Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-17 08:53:52.600 00:06:00.082 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 08:58:58.624 00:00:00.000 UDP 28.104.0.1:52967 -> 198.28.0.2:53 1 64 1 2025-10-17 08:58:58.624 00:00:00.000 UDP 28.104.0.1:46463 -> 198.28.0.2:53 1 64 1 2025-10-17 08:58:58.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52967 1 80 1 2025-10-17 08:58:58.634 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46463 1 109 1 2025-10-17 08:54:52.504 00:05:50.976 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 08:59:58.930 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51305 1 109 1 2025-10-17 08:59:58.930 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34497 1 80 1 2025-10-17 08:59:58.921 00:00:00.000 UDP 28.104.0.1:34497 -> 198.28.0.2:53 1 64 1 2025-10-17 08:59:58.921 00:00:00.000 UDP 28.104.0.1:51305 -> 198.28.0.2:53 1 64 1 2025-10-17 09:00:59.207 00:00:00.000 UDP 28.104.0.1:34658 -> 198.28.0.2:53 1 64 1 2025-10-17 09:00:59.207 00:00:00.000 UDP 28.104.0.1:58887 -> 198.28.0.2:53 1 64 1 2025-10-17 08:56:43.430 00:05:09.184 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 08:56:50.247 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2484 1 2025-10-17 09:00:59.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58887 1 80 1 2025-10-17 09:00:59.218 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34658 1 109 1 2025-10-17 08:56:52.515 00:05:50.915 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:01:59.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41295 1 80 1 2025-10-17 09:01:59.515 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40285 1 109 1 2025-10-17 09:01:59.505 00:00:00.000 UDP 28.104.0.1:40285 -> 198.28.0.2:53 1 64 1 2025-10-17 09:01:59.505 00:00:00.000 UDP 28.104.0.1:41295 -> 198.28.0.2:53 1 64 1 2025-10-17 08:57:52.603 00:05:50.839 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:02:59.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53504 1 109 1 2025-10-17 09:02:59.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58702 1 80 1 2025-10-17 09:02:59.804 00:00:00.000 UDP 28.104.0.1:58702 -> 198.28.0.2:53 1 64 1 2025-10-17 09:02:59.804 00:00:00.000 UDP 28.104.0.1:53504 -> 198.28.0.2:53 1 64 1 2025-10-17 09:03:50.669 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 08:58:52.445 00:06:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:04:00.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46812 1 109 1 2025-10-17 09:04:00.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46054 1 80 1 2025-10-17 09:04:00.484 00:00:00.000 UDP 28.104.0.1:46054 -> 198.28.0.2:53 1 64 1 2025-10-17 09:04:00.484 00:00:00.000 UDP 28.104.0.1:46812 -> 198.28.0.2:53 1 64 1 2025-10-17 09:05:00.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52057 1 109 1 2025-10-17 09:05:00.792 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50264 1 80 1 2025-10-17 09:05:00.781 00:00:00.000 UDP 28.104.0.1:52057 -> 198.28.0.2:53 1 64 1 2025-10-17 09:05:00.781 00:00:00.000 UDP 28.104.0.1:50264 -> 198.28.0.2:53 1 64 1 2025-10-17 09:00:52.516 00:05:50.967 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:00:52.604 00:06:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:06:01.083 00:00:00.000 UDP 28.104.0.1:44887 -> 198.28.0.2:53 1 64 1 2025-10-17 09:06:01.083 00:00:00.000 UDP 28.104.0.1:34314 -> 198.28.0.2:53 1 64 1 2025-10-17 09:06:01.093 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44887 1 109 1 2025-10-17 09:06:01.093 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34314 1 80 1 2025-10-17 09:02:10.251 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2632 1 2025-10-17 09:07:01.375 00:00:00.000 UDP 28.104.0.1:40224 -> 198.28.0.2:53 1 64 1 2025-10-17 09:07:01.375 00:00:00.000 UDP 28.104.0.1:39067 -> 198.28.0.2:53 1 64 1 2025-10-17 09:02:43.430 00:05:09.184 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:07:01.