Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 03:59:26.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50408 1 80 1 2025-10-17 03:59:26.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34898 1 109 1 2025-10-17 03:59:26.215 00:00:00.000 UDP 28.104.0.1:50408 -> 198.28.0.2:53 1 64 1 2025-10-17 03:59:26.216 00:00:00.000 UDP 28.104.0.1:34898 -> 198.28.0.2:53 1 64 1 2025-10-17 03:54:52.424 00:05:50.927 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:00:26.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33110 1 109 1 2025-10-17 04:00:26.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44419 1 80 1 2025-10-17 04:00:26.524 00:00:00.000 UDP 28.104.0.1:33110 -> 198.28.0.2:53 1 64 1 2025-10-17 04:00:26.524 00:00:00.000 UDP 28.104.0.1:44419 -> 198.28.0.2:53 1 64 1 2025-10-17 03:56:43.299 00:05:09.236 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:01:26.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34794 1 80 1 2025-10-17 04:01:26.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41877 1 109 1 2025-10-17 04:01:26.770 00:00:00.000 UDP 28.104.0.1:34794 -> 198.28.0.2:53 1 64 1 2025-10-17 04:01:26.770 00:00:00.000 UDP 28.104.0.1:41877 -> 198.28.0.2:53 1 64 1 2025-10-17 03:56:52.438 00:05:50.864 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:02:27.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34873 1 80 1 2025-10-17 04:02:27.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36383 1 109 1 2025-10-17 04:02:27.074 00:00:00.000 UDP 28.104.0.1:36383 -> 198.28.0.2:53 1 64 1 2025-10-17 04:02:27.074 00:00:00.000 UDP 28.104.0.1:34873 -> 198.28.0.2:53 1 64 1 2025-10-17 03:57:52.525 00:05:50.786 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 03:57:52.333 00:06:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 03:58:59.841 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-10-17 04:03:27.366 00:00:00.000 UDP 28.104.0.1:42468 -> 198.28.0.2:53 1 64 1 2025-10-17 04:03:27.366 00:00:00.000 UDP 28.104.0.1:60542 -> 198.28.0.2:53 1 64 1 2025-10-17 04:03:27.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42468 1 109 1 2025-10-17 04:03:27.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60542 1 80 1 2025-10-17 04:03:44.673 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:04:27.671 00:00:00.000 UDP 28.104.0.1:37571 -> 198.28.0.2:53 1 64 1 2025-10-17 04:04:27.671 00:00:00.000 UDP 28.104.0.1:56664 -> 198.28.0.2:53 1 64 1 2025-10-17 04:04:27.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37571 1 80 1 2025-10-17 04:04:27.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56664 1 109 1 2025-10-17 03:59:52.525 00:06:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:05:27.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60612 1 109 1 2025-10-17 04:05:27.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53277 1 80 1 2025-10-17 04:05:27.967 00:00:00.000 UDP 28.104.0.1:60612 -> 198.28.0.2:53 1 64 1 2025-10-17 04:05:27.968 00:00:00.000 UDP 28.104.0.1:53277 -> 198.28.0.2:53 1 64 1 2025-10-17 04:00:52.428 00:05:50.935 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:06:28.259 00:00:00.000 UDP 28.104.0.1:43758 -> 198.28.0.2:53 1 64 1 2025-10-17 04:06:28.259 00:00:00.000 UDP 28.104.0.1:33842 -> 198.28.0.2:53 1 64 1 2025-10-17 04:06:28.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33842 1 80 1 2025-10-17 04:06:28.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43758 1 109 1 2025-10-17 04:02:43.301 00:05:09.235 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:07:28.640 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39446 1 109 1 2025-10-17 04:07:28.642 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52253 1 80 1 2025-10-17 04:07:28.632 00:00:00.000 UDP 28.104.0.1:52253 -> 198.28.0.2:53 1 64 1 2025-10-17 04:07:28.632 00:00:00.000 UDP 28.104.0.1:39446 -> 198.28.0.2:53 1 64 1 2025-10-17 04:02:52.441 00:05:50.864 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:08:28.894 00:00:00.000 UDP 28.104.0.1:44509 -> 198.28.0.2:53 1 64 1 2025-10-17 04:08:28.894 00:00:00.000 UDP 28.104.0.1:38720 -> 198.28.0.2:53 1 64 1 2025-10-17 04:04:19.852 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2876 1 2025-10-17 04:08:28.