Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-04 04:58:52.176 00:00:00.000 UDP 28.104.0.1:40192 -> 198.28.0.2:53 1 64 1 2025-10-04 04:58:52.176 00:00:00.000 UDP 28.104.0.1:38035 -> 198.28.0.2:53 1 64 1 2025-10-04 04:58:52.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40192 1 80 1 2025-10-04 04:58:52.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38035 1 109 1 2025-10-04 04:55:36.979 00:05:09.315 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 04:55:36.929 00:05:09.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 04:55:36.929 00:05:09.376 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 04:59:52.529 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42902 1 109 1 2025-10-04 04:59:52.529 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47417 1 80 1 2025-10-04 04:59:52.519 00:00:00.000 UDP 28.104.0.1:42902 -> 198.28.0.2:53 1 64 1 2025-10-04 04:59:52.519 00:00:00.000 UDP 28.104.0.1:47417 -> 198.28.0.2:53 1 64 1 2025-10-04 04:56:13.679 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-10-04 05:00:52.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33208 1 109 1 2025-10-04 05:00:52.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59794 1 80 1 2025-10-04 05:00:52.834 00:00:00.000 UDP 28.104.0.1:59794 -> 198.28.0.2:53 1 64 1 2025-10-04 05:00:52.834 00:00:00.000 UDP 28.104.0.1:33208 -> 198.28.0.2:53 1 64 1 2025-10-04 04:59:46.400 00:02:00.048 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 04:59:46.296 00:02:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 04:57:36.941 00:05:09.507 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:01:53.098 00:00:00.000 UDP 28.104.0.1:57805 -> 198.28.0.2:53 1 64 1 2025-10-04 05:01:53.098 00:00:00.000 UDP 28.104.0.1:50283 -> 198.28.0.2:53 1 64 1 2025-10-04 05:01:53.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50283 1 80 1 2025-10-04 05:01:53.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57805 1 109 1 2025-10-04 05:02:30.641 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:02:53.381 00:00:00.000 UDP 28.104.0.1:55663 -> 198.28.0.2:53 1 64 1 2025-10-04 05:02:53.381 00:00:00.000 UDP 28.104.0.1:59836 -> 198.28.0.2:53 1 64 1 2025-10-04 05:02:53.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55663 1 109 1 2025-10-04 05:02:53.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59836 1 80 1 2025-10-04 05:02:46.403 00:01:00.047 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:02:46.297 00:01:00.153 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:03:53.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48149 1 80 1 2025-10-04 05:03:53.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55276 1 109 1 2025-10-04 05:03:53.676 00:00:00.000 UDP 28.104.0.1:48149 -> 198.28.0.2:53 1 64 1 2025-10-04 05:03:53.676 00:00:00.000 UDP 28.104.0.1:55276 -> 198.28.0.2:53 1 64 1 2025-10-04 05:04:53.969 00:00:00.000 UDP 28.104.0.1:33154 -> 198.28.0.2:53 1 64 1 2025-10-04 05:04:53.969 00:00:00.000 UDP 28.104.0.1:56379 -> 198.28.0.2:53 1 64 1 2025-10-04 05:04:53.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33154 1 80 1 2025-10-04 05:04:53.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56379 1 109 1 2025-10-04 05:01:36.982 00:05:09.314 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:01:36.931 00:05:09.529 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:01:36.931 00:05:09.374 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:01:33.683 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2740 1 2025-10-04 05:05:54.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58637 1 80 1 2025-10-04 05:05:54.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50546 1 109 1 2025-10-04 05:05:54.260 00:00:00.000 UDP 28.104.0.1:50546 -> 198.28.0.2:53 1 64 1 2025-10-04 05:05:54.260 00:00:00.000 UDP 28.104.0.1:58637 -> 198.28.0.2:53 1 64 1 2025-10-04 05:04:46.404 00:02:00.047 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:04:46.297 00:02:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:06:54.552 00:00:00.000 UDP 28.104.0.1:47300 -> 198.28.0.2:53 1 64 1 2025-10-04 05:06:54.552 00:00:00.000 UDP 28.104.0.1:41403 -> 198.28.0.2:53 1 64 1 2025-10-04 05:06:54.