Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 03:54:52.669 00:05:08.487 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 03:59:06.402 00:00:00.000 UDP 28.104.0.1:60618 -> 198.28.0.2:53 1 64 1 2025-11-04 03:59:06.402 00:00:00.000 UDP 28.104.0.1:50682 -> 198.28.0.2:53 1 64 1 2025-11-04 03:59:06.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50682 1 109 1 2025-11-04 03:59:06.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60618 1 80 1 2025-11-04 04:00:06.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48592 1 109 1 2025-11-04 04:00:06.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34528 1 80 1 2025-11-04 04:00:06.709 00:00:00.000 UDP 28.104.0.1:48592 -> 198.28.0.2:53 1 64 1 2025-11-04 04:00:06.709 00:00:00.000 UDP 28.104.0.1:34528 -> 198.28.0.2:53 1 64 1 2025-11-04 03:56:52.618 00:05:08.491 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:01:07.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47553 1 109 1 2025-11-04 04:01:07.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52337 1 80 1 2025-11-04 04:01:07.121 00:00:00.000 UDP 28.104.0.1:47553 -> 198.28.0.2:53 1 64 1 2025-11-04 04:01:07.121 00:00:00.000 UDP 28.104.0.1:52337 -> 198.28.0.2:53 1 64 1 2025-11-04 04:02:07.392 00:00:00.000 UDP 28.104.0.1:43420 -> 198.28.0.2:53 1 64 1 2025-11-04 04:02:07.393 00:00:00.000 UDP 28.104.0.1:56084 -> 198.28.0.2:53 1 64 1 2025-11-04 04:02:07.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56084 1 80 1 2025-11-04 04:02:07.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43420 1 109 1 2025-11-04 03:58:05.978 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2972 1 2025-11-04 04:02:24.564 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 03:59:01.103 00:04:00.133 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 03:59:01.103 00:04:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 03:58:52.618 00:05:08.550 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:03:07.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35338 1 109 1 2025-11-04 04:03:07.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48898 1 80 1 2025-11-04 04:03:07.706 00:00:00.000 UDP 28.104.0.1:35338 -> 198.28.0.2:53 1 64 1 2025-11-04 04:03:07.706 00:00:00.000 UDP 28.104.0.1:48898 -> 198.28.0.2:53 1 64 1 2025-11-04 03:59:52.629 00:05:08.470 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:04:08.038 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40451 1 109 1 2025-11-04 04:04:08.036 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45367 1 80 1 2025-11-04 04:04:08.024 00:00:00.000 UDP 28.104.0.1:45367 -> 198.28.0.2:53 1 64 1 2025-11-04 04:04:08.024 00:00:00.000 UDP 28.104.0.1:40451 -> 198.28.0.2:53 1 64 1 2025-11-04 04:00:52.673 00:05:08.486 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:05:08.327 00:00:00.000 UDP 28.104.0.1:38450 -> 198.28.0.2:53 1 64 1 2025-11-04 04:05:08.327 00:00:00.000 UDP 28.104.0.1:56982 -> 198.28.0.2:53 1 64 1 2025-11-04 04:05:08.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56982 1 80 1 2025-11-04 04:05:08.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38450 1 109 1 2025-11-04 04:06:08.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46897 1 80 1 2025-11-04 04:06:08.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35074 1 109 1 2025-11-04 04:06:08.629 00:00:00.000 UDP 28.104.0.1:46897 -> 198.28.0.2:53 1 64 1 2025-11-04 04:06:08.629 00:00:00.000 UDP 28.104.0.1:35074 -> 198.28.0.2:53 1 64 1 2025-11-04 04:02:52.620 00:05:08.491 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:07:08.937 00:00:00.000 UDP 28.104.0.1:52039 -> 198.28.0.2:53 1 64 1 2025-11-04 04:07:08.937 00:00:00.000 UDP 28.104.0.1:38770 -> 198.28.0.2:53 1 64 1 2025-11-04 04:07:08.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52039 1 80 1 2025-11-04 04:07:08.