Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-02 14:59:04.200 00:00:00.000 UDP 28.104.0.1:38868 -> 198.28.0.2:53 1 64 1 2025-09-02 14:59:04.200 00:00:00.000 UDP 28.104.0.1:52167 -> 198.28.0.2:53 1 64 1 2025-09-02 14:59:04.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52167 1 80 1 2025-09-02 14:59:04.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38868 1 109 1 2025-09-02 14:55:22.401 00:05:01.571 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 14:55:23.873 00:05:00.276 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:00:04.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42626 1 109 1 2025-09-02 15:00:04.460 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53459 1 80 1 2025-09-02 15:00:04.452 00:00:00.000 UDP 28.104.0.1:42626 -> 198.28.0.2:53 1 64 1 2025-09-02 15:00:04.451 00:00:00.000 UDP 28.104.0.1:53459 -> 198.28.0.2:53 1 64 1 2025-09-02 14:56:22.450 00:05:01.512 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 14:56:40.667 00:05:10.276 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3132 1 2025-09-02 15:01:04.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48862 1 109 1 2025-09-02 15:01:04.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51330 1 80 1 2025-09-02 15:01:04.712 00:00:00.000 UDP 28.104.0.1:51330 -> 198.28.0.2:53 1 64 1 2025-09-02 15:01:04.712 00:00:00.000 UDP 28.104.0.1:48862 -> 198.28.0.2:53 1 64 1 2025-09-02 14:57:22.402 00:05:01.482 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:02:05.031 00:00:00.000 UDP 28.104.0.1:46295 -> 198.28.0.2:53 1 64 1 2025-09-02 15:02:05.032 00:00:00.000 UDP 28.104.0.1:42444 -> 198.28.0.2:53 1 64 1 2025-09-02 15:02:05.042 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46295 1 109 1 2025-09-02 15:02:05.041 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42444 1 80 1 2025-09-02 15:02:10.951 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 14:58:22.411 00:05:01.463 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:03:05.284 00:00:00.000 UDP 28.104.0.1:35269 -> 198.28.0.2:53 1 64 1 2025-09-02 15:03:05.284 00:00:00.000 UDP 28.104.0.1:54929 -> 198.28.0.2:53 1 64 1 2025-09-02 15:03:05.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54929 1 80 1 2025-09-02 15:03:05.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35269 1 109 1 2025-09-02 15:04:05.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42964 1 80 1 2025-09-02 15:04:05.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45379 1 109 1 2025-09-02 15:04:05.574 00:00:00.000 UDP 28.104.0.1:42964 -> 198.28.0.2:53 1 64 1 2025-09-02 15:04:05.574 00:00:00.000 UDP 28.104.0.1:45379 -> 198.28.0.2:53 1 64 1 2025-09-02 15:00:23.873 00:05:00.271 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:05:05.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54758 1 109 1 2025-09-02 15:05:05.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46338 1 80 1 2025-09-02 15:05:05.873 00:00:00.000 UDP 28.104.0.1:54758 -> 198.28.0.2:53 1 64 1 2025-09-02 15:05:05.873 00:00:00.000 UDP 28.104.0.1:46338 -> 198.28.0.2:53 1 64 1 2025-09-02 15:01:22.401 00:05:01.572 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:01:23.873 00:05:00.280 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:06:06.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50146 1 80 1 2025-09-02 15:06:06.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45407 1 109 1 2025-09-02 15:06:06.180 00:00:00.000 UDP 28.104.0.1:50146 -> 198.28.0.2:53 1 64 1 2025-09-02 15:06:06.180 00:00:00.000 UDP 28.104.0.1:45407 -> 198.28.0.2:53 1 64 1 2025-09-02 15:02:00.671 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-09-02 15:02:22.452 00:05:01.512 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:07:06.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56516 1 80 1 2025-09-02 15:07:06.