Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 02:59:11.439 00:00:00.000 UDP 28.104.0.1:46079 -> 198.28.0.2:53 1 64 1 2025-10-04 02:59:11.439 00:00:00.000 UDP 28.104.0.1:50699 -> 198.28.0.2:53 1 64 1 2025-10-04 02:59:11.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50699 1 109 1 2025-10-04 02:59:11.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46079 1 80 1 2025-10-04 02:55:36.887 00:05:09.531 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 02:55:36.887 00:05:09.386 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 02:55:36.939 00:05:09.326 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:00:11.731 00:00:00.000 UDP 28.104.0.1:56388 -> 198.28.0.2:53 1 64 1 2025-10-04 03:00:11.731 00:00:00.000 UDP 28.104.0.1:53730 -> 198.28.0.2:53 1 64 1 2025-10-04 03:00:11.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53730 1 109 1 2025-10-04 03:00:11.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56388 1 80 1 2025-10-04 02:59:46.366 00:01:00.044 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 02:59:46.265 00:01:00.145 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 03:01:12.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47311 1 109 1 2025-10-04 03:01:12.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51492 1 80 1 2025-10-04 03:01:12.054 00:00:00.000 UDP 28.104.0.1:51492 -> 198.28.0.2:53 1 64 1 2025-10-04 03:01:12.054 00:00:00.000 UDP 28.104.0.1:47311 -> 198.28.0.2:53 1 64 1 2025-10-04 02:57:36.898 00:05:09.511 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:02:12.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47251 1 80 1 2025-10-04 03:02:12.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39787 1 109 1 2025-10-04 03:02:12.355 00:00:00.000 UDP 28.104.0.1:39787 -> 198.28.0.2:53 1 64 1 2025-10-04 03:02:12.355 00:00:00.000 UDP 28.104.0.1:47251 -> 198.28.0.2:53 1 64 1 2025-10-04 03:02:27.982 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:03:12.654 00:00:00.000 UDP 28.104.0.1:46772 -> 198.28.0.2:53 1 64 1 2025-10-04 03:03:12.654 00:00:00.000 UDP 28.104.0.1:55122 -> 198.28.0.2:53 1 64 1 2025-10-04 02:59:03.516 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2652 1 2025-10-04 03:03:12.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46772 1 109 1 2025-10-04 03:03:12.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55122 1 80 1 2025-10-04 03:01:46.366 00:02:00.043 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:04:12.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60025 1 80 1 2025-10-04 03:04:12.915 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46079 1 109 1 2025-10-04 03:04:12.904 00:00:00.000 UDP 28.104.0.1:60025 -> 198.28.0.2:53 1 64 1 2025-10-04 03:04:12.904 00:00:00.000 UDP 28.104.0.1:46079 -> 198.28.0.2:53 1 64 1 2025-10-04 03:05:13.201 00:00:00.000 UDP 28.104.0.1:37001 -> 198.28.0.2:53 1 64 1 2025-10-04 03:05:13.201 00:00:00.000 UDP 28.104.0.1:35576 -> 198.28.0.2:53 1 64 1 2025-10-04 03:05:13.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35576 1 80 1 2025-10-04 03:05:13.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37001 1 109 1 2025-10-04 03:01:36.888 00:05:09.532 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:01:36.889 00:05:09.386 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:04:46.365 00:01:00.046 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:01:46.265 00:04:00.146 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:01:36.939 00:05:09.326 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:06:13.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47477 1 80 1 2025-10-04 03:06:13.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39526 1 109 1 2025-10-04 03:06:13.502 00:00:00.000 UDP 28.104.0.1:47477 -> 198.28.0.2:53 1 64 1 2025-10-04 03:06:13.503 00:00:00.000 UDP 28.104.0.1:39526 -> 198.28.0.2:53 1 64 1 2025-10-04 03:07:13.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55433 1 109 1 2025-10-04 03:07:13.