 28.104.0.1:43214 -> 198.28.0.2:53 1 64 1 2025-07-12 09:15:34.514 00:00:00.000 UDP 28.104.0.1:45787 -> 198.28.0.2:53 1 64 1 2025-07-12 09:11:55.245 00:05:00.917 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:16:34.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57656 1 109 1 2025-07-12 09:16:34.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52521 1 80 1 2025-07-12 09:16:34.808 00:00:00.000 UDP 28.104.0.1:52521 -> 198.28.0.2:53 1 64 1 2025-07-12 09:16:34.807 00:00:00.000 UDP 28.104.0.1:57656 -> 198.28.0.2:53 1 64 1 2025-07-12 09:14:56.251 00:02:00.249 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 09:14:56.337 00:02:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:17:01.793 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:17:35.106 00:00:00.000 UDP 28.104.0.1:39190 -> 198.28.0.2:53 1 64 1 2025-07-12 09:17:35.106 00:00:00.000 UDP 28.104.0.1:42420 -> 198.28.0.2:53 1 64 1 2025-07-12 09:17:35.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39190 1 109 1 2025-07-12 09:17:35.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42420 1 80 1 2025-07-12 09:13:55.295 00:05:00.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:18:35.403 00:00:00.000 UDP 28.104.0.1:32840 -> 198.28.0.2:53 1 64 1 2025-07-12 09:18:35.402 00:00:00.000 UDP 28.104.0.1:40641 -> 198.28.0.2:53 1 64 1 2025-07-12 09:18:35.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32840 1 109 1 2025-07-12 09:18:35.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40641 1 80 1 2025-07-12 09:17:56.250 00:01:00.254 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 09:17:56.336 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:14:55.261 00:05:01.244 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:15:15.361 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-07-12 09:19:35.696 00:00:00.000 UDP 28.104.0.1:59136 -> 198.28.0.2:53 1 64 1 2025-07-12 09:19:35.696 00:00:00.000 UDP 28.104.0.1:45297 -> 198.28.0.2:53 1 64 1 2025-07-12 09:19:35.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59136 1 109 1 2025-07-12 09:19:35.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45297 1 80 1 2025-07-12 09:20:36.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42596 1 109 1 2025-07-12 09:20:36.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57042 1 80 1 2025-07-12 09:20:35.998 00:00:00.000 UDP 28.104.0.1:57042 -> 198.28.0.2:53 1 64 1 2025-07-12 09:20:35.998 00:00:00.000 UDP 28.104.0.1:42596 -> 198.28.0.2:53 1 64 1 2025-07-12 09:16:55.245 00:05:01.270 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:21:36.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45158 1 80 1 2025-07-12 09:21:36.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58724 1 109 1 2025-07-12 09:21:36.298 00:00:00.000 UDP 28.104.0.1:58724 -> 198.28.0.2:53 1 64 1 2025-07-12 09:21:36.298 00:00:00.000 UDP 28.104.0.1:45158 -> 198.28.0.2:53 1 64 1 2025-07-12 09:19:56.337 00:02:00.167 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:17:55.247 00:05:00.918 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:22:02.073 00:00:00.037 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:22:36.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43607 1 109 1 2025-07-12 09:22:36.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38924 1 80 1 2025-07-12 09:22:36.593 00:00:00.000 UDP 28.104.0.1:38924 -> 198.28.0.2:53 1 64 1 2025-07-12 09:22:36.592 00:00:00.000 UDP 28.104.0.1:43607 -> 198.28.0.2:53 1 64 1 2025-07-12 09:23:36.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45938 1 80 1 2025-07-12 09:23:36.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45710 1 109 1 2025-07-12 09:23:36.883 00:00:00.000 UDP 28.104.0.1:45938 -> 198.28.0.2:53 1 64 1 2025-07-12 09:23:36.883 00:00:00.000 UDP 28.104.0.1:45710 -> 198.28.0.2:53 1 64 1 2025-07-12 09:19:56.252 00:04:00.255 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:22:56.339 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:19:55.297 00:05:00.858 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:24:37.