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40224 1 80 1 2025-10-17 09:07:01.385 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39067 1 109 1 2025-10-17 09:02:52.520 00:05:50.913 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:08:01.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56313 1 80 1 2025-10-17 09:08:01.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56418 1 109 1 2025-10-17 09:08:01.668 00:00:00.000 UDP 28.104.0.1:56313 -> 198.28.0.2:53 1 64 1 2025-10-17 09:08:01.668 00:00:00.000 UDP 28.104.0.1:56418 -> 198.28.0.2:53 1 64 1 2025-10-17 09:03:52.604 00:05:50.839 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:08:50.615 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:09:02.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39144 1 80 1 2025-10-17 09:09:02.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56398 1 109 1 2025-10-17 09:09:02.416 00:00:00.000 UDP 28.104.0.1:39144 -> 198.28.0.2:53 1 64 1 2025-10-17 09:09:02.416 00:00:00.000 UDP 28.104.0.1:56398 -> 198.28.0.2:53 1 64 1 2025-10-17 09:10:02.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51754 1 80 1 2025-10-17 09:10:02.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46134 1 109 1 2025-10-17 09:10:02.709 00:00:00.000 UDP 28.104.0.1:51754 -> 198.28.0.2:53 1 64 1 2025-10-17 09:10:02.709 00:00:00.000 UDP 28.104.0.1:46134 -> 198.28.0.2:53 1 64 1 2025-10-17 09:05:52.446 00:06:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:11:03.033 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33038 1 109 1 2025-10-17 09:11:03.033 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52187 1 80 1 2025-10-17 09:11:03.021 00:00:00.000 UDP 28.104.0.1:52187 -> 198.28.0.2:53 1 64 1 2025-10-17 09:11:03.020 00:00:00.000 UDP 28.104.0.1:33038 -> 198.28.0.2:53 1 64 1 2025-10-17 09:07:30.256 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3104 1 2025-10-17 09:06:52.509 00:05:50.974 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:12:03.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43691 1 109 1 2025-10-17 09:12:03.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49171 1 80 1 2025-10-17 09:12:03.316 00:00:00.000 UDP 28.104.0.1:49171 -> 198.28.0.2:53 1 64 1 2025-10-17 09:12:03.316 00:00:00.000 UDP 28.104.0.1:43691 -> 198.28.0.2:53 1 64 1 2025-10-17 09:07:52.605 00:06:00.082 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:08:43.432 00:05:09.183 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:13:03.608 00:00:00.000 UDP 28.104.0.1:50087 -> 198.28.0.2:53 1 64 1 2025-10-17 09:13:03.608 00:00:00.000 UDP 28.104.0.1:41012 -> 198.28.0.2:53 1 64 1 2025-10-17 09:13:03.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41012 1 109 1 2025-10-17 09:13:03.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50087 1 80 1 2025-10-17 09:08:52.523 00:05:50.912 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:13:50.896 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:14:03.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46830 1 109 1 2025-10-17 09:14:03.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45323 1 80 1 2025-10-17 09:14:03.899 00:00:00.000 UDP 28.104.0.1:46830 -> 198.28.0.2:53 1 64 1 2025-10-17 09:14:03.898 00:00:00.000 UDP 28.104.0.1:45323 -> 198.28.0.2:53 1 64 1 2025-10-17 09:09:52.605 00:05:50.840 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:15:04.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37873 1 109 1 2025-10-17 09:15:04.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35237 1 80 1 2025-10-17 09:15:04.194 00:00:00.000 UDP 28.104.0.1:37873 -> 198.28.0.2:53 1 64 1 2025-10-17 09:15:04.194 00:00:00.000 UDP 28.104.0.1:35237 -> 198.28.0.2:53 1 64 1 2025-10-17 09:16:04.