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38720 1 80 1 2025-10-17 04:08:28.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44509 1 109 1 2025-10-17 04:03:52.526 00:05:50.791 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:08:45.250 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:09:29.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35791 1 109 1 2025-10-17 04:09:29.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48595 1 80 1 2025-10-17 04:09:29.201 00:00:00.000 UDP 28.104.0.1:48595 -> 198.28.0.2:53 1 64 1 2025-10-17 04:09:29.201 00:00:00.000 UDP 28.104.0.1:35791 -> 198.28.0.2:53 1 64 1 2025-10-17 04:04:52.334 00:06:00.196 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:10:29.487 00:00:00.000 UDP 28.104.0.1:35324 -> 198.28.0.2:53 1 64 1 2025-10-17 04:10:29.487 00:00:00.000 UDP 28.104.0.1:40922 -> 198.28.0.2:53 1 64 1 2025-10-17 04:10:29.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35324 1 109 1 2025-10-17 04:10:29.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40922 1 80 1 2025-10-17 04:11:29.773 00:00:00.000 UDP 28.104.0.1:51351 -> 198.28.0.2:53 1 64 1 2025-10-17 04:11:29.773 00:00:00.000 UDP 28.104.0.1:46389 -> 198.28.0.2:53 1 64 1 2025-10-17 04:11:29.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51351 1 80 1 2025-10-17 04:11:29.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46389 1 109 1 2025-10-17 04:06:52.429 00:05:50.927 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:06:52.526 00:06:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:12:30.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56500 1 109 1 2025-10-17 04:12:30.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47348 1 80 1 2025-10-17 04:12:30.055 00:00:00.000 UDP 28.104.0.1:56500 -> 198.28.0.2:53 1 64 1 2025-10-17 04:12:30.055 00:00:00.000 UDP 28.104.0.1:47348 -> 198.28.0.2:53 1 64 1 2025-10-17 04:08:43.305 00:05:09.245 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:13:30.789 00:00:00.000 UDP 28.104.0.1:39081 -> 198.28.0.2:53 1 64 1 2025-10-17 04:13:30.789 00:00:00.000 UDP 28.104.0.1:38696 -> 198.28.0.2:53 1 64 1 2025-10-17 04:13:30.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39081 1 109 1 2025-10-17 04:13:30.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38696 1 80 1 2025-10-17 04:13:44.887 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:08:52.441 00:05:50.866 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:09:39.857 00:05:10.251 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-10-17 04:14:31.103 00:00:00.000 UDP 28.104.0.1:34439 -> 198.28.0.2:53 1 64 1 2025-10-17 04:14:31.103 00:00:00.000 UDP 28.104.0.1:45166 -> 198.28.0.2:53 1 64 1 2025-10-17 04:14:31.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34439 1 109 1 2025-10-17 04:14:31.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45166 1 80 1 2025-10-17 04:09:52.529 00:05:50.788 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:15:31.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51607 1 80 1 2025-10-17 04:15:31.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48813 1 109 1 2025-10-17 04:15:31.355 00:00:00.000 UDP 28.104.0.1:51607 -> 198.28.0.2:53 1 64 1 2025-10-17 04:15:31.355 00:00:00.000 UDP 28.104.0.1:48813 -> 198.28.0.2:53 1 64 1 2025-10-17 04:16:31.654 00:00:00.000 UDP 28.104.0.1:40951 -> 198.28.0.2:53 1 64 1 2025-10-17 04:16:31.654 00:00:00.000 UDP 28.104.0.1:54141 -> 198.28.0.2:53 1 64 1 2025-10-17 04:16:31.