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39634 1 109 1 2025-09-02 15:07:06.475 00:00:00.000 UDP 28.104.0.1:39634 -> 198.28.0.2:53 1 64 1 2025-09-02 15:07:06.475 00:00:00.000 UDP 28.104.0.1:56516 -> 198.28.0.2:53 1 64 1 2025-09-02 15:07:11.174 00:00:00.019 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:03:22.404 00:05:01.482 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:08:06.772 00:00:00.000 UDP 28.104.0.1:48621 -> 198.28.0.2:53 1 64 1 2025-09-02 15:08:06.772 00:00:00.000 UDP 28.104.0.1:60653 -> 198.28.0.2:53 1 64 1 2025-09-02 15:08:06.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48621 1 109 1 2025-09-02 15:08:06.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60653 1 80 1 2025-09-02 15:04:22.415 00:05:01.462 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:09:07.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50395 1 109 1 2025-09-02 15:09:07.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35217 1 80 1 2025-09-02 15:09:07.067 00:00:00.000 UDP 28.104.0.1:35217 -> 198.28.0.2:53 1 64 1 2025-09-02 15:09:07.067 00:00:00.000 UDP 28.104.0.1:50395 -> 198.28.0.2:53 1 64 1 2025-09-02 15:10:07.362 00:00:00.000 UDP 28.104.0.1:38184 -> 198.28.0.2:53 1 64 1 2025-09-02 15:10:07.361 00:00:00.000 UDP 28.104.0.1:36554 -> 198.28.0.2:53 1 64 1 2025-09-02 15:10:07.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38184 1 109 1 2025-09-02 15:10:07.372 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36554 1 80 1 2025-09-02 15:06:23.875 00:05:00.271 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:11:07.655 00:00:00.000 UDP 28.104.0.1:56444 -> 198.28.0.2:53 1 64 1 2025-09-02 15:11:07.655 00:00:00.000 UDP 28.104.0.1:40691 -> 198.28.0.2:53 1 64 1 2025-09-02 15:11:07.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40691 1 80 1 2025-09-02 15:11:07.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56444 1 109 1 2025-09-02 15:07:20.676 00:05:00.424 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2520 1 2025-09-02 15:07:23.874 00:05:00.279 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:07:22.404 00:05:01.574 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:12:11.439 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:12:07.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48550 1 109 1 2025-09-02 15:12:07.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54240 1 80 1 2025-09-02 15:12:07.952 00:00:00.000 UDP 28.104.0.1:48550 -> 198.28.0.2:53 1 64 1 2025-09-02 15:12:07.952 00:00:00.000 UDP 28.104.0.1:54240 -> 198.28.0.2:53 1 64 1 2025-09-02 15:08:22.455 00:05:01.512 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:13:08.252 00:00:00.000 UDP 28.104.0.1:56001 -> 198.28.0.2:53 1 64 1 2025-09-02 15:13:08.253 00:00:00.000 UDP 28.104.0.1:35880 -> 198.28.0.2:53 1 64 1 2025-09-02 15:13:08.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56001 1 109 1 2025-09-02 15:13:08.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35880 1 80 1 2025-09-02 15:09:22.404 00:05:01.486 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:14:08.515 00:00:00.000 UDP 28.104.0.1:37636 -> 198.28.0.2:53 1 64 1 2025-09-02 15:14:08.515 00:00:00.000 UDP 28.104.0.1:57286 -> 198.28.0.2:53 1 64 1 2025-09-02 15:14:08.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57286 1 80 1 2025-09-02 15:14:08.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37636 1 109 1 2025-09-02 15:10:22.415 00:05:01.465 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:15:08.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49715 1 80 1 2025-09-02 15:15:08.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44619 1 109 1 2025-09-02 15:15:08.803 00:00:00.000 UDP 28.104.0.1:49715 -> 198.28.0.2:53 1 64 1 2025-09-02 15:15:08.803 00:00:00.000 UDP 28.104.0.1:44619 -> 198.28.0.2:53 1 64 1 2025-09-02 15:16:09.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50758 1 109 1 2025-09-02 15:16:09.