Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-16 04:54:46.084 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3012 1 2025-08-16 04:59:02.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49175 1 80 1 2025-08-16 04:59:02.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51003 1 109 1 2025-08-16 04:59:02.136 00:00:00.000 UDP 28.104.0.1:49175 -> 198.28.0.2:53 1 64 1 2025-08-16 04:59:02.136 00:00:00.000 UDP 28.104.0.1:51003 -> 198.28.0.2:53 1 64 1 2025-08-16 05:00:02.396 00:00:00.000 UDP 28.104.0.1:57477 -> 198.28.0.2:53 1 64 1 2025-08-16 05:00:02.396 00:00:00.000 UDP 28.104.0.1:36744 -> 198.28.0.2:53 1 64 1 2025-08-16 05:00:02.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36744 1 109 1 2025-08-16 05:00:02.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57477 1 80 1 2025-08-16 04:56:12.855 00:05:01.723 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 04:55:14.525 00:06:00.200 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 04:56:12.866 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 04:55:14.723 00:06:00.042 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:01:02.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37164 1 109 1 2025-08-16 05:01:02.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41627 1 80 1 2025-08-16 05:01:02.691 00:00:00.000 UDP 28.104.0.1:37164 -> 198.28.0.2:53 1 64 1 2025-08-16 05:01:02.691 00:00:00.000 UDP 28.104.0.1:41627 -> 198.28.0.2:53 1 64 1 2025-08-16 05:02:02.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46728 1 80 1 2025-08-16 05:02:02.995 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55789 1 109 1 2025-08-16 05:02:02.986 00:00:00.000 UDP 28.104.0.1:55789 -> 198.28.0.2:53 1 64 1 2025-08-16 05:02:02.986 00:00:00.000 UDP 28.104.0.1:46728 -> 198.28.0.2:53 1 64 1 2025-08-16 04:58:12.856 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:03:03.293 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39796 1 109 1 2025-08-16 05:03:03.293 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54232 1 80 1 2025-08-16 05:03:03.282 00:00:00.000 UDP 28.104.0.1:39796 -> 198.28.0.2:53 1 64 1 2025-08-16 05:03:03.282 00:00:00.000 UDP 28.104.0.1:54232 -> 198.28.0.2:53 1 64 1 2025-08-16 05:03:47.687 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:04:03.585 00:00:00.000 UDP 28.104.0.1:41703 -> 198.28.0.2:53 1 64 1 2025-08-16 05:04:03.585 00:00:00.000 UDP 28.104.0.1:48399 -> 198.28.0.2:53 1 64 1 2025-08-16 05:04:03.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41703 1 109 1 2025-08-16 05:04:03.594 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48399 1 80 1 2025-08-16 05:00:06.091 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-08-16 05:00:12.906 00:05:01.664 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:05:03.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40525 1 80 1 2025-08-16 05:05:03.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59746 1 109 1 2025-08-16 05:05:03.846 00:00:00.000 UDP 28.104.0.1:40525 -> 198.28.0.2:53 1 64 1 2025-08-16 05:05:03.846 00:00:00.000 UDP 28.104.0.1:59746 -> 198.28.0.2:53 1 64 1 2025-08-16 05:06:04.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60881 1 80 1 2025-08-16 05:06:04.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36392 1 109 1 2025-08-16 05:06:04.168 00:00:00.000 UDP 28.104.0.1:60881 -> 198.28.0.2:53 1 64 1 2025-08-16 05:06:04.168 00:00:00.000 UDP 28.104.0.1:36392 -> 198.28.0.2:53 1 64 1 2025-08-16 05:02:12.867 00:05:01.858 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:02:12.858 00:05:01.723 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:07:04.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47385 1 109 1 2025-08-16 05:07:04.