Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-07-12 09:58:47.111 00:00:00.000 UDP 28.104.0.1:39686 -> 198.28.0.2:53 1 64 1 2025-07-12 09:58:47.110 00:00:00.000 UDP 28.104.0.1:43144 -> 198.28.0.2:53 1 64 1 2025-07-12 09:56:56.346 00:02:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 09:59:47.452 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53495 1 80 1 2025-07-12 09:59:47.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37147 1 109 1 2025-07-12 09:59:47.443 00:00:00.000 UDP 28.104.0.1:53495 -> 198.28.0.2:53 1 64 1 2025-07-12 09:59:47.444 00:00:00.000 UDP 28.104.0.1:37147 -> 198.28.0.2:53 1 64 1 2025-07-12 09:55:55.303 00:05:00.870 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:00:47.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32808 1 80 1 2025-07-12 10:00:47.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33088 1 109 1 2025-07-12 10:00:47.757 00:00:00.000 UDP 28.104.0.1:33088 -> 198.28.0.2:53 1 64 1 2025-07-12 10:00:47.757 00:00:00.000 UDP 28.104.0.1:32808 -> 198.28.0.2:53 1 64 1 2025-07-12 09:56:56.260 00:04:00.264 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 09:59:56.347 00:01:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 09:56:55.262 00:05:01.262 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 09:57:25.419 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2852 1 2025-07-12 10:01:48.080 00:00:00.000 UDP 28.104.0.1:46491 -> 198.28.0.2:53 1 64 1 2025-07-12 10:01:48.080 00:00:00.000 UDP 28.104.0.1:44894 -> 198.28.0.2:53 1 64 1 2025-07-12 10:01:48.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46491 1 109 1 2025-07-12 10:01:48.090 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44894 1 80 1 2025-07-12 10:02:02.812 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:02:48.375 00:00:00.000 UDP 28.104.0.1:42168 -> 198.28.0.2:53 1 64 1 2025-07-12 10:02:48.375 00:00:00.000 UDP 28.104.0.1:39445 -> 198.28.0.2:53 1 64 1 2025-07-12 10:02:48.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42168 1 80 1 2025-07-12 10:02:48.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39445 1 109 1 2025-07-12 09:58:55.252 00:05:01.283 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:03:48.695 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57213 1 109 1 2025-07-12 10:03:48.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36059 1 80 1 2025-07-12 09:59:55.252 00:05:00.931 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:03:48.685 00:00:00.000 UDP 28.104.0.1:57213 -> 198.28.0.2:53 1 64 1 2025-07-12 10:03:48.685 00:00:00.000 UDP 28.104.0.1:36059 -> 198.28.0.2:53 1 64 1 2025-07-12 10:01:56.347 00:02:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:04:48.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41452 1 80 1 2025-07-12 10:04:48.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40807 1 109 1 2025-07-12 10:04:48.982 00:00:00.000 UDP 28.104.0.1:40807 -> 198.28.0.2:53 1 64 1 2025-07-12 10:04:48.982 00:00:00.000 UDP 28.104.0.1:41452 -> 198.28.0.2:53 1 64 1 2025-07-12 10:05:49.280 00:00:00.000 UDP 28.104.0.1:39339 -> 198.28.0.2:53 1 64 1 2025-07-12 10:05:49.280 00:00:00.000 UDP 28.104.0.1:56668 -> 198.28.0.2:53 1 64 1 2025-07-12 10:05:49.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56668 1 80 1 2025-07-12 10:05:49.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39339 1 109 1 2025-07-12 10:01:56.262 00:04:00.263 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:04:56.347 00:01:00.178 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:01:55.302 00:05:00.871 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:06:49.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48142 1 80 1 2025-07-12 10:06:49.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46535 1 109 1 2025-07-12 10:02:45.424 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3264 1 2025-07-12 10:06:49.574 00:00:00.000 UDP 28.104.0.1:46535 -> 198.28.0.2:53 1 64 1 2025-07-12 10:06:49.574 00:00:00.000 UDP 28.104.0.1:48142 -> 198.28.0.2:53 1 64 1 2025-07-12 10:02:55.262 00:05:01.263 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:07:02.793 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:07:49.868 00:00:00.000 UDP 28.104.0.1:47127 -> 198.28.0.2:53 1 64 1 2025-07-12 10:07:49.868 00:00:00.000 UDP 28.104.0.1:45984 -> 198.28.0.2:53 1 64 1 2025-07-12 10:07:49.