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47713 1 80 1 2025-09-02 15:16:09.101 00:00:00.000 UDP 28.104.0.1:47713 -> 198.28.0.2:53 1 64 1 2025-09-02 15:16:09.101 00:00:00.000 UDP 28.104.0.1:50758 -> 198.28.0.2:53 1 64 1 2025-09-02 15:12:23.874 00:05:00.271 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:12:30.682 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2876 1 2025-09-02 15:17:11.324 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:17:09.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58416 1 109 1 2025-09-02 15:17:09.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53557 1 80 1 2025-09-02 15:17:09.404 00:00:00.000 UDP 28.104.0.1:53557 -> 198.28.0.2:53 1 64 1 2025-09-02 15:17:09.404 00:00:00.000 UDP 28.104.0.1:58416 -> 198.28.0.2:53 1 64 1 2025-09-02 15:13:22.406 00:05:01.572 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:13:23.880 00:05:00.274 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:18:09.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45601 1 109 1 2025-09-02 15:18:09.667 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49985 1 80 1 2025-09-02 15:18:09.656 00:00:00.000 UDP 28.104.0.1:49985 -> 198.28.0.2:53 1 64 1 2025-09-02 15:18:09.656 00:00:00.000 UDP 28.104.0.1:45601 -> 198.28.0.2:53 1 64 1 2025-09-02 15:14:22.456 00:05:01.515 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:19:09.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46201 1 109 1 2025-09-02 15:19:09.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42399 1 80 1 2025-09-02 15:19:09.951 00:00:00.000 UDP 28.104.0.1:42399 -> 198.28.0.2:53 1 64 1 2025-09-02 15:19:09.951 00:00:00.000 UDP 28.104.0.1:46201 -> 198.28.0.2:53 1 64 1 2025-09-02 15:15:22.406 00:05:01.487 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:20:10.247 00:00:00.000 UDP 28.104.0.1:36708 -> 198.28.0.2:53 1 64 1 2025-09-02 15:20:10.247 00:00:00.000 UDP 28.104.0.1:57679 -> 198.28.0.2:53 1 64 1 2025-09-02 15:20:10.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36708 1 109 1 2025-09-02 15:20:10.257 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57679 1 80 1 2025-09-02 15:16:22.415 00:05:01.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:21:10.538 00:00:00.000 UDP 28.104.0.1:56504 -> 198.28.0.2:53 1 64 1 2025-09-02 15:21:10.538 00:00:00.000 UDP 28.104.0.1:59792 -> 198.28.0.2:53 1 64 1 2025-09-02 15:21:10.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59792 1 80 1 2025-09-02 15:21:10.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56504 1 109 1 2025-09-02 15:17:50.687 00:05:10.514 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2980 1 2025-09-02 15:22:11.377 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:22:10.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41195 1 80 1 2025-09-02 15:22:10.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53166 1 109 1 2025-09-02 15:22:10.833 00:00:00.000 UDP 28.104.0.1:41195 -> 198.28.0.2:53 1 64 1 2025-09-02 15:22:10.833 00:00:00.000 UDP 28.104.0.1:53166 -> 198.28.0.2:53 1 64 1 2025-09-02 15:18:23.882 00:05:00.284 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:23:11.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38322 1 80 1 2025-09-02 15:23:11.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49810 1 109 1 2025-09-02 15:23:11.101 00:00:00.000 UDP 28.104.0.1:38322 -> 198.28.0.2:53 1 64 1 2025-09-02 15:23:11.101 00:00:00.000 UDP 28.104.0.1:49810 -> 198.28.0.2:53 1 64 1 2025-09-02 15:19:23.882 00:05:00.295 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:19:22.406 00:05:01.576 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:24:11.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35398 1 109 1 2025-09-02 15:24:11.