Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 11:54:52.801 00:05:08.532 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 11:59:02.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41570 1 80 1 2025-11-04 11:59:02.100 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55465 1 109 1 2025-11-04 11:59:02.090 00:00:00.000 UDP 28.104.0.1:41570 -> 198.28.0.2:53 1 64 1 2025-11-04 11:59:02.090 00:00:00.000 UDP 28.104.0.1:55465 -> 198.28.0.2:53 1 64 1 2025-11-04 12:00:02.384 00:00:00.000 UDP 28.104.0.1:51358 -> 198.28.0.2:53 1 64 1 2025-11-04 12:00:02.384 00:00:00.000 UDP 28.104.0.1:60797 -> 198.28.0.2:53 1 64 1 2025-11-04 12:00:02.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51358 1 80 1 2025-11-04 12:00:02.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60797 1 109 1 2025-11-04 11:56:36.600 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 11:56:52.752 00:05:08.509 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:01:02.677 00:00:00.000 UDP 28.104.0.1:42816 -> 198.28.0.2:53 1 64 1 2025-11-04 12:01:02.677 00:00:00.000 UDP 28.104.0.1:50245 -> 198.28.0.2:53 1 64 1 2025-11-04 12:01:02.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50245 1 80 1 2025-11-04 12:01:02.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42816 1 109 1 2025-11-04 12:02:02.986 00:00:00.000 UDP 28.104.0.1:46422 -> 198.28.0.2:53 1 64 1 2025-11-04 12:02:02.986 00:00:00.000 UDP 28.104.0.1:49882 -> 198.28.0.2:53 1 64 1 2025-11-04 12:02:02.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46422 1 80 1 2025-11-04 12:02:02.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49882 1 109 1 2025-11-04 12:02:34.442 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 11:59:01.252 00:04:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 11:59:01.252 00:04:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:03:03.281 00:00:00.000 UDP 28.104.0.1:48570 -> 198.28.0.2:53 1 64 1 2025-11-04 12:03:03.281 00:00:00.000 UDP 28.104.0.1:34150 -> 198.28.0.2:53 1 64 1 2025-11-04 11:58:52.753 00:05:08.591 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:03:03.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34150 1 80 1 2025-11-04 12:03:03.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48570 1 109 1 2025-11-04 11:59:52.763 00:05:08.489 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:04:03.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43167 1 109 1 2025-11-04 12:04:03.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53207 1 80 1 2025-11-04 12:04:03.575 00:00:00.000 UDP 28.104.0.1:43167 -> 198.28.0.2:53 1 64 1 2025-11-04 12:04:03.575 00:00:00.000 UDP 28.104.0.1:53207 -> 198.28.0.2:53 1 64 1 2025-11-04 12:04:01.254 00:01:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 12:04:01.254 00:01:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 12:05:03.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35485 1 109 1 2025-11-04 12:05:03.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40764 1 80 1 2025-11-04 12:05:03.935 00:00:00.000 UDP 28.104.0.1:40764 -> 198.28.0.2:53 1 64 1 2025-11-04 12:00:52.804 00:05:08.532 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:05:03.936 00:00:00.000 UDP 28.104.0.1:35485 -> 198.28.0.2:53 1 64 1 2025-11-04 12:06:04.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41216 1 109 1 2025-11-04 12:06:04.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57558 1 80 1 2025-11-04 12:06:04.264 00:00:00.000 UDP 28.104.0.1:41216 -> 198.28.0.2:53 1 64 1 2025-11-04 12:06:04.264 00:00:00.000 UDP 28.104.0.1:57558 -> 198.28.0.2:53 1 64 1 2025-11-04 12:01:56.608 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-04 12:02:52.754 00:05:08.510 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:07:04.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58321 1 80 1 2025-11-04 12:07:04.