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56518 1 109 1 2025-10-17 09:16:04.501 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37693 1 80 1 2025-10-17 09:16:04.490 00:00:00.000 UDP 28.104.0.1:37693 -> 198.28.0.2:53 1 64 1 2025-10-17 09:16:04.490 00:00:00.000 UDP 28.104.0.1:56518 -> 198.28.0.2:53 1 64 1 2025-10-17 09:12:50.266 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-10-17 09:17:04.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35749 1 80 1 2025-10-17 09:17:04.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49535 1 109 1 2025-10-17 09:17:04.790 00:00:00.000 UDP 28.104.0.1:49535 -> 198.28.0.2:53 1 64 1 2025-10-17 09:17:04.790 00:00:00.000 UDP 28.104.0.1:35749 -> 198.28.0.2:53 1 64 1 2025-10-17 09:12:52.511 00:05:50.974 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:12:52.448 00:06:00.159 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:18:05.697 00:00:00.000 UDP 28.104.0.1:44239 -> 198.28.0.2:53 1 64 1 2025-10-17 09:18:05.697 00:00:00.000 UDP 28.104.0.1:55377 -> 198.28.0.2:53 1 64 1 2025-10-17 09:18:05.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44239 1 80 1 2025-10-17 09:18:05.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55377 1 109 1 2025-10-17 09:18:51.005 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:14:43.434 00:05:09.183 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:19:05.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49285 1 109 1 2025-10-17 09:19:05.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60147 1 80 1 2025-10-17 09:19:05.956 00:00:00.000 UDP 28.104.0.1:60147 -> 198.28.0.2:53 1 64 1 2025-10-17 09:19:05.957 00:00:00.000 UDP 28.104.0.1:49285 -> 198.28.0.2:53 1 64 1 2025-10-17 09:14:52.524 00:05:50.912 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:14:52.605 00:06:00.084 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:20:06.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52077 1 80 1 2025-10-17 09:20:06.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40501 1 109 1 2025-10-17 09:20:06.265 00:00:00.000 UDP 28.104.0.1:40501 -> 198.28.0.2:53 1 64 1 2025-10-17 09:20:06.265 00:00:00.000 UDP 28.104.0.1:52077 -> 198.28.0.2:53 1 64 1 2025-10-17 09:15:52.606 00:05:50.839 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:21:06.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56382 1 109 1 2025-10-17 09:21:06.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44803 1 80 1 2025-10-17 09:21:06.553 00:00:00.000 UDP 28.104.0.1:56382 -> 198.28.0.2:53 1 64 1 2025-10-17 09:21:06.553 00:00:00.000 UDP 28.104.0.1:44803 -> 198.28.0.2:53 1 64 1 2025-10-17 09:22:06.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40826 1 109 1 2025-10-17 09:22:06.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48326 1 80 1 2025-10-17 09:22:06.837 00:00:00.000 UDP 28.104.0.1:40826 -> 198.28.0.2:53 1 64 1 2025-10-17 09:22:06.837 00:00:00.000 UDP 28.104.0.1:48326 -> 198.28.0.2:53 1 64 1 2025-10-17 09:18:10.271 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3020 1 2025-10-17 09:23:07.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53529 1 80 1 2025-10-17 09:23:07.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34079 1 109 1 2025-10-17 09:23:07.133 00:00:00.000 UDP 28.104.0.1:53529 -> 198.28.0.2:53 1 64 1 2025-10-17 09:23:07.134 00:00:00.000 UDP 28.104.0.1:34079 -> 198.28.0.2:53 1 64 1 2025-10-17 09:18:52.516 00:05:50.971 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:23:51.044 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:24:07.429 00:00:00.000 UDP 28.104.0.1:55072 -> 198.28.0.2:53 1 64 1 2025-10-17 09:24:07.429 00:00:00.000 UDP 28.104.0.1:51100 -> 198.28.0.2:53 1 64 1 2025-10-17 09:24:07.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51100 1 109 1 2025-10-17 09:24:07.