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54849 1 80 1 2025-08-16 05:07:04.463 00:00:00.000 UDP 28.104.0.1:54849 -> 198.28.0.2:53 1 64 1 2025-08-16 05:07:04.463 00:00:00.000 UDP 28.104.0.1:47385 -> 198.28.0.2:53 1 64 1 2025-08-16 05:02:14.528 00:06:00.198 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:02:14.726 00:06:00.042 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:08:04.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52441 1 80 1 2025-08-16 05:08:04.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45514 1 109 1 2025-08-16 05:08:04.720 00:00:00.000 UDP 28.104.0.1:45514 -> 198.28.0.2:53 1 64 1 2025-08-16 05:08:04.720 00:00:00.000 UDP 28.104.0.1:52441 -> 198.28.0.2:53 1 64 1 2025-08-16 05:04:12.857 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:08:47.752 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:09:05.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39448 1 80 1 2025-08-16 05:09:05.042 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42075 1 109 1 2025-08-16 05:09:05.030 00:00:00.000 UDP 28.104.0.1:42075 -> 198.28.0.2:53 1 64 1 2025-08-16 05:09:05.029 00:00:00.000 UDP 28.104.0.1:39448 -> 198.28.0.2:53 1 64 1 2025-08-16 05:05:26.096 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3160 1 2025-08-16 05:10:05.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53354 1 109 1 2025-08-16 05:10:05.336 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58490 1 80 1 2025-08-16 05:10:05.327 00:00:00.000 UDP 28.104.0.1:58490 -> 198.28.0.2:53 1 64 1 2025-08-16 05:10:05.327 00:00:00.000 UDP 28.104.0.1:53354 -> 198.28.0.2:53 1 64 1 2025-08-16 05:06:12.907 00:05:01.663 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:11:05.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44933 1 80 1 2025-08-16 05:11:05.628 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49872 1 109 1 2025-08-16 05:11:05.619 00:00:00.000 UDP 28.104.0.1:44933 -> 198.28.0.2:53 1 64 1 2025-08-16 05:11:05.618 00:00:00.000 UDP 28.104.0.1:49872 -> 198.28.0.2:53 1 64 1 2025-08-16 05:12:05.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42560 1 80 1 2025-08-16 05:12:05.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42959 1 109 1 2025-08-16 05:12:05.873 00:00:00.000 UDP 28.104.0.1:42560 -> 198.28.0.2:53 1 64 1 2025-08-16 05:12:05.872 00:00:00.000 UDP 28.104.0.1:42959 -> 198.28.0.2:53 1 64 1 2025-08-16 05:08:12.868 00:05:01.858 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:08:12.858 00:05:01.723 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:13:06.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50622 1 109 1 2025-08-16 05:13:06.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46374 1 80 1 2025-08-16 05:13:06.178 00:00:00.000 UDP 28.104.0.1:46374 -> 198.28.0.2:53 1 64 1 2025-08-16 05:13:06.178 00:00:00.000 UDP 28.104.0.1:50622 -> 198.28.0.2:53 1 64 1 2025-08-16 05:13:47.893 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:14:06.469 00:00:00.000 UDP 28.104.0.1:35915 -> 198.28.0.2:53 1 64 1 2025-08-16 05:14:06.469 00:00:00.000 UDP 28.104.0.1:58001 -> 198.28.0.2:53 1 64 1 2025-08-16 05:14:06.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58001 1 80 1 2025-08-16 05:14:06.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35915 1 109 1 2025-08-16 05:09:14.529 00:06:00.198 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:09:14.727 00:06:00.042 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:10:12.858 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:10:46.099 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-08-16 05:15:06.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54569 1 80 1 2025-08-16 05:15:06.738 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54524 1 109 1 2025-08-16 05:15:06.728 00:00:00.000 UDP 28.104.0.1:54524 -> 198.28.0.2:53 1 64 1 2025-08-16 05:15:06.728 00:00:00.000 UDP 28.104.0.1:54569 -> 198.28.0.2:53 1 64 1 2025-08-16 05:16:07.