Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-04 13:54:52.844 00:05:08.526 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 13:59:39.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37748 1 80 1 2025-11-04 13:59:39.552 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49325 1 109 1 2025-11-04 13:59:39.541 00:00:00.000 UDP 28.104.0.1:37748 -> 198.28.0.2:53 1 64 1 2025-11-04 13:59:39.541 00:00:00.000 UDP 28.104.0.1:49325 -> 198.28.0.2:53 1 64 1 2025-11-04 14:00:39.895 00:00:00.000 UDP 28.104.0.1:36630 -> 198.28.0.2:53 1 64 1 2025-11-04 14:00:39.895 00:00:00.000 UDP 28.104.0.1:53925 -> 198.28.0.2:53 1 64 1 2025-11-04 14:00:39.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53925 1 109 1 2025-11-04 14:00:39.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36630 1 80 1 2025-11-04 13:57:01.288 00:04:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 13:57:01.288 00:04:00.107 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 13:56:52.795 00:05:08.506 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:01:40.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58891 1 80 1 2025-11-04 14:01:40.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50487 1 109 1 2025-11-04 14:01:40.213 00:00:00.000 UDP 28.104.0.1:50487 -> 198.28.0.2:53 1 64 1 2025-11-04 14:01:40.212 00:00:00.000 UDP 28.104.0.1:58891 -> 198.28.0.2:53 1 64 1 2025-11-04 14:02:36.852 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:02:40.520 00:00:00.000 UDP 28.104.0.1:57172 -> 198.28.0.2:53 1 64 1 2025-11-04 14:02:40.519 00:00:00.000 UDP 28.104.0.1:57167 -> 198.28.0.2:53 1 64 1 2025-11-04 14:02:40.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57167 1 80 1 2025-11-04 14:02:40.531 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57172 1 109 1 2025-11-04 13:58:46.796 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 3072 1 2025-11-04 13:58:52.795 00:05:08.586 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:02:01.292 00:01:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:02:01.292 00:01:00.108 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:03:40.816 00:00:00.000 UDP 28.104.0.1:34386 -> 198.28.0.2:53 1 64 1 2025-11-04 14:03:40.816 00:00:00.000 UDP 28.104.0.1:37661 -> 198.28.0.2:53 1 64 1 2025-11-04 14:03:40.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34386 1 80 1 2025-11-04 14:03:40.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37661 1 109 1 2025-11-04 13:59:52.804 00:05:08.486 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:04:41.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35467 1 80 1 2025-11-04 14:04:41.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58039 1 109 1 2025-11-04 14:04:41.088 00:00:00.000 UDP 28.104.0.1:58039 -> 198.28.0.2:53 1 64 1 2025-11-04 14:04:41.088 00:00:00.000 UDP 28.104.0.1:35467 -> 198.28.0.2:53 1 64 1 2025-11-04 14:00:52.846 00:05:08.526 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:05:41.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49775 1 109 1 2025-11-04 14:05:41.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48466 1 80 1 2025-11-04 14:05:41.339 00:00:00.000 UDP 28.104.0.1:48466 -> 198.28.0.2:53 1 64 1 2025-11-04 14:05:41.339 00:00:00.000 UDP 28.104.0.1:49775 -> 198.28.0.2:53 1 64 1 2025-11-04 14:04:01.292 00:02:00.089 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 14:04:01.292 00:02:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 14:06:41.633 00:00:00.000 UDP 28.104.0.1:43997 -> 198.28.0.2:53 1 64 1 2025-11-04 14:06:41.633 00:00:00.000 UDP 28.104.0.1:55019 -> 198.28.0.2:53 1 64 1 2025-11-04 14:06:41.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55019 1 80 1 2025-11-04 14:06:41.643 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43997 1 109 1 2025-11-04 14:02:52.797 00:05:08.506 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:07:36.984 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:07:41.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59918 1 80 1 2025-11-04 14:07:41.