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55072 1 80 1 2025-10-17 09:20:43.435 00:05:09.183 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:19:52.453 00:06:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:25:07.729 00:00:00.000 UDP 28.104.0.1:36911 -> 198.28.0.2:53 1 64 1 2025-10-17 09:25:07.730 00:00:00.000 UDP 28.104.0.1:36224 -> 198.28.0.2:53 1 64 1 2025-10-17 09:25:07.740 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36911 1 80 1 2025-10-17 09:25:07.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36224 1 109 1 2025-10-17 09:20:52.526 00:05:50.910 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:26:08.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51727 1 80 1 2025-10-17 09:26:08.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46189 1 109 1 2025-10-17 09:26:08.056 00:00:00.000 UDP 28.104.0.1:46189 -> 198.28.0.2:53 1 64 1 2025-10-17 09:26:08.055 00:00:00.000 UDP 28.104.0.1:51727 -> 198.28.0.2:53 1 64 1 2025-10-17 09:21:52.608 00:05:50.843 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:21:52.608 00:06:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:27:08.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59365 1 80 1 2025-10-17 09:27:08.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38533 1 109 1 2025-10-17 09:27:08.358 00:00:00.000 UDP 28.104.0.1:38533 -> 198.28.0.2:53 1 64 1 2025-10-17 09:27:08.358 00:00:00.000 UDP 28.104.0.1:59365 -> 198.28.0.2:53 1 64 1 2025-10-17 09:23:30.275 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2728 1 2025-10-17 09:28:08.710 00:00:00.000 UDP 28.104.0.1:59760 -> 198.28.0.2:53 1 64 1 2025-10-17 09:28:08.710 00:00:00.000 UDP 28.104.0.1:56228 -> 198.28.0.2:53 1 64 1 2025-10-17 09:28:08.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59760 1 109 1 2025-10-17 09:28:08.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56228 1 80 1 2025-10-17 09:28:51.396 00:00:00.014 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:29:09.003 00:00:00.000 UDP 28.104.0.1:42403 -> 198.28.0.2:53 1 64 1 2025-10-17 09:29:09.003 00:00:00.000 UDP 28.104.0.1:34031 -> 198.28.0.2:53 1 64 1 2025-10-17 09:29:09.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42403 1 80 1 2025-10-17 09:29:09.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34031 1 109 1 2025-10-17 09:24:52.516 00:05:50.974 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:30:09.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37209 1 109 1 2025-10-17 09:30:09.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53132 1 80 1 2025-10-17 09:30:09.257 00:00:00.000 UDP 28.104.0.1:53132 -> 198.28.0.2:53 1 64 1 2025-10-17 09:30:09.257 00:00:00.000 UDP 28.104.0.1:37209 -> 198.28.0.2:53 1 64 1 2025-10-17 09:26:43.436 00:05:09.184 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:31:09.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33124 1 109 1 2025-10-17 09:31:09.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43023 1 80 1 2025-10-17 09:31:09.545 00:00:00.000 UDP 28.104.0.1:33124 -> 198.28.0.2:53 1 64 1 2025-10-17 09:31:09.545 00:00:00.000 UDP 28.104.0.1:43023 -> 198.28.0.2:53 1 64 1 2025-10-17 09:26:52.527 00:05:50.914 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:26:52.454 00:06:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:32:09.835 00:00:00.000 UDP 28.104.0.1:37464 -> 198.28.0.2:53 1 64 1 2025-10-17 09:32:09.835 00:00:00.000 UDP 28.104.0.1:38229 -> 198.28.0.2:53 1 64 1 2025-10-17 09:32:09.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37464 1 109 1 2025-10-17 09:32:09.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38229 1 80 1 2025-10-17 09:27:52.609 00:05:50.842 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:28:50.279 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2504 1 2025-10-17 09:33:10.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34154 1 109 1 2025-10-17 09:33:10.