Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-04 12:55:23.386 00:05:01.945 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 12:59:29.071 00:00:00.000 UDP 28.104.0.1:47022 -> 198.28.0.2:53 1 64 1 2025-09-04 12:59:29.072 00:00:00.000 UDP 28.104.0.1:40278 -> 198.28.0.2:53 1 64 1 2025-09-04 12:59:29.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47022 1 109 1 2025-09-04 12:59:29.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40278 1 80 1 2025-09-04 12:56:23.436 00:05:01.885 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:00:29.330 00:00:00.000 UDP 28.104.0.1:33764 -> 198.28.0.2:53 1 64 1 2025-09-04 13:00:29.330 00:00:00.000 UDP 28.104.0.1:59356 -> 198.28.0.2:53 1 64 1 2025-09-04 13:00:29.341 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59356 1 80 1 2025-09-04 13:00:29.341 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33764 1 109 1 2025-09-04 12:57:23.391 00:05:01.880 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:01:29.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48035 1 80 1 2025-09-04 13:01:29.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60963 1 109 1 2025-09-04 13:01:29.627 00:00:00.000 UDP 28.104.0.1:48035 -> 198.28.0.2:53 1 64 1 2025-09-04 13:01:29.627 00:00:00.000 UDP 28.104.0.1:60963 -> 198.28.0.2:53 1 64 1 2025-09-04 12:58:23.401 00:05:01.859 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:02:29.932 00:00:00.000 UDP 28.104.0.1:36964 -> 198.28.0.2:53 1 64 1 2025-09-04 13:02:29.928 00:00:00.000 UDP 28.104.0.1:35908 -> 198.28.0.2:53 1 64 1 2025-09-04 13:02:29.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35908 1 80 1 2025-09-04 13:02:29.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36964 1 109 1 2025-09-04 13:03:06.425 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 12:59:04.397 00:05:10.336 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2736 1 2025-09-04 13:03:30.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35416 1 80 1 2025-09-04 13:03:30.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51179 1 109 1 2025-09-04 13:03:30.191 00:00:00.000 UDP 28.104.0.1:35416 -> 198.28.0.2:53 1 64 1 2025-09-04 13:03:30.191 00:00:00.000 UDP 28.104.0.1:51179 -> 198.28.0.2:53 1 64 1 2025-09-04 13:04:30.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40159 1 109 1 2025-09-04 13:04:30.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40078 1 80 1 2025-09-04 13:04:30.530 00:00:00.000 UDP 28.104.0.1:40159 -> 198.28.0.2:53 1 64 1 2025-09-04 13:04:30.530 00:00:00.000 UDP 28.104.0.1:40078 -> 198.28.0.2:53 1 64 1 2025-09-04 13:00:25.260 00:06:00.218 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:00:25.260 00:06:00.213 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:01:23.391 00:05:01.949 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:05:30.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34111 1 109 1 2025-09-04 13:05:30.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48344 1 80 1 2025-09-04 13:05:30.830 00:00:00.000 UDP 28.104.0.1:34111 -> 198.28.0.2:53 1 64 1 2025-09-04 13:05:30.830 00:00:00.000 UDP 28.104.0.1:48344 -> 198.28.0.2:53 1 64 1 2025-09-04 13:02:23.441 00:05:01.880 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:06:31.117 00:00:00.000 UDP 28.104.0.1:46701 -> 198.28.0.2:53 1 64 1 2025-09-04 13:06:31.118 00:00:00.000 UDP 28.104.0.1:35232 -> 198.28.0.2:53 1 64 1 2025-09-04 13:06:31.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35232 1 109 1 2025-09-04 13:06:31.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46701 1 80 1 2025-09-04 13:07:31.413 00:00:00.000 UDP 28.104.0.1:46602 -> 198.28.0.2:53 1 64 1 2025-09-04 13:07:31.413 00:00:00.000 UDP 28.104.0.1:34654 -> 198.28.0.2:53 1 64 1 2025-09-04 13:03:23.391 00:05:01.881 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:07:31.