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50290 1 80 1 2025-09-02 15:24:11.402 00:00:00.000 UDP 28.104.0.1:35398 -> 198.28.0.2:53 1 64 1 2025-09-02 15:24:11.402 00:00:00.000 UDP 28.104.0.1:50290 -> 198.28.0.2:53 1 64 1 2025-09-02 15:20:22.458 00:05:01.515 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:25:11.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41891 1 80 1 2025-09-02 15:25:11.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34795 1 109 1 2025-09-02 15:25:11.701 00:00:00.000 UDP 28.104.0.1:34795 -> 198.28.0.2:53 1 64 1 2025-09-02 15:25:11.701 00:00:00.000 UDP 28.104.0.1:41891 -> 198.28.0.2:53 1 64 1 2025-09-02 15:21:22.407 00:05:01.487 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:26:12.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38099 1 109 1 2025-09-02 15:26:12.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56425 1 80 1 2025-09-02 15:26:12.002 00:00:00.000 UDP 28.104.0.1:56425 -> 198.28.0.2:53 1 64 1 2025-09-02 15:26:12.002 00:00:00.000 UDP 28.104.0.1:38099 -> 198.28.0.2:53 1 64 1 2025-09-02 15:22:22.418 00:05:01.466 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:27:12.303 00:00:00.000 UDP 28.104.0.1:47264 -> 198.28.0.2:53 1 64 1 2025-09-02 15:27:12.303 00:00:00.000 UDP 28.104.0.1:40849 -> 198.28.0.2:53 1 64 1 2025-09-02 15:27:11.791 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:27:12.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40849 1 80 1 2025-09-02 15:27:12.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47264 1 109 1 2025-09-02 15:23:10.691 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2420 1 2025-09-02 15:28:12.604 00:00:00.000 UDP 28.104.0.1:57372 -> 198.28.0.2:53 1 64 1 2025-09-02 15:28:12.604 00:00:00.000 UDP 28.104.0.1:45530 -> 198.28.0.2:53 1 64 1 2025-09-02 15:28:12.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57372 1 80 1 2025-09-02 15:28:12.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45530 1 109 1 2025-09-02 15:24:23.885 00:05:00.283 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:29:12.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53753 1 80 1 2025-09-02 15:29:12.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39038 1 109 1 2025-09-02 15:29:12.927 00:00:00.000 UDP 28.104.0.1:39038 -> 198.28.0.2:53 1 64 1 2025-09-02 15:29:12.927 00:00:00.000 UDP 28.104.0.1:53753 -> 198.28.0.2:53 1 64 1 2025-09-02 15:25:22.407 00:05:01.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:25:23.884 00:05:00.294 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:30:13.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52807 1 80 1 2025-09-02 15:30:13.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48930 1 109 1 2025-09-02 15:30:13.234 00:00:00.000 UDP 28.104.0.1:48930 -> 198.28.0.2:53 1 64 1 2025-09-02 15:30:13.234 00:00:00.000 UDP 28.104.0.1:52807 -> 198.28.0.2:53 1 64 1 2025-09-02 15:26:22.458 00:05:01.521 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:31:13.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58846 1 80 1 2025-09-02 15:31:13.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35004 1 109 1 2025-09-02 15:31:13.485 00:00:00.000 UDP 28.104.0.1:58846 -> 198.28.0.2:53 1 64 1 2025-09-02 15:31:13.485 00:00:00.000 UDP 28.104.0.1:35004 -> 198.28.0.2:53 1 64 1 2025-09-02 15:27:22.409 00:05:01.487 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:32:11.538 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:32:13.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44560 1 80 1 2025-09-02 15:32:13.786 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51986 1 109 1 2025-09-02 15:32:13.777 00:00:00.000 UDP 28.104.0.1:51986 -> 198.28.0.2:53 1 64 1 2025-09-02 15:32:13.777 00:00:00.000 UDP 28.104.0.1:44560 -> 198.28.0.2:53 1 64 1 2025-09-02 15:28:22.418 00:05:01.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:28:30.700 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3040 1 2025-09-02 15:33:14.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48972 1 109 1 2025-09-02 15:33:14.