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36562 1 109 1 2025-11-04 14:07:41.929 00:00:00.000 UDP 28.104.0.1:59918 -> 198.28.0.2:53 1 64 1 2025-11-04 14:07:41.928 00:00:00.000 UDP 28.104.0.1:36562 -> 198.28.0.2:53 1 64 1 2025-11-04 14:07:01.293 00:01:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:07:01.293 00:01:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:04:06.800 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2528 1 2025-11-04 14:08:42.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51423 1 109 1 2025-11-04 14:08:42.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52398 1 80 1 2025-11-04 14:08:42.227 00:00:00.000 UDP 28.104.0.1:51423 -> 198.28.0.2:53 1 64 1 2025-11-04 14:08:42.228 00:00:00.000 UDP 28.104.0.1:52398 -> 198.28.0.2:53 1 64 1 2025-11-04 14:04:52.796 00:05:08.586 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:09:43.061 00:00:00.000 UDP 28.104.0.1:39457 -> 198.28.0.2:53 1 64 1 2025-11-04 14:09:43.061 00:00:00.000 UDP 28.104.0.1:60071 -> 198.28.0.2:53 1 64 1 2025-11-04 14:09:43.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60071 1 80 1 2025-11-04 14:09:43.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39457 1 109 1 2025-11-04 14:05:52.807 00:05:08.485 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:10:43.347 00:00:00.000 UDP 28.104.0.1:33749 -> 198.28.0.2:53 1 64 1 2025-11-04 14:10:43.347 00:00:00.000 UDP 28.104.0.1:49804 -> 198.28.0.2:53 1 64 1 2025-11-04 14:10:43.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33749 1 109 1 2025-11-04 14:10:43.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49804 1 80 1 2025-11-04 14:09:01.293 00:02:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 14:09:01.293 00:02:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 14:06:52.848 00:05:08.525 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:11:43.634 00:00:00.000 UDP 28.104.0.1:44493 -> 198.28.0.2:53 1 64 1 2025-11-04 14:11:43.634 00:00:00.000 UDP 28.104.0.1:53295 -> 198.28.0.2:53 1 64 1 2025-11-04 14:11:43.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53295 1 109 1 2025-11-04 14:11:43.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44493 1 80 1 2025-11-04 14:12:37.362 00:00:00.032 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:12:43.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38580 1 80 1 2025-11-04 14:12:43.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46805 1 109 1 2025-11-04 14:12:43.903 00:00:00.000 UDP 28.104.0.1:38580 -> 198.28.0.2:53 1 64 1 2025-11-04 14:12:43.902 00:00:00.000 UDP 28.104.0.1:46805 -> 198.28.0.2:53 1 64 1 2025-11-04 14:12:01.292 00:01:00.089 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:12:01.292 00:01:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:08:52.801 00:05:08.502 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:09:26.807 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2956 1 2025-11-04 14:13:44.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54823 1 109 1 2025-11-04 14:13:44.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42512 1 80 1 2025-11-04 14:13:44.218 00:00:00.000 UDP 28.104.0.1:54823 -> 198.28.0.2:53 1 64 1 2025-11-04 14:13:44.217 00:00:00.000 UDP 28.104.0.1:42512 -> 198.28.0.2:53 1 64 1 2025-11-04 14:14:44.520 00:00:00.000 UDP 28.104.0.1:42894 -> 198.28.0.2:53 1 64 1 2025-11-04 14:14:44.520 00:00:00.000 UDP 28.104.0.1:43922 -> 198.28.0.2:53 1 64 1 2025-11-04 14:14:44.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42894 1 80 1 2025-11-04 14:14:44.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43922 1 109 1 2025-11-04 14:10:52.803 00:05:08.582 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:15:44.812 00:00:00.000 UDP 28.104.0.1:46417 -> 198.28.0.2:53 1 64 1 2025-11-04 14:15:44.812 00:00:00.000 UDP 28.104.0.1:43437 -> 198.28.0.2:53 1 64 1 2025-11-04 14:15:44.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43437 1 80 1 2025-11-04 14:15:44.