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40951 1 109 1 2025-10-17 04:16:31.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54141 1 80 1 2025-10-17 04:11:52.337 00:06:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:17:31.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54685 1 109 1 2025-10-17 04:17:31.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37034 1 80 1 2025-10-17 04:17:31.959 00:00:00.000 UDP 28.104.0.1:37034 -> 198.28.0.2:53 1 64 1 2025-10-17 04:17:31.959 00:00:00.000 UDP 28.104.0.1:54685 -> 198.28.0.2:53 1 64 1 2025-10-17 04:12:52.431 00:05:50.928 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:18:32.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52561 1 80 1 2025-10-17 04:18:32.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36415 1 109 1 2025-10-17 04:18:32.254 00:00:00.000 UDP 28.104.0.1:52561 -> 198.28.0.2:53 1 64 1 2025-10-17 04:18:32.253 00:00:00.000 UDP 28.104.0.1:36415 -> 198.28.0.2:53 1 64 1 2025-10-17 04:18:44.908 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:14:43.306 00:05:09.235 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:13:52.540 00:06:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:14:59.869 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2748 1 2025-10-17 04:19:32.512 00:00:00.000 UDP 28.104.0.1:39146 -> 198.28.0.2:53 1 64 1 2025-10-17 04:19:32.512 00:00:00.000 UDP 28.104.0.1:47141 -> 198.28.0.2:53 1 64 1 2025-10-17 04:19:32.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39146 1 80 1 2025-10-17 04:19:32.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47141 1 109 1 2025-10-17 04:14:52.442 00:05:50.868 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:20:32.842 00:00:00.000 UDP 28.104.0.1:51576 -> 198.28.0.2:53 1 64 1 2025-10-17 04:20:32.842 00:00:00.000 UDP 28.104.0.1:40037 -> 198.28.0.2:53 1 64 1 2025-10-17 04:20:32.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40037 1 80 1 2025-10-17 04:20:32.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51576 1 109 1 2025-10-17 04:15:52.529 00:05:50.789 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:21:33.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38687 1 109 1 2025-10-17 04:21:33.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35888 1 80 1 2025-10-17 04:21:33.175 00:00:00.000 UDP 28.104.0.1:35888 -> 198.28.0.2:53 1 64 1 2025-10-17 04:21:33.175 00:00:00.000 UDP 28.104.0.1:38687 -> 198.28.0.2:53 1 64 1 2025-10-17 04:22:33.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39814 1 80 1 2025-10-17 04:22:33.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34514 1 109 1 2025-10-17 04:22:33.427 00:00:00.000 UDP 28.104.0.1:39814 -> 198.28.0.2:53 1 64 1 2025-10-17 04:22:33.428 00:00:00.000 UDP 28.104.0.1:34514 -> 198.28.0.2:53 1 64 1 2025-10-17 04:23:33.686 00:00:00.000 UDP 28.104.0.1:51236 -> 198.28.0.2:53 1 64 1 2025-10-17 04:23:33.686 00:00:00.000 UDP 28.104.0.1:51357 -> 198.28.0.2:53 1 64 1 2025-10-17 04:23:33.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51236 1 80 1 2025-10-17 04:23:33.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51357 1 109 1 2025-10-17 04:23:45.141 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:18:52.431 00:05:50.929 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:18:52.341 00:06:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:20:19.874 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2916 1 2025-10-17 04:24:33.987 00:00:00.000 UDP 28.104.0.1:60358 -> 198.28.0.2:53 1 64 1 2025-10-17 04:24:33.987 00:00:00.000 UDP 28.104.0.1:34256 -> 198.28.0.2:53 1 64 1 2025-10-17 04:24:33.998 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60358 1 80 1 2025-10-17 04:24:33.998 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34256 1 109 1 2025-10-17 04:20:43.310 00:05:09.236 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:25:34.299 00:00:00.000 UDP 28.104.0.1:42826 -> 198.28.0.2:53 1 64 1 2025-10-17 04:25:34.297 00:00:00.000 UDP 28.104.0.1:42018 -> 198.28.0.2:53 1 64 1 2025-10-17 04:25:34.