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46602 1 109 1 2025-09-04 13:07:31.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34654 1 80 1 2025-09-04 13:08:06.376 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:04:23.402 00:05:01.860 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:08:31.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42557 1 80 1 2025-09-04 13:08:31.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37461 1 109 1 2025-09-04 13:08:31.665 00:00:00.000 UDP 28.104.0.1:37461 -> 198.28.0.2:53 1 64 1 2025-09-04 13:08:31.665 00:00:00.000 UDP 28.104.0.1:42557 -> 198.28.0.2:53 1 64 1 2025-09-04 13:04:24.402 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-09-04 13:09:31.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45098 1 109 1 2025-09-04 13:09:31.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36990 1 80 1 2025-09-04 13:09:31.963 00:00:00.000 UDP 28.104.0.1:45098 -> 198.28.0.2:53 1 64 1 2025-09-04 13:09:31.963 00:00:00.000 UDP 28.104.0.1:36990 -> 198.28.0.2:53 1 64 1 2025-09-04 13:10:32.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46308 1 109 1 2025-09-04 13:10:32.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38012 1 80 1 2025-09-04 13:10:32.260 00:00:00.000 UDP 28.104.0.1:46308 -> 198.28.0.2:53 1 64 1 2025-09-04 13:10:32.260 00:00:00.000 UDP 28.104.0.1:38012 -> 198.28.0.2:53 1 64 1 2025-09-04 13:07:23.392 00:05:01.939 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:11:32.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33554 1 80 1 2025-09-04 13:11:32.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57190 1 109 1 2025-09-04 13:11:32.503 00:00:00.000 UDP 28.104.0.1:57190 -> 198.28.0.2:53 1 64 1 2025-09-04 13:11:32.503 00:00:00.000 UDP 28.104.0.1:33554 -> 198.28.0.2:53 1 64 1 2025-09-04 13:08:23.443 00:05:01.881 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:07:25.262 00:06:00.220 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:07:25.262 00:06:00.223 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:12:32.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57242 1 80 1 2025-09-04 13:12:32.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56429 1 109 1 2025-09-04 13:12:32.801 00:00:00.000 UDP 28.104.0.1:57242 -> 198.28.0.2:53 1 64 1 2025-09-04 13:12:32.801 00:00:00.000 UDP 28.104.0.1:56429 -> 198.28.0.2:53 1 64 1 2025-09-04 13:13:06.518 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:09:23.394 00:05:01.880 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:13:33.100 00:00:00.000 UDP 28.104.0.1:55249 -> 198.28.0.2:53 1 64 1 2025-09-04 13:13:33.100 00:00:00.000 UDP 28.104.0.1:55653 -> 198.28.0.2:53 1 64 1 2025-09-04 13:13:33.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55653 1 80 1 2025-09-04 13:13:33.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55249 1 109 1 2025-09-04 13:09:44.410 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3060 1 2025-09-04 13:10:23.402 00:05:01.862 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:14:33.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43193 1 109 1 2025-09-04 13:14:33.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39415 1 80 1 2025-09-04 13:14:33.352 00:00:00.000 UDP 28.104.0.1:43193 -> 198.28.0.2:53 1 64 1 2025-09-04 13:14:33.352 00:00:00.000 UDP 28.104.0.1:39415 -> 198.28.0.2:53 1 64 1 2025-09-04 13:15:33.603 00:00:00.000 UDP 28.104.0.1:48961 -> 198.28.0.2:53 1 64 1 2025-09-04 13:15:33.603 00:00:00.000 UDP 28.104.0.1:50723 -> 198.28.0.2:53 1 64 1 2025-09-04 13:15:33.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48961 1 109 1 2025-09-04 13:15:33.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50723 1 80 1 2025-09-04 13:16:33.897 00:00:00.000 UDP 28.104.0.1:38959 -> 198.28.0.2:53 1 64 1 2025-09-04 13:16:33.897 00:00:00.000 UDP 28.104.0.1:54810 -> 198.28.0.2:53 1 64 1 2025-09-04 13:16:33.