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52207 1 109 1 2025-11-04 12:07:04.555 00:00:00.000 UDP 28.104.0.1:58321 -> 198.28.0.2:53 1 64 1 2025-11-04 12:07:04.555 00:00:00.000 UDP 28.104.0.1:52207 -> 198.28.0.2:53 1 64 1 2025-11-04 12:07:34.487 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:08:04.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42746 1 80 1 2025-11-04 12:08:04.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43241 1 109 1 2025-11-04 12:08:04.813 00:00:00.000 UDP 28.104.0.1:43241 -> 198.28.0.2:53 1 64 1 2025-11-04 12:08:04.813 00:00:00.000 UDP 28.104.0.1:42746 -> 198.28.0.2:53 1 64 1 2025-11-04 12:04:52.754 00:05:08.592 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:09:05.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57136 1 109 1 2025-11-04 12:09:05.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52674 1 80 1 2025-11-04 12:09:05.107 00:00:00.000 UDP 28.104.0.1:52674 -> 198.28.0.2:53 1 64 1 2025-11-04 12:09:05.107 00:00:00.000 UDP 28.104.0.1:57136 -> 198.28.0.2:53 1 64 1 2025-11-04 12:06:01.253 00:04:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:06:01.253 00:04:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:10:05.356 00:00:00.000 UDP 28.104.0.1:50114 -> 198.28.0.2:53 1 64 1 2025-11-04 12:05:52.765 00:05:08.489 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:10:05.356 00:00:00.000 UDP 28.104.0.1:36119 -> 198.28.0.2:53 1 64 1 2025-11-04 12:10:05.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36119 1 109 1 2025-11-04 12:10:05.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50114 1 80 1 2025-11-04 12:06:52.805 00:05:08.532 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:11:05.655 00:00:00.000 UDP 28.104.0.1:37186 -> 198.28.0.2:53 1 64 1 2025-11-04 12:11:05.655 00:00:00.000 UDP 28.104.0.1:47631 -> 198.28.0.2:53 1 64 1 2025-11-04 12:11:05.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47631 1 109 1 2025-11-04 12:11:05.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37186 1 80 1 2025-11-04 12:07:16.617 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 47 3532 1 2025-11-04 12:12:05.898 00:00:00.000 UDP 28.104.0.1:36253 -> 198.28.0.2:53 1 64 1 2025-11-04 12:12:05.898 00:00:00.000 UDP 28.104.0.1:46568 -> 198.28.0.2:53 1 64 1 2025-11-04 12:12:05.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46568 1 80 1 2025-11-04 12:12:05.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36253 1 109 1 2025-11-04 12:12:34.687 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:08:52.755 00:05:08.509 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:13:06.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48230 1 80 1 2025-11-04 12:13:06.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42763 1 109 1 2025-11-04 12:13:06.210 00:00:00.000 UDP 28.104.0.1:42763 -> 198.28.0.2:53 1 64 1 2025-11-04 12:13:06.210 00:00:00.000 UDP 28.104.0.1:48230 -> 198.28.0.2:53 1 64 1 2025-11-04 12:14:06.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42143 1 80 1 2025-11-04 12:14:06.516 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54369 1 109 1 2025-11-04 12:14:06.504 00:00:00.000 UDP 28.104.0.1:42143 -> 198.28.0.2:53 1 64 1 2025-11-04 12:14:06.504 00:00:00.000 UDP 28.104.0.1:54369 -> 198.28.0.2:53 1 64 1 2025-11-04 12:10:52.757 00:05:08.589 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:15:06.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37728 1 109 1 2025-11-04 12:15:06.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55679 1 80 1 2025-11-04 12:11:01.253 00:04:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:11:01.253 00:04:00.107 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:15:06.805 00:00:00.000 UDP 28.104.0.1:37728 -> 198.28.0.2:53 1 64 1 2025-11-04 12:15:06.805 00:00:00.000 UDP 28.104.0.1:55679 -> 198.28.0.2:53 1 64 1 2025-11-04 12:11:52.765 00:05:08.488 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:16:07.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37983 1 109 1 2025-11-04 12:16:07.