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42826 1 109 1 2025-10-17 04:25:34.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42018 1 80 1 2025-10-17 04:20:52.444 00:05:50.867 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:20:52.531 00:06:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:26:34.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52573 1 109 1 2025-10-17 04:26:34.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50150 1 80 1 2025-10-17 04:26:34.606 00:00:00.000 UDP 28.104.0.1:50150 -> 198.28.0.2:53 1 64 1 2025-10-17 04:26:34.606 00:00:00.000 UDP 28.104.0.1:52573 -> 198.28.0.2:53 1 64 1 2025-10-17 04:21:52.531 00:05:50.789 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:27:34.930 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46957 1 80 1 2025-10-17 04:27:34.930 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48438 1 109 1 2025-10-17 04:27:34.919 00:00:00.000 UDP 28.104.0.1:48438 -> 198.28.0.2:53 1 64 1 2025-10-17 04:27:34.919 00:00:00.000 UDP 28.104.0.1:46957 -> 198.28.0.2:53 1 64 1 2025-10-17 04:28:35.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49237 1 109 1 2025-10-17 04:28:35.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50265 1 80 1 2025-10-17 04:28:35.233 00:00:00.000 UDP 28.104.0.1:49237 -> 198.28.0.2:53 1 64 1 2025-10-17 04:28:35.233 00:00:00.000 UDP 28.104.0.1:50265 -> 198.28.0.2:53 1 64 1 2025-10-17 04:28:44.987 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:29:35.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42114 1 109 1 2025-10-17 04:29:35.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58921 1 80 1 2025-10-17 04:29:35.529 00:00:00.000 UDP 28.104.0.1:58921 -> 198.28.0.2:53 1 64 1 2025-10-17 04:29:35.529 00:00:00.000 UDP 28.104.0.1:42114 -> 198.28.0.2:53 1 64 1 2025-10-17 04:24:52.433 00:05:50.928 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:25:39.884 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2656 1 2025-10-17 04:30:35.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47744 1 80 1 2025-10-17 04:30:35.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43060 1 109 1 2025-10-17 04:30:35.828 00:00:00.000 UDP 28.104.0.1:43060 -> 198.28.0.2:53 1 64 1 2025-10-17 04:30:35.827 00:00:00.000 UDP 28.104.0.1:47744 -> 198.28.0.2:53 1 64 1 2025-10-17 04:26:43.310 00:05:09.239 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:25:52.344 00:06:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:31:36.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51118 1 80 1 2025-10-17 04:31:36.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37957 1 109 1 2025-10-17 04:31:36.130 00:00:00.000 UDP 28.104.0.1:51118 -> 198.28.0.2:53 1 64 1 2025-10-17 04:31:36.130 00:00:00.000 UDP 28.104.0.1:37957 -> 198.28.0.2:53 1 64 1 2025-10-17 04:26:52.444 00:05:50.867 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:32:36.383 00:00:00.000 UDP 28.104.0.1:38467 -> 198.28.0.2:53 1 64 1 2025-10-17 04:32:36.383 00:00:00.000 UDP 28.104.0.1:48125 -> 198.28.0.2:53 1 64 1 2025-10-17 04:32:36.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38467 1 109 1 2025-10-17 04:32:36.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48125 1 80 1 2025-10-17 04:27:52.536 00:05:50.792 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:27:52.537 00:06:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:33:36.679 00:00:00.000 UDP 28.104.0.1:35562 -> 198.28.0.2:53 1 64 1 2025-10-17 04:33:36.679 00:00:00.000 UDP 28.104.0.1:38725 -> 198.28.0.2:53 1 64 1 2025-10-17 04:33:36.