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55842 1 80 1 2025-10-04 03:07:13.805 00:00:00.000 UDP 28.104.0.1:55842 -> 198.28.0.2:53 1 64 1 2025-10-04 03:07:13.805 00:00:00.000 UDP 28.104.0.1:55433 -> 198.28.0.2:53 1 64 1 2025-10-04 03:07:28.155 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:03:36.899 00:05:09.512 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:08:14.106 00:00:00.000 UDP 28.104.0.1:49921 -> 198.28.0.2:53 1 64 1 2025-10-04 03:08:14.106 00:00:00.000 UDP 28.104.0.1:58588 -> 198.28.0.2:53 1 64 1 2025-10-04 03:08:14.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49921 1 109 1 2025-10-04 03:08:14.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58588 1 80 1 2025-10-04 03:04:23.520 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2896 1 2025-10-04 03:06:46.366 00:02:00.046 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:09:14.398 00:00:00.000 UDP 28.104.0.1:50977 -> 198.28.0.2:53 1 64 1 2025-10-04 03:09:14.398 00:00:00.000 UDP 28.104.0.1:57556 -> 198.28.0.2:53 1 64 1 2025-10-04 03:09:14.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57556 1 80 1 2025-10-04 03:09:14.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50977 1 109 1 2025-10-04 03:10:14.702 00:00:00.000 UDP 28.104.0.1:56751 -> 198.28.0.2:53 1 64 1 2025-10-04 03:10:14.702 00:00:00.000 UDP 28.104.0.1:55577 -> 198.28.0.2:53 1 64 1 2025-10-04 03:10:14.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55577 1 109 1 2025-10-04 03:10:14.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56751 1 80 1 2025-10-04 03:09:46.366 00:01:00.045 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:06:46.266 00:04:00.145 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:11:15.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34104 1 80 1 2025-10-04 03:11:15.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57769 1 109 1 2025-10-04 03:11:15.007 00:00:00.000 UDP 28.104.0.1:34104 -> 198.28.0.2:53 1 64 1 2025-10-04 03:11:15.007 00:00:00.000 UDP 28.104.0.1:57769 -> 198.28.0.2:53 1 64 1 2025-10-04 03:07:36.941 00:05:09.326 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:07:36.892 00:05:09.386 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:07:36.891 00:05:09.535 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:12:15.309 00:00:00.000 UDP 28.104.0.1:60578 -> 198.28.0.2:53 1 64 1 2025-10-04 03:12:15.308 00:00:00.000 UDP 28.104.0.1:35720 -> 198.28.0.2:53 1 64 1 2025-10-04 03:12:15.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60578 1 109 1 2025-10-04 03:12:15.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35720 1 80 1 2025-10-04 03:12:28.262 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:13:15.610 00:00:00.000 UDP 28.104.0.1:40976 -> 198.28.0.2:53 1 64 1 2025-10-04 03:13:15.610 00:00:00.000 UDP 28.104.0.1:53331 -> 198.28.0.2:53 1 64 1 2025-10-04 03:13:15.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53331 1 109 1 2025-10-04 03:13:15.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40976 1 80 1 2025-10-04 03:11:46.366 00:02:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:09:36.901 00:05:09.515 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:09:43.526 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2584 1 2025-10-04 03:14:15.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37955 1 80 1 2025-10-04 03:14:15.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48423 1 109 1 2025-10-04 03:14:15.862 00:00:00.000 UDP 28.104.0.1:37955 -> 198.28.0.2:53 1 64 1 2025-10-04 03:14:15.862 00:00:00.000 UDP 28.104.0.1:48423 -> 198.28.0.2:53 1 64 1 2025-10-04 03:15:16.990 00:00:00.000 UDP 28.104.0.1:48563 -> 198.28.0.2:53 1 64 1 2025-10-04 03:15:16.990 00:00:00.000 UDP 28.104.0.1:56129 -> 198.28.0.2:53 1 64 1 2025-10-04 03:15:17.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56129 1 80 1 2025-10-04 03:15:17.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48563 1 109 1 2025-10-04 03:14:46.367 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:11:46.268 00:04:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:16:17.