Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 12:54:52.829 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 12:59:20.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47622 1 80 1 2025-11-04 12:59:20.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42725 1 109 1 2025-11-04 12:55:06.689 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 12:59:20.186 00:00:00.000 UDP 28.104.0.1:47622 -> 198.28.0.2:53 1 64 1 2025-11-04 12:59:20.186 00:00:00.000 UDP 28.104.0.1:42725 -> 198.28.0.2:53 1 64 1 2025-11-04 13:00:20.445 00:00:00.000 UDP 28.104.0.1:40179 -> 198.28.0.2:53 1 64 1 2025-11-04 13:00:20.445 00:00:00.000 UDP 28.104.0.1:43376 -> 198.28.0.2:53 1 64 1 2025-11-04 13:00:20.456 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40179 1 80 1 2025-11-04 13:00:20.458 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43376 1 109 1 2025-11-04 12:56:52.779 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:01:20.837 00:00:00.000 UDP 28.104.0.1:42665 -> 198.28.0.2:53 1 64 1 2025-11-04 13:01:20.837 00:00:00.000 UDP 28.104.0.1:48905 -> 198.28.0.2:53 1 64 1 2025-11-04 13:01:20.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48905 1 80 1 2025-11-04 13:01:20.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42665 1 109 1 2025-11-04 12:58:01.267 00:04:00.096 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 12:58:01.267 00:04:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:02:21.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47122 1 109 1 2025-11-04 13:02:21.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51209 1 80 1 2025-11-04 13:02:21.139 00:00:00.000 UDP 28.104.0.1:47122 -> 198.28.0.2:53 1 64 1 2025-11-04 13:02:21.139 00:00:00.000 UDP 28.104.0.1:51209 -> 198.28.0.2:53 1 64 1 2025-11-04 13:02:35.677 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 12:58:52.779 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:03:21.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59779 1 80 1 2025-11-04 13:03:21.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37648 1 109 1 2025-11-04 13:03:21.434 00:00:00.000 UDP 28.104.0.1:59779 -> 198.28.0.2:53 1 64 1 2025-11-04 13:03:21.434 00:00:00.000 UDP 28.104.0.1:37648 -> 198.28.0.2:53 1 64 1 2025-11-04 13:03:01.268 00:01:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 12:59:52.789 00:05:08.478 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:04:21.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60065 1 109 1 2025-11-04 13:04:21.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48950 1 80 1 2025-11-04 13:04:21.723 00:00:00.000 UDP 28.104.0.1:48950 -> 198.28.0.2:53 1 64 1 2025-11-04 13:04:21.722 00:00:00.000 UDP 28.104.0.1:60065 -> 198.28.0.2:53 1 64 1 2025-11-04 13:00:26.692 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2788 1 2025-11-04 13:00:52.830 00:05:08.521 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:05:21.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34360 1 109 1 2025-11-04 13:05:21.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42306 1 80 1 2025-11-04 13:05:21.980 00:00:00.000 UDP 28.104.0.1:42306 -> 198.28.0.2:53 1 64 1 2025-11-04 13:05:21.981 00:00:00.000 UDP 28.104.0.1:34360 -> 198.28.0.2:53 1 64 1 2025-11-04 13:06:22.277 00:00:00.000 UDP 28.104.0.1:44497 -> 198.28.0.2:53 1 64 1 2025-11-04 13:06:22.277 00:00:00.000 UDP 28.104.0.1:38075 -> 198.28.0.2:53 1 64 1 2025-11-04 13:06:22.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44497 1 109 1 2025-11-04 13:06:22.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38075 1 80 1 2025-11-04 13:03:01.268 00:04:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:05:01.269 00:02:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 13:02:52.780 00:05:08.498 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:07:22.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53443 1 80 1 2025-11-04 13:07:22.