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35562 1 80 1 2025-10-17 04:33:36.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38725 1 109 1 2025-10-17 04:33:45.400 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:34:36.968 00:00:00.000 UDP 28.104.0.1:43365 -> 198.28.0.2:53 1 64 1 2025-10-17 04:34:36.968 00:00:00.000 UDP 28.104.0.1:32922 -> 198.28.0.2:53 1 64 1 2025-10-17 04:34:36.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43365 1 80 1 2025-10-17 04:34:36.977 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32922 1 109 1 2025-10-17 04:30:59.890 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-10-17 04:35:37.222 00:00:00.000 UDP 28.104.0.1:39337 -> 198.28.0.2:53 1 64 1 2025-10-17 04:35:37.222 00:00:00.000 UDP 28.104.0.1:35735 -> 198.28.0.2:53 1 64 1 2025-10-17 04:35:37.233 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35735 1 109 1 2025-10-17 04:35:37.233 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39337 1 80 1 2025-10-17 04:30:52.434 00:05:50.930 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:36:37.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43709 1 109 1 2025-10-17 04:36:37.529 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45955 1 80 1 2025-10-17 04:36:37.519 00:00:00.000 UDP 28.104.0.1:43709 -> 198.28.0.2:53 1 64 1 2025-10-17 04:36:37.519 00:00:00.000 UDP 28.104.0.1:45955 -> 198.28.0.2:53 1 64 1 2025-10-17 04:32:43.311 00:05:09.239 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:37:37.811 00:00:00.000 UDP 28.104.0.1:51317 -> 198.28.0.2:53 1 64 1 2025-10-17 04:37:37.811 00:00:00.000 UDP 28.104.0.1:40715 -> 198.28.0.2:53 1 64 1 2025-10-17 04:37:37.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51317 1 80 1 2025-10-17 04:37:37.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40715 1 109 1 2025-10-17 04:32:52.445 00:05:50.869 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:32:52.346 00:06:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:38:38.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53564 1 80 1 2025-10-17 04:38:38.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46876 1 109 1 2025-10-17 04:38:38.107 00:00:00.000 UDP 28.104.0.1:46876 -> 198.28.0.2:53 1 64 1 2025-10-17 04:38:38.108 00:00:00.000 UDP 28.104.0.1:53564 -> 198.28.0.2:53 1 64 1 2025-10-17 04:33:52.539 00:05:50.785 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:38:45.443 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:39:38.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56322 1 109 1 2025-10-17 04:39:38.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36787 1 80 1 2025-10-17 04:39:38.405 00:00:00.000 UDP 28.104.0.1:56322 -> 198.28.0.2:53 1 64 1 2025-10-17 04:39:38.404 00:00:00.000 UDP 28.104.0.1:36787 -> 198.28.0.2:53 1 64 1 2025-10-17 04:34:52.540 00:06:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:36:16.908 00:05:03.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2540 1 2025-10-17 04:40:38.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42751 1 109 1 2025-10-17 04:40:38.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49449 1 80 1 2025-10-17 04:40:38.706 00:00:00.000 UDP 28.104.0.1:42751 -> 198.28.0.2:53 1 64 1 2025-10-17 04:40:38.706 00:00:00.000 UDP 28.104.0.1:49449 -> 198.28.0.2:53 1 64 1 2025-10-17 04:41:39.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32930 1 109 1 2025-10-17 04:41:39.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37321 1 80 1 2025-10-17 04:41:39.001 00:00:00.000 UDP 28.104.0.1:32930 -> 198.28.0.2:53 1 64 1 2025-10-17 04:41:39.001 00:00:00.000 UDP 28.104.0.1:37321 -> 198.28.0.2:53 1 64 1 2025-10-17 04:36:52.436 00:05:50.928 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:42:39.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54657 1 109 1 2025-10-17 04:42:39.