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43521 1 109 1 2025-10-04 03:16:17.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35639 1 80 1 2025-10-04 03:16:17.254 00:00:00.000 UDP 28.104.0.1:35639 -> 198.28.0.2:53 1 64 1 2025-10-04 03:16:17.255 00:00:00.000 UDP 28.104.0.1:43521 -> 198.28.0.2:53 1 64 1 2025-10-04 03:17:17.508 00:00:00.000 UDP 28.104.0.1:54123 -> 198.28.0.2:53 1 64 1 2025-10-04 03:17:17.508 00:00:00.000 UDP 28.104.0.1:33709 -> 198.28.0.2:53 1 64 1 2025-10-04 03:17:17.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33709 1 80 1 2025-10-04 03:17:17.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54123 1 109 1 2025-10-04 03:17:28.163 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:13:36.941 00:05:09.326 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:13:36.890 00:05:09.537 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:13:36.890 00:05:09.387 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:18:17.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52793 1 80 1 2025-10-04 03:18:17.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42546 1 109 1 2025-10-04 03:18:17.760 00:00:00.000 UDP 28.104.0.1:52793 -> 198.28.0.2:53 1 64 1 2025-10-04 03:18:17.760 00:00:00.000 UDP 28.104.0.1:42546 -> 198.28.0.2:53 1 64 1 2025-10-04 03:15:03.532 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2904 1 2025-10-04 03:19:18.099 00:00:00.000 UDP 28.104.0.1:34542 -> 198.28.0.2:53 1 64 1 2025-10-04 03:19:18.099 00:00:00.000 UDP 28.104.0.1:55034 -> 198.28.0.2:53 1 64 1 2025-10-04 03:19:18.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55034 1 80 1 2025-10-04 03:19:18.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34542 1 109 1 2025-10-04 03:15:36.909 00:05:09.510 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:20:18.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43758 1 109 1 2025-10-04 03:20:18.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44930 1 80 1 2025-10-04 03:20:18.367 00:00:00.000 UDP 28.104.0.1:43758 -> 198.28.0.2:53 1 64 1 2025-10-04 03:20:18.366 00:00:00.000 UDP 28.104.0.1:44930 -> 198.28.0.2:53 1 64 1 2025-10-04 03:16:46.367 00:04:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-04 03:16:46.269 00:04:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:21:18.659 00:00:00.000 UDP 28.104.0.1:50574 -> 198.28.0.2:53 1 64 1 2025-10-04 03:21:18.659 00:00:00.000 UDP 28.104.0.1:47760 -> 198.28.0.2:53 1 64 1 2025-10-04 03:21:18.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47760 1 80 1 2025-10-04 03:21:18.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50574 1 109 1 2025-10-04 03:22:18.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58987 1 109 1 2025-10-04 03:22:18.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36096 1 80 1 2025-10-04 03:22:18.913 00:00:00.000 UDP 28.104.0.1:58987 -> 198.28.0.2:53 1 64 1 2025-10-04 03:22:18.913 00:00:00.000 UDP 28.104.0.1:36096 -> 198.28.0.2:53 1 64 1 2025-10-04 03:22:28.266 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:21:46.369 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:21:46.272 00:01:00.146 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 03:23:19.220 00:00:00.000 UDP 28.104.0.1:58561 -> 198.28.0.2:53 1 64 1 2025-10-04 03:23:19.220 00:00:00.000 UDP 28.104.0.1:53138 -> 198.28.0.2:53 1 64 1 2025-10-04 03:23:19.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58561 1 109 1 2025-10-04 03:23:19.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53138 1 80 1 2025-10-04 03:19:36.952 00:05:09.317 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:19:36.902 00:05:09.376 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:19:36.902 00:05:09.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:24:19.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56693 1 80 1 2025-10-04 03:24:19.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36271 1 109 1 2025-10-04 03:24:19.471 00:00:00.000 UDP 28.104.0.1:36271 -> 198.28.0.2:53 1 64 1 2025-10-04 03:24:19.472 00:00:00.000 UDP 28.104.0.1:56693 -> 198.28.0.2:53 1 64 1 2025-10-04 03:20:23.536 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 3008 1 2025-10-04 03:25:19.