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45984 1 80 1 2025-07-12 10:07:49.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47127 1 109 1 2025-07-12 10:08:50.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42700 1 80 1 2025-07-12 10:08:50.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48369 1 109 1 2025-07-12 10:08:50.184 00:00:00.000 UDP 28.104.0.1:42700 -> 198.28.0.2:53 1 64 1 2025-07-12 10:08:50.183 00:00:00.000 UDP 28.104.0.1:48369 -> 198.28.0.2:53 1 64 1 2025-07-12 10:04:55.253 00:05:01.282 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:09:50.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32853 1 109 1 2025-07-12 10:09:50.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34063 1 80 1 2025-07-12 10:09:50.471 00:00:00.000 UDP 28.104.0.1:32853 -> 198.28.0.2:53 1 64 1 2025-07-12 10:09:50.471 00:00:00.000 UDP 28.104.0.1:34063 -> 198.28.0.2:53 1 64 1 2025-07-12 10:05:55.254 00:05:00.930 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:10:50.761 00:00:00.000 UDP 28.104.0.1:48102 -> 198.28.0.2:53 1 64 1 2025-07-12 10:10:50.761 00:00:00.000 UDP 28.104.0.1:34191 -> 198.28.0.2:53 1 64 1 2025-07-12 10:10:50.770 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48102 1 109 1 2025-07-12 10:10:50.770 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34191 1 80 1 2025-07-12 10:06:56.264 00:04:00.263 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:06:56.349 00:04:00.178 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-07-12 10:11:51.058 00:00:00.000 UDP 28.104.0.1:50753 -> 198.28.0.2:53 1 64 1 2025-07-12 10:11:51.058 00:00:00.000 UDP 28.104.0.1:50122 -> 198.28.0.2:53 1 64 1 2025-07-12 10:11:51.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50122 1 80 1 2025-07-12 10:11:51.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50753 1 109 1 2025-07-12 10:07:55.303 00:05:00.871 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:12:03.057 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:08:05.430 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2772 1 2025-07-12 10:12:51.353 00:00:00.000 UDP 28.104.0.1:34382 -> 198.28.0.2:53 1 64 1 2025-07-12 10:12:51.353 00:00:00.000 UDP 28.104.0.1:50222 -> 198.28.0.2:53 1 64 1 2025-07-12 10:12:51.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50222 1 109 1 2025-07-12 10:12:51.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34382 1 80 1 2025-07-12 10:08:55.264 00:05:01.263 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:13:51.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39669 1 80 1 2025-07-12 10:13:51.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32955 1 109 1 2025-07-12 10:13:51.648 00:00:00.000 UDP 28.104.0.1:32955 -> 198.28.0.2:53 1 64 1 2025-07-12 10:13:51.648 00:00:00.000 UDP 28.104.0.1:39669 -> 198.28.0.2:53 1 64 1 2025-07-12 10:14:51.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41257 1 109 1 2025-07-12 10:14:51.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54168 1 80 1 2025-07-12 10:14:51.947 00:00:00.000 UDP 28.104.0.1:54168 -> 198.28.0.2:53 1 64 1 2025-07-12 10:14:51.947 00:00:00.000 UDP 28.104.0.1:41257 -> 198.28.0.2:53 1 64 1 2025-07-12 10:10:55.253 00:05:01.284 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:15:52.238 00:00:00.000 UDP 28.104.0.1:37178 -> 198.28.0.2:53 1 64 1 2025-07-12 10:11:56.263 00:04:00.265 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:11:56.354 00:04:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-07-12 10:15:52.239 00:00:00.000 UDP 28.104.0.1:58068 -> 198.28.0.2:53 1 64 1 2025-07-12 10:15:52.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37178 1 80 1 2025-07-12 10:15:52.