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46417 1 109 1 2025-11-04 14:11:52.813 00:05:08.481 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:16:45.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42065 1 109 1 2025-11-04 14:16:45.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58613 1 80 1 2025-11-04 14:16:45.102 00:00:00.000 UDP 28.104.0.1:42065 -> 198.28.0.2:53 1 64 1 2025-11-04 14:16:45.102 00:00:00.000 UDP 28.104.0.1:58613 -> 198.28.0.2:53 1 64 1 2025-11-04 14:12:52.855 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:17:37.209 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:17:45.406 00:00:00.000 UDP 28.104.0.1:50757 -> 198.28.0.2:53 1 64 1 2025-11-04 14:17:45.406 00:00:00.000 UDP 28.104.0.1:52877 -> 198.28.0.2:53 1 64 1 2025-11-04 14:17:45.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50757 1 80 1 2025-11-04 14:17:45.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52877 1 109 1 2025-11-04 14:14:01.293 00:04:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 14:14:01.293 00:04:00.104 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 14:18:45.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58359 1 109 1 2025-11-04 14:18:45.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45074 1 80 1 2025-11-04 14:18:45.800 00:00:00.000 UDP 28.104.0.1:45074 -> 198.28.0.2:53 1 64 1 2025-11-04 14:18:45.800 00:00:00.000 UDP 28.104.0.1:58359 -> 198.28.0.2:53 1 64 1 2025-11-04 14:14:52.803 00:05:08.502 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:14:46.816 00:05:10.019 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2816 1 2025-11-04 14:19:46.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34509 1 109 1 2025-11-04 14:19:46.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40374 1 80 1 2025-11-04 14:19:46.100 00:00:00.000 UDP 28.104.0.1:34509 -> 198.28.0.2:53 1 64 1 2025-11-04 14:19:46.100 00:00:00.000 UDP 28.104.0.1:40374 -> 198.28.0.2:53 1 64 1 2025-11-04 14:20:46.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58409 1 80 1 2025-11-04 14:20:46.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52970 1 109 1 2025-11-04 14:20:46.358 00:00:00.000 UDP 28.104.0.1:58409 -> 198.28.0.2:53 1 64 1 2025-11-04 14:20:46.358 00:00:00.000 UDP 28.104.0.1:52970 -> 198.28.0.2:53 1 64 1 2025-11-04 14:16:52.806 00:05:08.579 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:21:46.651 00:00:00.000 UDP 28.104.0.1:55799 -> 198.28.0.2:53 1 64 1 2025-11-04 14:21:46.651 00:00:00.000 UDP 28.104.0.1:37057 -> 198.28.0.2:53 1 64 1 2025-11-04 14:21:46.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55799 1 109 1 2025-11-04 14:21:46.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37057 1 80 1 2025-11-04 14:17:52.816 00:05:08.480 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:22:37.191 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:22:46.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49337 1 80 1 2025-11-04 14:22:46.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37695 1 109 1 2025-11-04 14:22:46.960 00:00:00.000 UDP 28.104.0.1:37695 -> 198.28.0.2:53 1 64 1 2025-11-04 14:22:46.960 00:00:00.000 UDP 28.104.0.1:49337 -> 198.28.0.2:53 1 64 1 2025-11-04 14:19:01.297 00:04:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 14:19:01.297 00:04:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 14:18:52.856 00:05:08.520 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:23:47.260 00:00:00.000 UDP 28.104.0.1:49334 -> 198.28.0.2:53 1 64 1 2025-11-04 14:23:47.260 00:00:00.000 UDP 28.104.0.1:36761 -> 198.28.0.2:53 1 64 1 2025-11-04 14:23:47.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36761 1 109 1 2025-11-04 14:23:47.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49334 1 80 1 2025-11-04 14:20:06.836 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-04 14:24:47.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54204 1 109 1 2025-11-04 14:24:47.