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44066 1 80 1 2025-09-02 15:33:14.051 00:00:00.000 UDP 28.104.0.1:44066 -> 198.28.0.2:53 1 64 1 2025-09-02 15:33:14.051 00:00:00.000 UDP 28.104.0.1:48972 -> 198.28.0.2:53 1 64 1 2025-09-02 15:34:14.301 00:00:00.000 UDP 28.104.0.1:40850 -> 198.28.0.2:53 1 64 1 2025-09-02 15:34:14.301 00:00:00.000 UDP 28.104.0.1:50482 -> 198.28.0.2:53 1 64 1 2025-09-02 15:34:14.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50482 1 109 1 2025-09-02 15:34:14.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40850 1 80 1 2025-09-02 15:30:23.884 00:05:00.284 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:35:14.559 00:00:00.000 UDP 28.104.0.1:47556 -> 198.28.0.2:53 1 64 1 2025-09-02 15:35:14.559 00:00:00.000 UDP 28.104.0.1:58577 -> 198.28.0.2:53 1 64 1 2025-09-02 15:35:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58577 1 109 1 2025-09-02 15:35:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47556 1 80 1 2025-09-02 15:31:23.884 00:05:00.296 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:31:22.410 00:05:01.579 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:36:14.846 00:00:00.000 UDP 28.104.0.1:41584 -> 198.28.0.2:53 1 64 1 2025-09-02 15:36:14.846 00:00:00.000 UDP 28.104.0.1:42067 -> 198.28.0.2:53 1 64 1 2025-09-02 15:36:14.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42067 1 109 1 2025-09-02 15:36:14.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41584 1 80 1 2025-09-02 15:32:22.459 00:05:01.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:37:11.701 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:37:15.247 00:00:00.000 UDP 28.104.0.1:56564 -> 198.28.0.2:53 1 64 1 2025-09-02 15:37:15.247 00:00:00.000 UDP 28.104.0.1:53150 -> 198.28.0.2:53 1 64 1 2025-09-02 15:37:15.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53150 1 80 1 2025-09-02 15:37:15.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56564 1 109 1 2025-09-02 15:33:22.411 00:05:01.485 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:33:50.709 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2524 1 2025-09-02 15:38:15.543 00:00:00.000 UDP 28.104.0.1:57087 -> 198.28.0.2:53 1 64 1 2025-09-02 15:38:15.543 00:00:00.000 UDP 28.104.0.1:39763 -> 198.28.0.2:53 1 64 1 2025-09-02 15:38:15.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39763 1 80 1 2025-09-02 15:38:15.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57087 1 109 1 2025-09-02 15:34:22.419 00:05:01.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:39:15.794 00:00:00.000 UDP 28.104.0.1:54678 -> 198.28.0.2:53 1 64 1 2025-09-02 15:39:15.794 00:00:00.000 UDP 28.104.0.1:37629 -> 198.28.0.2:53 1 64 1 2025-09-02 15:39:15.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54678 1 109 1 2025-09-02 15:39:15.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37629 1 80 1 2025-09-02 15:40:16.100 00:00:00.000 UDP 28.104.0.1:55183 -> 198.28.0.2:53 1 64 1 2025-09-02 15:40:16.100 00:00:00.000 UDP 28.104.0.1:33334 -> 198.28.0.2:53 1 64 1 2025-09-02 15:40:16.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55183 1 109 1 2025-09-02 15:40:16.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33334 1 80 1 2025-09-02 15:36:23.887 00:05:00.282 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:41:16.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37797 1 109 1 2025-09-02 15:41:16.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42812 1 80 1 2025-09-02 15:41:16.569 00:00:00.000 UDP 28.104.0.1:37797 -> 198.28.0.2:53 1 64 1 2025-09-02 15:41:16.569 00:00:00.000 UDP 28.104.0.1:42812 -> 198.28.0.2:53 1 64 1 2025-09-02 15:37:22.410 00:05:01.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:37:23.889 00:05:00.302 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:42:11.765 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:42:16.