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52106 1 109 1 2025-11-04 13:07:22.547 00:00:00.000 UDP 28.104.0.1:53443 -> 198.28.0.2:53 1 64 1 2025-11-04 13:07:22.547 00:00:00.000 UDP 28.104.0.1:52106 -> 198.28.0.2:53 1 64 1 2025-11-04 13:07:35.709 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:08:22.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35102 1 80 1 2025-11-04 13:08:22.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40252 1 109 1 2025-11-04 13:08:22.837 00:00:00.000 UDP 28.104.0.1:35102 -> 198.28.0.2:53 1 64 1 2025-11-04 13:08:22.837 00:00:00.000 UDP 28.104.0.1:40252 -> 198.28.0.2:53 1 64 1 2025-11-04 13:08:01.269 00:01:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 13:08:01.269 00:01:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 13:04:52.783 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:09:23.136 00:00:00.000 UDP 28.104.0.1:42319 -> 198.28.0.2:53 1 64 1 2025-11-04 13:09:23.136 00:00:00.000 UDP 28.104.0.1:36315 -> 198.28.0.2:53 1 64 1 2025-11-04 13:09:23.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42319 1 80 1 2025-11-04 13:09:23.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36315 1 109 1 2025-11-04 13:05:46.697 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2796 1 2025-11-04 13:05:52.791 00:05:08.479 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:10:23.388 00:00:00.000 UDP 28.104.0.1:54720 -> 198.28.0.2:53 1 64 1 2025-11-04 13:10:23.387 00:00:00.000 UDP 28.104.0.1:33308 -> 198.28.0.2:53 1 64 1 2025-11-04 13:10:23.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33308 1 109 1 2025-11-04 13:10:23.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54720 1 80 1 2025-11-04 13:06:52.832 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:11:23.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37569 1 109 1 2025-11-04 13:11:23.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47213 1 80 1 2025-11-04 13:11:23.649 00:00:00.000 UDP 28.104.0.1:37569 -> 198.28.0.2:53 1 64 1 2025-11-04 13:11:23.648 00:00:00.000 UDP 28.104.0.1:47213 -> 198.28.0.2:53 1 64 1 2025-11-04 13:10:01.271 00:02:00.095 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 13:10:01.271 00:02:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 13:12:23.954 00:00:00.000 UDP 28.104.0.1:60054 -> 198.28.0.2:53 1 64 1 2025-11-04 13:12:23.954 00:00:00.000 UDP 28.104.0.1:35244 -> 198.28.0.2:53 1 64 1 2025-11-04 13:12:23.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60054 1 80 1 2025-11-04 13:12:23.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35244 1 109 1 2025-11-04 13:12:35.894 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:08:52.782 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:13:24.258 00:00:00.000 UDP 28.104.0.1:46865 -> 198.28.0.2:53 1 64 1 2025-11-04 13:13:24.257 00:00:00.000 UDP 28.104.0.1:47937 -> 198.28.0.2:53 1 64 1 2025-11-04 13:13:24.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47937 1 109 1 2025-11-04 13:13:24.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46865 1 80 1 2025-11-04 13:13:01.271 00:01:00.096 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 13:13:01.271 00:01:00.113 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 13:14:24.554 00:00:00.000 UDP 28.104.0.1:48513 -> 198.28.0.2:53 1 64 1 2025-11-04 13:14:24.554 00:00:00.000 UDP 28.104.0.1:50443 -> 198.28.0.2:53 1 64 1 2025-11-04 13:14:24.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50443 1 80 1 2025-11-04 13:14:24.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48513 1 109 1 2025-11-04 13:10:52.785 00:05:08.578 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:11:06.702 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2748 1 2025-11-04 13:15:24.858 00:00:00.000 UDP 28.104.0.1:53911 -> 198.28.0.2:53 1 64 1 2025-11-04 13:15:24.857 00:00:00.000 UDP 28.104.0.1:57300 -> 198.28.0.2:53 1 64 1 2025-11-04 13:15:24.866 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57300 1 109 1 2025-11-04 13:15:24.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53911 1 80 1 2025-11-04 13:11:52.793 00:05:08.478 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:16:25.