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33152 1 80 1 2025-11-04 14:24:47.556 00:00:00.000 UDP 28.104.0.1:54204 -> 198.28.0.2:53 1 64 1 2025-11-04 14:24:47.556 00:00:00.000 UDP 28.104.0.1:33152 -> 198.28.0.2:53 1 64 1 2025-11-04 14:20:52.807 00:05:08.500 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:25:47.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45864 1 80 1 2025-11-04 14:25:47.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55965 1 109 1 2025-11-04 14:25:47.855 00:00:00.000 UDP 28.104.0.1:55965 -> 198.28.0.2:53 1 64 1 2025-11-04 14:25:47.855 00:00:00.000 UDP 28.104.0.1:45864 -> 198.28.0.2:53 1 64 1 2025-11-04 14:26:48.186 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55510 1 80 1 2025-11-04 14:26:48.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33705 1 109 1 2025-11-04 14:26:48.175 00:00:00.000 UDP 28.104.0.1:55510 -> 198.28.0.2:53 1 64 1 2025-11-04 14:26:48.175 00:00:00.000 UDP 28.104.0.1:33705 -> 198.28.0.2:53 1 64 1 2025-11-04 14:22:52.807 00:05:08.580 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:27:37.053 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:27:48.471 00:00:00.000 UDP 28.104.0.1:49783 -> 198.28.0.2:53 1 64 1 2025-11-04 14:27:48.471 00:00:00.000 UDP 28.104.0.1:56950 -> 198.28.0.2:53 1 64 1 2025-11-04 14:27:48.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56950 1 80 1 2025-11-04 14:27:48.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49783 1 109 1 2025-11-04 14:24:01.296 00:04:00.089 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 14:24:01.296 00:04:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 14:23:52.818 00:05:08.480 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:28:48.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59793 1 109 1 2025-11-04 14:28:48.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55510 1 80 1 2025-11-04 14:28:48.766 00:00:00.000 UDP 28.104.0.1:59793 -> 198.28.0.2:53 1 64 1 2025-11-04 14:28:48.767 00:00:00.000 UDP 28.104.0.1:55510 -> 198.28.0.2:53 1 64 1 2025-11-04 14:24:52.857 00:05:08.524 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:25:26.843 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2648 1 2025-11-04 14:29:49.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59865 1 80 1 2025-11-04 14:29:49.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37640 1 109 1 2025-11-04 14:29:49.063 00:00:00.000 UDP 28.104.0.1:37640 -> 198.28.0.2:53 1 64 1 2025-11-04 14:29:49.063 00:00:00.000 UDP 28.104.0.1:59865 -> 198.28.0.2:53 1 64 1 2025-11-04 14:29:01.297 00:01:00.089 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:29:01.297 00:01:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:30:49.367 00:00:00.000 UDP 28.104.0.1:51321 -> 198.28.0.2:53 1 64 1 2025-11-04 14:30:49.367 00:00:00.000 UDP 28.104.0.1:36660 -> 198.28.0.2:53 1 64 1 2025-11-04 14:30:49.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51321 1 80 1 2025-11-04 14:30:49.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36660 1 109 1 2025-11-04 14:26:52.808 00:05:08.501 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:31:49.735 00:00:00.000 UDP 28.104.0.1:43561 -> 198.28.0.2:53 1 64 1 2025-11-04 14:31:49.736 00:00:00.000 UDP 28.104.0.1:58638 -> 198.28.0.2:53 1 64 1 2025-11-04 14:31:49.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43561 1 109 1 2025-11-04 14:31:49.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58638 1 80 1 2025-11-04 14:32:37.643 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:32:50.054 00:00:00.000 UDP 28.104.0.1:33381 -> 198.28.0.2:53 1 64 1 2025-11-04 14:32:50.053 00:00:00.000 UDP 28.104.0.1:56560 -> 198.28.0.2:53 1 64 1 2025-11-04 14:32:50.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33381 1 109 1 2025-11-04 14:32:50.