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51760 1 109 1 2025-07-12 09:24:37.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54375 1 80 1 2025-07-12 09:24:37.188 00:00:00.000 UDP 28.104.0.1:54375 -> 198.28.0.2:53 1 64 1 2025-07-12 09:24:37.188 00:00:00.000 UDP 28.104.0.1:51760 -> 198.28.0.2:53 1 64 1 2025-07-12 09:20:35.365 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2580 1 2025-07-12 09:20:55.256 00:05:01.250 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:25:37.483 00:00:00.000 UDP 28.104.0.1:50060 -> 198.28.0.2:53 1 64 1 2025-07-12 09:25:37.483 00:00:00.000 UDP 28.104.0.1:39023 -> 198.28.0.2:53 1 64 1 2025-07-12 09:25:37.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50060 1 80 1 2025-07-12 09:25:37.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39023 1 109 1 2025-07-12 09:26:37.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39912 1 80 1 2025-07-12 09:26:37.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55114 1 109 1 2025-07-12 09:26:37.785 00:00:00.000 UDP 28.104.0.1:55114 -> 198.28.0.2:53 1 64 1 2025-07-12 09:26:37.785 00:00:00.000 UDP 28.104.0.1:39912 -> 198.28.0.2:53 1 64 1 2025-07-12 09:22:55.247 00:05:01.273 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:24:56.339 00:02:00.170 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:27:02.235 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:27:38.090 00:00:00.000 UDP 28.104.0.1:46445 -> 198.28.0.2:53 1 64 1 2025-07-12 09:27:38.089 00:00:00.000 UDP 28.104.0.1:59891 -> 198.28.0.2:53 1 64 1 2025-07-12 09:27:38.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59891 1 80 1 2025-07-12 09:27:38.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46445 1 109 1 2025-07-12 09:23:55.246 00:05:00.920 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:28:38.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43399 1 80 1 2025-07-12 09:28:38.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43113 1 109 1 2025-07-12 09:28:38.338 00:00:00.000 UDP 28.104.0.1:43113 -> 198.28.0.2:53 1 64 1 2025-07-12 09:28:38.337 00:00:00.000 UDP 28.104.0.1:43399 -> 198.28.0.2:53 1 64 1 2025-07-12 09:24:56.252 00:04:00.258 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:27:56.339 00:01:00.171 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:29:38.634 00:00:00.000 UDP 28.104.0.1:35537 -> 198.28.0.2:53 1 64 1 2025-07-12 09:29:38.634 00:00:00.000 UDP 28.104.0.1:56447 -> 198.28.0.2:53 1 64 1 2025-07-12 09:29:38.644 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56447 1 109 1 2025-07-12 09:29:38.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35537 1 80 1 2025-07-12 09:25:55.297 00:05:00.860 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:25:55.374 00:05:10.831 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-07-12 09:30:38.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56350 1 80 1 2025-07-12 09:30:38.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39988 1 109 1 2025-07-12 09:30:38.952 00:00:00.000 UDP 28.104.0.1:56350 -> 198.28.0.2:53 1 64 1 2025-07-12 09:30:38.953 00:00:00.000 UDP 28.104.0.1:39988 -> 198.28.0.2:53 1 64 1 2025-07-12 09:26:55.258 00:05:01.254 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:31:39.249 00:00:00.000 UDP 28.104.0.1:60310 -> 198.28.0.2:53 1 64 1 2025-07-12 09:31:39.249 00:00:00.000 UDP 28.104.0.1:45423 -> 198.28.0.2:53 1 64 1 2025-07-12 09:31:39.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45423 1 80 1 2025-07-12 09:31:39.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60310 1 109 1 2025-07-12 09:29:56.341 00:02:00.170 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:32:02.285 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:32:39.540 00:00:00.000 UDP 28.104.0.1:52183 -> 198.28.0.2:53 1 64 1 2025-07-12 09:32:39.540 00:00:00.000 UDP 28.104.0.1:53717 -> 198.28.0.2:53 1 64 1 2025-07-12 09:32:39.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53717 1 109 1 2025-07-12 09:32:39.