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38959 1 109 1 2025-09-04 13:16:33.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54810 1 80 1 2025-09-04 13:13:23.394 00:05:01.939 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:17:34.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42582 1 109 1 2025-09-04 13:17:34.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45135 1 80 1 2025-09-04 13:17:34.199 00:00:00.000 UDP 28.104.0.1:42582 -> 198.28.0.2:53 1 64 1 2025-09-04 13:17:34.199 00:00:00.000 UDP 28.104.0.1:45135 -> 198.28.0.2:53 1 64 1 2025-09-04 13:18:06.617 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:14:23.443 00:05:01.879 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:18:34.492 00:00:00.000 UDP 28.104.0.1:57234 -> 198.28.0.2:53 1 64 1 2025-09-04 13:18:34.492 00:00:00.000 UDP 28.104.0.1:56553 -> 198.28.0.2:53 1 64 1 2025-09-04 13:18:34.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56553 1 109 1 2025-09-04 13:18:34.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57234 1 80 1 2025-09-04 13:15:04.422 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-09-04 13:14:25.263 00:06:00.223 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:14:25.263 00:06:00.226 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:15:23.394 00:05:01.885 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:19:34.833 00:00:00.000 UDP 28.104.0.1:55977 -> 198.28.0.2:53 1 64 1 2025-09-04 13:19:34.833 00:00:00.000 UDP 28.104.0.1:47312 -> 198.28.0.2:53 1 64 1 2025-09-04 13:19:34.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55977 1 80 1 2025-09-04 13:19:34.844 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47312 1 109 1 2025-09-04 13:16:23.404 00:05:01.865 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:20:35.130 00:00:00.000 UDP 28.104.0.1:54519 -> 198.28.0.2:53 1 64 1 2025-09-04 13:20:35.130 00:00:00.000 UDP 28.104.0.1:49767 -> 198.28.0.2:53 1 64 1 2025-09-04 13:20:35.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49767 1 109 1 2025-09-04 13:20:35.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54519 1 80 1 2025-09-04 13:21:35.424 00:00:00.000 UDP 28.104.0.1:46927 -> 198.28.0.2:53 1 64 1 2025-09-04 13:21:35.424 00:00:00.000 UDP 28.104.0.1:51854 -> 198.28.0.2:53 1 64 1 2025-09-04 13:21:35.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51854 1 109 1 2025-09-04 13:21:35.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46927 1 80 1 2025-09-04 13:22:35.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39114 1 109 1 2025-09-04 13:22:35.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46205 1 80 1 2025-09-04 13:22:35.719 00:00:00.000 UDP 28.104.0.1:46205 -> 198.28.0.2:53 1 64 1 2025-09-04 13:22:35.719 00:00:00.000 UDP 28.104.0.1:39114 -> 198.28.0.2:53 1 64 1 2025-09-04 13:23:06.787 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:19:23.393 00:05:01.940 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:23:35.975 00:00:00.000 UDP 28.104.0.1:53633 -> 198.28.0.2:53 1 64 1 2025-09-04 13:23:35.974 00:00:00.000 UDP 28.104.0.1:58298 -> 198.28.0.2:53 1 64 1 2025-09-04 13:23:35.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58298 1 80 1 2025-09-04 13:23:35.984 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53633 1 109 1 2025-09-04 13:20:23.444 00:05:01.880 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:20:24.432 00:05:10.562 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3100 1 2025-09-04 13:24:36.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57511 1 80 1 2025-09-04 13:24:36.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41050 1 109 1 2025-09-04 13:24:36.271 00:00:00.000 UDP 28.104.0.1:41050 -> 198.28.0.2:53 1 64 1 2025-09-04 13:24:36.271 00:00:00.000 UDP 28.104.0.1:57511 -> 198.28.0.2:53 1 64 1 2025-09-04 13:21:23.395 00:05:01.885 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:25:36.