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42400 1 109 1 2025-08-16 05:16:07.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53107 1 80 1 2025-08-16 05:16:07.072 00:00:00.000 UDP 28.104.0.1:42400 -> 198.28.0.2:53 1 64 1 2025-08-16 05:16:07.072 00:00:00.000 UDP 28.104.0.1:53107 -> 198.28.0.2:53 1 64 1 2025-08-16 05:12:12.910 00:05:01.663 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:17:07.367 00:00:00.000 UDP 28.104.0.1:33285 -> 198.28.0.2:53 1 64 1 2025-08-16 05:17:07.367 00:00:00.000 UDP 28.104.0.1:41897 -> 198.28.0.2:53 1 64 1 2025-08-16 05:17:07.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41897 1 109 1 2025-08-16 05:17:07.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33285 1 80 1 2025-08-16 05:18:07.659 00:00:00.000 UDP 28.104.0.1:41559 -> 198.28.0.2:53 1 64 1 2025-08-16 05:18:07.658 00:00:00.000 UDP 28.104.0.1:52985 -> 198.28.0.2:53 1 64 1 2025-08-16 05:18:07.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52985 1 80 1 2025-08-16 05:18:07.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41559 1 109 1 2025-08-16 05:14:12.868 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:14:12.859 00:05:01.723 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:18:47.777 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:19:07.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40190 1 109 1 2025-08-16 05:19:07.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35315 1 80 1 2025-08-16 05:19:07.950 00:00:00.000 UDP 28.104.0.1:40190 -> 198.28.0.2:53 1 64 1 2025-08-16 05:19:07.950 00:00:00.000 UDP 28.104.0.1:35315 -> 198.28.0.2:53 1 64 1 2025-08-16 05:20:08.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34784 1 80 1 2025-08-16 05:20:08.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57196 1 109 1 2025-08-16 05:20:08.247 00:00:00.000 UDP 28.104.0.1:57196 -> 198.28.0.2:53 1 64 1 2025-08-16 05:20:08.247 00:00:00.000 UDP 28.104.0.1:34784 -> 198.28.0.2:53 1 64 1 2025-08-16 05:16:12.858 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:16:06.103 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-08-16 05:21:08.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32963 1 80 1 2025-08-16 05:21:08.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37735 1 109 1 2025-08-16 05:21:08.538 00:00:00.000 UDP 28.104.0.1:32963 -> 198.28.0.2:53 1 64 1 2025-08-16 05:21:08.538 00:00:00.000 UDP 28.104.0.1:37735 -> 198.28.0.2:53 1 64 1 2025-08-16 05:16:14.530 00:06:00.198 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:16:14.728 00:06:00.043 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:22:08.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34475 1 80 1 2025-08-16 05:22:08.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39524 1 109 1 2025-08-16 05:22:08.806 00:00:00.000 UDP 28.104.0.1:39524 -> 198.28.0.2:53 1 64 1 2025-08-16 05:22:08.806 00:00:00.000 UDP 28.104.0.1:34475 -> 198.28.0.2:53 1 64 1 2025-08-16 05:18:12.909 00:05:01.668 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:23:09.093 00:00:00.000 UDP 28.104.0.1:52556 -> 198.28.0.2:53 1 64 1 2025-08-16 05:23:09.093 00:00:00.000 UDP 28.104.0.1:32921 -> 198.28.0.2:53 1 64 1 2025-08-16 05:23:09.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32921 1 80 1 2025-08-16 05:23:09.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52556 1 109 1 2025-08-16 05:23:47.962 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:24:09.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38653 1 109 1 2025-08-16 05:24:09.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49248 1 80 1 2025-08-16 05:24:09.390 00:00:00.000 UDP 28.104.0.1:49248 -> 198.28.0.2:53 1 64 1 2025-08-16 05:24:09.389 00:00:00.000 UDP 28.104.0.1:38653 -> 198.28.0.2:53 1 64 1 2025-08-16 05:20:12.869 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:20:12.859 00:05:01.728 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:25:09.