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41420 1 80 1 2025-11-04 12:16:07.064 00:00:00.000 UDP 28.104.0.1:41420 -> 198.28.0.2:53 1 64 1 2025-11-04 12:16:07.064 00:00:00.000 UDP 28.104.0.1:37983 -> 198.28.0.2:53 1 64 1 2025-11-04 12:12:36.631 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-04 12:12:52.807 00:05:08.532 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:17:07.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48980 1 80 1 2025-11-04 12:17:07.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36971 1 109 1 2025-11-04 12:17:07.325 00:00:00.000 UDP 28.104.0.1:36971 -> 198.28.0.2:53 1 64 1 2025-11-04 12:17:07.325 00:00:00.000 UDP 28.104.0.1:48980 -> 198.28.0.2:53 1 64 1 2025-11-04 12:17:34.599 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:18:07.630 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43149 1 109 1 2025-11-04 12:18:07.630 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43024 1 80 1 2025-11-04 12:18:07.621 00:00:00.000 UDP 28.104.0.1:43024 -> 198.28.0.2:53 1 64 1 2025-11-04 12:18:07.621 00:00:00.000 UDP 28.104.0.1:43149 -> 198.28.0.2:53 1 64 1 2025-11-04 12:14:52.759 00:05:08.505 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:19:07.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39406 1 80 1 2025-11-04 12:19:07.917 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38673 1 109 1 2025-11-04 12:19:07.907 00:00:00.000 UDP 28.104.0.1:38673 -> 198.28.0.2:53 1 64 1 2025-11-04 12:19:07.907 00:00:00.000 UDP 28.104.0.1:39406 -> 198.28.0.2:53 1 64 1 2025-11-04 12:16:01.255 00:04:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:16:01.255 00:04:00.107 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:20:08.213 00:00:00.000 UDP 28.104.0.1:41187 -> 198.28.0.2:53 1 64 1 2025-11-04 12:20:08.203 00:00:00.000 UDP 28.104.0.1:58393 -> 198.28.0.2:53 1 64 1 2025-11-04 12:20:08.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58393 1 80 1 2025-11-04 12:20:08.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41187 1 109 1 2025-11-04 12:16:52.760 00:05:08.589 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:21:08.506 00:00:00.000 UDP 28.104.0.1:60451 -> 198.28.0.2:53 1 64 1 2025-11-04 12:21:08.506 00:00:00.000 UDP 28.104.0.1:57875 -> 198.28.0.2:53 1 64 1 2025-11-04 12:21:08.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57875 1 80 1 2025-11-04 12:21:08.518 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60451 1 109 1 2025-11-04 12:17:52.769 00:05:08.486 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:22:08.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38698 1 80 1 2025-11-04 12:17:56.642 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2816 1 2025-11-04 12:22:08.808 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53743 1 109 1 2025-11-04 12:22:08.800 00:00:00.000 UDP 28.104.0.1:38698 -> 198.28.0.2:53 1 64 1 2025-11-04 12:22:08.800 00:00:00.000 UDP 28.104.0.1:53743 -> 198.28.0.2:53 1 64 1 2025-11-04 12:22:34.827 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:18:52.811 00:05:08.529 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:23:09.101 00:00:00.000 UDP 28.104.0.1:40129 -> 198.28.0.2:53 1 64 1 2025-11-04 12:23:09.101 00:00:00.000 UDP 28.104.0.1:52557 -> 198.28.0.2:53 1 64 1 2025-11-04 12:23:09.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52557 1 109 1 2025-11-04 12:23:09.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40129 1 80 1 2025-11-04 12:24:09.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45939 1 80 1 2025-11-04 12:24:09.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60733 1 109 1 2025-11-04 12:24:09.394 00:00:00.000 UDP 28.104.0.1:60733 -> 198.28.0.2:53 1 64 1 2025-11-04 12:24:09.394 00:00:00.000 UDP 28.104.0.1:45939 -> 198.28.0.2:53 1 64 1 2025-11-04 12:21:01.255 00:04:00.102 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:21:01.255 00:04:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:20:52.761 00:05:08.505 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:25:09.692 00:00:00.000 UDP 28.104.0.1:43021 -> 198.28.0.2:53 1 64 1 2025-11-04 12:25:09.692 00:00:00.000 UDP 28.104.0.1:35281 -> 198.28.0.2:53 1 64 1 2025-11-04 12:25:09.