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47300 1 109 1 2025-10-04 05:06:54.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41403 1 80 1 2025-10-04 05:07:30.669 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:03:36.942 00:05:09.508 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:07:54.849 00:00:00.000 UDP 28.104.0.1:36172 -> 198.28.0.2:53 1 64 1 2025-10-04 05:07:54.849 00:00:00.000 UDP 28.104.0.1:50848 -> 198.28.0.2:53 1 64 1 2025-10-04 05:07:54.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36172 1 80 1 2025-10-04 05:07:54.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50848 1 109 1 2025-10-04 05:07:46.404 00:01:00.047 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:07:46.297 00:01:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:08:55.139 00:00:00.000 UDP 28.104.0.1:56583 -> 198.28.0.2:53 1 64 1 2025-10-04 05:08:55.139 00:00:00.000 UDP 28.104.0.1:40119 -> 198.28.0.2:53 1 64 1 2025-10-04 05:08:55.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40119 1 80 1 2025-10-04 05:08:55.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56583 1 109 1 2025-10-04 05:09:55.431 00:00:00.000 UDP 28.104.0.1:38883 -> 198.28.0.2:53 1 64 1 2025-10-04 05:09:55.431 00:00:00.000 UDP 28.104.0.1:55074 -> 198.28.0.2:53 1 64 1 2025-10-04 05:09:55.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55074 1 109 1 2025-10-04 05:09:55.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38883 1 80 1 2025-10-04 05:10:55.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33867 1 80 1 2025-10-04 05:10:55.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51395 1 109 1 2025-10-04 05:10:55.742 00:00:00.000 UDP 28.104.0.1:51395 -> 198.28.0.2:53 1 64 1 2025-10-04 05:10:55.742 00:00:00.000 UDP 28.104.0.1:33867 -> 198.28.0.2:53 1 64 1 2025-10-04 05:06:53.695 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3060 1 2025-10-04 05:09:46.405 00:02:00.048 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:09:46.298 00:02:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:07:36.933 00:05:09.528 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:07:36.933 00:05:09.374 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:07:36.983 00:05:09.314 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:11:56.044 00:00:00.000 UDP 28.104.0.1:54677 -> 198.28.0.2:53 1 64 1 2025-10-04 05:11:56.044 00:00:00.000 UDP 28.104.0.1:55029 -> 198.28.0.2:53 1 64 1 2025-10-04 05:11:56.056 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55029 1 80 1 2025-10-04 05:11:56.056 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54677 1 109 1 2025-10-04 05:12:30.647 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:12:56.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39193 1 80 1 2025-10-04 05:12:56.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49017 1 109 1 2025-10-04 05:12:56.299 00:00:00.000 UDP 28.104.0.1:49017 -> 198.28.0.2:53 1 64 1 2025-10-04 05:12:56.299 00:00:00.000 UDP 28.104.0.1:39193 -> 198.28.0.2:53 1 64 1 2025-10-04 05:12:46.405 00:01:00.048 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:12:46.299 00:01:00.154 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:09:36.943 00:05:09.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:13:56.592 00:00:00.000 UDP 28.104.0.1:53786 -> 198.28.0.2:53 1 64 1 2025-10-04 05:13:56.591 00:00:00.000 UDP 28.104.0.1:48125 -> 198.28.0.2:53 1 64 1 2025-10-04 05:13:56.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53786 1 109 1 2025-10-04 05:13:56.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48125 1 80 1 2025-10-04 05:14:56.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48118 1 80 1 2025-10-04 05:14:56.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45202 1 109 1 2025-10-04 05:14:56.884 00:00:00.000 UDP 28.104.0.1:48118 -> 198.28.0.2:53 1 64 1 2025-10-04 05:14:56.883 00:00:00.000 UDP 28.104.0.1:45202 -> 198.28.0.2:53 1 64 1 2025-10-04 05:15:57.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36814 1 80 1 2025-10-04 05:15:57.