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43533 1 109 1 2025-09-04 13:25:36.586 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36926 1 80 1 2025-09-04 13:25:36.576 00:00:00.000 UDP 28.104.0.1:36926 -> 198.28.0.2:53 1 64 1 2025-09-04 13:25:36.576 00:00:00.000 UDP 28.104.0.1:43533 -> 198.28.0.2:53 1 64 1 2025-09-04 13:21:25.270 00:06:00.224 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:22:23.406 00:05:01.864 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:21:25.269 00:06:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:26:36.863 00:00:00.000 UDP 28.104.0.1:53557 -> 198.28.0.2:53 1 64 1 2025-09-04 13:26:36.863 00:00:00.000 UDP 28.104.0.1:37742 -> 198.28.0.2:53 1 64 1 2025-09-04 13:26:36.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37742 1 80 1 2025-09-04 13:26:36.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53557 1 109 1 2025-09-04 13:27:37.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47971 1 80 1 2025-09-04 13:27:37.147 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49167 1 109 1 2025-09-04 13:27:37.136 00:00:00.000 UDP 28.104.0.1:47971 -> 198.28.0.2:53 1 64 1 2025-09-04 13:27:37.136 00:00:00.000 UDP 28.104.0.1:49167 -> 198.28.0.2:53 1 64 1 2025-09-04 13:28:06.909 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:28:37.433 00:00:00.000 UDP 28.104.0.1:51710 -> 198.28.0.2:53 1 64 1 2025-09-04 13:28:37.433 00:00:00.000 UDP 28.104.0.1:53818 -> 198.28.0.2:53 1 64 1 2025-09-04 13:28:37.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53818 1 109 1 2025-09-04 13:28:37.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51710 1 80 1 2025-09-04 13:25:23.397 00:05:01.939 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:29:37.730 00:00:00.000 UDP 28.104.0.1:40525 -> 198.28.0.2:53 1 64 1 2025-09-04 13:29:37.731 00:00:00.000 UDP 28.104.0.1:47651 -> 198.28.0.2:53 1 64 1 2025-09-04 13:29:37.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47651 1 109 1 2025-09-04 13:29:37.740 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40525 1 80 1 2025-09-04 13:25:44.438 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-09-04 13:26:23.448 00:05:01.879 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:30:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46481 1 80 1 2025-09-04 13:30:38.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58325 1 109 1 2025-09-04 13:30:38.055 00:00:00.000 UDP 28.104.0.1:46481 -> 198.28.0.2:53 1 64 1 2025-09-04 13:30:38.055 00:00:00.000 UDP 28.104.0.1:58325 -> 198.28.0.2:53 1 64 1 2025-09-04 13:27:23.398 00:05:01.883 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:31:38.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46135 1 109 1 2025-09-04 13:31:38.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50739 1 80 1 2025-09-04 13:31:38.349 00:00:00.000 UDP 28.104.0.1:50739 -> 198.28.0.2:53 1 64 1 2025-09-04 13:31:38.349 00:00:00.000 UDP 28.104.0.1:46135 -> 198.28.0.2:53 1 64 1 2025-09-04 13:28:23.408 00:05:01.863 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:32:38.604 00:00:00.000 UDP 28.104.0.1:44417 -> 198.28.0.2:53 1 64 1 2025-09-04 13:32:38.604 00:00:00.000 UDP 28.104.0.1:44544 -> 198.28.0.2:53 1 64 1 2025-09-04 13:32:38.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44544 1 80 1 2025-09-04 13:32:38.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44417 1 109 1 2025-09-04 13:33:07.010 00:00:00.019 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:28:25.271 00:06:00.225 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:28:25.271 00:06:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:33:38.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38316 1 109 1 2025-09-04 13:33:38.