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43021 1 80 1 2025-11-04 12:25:09.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35281 1 109 1 2025-11-04 12:26:10.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46599 1 109 1 2025-11-04 12:26:10.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46127 1 80 1 2025-11-04 12:26:09.990 00:00:00.000 UDP 28.104.0.1:46599 -> 198.28.0.2:53 1 64 1 2025-11-04 12:26:09.990 00:00:00.000 UDP 28.104.0.1:46127 -> 198.28.0.2:53 1 64 1 2025-11-04 12:22:52.764 00:05:08.588 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:27:10.307 00:00:00.000 UDP 28.104.0.1:52485 -> 198.28.0.2:53 1 64 1 2025-11-04 12:27:10.307 00:00:00.000 UDP 28.104.0.1:51083 -> 198.28.0.2:53 1 64 1 2025-11-04 12:27:10.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51083 1 109 1 2025-11-04 12:27:10.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52485 1 80 1 2025-11-04 12:23:16.648 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 12:27:35.284 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:23:52.773 00:05:08.484 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:28:10.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49850 1 109 1 2025-11-04 12:28:10.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51313 1 80 1 2025-11-04 12:28:10.601 00:00:00.000 UDP 28.104.0.1:51313 -> 198.28.0.2:53 1 64 1 2025-11-04 12:28:10.601 00:00:00.000 UDP 28.104.0.1:49850 -> 198.28.0.2:53 1 64 1 2025-11-04 12:24:52.813 00:05:08.528 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:29:10.897 00:00:00.000 UDP 28.104.0.1:44180 -> 198.28.0.2:53 1 64 1 2025-11-04 12:29:10.897 00:00:00.000 UDP 28.104.0.1:52975 -> 198.28.0.2:53 1 64 1 2025-11-04 12:29:10.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52975 1 80 1 2025-11-04 12:29:10.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44180 1 109 1 2025-11-04 12:26:01.256 00:04:00.101 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:26:01.256 00:04:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:30:11.190 00:00:00.000 UDP 28.104.0.1:34997 -> 198.28.0.2:53 1 64 1 2025-11-04 12:30:11.190 00:00:00.000 UDP 28.104.0.1:36179 -> 198.28.0.2:53 1 64 1 2025-11-04 12:30:11.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36179 1 80 1 2025-11-04 12:30:11.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34997 1 109 1 2025-11-04 12:26:52.765 00:05:08.503 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:31:11.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37981 1 109 1 2025-11-04 12:31:11.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49079 1 80 1 2025-11-04 12:31:11.563 00:00:00.000 UDP 28.104.0.1:49079 -> 198.28.0.2:53 1 64 1 2025-11-04 12:31:11.563 00:00:00.000 UDP 28.104.0.1:37981 -> 198.28.0.2:53 1 64 1 2025-11-04 12:31:01.259 00:01:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 12:31:01.258 00:01:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 12:32:11.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56266 1 109 1 2025-11-04 12:32:11.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40747 1 80 1 2025-11-04 12:32:11.868 00:00:00.000 UDP 28.104.0.1:56266 -> 198.28.0.2:53 1 64 1 2025-11-04 12:32:11.868 00:00:00.000 UDP 28.104.0.1:40747 -> 198.28.0.2:53 1 64 1 2025-11-04 12:32:34.895 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:28:36.653 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 12:28:52.765 00:05:08.588 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:33:12.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45975 1 80 1 2025-11-04 12:33:12.