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41547 1 80 1 2025-11-04 13:16:25.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38044 1 109 1 2025-11-04 13:16:25.128 00:00:00.000 UDP 28.104.0.1:41547 -> 198.28.0.2:53 1 64 1 2025-11-04 13:16:25.128 00:00:00.000 UDP 28.104.0.1:38044 -> 198.28.0.2:53 1 64 1 2025-11-04 13:12:52.835 00:05:08.519 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:17:25.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35884 1 80 1 2025-11-04 13:17:25.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38559 1 109 1 2025-11-04 13:17:25.467 00:00:00.000 UDP 28.104.0.1:35884 -> 198.28.0.2:53 1 64 1 2025-11-04 13:17:25.467 00:00:00.000 UDP 28.104.0.1:38559 -> 198.28.0.2:53 1 64 1 2025-11-04 13:17:35.821 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:18:25.755 00:00:00.000 UDP 28.104.0.1:51001 -> 198.28.0.2:53 1 64 1 2025-11-04 13:18:25.755 00:00:00.000 UDP 28.104.0.1:42688 -> 198.28.0.2:53 1 64 1 2025-11-04 13:18:25.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42688 1 80 1 2025-11-04 13:18:25.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51001 1 109 1 2025-11-04 13:15:01.272 00:04:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:15:01.272 00:04:00.113 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:14:52.783 00:05:08.498 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:19:26.006 00:00:00.000 UDP 28.104.0.1:47631 -> 198.28.0.2:53 1 64 1 2025-11-04 13:19:26.006 00:00:00.000 UDP 28.104.0.1:33268 -> 198.28.0.2:53 1 64 1 2025-11-04 13:19:26.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47631 1 80 1 2025-11-04 13:19:26.024 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33268 1 109 1 2025-11-04 13:20:26.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45777 1 80 1 2025-11-04 13:20:26.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36236 1 109 1 2025-11-04 13:20:26.307 00:00:00.000 UDP 28.104.0.1:36236 -> 198.28.0.2:53 1 64 1 2025-11-04 13:20:26.307 00:00:00.000 UDP 28.104.0.1:45777 -> 198.28.0.2:53 1 64 1 2025-11-04 13:16:26.710 00:05:10.111 OSPF 28.0.2.1:0 -> 224.0.0.5:0 47 3300 1 2025-11-04 13:16:52.788 00:05:08.577 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:21:26.563 00:00:00.000 UDP 28.104.0.1:55757 -> 198.28.0.2:53 1 64 1 2025-11-04 13:21:26.563 00:00:00.000 UDP 28.104.0.1:39004 -> 198.28.0.2:53 1 64 1 2025-11-04 13:21:26.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39004 1 109 1 2025-11-04 13:21:26.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55757 1 80 1 2025-11-04 13:17:52.797 00:05:08.475 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:22:26.854 00:00:00.000 UDP 28.104.0.1:36338 -> 198.28.0.2:53 1 64 1 2025-11-04 13:22:26.854 00:00:00.000 UDP 28.104.0.1:35618 -> 198.28.0.2:53 1 64 1 2025-11-04 13:22:26.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35618 1 80 1 2025-11-04 13:22:26.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36338 1 109 1 2025-11-04 13:22:36.575 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:18:52.838 00:05:08.516 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:23:27.168 00:00:00.000 UDP 28.104.0.1:35071 -> 198.28.0.2:53 1 64 1 2025-11-04 13:23:27.168 00:00:00.000 UDP 28.104.0.1:37783 -> 198.28.0.2:53 1 64 1 2025-11-04 13:23:27.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37783 1 109 1 2025-11-04 13:23:27.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35071 1 80 1 2025-11-04 13:20:01.272 00:04:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:20:01.271 00:04:00.115 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:24:27.458 00:00:00.000 UDP 28.104.0.1:43145 -> 198.28.0.2:53 1 64 1 2025-11-04 13:24:27.458 00:00:00.000 UDP 28.104.0.1:50889 -> 198.28.0.2:53 1 64 1 2025-11-04 13:24:27.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43145 1 80 1 2025-11-04 13:24:27.