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52926 1 80 1 2025-09-04 13:33:38.896 00:00:00.000 UDP 28.104.0.1:52926 -> 198.28.0.2:53 1 64 1 2025-09-04 13:33:38.896 00:00:00.000 UDP 28.104.0.1:38316 -> 198.28.0.2:53 1 64 1 2025-09-04 13:34:39.150 00:00:00.000 UDP 28.104.0.1:57605 -> 198.28.0.2:53 1 64 1 2025-09-04 13:34:39.150 00:00:00.000 UDP 28.104.0.1:51968 -> 198.28.0.2:53 1 64 1 2025-09-04 13:34:39.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51968 1 80 1 2025-09-04 13:34:39.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57605 1 109 1 2025-09-04 13:31:04.443 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2656 1 2025-09-04 13:31:23.399 00:05:01.937 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:35:39.445 00:00:00.000 UDP 28.104.0.1:56969 -> 198.28.0.2:53 1 64 1 2025-09-04 13:35:39.445 00:00:00.000 UDP 28.104.0.1:33472 -> 198.28.0.2:53 1 64 1 2025-09-04 13:35:39.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56969 1 109 1 2025-09-04 13:35:39.454 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33472 1 80 1 2025-09-04 13:32:23.450 00:05:01.877 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:36:39.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59940 1 109 1 2025-09-04 13:36:39.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56095 1 80 1 2025-09-04 13:36:39.699 00:00:00.000 UDP 28.104.0.1:59940 -> 198.28.0.2:53 1 64 1 2025-09-04 13:36:39.700 00:00:00.000 UDP 28.104.0.1:56095 -> 198.28.0.2:53 1 64 1 2025-09-04 13:33:23.399 00:05:01.885 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:37:39.993 00:00:00.000 UDP 28.104.0.1:55532 -> 198.28.0.2:53 1 64 1 2025-09-04 13:37:39.993 00:00:00.000 UDP 28.104.0.1:50590 -> 198.28.0.2:53 1 64 1 2025-09-04 13:37:40.004 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50590 1 109 1 2025-09-04 13:37:40.004 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55532 1 80 1 2025-09-04 13:38:07.018 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:34:23.410 00:05:01.866 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:38:40.295 00:00:00.000 UDP 28.104.0.1:42460 -> 198.28.0.2:53 1 64 1 2025-09-04 13:38:40.295 00:00:00.000 UDP 28.104.0.1:60420 -> 198.28.0.2:53 1 64 1 2025-09-04 13:38:40.305 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60420 1 109 1 2025-09-04 13:38:40.305 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42460 1 80 1 2025-09-04 13:39:40.591 00:00:00.000 UDP 28.104.0.1:45679 -> 198.28.0.2:53 1 64 1 2025-09-04 13:39:40.591 00:00:00.000 UDP 28.104.0.1:42366 -> 198.28.0.2:53 1 64 1 2025-09-04 13:39:40.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42366 1 109 1 2025-09-04 13:39:40.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45679 1 80 1 2025-09-04 13:35:25.273 00:06:00.223 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:35:25.273 00:06:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:36:24.444 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2716 1 2025-09-04 13:40:40.854 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49921 1 80 1 2025-09-04 13:40:40.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46710 1 109 1 2025-09-04 13:40:40.844 00:00:00.000 UDP 28.104.0.1:49921 -> 198.28.0.2:53 1 64 1 2025-09-04 13:40:40.844 00:00:00.000 UDP 28.104.0.1:46710 -> 198.28.0.2:53 1 64 1 2025-09-04 13:37:23.404 00:05:01.935 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:41:41.173 00:00:00.000 UDP 28.104.0.1:56930 -> 198.28.0.2:53 1 64 1 2025-09-04 13:41:41.173 00:00:00.000 UDP 28.104.0.1:34136 -> 198.28.0.2:53 1 64 1 2025-09-04 13:41:41.183 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56930 1 80 1 2025-09-04 13:41:41.183 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34136 1 109 1 2025-09-04 13:38:23.453 00:05:01.875 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:42:41.