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44669 1 109 1 2025-11-04 12:33:12.210 00:00:00.000 UDP 28.104.0.1:44669 -> 198.28.0.2:53 1 64 1 2025-11-04 12:33:12.210 00:00:00.000 UDP 28.104.0.1:45975 -> 198.28.0.2:53 1 64 1 2025-11-04 12:29:52.776 00:05:08.483 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:34:12.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48794 1 80 1 2025-11-04 12:34:12.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40163 1 109 1 2025-11-04 12:34:12.462 00:00:00.000 UDP 28.104.0.1:40163 -> 198.28.0.2:53 1 64 1 2025-11-04 12:34:12.462 00:00:00.000 UDP 28.104.0.1:48794 -> 198.28.0.2:53 1 64 1 2025-11-04 12:33:01.258 00:02:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 12:33:01.258 00:02:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 12:30:52.825 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:35:12.754 00:00:00.000 UDP 28.104.0.1:56569 -> 198.28.0.2:53 1 64 1 2025-11-04 12:35:12.754 00:00:00.000 UDP 28.104.0.1:40894 -> 198.28.0.2:53 1 64 1 2025-11-04 12:35:12.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40894 1 109 1 2025-11-04 12:35:12.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56569 1 80 1 2025-11-04 12:36:13.054 00:00:00.000 UDP 28.104.0.1:57578 -> 198.28.0.2:53 1 64 1 2025-11-04 12:36:13.053 00:00:00.000 UDP 28.104.0.1:34408 -> 198.28.0.2:53 1 64 1 2025-11-04 12:36:13.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34408 1 109 1 2025-11-04 12:36:13.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57578 1 80 1 2025-11-04 12:36:01.259 00:01:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 12:36:01.258 00:01:00.109 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 12:32:52.774 00:05:08.496 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:37:13.386 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59756 1 80 1 2025-11-04 12:37:13.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47866 1 109 1 2025-11-04 12:37:13.376 00:00:00.000 UDP 28.104.0.1:59756 -> 198.28.0.2:53 1 64 1 2025-11-04 12:37:13.377 00:00:00.000 UDP 28.104.0.1:47866 -> 198.28.0.2:53 1 64 1 2025-11-04 12:37:35.127 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:33:56.657 00:05:00.566 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3320 1 2025-11-04 12:38:13.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40753 1 109 1 2025-11-04 12:38:13.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44194 1 80 1 2025-11-04 12:38:13.669 00:00:00.000 UDP 28.104.0.1:40753 -> 198.28.0.2:53 1 64 1 2025-11-04 12:38:13.668 00:00:00.000 UDP 28.104.0.1:44194 -> 198.28.0.2:53 1 64 1 2025-11-04 12:34:52.773 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:39:13.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49413 1 109 1 2025-11-04 12:39:13.968 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48049 1 80 1 2025-11-04 12:39:13.958 00:00:00.000 UDP 28.104.0.1:48049 -> 198.28.0.2:53 1 64 1 2025-11-04 12:39:13.958 00:00:00.000 UDP 28.104.0.1:49413 -> 198.28.0.2:53 1 64 1 2025-11-04 12:38:01.261 00:02:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 12:38:01.261 00:02:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 12:35:52.785 00:05:08.475 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:40:14.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48269 1 80 1 2025-11-04 12:40:14.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51825 1 109 1 2025-11-04 12:40:14.256 00:00:00.000 UDP 28.104.0.1:51825 -> 198.28.0.2:53 1 64 1 2025-11-04 12:40:14.256 00:00:00.000 UDP 28.104.0.1:48269 -> 198.28.0.2:53 1 64 1 2025-11-04 12:36:52.824 00:05:08.522 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:41:14.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38881 1 109 1 2025-11-04 12:41:14.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34331 1 80 1 2025-11-04 12:41:14.542 00:00:00.000 UDP 28.104.0.1:38881 -> 198.28.0.2:53 1 64 1 2025-11-04 12:41:14.542 00:00:00.000 UDP 28.104.0.1:34331 -> 198.28.0.2:53 1 64 1 2025-11-04 12:41:01.260 00:01:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 12:41:01.260 00:01:00.109 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 12:42:14.