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41671 1 109 1 2025-10-04 05:15:57.142 00:00:00.000 UDP 28.104.0.1:36814 -> 198.28.0.2:53 1 64 1 2025-10-04 05:15:57.142 00:00:00.000 UDP 28.104.0.1:41671 -> 198.28.0.2:53 1 64 1 2025-10-04 05:12:13.706 00:05:10.880 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2548 1 2025-10-04 05:14:46.405 00:02:00.048 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:16:57.446 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34539 1 109 1 2025-10-04 05:16:57.446 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38223 1 80 1 2025-10-04 05:16:57.435 00:00:00.000 UDP 28.104.0.1:34539 -> 198.28.0.2:53 1 64 1 2025-10-04 05:16:57.436 00:00:00.000 UDP 28.104.0.1:38223 -> 198.28.0.2:53 1 64 1 2025-10-04 05:17:30.747 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:13:36.986 00:05:09.314 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:13:36.933 00:05:09.531 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:13:36.933 00:05:09.374 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:17:57.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49729 1 109 1 2025-10-04 05:17:57.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33638 1 80 1 2025-10-04 05:17:57.730 00:00:00.000 UDP 28.104.0.1:33638 -> 198.28.0.2:53 1 64 1 2025-10-04 05:17:57.730 00:00:00.000 UDP 28.104.0.1:49729 -> 198.28.0.2:53 1 64 1 2025-10-04 05:17:46.405 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:14:46.297 00:04:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 05:18:57.993 00:00:00.000 UDP 28.104.0.1:52003 -> 198.28.0.2:53 1 64 1 2025-10-04 05:18:57.991 00:00:00.000 UDP 28.104.0.1:40149 -> 198.28.0.2:53 1 64 1 2025-10-04 05:18:58.003 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40149 1 109 1 2025-10-04 05:18:58.004 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52003 1 80 1 2025-10-04 05:15:36.944 00:05:09.511 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:19:58.310 00:00:00.000 UDP 28.104.0.1:39573 -> 198.28.0.2:53 1 64 1 2025-10-04 05:19:58.309 00:00:00.000 UDP 28.104.0.1:48464 -> 198.28.0.2:53 1 64 1 2025-10-04 05:19:58.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48464 1 109 1 2025-10-04 05:19:58.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39573 1 80 1 2025-10-04 05:20:58.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60627 1 109 1 2025-10-04 05:20:58.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52756 1 80 1 2025-10-04 05:20:58.604 00:00:00.000 UDP 28.104.0.1:60627 -> 198.28.0.2:53 1 64 1 2025-10-04 05:20:58.604 00:00:00.000 UDP 28.104.0.1:52756 -> 198.28.0.2:53 1 64 1 2025-10-04 05:17:33.723 00:05:10.959 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2884 1 2025-10-04 05:19:46.406 00:02:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:21:58.899 00:00:00.000 UDP 28.104.0.1:37815 -> 198.28.0.2:53 1 64 1 2025-10-04 05:21:58.900 00:00:00.000 UDP 28.104.0.1:53247 -> 198.28.0.2:53 1 64 1 2025-10-04 05:21:58.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53247 1 109 1 2025-10-04 05:21:58.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37815 1 80 1 2025-10-04 05:22:30.746 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:22:59.198 00:00:00.000 UDP 28.104.0.1:58979 -> 198.28.0.2:53 1 64 1 2025-10-04 05:22:59.197 00:00:00.000 UDP 28.104.0.1:37386 -> 198.28.0.2:53 1 64 1 2025-10-04 05:22:59.208 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37386 1 80 1 2025-10-04 05:22:59.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58979 1 109 1 2025-10-04 05:22:46.407 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:19:46.299 00:04:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 05:19:36.935 00:05:09.380 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:19:36.935 00:05:09.532 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:19:36.986 00:05:09.319 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:23:59.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55588 1 80 1 2025-10-04 05:23:59.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41806 1 109 1 2025-10-04 05:23:59.489 00:00:00.000 UDP 28.104.0.1:41806 -> 198.28.0.2:53 1 64 1 2025-10-04 05:23:59.489 00:00:00.000 UDP 28.104.0.1:55588 -> 198.28.0.2:53 1 64 1 2025-10-04 05:24:59.