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49549 1 80 1 2025-08-16 05:25:09.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50145 1 109 1 2025-08-16 05:25:09.693 00:00:00.000 UDP 28.104.0.1:50145 -> 198.28.0.2:53 1 64 1 2025-08-16 05:25:09.693 00:00:00.000 UDP 28.104.0.1:49549 -> 198.28.0.2:53 1 64 1 2025-08-16 05:21:26.114 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3328 1 2025-08-16 05:26:09.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43605 1 80 1 2025-08-16 05:26:09.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51523 1 109 1 2025-08-16 05:26:09.948 00:00:00.000 UDP 28.104.0.1:43605 -> 198.28.0.2:53 1 64 1 2025-08-16 05:26:09.947 00:00:00.000 UDP 28.104.0.1:51523 -> 198.28.0.2:53 1 64 1 2025-08-16 05:22:12.860 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:27:10.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57519 1 109 1 2025-08-16 05:27:10.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58923 1 80 1 2025-08-16 05:27:10.245 00:00:00.000 UDP 28.104.0.1:58923 -> 198.28.0.2:53 1 64 1 2025-08-16 05:27:10.245 00:00:00.000 UDP 28.104.0.1:57519 -> 198.28.0.2:53 1 64 1 2025-08-16 05:28:10.552 00:00:00.000 UDP 28.104.0.1:50802 -> 198.28.0.2:53 1 64 1 2025-08-16 05:28:10.552 00:00:00.000 UDP 28.104.0.1:33129 -> 198.28.0.2:53 1 64 1 2025-08-16 05:28:10.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33129 1 80 1 2025-08-16 05:28:10.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50802 1 109 1 2025-08-16 05:24:12.911 00:05:01.667 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:23:14.531 00:06:00.199 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:23:14.729 00:06:00.045 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:28:47.824 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:29:10.840 00:00:00.000 UDP 28.104.0.1:40393 -> 198.28.0.2:53 1 64 1 2025-08-16 05:29:10.840 00:00:00.000 UDP 28.104.0.1:59592 -> 198.28.0.2:53 1 64 1 2025-08-16 05:29:10.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40393 1 109 1 2025-08-16 05:29:10.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59592 1 80 1 2025-08-16 05:30:11.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41784 1 109 1 2025-08-16 05:30:11.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60938 1 80 1 2025-08-16 05:30:11.102 00:00:00.000 UDP 28.104.0.1:60938 -> 198.28.0.2:53 1 64 1 2025-08-16 05:30:11.102 00:00:00.000 UDP 28.104.0.1:41784 -> 198.28.0.2:53 1 64 1 2025-08-16 05:26:12.870 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:26:12.861 00:05:01.728 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:26:46.121 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-08-16 05:31:11.444 00:00:00.000 UDP 28.104.0.1:35542 -> 198.28.0.2:53 1 64 1 2025-08-16 05:31:11.444 00:00:00.000 UDP 28.104.0.1:56210 -> 198.28.0.2:53 1 64 1 2025-08-16 05:31:11.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35542 1 109 1 2025-08-16 05:31:11.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56210 1 80 1 2025-08-16 05:32:11.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37384 1 80 1 2025-08-16 05:32:11.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60829 1 109 1 2025-08-16 05:32:11.742 00:00:00.000 UDP 28.104.0.1:60829 -> 198.28.0.2:53 1 64 1 2025-08-16 05:32:11.742 00:00:00.000 UDP 28.104.0.1:37384 -> 198.28.0.2:53 1 64 1 2025-08-16 05:28:12.860 00:05:01.880 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:33:12.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39170 1 109 1 2025-08-16 05:33:12.