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56560 1 80 1 2025-11-04 14:31:01.299 00:02:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 14:31:01.299 00:02:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 14:28:52.811 00:05:08.581 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:33:50.354 00:00:00.000 UDP 28.104.0.1:44810 -> 198.28.0.2:53 1 64 1 2025-11-04 14:33:50.354 00:00:00.000 UDP 28.104.0.1:43105 -> 198.28.0.2:53 1 64 1 2025-11-04 14:33:50.364 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44810 1 80 1 2025-11-04 14:33:50.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43105 1 109 1 2025-11-04 14:29:52.822 00:05:08.478 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:34:50.656 00:00:00.000 UDP 28.104.0.1:42024 -> 198.28.0.2:53 1 64 1 2025-11-04 14:34:50.656 00:00:00.000 UDP 28.104.0.1:35376 -> 198.28.0.2:53 1 64 1 2025-11-04 14:34:50.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35376 1 109 1 2025-11-04 14:34:50.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42024 1 80 1 2025-11-04 14:30:46.849 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3124 1 2025-11-04 14:34:01.299 00:01:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:34:01.299 00:01:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:30:52.861 00:05:08.522 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:35:50.962 00:00:00.000 UDP 28.104.0.1:40779 -> 198.28.0.2:53 1 64 1 2025-11-04 14:35:50.962 00:00:00.000 UDP 28.104.0.1:55507 -> 198.28.0.2:53 1 64 1 2025-11-04 14:35:50.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40779 1 80 1 2025-11-04 14:35:50.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55507 1 109 1 2025-11-04 14:36:51.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58665 1 109 1 2025-11-04 14:36:51.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43578 1 80 1 2025-11-04 14:36:51.261 00:00:00.000 UDP 28.104.0.1:58665 -> 198.28.0.2:53 1 64 1 2025-11-04 14:36:51.261 00:00:00.000 UDP 28.104.0.1:43578 -> 198.28.0.2:53 1 64 1 2025-11-04 14:32:52.812 00:05:08.499 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:37:37.578 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:37:51.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45537 1 80 1 2025-11-04 14:37:51.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40483 1 109 1 2025-11-04 14:37:51.556 00:00:00.000 UDP 28.104.0.1:40483 -> 198.28.0.2:53 1 64 1 2025-11-04 14:37:51.556 00:00:00.000 UDP 28.104.0.1:45537 -> 198.28.0.2:53 1 64 1 2025-11-04 14:36:01.301 00:02:00.086 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 14:36:01.301 00:02:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 14:38:51.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57177 1 109 1 2025-11-04 14:38:51.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37078 1 80 1 2025-11-04 14:38:51.853 00:00:00.000 UDP 28.104.0.1:57177 -> 198.28.0.2:53 1 64 1 2025-11-04 14:38:51.853 00:00:00.000 UDP 28.104.0.1:37078 -> 198.28.0.2:53 1 64 1 2025-11-04 14:34:52.812 00:05:08.582 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:39:52.182 00:00:00.000 UDP 28.104.0.1:37448 -> 198.28.0.2:53 1 64 1 2025-11-04 14:39:52.182 00:00:00.000 UDP 28.104.0.1:37488 -> 198.28.0.2:53 1 64 1 2025-11-04 14:39:52.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37448 1 80 1 2025-11-04 14:39:52.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37488 1 109 1 2025-11-04 14:39:01.300 00:01:00.088 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:39:01.300 00:01:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:35:52.823 00:05:08.477 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:36:06.861 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2768 1 2025-11-04 14:40:52.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55014 1 109 1 2025-11-04 14:40:52.526 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45795 1 80 1 2025-11-04 14:40:52.517 00:00:00.000 UDP 28.104.0.1:45795 -> 198.28.0.2:53 1 64 1 2025-11-04 14:40:52.517 00:00:00.000 UDP 28.104.0.1:55014 -> 198.28.0.2:53 1 64 1 2025-11-04 14:36:52.866 00:05:08.518 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:41:52.774 00:00:00.000 UDP 28.104.0.1:48445 -> 198.28.0.2:53 1 64 1 2025-11-04 14:41:52.774 00:00:00.000 UDP 28.104.0.1:40503 -> 198.28.0.2:53 1 64 1 2025-11-04 14:41:52.