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46675 1 109 1 2025-11-04 12:42:14.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59030 1 80 1 2025-11-04 12:42:14.839 00:00:00.000 UDP 28.104.0.1:59030 -> 198.28.0.2:53 1 64 1 2025-11-04 12:42:14.839 00:00:00.000 UDP 28.104.0.1:46675 -> 198.28.0.2:53 1 64 1 2025-11-04 12:42:35.292 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:38:52.775 00:05:08.497 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:43:15.115 00:00:00.000 UDP 28.104.0.1:33330 -> 198.28.0.2:53 1 64 1 2025-11-04 12:43:15.115 00:00:00.000 UDP 28.104.0.1:53570 -> 198.28.0.2:53 1 64 1 2025-11-04 12:39:06.663 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 12:43:15.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33330 1 109 1 2025-11-04 12:43:15.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53570 1 80 1 2025-11-04 12:44:15.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55223 1 80 1 2025-11-04 12:44:15.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41148 1 109 1 2025-11-04 12:44:15.413 00:00:00.000 UDP 28.104.0.1:55223 -> 198.28.0.2:53 1 64 1 2025-11-04 12:44:15.413 00:00:00.000 UDP 28.104.0.1:41148 -> 198.28.0.2:53 1 64 1 2025-11-04 12:40:52.775 00:05:08.583 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:45:15.788 00:00:00.000 UDP 28.104.0.1:60398 -> 198.28.0.2:53 1 64 1 2025-11-04 12:45:15.788 00:00:00.000 UDP 28.104.0.1:53336 -> 198.28.0.2:53 1 64 1 2025-11-04 12:45:15.797 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60398 1 80 1 2025-11-04 12:45:15.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53336 1 109 1 2025-11-04 12:41:52.789 00:05:08.475 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:46:16.095 00:00:00.000 UDP 28.104.0.1:47935 -> 198.28.0.2:53 1 64 1 2025-11-04 12:46:16.095 00:00:00.000 UDP 28.104.0.1:33468 -> 198.28.0.2:53 1 64 1 2025-11-04 12:46:16.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47935 1 109 1 2025-11-04 12:46:16.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33468 1 80 1 2025-11-04 12:43:01.261 00:04:00.100 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:43:01.261 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:42:52.828 00:05:08.521 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:47:16.393 00:00:00.000 UDP 28.104.0.1:46538 -> 198.28.0.2:53 1 64 1 2025-11-04 12:47:16.393 00:00:00.000 UDP 28.104.0.1:33466 -> 198.28.0.2:53 1 64 1 2025-11-04 12:47:16.404 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46538 1 109 1 2025-11-04 12:47:16.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33466 1 80 1 2025-11-04 12:47:35.480 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:48:16.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34626 1 80 1 2025-11-04 12:48:16.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39027 1 109 1 2025-11-04 12:48:16.693 00:00:00.000 UDP 28.104.0.1:34626 -> 198.28.0.2:53 1 64 1 2025-11-04 12:48:16.693 00:00:00.000 UDP 28.104.0.1:39027 -> 198.28.0.2:53 1 64 1 2025-11-04 12:44:26.673 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3036 1 2025-11-04 12:44:52.776 00:05:08.500 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:49:17.285 00:00:00.000 UDP 28.104.0.1:60113 -> 198.28.0.2:53 1 64 1 2025-11-04 12:49:17.285 00:00:00.000 UDP 28.104.0.1:46828 -> 198.28.0.2:53 1 64 1 2025-11-04 12:49:17.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46828 1 109 1 2025-11-04 12:49:17.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60113 1 80 1 2025-11-04 12:50:17.538 00:00:00.000 UDP 28.104.0.1:35814 -> 198.28.0.2:53 1 64 1 2025-11-04 12:50:17.538 00:00:00.000 UDP 28.104.0.1:40392 -> 198.28.0.2:53 1 64 1 2025-11-04 12:50:17.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40392 1 80 1 2025-11-04 12:50:17.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35814 1 109 1 2025-11-04 12:46:52.776 00:05:08.583 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:51:17.