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49070 1 80 1 2025-10-04 03:25:19.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35279 1 109 1 2025-10-04 03:25:19.767 00:00:00.000 UDP 28.104.0.1:49070 -> 198.28.0.2:53 1 64 1 2025-10-04 03:25:19.767 00:00:00.000 UDP 28.104.0.1:35279 -> 198.28.0.2:53 1 64 1 2025-10-04 03:23:46.369 00:02:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:23:46.272 00:02:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 03:21:36.913 00:05:09.508 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:26:20.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51330 1 80 1 2025-10-04 03:26:20.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51104 1 109 1 2025-10-04 03:26:20.069 00:00:00.000 UDP 28.104.0.1:51104 -> 198.28.0.2:53 1 64 1 2025-10-04 03:26:20.069 00:00:00.000 UDP 28.104.0.1:51330 -> 198.28.0.2:53 1 64 1 2025-10-04 03:27:20.357 00:00:00.000 UDP 28.104.0.1:39249 -> 198.28.0.2:53 1 64 1 2025-10-04 03:27:20.357 00:00:00.000 UDP 28.104.0.1:46149 -> 198.28.0.2:53 1 64 1 2025-10-04 03:27:20.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39249 1 109 1 2025-10-04 03:27:20.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46149 1 80 1 2025-10-04 03:27:28.758 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:26:46.369 00:01:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:26:46.271 00:01:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 03:28:20.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53247 1 109 1 2025-10-04 03:28:20.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45776 1 80 1 2025-10-04 03:28:20.656 00:00:00.000 UDP 28.104.0.1:45776 -> 198.28.0.2:53 1 64 1 2025-10-04 03:28:20.655 00:00:00.000 UDP 28.104.0.1:53247 -> 198.28.0.2:53 1 64 1 2025-10-04 03:29:20.944 00:00:00.000 UDP 28.104.0.1:59460 -> 198.28.0.2:53 1 64 1 2025-10-04 03:29:20.945 00:00:00.000 UDP 28.104.0.1:49118 -> 198.28.0.2:53 1 64 1 2025-10-04 03:29:20.955 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49118 1 109 1 2025-10-04 03:29:20.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59460 1 80 1 2025-10-04 03:25:36.904 00:05:09.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:25:36.904 00:05:09.375 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:25:36.954 00:05:09.315 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:25:43.548 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2652 1 2025-10-04 03:30:21.238 00:00:00.000 UDP 28.104.0.1:34986 -> 198.28.0.2:53 1 64 1 2025-10-04 03:30:21.238 00:00:00.000 UDP 28.104.0.1:45237 -> 198.28.0.2:53 1 64 1 2025-10-04 03:30:21.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34986 1 109 1 2025-10-04 03:30:21.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45237 1 80 1 2025-10-04 03:28:46.369 00:02:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:28:46.272 00:02:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 03:31:21.488 00:00:00.000 UDP 28.104.0.1:40662 -> 198.28.0.2:53 1 64 1 2025-10-04 03:31:21.488 00:00:00.000 UDP 28.104.0.1:46197 -> 198.28.0.2:53 1 64 1 2025-10-04 03:31:21.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40662 1 109 1 2025-10-04 03:31:21.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46197 1 80 1 2025-10-04 03:27:36.914 00:05:09.508 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:32:21.778 00:00:00.000 UDP 28.104.0.1:46549 -> 198.28.0.2:53 1 64 1 2025-10-04 03:32:21.778 00:00:00.000 UDP 28.104.0.1:41881 -> 198.28.0.2:53 1 64 1 2025-10-04 03:32:21.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41881 1 109 1 2025-10-04 03:32:21.787 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46549 1 80 1 2025-10-04 03:32:28.597 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:31:46.372 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:31:46.273 00:01:00.150 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 03:33:22.074 00:00:00.000 UDP 28.104.0.1:57289 -> 198.28.0.2:53 1 64 1 2025-10-04 03:33:22.075 00:00:00.000 UDP 28.104.0.1:53105 -> 198.28.0.2:53 1 64 1 2025-10-04 03:33:22.