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58068 1 109 1 2025-07-12 10:11:55.254 00:05:00.936 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:16:52.530 00:00:00.000 UDP 28.104.0.1:45612 -> 198.28.0.2:53 1 64 1 2025-07-12 10:16:52.530 00:00:00.000 UDP 28.104.0.1:51142 -> 198.28.0.2:53 1 64 1 2025-07-12 10:16:52.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45612 1 80 1 2025-07-12 10:16:52.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51142 1 109 1 2025-07-12 10:17:03.235 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:13:25.436 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2256 1 2025-07-12 10:17:52.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50358 1 80 1 2025-07-12 10:17:52.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40287 1 109 1 2025-07-12 10:17:52.818 00:00:00.000 UDP 28.104.0.1:40287 -> 198.28.0.2:53 1 64 1 2025-07-12 10:16:56.264 00:01:00.264 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 10:16:56.355 00:01:00.173 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:17:52.818 00:00:00.000 UDP 28.104.0.1:50358 -> 198.28.0.2:53 1 64 1 2025-07-12 10:13:55.304 00:05:00.875 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:18:53.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44322 1 80 1 2025-07-12 10:18:53.123 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42229 1 109 1 2025-07-12 10:18:53.112 00:00:00.000 UDP 28.104.0.1:44322 -> 198.28.0.2:53 1 64 1 2025-07-12 10:18:53.113 00:00:00.000 UDP 28.104.0.1:42229 -> 198.28.0.2:53 1 64 1 2025-07-12 10:14:55.265 00:05:01.264 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:19:53.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57429 1 80 1 2025-07-12 10:19:53.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49106 1 109 1 2025-07-12 10:19:53.421 00:00:00.000 UDP 28.104.0.1:57429 -> 198.28.0.2:53 1 64 1 2025-07-12 10:19:53.421 00:00:00.000 UDP 28.104.0.1:49106 -> 198.28.0.2:53 1 64 1 2025-07-12 10:20:53.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35001 1 109 1 2025-07-12 10:16:55.255 00:05:01.287 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:20:53.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39775 1 80 1 2025-07-12 10:20:53.726 00:00:00.000 UDP 28.104.0.1:39775 -> 198.28.0.2:53 1 64 1 2025-07-12 10:18:56.264 00:02:00.266 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 10:18:56.355 00:02:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:20:53.727 00:00:00.000 UDP 28.104.0.1:35001 -> 198.28.0.2:53 1 64 1 2025-07-12 10:21:54.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41282 1 109 1 2025-07-12 10:21:54.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57386 1 80 1 2025-07-12 10:21:54.052 00:00:00.000 UDP 28.104.0.1:41282 -> 198.28.0.2:53 1 64 1 2025-07-12 10:21:54.052 00:00:00.000 UDP 28.104.0.1:57386 -> 198.28.0.2:53 1 64 1 2025-07-12 10:17:55.254 00:05:00.937 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:22:03.399 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:22:54.351 00:00:00.000 UDP 28.104.0.1:55668 -> 198.28.0.2:53 1 64 1 2025-07-12 10:21:56.266 00:01:00.267 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 10:21:56.358 00:01:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:22:54.351 00:00:00.000 UDP 28.104.0.1:38748 -> 198.28.0.2:53 1 64 1 2025-07-12 10:18:45.442 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2580 1 2025-07-12 10:22:54.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55668 1 80 1 2025-07-12 10:22:54.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38748 1 109 1 2025-07-12 10:23:54.647 00:00:00.000 UDP 28.104.0.1:52242 -> 198.28.0.2:53 1 64 1 2025-07-12 10:23:54.647 00:00:00.000 UDP 28.104.0.1:59390 -> 198.28.0.2:53 1 64 1 2025-07-12 10:19:55.305 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:23:54.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52242 1 80 1 2025-07-12 10:23:54.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59390 1 109 1 2025-07-12 10:24:54.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40801 1 80 1 2025-07-12 10:24:54.945 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45745 1 109 1 2025-07-12 10:24:54.934 00:00:00.000 UDP 28.104.0.1:40801 -> 198.28.0.2:53 1 64 1 2025-07-12 10:20:55.265 00:05:01.