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52183 1 80 1 2025-07-12 09:28:55.246 00:05:01.274 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:33:39.848 00:00:00.000 UDP 28.104.0.1:45060 -> 198.28.0.2:53 1 64 1 2025-07-12 09:33:39.848 00:00:00.000 UDP 28.104.0.1:41672 -> 198.28.0.2:53 1 64 1 2025-07-12 09:33:39.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45060 1 80 1 2025-07-12 09:33:39.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41672 1 109 1 2025-07-12 09:29:55.247 00:05:00.922 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:29:56.253 00:04:00.257 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:32:56.340 00:01:00.170 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:34:40.169 00:00:00.000 UDP 28.104.0.1:53890 -> 198.28.0.2:53 1 64 1 2025-07-12 09:34:40.169 00:00:00.000 UDP 28.104.0.1:39789 -> 198.28.0.2:53 1 64 1 2025-07-12 09:34:40.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53890 1 109 1 2025-07-12 09:34:40.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39789 1 80 1 2025-07-12 09:31:15.384 00:05:06.026 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2844 1 2025-07-12 09:35:40.464 00:00:00.000 UDP 28.104.0.1:51441 -> 198.28.0.2:53 1 64 1 2025-07-12 09:35:40.464 00:00:00.000 UDP 28.104.0.1:37517 -> 198.28.0.2:53 1 64 1 2025-07-12 09:35:40.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51441 1 109 1 2025-07-12 09:35:40.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37517 1 80 1 2025-07-12 09:31:55.299 00:05:00.860 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:36:40.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44772 1 109 1 2025-07-12 09:36:40.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57678 1 80 1 2025-07-12 09:36:40.755 00:00:00.000 UDP 28.104.0.1:57678 -> 198.28.0.2:53 1 64 1 2025-07-12 09:36:40.755 00:00:00.000 UDP 28.104.0.1:44772 -> 198.28.0.2:53 1 64 1 2025-07-12 09:32:55.258 00:05:01.255 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:37:02.386 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:37:41.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57461 1 109 1 2025-07-12 09:37:41.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55140 1 80 1 2025-07-12 09:37:41.054 00:00:00.000 UDP 28.104.0.1:55140 -> 198.28.0.2:53 1 64 1 2025-07-12 09:37:41.054 00:00:00.000 UDP 28.104.0.1:57461 -> 198.28.0.2:53 1 64 1 2025-07-12 09:38:41.347 00:00:00.000 UDP 28.104.0.1:34150 -> 198.28.0.2:53 1 64 1 2025-07-12 09:38:41.347 00:00:00.000 UDP 28.104.0.1:34524 -> 198.28.0.2:53 1 64 1 2025-07-12 09:38:41.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34524 1 80 1 2025-07-12 09:38:41.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34150 1 109 1 2025-07-12 09:34:56.254 00:04:00.259 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:34:56.341 00:04:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-07-12 09:34:55.249 00:05:01.275 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:39:41.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57563 1 109 1 2025-07-12 09:39:41.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36704 1 80 1 2025-07-12 09:39:41.619 00:00:00.000 UDP 28.104.0.1:57563 -> 198.28.0.2:53 1 64 1 2025-07-12 09:39:41.617 00:00:00.000 UDP 28.104.0.1:36704 -> 198.28.0.2:53 1 64 1 2025-07-12 09:35:55.248 00:05:00.924 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:36:22.294 00:05:03.112 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3140 1 2025-07-12 09:40:41.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49086 1 109 1 2025-07-12 09:40:41.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47551 1 80 1 2025-07-12 09:40:41.906 00:00:00.000 UDP 28.104.0.1:49086 -> 198.28.0.2:53 1 64 1 2025-07-12 09:40:41.906 00:00:00.000 UDP 28.104.0.1:47551 -> 198.28.0.2:53 1 64 1 2025-07-12 09:41:42.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36719 1 109 1 2025-07-12 09:41:42.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35880 1 80 1 2025-07-12 09:41:42.201 00:00:00.000 UDP 28.104.0.1:36719 -> 198.28.0.2:53 1 64 1 2025-07-12 09:41:42.201 00:00:00.000 UDP 28.104.0.1:35880 -> 198.28.0.2:53 1 64 1 2025-07-12 09:37:55.298 00:05:00.866 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:42:02.481 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:42:42.496 00:00:00.000 UDP 28.104.0.1:48203 -> 198.28.0.2:53 1 64 1 2025-07-12 09:42:42.496 00:00:00.000 UDP 28.104.0.1:46177 -> 198.28.0.2:53 1 64 1 2025-07-12 09:42:42.