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53105 1 109 1 2025-10-04 03:33:22.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57289 1 80 1 2025-10-04 03:34:22.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33676 1 109 1 2025-10-04 03:34:22.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55340 1 80 1 2025-10-04 03:34:22.374 00:00:00.000 UDP 28.104.0.1:33676 -> 198.28.0.2:53 1 64 1 2025-10-04 03:34:22.374 00:00:00.000 UDP 28.104.0.1:55340 -> 198.28.0.2:53 1 64 1 2025-10-04 03:31:03.558 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2400 1 2025-10-04 03:35:22.664 00:00:00.000 UDP 28.104.0.1:55292 -> 198.28.0.2:53 1 64 1 2025-10-04 03:35:22.664 00:00:00.000 UDP 28.104.0.1:35770 -> 198.28.0.2:53 1 64 1 2025-10-04 03:35:22.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55292 1 80 1 2025-10-04 03:35:22.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35770 1 109 1 2025-10-04 03:31:36.954 00:05:09.315 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:33:46.372 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:31:36.905 00:05:09.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:31:36.905 00:05:09.375 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:36:22.969 00:00:00.000 UDP 28.104.0.1:47510 -> 198.28.0.2:53 1 64 1 2025-10-04 03:36:22.969 00:00:00.000 UDP 28.104.0.1:60545 -> 198.28.0.2:53 1 64 1 2025-10-04 03:36:22.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60545 1 109 1 2025-10-04 03:36:22.981 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47510 1 80 1 2025-10-04 03:37:23.268 00:00:00.000 UDP 28.104.0.1:58915 -> 198.28.0.2:53 1 64 1 2025-10-04 03:37:23.268 00:00:00.000 UDP 28.104.0.1:35670 -> 198.28.0.2:53 1 64 1 2025-10-04 03:37:23.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58915 1 80 1 2025-10-04 03:37:23.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35670 1 109 1 2025-10-04 03:37:28.580 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:36:46.372 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:33:46.272 00:04:00.151 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:33:36.914 00:05:09.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:38:23.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44786 1 80 1 2025-10-04 03:38:23.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49645 1 109 1 2025-10-04 03:38:23.565 00:00:00.000 UDP 28.104.0.1:44786 -> 198.28.0.2:53 1 64 1 2025-10-04 03:38:23.565 00:00:00.000 UDP 28.104.0.1:49645 -> 198.28.0.2:53 1 64 1 2025-10-04 03:39:23.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42921 1 80 1 2025-10-04 03:39:23.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54132 1 109 1 2025-10-04 03:39:23.859 00:00:00.000 UDP 28.104.0.1:42921 -> 198.28.0.2:53 1 64 1 2025-10-04 03:39:23.860 00:00:00.000 UDP 28.104.0.1:54132 -> 198.28.0.2:53 1 64 1 2025-10-04 03:40:24.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58436 1 109 1 2025-10-04 03:40:24.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36761 1 80 1 2025-10-04 03:40:24.175 00:00:00.000 UDP 28.104.0.1:58436 -> 198.28.0.2:53 1 64 1 2025-10-04 03:40:24.175 00:00:00.000 UDP 28.104.0.1:36761 -> 198.28.0.2:53 1 64 1 2025-10-04 03:36:23.567 00:05:10.611 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3036 1 2025-10-04 03:38:46.372 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:41:24.487 00:00:00.000 UDP 28.104.0.1:50056 -> 198.28.0.2:53 1 64 1 2025-10-04 03:41:24.487 00:00:00.000 UDP 28.104.0.1:38543 -> 198.28.0.2:53 1 64 1 2025-10-04 03:41:24.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50056 1 80 1 2025-10-04 03:41:24.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38543 1 109 1 2025-10-04 03:37:36.955 00:05:09.315 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:37:36.905 00:05:09.