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:24:54.934 00:00:00.000 UDP 28.104.0.1:45745 -> 198.28.0.2:53 1 64 1 2025-07-12 10:25:55.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40866 1 80 1 2025-07-12 10:25:55.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43476 1 109 1 2025-07-12 10:25:55.236 00:00:00.000 UDP 28.104.0.1:43476 -> 198.28.0.2:53 1 64 1 2025-07-12 10:25:55.236 00:00:00.000 UDP 28.104.0.1:40866 -> 198.28.0.2:53 1 64 1 2025-07-12 10:23:56.266 00:02:00.265 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 10:23:56.359 00:02:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:26:55.527 00:00:00.000 UDP 28.104.0.1:39410 -> 198.28.0.2:53 1 64 1 2025-07-12 10:26:55.527 00:00:00.000 UDP 28.104.0.1:52931 -> 198.28.0.2:53 1 64 1 2025-07-12 10:26:55.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39410 1 80 1 2025-07-12 10:26:55.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52931 1 109 1 2025-07-12 10:22:55.256 00:05:01.286 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:27:03.417 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:27:55.856 00:00:00.000 UDP 28.104.0.1:34011 -> 198.28.0.2:53 1 64 1 2025-07-12 10:26:56.267 00:01:00.266 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 10:27:55.856 00:00:00.000 UDP 28.104.0.1:54377 -> 198.28.0.2:53 1 64 1 2025-07-12 10:26:56.366 00:01:00.167 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:23:55.257 00:05:00.936 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:27:55.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54377 1 109 1 2025-07-12 10:27:55.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34011 1 80 1 2025-07-12 10:24:05.449 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2876 1 2025-07-12 10:28:56.183 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39485 1 109 1 2025-07-12 10:28:56.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51953 1 80 1 2025-07-12 10:28:56.174 00:00:00.000 UDP 28.104.0.1:39485 -> 198.28.0.2:53 1 64 1 2025-07-12 10:28:56.174 00:00:00.000 UDP 28.104.0.1:51953 -> 198.28.0.2:53 1 64 1 2025-07-12 10:29:56.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35681 1 109 1 2025-07-12 10:29:56.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42707 1 80 1 2025-07-12 10:25:55.306 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:29:56.484 00:00:00.000 UDP 28.104.0.1:35681 -> 198.28.0.2:53 1 64 1 2025-07-12 10:29:56.484 00:00:00.000 UDP 28.104.0.1:42707 -> 198.28.0.2:53 1 64 1 2025-07-12 10:30:56.781 00:00:00.000 UDP 28.104.0.1:36631 -> 198.28.0.2:53 1 64 1 2025-07-12 10:28:56.367 00:02:00.166 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:30:56.781 00:00:00.000 UDP 28.104.0.1:41622 -> 198.28.0.2:53 1 64 1 2025-07-12 10:30:56.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41622 1 80 1 2025-07-12 10:30:56.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36631 1 109 1 2025-07-12 10:26:55.266 00:05:01.267 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:31:57.078 00:00:00.000 UDP 28.104.0.1:49394 -> 198.28.0.2:53 1 64 1 2025-07-12 10:31:57.078 00:00:00.000 UDP 28.104.0.1:54780 -> 198.28.0.2:53 1 64 1 2025-07-12 10:31:57.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54780 1 80 1 2025-07-12 10:31:57.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49394 1 109 1 2025-07-12 10:32:03.421 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:28:55.257 00:05:01.287 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:28:56.267 00:04:00.266 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:31:56.366 00:01:00.167 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:32:57.