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37752 1 80 1 2025-08-16 05:33:12.054 00:00:00.000 UDP 28.104.0.1:39170 -> 198.28.0.2:53 1 64 1 2025-08-16 05:33:12.054 00:00:00.000 UDP 28.104.0.1:37752 -> 198.28.0.2:53 1 64 1 2025-08-16 05:33:48.164 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:30:12.911 00:05:01.668 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:34:12.345 00:00:00.000 UDP 28.104.0.1:44716 -> 198.28.0.2:53 1 64 1 2025-08-16 05:34:12.345 00:00:00.000 UDP 28.104.0.1:43438 -> 198.28.0.2:53 1 64 1 2025-08-16 05:34:12.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44716 1 80 1 2025-08-16 05:34:12.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43438 1 109 1 2025-08-16 05:35:12.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36115 1 109 1 2025-08-16 05:35:12.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53056 1 80 1 2025-08-16 05:35:12.642 00:00:00.000 UDP 28.104.0.1:36115 -> 198.28.0.2:53 1 64 1 2025-08-16 05:30:14.533 00:06:00.199 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:35:12.642 00:00:00.000 UDP 28.104.0.1:53056 -> 198.28.0.2:53 1 64 1 2025-08-16 05:30:14.731 00:06:00.044 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:36:12.896 00:00:00.000 UDP 28.104.0.1:51995 -> 198.28.0.2:53 1 64 1 2025-08-16 05:32:12.872 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:36:12.896 00:00:00.000 UDP 28.104.0.1:47794 -> 198.28.0.2:53 1 64 1 2025-08-16 05:32:12.861 00:05:01.729 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:32:06.127 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3100 1 2025-08-16 05:36:12.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47794 1 109 1 2025-08-16 05:36:12.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51995 1 80 1 2025-08-16 05:37:13.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45257 1 80 1 2025-08-16 05:37:13.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54652 1 109 1 2025-08-16 05:37:13.198 00:00:00.000 UDP 28.104.0.1:45257 -> 198.28.0.2:53 1 64 1 2025-08-16 05:37:13.198 00:00:00.000 UDP 28.104.0.1:54652 -> 198.28.0.2:53 1 64 1 2025-08-16 05:34:12.862 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:38:13.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48165 1 80 1 2025-08-16 05:38:13.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45287 1 109 1 2025-08-16 05:38:13.497 00:00:00.000 UDP 28.104.0.1:48165 -> 198.28.0.2:53 1 64 1 2025-08-16 05:38:13.497 00:00:00.000 UDP 28.104.0.1:45287 -> 198.28.0.2:53 1 64 1 2025-08-16 05:38:48.366 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:39:13.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48277 1 80 1 2025-08-16 05:39:13.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44819 1 109 1 2025-08-16 05:39:13.790 00:00:00.000 UDP 28.104.0.1:44819 -> 198.28.0.2:53 1 64 1 2025-08-16 05:39:13.790 00:00:00.000 UDP 28.104.0.1:48277 -> 198.28.0.2:53 1 64 1 2025-08-16 05:40:14.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48700 1 80 1 2025-08-16 05:40:14.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43196 1 109 1 2025-08-16 05:36:12.913 00:05:01.669 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:40:14.100 00:00:00.000 UDP 28.104.0.1:48700 -> 198.28.0.2:53 1 64 1 2025-08-16 05:40:14.100 00:00:00.000 UDP 28.104.0.1:43196 -> 198.28.0.2:53 1 64 1 2025-08-16 05:41:14.390 00:00:00.000 UDP 28.104.0.1:36680 -> 198.28.0.2:53 1 64 1 2025-08-16 05:41:14.390 00:00:00.000 UDP 28.104.0.1:59655 -> 198.28.0.2:53 1 64 1 2025-08-16 05:41:14.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36680 1 109 1 2025-08-16 05:41:14.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59655 1 80 1 2025-08-16 05:37:26.138 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-08-16 05:37:14.531 00:06:00.201 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:38:12.872 00:05:01.860 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:42:14.693 00:00:00.000 UDP 28.104.0.1:38659 -> 198.28.0.2:53 1 64 1 2025-08-16 05:37:14.731 00:06:00.043 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:42:14.692 00:00:00.000 UDP 28.104.0.1:46449 -> 198.28.0.2:53 1 64 1 2025-08-16 05:38:12.862 00:05:01.737 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:42:14.703 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38659 1 80 1 2025-08-16 05:42:14.