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40503 1 80 1 2025-11-04 14:41:52.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48445 1 109 1 2025-11-04 14:42:37.614 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:42:53.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41239 1 80 1 2025-11-04 14:42:53.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56287 1 109 1 2025-11-04 14:42:53.054 00:00:00.000 UDP 28.104.0.1:56287 -> 198.28.0.2:53 1 64 1 2025-11-04 14:42:53.053 00:00:00.000 UDP 28.104.0.1:41239 -> 198.28.0.2:53 1 64 1 2025-11-04 14:41:01.301 00:02:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-04 14:41:01.301 00:02:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-04 14:38:52.817 00:05:08.494 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:43:53.346 00:00:00.000 UDP 28.104.0.1:59474 -> 198.28.0.2:53 1 64 1 2025-11-04 14:43:53.345 00:00:00.000 UDP 28.104.0.1:48176 -> 198.28.0.2:53 1 64 1 2025-11-04 14:43:53.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59474 1 109 1 2025-11-04 14:43:53.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48176 1 80 1 2025-11-04 14:44:53.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45785 1 80 1 2025-11-04 14:44:53.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58745 1 109 1 2025-11-04 14:44:53.679 00:00:00.000 UDP 28.104.0.1:58745 -> 198.28.0.2:53 1 64 1 2025-11-04 14:44:53.678 00:00:00.000 UDP 28.104.0.1:45785 -> 198.28.0.2:53 1 64 1 2025-11-04 14:44:01.302 00:01:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-04 14:44:01.302 00:01:00.102 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-04 14:40:52.819 00:05:08.579 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:41:26.870 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2960 1 2025-11-04 14:45:53.942 00:00:00.000 UDP 28.104.0.1:39964 -> 198.28.0.2:53 1 64 1 2025-11-04 14:45:53.942 00:00:00.000 UDP 28.104.0.1:48576 -> 198.28.0.2:53 1 64 1 2025-11-04 14:45:53.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39964 1 80 1 2025-11-04 14:45:53.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48576 1 109 1 2025-11-04 14:41:52.829 00:05:08.473 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:46:54.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49209 1 109 1 2025-11-04 14:46:54.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36060 1 80 1 2025-11-04 14:46:54.214 00:00:00.000 UDP 28.104.0.1:49209 -> 198.28.0.2:53 1 64 1 2025-11-04 14:46:54.213 00:00:00.000 UDP 28.104.0.1:36060 -> 198.28.0.2:53 1 64 1 2025-11-04 14:42:52.869 00:05:08.519 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:47:37.755 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:47:54.554 00:00:00.000 UDP 28.104.0.1:45350 -> 198.28.0.2:53 1 64 1 2025-11-04 14:47:54.555 00:00:00.000 UDP 28.104.0.1:55644 -> 198.28.0.2:53 1 64 1 2025-11-04 14:47:54.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45350 1 109 1 2025-11-04 14:47:54.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55644 1 80 1 2025-11-04 14:48:54.850 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-11-04 14:48:54.850 00:00:00.000 UDP 28.104.0.1:48975 -> 198.28.0.2:53 1 64 1 2025-11-04 14:48:54.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48975 1 80 1 2025-11-04 14:48:54.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 109 1 2025-11-04 14:44:52.820 00:05:08.494 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:49:55.177 00:00:00.000 UDP 28.104.0.1:34046 -> 198.28.0.2:53 1 64 1 2025-11-04 14:49:55.177 00:00:00.000 UDP 28.104.0.1:34520 -> 198.28.0.2:53 1 64 1 2025-11-04 14:49:55.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34520 1 80 1 2025-11-04 14:49:55.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34046 1 109 1 2025-11-04 14:46:01.302 00:04:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 14:46:01.302 00:04:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 14:46:46.873 00:05:00.310 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2480 1 2025-11-04 14:50:55.