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45856 1 109 1 2025-07-12 10:32:57.347 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53389 1 80 1 2025-07-12 10:32:57.336 00:00:00.000 UDP 28.104.0.1:45856 -> 198.28.0.2:53 1 64 1 2025-07-12 10:32:57.336 00:00:00.000 UDP 28.104.0.1:53389 -> 198.28.0.2:53 1 64 1 2025-07-12 10:29:25.456 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3088 1 2025-07-12 10:29:55.256 00:05:00.938 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:33:57.641 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42538 1 80 1 2025-07-12 10:33:57.639 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49170 1 109 1 2025-07-12 10:33:57.629 00:00:00.000 UDP 28.104.0.1:42538 -> 198.28.0.2:53 1 64 1 2025-07-12 10:33:57.629 00:00:00.000 UDP 28.104.0.1:49170 -> 198.28.0.2:53 1 64 1 2025-07-12 10:34:57.903 00:00:00.000 UDP 28.104.0.1:34112 -> 198.28.0.2:53 1 64 1 2025-07-12 10:34:57.903 00:00:00.000 UDP 28.104.0.1:58140 -> 198.28.0.2:53 1 64 1 2025-07-12 10:34:57.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58140 1 109 1 2025-07-12 10:34:57.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34112 1 80 1 2025-07-12 10:31:55.309 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:33:56.369 00:02:00.166 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:35:58.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40258 1 80 1 2025-07-12 10:35:58.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51837 1 109 1 2025-07-12 10:35:58.204 00:00:00.000 UDP 28.104.0.1:51837 -> 198.28.0.2:53 1 64 1 2025-07-12 10:35:58.203 00:00:00.000 UDP 28.104.0.1:40258 -> 198.28.0.2:53 1 64 1 2025-07-12 10:32:55.269 00:05:01.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:36:58.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55506 1 80 1 2025-07-12 10:36:58.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56975 1 109 1 2025-07-12 10:36:58.451 00:00:00.000 UDP 28.104.0.1:55506 -> 198.28.0.2:53 1 64 1 2025-07-12 10:36:58.451 00:00:00.000 UDP 28.104.0.1:56975 -> 198.28.0.2:53 1 64 1 2025-07-12 10:37:03.708 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:37:58.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53619 1 109 1 2025-07-12 10:37:58.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50614 1 80 1 2025-07-12 10:33:56.269 00:04:00.267 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:36:56.369 00:01:00.167 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:37:58.754 00:00:00.000 UDP 28.104.0.1:53619 -> 198.28.0.2:53 1 64 1 2025-07-12 10:37:58.754 00:00:00.000 UDP 28.104.0.1:50614 -> 198.28.0.2:53 1 64 1 2025-07-12 10:34:43.679 00:05:01.789 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2920 1 2025-07-12 10:38:59.060 00:00:00.000 UDP 28.104.0.1:45245 -> 198.28.0.2:53 1 64 1 2025-07-12 10:38:59.060 00:00:00.000 UDP 28.104.0.1:40952 -> 198.28.0.2:53 1 64 1 2025-07-12 10:34:55.259 00:05:01.295 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:38:59.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40952 1 109 1 2025-07-12 10:38:59.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45245 1 80 1 2025-07-12 10:35:55.259 00:05:00.936 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:39:59.357 00:00:00.000 UDP 28.104.0.1:48533 -> 198.28.0.2:53 1 64 1 2025-07-12 10:39:59.357 00:00:00.000 UDP 28.104.0.1:51149 -> 198.28.0.2:53 1 64 1 2025-07-12 10:39:59.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48533 1 80 1 2025-07-12 10:39:59.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51149 1 109 1 2025-07-12 10:40:59.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51054 1 80 1 2025-07-12 10:40:59.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60010 1 109 1 2025-07-12 10:38:56.370 00:02:00.166 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:40:59.616 00:00:00.000 UDP 28.104.0.1:60010 -> 198.28.0.2:53 1 64 1 2025-07-12 10:40:59.616 00:00:00.000 UDP 28.104.0.1:51054 -> 198.28.0.2:53 1 64 1 2025-07-12 10:37:55.310 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:41:59.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59100 1 80 1 2025-07-12 10:41:59.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56354 1 109 1 2025-07-12 10:41:59.908 00:00:00.000 UDP 28.104.0.1:56354 -> 198.28.0.2:53 1 64 1 2025-07-12 10:41:59.908 00:00:00.000 UDP 28.104.0.1:59100 -> 198.28.0.2:53 1 64 1 2025-07-12 10:42:03.689 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:43:00.