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38770 1 109 1 2025-11-04 04:07:24.935 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:03:25.986 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2800 1 2025-11-04 04:08:09.241 00:00:00.000 UDP 28.104.0.1:44326 -> 198.28.0.2:53 1 64 1 2025-11-04 04:08:09.241 00:00:00.000 UDP 28.104.0.1:45154 -> 198.28.0.2:53 1 64 1 2025-11-04 04:08:09.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44326 1 80 1 2025-11-04 04:08:09.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45154 1 109 1 2025-11-04 04:04:01.099 00:06:00.138 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 04:04:01.099 00:06:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 04:04:52.619 00:05:08.550 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:09:09.494 00:00:00.000 UDP 28.104.0.1:49891 -> 198.28.0.2:53 1 64 1 2025-11-04 04:09:09.494 00:00:00.000 UDP 28.104.0.1:35140 -> 198.28.0.2:53 1 64 1 2025-11-04 04:09:09.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49891 1 109 1 2025-11-04 04:09:09.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35140 1 80 1 2025-11-04 04:05:52.629 00:05:08.471 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:10:09.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40512 1 80 1 2025-11-04 04:10:09.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35225 1 109 1 2025-11-04 04:10:09.799 00:00:00.000 UDP 28.104.0.1:40512 -> 198.28.0.2:53 1 64 1 2025-11-04 04:10:09.798 00:00:00.000 UDP 28.104.0.1:35225 -> 198.28.0.2:53 1 64 1 2025-11-04 04:06:52.670 00:05:08.490 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:11:10.098 00:00:00.000 UDP 28.104.0.1:53820 -> 198.28.0.2:53 1 64 1 2025-11-04 04:11:10.098 00:00:00.000 UDP 28.104.0.1:50318 -> 198.28.0.2:53 1 64 1 2025-11-04 04:11:10.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50318 1 109 1 2025-11-04 04:11:10.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53820 1 80 1 2025-11-04 04:12:10.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53048 1 109 1 2025-11-04 04:12:10.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42972 1 80 1 2025-11-04 04:12:10.393 00:00:00.000 UDP 28.104.0.1:42972 -> 198.28.0.2:53 1 64 1 2025-11-04 04:12:10.393 00:00:00.000 UDP 28.104.0.1:53048 -> 198.28.0.2:53 1 64 1 2025-11-04 04:12:25.004 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:08:45.990 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2972 1 2025-11-04 04:08:52.620 00:05:08.491 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:13:10.691 00:00:00.000 UDP 28.104.0.1:38582 -> 198.28.0.2:53 1 64 1 2025-11-04 04:13:10.691 00:00:00.000 UDP 28.104.0.1:60536 -> 198.28.0.2:53 1 64 1 2025-11-04 04:13:10.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60536 1 80 1 2025-11-04 04:13:10.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38582 1 109 1 2025-11-04 04:14:10.984 00:00:00.000 UDP 28.104.0.1:53439 -> 198.28.0.2:53 1 64 1 2025-11-04 04:14:10.984 00:00:00.000 UDP 28.104.0.1:57401 -> 198.28.0.2:53 1 64 1 2025-11-04 04:14:10.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53439 1 80 1 2025-11-04 04:14:10.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57401 1 109 1 2025-11-04 04:10:52.624 00:05:08.547 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:15:11.300 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51786 1 109 1 2025-11-04 04:15:11.300 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54560 1 80 1 2025-11-04 04:15:11.289 00:00:00.000 UDP 28.104.0.1:51786 -> 198.28.0.2:53 1 64 1 2025-11-04 04:15:11.289 00:00:00.000 UDP 28.104.0.1:54560 -> 198.28.0.2:53 1 64 1 2025-11-04 04:11:01.100 00:06:00.139 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 04:11:52.634 00:05:08.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:11:01.100 00:06:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 04:16:11.597 00:00:00.000 UDP 28.104.0.1:42452 -> 198.28.0.2:53 1 64 1 2025-11-04 04:16:11.597 00:00:00.000 UDP 28.104.0.1:34617 -> 198.28.0.2:53 1 64 1 2025-11-04 04:16:11.