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:37:36.905 00:05:09.375 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:42:24.780 00:00:00.000 UDP 28.104.0.1:59005 -> 198.28.0.2:53 1 64 1 2025-10-04 03:42:24.780 00:00:00.000 UDP 28.104.0.1:53434 -> 198.28.0.2:53 1 64 1 2025-10-04 03:42:24.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59005 1 109 1 2025-10-04 03:42:24.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53434 1 80 1 2025-10-04 03:42:29.970 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:41:46.375 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:38:46.273 00:04:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:43:25.081 00:00:00.000 UDP 28.104.0.1:34083 -> 198.28.0.2:53 1 64 1 2025-10-04 03:43:25.081 00:00:00.000 UDP 28.104.0.1:53504 -> 198.28.0.2:53 1 64 1 2025-10-04 03:43:25.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34083 1 109 1 2025-10-04 03:43:25.092 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53504 1 80 1 2025-10-04 03:39:36.917 00:05:09.507 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:44:25.374 00:00:00.000 UDP 28.104.0.1:55994 -> 198.28.0.2:53 1 64 1 2025-10-04 03:44:25.374 00:00:00.000 UDP 28.104.0.1:60743 -> 198.28.0.2:53 1 64 1 2025-10-04 03:44:25.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55994 1 109 1 2025-10-04 03:44:25.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60743 1 80 1 2025-10-04 03:45:25.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55525 1 109 1 2025-10-04 03:45:25.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37644 1 80 1 2025-10-04 03:45:25.665 00:00:00.000 UDP 28.104.0.1:55525 -> 198.28.0.2:53 1 64 1 2025-10-04 03:45:25.665 00:00:00.000 UDP 28.104.0.1:37644 -> 198.28.0.2:53 1 64 1 2025-10-04 03:43:46.375 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 03:41:43.575 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2920 1 2025-10-04 03:46:25.973 00:00:00.000 UDP 28.104.0.1:35570 -> 198.28.0.2:53 1 64 1 2025-10-04 03:46:25.973 00:00:00.000 UDP 28.104.0.1:48018 -> 198.28.0.2:53 1 64 1 2025-10-04 03:46:25.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35570 1 109 1 2025-10-04 03:46:25.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48018 1 80 1 2025-10-04 03:47:26.262 00:00:00.000 UDP 28.104.0.1:54077 -> 198.28.0.2:53 1 64 1 2025-10-04 03:47:26.261 00:00:00.000 UDP 28.104.0.1:59840 -> 198.28.0.2:53 1 64 1 2025-10-04 03:47:26.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59840 1 109 1 2025-10-04 03:47:26.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54077 1 80 1 2025-10-04 03:47:28.869 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:46:46.376 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 03:43:46.277 00:04:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:43:36.910 00:05:09.527 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:43:36.910 00:05:09.373 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:43:36.959 00:05:09.313 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:48:26.548 00:00:00.000 UDP 28.104.0.1:44797 -> 198.28.0.2:53 1 64 1 2025-10-04 03:48:26.548 00:00:00.000 UDP 28.104.0.1:36370 -> 198.28.0.2:53 1 64 1 2025-10-04 03:48:26.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36370 1 80 1 2025-10-04 03:48:26.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44797 1 109 1 2025-10-04 03:49:26.846 00:00:00.000 UDP 28.104.0.1:58527 -> 198.28.0.2:53 1 64 1 2025-10-04 03:49:26.846 00:00:00.000 UDP 28.104.0.1:46915 -> 198.28.0.2:53 1 64 1 2025-10-04 03:49:26.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58527 1 109 1 2025-10-04 03:49:26.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46915 1 80 1 2025-10-04 03:45:36.918 00:05:09.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:50:27.139 00:00:00.000 UDP 28.104.0.1:43993 -> 198.28.0.2:53 1 64 1 2025-10-04 03:50:27.139 00:00:00.000 UDP 28.104.0.1:44290 -> 198.28.0.2:53 1 64 1 2025-10-04 03:50:27.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43993 1 109 1 2025-10-04 03:50:27.