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43528 1 80 1 2025-10-17 09:33:10.139 00:00:00.000 UDP 28.104.0.1:43528 -> 198.28.0.2:53 1 64 1 2025-10-17 09:33:10.140 00:00:00.000 UDP 28.104.0.1:34154 -> 198.28.0.2:53 1 64 1 2025-10-17 09:33:51.317 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:28:52.610 00:06:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:34:10.433 00:00:00.000 UDP 28.104.0.1:60247 -> 198.28.0.2:53 1 64 1 2025-10-17 09:34:10.433 00:00:00.000 UDP 28.104.0.1:47476 -> 198.28.0.2:53 1 64 1 2025-10-17 09:34:10.445 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47476 1 80 1 2025-10-17 09:34:10.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60247 1 109 1 2025-10-17 09:35:10.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60956 1 109 1 2025-10-17 09:35:10.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59579 1 80 1 2025-10-17 09:35:10.734 00:00:00.000 UDP 28.104.0.1:60956 -> 198.28.0.2:53 1 64 1 2025-10-17 09:35:10.734 00:00:00.000 UDP 28.104.0.1:59579 -> 198.28.0.2:53 1 64 1 2025-10-17 09:30:52.518 00:05:50.975 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:36:11.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42424 1 109 1 2025-10-17 09:36:11.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43722 1 80 1 2025-10-17 09:36:11.001 00:00:00.000 UDP 28.104.0.1:43722 -> 198.28.0.2:53 1 64 1 2025-10-17 09:36:11.003 00:00:00.000 UDP 28.104.0.1:42424 -> 198.28.0.2:53 1 64 1 2025-10-17 09:32:43.441 00:05:09.182 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:37:11.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54531 1 80 1 2025-10-17 09:37:11.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55064 1 109 1 2025-10-17 09:37:11.302 00:00:00.000 UDP 28.104.0.1:54531 -> 198.28.0.2:53 1 64 1 2025-10-17 09:37:11.303 00:00:00.000 UDP 28.104.0.1:55064 -> 198.28.0.2:53 1 64 1 2025-10-17 09:32:52.536 00:05:50.908 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:38:11.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42248 1 109 1 2025-10-17 09:38:11.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37546 1 80 1 2025-10-17 09:38:11.563 00:00:00.000 UDP 28.104.0.1:37546 -> 198.28.0.2:53 1 64 1 2025-10-17 09:38:11.564 00:00:00.000 UDP 28.104.0.1:42248 -> 198.28.0.2:53 1 64 1 2025-10-17 09:34:10.284 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2960 1 2025-10-17 09:33:52.610 00:05:50.845 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:38:51.385 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:33:52.458 00:06:00.155 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:39:11.861 00:00:00.000 UDP 28.104.0.1:47638 -> 198.28.0.2:53 1 64 1 2025-10-17 09:39:11.861 00:00:00.000 UDP 28.104.0.1:36699 -> 198.28.0.2:53 1 64 1 2025-10-17 09:39:11.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47638 1 80 1 2025-10-17 09:39:11.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36699 1 109 1 2025-10-17 09:40:12.187 00:00:00.000 UDP 28.104.0.1:53460 -> 198.28.0.2:53 1 64 1 2025-10-17 09:40:12.187 00:00:00.000 UDP 28.104.0.1:39403 -> 198.28.0.2:53 1 64 1 2025-10-17 09:40:12.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39403 1 109 1 2025-10-17 09:40:12.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53460 1 80 1 2025-10-17 09:35:52.610 00:06:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:41:12.480 00:00:00.000 UDP 28.104.0.1:54554 -> 198.28.0.2:53 1 64 1 2025-10-17 09:41:12.480 00:00:00.000 UDP 28.104.0.1:40711 -> 198.28.0.2:53 1 64 1 2025-10-17 09:41:12.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54554 1 80 1 2025-10-17 09:41:12.490 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40711 1 109 1 2025-10-17 09:36:52.527 00:05:50.970 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:42:12.739 00:00:00.000 UDP 28.104.0.1:52497 -> 198.28.0.2:53 1 64 1 2025-10-17 09:42:12.739 00:00:00.000 UDP 28.104.0.1:38813 -> 198.28.0.2:53 1 64 1 2025-10-17 09:42:12.