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42452 1 80 1 2025-11-04 04:16:11.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34617 1 109 1 2025-11-04 04:12:52.675 00:05:08.486 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:17:11.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53841 1 109 1 2025-11-04 04:17:11.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42792 1 80 1 2025-11-04 04:17:11.898 00:00:00.000 UDP 28.104.0.1:53841 -> 198.28.0.2:53 1 64 1 2025-11-04 04:17:11.898 00:00:00.000 UDP 28.104.0.1:42792 -> 198.28.0.2:53 1 64 1 2025-11-04 04:17:25.416 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:14:05.994 00:05:00.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2604 1 2025-11-04 04:18:12.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54807 1 109 1 2025-11-04 04:18:12.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48798 1 80 1 2025-11-04 04:18:12.212 00:00:00.000 UDP 28.104.0.1:48798 -> 198.28.0.2:53 1 64 1 2025-11-04 04:18:12.212 00:00:00.000 UDP 28.104.0.1:54807 -> 198.28.0.2:53 1 64 1 2025-11-04 04:14:52.626 00:05:08.487 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:19:12.527 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44766 1 109 1 2025-11-04 04:19:12.527 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37030 1 80 1 2025-11-04 04:19:12.517 00:00:00.000 UDP 28.104.0.1:37030 -> 198.28.0.2:53 1 64 1 2025-11-04 04:19:12.516 00:00:00.000 UDP 28.104.0.1:44766 -> 198.28.0.2:53 1 64 1 2025-11-04 04:18:01.102 00:02:00.138 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 04:18:01.102 00:02:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 04:20:24.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38320 1 80 1 2025-11-04 04:20:24.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43011 1 109 1 2025-11-04 04:20:24.290 00:00:00.000 UDP 28.104.0.1:38320 -> 198.28.0.2:53 1 64 1 2025-11-04 04:20:24.290 00:00:00.000 UDP 28.104.0.1:43011 -> 198.28.0.2:53 1 64 1 2025-11-04 04:16:52.629 00:05:08.557 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:21:24.579 00:00:00.000 UDP 28.104.0.1:55293 -> 198.28.0.2:53 1 64 1 2025-11-04 04:21:24.579 00:00:00.000 UDP 28.104.0.1:48663 -> 198.28.0.2:53 1 64 1 2025-11-04 04:21:24.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55293 1 109 1 2025-11-04 04:21:24.591 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48663 1 80 1 2025-11-04 04:17:52.636 00:05:08.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:22:24.884 00:00:00.000 UDP 28.104.0.1:38002 -> 198.28.0.2:53 1 64 1 2025-11-04 04:22:24.883 00:00:00.000 UDP 28.104.0.1:44225 -> 198.28.0.2:53 1 64 1 2025-11-04 04:22:25.175 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:22:24.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44225 1 80 1 2025-11-04 04:22:24.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38002 1 109 1 2025-11-04 04:18:52.677 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:23:25.199 00:00:00.000 UDP 28.104.0.1:37455 -> 198.28.0.2:53 1 64 1 2025-11-04 04:23:25.198 00:00:00.000 UDP 28.104.0.1:36717 -> 198.28.0.2:53 1 64 1 2025-11-04 04:19:16.004 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-04 04:23:25.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37455 1 109 1 2025-11-04 04:23:25.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36717 1 80 1 2025-11-04 04:24:25.495 00:00:00.000 UDP 28.104.0.1:53849 -> 198.28.0.2:53 1 64 1 2025-11-04 04:24:25.495 00:00:00.000 UDP 28.104.0.1:48184 -> 198.28.0.2:53 1 64 1 2025-11-04 04:24:25.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53849 1 109 1 2025-11-04 04:24:25.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48184 1 80 1 2025-11-04 04:21:01.103 00:04:00.140 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 04:21:01.103 00:04:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 04:20:52.626 00:05:08.