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48274 1 80 1 2025-11-04 12:51:17.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54292 1 109 1 2025-11-04 12:51:17.841 00:00:00.000 UDP 28.104.0.1:48274 -> 198.28.0.2:53 1 64 1 2025-11-04 12:51:17.841 00:00:00.000 UDP 28.104.0.1:54292 -> 198.28.0.2:53 1 64 1 2025-11-04 12:48:01.264 00:04:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:48:01.264 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:47:52.787 00:05:08.478 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:52:18.162 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52709 1 80 1 2025-11-04 12:52:18.162 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39319 1 109 1 2025-11-04 12:52:18.153 00:00:00.000 UDP 28.104.0.1:52709 -> 198.28.0.2:53 1 64 1 2025-11-04 12:52:18.153 00:00:00.000 UDP 28.104.0.1:39319 -> 198.28.0.2:53 1 64 1 2025-11-04 12:52:35.559 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:48:52.829 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:53:18.410 00:00:00.000 UDP 28.104.0.1:35530 -> 198.28.0.2:53 1 64 1 2025-11-04 12:53:18.410 00:00:00.000 UDP 28.104.0.1:41160 -> 198.28.0.2:53 1 64 1 2025-11-04 12:53:18.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41160 1 80 1 2025-11-04 12:53:18.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35530 1 109 1 2025-11-04 12:49:46.680 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-04 12:54:18.705 00:00:00.000 UDP 28.104.0.1:40580 -> 198.28.0.2:53 1 64 1 2025-11-04 12:54:18.705 00:00:00.000 UDP 28.104.0.1:43332 -> 198.28.0.2:53 1 64 1 2025-11-04 12:54:18.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43332 1 109 1 2025-11-04 12:54:18.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40580 1 80 1 2025-11-04 12:50:52.779 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 12:55:18.992 00:00:00.000 UDP 28.104.0.1:58362 -> 198.28.0.2:53 1 64 1 2025-11-04 12:55:18.993 00:00:00.000 UDP 28.104.0.1:45403 -> 198.28.0.2:53 1 64 1 2025-11-04 12:55:19.004 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45403 1 109 1 2025-11-04 12:55:19.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58362 1 80 1 2025-11-04 12:56:19.313 00:00:00.000 UDP 28.104.0.1:36593 -> 198.28.0.2:53 1 64 1 2025-11-04 12:56:19.312 00:00:00.000 UDP 28.104.0.1:52386 -> 198.28.0.2:53 1 64 1 2025-11-04 12:56:19.325 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36593 1 80 1 2025-11-04 12:56:19.325 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52386 1 109 1 2025-11-04 12:53:01.266 00:04:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:53:01.266 00:04:00.110 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 12:52:52.779 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 12:57:19.565 00:00:00.000 UDP 28.104.0.1:54850 -> 198.28.0.2:53 1 64 1 2025-11-04 12:57:19.565 00:00:00.000 UDP 28.104.0.1:51227 -> 198.28.0.2:53 1 64 1 2025-11-04 12:57:19.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54850 1 80 1 2025-11-04 12:57:19.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51227 1 109 1 2025-11-04 12:57:35.602 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:53:52.789 00:05:08.479 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 12:58:19.861 00:00:00.000 UDP 28.104.0.1:34427 -> 198.28.0.2:53 1 64 1 2025-11-04 12:58:19.861 00:00:00.000 UDP 28.104.0.1:50972 -> 198.28.0.2:53 1 64 1 2025-11-04 12:58:19.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34427 1 80 1 2025-11-04 12:58:19.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50972 1 109 1 Summary: total flows: 333, total bytes: 95914, total packets: 1415, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-04 11:54:52 - 2025-11-04 12:59:01 Total flows processed: 333, passed: 333, Blocks skipped: 0, Bytes read: 34696 Sys: 0.0038s User: 0.0028s Wall: 0.0035s flows/second: 95007.4 Runtime: 0.0035s