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40938 1 109 1 2025-09-04 13:42:41.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50289 1 80 1 2025-09-04 13:42:41.423 00:00:00.000 UDP 28.104.0.1:50289 -> 198.28.0.2:53 1 64 1 2025-09-04 13:42:41.423 00:00:00.000 UDP 28.104.0.1:40938 -> 198.28.0.2:53 1 64 1 2025-09-04 13:43:07.515 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:39:23.404 00:05:01.884 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:43:41.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50798 1 80 1 2025-09-04 13:43:41.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38372 1 109 1 2025-09-04 13:43:41.715 00:00:00.000 UDP 28.104.0.1:50798 -> 198.28.0.2:53 1 64 1 2025-09-04 13:43:41.715 00:00:00.000 UDP 28.104.0.1:38372 -> 198.28.0.2:53 1 64 1 2025-09-04 13:40:23.413 00:05:01.863 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:44:42.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34898 1 109 1 2025-09-04 13:44:42.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60192 1 80 1 2025-09-04 13:44:42.009 00:00:00.000 UDP 28.104.0.1:60192 -> 198.28.0.2:53 1 64 1 2025-09-04 13:44:42.009 00:00:00.000 UDP 28.104.0.1:34898 -> 198.28.0.2:53 1 64 1 2025-09-04 13:45:42.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39459 1 109 1 2025-09-04 13:45:42.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43237 1 80 1 2025-09-04 13:45:42.310 00:00:00.000 UDP 28.104.0.1:39459 -> 198.28.0.2:53 1 64 1 2025-09-04 13:45:42.310 00:00:00.000 UDP 28.104.0.1:43237 -> 198.28.0.2:53 1 64 1 2025-09-04 13:41:44.447 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3036 1 2025-09-04 13:46:42.565 00:00:00.000 UDP 28.104.0.1:47803 -> 198.28.0.2:53 1 64 1 2025-09-04 13:46:42.564 00:00:00.000 UDP 28.104.0.1:57820 -> 198.28.0.2:53 1 64 1 2025-09-04 13:46:42.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47803 1 80 1 2025-09-04 13:46:42.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57820 1 109 1 2025-09-04 13:42:25.276 00:06:00.240 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:42:25.276 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:43:23.402 00:05:01.936 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:47:42.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58766 1 109 1 2025-09-04 13:47:42.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35734 1 80 1 2025-09-04 13:47:42.861 00:00:00.000 UDP 28.104.0.1:35734 -> 198.28.0.2:53 1 64 1 2025-09-04 13:47:42.861 00:00:00.000 UDP 28.104.0.1:58766 -> 198.28.0.2:53 1 64 1 2025-09-04 13:48:07.198 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:44:23.453 00:05:01.876 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:48:43.186 00:00:00.000 UDP 28.104.0.1:58348 -> 198.28.0.2:53 1 64 1 2025-09-04 13:48:43.186 00:00:00.000 UDP 28.104.0.1:38698 -> 198.28.0.2:53 1 64 1 2025-09-04 13:48:43.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58348 1 109 1 2025-09-04 13:48:43.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38698 1 80 1 2025-09-04 13:45:23.403 00:05:01.890 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:49:43.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52304 1 109 1 2025-09-04 13:49:43.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48552 1 80 1 2025-09-04 13:49:43.478 00:00:00.000 UDP 28.104.0.1:48552 -> 198.28.0.2:53 1 64 1 2025-09-04 13:49:43.478 00:00:00.000 UDP 28.104.0.1:52304 -> 198.28.0.2:53 1 64 1 2025-09-04 13:46:23.414 00:05:01.870 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:50:43.778 00:00:00.000 UDP 28.104.0.1:33857 -> 198.28.0.2:53 1 64 1 2025-09-04 13:50:43.778 00:00:00.000 UDP 28.104.0.1:42107 -> 198.28.0.2:53 1 64 1 2025-09-04 13:50:43.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33857 1 80 1 2025-09-04 13:50:43.