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52497 1 109 1 2025-10-17 09:42:12.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38813 1 80 1 2025-10-17 09:38:43.443 00:05:09.179 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:43:12.993 00:00:00.000 UDP 28.104.0.1:44632 -> 198.28.0.2:53 1 64 1 2025-10-17 09:43:12.993 00:00:00.000 UDP 28.104.0.1:47872 -> 198.28.0.2:53 1 64 1 2025-10-17 09:43:13.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47872 1 109 1 2025-10-17 09:43:13.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44632 1 80 1 2025-10-17 09:39:30.291 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-10-17 09:38:52.536 00:05:50.909 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:43:51.473 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:44:13.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45480 1 109 1 2025-10-17 09:44:13.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56251 1 80 1 2025-10-17 09:44:13.673 00:00:00.000 UDP 28.104.0.1:56251 -> 198.28.0.2:53 1 64 1 2025-10-17 09:44:13.673 00:00:00.000 UDP 28.104.0.1:45480 -> 198.28.0.2:53 1 64 1 2025-10-17 09:39:52.614 00:05:50.843 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:45:14.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45607 1 80 1 2025-10-17 09:45:14.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35471 1 109 1 2025-10-17 09:45:14.176 00:00:00.000 UDP 28.104.0.1:35471 -> 198.28.0.2:53 1 64 1 2025-10-17 09:45:14.176 00:00:00.000 UDP 28.104.0.1:45607 -> 198.28.0.2:53 1 64 1 2025-10-17 09:40:52.458 00:06:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:46:14.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53537 1 80 1 2025-10-17 09:46:14.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46140 1 109 1 2025-10-17 09:46:14.432 00:00:00.000 UDP 28.104.0.1:46140 -> 198.28.0.2:53 1 64 1 2025-10-17 09:46:14.432 00:00:00.000 UDP 28.104.0.1:53537 -> 198.28.0.2:53 1 64 1 2025-10-17 09:47:14.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39325 1 80 1 2025-10-17 09:47:14.739 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42189 1 109 1 2025-10-17 09:47:14.729 00:00:00.000 UDP 28.104.0.1:39325 -> 198.28.0.2:53 1 64 1 2025-10-17 09:47:14.729 00:00:00.000 UDP 28.104.0.1:42189 -> 198.28.0.2:53 1 64 1 2025-10-17 09:42:52.529 00:05:50.968 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:42:52.614 00:06:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:48:15.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33787 1 109 1 2025-10-17 09:48:15.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45551 1 80 1 2025-10-17 09:48:15.070 00:00:00.000 UDP 28.104.0.1:45551 -> 198.28.0.2:53 1 64 1 2025-10-17 09:48:15.070 00:00:00.000 UDP 28.104.0.1:33787 -> 198.28.0.2:53 1 64 1 2025-10-17 09:48:51.574 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:44:43.445 00:05:09.180 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:44:50.294 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2812 1 2025-10-17 09:49:15.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45812 1 109 1 2025-10-17 09:49:15.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54503 1 80 1 2025-10-17 09:49:15.378 00:00:00.000 UDP 28.104.0.1:54503 -> 198.28.0.2:53 1 64 1 2025-10-17 09:49:15.378 00:00:00.000 UDP 28.104.0.1:45812 -> 198.28.0.2:53 1 64 1 2025-10-17 09:44:52.538 00:05:50.910 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:50:15.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54941 1 109 1 2025-10-17 09:50:15.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38203 1 80 1 2025-10-17 09:50:15.641 00:00:00.000 UDP 28.104.0.1:38203 -> 198.28.0.2:53 1 64 1 2025-10-17 09:50:15.640 00:00:00.000 UDP 28.104.0.1:54941 -> 198.28.0.2:53 1 64 1 2025-10-17 09:45:52.615 00:05:50.845 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:51:15.