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46177 1 80 1 2025-07-12 09:42:42.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48203 1 109 1 2025-07-12 09:38:55.258 00:05:01.258 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:43:42.788 00:00:00.000 UDP 28.104.0.1:42861 -> 198.28.0.2:53 1 64 1 2025-07-12 09:43:42.788 00:00:00.000 UDP 28.104.0.1:52503 -> 198.28.0.2:53 1 64 1 2025-07-12 09:43:42.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52503 1 80 1 2025-07-12 09:43:42.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42861 1 109 1 2025-07-12 09:39:56.257 00:04:00.260 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:39:56.343 00:04:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-07-12 09:44:43.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39376 1 80 1 2025-07-12 09:44:43.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42914 1 109 1 2025-07-12 09:44:43.099 00:00:00.000 UDP 28.104.0.1:42914 -> 198.28.0.2:53 1 64 1 2025-07-12 09:44:43.100 00:00:00.000 UDP 28.104.0.1:39376 -> 198.28.0.2:53 1 64 1 2025-07-12 09:40:55.249 00:05:01.278 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:41:32.372 00:05:03.041 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2560 1 2025-07-12 09:45:43.399 00:00:00.000 UDP 28.104.0.1:37155 -> 198.28.0.2:53 1 64 1 2025-07-12 09:45:43.399 00:00:00.000 UDP 28.104.0.1:37509 -> 198.28.0.2:53 1 64 1 2025-07-12 09:45:43.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37155 1 80 1 2025-07-12 09:45:43.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37509 1 109 1 2025-07-12 09:44:56.263 00:01:00.254 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 09:44:56.345 00:01:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:41:55.249 00:05:00.924 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:46:43.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60276 1 109 1 2025-07-12 09:46:43.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50190 1 80 1 2025-07-12 09:46:43.695 00:00:00.000 UDP 28.104.0.1:60276 -> 198.28.0.2:53 1 64 1 2025-07-12 09:46:43.695 00:00:00.000 UDP 28.104.0.1:50190 -> 198.28.0.2:53 1 64 1 2025-07-12 09:47:02.658 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:47:44.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57477 1 109 1 2025-07-12 09:47:44.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49660 1 80 1 2025-07-12 09:47:43.991 00:00:00.000 UDP 28.104.0.1:57477 -> 198.28.0.2:53 1 64 1 2025-07-12 09:47:43.991 00:00:00.000 UDP 28.104.0.1:49660 -> 198.28.0.2:53 1 64 1 2025-07-12 09:43:55.300 00:05:00.864 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:48:44.286 00:00:00.000 UDP 28.104.0.1:43742 -> 198.28.0.2:53 1 64 1 2025-07-12 09:48:44.286 00:00:00.000 UDP 28.104.0.1:37223 -> 198.28.0.2:53 1 64 1 2025-07-12 09:48:44.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43742 1 80 1 2025-07-12 09:48:44.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37223 1 109 1 2025-07-12 09:46:56.258 00:02:00.260 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 09:46:56.345 00:02:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:44:55.260 00:05:01.258 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:49:44.578 00:00:00.000 UDP 28.104.0.1:50015 -> 198.28.0.2:53 1 64 1 2025-07-12 09:49:44.579 00:00:00.000 UDP 28.104.0.1:53232 -> 198.28.0.2:53 1 64 1 2025-07-12 09:49:44.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53232 1 80 1 2025-07-12 09:49:44.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50015 1 109 1 2025-07-12 09:50:44.829 00:00:00.000 UDP 28.104.0.1:54762 -> 198.28.0.2:53 1 64 1 2025-07-12 09:50:44.829 00:00:00.000 UDP 28.104.0.1:56419 -> 198.28.0.2:53 1 64 1 2025-07-12 09:50:44.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56419 1 109 1 2025-07-12 09:50:44.