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42265 1 80 1 2025-09-02 15:42:16.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55038 1 109 1 2025-09-02 15:42:16.822 00:00:00.000 UDP 28.104.0.1:42265 -> 198.28.0.2:53 1 64 1 2025-09-02 15:42:16.821 00:00:00.000 UDP 28.104.0.1:55038 -> 198.28.0.2:53 1 64 1 2025-09-02 15:38:22.460 00:05:01.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:43:17.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57019 1 80 1 2025-09-02 15:43:17.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42707 1 109 1 2025-09-02 15:39:10.714 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2800 1 2025-09-02 15:43:17.109 00:00:00.000 UDP 28.104.0.1:42707 -> 198.28.0.2:53 1 64 1 2025-09-02 15:43:17.109 00:00:00.000 UDP 28.104.0.1:57019 -> 198.28.0.2:53 1 64 1 2025-09-02 15:39:22.410 00:05:01.487 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:44:17.399 00:00:00.000 UDP 28.104.0.1:40062 -> 198.28.0.2:53 1 64 1 2025-09-02 15:44:17.399 00:00:00.000 UDP 28.104.0.1:35009 -> 198.28.0.2:53 1 64 1 2025-09-02 15:44:17.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35009 1 109 1 2025-09-02 15:44:17.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40062 1 80 1 2025-09-02 15:40:22.422 00:05:01.466 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:45:17.690 00:00:00.000 UDP 28.104.0.1:32784 -> 198.28.0.2:53 1 64 1 2025-09-02 15:45:17.690 00:00:00.000 UDP 28.104.0.1:59429 -> 198.28.0.2:53 1 64 1 2025-09-02 15:45:17.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32784 1 80 1 2025-09-02 15:45:17.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59429 1 109 1 2025-09-02 15:46:17.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53894 1 80 1 2025-09-02 15:46:17.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35203 1 109 1 2025-09-02 15:46:17.947 00:00:00.000 UDP 28.104.0.1:35203 -> 198.28.0.2:53 1 64 1 2025-09-02 15:46:17.947 00:00:00.000 UDP 28.104.0.1:53894 -> 198.28.0.2:53 1 64 1 2025-09-02 15:42:23.887 00:05:00.286 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:47:11.751 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:47:18.658 00:00:00.000 UDP 28.104.0.1:40691 -> 198.28.0.2:53 1 64 1 2025-09-02 15:47:18.658 00:00:00.000 UDP 28.104.0.1:49982 -> 198.28.0.2:53 1 64 1 2025-09-02 15:47:18.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40691 1 109 1 2025-09-02 15:47:18.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49982 1 80 1 2025-09-02 15:43:23.887 00:05:00.297 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:43:22.412 00:05:01.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:48:19.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58562 1 109 1 2025-09-02 15:48:19.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40653 1 80 1 2025-09-02 15:48:19.003 00:00:00.000 UDP 28.104.0.1:58562 -> 198.28.0.2:53 1 64 1 2025-09-02 15:48:19.003 00:00:00.000 UDP 28.104.0.1:40653 -> 198.28.0.2:53 1 64 1 2025-09-02 15:44:22.461 00:05:01.523 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:44:30.724 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-09-02 15:49:19.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43363 1 109 1 2025-09-02 15:49:19.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59122 1 80 1 2025-09-02 15:49:19.304 00:00:00.000 UDP 28.104.0.1:43363 -> 198.28.0.2:53 1 64 1 2025-09-02 15:49:19.304 00:00:00.000 UDP 28.104.0.1:59122 -> 198.28.0.2:53 1 64 1 2025-09-02 15:45:22.410 00:05:01.494 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:50:19.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38119 1 109 1 2025-09-02 15:50:19.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38816 1 80 1 2025-09-02 15:50:19.602 00:00:00.000 UDP 28.104.0.1:38119 -> 198.28.0.2:53 1 64 1 2025-09-02 15:50:19.602 00:00:00.000 UDP 28.104.0.1:38816 -> 198.28.0.2:53 1 64 1 2025-09-02 15:46:22.421 00:05:01.