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36538 1 109 1 2025-10-17 09:51:15.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41791 1 80 1 2025-10-17 09:51:15.899 00:00:00.000 UDP 28.104.0.1:36538 -> 198.28.0.2:53 1 64 1 2025-10-17 09:51:15.899 00:00:00.000 UDP 28.104.0.1:41791 -> 198.28.0.2:53 1 64 1 2025-10-17 09:52:16.162 00:00:00.000 UDP 28.104.0.1:48601 -> 198.28.0.2:53 1 64 1 2025-10-17 09:52:16.163 00:00:00.000 UDP 28.104.0.1:45384 -> 198.28.0.2:53 1 64 1 2025-10-17 09:52:16.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45384 1 80 1 2025-10-17 09:52:16.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48601 1 109 1 2025-10-17 09:47:52.460 00:06:00.156 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-17 09:53:16.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34721 1 80 1 2025-10-17 09:53:16.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60173 1 109 1 2025-10-17 09:53:16.413 00:00:00.000 UDP 28.104.0.1:34721 -> 198.28.0.2:53 1 64 1 2025-10-17 09:53:16.413 00:00:00.000 UDP 28.104.0.1:60173 -> 198.28.0.2:53 1 64 1 2025-10-17 09:48:52.530 00:05:50.969 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-17 09:53:52.506 00:00:00.026 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-17 09:54:16.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57393 1 80 1 2025-10-17 09:54:16.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53944 1 109 1 2025-10-17 09:54:16.710 00:00:00.000 UDP 28.104.0.1:53944 -> 198.28.0.2:53 1 64 1 2025-10-17 09:54:16.710 00:00:00.000 UDP 28.104.0.1:57393 -> 198.28.0.2:53 1 64 1 2025-10-17 09:50:10.300 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2628 1 2025-10-17 09:50:43.447 00:05:09.178 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-17 09:49:52.616 00:06:00.086 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-17 09:55:17.749 00:00:00.000 UDP 28.104.0.1:40217 -> 198.28.0.2:53 1 64 1 2025-10-17 09:55:17.749 00:00:00.000 UDP 28.104.0.1:47106 -> 198.28.0.2:53 1 64 1 2025-10-17 09:55:17.760 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47106 1 109 1 2025-10-17 09:55:17.761 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40217 1 80 1 2025-10-17 09:50:52.541 00:05:50.909 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-17 09:56:18.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51746 1 109 1 2025-10-17 09:56:18.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42977 1 80 1 2025-10-17 09:56:18.062 00:00:00.000 UDP 28.104.0.1:42977 -> 198.28.0.2:53 1 64 1 2025-10-17 09:56:18.062 00:00:00.000 UDP 28.104.0.1:51746 -> 198.28.0.2:53 1 64 1 2025-10-17 09:51:52.616 00:05:50.845 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-17 09:57:18.355 00:00:00.000 UDP 28.104.0.1:35324 -> 198.28.0.2:53 1 64 1 2025-10-17 09:57:18.355 00:00:00.000 UDP 28.104.0.1:59989 -> 198.28.0.2:53 1 64 1 2025-10-17 09:57:18.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35324 1 80 1 2025-10-17 09:57:18.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59989 1 109 1 2025-10-17 09:58:18.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44791 1 109 1 2025-10-17 09:58:18.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57069 1 80 1 2025-10-17 09:58:18.610 00:00:00.000 UDP 28.104.0.1:57069 -> 198.28.0.2:53 1 64 1 2025-10-17 09:58:18.610 00:00:00.000 UDP 28.104.0.1:44791 -> 198.28.0.2:53 1 64 1 2025-10-17 09:58:51.669 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 Summary: total flows: 320, total bytes: 96193, total packets: 1419, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-10-17 08:53:52 - 2025-10-17 09:58:51 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0060s User: 0.0010s Wall: 0.0037s flows/second: 85380.2 Runtime: 0.0038s