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54902 1 80 1 2025-10-17 04:42:39.307 00:00:00.000 UDP 28.104.0.1:54902 -> 198.28.0.2:53 1 64 1 2025-10-17 04:42:39.308 00:00:00.000 UDP 28.104.0.1:54657 -> 198.28.0.2:53 1 64 1 2025-10-17 04:38:43.313 00:05:09.238 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:43:39.609 00:00:00.000 UDP 28.104.0.1:58391 -> 198.28.0.2:53 1 64 1 2025-10-17 04:43:39.609 00:00:00.000 UDP 28.104.0.1:59732 -> 198.28.0.2:53 1 64 1 2025-10-17 04:43:39.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58391 1 80 1 2025-10-17 04:43:39.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59732 1 109 1 2025-10-17 04:43:45.452 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:38:52.446 00:05:50.868 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:44:39.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33958 1 109 1 2025-10-17 04:44:39.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33037 1 80 1 2025-10-17 04:44:39.906 00:00:00.000 UDP 28.104.0.1:33958 -> 198.28.0.2:53 1 64 1 2025-10-17 04:44:39.906 00:00:00.000 UDP 28.104.0.1:33037 -> 198.28.0.2:53 1 64 1 2025-10-17 04:39:52.539 00:05:50.792 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:39:52.348 00:06:00.192 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:41:29.911 00:05:10.688 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2692 1 2025-10-17 04:45:40.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60793 1 80 1 2025-10-17 04:45:40.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60225 1 109 1 2025-10-17 04:45:40.207 00:00:00.000 UDP 28.104.0.1:60793 -> 198.28.0.2:53 1 64 1 2025-10-17 04:45:40.207 00:00:00.000 UDP 28.104.0.1:60225 -> 198.28.0.2:53 1 64 1 2025-10-17 04:46:40.504 00:00:00.000 UDP 28.104.0.1:36952 -> 198.28.0.2:53 1 64 1 2025-10-17 04:46:40.504 00:00:00.000 UDP 28.104.0.1:33528 -> 198.28.0.2:53 1 64 1 2025-10-17 04:46:40.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36952 1 109 1 2025-10-17 04:46:40.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33528 1 80 1 2025-10-17 04:41:52.541 00:06:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:47:40.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46986 1 109 1 2025-10-17 04:47:40.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35378 1 80 1 2025-10-17 04:47:40.802 00:00:00.000 UDP 28.104.0.1:46986 -> 198.28.0.2:53 1 64 1 2025-10-17 04:47:40.802 00:00:00.000 UDP 28.104.0.1:35378 -> 198.28.0.2:53 1 64 1 2025-10-17 04:42:52.437 00:05:50.931 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:48:41.096 00:00:00.000 UDP 28.104.0.1:56089 -> 198.28.0.2:53 1 64 1 2025-10-17 04:48:41.096 00:00:00.000 UDP 28.104.0.1:46481 -> 198.28.0.2:53 1 64 1 2025-10-17 04:48:41.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56089 1 109 1 2025-10-17 04:48:41.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46481 1 80 1 2025-10-17 04:48:45.585 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:44:43.314 00:05:09.237 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:49:41.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40655 1 109 1 2025-10-17 04:49:41.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54241 1 80 1 2025-10-17 04:49:41.381 00:00:00.000 UDP 28.104.0.1:54241 -> 198.28.0.2:53 1 64 1 2025-10-17 04:49:41.381 00:00:00.000 UDP 28.104.0.1:40655 -> 198.28.0.2:53 1 64 1 2025-10-17 04:44:52.448 00:05:50.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:50:41.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33712 1 80 1 2025-10-17 04:50:41.