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:25:25.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39495 1 109 1 2025-11-04 04:25:25.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37560 1 80 1 2025-11-04 04:25:25.802 00:00:00.000 UDP 28.104.0.1:39495 -> 198.28.0.2:53 1 64 1 2025-11-04 04:25:25.802 00:00:00.000 UDP 28.104.0.1:37560 -> 198.28.0.2:53 1 64 1 2025-11-04 04:26:26.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59121 1 80 1 2025-11-04 04:26:26.122 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60991 1 109 1 2025-11-04 04:26:26.111 00:00:00.000 UDP 28.104.0.1:60991 -> 198.28.0.2:53 1 64 1 2025-11-04 04:26:26.110 00:00:00.000 UDP 28.104.0.1:59121 -> 198.28.0.2:53 1 64 1 2025-11-04 04:22:52.627 00:05:08.558 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:27:26.486 00:00:00.000 UDP 28.104.0.1:50566 -> 198.28.0.2:53 1 64 1 2025-11-04 04:27:26.486 00:00:00.000 UDP 28.104.0.1:44839 -> 198.28.0.2:53 1 64 1 2025-11-04 04:27:25.357 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:27:26.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44839 1 109 1 2025-11-04 04:27:26.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50566 1 80 1 2025-11-04 04:23:52.637 00:05:08.467 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:28:26.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54504 1 80 1 2025-11-04 04:28:26.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51466 1 109 1 2025-11-04 04:28:26.791 00:00:00.000 UDP 28.104.0.1:51466 -> 198.28.0.2:53 1 64 1 2025-11-04 04:28:26.792 00:00:00.000 UDP 28.104.0.1:54504 -> 198.28.0.2:53 1 64 1 2025-11-04 04:24:36.010 00:05:10.037 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-04 04:24:52.677 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:29:27.058 00:00:00.000 UDP 28.104.0.1:40025 -> 198.28.0.2:53 1 64 1 2025-11-04 04:29:27.058 00:00:00.000 UDP 28.104.0.1:59158 -> 198.28.0.2:53 1 64 1 2025-11-04 04:29:27.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59158 1 109 1 2025-11-04 04:29:27.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40025 1 80 1 2025-11-04 04:26:01.105 00:04:00.141 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 04:26:01.105 00:04:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 04:30:27.371 00:00:00.000 UDP 28.104.0.1:38159 -> 198.28.0.2:53 1 64 1 2025-11-04 04:30:27.370 00:00:00.000 UDP 28.104.0.1:53792 -> 198.28.0.2:53 1 64 1 2025-11-04 04:30:27.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38159 1 109 1 2025-11-04 04:30:27.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53792 1 80 1 2025-11-04 04:26:52.628 00:05:08.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:31:27.659 00:00:00.000 UDP 28.104.0.1:45460 -> 198.28.0.2:53 1 64 1 2025-11-04 04:31:27.659 00:00:00.000 UDP 28.104.0.1:34890 -> 198.28.0.2:53 1 64 1 2025-11-04 04:31:27.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45460 1 109 1 2025-11-04 04:31:27.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34890 1 80 1 2025-11-04 04:32:25.402 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:32:27.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54357 1 80 1 2025-11-04 04:32:27.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55886 1 109 1 2025-11-04 04:32:27.958 00:00:00.000 UDP 28.104.0.1:55886 -> 198.28.0.2:53 1 64 1 2025-11-04 04:32:27.958 00:00:00.000 UDP 28.104.0.1:54357 -> 198.28.0.2:53 1 64 1 2025-11-04 04:28:52.627 00:05:08.559 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:33:28.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56349 1 80 1 2025-11-04 04:33:28.