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46449 1 109 1 2025-08-16 05:43:14.945 00:00:00.000 UDP 28.104.0.1:33096 -> 198.28.0.2:53 1 64 1 2025-08-16 05:43:14.945 00:00:00.000 UDP 28.104.0.1:42301 -> 198.28.0.2:53 1 64 1 2025-08-16 05:43:14.956 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42301 1 109 1 2025-08-16 05:43:14.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33096 1 80 1 2025-08-16 05:43:48.335 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:44:15.254 00:00:00.000 UDP 28.104.0.1:43509 -> 198.28.0.2:53 1 64 1 2025-08-16 05:44:15.254 00:00:00.000 UDP 28.104.0.1:47867 -> 198.28.0.2:53 1 64 1 2025-08-16 05:40:12.863 00:05:01.880 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:44:15.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43509 1 109 1 2025-08-16 05:44:15.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47867 1 80 1 2025-08-16 05:45:15.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58130 1 80 1 2025-08-16 05:45:15.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60066 1 109 1 2025-08-16 05:45:15.560 00:00:00.000 UDP 28.104.0.1:60066 -> 198.28.0.2:53 1 64 1 2025-08-16 05:45:15.560 00:00:00.000 UDP 28.104.0.1:58130 -> 198.28.0.2:53 1 64 1 2025-08-16 05:46:15.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42425 1 109 1 2025-08-16 05:46:15.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38526 1 80 1 2025-08-16 05:46:15.854 00:00:00.000 UDP 28.104.0.1:38526 -> 198.28.0.2:53 1 64 1 2025-08-16 05:42:12.914 00:05:01.669 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:46:15.855 00:00:00.000 UDP 28.104.0.1:42425 -> 198.28.0.2:53 1 64 1 2025-08-16 05:42:46.149 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-08-16 05:47:16.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48199 1 80 1 2025-08-16 05:47:16.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55050 1 109 1 2025-08-16 05:47:16.183 00:00:00.000 UDP 28.104.0.1:48199 -> 198.28.0.2:53 1 64 1 2025-08-16 05:47:16.183 00:00:00.000 UDP 28.104.0.1:55050 -> 198.28.0.2:53 1 64 1 2025-08-16 05:44:12.864 00:05:01.729 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:48:16.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41249 1 80 1 2025-08-16 05:48:16.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36989 1 109 1 2025-08-16 05:48:16.481 00:00:00.000 UDP 28.104.0.1:41249 -> 198.28.0.2:53 1 64 1 2025-08-16 05:48:16.481 00:00:00.000 UDP 28.104.0.1:36989 -> 198.28.0.2:53 1 64 1 2025-08-16 05:44:12.874 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:48:49.012 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:49:16.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60176 1 80 1 2025-08-16 05:49:16.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54936 1 109 1 2025-08-16 05:49:16.783 00:00:00.000 UDP 28.104.0.1:60176 -> 198.28.0.2:53 1 64 1 2025-08-16 05:44:14.534 00:06:00.199 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:44:14.732 00:06:00.044 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:49:16.783 00:00:00.000 UDP 28.104.0.1:54936 -> 198.28.0.2:53 1 64 1 2025-08-16 05:46:12.865 00:05:01.879 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:50:17.792 00:00:00.000 UDP 28.104.0.1:36149 -> 198.28.0.2:53 1 64 1 2025-08-16 05:50:17.792 00:00:00.000 UDP 28.104.0.1:55771 -> 198.28.0.2:53 1 64 1 2025-08-16 05:50:17.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36149 1 109 1 2025-08-16 05:50:17.803 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55771 1 80 1 2025-08-16 05:51:18.090 00:00:00.000 UDP 28.104.0.1:36540 -> 198.28.0.2:53 1 64 1 2025-08-16 05:51:18.090 00:00:00.000 UDP 28.104.0.1:35417 -> 198.28.0.2:53 1 64 1 2025-08-16 05:51:18.