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50889 1 109 1 2025-11-04 13:20:52.789 00:05:08.495 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:25:27.763 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46993 1 80 1 2025-11-04 13:25:27.764 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39658 1 109 1 2025-11-04 13:25:27.753 00:00:00.000 UDP 28.104.0.1:39658 -> 198.28.0.2:53 1 64 1 2025-11-04 13:25:27.752 00:00:00.000 UDP 28.104.0.1:46993 -> 198.28.0.2:53 1 64 1 2025-11-04 13:21:46.725 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 13:25:01.273 00:01:00.097 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 13:25:01.273 00:01:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 13:26:28.028 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58424 1 109 1 2025-11-04 13:26:28.028 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59791 1 80 1 2025-11-04 13:26:28.016 00:00:00.000 UDP 28.104.0.1:59791 -> 198.28.0.2:53 1 64 1 2025-11-04 13:26:28.017 00:00:00.000 UDP 28.104.0.1:58424 -> 198.28.0.2:53 1 64 1 2025-11-04 13:22:52.788 00:05:08.580 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:27:28.311 00:00:00.000 UDP 28.104.0.1:33989 -> 198.28.0.2:53 1 64 1 2025-11-04 13:27:28.311 00:00:00.000 UDP 28.104.0.1:47460 -> 198.28.0.2:53 1 64 1 2025-11-04 13:27:28.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47460 1 80 1 2025-11-04 13:27:28.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33989 1 109 1 2025-11-04 13:27:36.357 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:23:52.799 00:05:08.480 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:28:28.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41052 1 109 1 2025-11-04 13:28:28.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43539 1 80 1 2025-11-04 13:28:28.566 00:00:00.000 UDP 28.104.0.1:41052 -> 198.28.0.2:53 1 64 1 2025-11-04 13:28:28.566 00:00:00.000 UDP 28.104.0.1:43539 -> 198.28.0.2:53 1 64 1 2025-11-04 13:27:01.280 00:02:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 13:27:01.280 00:02:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 13:24:52.839 00:05:08.519 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:29:28.864 00:00:00.000 UDP 28.104.0.1:40011 -> 198.28.0.2:53 1 64 1 2025-11-04 13:29:28.864 00:00:00.000 UDP 28.104.0.1:60767 -> 198.28.0.2:53 1 64 1 2025-11-04 13:29:28.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60767 1 80 1 2025-11-04 13:29:28.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40011 1 109 1 2025-11-04 13:30:29.183 00:00:00.000 UDP 28.104.0.1:37195 -> 198.28.0.2:53 1 64 1 2025-11-04 13:30:29.183 00:00:00.000 UDP 28.104.0.1:56726 -> 198.28.0.2:53 1 64 1 2025-11-04 13:30:29.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56726 1 109 1 2025-11-04 13:30:29.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37195 1 80 1 2025-11-04 13:30:01.279 00:01:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 13:30:01.279 00:01:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 13:26:52.788 00:05:08.501 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:27:06.733 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-04 13:31:29.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39696 1 109 1 2025-11-04 13:31:29.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35732 1 80 1 2025-11-04 13:31:29.477 00:00:00.000 UDP 28.104.0.1:35732 -> 198.28.0.2:53 1 64 1 2025-11-04 13:31:29.477 00:00:00.000 UDP 28.104.0.1:39696 -> 198.28.0.2:53 1 64 1 2025-11-04 13:32:29.780 00:00:00.000 UDP 28.104.0.1:43570 -> 198.28.0.2:53 1 64 1 2025-11-04 13:32:29.780 00:00:00.000 UDP 28.104.0.1:57059 -> 198.28.0.2:53 1 64 1 2025-11-04 13:32:29.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43570 1 80 1 2025-11-04 13:32:29.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57059 1 109 1 2025-11-04 13:32:36.181 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:28:52.789 00:05:08.580 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:33:30.145 00:00:00.000 UDP 28.104.0.1:51745 -> 198.28.0.2:53 1 64 1 2025-11-04 13:33:30.146 00:00:00.000 UDP 28.104.0.1:57429 -> 198.28.0.2:53 1 64 1 2025-11-04 13:33:30.