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44290 1 80 1 2025-10-04 03:47:03.585 00:05:10.050 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-10-04 03:51:27.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37276 1 80 1 2025-10-04 03:51:27.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38352 1 109 1 2025-10-04 03:51:27.438 00:00:00.000 UDP 28.104.0.1:37276 -> 198.28.0.2:53 1 64 1 2025-10-04 03:51:27.438 00:00:00.000 UDP 28.104.0.1:38352 -> 198.28.0.2:53 1 64 1 2025-10-04 03:52:27.730 00:00:00.000 UDP 28.104.0.1:47196 -> 198.28.0.2:53 1 64 1 2025-10-04 03:52:27.730 00:00:00.000 UDP 28.104.0.1:60427 -> 198.28.0.2:53 1 64 1 2025-10-04 03:52:27.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47196 1 109 1 2025-10-04 03:52:28.822 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:52:27.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60427 1 80 1 2025-10-04 03:48:46.376 00:04:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-04 03:48:46.278 00:04:00.149 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:53:28.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37499 1 109 1 2025-10-04 03:53:28.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45401 1 80 1 2025-10-04 03:53:28.053 00:00:00.000 UDP 28.104.0.1:37499 -> 198.28.0.2:53 1 64 1 2025-10-04 03:53:28.053 00:00:00.000 UDP 28.104.0.1:45401 -> 198.28.0.2:53 1 64 1 2025-10-04 03:49:36.959 00:05:09.318 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 03:49:36.910 00:05:09.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 03:49:36.910 00:05:09.377 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 03:54:28.343 00:00:00.000 UDP 28.104.0.1:39726 -> 198.28.0.2:53 1 64 1 2025-10-04 03:54:28.342 00:00:00.000 UDP 28.104.0.1:36170 -> 198.28.0.2:53 1 64 1 2025-10-04 03:54:28.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39726 1 109 1 2025-10-04 03:54:28.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36170 1 80 1 2025-10-04 03:55:28.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52412 1 80 1 2025-10-04 03:55:28.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56757 1 109 1 2025-10-04 03:55:28.640 00:00:00.000 UDP 28.104.0.1:56757 -> 198.28.0.2:53 1 64 1 2025-10-04 03:55:28.641 00:00:00.000 UDP 28.104.0.1:52412 -> 198.28.0.2:53 1 64 1 2025-10-04 03:51:36.918 00:05:09.510 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 03:56:28.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38518 1 109 1 2025-10-04 03:56:28.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35545 1 80 1 2025-10-04 03:56:28.900 00:00:00.000 UDP 28.104.0.1:35545 -> 198.28.0.2:53 1 64 1 2025-10-04 03:56:28.900 00:00:00.000 UDP 28.104.0.1:38518 -> 198.28.0.2:53 1 64 1 2025-10-04 03:52:23.594 00:05:10.836 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2656 1 2025-10-04 03:57:29.199 00:00:00.000 UDP 28.104.0.1:55880 -> 198.28.0.2:53 1 64 1 2025-10-04 03:57:29.199 00:00:00.000 UDP 28.104.0.1:58033 -> 198.28.0.2:53 1 64 1 2025-10-04 03:57:29.154 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 03:57:29.208 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58033 1 80 1 2025-10-04 03:57:29.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55880 1 109 1 2025-10-04 03:53:46.376 00:04:00.054 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-10-04 03:53:46.283 00:04:00.147 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 03:58:29.487 00:00:00.000 UDP 28.104.0.1:55081 -> 198.28.0.2:53 1 64 1 2025-10-04 03:58:29.488 00:00:00.000 UDP 28.104.0.1:49906 -> 198.28.0.2:53 1 64 1 2025-10-04 03:58:29.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49906 1 80 1 2025-10-04 03:58:29.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55081 1 109 1 Summary: total flows: 339, total bytes: 96454, total packets: 1422, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-10-04 02:55:36 - 2025-10-04 03:58:29 Total flows processed: 339, passed: 339, Blocks skipped: 0, Bytes read: 35320 Sys: 0.0033s User: 0.0033s Wall: 0.0044s flows/second: 77893.6 Runtime: 0.0044s