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46549 1 80 1 2025-10-04 05:24:59.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55483 1 109 1 2025-10-04 05:24:59.785 00:00:00.000 UDP 28.104.0.1:55483 -> 198.28.0.2:53 1 64 1 2025-10-04 05:24:59.785 00:00:00.000 UDP 28.104.0.1:46549 -> 198.28.0.2:53 1 64 1 2025-10-04 05:21:36.945 00:05:09.511 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:26:00.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40713 1 80 1 2025-10-04 05:26:00.099 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46662 1 109 1 2025-10-04 05:26:00.089 00:00:00.000 UDP 28.104.0.1:40713 -> 198.28.0.2:53 1 64 1 2025-10-04 05:26:00.089 00:00:00.000 UDP 28.104.0.1:46662 -> 198.28.0.2:53 1 64 1 2025-10-04 05:24:46.407 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:27:00.344 00:00:00.000 UDP 28.104.0.1:44502 -> 198.28.0.2:53 1 64 1 2025-10-04 05:27:00.344 00:00:00.000 UDP 28.104.0.1:45600 -> 198.28.0.2:53 1 64 1 2025-10-04 05:27:00.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44502 1 80 1 2025-10-04 05:27:00.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45600 1 109 1 2025-10-04 05:22:53.727 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2524 1 2025-10-04 05:27:30.976 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:28:00.637 00:00:00.000 UDP 28.104.0.1:33055 -> 198.28.0.2:53 1 64 1 2025-10-04 05:28:00.637 00:00:00.000 UDP 28.104.0.1:47281 -> 198.28.0.2:53 1 64 1 2025-10-04 05:28:00.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33055 1 109 1 2025-10-04 05:28:00.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47281 1 80 1 2025-10-04 05:27:46.408 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:24:46.301 00:04:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 05:29:00.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55430 1 80 1 2025-10-04 05:29:00.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42538 1 109 1 2025-10-04 05:29:00.924 00:00:00.000 UDP 28.104.0.1:42538 -> 198.28.0.2:53 1 64 1 2025-10-04 05:29:00.924 00:00:00.000 UDP 28.104.0.1:55430 -> 198.28.0.2:53 1 64 1 2025-10-04 05:25:36.987 00:05:09.321 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:25:36.936 00:05:09.531 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:25:36.936 00:05:09.380 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:30:01.244 00:00:00.000 UDP 28.104.0.1:37151 -> 198.28.0.2:53 1 64 1 2025-10-04 05:30:01.244 00:00:00.000 UDP 28.104.0.1:41059 -> 198.28.0.2:53 1 64 1 2025-10-04 05:30:01.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37151 1 80 1 2025-10-04 05:30:01.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41059 1 109 1 2025-10-04 05:29:46.407 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:29:46.302 00:01:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:31:01.538 00:00:00.000 UDP 28.104.0.1:49196 -> 198.28.0.2:53 1 64 1 2025-10-04 05:31:01.538 00:00:00.000 UDP 28.104.0.1:36618 -> 198.28.0.2:53 1 64 1 2025-10-04 05:31:01.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49196 1 109 1 2025-10-04 05:31:01.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36618 1 80 1 2025-10-04 05:31:46.409 00:00:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-04 05:27:36.948 00:05:09.516 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:32:01.827 00:00:00.000 UDP 28.104.0.1:57906 -> 198.28.0.2:53 1 64 1 2025-10-04 05:32:01.827 00:00:00.000 UDP 28.104.0.1:50157 -> 198.28.0.2:53 1 64 1 2025-10-04 05:32:01.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57906 1 109 1 2025-10-04 05:32:01.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50157 1 80 1 2025-10-04 05:28:13.729 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2896 1 2025-10-04 05:32:31.062 00:00:00.040 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:33:02.116 00:00:00.000 UDP 28.104.0.1:35427 -> 198.28.0.2:53 1 64 1 2025-10-04 05:33:02.116 00:00:00.000 UDP 28.104.0.1:39247 -> 198.28.0.2:53 1 64 1 2025-10-04 05:33:02.