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35224 1 80 1 2025-07-12 10:43:00.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39513 1 109 1 2025-07-12 10:38:56.269 00:04:00.269 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:41:56.370 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:43:00.216 00:00:00.000 UDP 28.104.0.1:39513 -> 198.28.0.2:53 1 64 1 2025-07-12 10:38:55.272 00:05:01.266 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:43:00.216 00:00:00.000 UDP 28.104.0.1:35224 -> 198.28.0.2:53 1 64 1 2025-07-12 10:39:52.579 00:05:02.891 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2496 1 2025-07-12 10:44:00.555 00:00:00.000 UDP 28.104.0.1:55633 -> 198.28.0.2:53 1 64 1 2025-07-12 10:44:00.555 00:00:00.000 UDP 28.104.0.1:60312 -> 198.28.0.2:53 1 64 1 2025-07-12 10:44:00.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55633 1 80 1 2025-07-12 10:44:00.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60312 1 109 1 2025-07-12 10:43:56.371 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:45:00.847 00:00:00.000 UDP 28.104.0.1:49149 -> 198.28.0.2:53 1 64 1 2025-07-12 10:45:00.847 00:00:00.000 UDP 28.104.0.1:57643 -> 198.28.0.2:53 1 64 1 2025-07-12 10:45:00.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57643 1 109 1 2025-07-12 10:40:55.261 00:05:01.287 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:45:00.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49149 1 80 1 2025-07-12 10:41:55.262 00:05:00.936 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:46:01.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60619 1 109 1 2025-07-12 10:46:01.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39419 1 80 1 2025-07-12 10:46:01.138 00:00:00.000 UDP 28.104.0.1:60619 -> 198.28.0.2:53 1 64 1 2025-07-12 10:46:01.139 00:00:00.000 UDP 28.104.0.1:39419 -> 198.28.0.2:53 1 64 1 2025-07-12 10:47:01.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37084 1 80 1 2025-07-12 10:47:01.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46590 1 109 1 2025-07-12 10:47:01.438 00:00:00.000 UDP 28.104.0.1:37084 -> 198.28.0.2:53 1 64 1 2025-07-12 10:47:01.438 00:00:00.000 UDP 28.104.0.1:46590 -> 198.28.0.2:53 1 64 1 2025-07-12 10:47:03.918 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:48:01.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49849 1 109 1 2025-07-12 10:48:01.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53244 1 80 1 2025-07-12 10:43:55.312 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:43:56.270 00:04:00.270 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-07-12 10:45:56.372 00:02:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:48:01.732 00:00:00.000 UDP 28.104.0.1:49849 -> 198.28.0.2:53 1 64 1 2025-07-12 10:48:01.732 00:00:00.000 UDP 28.104.0.1:53244 -> 198.28.0.2:53 1 64 1 2025-07-12 10:44:55.271 00:05:01.268 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:49:02.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60278 1 109 1 2025-07-12 10:49:02.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44035 1 80 1 2025-07-12 10:49:02.044 00:00:00.000 UDP 28.104.0.1:60278 -> 198.28.0.2:53 1 64 1 2025-07-12 10:49:02.044 00:00:00.000 UDP 28.104.0.1:44035 -> 198.28.0.2:53 1 64 1 2025-07-12 10:45:05.469 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2448 1 2025-07-12 10:48:56.272 00:01:00.269 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 10:48:56.373 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:50:02.342 00:00:00.000 UDP 28.104.0.1:48996 -> 198.28.0.2:53 1 64 1 2025-07-12 10:50:02.341 00:00:00.000 UDP 28.104.0.1:39009 -> 198.28.0.2:53 1 64 1 2025-07-12 10:50:02.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39009 1 109 1 2025-07-12 10:50:02.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48996 1 80 1 2025-07-12 10:46:55.262 00:05:01.288 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:51:02.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56312 1 109 1 2025-07-12 10:51:02.