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44351 1 109 1 2025-10-17 04:50:41.669 00:00:00.000 UDP 28.104.0.1:44351 -> 198.28.0.2:53 1 64 1 2025-10-17 04:50:41.669 00:00:00.000 UDP 28.104.0.1:33712 -> 198.28.0.2:53 1 64 1 2025-10-17 04:45:52.540 00:05:50.788 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:46:49.917 00:05:10.031 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2972 1 2025-10-17 04:51:41.921 00:00:00.000 UDP 28.104.0.1:49841 -> 198.28.0.2:53 1 64 1 2025-10-17 04:51:41.921 00:00:00.000 UDP 28.104.0.1:58766 -> 198.28.0.2:53 1 64 1 2025-10-17 04:51:41.931 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58766 1 80 1 2025-10-17 04:51:41.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49841 1 109 1 2025-10-17 04:46:52.350 00:06:00.192 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 04:52:42.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40000 1 109 1 2025-10-17 04:52:42.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36325 1 80 1 2025-10-17 04:52:42.240 00:00:00.000 UDP 28.104.0.1:40000 -> 198.28.0.2:53 1 64 1 2025-10-17 04:52:42.240 00:00:00.000 UDP 28.104.0.1:36325 -> 198.28.0.2:53 1 64 1 2025-10-17 04:53:42.531 00:00:00.000 UDP 28.104.0.1:59476 -> 198.28.0.2:53 1 64 1 2025-10-17 04:53:42.531 00:00:00.000 UDP 28.104.0.1:59537 -> 198.28.0.2:53 1 64 1 2025-10-17 04:48:52.440 00:05:50.931 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 04:53:45.627 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:53:42.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59476 1 109 1 2025-10-17 04:53:42.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59537 1 80 1 2025-10-17 04:48:52.540 00:06:00.072 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 04:54:42.822 00:00:00.000 UDP 28.104.0.1:52760 -> 198.28.0.2:53 1 64 1 2025-10-17 04:54:42.821 00:00:00.000 UDP 28.104.0.1:35544 -> 198.28.0.2:53 1 64 1 2025-10-17 04:54:42.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35544 1 109 1 2025-10-17 04:54:42.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52760 1 80 1 2025-10-17 04:50:43.318 00:05:09.233 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 04:50:52.449 00:05:50.873 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 04:55:43.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48027 1 80 1 2025-10-17 04:55:43.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58898 1 109 1 2025-10-17 04:55:43.090 00:00:00.000 UDP 28.104.0.1:48027 -> 198.28.0.2:53 1 64 1 2025-10-17 04:55:43.090 00:00:00.000 UDP 28.104.0.1:58898 -> 198.28.0.2:53 1 64 1 2025-10-17 04:52:09.922 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2368 1 2025-10-17 04:56:43.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59345 1 80 1 2025-10-17 04:56:43.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45632 1 109 1 2025-10-17 04:51:52.541 00:05:50.791 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 04:56:43.379 00:00:00.000 UDP 28.104.0.1:59345 -> 198.28.0.2:53 1 64 1 2025-10-17 04:56:43.379 00:00:00.000 UDP 28.104.0.1:45632 -> 198.28.0.2:53 1 64 1 2025-10-17 04:57:43.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37728 1 109 1 2025-10-17 04:57:43.725 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45175 1 80 1 2025-10-17 04:57:43.714 00:00:00.000 UDP 28.104.0.1:45175 -> 198.28.0.2:53 1 64 1 2025-10-17 04:57:43.714 00:00:00.000 UDP 28.104.0.1:37728 -> 198.28.0.2:53 1 64 1 2025-10-17 04:58:44.010 00:00:00.000 UDP 28.104.0.1:59436 -> 198.28.0.2:53 1 64 1 2025-10-17 04:58:44.010 00:00:00.000 UDP 28.104.0.1:41130 -> 198.28.0.2:53 1 64 1 2025-10-17 04:58:45.699 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 04:58:44.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41130 1 80 1 2025-10-17 04:58:44.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59436 1 109 1 Summary: total flows: 319, total bytes: 94992, total packets: 1400, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-10-17 03:54:52 - 2025-10-17 04:58:45 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0040s User: 0.0032s Wall: 0.0047s flows/second: 68453.0 Runtime: 0.0047s