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39247 1 109 1 2025-10-04 05:33:02.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35427 1 80 1 2025-10-04 05:32:46.409 00:01:00.057 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:31:46.302 00:02:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:34:02.411 00:00:00.000 UDP 28.104.0.1:37609 -> 198.28.0.2:53 1 64 1 2025-10-04 05:34:02.411 00:00:00.000 UDP 28.104.0.1:42493 -> 198.28.0.2:53 1 64 1 2025-10-04 05:34:02.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37609 1 109 1 2025-10-04 05:34:02.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42493 1 80 1 2025-10-04 05:35:02.710 00:00:00.000 UDP 28.104.0.1:49046 -> 198.28.0.2:53 1 64 1 2025-10-04 05:35:02.709 00:00:00.000 UDP 28.104.0.1:36403 -> 198.28.0.2:53 1 64 1 2025-10-04 05:35:02.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36403 1 80 1 2025-10-04 05:35:02.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49046 1 109 1 2025-10-04 05:31:36.990 00:05:00.014 TCP 28.156.0.1:179 -> 28.151.0.1:39145 11 667 1 2025-10-04 05:31:36.939 00:05:09.539 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:31:36.939 00:05:09.383 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:34:46.409 00:01:00.057 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:34:46.309 00:01:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:36:03.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54735 1 109 1 2025-10-04 05:36:03.011 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59621 1 80 1 2025-10-04 05:36:03.001 00:00:00.000 UDP 28.104.0.1:59621 -> 198.28.0.2:53 1 64 1 2025-10-04 05:36:03.001 00:00:00.000 UDP 28.104.0.1:54735 -> 198.28.0.2:53 1 64 1 2025-10-04 05:37:03.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41660 1 109 1 2025-10-04 05:37:03.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46550 1 80 1 2025-10-04 05:37:03.305 00:00:00.000 UDP 28.104.0.1:46550 -> 198.28.0.2:53 1 64 1 2025-10-04 05:37:03.305 00:00:00.000 UDP 28.104.0.1:41660 -> 198.28.0.2:53 1 64 1 2025-10-04 05:37:31.171 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:33:36.963 00:05:09.506 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:33:33.734 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2688 1 2025-10-04 05:38:03.622 00:00:00.000 UDP 28.104.0.1:42734 -> 198.28.0.2:53 1 64 1 2025-10-04 05:38:03.622 00:00:00.000 UDP 28.104.0.1:42419 -> 198.28.0.2:53 1 64 1 2025-10-04 05:38:03.632 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42734 1 80 1 2025-10-04 05:38:03.633 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42419 1 109 1 2025-10-04 05:36:46.409 00:02:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:36:46.310 00:02:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:39:03.962 00:00:00.000 UDP 28.104.0.1:51477 -> 198.28.0.2:53 1 64 1 2025-10-04 05:39:03.962 00:00:00.000 UDP 28.104.0.1:35513 -> 198.28.0.2:53 1 64 1 2025-10-04 05:39:03.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51477 1 80 1 2025-10-04 05:39:03.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35513 1 109 1 2025-10-04 05:40:04.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33479 1 109 1 2025-10-04 05:40:04.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38523 1 80 1 2025-10-04 05:40:04.261 00:00:00.000 UDP 28.104.0.1:38523 -> 198.28.0.2:53 1 64 1 2025-10-04 05:40:04.261 00:00:00.000 UDP 28.104.0.1:33479 -> 198.28.0.2:53 1 64 1 2025-10-04 05:39:46.410 00:01:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:39:46.311 00:01:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:41:04.549 00:00:00.000 UDP 28.104.0.1:44523 -> 198.28.0.2:53 1 64 1 2025-10-04 05:41:04.549 00:00:00.000 UDP 28.104.0.1:34078 -> 198.28.0.2:53 1 64 1 2025-10-04 05:41:04.559 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44523 1 109 1 2025-10-04 05:41:04.559 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34078 1 80 1 2025-10-04 05:36:46.313 00:05:50.699 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:37:36.953 00:05:09.370 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:37:36.953 00:05:09.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:42:05.