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58512 1 80 1 2025-07-12 10:51:02.638 00:00:00.000 UDP 28.104.0.1:56312 -> 198.28.0.2:53 1 64 1 2025-07-12 10:51:02.637 00:00:00.000 UDP 28.104.0.1:58512 -> 198.28.0.2:53 1 64 1 2025-07-12 10:47:55.263 00:05:00.937 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:52:03.874 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:52:02.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47889 1 109 1 2025-07-12 10:52:02.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50603 1 80 1 2025-07-12 10:52:02.930 00:00:00.000 UDP 28.104.0.1:47889 -> 198.28.0.2:53 1 64 1 2025-07-12 10:52:02.930 00:00:00.000 UDP 28.104.0.1:50603 -> 198.28.0.2:53 1 64 1 2025-07-12 10:50:56.272 00:02:00.269 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 10:50:56.372 00:02:00.169 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:53:03.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49398 1 109 1 2025-07-12 10:53:03.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34102 1 80 1 2025-07-12 10:53:03.250 00:00:00.000 UDP 28.104.0.1:49398 -> 198.28.0.2:53 1 64 1 2025-07-12 10:53:03.250 00:00:00.000 UDP 28.104.0.1:34102 -> 198.28.0.2:53 1 64 1 2025-07-12 10:49:55.313 00:05:00.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-07-12 10:54:03.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35973 1 109 1 2025-07-12 10:54:03.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40947 1 80 1 2025-07-12 10:54:03.558 00:00:00.000 UDP 28.104.0.1:40947 -> 198.28.0.2:53 1 64 1 2025-07-12 10:54:03.558 00:00:00.000 UDP 28.104.0.1:35973 -> 198.28.0.2:53 1 64 1 2025-07-12 10:50:25.474 00:05:10.046 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2400 1 2025-07-12 10:53:56.272 00:01:00.270 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-07-12 10:53:56.374 00:01:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-07-12 10:55:03.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38741 1 80 1 2025-07-12 10:55:03.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40362 1 109 1 2025-07-12 10:50:55.273 00:05:01.267 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-07-12 10:55:03.848 00:00:00.000 UDP 28.104.0.1:40362 -> 198.28.0.2:53 1 64 1 2025-07-12 10:55:03.848 00:00:00.000 UDP 28.104.0.1:38741 -> 198.28.0.2:53 1 64 1 2025-07-12 10:56:04.150 00:00:00.000 UDP 28.104.0.1:40585 -> 198.28.0.2:53 1 64 1 2025-07-12 10:56:04.150 00:00:00.000 UDP 28.104.0.1:36957 -> 198.28.0.2:53 1 64 1 2025-07-12 10:56:04.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40585 1 109 1 2025-07-12 10:56:04.159 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36957 1 80 1 2025-07-12 10:52:55.264 00:05:01.287 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-07-12 10:57:04.461 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49801 1 80 1 2025-07-12 10:57:03.832 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-07-12 10:57:04.461 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41125 1 109 1 2025-07-12 10:57:04.450 00:00:00.000 UDP 28.104.0.1:49801 -> 198.28.0.2:53 1 64 1 2025-07-12 10:57:04.450 00:00:00.000 UDP 28.104.0.1:41125 -> 198.28.0.2:53 1 64 1 2025-07-12 10:53:55.264 00:05:00.937 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-07-12 10:55:56.272 00:02:00.270 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-07-12 10:55:56.373 00:02:00.169 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-07-12 10:58:04.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44606 1 80 1 2025-07-12 10:58:04.755 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56697 1 109 1 2025-07-12 10:58:04.746 00:00:00.000 UDP 28.104.0.1:44606 -> 198.28.0.2:53 1 64 1 2025-07-12 10:58:04.746 00:00:00.000 UDP 28.104.0.1:56697 -> 198.28.0.2:53 1 64 1 Summary: total flows: 341, total bytes: 96579, total packets: 1425, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-07-12 09:55:55 - 2025-07-12 10:58:56 Total flows processed: 341, passed: 341, Blocks skipped: 0, Bytes read: 35528 Sys: 0.0035s User: 0.0026s Wall: 0.0045s flows/second: 76150.4 Runtime: 0.0045s