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54762 1 80 1 2025-07-12 09:49:56.259 00:01:00.258 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 09:49:56.345 00:01:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:46:55.250 00:05:01.277 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:46:45.413 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-07-12 09:51:45.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46509 1 109 1 2025-07-12 09:51:45.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46027 1 80 1 2025-07-12 09:51:45.092 00:00:00.000 UDP 28.104.0.1:46027 -> 198.28.0.2:53 1 64 1 2025-07-12 09:51:45.092 00:00:00.000 UDP 28.104.0.1:46509 -> 198.28.0.2:53 1 64 1 2025-07-12 09:47:55.249 00:05:00.926 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:52:02.854 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:52:45.392 00:00:00.000 UDP 28.104.0.1:38138 -> 198.28.0.2:53 1 64 1 2025-07-12 09:52:45.392 00:00:00.000 UDP 28.104.0.1:44674 -> 198.28.0.2:53 1 64 1 2025-07-12 09:52:45.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44674 1 109 1 2025-07-12 09:52:45.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38138 1 80 1 2025-07-12 09:53:45.725 00:00:00.000 UDP 28.104.0.1:46828 -> 198.28.0.2:53 1 64 1 2025-07-12 09:53:45.725 00:00:00.000 UDP 28.104.0.1:34848 -> 198.28.0.2:53 1 64 1 2025-07-12 09:53:45.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34848 1 80 1 2025-07-12 09:53:45.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46828 1 109 1 2025-07-12 09:49:55.302 00:05:00.865 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 09:51:56.346 00:02:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:54:45.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58862 1 109 1 2025-07-12 09:54:45.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59916 1 80 1 2025-07-12 09:54:45.974 00:00:00.000 UDP 28.104.0.1:58862 -> 198.28.0.2:53 1 64 1 2025-07-12 09:54:45.974 00:00:00.000 UDP 28.104.0.1:59916 -> 198.28.0.2:53 1 64 1 2025-07-12 09:50:55.261 00:05:01.258 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:55:46.225 00:00:00.000 UDP 28.104.0.1:50346 -> 198.28.0.2:53 1 64 1 2025-07-12 09:55:46.225 00:00:00.000 UDP 28.104.0.1:46607 -> 198.28.0.2:53 1 64 1 2025-07-12 09:55:46.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46607 1 109 1 2025-07-12 09:55:46.235 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50346 1 80 1 2025-07-12 09:51:56.260 00:04:00.259 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:54:56.346 00:01:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:52:05.415 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2592 1 2025-07-12 09:56:46.515 00:00:00.000 UDP 28.104.0.1:57284 -> 198.28.0.2:53 1 64 1 2025-07-12 09:56:46.515 00:00:00.000 UDP 28.104.0.1:58431 -> 198.28.0.2:53 1 64 1 2025-07-12 09:56:46.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58431 1 109 1 2025-07-12 09:56:46.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57284 1 80 1 2025-07-12 09:52:55.251 00:05:01.281 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 09:57:02.656 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 09:57:46.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58961 1 80 1 2025-07-12 09:57:46.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35658 1 109 1 2025-07-12 09:57:46.809 00:00:00.000 UDP 28.104.0.1:35658 -> 198.28.0.2:53 1 64 1 2025-07-12 09:57:46.809 00:00:00.000 UDP 28.104.0.1:58961 -> 198.28.0.2:53 1 64 1 2025-07-12 09:53:55.252 00:05:00.931 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 09:58:47.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39686 1 80 1 2025-07-12 09:58:47.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43144 1 109 1 Summary: total flows: 338, total bytes: 96058, total packets: 1416, avg bps: 203, avg pps: 0, avg bpp: 67 Time window: 2025-07-12 08:55:55 - 2025-07-12 09:58:56 Total flows processed: 338, passed: 338, Blocks skipped: 0, Bytes read: 35216 Sys: 0.0032s User: 0.0032s Wall: 0.0048s flows/second: 70022.5 Runtime: 0.0049s