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47304 1 109 1 2025-11-04 04:33:28.256 00:00:00.000 UDP 28.104.0.1:47304 -> 198.28.0.2:53 1 64 1 2025-11-04 04:33:28.256 00:00:00.000 UDP 28.104.0.1:56349 -> 198.28.0.2:53 1 64 1 2025-11-04 04:29:52.638 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:29:56.047 00:05:10.889 OSPF 28.0.2.1:0 -> 224.0.0.5:0 48 3580 1 2025-11-04 04:34:28.548 00:00:00.000 UDP 28.104.0.1:33039 -> 198.28.0.2:53 1 64 1 2025-11-04 04:34:28.548 00:00:00.000 UDP 28.104.0.1:47837 -> 198.28.0.2:53 1 64 1 2025-11-04 04:34:28.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47837 1 80 1 2025-11-04 04:34:28.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33039 1 109 1 2025-11-04 04:31:01.106 00:04:00.140 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 04:31:01.106 00:04:00.100 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 04:30:52.678 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:35:28.799 00:00:00.000 UDP 28.104.0.1:51466 -> 198.28.0.2:53 1 64 1 2025-11-04 04:35:28.799 00:00:00.000 UDP 28.104.0.1:51419 -> 198.28.0.2:53 1 64 1 2025-11-04 04:35:28.809 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51466 1 80 1 2025-11-04 04:35:28.809 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51419 1 109 1 2025-11-04 04:36:32.377 00:00:00.000 UDP 28.104.0.1:59003 -> 198.28.0.2:53 1 64 1 2025-11-04 04:36:32.377 00:00:00.000 UDP 28.104.0.1:33514 -> 198.28.0.2:53 1 64 1 2025-11-04 04:36:32.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33514 1 109 1 2025-11-04 04:36:32.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59003 1 80 1 2025-11-04 04:32:52.629 00:05:08.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:37:25.473 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:37:32.732 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57041 1 109 1 2025-11-04 04:37:32.732 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40800 1 80 1 2025-11-04 04:37:32.721 00:00:00.000 UDP 28.104.0.1:57041 -> 198.28.0.2:53 1 64 1 2025-11-04 04:37:32.721 00:00:00.000 UDP 28.104.0.1:40800 -> 198.28.0.2:53 1 64 1 2025-11-04 04:38:33.041 00:00:00.000 UDP 28.104.0.1:41966 -> 198.28.0.2:53 1 64 1 2025-11-04 04:38:33.041 00:00:00.000 UDP 28.104.0.1:41191 -> 198.28.0.2:53 1 64 1 2025-11-04 04:38:33.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41191 1 80 1 2025-11-04 04:38:33.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41966 1 109 1 2025-11-04 04:34:52.629 00:05:08.566 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:35:16.061 00:05:00.945 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2760 1 2025-11-04 04:39:33.335 00:00:00.000 UDP 28.104.0.1:39043 -> 198.28.0.2:53 1 64 1 2025-11-04 04:39:33.334 00:00:00.000 UDP 28.104.0.1:35719 -> 198.28.0.2:53 1 64 1 2025-11-04 04:39:33.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39043 1 80 1 2025-11-04 04:39:33.344 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35719 1 109 1 2025-11-04 04:35:52.638 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:40:33.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58500 1 109 1 2025-11-04 04:40:33.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34901 1 80 1 2025-11-04 04:40:33.586 00:00:00.000 UDP 28.104.0.1:58500 -> 198.28.0.2:53 1 64 1 2025-11-04 04:40:33.586 00:00:00.000 UDP 28.104.0.1:34901 -> 198.28.0.2:53 1 64 1 2025-11-04 04:36:52.679 00:05:08.500 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:36:01.107 00:06:00.140 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 04:36:01.107 00:06:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 04:41:33.892 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52085 1 80 1 2025-11-04 04:41:33.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45733 1 109 1 2025-11-04 04:41:33.882 00:00:00.000 UDP 28.104.0.1:45733 -> 198.28.0.2:53 1 64 1 2025-11-04 04:41:33.882 00:00:00.000 UDP 28.104.0.1:52085 -> 198.28.0.2:53 1 64 1 2025-11-04 04:42:25.512 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:42:34.189 00:00:00.000 UDP 28.104.0.1:32859 -> 198.28.0.2:53 1 64 1 2025-11-04 04:42:34.189 00:00:00.000 UDP 28.104.0.1:58582 -> 198.28.0.2:53 1 64 1 2025-11-04 04:42:34.