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:51:19.892 00:00:00.000 UDP 28.104.0.1:51298 -> 198.28.0.2:53 1 64 1 2025-09-02 15:51:19.892 00:00:00.000 UDP 28.104.0.1:45397 -> 198.28.0.2:53 1 64 1 2025-09-02 15:51:19.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51298 1 109 1 2025-09-02 15:51:19.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45397 1 80 1 2025-09-02 15:52:11.899 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:52:20.188 00:00:00.000 UDP 28.104.0.1:56458 -> 198.28.0.2:53 1 64 1 2025-09-02 15:52:20.188 00:00:00.000 UDP 28.104.0.1:36969 -> 198.28.0.2:53 1 64 1 2025-09-02 15:52:20.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36969 1 80 1 2025-09-02 15:52:20.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56458 1 109 1 2025-09-02 15:48:23.890 00:05:00.292 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:53:20.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43785 1 109 1 2025-09-02 15:53:20.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55566 1 80 1 2025-09-02 15:53:20.482 00:00:00.000 UDP 28.104.0.1:43785 -> 198.28.0.2:53 1 64 1 2025-09-02 15:53:20.482 00:00:00.000 UDP 28.104.0.1:55566 -> 198.28.0.2:53 1 64 1 2025-09-02 15:49:23.890 00:05:00.295 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-09-02 15:49:22.411 00:05:01.596 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-02 15:49:50.733 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2708 1 2025-09-02 15:54:20.905 00:00:00.000 UDP 28.104.0.1:48598 -> 198.28.0.2:53 1 64 1 2025-09-02 15:54:20.905 00:00:00.000 UDP 28.104.0.1:33367 -> 198.28.0.2:53 1 64 1 2025-09-02 15:54:20.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48598 1 109 1 2025-09-02 15:54:20.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33367 1 80 1 2025-09-02 15:50:22.462 00:05:01.522 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-02 15:55:21.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35730 1 109 1 2025-09-02 15:55:21.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36828 1 80 1 2025-09-02 15:55:21.170 00:00:00.000 UDP 28.104.0.1:35730 -> 198.28.0.2:53 1 64 1 2025-09-02 15:55:21.170 00:00:00.000 UDP 28.104.0.1:36828 -> 198.28.0.2:53 1 64 1 2025-09-02 15:51:22.411 00:05:01.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-02 15:56:21.427 00:00:00.000 UDP 28.104.0.1:33451 -> 198.28.0.2:53 1 64 1 2025-09-02 15:56:21.426 00:00:00.000 UDP 28.104.0.1:35321 -> 198.28.0.2:53 1 64 1 2025-09-02 15:56:21.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33451 1 109 1 2025-09-02 15:56:21.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35321 1 80 1 2025-09-02 15:52:22.422 00:05:01.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-02 15:57:12.272 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-02 15:57:22.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34918 1 80 1 2025-09-02 15:57:22.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41473 1 109 1 2025-09-02 15:57:22.235 00:00:00.000 UDP 28.104.0.1:41473 -> 198.28.0.2:53 1 64 1 2025-09-02 15:57:22.235 00:00:00.000 UDP 28.104.0.1:34918 -> 198.28.0.2:53 1 64 1 2025-09-02 15:58:22.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46324 1 109 1 2025-09-02 15:58:22.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34406 1 80 1 2025-09-02 15:58:22.530 00:00:00.000 UDP 28.104.0.1:46324 -> 198.28.0.2:53 1 64 1 2025-09-02 15:54:23.890 00:05:00.297 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-09-02 15:58:22.530 00:00:00.000 UDP 28.104.0.1:34406 -> 198.28.0.2:53 1 64 1 Summary: total flows: 323, total bytes: 96396, total packets: 1421, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-09-02 14:55:22 - 2025-09-02 15:59:24 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0039s User: 0.0029s Wall: 0.0035s flows/second: 91761.1 Runtime: 0.0035s