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51745 1 109 1 2025-11-04 13:33:30.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57429 1 80 1 2025-11-04 13:32:01.279 00:02:00.092 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 13:32:01.279 00:02:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 13:29:52.799 00:05:08.485 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:34:30.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35641 1 109 1 2025-11-04 13:34:30.457 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53948 1 80 1 2025-11-04 13:34:30.447 00:00:00.000 UDP 28.104.0.1:53948 -> 198.28.0.2:53 1 64 1 2025-11-04 13:34:30.447 00:00:00.000 UDP 28.104.0.1:35641 -> 198.28.0.2:53 1 64 1 2025-11-04 13:30:52.838 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:35:30.701 00:00:00.000 UDP 28.104.0.1:48124 -> 198.28.0.2:53 1 64 1 2025-11-04 13:35:30.701 00:00:00.000 UDP 28.104.0.1:40115 -> 198.28.0.2:53 1 64 1 2025-11-04 13:35:30.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48124 1 109 1 2025-11-04 13:35:30.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40115 1 80 1 2025-11-04 13:35:01.284 00:01:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 13:35:01.284 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 13:36:31.659 00:00:00.000 UDP 28.104.0.1:57593 -> 198.28.0.2:53 1 64 1 2025-11-04 13:36:31.659 00:00:00.000 UDP 28.104.0.1:33655 -> 198.28.0.2:53 1 64 1 2025-11-04 13:36:31.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57593 1 80 1 2025-11-04 13:36:31.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33655 1 109 1 2025-11-04 13:32:26.744 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3268 1 2025-11-04 13:32:52.790 00:05:08.504 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:37:31.914 00:00:00.000 UDP 28.104.0.1:39616 -> 198.28.0.2:53 1 64 1 2025-11-04 13:37:31.914 00:00:00.000 UDP 28.104.0.1:46703 -> 198.28.0.2:53 1 64 1 2025-11-04 13:37:31.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46703 1 80 1 2025-11-04 13:37:31.925 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39616 1 109 1 2025-11-04 13:37:36.484 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:38:32.965 00:00:00.000 UDP 28.104.0.1:47298 -> 198.28.0.2:53 1 64 1 2025-11-04 13:38:32.966 00:00:00.000 UDP 28.104.0.1:44424 -> 198.28.0.2:53 1 64 1 2025-11-04 13:38:32.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47298 1 109 1 2025-11-04 13:38:32.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44424 1 80 1 2025-11-04 13:34:52.789 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:39:33.271 00:00:00.000 UDP 28.104.0.1:34955 -> 198.28.0.2:53 1 64 1 2025-11-04 13:39:33.271 00:00:00.000 UDP 28.104.0.1:53402 -> 198.28.0.2:53 1 64 1 2025-11-04 13:39:33.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53402 1 80 1 2025-11-04 13:39:33.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34955 1 109 1 2025-11-04 13:35:52.801 00:05:08.484 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:40:33.523 00:00:00.000 UDP 28.104.0.1:60627 -> 198.28.0.2:53 1 64 1 2025-11-04 13:40:33.523 00:00:00.000 UDP 28.104.0.1:46776 -> 198.28.0.2:53 1 64 1 2025-11-04 13:40:33.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46776 1 109 1 2025-11-04 13:40:33.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60627 1 80 1 2025-11-04 13:37:01.285 00:04:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:37:01.285 00:04:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:36:52.841 00:05:08.524 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:41:33.822 00:00:00.000 UDP 28.104.0.1:42585 -> 198.28.0.2:53 1 64 1 2025-11-04 13:41:33.822 00:00:00.000 UDP 28.104.0.1:60114 -> 198.28.0.2:53 1 64 1 2025-11-04 13:41:33.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42585 1 80 1 2025-11-04 13:41:33.