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58582 1 80 1 2025-11-04 04:42:34.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32859 1 109 1 2025-11-04 04:38:52.629 00:05:08.489 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:43:34.481 00:00:00.000 UDP 28.104.0.1:32924 -> 198.28.0.2:53 1 64 1 2025-11-04 04:43:34.481 00:00:00.000 UDP 28.104.0.1:50874 -> 198.28.0.2:53 1 64 1 2025-11-04 04:43:34.491 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32924 1 109 1 2025-11-04 04:43:34.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50874 1 80 1 2025-11-04 04:44:34.779 00:00:00.000 UDP 28.104.0.1:54540 -> 198.28.0.2:53 1 64 1 2025-11-04 04:44:34.779 00:00:00.000 UDP 28.104.0.1:47834 -> 198.28.0.2:53 1 64 1 2025-11-04 04:40:26.064 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2788 1 2025-11-04 04:44:34.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47834 1 80 1 2025-11-04 04:44:34.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54540 1 109 1 2025-11-04 04:40:52.629 00:05:08.559 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:45:35.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44638 1 80 1 2025-11-04 04:45:35.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57490 1 109 1 2025-11-04 04:45:35.096 00:00:00.000 UDP 28.104.0.1:57490 -> 198.28.0.2:53 1 64 1 2025-11-04 04:45:35.096 00:00:00.000 UDP 28.104.0.1:44638 -> 198.28.0.2:53 1 64 1 2025-11-04 04:41:52.640 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:46:35.535 00:00:00.000 UDP 28.104.0.1:37376 -> 198.28.0.2:53 1 64 1 2025-11-04 04:46:35.535 00:00:00.000 UDP 28.104.0.1:58599 -> 198.28.0.2:53 1 64 1 2025-11-04 04:46:35.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58599 1 109 1 2025-11-04 04:46:35.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37376 1 80 1 2025-11-04 04:42:52.679 00:05:08.500 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:47:25.863 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:47:35.832 00:00:00.000 UDP 28.104.0.1:45353 -> 198.28.0.2:53 1 64 1 2025-11-04 04:47:35.832 00:00:00.000 UDP 28.104.0.1:36110 -> 198.28.0.2:53 1 64 1 2025-11-04 04:47:35.841 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36110 1 109 1 2025-11-04 04:47:35.842 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45353 1 80 1 2025-11-04 04:43:01.108 00:06:00.141 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-04 04:43:01.108 00:06:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-04 04:48:36.126 00:00:00.000 UDP 28.104.0.1:45556 -> 198.28.0.2:53 1 64 1 2025-11-04 04:48:36.126 00:00:00.000 UDP 28.104.0.1:34686 -> 198.28.0.2:53 1 64 1 2025-11-04 04:48:36.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34686 1 109 1 2025-11-04 04:48:36.137 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45556 1 80 1 2025-11-04 04:44:52.631 00:05:08.488 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:49:36.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46941 1 80 1 2025-11-04 04:49:36.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42385 1 109 1 2025-11-04 04:49:36.420 00:00:00.000 UDP 28.104.0.1:46941 -> 198.28.0.2:53 1 64 1 2025-11-04 04:49:36.421 00:00:00.000 UDP 28.104.0.1:42385 -> 198.28.0.2:53 1 64 1 2025-11-04 04:45:46.069 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2464 1 2025-11-04 04:50:36.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53303 1 80 1 2025-11-04 04:50:36.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46185 1 109 1 2025-11-04 04:50:36.712 00:00:00.000 UDP 28.104.0.1:53303 -> 198.28.0.2:53 1 64 1 2025-11-04 04:50:36.712 00:00:00.000 UDP 28.104.0.1:46185 -> 198.28.0.2:53 1 64 1 2025-11-04 04:46:52.631 00:05:08.559 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:51:37.010 00:00:00.000 UDP 28.104.0.1:39535 -> 198.28.0.2:53 1 64 1 2025-11-04 04:51:37.009 00:00:00.000 UDP 28.104.0.1:40349 -> 198.28.0.2:53 1 64 1 2025-11-04 04:51:37.024 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39535 1 80 1 2025-11-04 04:51:37.