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36540 1 80 1 2025-08-16 05:51:18.101 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35417 1 109 1 2025-08-16 05:48:06.155 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3156 1 2025-08-16 05:48:12.916 00:05:01.667 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:52:18.346 00:00:00.000 UDP 28.104.0.1:36257 -> 198.28.0.2:53 1 64 1 2025-08-16 05:52:18.346 00:00:00.000 UDP 28.104.0.1:47936 -> 198.28.0.2:53 1 64 1 2025-08-16 05:52:18.357 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36257 1 109 1 2025-08-16 05:52:18.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47936 1 80 1 2025-08-16 05:53:18.599 00:00:00.000 UDP 28.104.0.1:58063 -> 198.28.0.2:53 1 64 1 2025-08-16 05:53:18.599 00:00:00.000 UDP 28.104.0.1:32970 -> 198.28.0.2:53 1 64 1 2025-08-16 05:53:18.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58063 1 80 1 2025-08-16 05:53:18.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32970 1 109 1 2025-08-16 05:53:48.802 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-16 05:50:12.866 00:05:01.729 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-16 05:54:18.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48197 1 80 1 2025-08-16 05:54:18.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50700 1 109 1 2025-08-16 05:50:12.876 00:05:01.861 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-16 05:54:18.893 00:00:00.000 UDP 28.104.0.1:50700 -> 198.28.0.2:53 1 64 1 2025-08-16 05:54:18.894 00:00:00.000 UDP 28.104.0.1:48197 -> 198.28.0.2:53 1 64 1 2025-08-16 05:55:19.209 00:00:00.000 UDP 28.104.0.1:55630 -> 198.28.0.2:53 1 64 1 2025-08-16 05:55:19.209 00:00:00.000 UDP 28.104.0.1:54231 -> 198.28.0.2:53 1 64 1 2025-08-16 05:55:19.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54231 1 109 1 2025-08-16 05:55:19.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55630 1 80 1 2025-08-16 05:52:12.866 00:05:01.880 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-16 05:51:14.534 00:06:00.203 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-16 05:51:14.733 00:06:00.045 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-16 05:56:19.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47248 1 109 1 2025-08-16 05:56:19.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39469 1 80 1 2025-08-16 05:56:19.496 00:00:00.000 UDP 28.104.0.1:39469 -> 198.28.0.2:53 1 64 1 2025-08-16 05:56:19.496 00:00:00.000 UDP 28.104.0.1:47248 -> 198.28.0.2:53 1 64 1 2025-08-16 05:57:19.799 00:00:00.000 UDP 28.104.0.1:60601 -> 198.28.0.2:53 1 64 1 2025-08-16 05:57:19.799 00:00:00.000 UDP 28.104.0.1:33400 -> 198.28.0.2:53 1 64 1 2025-08-16 05:57:19.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60601 1 109 1 2025-08-16 05:57:19.810 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33400 1 80 1 2025-08-16 05:53:26.160 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2436 1 2025-08-16 05:54:12.918 00:05:01.669 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-16 05:58:20.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53407 1 109 1 2025-08-16 05:58:20.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46953 1 80 1 2025-08-16 05:58:20.095 00:00:00.000 UDP 28.104.0.1:46953 -> 198.28.0.2:53 1 64 1 2025-08-16 05:58:20.095 00:00:00.000 UDP 28.104.0.1:53407 -> 198.28.0.2:53 1 64 1 2025-08-16 05:58:48.497 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 Summary: total flows: 322, total bytes: 99762, total packets: 1470, avg bps: 206, avg pps: 0, avg bpp: 67 Time window: 2025-08-16 04:54:46 - 2025-08-16 05:59:14 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0049s User: 0.0019s Wall: 0.0049s flows/second: 65210.1 Runtime: 0.0050s