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42107 1 109 1 2025-09-04 13:47:04.449 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-09-04 13:51:44.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54184 1 80 1 2025-09-04 13:51:44.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35053 1 109 1 2025-09-04 13:51:44.073 00:00:00.000 UDP 28.104.0.1:54184 -> 198.28.0.2:53 1 64 1 2025-09-04 13:51:44.073 00:00:00.000 UDP 28.104.0.1:35053 -> 198.28.0.2:53 1 64 1 2025-09-04 13:52:44.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32901 1 80 1 2025-09-04 13:52:44.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42475 1 109 1 2025-09-04 13:52:44.356 00:00:00.000 UDP 28.104.0.1:32901 -> 198.28.0.2:53 1 64 1 2025-09-04 13:52:44.356 00:00:00.000 UDP 28.104.0.1:42475 -> 198.28.0.2:53 1 64 1 2025-09-04 13:53:07.459 00:00:00.029 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:49:23.405 00:05:01.935 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-04 13:53:44.615 00:00:00.000 UDP 28.104.0.1:54299 -> 198.28.0.2:53 1 64 1 2025-09-04 13:53:44.615 00:00:00.000 UDP 28.104.0.1:33648 -> 198.28.0.2:53 1 64 1 2025-09-04 13:53:44.625 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54299 1 80 1 2025-09-04 13:53:44.624 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33648 1 109 1 2025-09-04 13:50:23.455 00:05:01.873 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-04 13:49:25.282 00:06:00.235 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-09-04 13:49:25.282 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-09-04 13:54:44.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60438 1 109 1 2025-09-04 13:54:44.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35811 1 80 1 2025-09-04 13:54:44.908 00:00:00.000 UDP 28.104.0.1:60438 -> 198.28.0.2:53 1 64 1 2025-09-04 13:54:44.908 00:00:00.000 UDP 28.104.0.1:35811 -> 198.28.0.2:53 1 64 1 2025-09-04 13:51:23.405 00:05:01.888 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-04 13:55:45.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55880 1 109 1 2025-09-04 13:55:45.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34452 1 80 1 2025-09-04 13:55:45.203 00:00:00.000 UDP 28.104.0.1:34452 -> 198.28.0.2:53 1 64 1 2025-09-04 13:55:45.203 00:00:00.000 UDP 28.104.0.1:55880 -> 198.28.0.2:53 1 64 1 2025-09-04 13:52:23.416 00:05:01.868 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-04 13:52:24.453 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2936 1 2025-09-04 13:56:45.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48013 1 109 1 2025-09-04 13:56:45.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40005 1 80 1 2025-09-04 13:56:45.499 00:00:00.000 UDP 28.104.0.1:40005 -> 198.28.0.2:53 1 64 1 2025-09-04 13:56:45.499 00:00:00.000 UDP 28.104.0.1:48013 -> 198.28.0.2:53 1 64 1 2025-09-04 13:57:45.788 00:00:00.000 UDP 28.104.0.1:39395 -> 198.28.0.2:53 1 64 1 2025-09-04 13:57:45.789 00:00:00.000 UDP 28.104.0.1:49087 -> 198.28.0.2:53 1 64 1 2025-09-04 13:57:45.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39395 1 109 1 2025-09-04 13:57:45.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49087 1 80 1 2025-09-04 13:58:07.617 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-04 13:58:46.101 00:00:00.000 UDP 28.104.0.1:34671 -> 198.28.0.2:53 1 64 1 2025-09-04 13:58:46.101 00:00:00.000 UDP 28.104.0.1:44980 -> 198.28.0.2:53 1 64 1 2025-09-04 13:58:46.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44980 1 80 1 2025-09-04 13:58:46.112 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34671 1 109 1 Summary: total flows: 319, total bytes: 95420, total packets: 1405, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-09-04 12:55:23 - 2025-09-04 13:58:46 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0042s User: 0.0021s Wall: 0.0039s flows/second: 80761.9 Runtime: 0.0040s