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40349 1 109 1 2025-11-04 04:50:01.110 00:02:00.140 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 04:50:01.110 00:02:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 04:47:52.641 00:05:08.468 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:52:25.703 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:52:37.306 00:00:00.000 UDP 28.104.0.1:46996 -> 198.28.0.2:53 1 64 1 2025-11-04 04:52:37.306 00:00:00.000 UDP 28.104.0.1:54731 -> 198.28.0.2:53 1 64 1 2025-11-04 04:52:37.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46996 1 109 1 2025-11-04 04:52:37.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54731 1 80 1 2025-11-04 04:48:52.682 00:05:08.499 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 04:53:37.592 00:00:00.000 UDP 28.104.0.1:34686 -> 198.28.0.2:53 1 64 1 2025-11-04 04:53:37.592 00:00:00.000 UDP 28.104.0.1:40386 -> 198.28.0.2:53 1 64 1 2025-11-04 04:53:37.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40386 1 109 1 2025-11-04 04:53:37.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34686 1 80 1 2025-11-04 04:54:37.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47393 1 109 1 2025-11-04 04:54:37.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43693 1 80 1 2025-11-04 04:54:37.842 00:00:00.000 UDP 28.104.0.1:47393 -> 198.28.0.2:53 1 64 1 2025-11-04 04:54:37.842 00:00:00.000 UDP 28.104.0.1:43693 -> 198.28.0.2:53 1 64 1 2025-11-04 04:50:52.631 00:05:08.490 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 04:51:06.073 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 04:55:38.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56715 1 80 1 2025-11-04 04:55:38.148 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55206 1 109 1 2025-11-04 04:55:38.136 00:00:00.000 UDP 28.104.0.1:56715 -> 198.28.0.2:53 1 64 1 2025-11-04 04:55:38.136 00:00:00.000 UDP 28.104.0.1:55206 -> 198.28.0.2:53 1 64 1 2025-11-04 04:56:38.427 00:00:00.000 UDP 28.104.0.1:35834 -> 198.28.0.2:53 1 64 1 2025-11-04 04:56:38.427 00:00:00.000 UDP 28.104.0.1:37054 -> 198.28.0.2:53 1 64 1 2025-11-04 04:56:38.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35834 1 109 1 2025-11-04 04:56:38.439 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37054 1 80 1 2025-11-04 04:53:01.109 00:04:00.141 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 04:53:01.109 00:04:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 04:52:52.632 00:05:08.559 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 04:57:25.957 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 04:57:38.716 00:00:00.000 UDP 28.104.0.1:39693 -> 198.28.0.2:53 1 64 1 2025-11-04 04:57:38.716 00:00:00.000 UDP 28.104.0.1:45087 -> 198.28.0.2:53 1 64 1 2025-11-04 04:57:38.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39693 1 80 1 2025-11-04 04:57:38.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45087 1 109 1 2025-11-04 04:53:52.642 00:05:08.469 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 04:58:39.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36882 1 109 1 2025-11-04 04:58:39.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39279 1 80 1 2025-11-04 04:58:39.007 00:00:00.000 UDP 28.104.0.1:36882 -> 198.28.0.2:53 1 64 1 2025-11-04 04:58:39.007 00:00:00.000 UDP 28.104.0.1:39279 -> 198.28.0.2:53 1 64 1 Summary: total flows: 325, total bytes: 96106, total packets: 1417, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-04 03:54:52 - 2025-11-04 04:59:01 Total flows processed: 325, passed: 325, Blocks skipped: 0, Bytes read: 33864 Sys: 0.0040s User: 0.0020s Wall: 0.0034s flows/second: 94722.3 Runtime: 0.0035s