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58547 1 80 1 2025-10-04 05:42:05.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46006 1 109 1 2025-10-04 05:42:05.069 00:00:00.000 UDP 28.104.0.1:46006 -> 198.28.0.2:53 1 64 1 2025-10-04 05:42:05.069 00:00:00.000 UDP 28.104.0.1:58547 -> 198.28.0.2:53 1 64 1 2025-10-04 05:42:31.485 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:38:53.741 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2756 1 2025-10-04 05:43:05.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59044 1 109 1 2025-10-04 05:43:05.379 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43924 1 80 1 2025-10-04 05:43:05.369 00:00:00.000 UDP 28.104.0.1:43924 -> 198.28.0.2:53 1 64 1 2025-10-04 05:43:05.369 00:00:00.000 UDP 28.104.0.1:59044 -> 198.28.0.2:53 1 64 1 2025-10-04 05:41:46.410 00:02:00.059 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:41:46.311 00:02:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:39:36.963 00:05:09.507 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:44:05.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59126 1 80 1 2025-10-04 05:44:05.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35202 1 109 1 2025-10-04 05:44:05.674 00:00:00.000 UDP 28.104.0.1:59126 -> 198.28.0.2:53 1 64 1 2025-10-04 05:44:05.674 00:00:00.000 UDP 28.104.0.1:35202 -> 198.28.0.2:53 1 64 1 2025-10-04 05:45:05.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49205 1 80 1 2025-10-04 05:45:05.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53406 1 109 1 2025-10-04 05:45:05.982 00:00:00.000 UDP 28.104.0.1:49205 -> 198.28.0.2:53 1 64 1 2025-10-04 05:45:05.982 00:00:00.000 UDP 28.104.0.1:53406 -> 198.28.0.2:53 1 64 1 2025-10-04 05:44:46.410 00:01:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:44:46.313 00:01:00.157 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:46:06.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38371 1 80 1 2025-10-04 05:46:06.294 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35924 1 109 1 2025-10-04 05:46:06.283 00:00:00.000 UDP 28.104.0.1:38371 -> 198.28.0.2:53 1 64 1 2025-10-04 05:46:06.283 00:00:00.000 UDP 28.104.0.1:35924 -> 198.28.0.2:53 1 64 1 2025-10-04 05:47:06.570 00:00:00.000 UDP 28.104.0.1:44559 -> 198.28.0.2:53 1 64 1 2025-10-04 05:47:06.570 00:00:00.000 UDP 28.104.0.1:60654 -> 198.28.0.2:53 1 64 1 2025-10-04 05:47:06.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44559 1 109 1 2025-10-04 05:47:06.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60654 1 80 1 2025-10-04 05:47:31.428 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:42:46.314 00:05:50.705 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:43:36.961 00:05:09.521 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:43:36.961 00:05:09.364 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:48:06.819 00:00:00.000 UDP 28.104.0.1:39819 -> 198.28.0.2:53 1 64 1 2025-10-04 05:48:06.819 00:00:00.000 UDP 28.104.0.1:51619 -> 198.28.0.2:53 1 64 1 2025-10-04 05:48:06.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51619 1 109 1 2025-10-04 05:48:06.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39819 1 80 1 2025-10-04 05:44:13.750 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2876 1 2025-10-04 05:46:46.314 00:02:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-04 05:46:46.411 00:02:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:49:07.122 00:00:00.000 UDP 28.104.0.1:34469 -> 198.28.0.2:53 1 64 1 2025-10-04 05:49:07.122 00:00:00.000 UDP 28.104.0.1:57289 -> 198.28.0.2:53 1 64 1 2025-10-04 05:49:07.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34469 1 80 1 2025-10-04 05:49:07.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57289 1 109 1 2025-10-04 05:45:36.972 00:05:09.500 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:50:07.431 00:00:00.000 UDP 28.104.0.1:38431 -> 198.28.0.2:53 1 64 1 2025-10-04 05:50:07.432 00:00:00.000 UDP 28.104.0.1:43806 -> 198.28.0.2:53 1 64 1 2025-10-04 05:50:07.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38431 1 80 1 2025-10-04 05:50:07.