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60114 1 109 1 2025-11-04 13:37:37.040 00:05:09.722 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2380 1 2025-11-04 13:42:36.372 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:42:34.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43919 1 109 1 2025-11-04 13:42:34.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54727 1 80 1 2025-11-04 13:42:34.117 00:00:00.000 UDP 28.104.0.1:54727 -> 198.28.0.2:53 1 64 1 2025-11-04 13:42:34.117 00:00:00.000 UDP 28.104.0.1:43919 -> 198.28.0.2:53 1 64 1 2025-11-04 13:38:52.793 00:05:08.504 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:43:34.411 00:00:00.000 UDP 28.104.0.1:48821 -> 198.28.0.2:53 1 64 1 2025-11-04 13:43:34.411 00:00:00.000 UDP 28.104.0.1:45110 -> 198.28.0.2:53 1 64 1 2025-11-04 13:43:34.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45110 1 80 1 2025-11-04 13:43:34.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48821 1 109 1 2025-11-04 13:44:34.664 00:00:00.000 UDP 28.104.0.1:50203 -> 198.28.0.2:53 1 64 1 2025-11-04 13:44:34.664 00:00:00.000 UDP 28.104.0.1:36419 -> 198.28.0.2:53 1 64 1 2025-11-04 13:44:34.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50203 1 109 1 2025-11-04 13:44:34.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36419 1 80 1 2025-11-04 13:40:52.791 00:05:08.585 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:45:34.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36797 1 80 1 2025-11-04 13:45:34.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35004 1 109 1 2025-11-04 13:45:34.961 00:00:00.000 UDP 28.104.0.1:35004 -> 198.28.0.2:53 1 64 1 2025-11-04 13:45:34.961 00:00:00.000 UDP 28.104.0.1:36797 -> 198.28.0.2:53 1 64 1 2025-11-04 13:42:01.285 00:04:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:42:01.285 00:04:00.106 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:41:52.801 00:05:08.485 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:46:35.252 00:00:00.000 UDP 28.104.0.1:34207 -> 198.28.0.2:53 1 64 1 2025-11-04 13:46:35.253 00:00:00.000 UDP 28.104.0.1:54230 -> 198.28.0.2:53 1 64 1 2025-11-04 13:46:35.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54230 1 80 1 2025-11-04 13:46:35.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34207 1 109 1 2025-11-04 13:42:52.842 00:05:08.526 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:42:56.764 00:05:00.453 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3264 1 2025-11-04 13:47:36.574 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:47:35.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38935 1 109 1 2025-11-04 13:47:35.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41538 1 80 1 2025-11-04 13:47:35.549 00:00:00.000 UDP 28.104.0.1:38935 -> 198.28.0.2:53 1 64 1 2025-11-04 13:47:35.549 00:00:00.000 UDP 28.104.0.1:41538 -> 198.28.0.2:53 1 64 1 2025-11-04 13:48:35.841 00:00:00.000 UDP 28.104.0.1:37117 -> 198.28.0.2:53 1 64 1 2025-11-04 13:48:35.841 00:00:00.000 UDP 28.104.0.1:55044 -> 198.28.0.2:53 1 64 1 2025-11-04 13:48:35.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55044 1 80 1 2025-11-04 13:48:35.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37117 1 109 1 2025-11-04 13:44:52.792 00:05:08.505 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:49:36.156 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39710 1 80 1 2025-11-04 13:49:36.155 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60573 1 109 1 2025-11-04 13:49:36.145 00:00:00.000 UDP 28.104.0.1:39710 -> 198.28.0.2:53 1 64 1 2025-11-04 13:49:36.144 00:00:00.000 UDP 28.104.0.1:60573 -> 198.28.0.2:53 1 64 1 2025-11-04 13:50:36.399 00:00:00.000 UDP 28.104.0.1:47685 -> 198.28.0.2:53 1 64 1 2025-11-04 13:50:36.399 00:00:00.000 UDP 28.104.0.1:47066 -> 198.28.0.2:53 1 64 1 2025-11-04 13:50:36.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47685 1 109 1 2025-11-04 13:50:36.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47066 1 80 1 2025-11-04 13:47:01.287 00:04:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:47:01.287 00:04:00.105 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:46:52.793 00:05:08.586 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:51:36.