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58075 1 109 1 2025-11-04 14:50:55.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46795 1 80 1 2025-11-04 14:50:55.473 00:00:00.000 UDP 28.104.0.1:58075 -> 198.28.0.2:53 1 64 1 2025-11-04 14:50:55.473 00:00:00.000 UDP 28.104.0.1:46795 -> 198.28.0.2:53 1 64 1 2025-11-04 14:46:52.822 00:05:08.576 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:51:55.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49355 1 109 1 2025-11-04 14:51:55.734 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47991 1 80 1 2025-11-04 14:51:55.724 00:00:00.000 UDP 28.104.0.1:47991 -> 198.28.0.2:53 1 64 1 2025-11-04 14:51:55.724 00:00:00.000 UDP 28.104.0.1:49355 -> 198.28.0.2:53 1 64 1 2025-11-04 14:47:52.832 00:05:08.472 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:52:37.902 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:52:56.040 00:00:00.000 UDP 28.104.0.1:51122 -> 198.28.0.2:53 1 64 1 2025-11-04 14:52:56.041 00:00:00.000 UDP 28.104.0.1:38861 -> 198.28.0.2:53 1 64 1 2025-11-04 14:52:56.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51122 1 80 1 2025-11-04 14:52:56.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38861 1 109 1 2025-11-04 14:48:52.874 00:05:08.517 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-04 14:53:56.435 00:00:00.000 UDP 28.104.0.1:50038 -> 198.28.0.2:53 1 64 1 2025-11-04 14:53:56.435 00:00:00.000 UDP 28.104.0.1:42622 -> 198.28.0.2:53 1 64 1 2025-11-04 14:53:56.445 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42622 1 80 1 2025-11-04 14:53:56.445 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50038 1 109 1 2025-11-04 14:54:56.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33634 1 80 1 2025-11-04 14:54:56.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32805 1 109 1 2025-11-04 14:54:56.734 00:00:00.000 UDP 28.104.0.1:32805 -> 198.28.0.2:53 1 64 1 2025-11-04 14:54:56.734 00:00:00.000 UDP 28.104.0.1:33634 -> 198.28.0.2:53 1 64 1 2025-11-04 14:51:01.305 00:04:00.087 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-04 14:51:01.305 00:04:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-04 14:50:52.822 00:05:08.493 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-04 14:55:57.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35810 1 109 1 2025-11-04 14:55:57.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47055 1 80 1 2025-11-04 14:55:57.053 00:00:00.000 UDP 28.104.0.1:35810 -> 198.28.0.2:53 1 64 1 2025-11-04 14:55:57.053 00:00:00.000 UDP 28.104.0.1:47055 -> 198.28.0.2:53 1 64 1 2025-11-04 14:51:56.890 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-04 14:56:57.351 00:00:00.000 UDP 28.104.0.1:37232 -> 198.28.0.2:53 1 64 1 2025-11-04 14:56:57.351 00:00:00.000 UDP 28.104.0.1:56400 -> 198.28.0.2:53 1 64 1 2025-11-04 14:52:52.823 00:05:08.577 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-04 14:56:57.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37232 1 109 1 2025-11-04 14:56:57.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56400 1 80 1 2025-11-04 14:57:37.965 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-04 14:57:57.661 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45770 1 109 1 2025-11-04 14:57:57.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43209 1 80 1 2025-11-04 14:57:57.651 00:00:00.000 UDP 28.104.0.1:43209 -> 198.28.0.2:53 1 64 1 2025-11-04 14:53:52.834 00:05:08.473 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-04 14:57:57.651 00:00:00.000 UDP 28.104.0.1:45770 -> 198.28.0.2:53 1 64 1 Summary: total flows: 335, total bytes: 95673, total packets: 1411, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-04 13:54:52 - 2025-11-04 14:59:01 Total flows processed: 335, passed: 335, Blocks skipped: 0, Bytes read: 34904 Sys: 0.0033s User: 0.0033s Wall: 0.0033s flows/second: 101392.1 Runtime: 0.0033s