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43806 1 109 1 2025-10-04 05:49:46.412 00:01:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:49:46.314 00:01:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-04 05:51:07.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54994 1 109 1 2025-10-04 05:51:07.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42545 1 80 1 2025-10-04 05:51:07.728 00:00:00.000 UDP 28.104.0.1:42545 -> 198.28.0.2:53 1 64 1 2025-10-04 05:51:07.728 00:00:00.000 UDP 28.104.0.1:54994 -> 198.28.0.2:53 1 64 1 2025-10-04 05:52:08.355 00:00:00.000 UDP 28.104.0.1:34497 -> 198.28.0.2:53 1 64 1 2025-10-04 05:52:08.355 00:00:00.000 UDP 28.104.0.1:38322 -> 198.28.0.2:53 1 64 1 2025-10-04 05:52:08.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34497 1 109 1 2025-10-04 05:52:08.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38322 1 80 1 2025-10-04 05:52:31.534 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:53:08.605 00:00:00.000 UDP 28.104.0.1:56980 -> 198.28.0.2:53 1 64 1 2025-10-04 05:53:08.605 00:00:00.000 UDP 28.104.0.1:53985 -> 198.28.0.2:53 1 64 1 2025-10-04 05:53:08.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53985 1 80 1 2025-10-04 05:53:08.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56980 1 109 1 2025-10-04 05:48:46.315 00:05:50.703 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-04 05:49:33.756 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2652 1 2025-10-04 05:51:46.412 00:02:00.062 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-04 05:49:36.965 00:05:09.518 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-04 05:49:36.965 00:05:09.360 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-04 05:54:08.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53130 1 80 1 2025-10-04 05:54:08.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40823 1 109 1 2025-10-04 05:54:08.900 00:00:00.000 UDP 28.104.0.1:53130 -> 198.28.0.2:53 1 64 1 2025-10-04 05:54:08.900 00:00:00.000 UDP 28.104.0.1:40823 -> 198.28.0.2:53 1 64 1 2025-10-04 05:55:09.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58772 1 109 1 2025-10-04 05:55:09.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58521 1 80 1 2025-10-04 05:55:09.209 00:00:00.000 UDP 28.104.0.1:58772 -> 198.28.0.2:53 1 64 1 2025-10-04 05:55:09.209 00:00:00.000 UDP 28.104.0.1:58521 -> 198.28.0.2:53 1 64 1 2025-10-04 05:54:46.412 00:01:00.063 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-04 05:51:46.314 00:04:00.161 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-04 05:51:36.976 00:05:09.500 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-04 05:56:09.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60179 1 80 1 2025-10-04 05:56:09.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48132 1 109 1 2025-10-04 05:56:09.464 00:00:00.000 UDP 28.104.0.1:60179 -> 198.28.0.2:53 1 64 1 2025-10-04 05:56:09.464 00:00:00.000 UDP 28.104.0.1:48132 -> 198.28.0.2:53 1 64 1 2025-10-04 05:57:09.814 00:00:00.000 UDP 28.104.0.1:49275 -> 198.28.0.2:53 1 64 1 2025-10-04 05:57:09.814 00:00:00.000 UDP 28.104.0.1:36055 -> 198.28.0.2:53 1 64 1 2025-10-04 05:57:09.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49275 1 80 1 2025-10-04 05:57:09.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36055 1 109 1 2025-10-04 05:57:31.618 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-04 05:58:10.092 00:00:00.000 UDP 28.104.0.1:59645 -> 198.28.0.2:53 1 64 1 2025-10-04 05:58:10.092 00:00:00.000 UDP 28.104.0.1:33300 -> 198.28.0.2:53 1 64 1 2025-10-04 05:58:10.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59645 1 80 1 2025-10-04 05:58:10.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33300 1 109 1 2025-10-04 05:56:46.414 00:02:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 Summary: total flows: 347, total bytes: 96176, total packets: 1414, avg bps: 203, avg pps: 0, avg bpp: 68 Time window: 2025-10-04 04:55:36 - 2025-10-04 05:58:46 Total flows processed: 347, passed: 347, Blocks skipped: 0, Bytes read: 36152 Sys: 0.0040s User: 0.0060s Wall: 0.0062s flows/second: 55635.5 Runtime: 0.0063s