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41085 1 109 1 2025-11-04 13:51:36.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38740 1 80 1 2025-11-04 13:51:36.683 00:00:00.000 UDP 28.104.0.1:38740 -> 198.28.0.2:53 1 64 1 2025-11-04 13:51:36.683 00:00:00.000 UDP 28.104.0.1:41085 -> 198.28.0.2:53 1 64 1 2025-11-04 13:47:52.802 00:05:08.485 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:48:06.768 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 13:52:36.524 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:52:36.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35149 1 109 1 2025-11-04 13:52:36.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34432 1 80 1 2025-11-04 13:52:36.972 00:00:00.000 UDP 28.104.0.1:35149 -> 198.28.0.2:53 1 64 1 2025-11-04 13:52:36.972 00:00:00.000 UDP 28.104.0.1:34432 -> 198.28.0.2:53 1 64 1 2025-11-04 13:48:52.844 00:05:08.525 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:53:37.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36348 1 109 1 2025-11-04 13:53:37.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47080 1 80 1 2025-11-04 13:53:37.265 00:00:00.000 UDP 28.104.0.1:47080 -> 198.28.0.2:53 1 64 1 2025-11-04 13:53:37.265 00:00:00.000 UDP 28.104.0.1:36348 -> 198.28.0.2:53 1 64 1 2025-11-04 13:54:37.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38538 1 109 1 2025-11-04 13:54:37.566 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50572 1 80 1 2025-11-04 13:54:37.555 00:00:00.000 UDP 28.104.0.1:38538 -> 198.28.0.2:53 1 64 1 2025-11-04 13:54:37.556 00:00:00.000 UDP 28.104.0.1:50572 -> 198.28.0.2:53 1 64 1 2025-11-04 13:50:52.794 00:05:08.504 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 13:55:37.847 00:00:00.000 UDP 28.104.0.1:59104 -> 198.28.0.2:53 1 64 1 2025-11-04 13:55:37.847 00:00:00.000 UDP 28.104.0.1:33587 -> 198.28.0.2:53 1 64 1 2025-11-04 13:55:37.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59104 1 80 1 2025-11-04 13:55:37.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33587 1 109 1 2025-11-04 13:52:01.289 00:04:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:52:01.289 00:04:00.106 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:56:38.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50685 1 109 1 2025-11-04 13:56:38.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59981 1 80 1 2025-11-04 13:56:38.152 00:00:00.000 UDP 28.104.0.1:50685 -> 198.28.0.2:53 1 64 1 2025-11-04 13:56:38.152 00:00:00.000 UDP 28.104.0.1:59981 -> 198.28.0.2:53 1 64 1 2025-11-04 13:52:52.793 00:05:08.587 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 13:57:37.124 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 13:53:26.776 00:05:10.020 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 13:57:38.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39071 1 109 1 2025-11-04 13:57:38.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50817 1 80 1 2025-11-04 13:57:38.404 00:00:00.000 UDP 28.104.0.1:50817 -> 198.28.0.2:53 1 64 1 2025-11-04 13:57:38.404 00:00:00.000 UDP 28.104.0.1:39071 -> 198.28.0.2:53 1 64 1 2025-11-04 13:53:52.804 00:05:08.486 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 13:58:39.250 00:00:00.000 UDP 28.104.0.1:37860 -> 198.28.0.2:53 1 64 1 2025-11-04 13:58:39.250 00:00:00.000 UDP 28.104.0.1:36526 -> 198.28.0.2:53 1 64 1 2025-11-04 13:58:39.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36526 1 80 1 2025-11-04 13:58:39.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37860 1 109 1 Summary: total flows: 337, total bytes: 98334, total packets: 1447, avg bps: 204, avg pps: 0, avg bpp: 67 Time window: 2025-11-04 12:54:52 - 2025-11-04 13:59:01 Total flows processed: 337, passed: 337, Blocks skipped: 0, Bytes read: 35112 Sys: 0.0044s User: 0.0026s Wall: 0.0038s flows/second: 88359.1 Runtime: 0.0038s