Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-10 04:54:04.013 00:05:51.584 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 04:59:02.030 00:00:00.000 UDP 28.104.0.1:43577 -> 198.28.0.2:53 1 64 1 2025-11-10 04:59:02.030 00:00:00.000 UDP 28.104.0.1:50772 -> 198.28.0.2:53 1 64 1 2025-11-10 04:59:02.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50772 1 109 1 2025-11-10 04:59:02.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43577 1 80 1 2025-11-10 04:55:03.946 00:05:51.601 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:00:02.277 00:00:00.000 UDP 28.104.0.1:43507 -> 198.28.0.2:53 1 64 1 2025-11-10 05:00:02.277 00:00:00.000 UDP 28.104.0.1:43839 -> 198.28.0.2:53 1 64 1 2025-11-10 05:00:02.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43507 1 80 1 2025-11-10 05:00:02.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43839 1 109 1 2025-11-10 05:00:19.275 00:00:00.011 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:01:02.527 00:00:00.000 UDP 28.104.0.1:41720 -> 198.28.0.2:53 1 64 1 2025-11-10 05:01:02.527 00:00:00.000 UDP 28.104.0.1:57083 -> 198.28.0.2:53 1 64 1 2025-11-10 05:01:02.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57083 1 109 1 2025-11-10 05:01:02.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41720 1 80 1 2025-11-10 04:56:55.546 00:05:08.479 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 04:57:03.937 00:05:51.621 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:02:02.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52226 1 80 1 2025-11-10 05:02:02.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45965 1 109 1 2025-11-10 05:02:02.837 00:00:00.000 UDP 28.104.0.1:45965 -> 198.28.0.2:53 1 64 1 2025-11-10 05:02:02.838 00:00:00.000 UDP 28.104.0.1:52226 -> 198.28.0.2:53 1 64 1 2025-11-10 04:58:03.937 00:05:00.311 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 04:57:58.240 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3044 1 2025-11-10 05:03:03.099 00:00:00.000 UDP 28.104.0.1:49669 -> 198.28.0.2:53 1 64 1 2025-11-10 05:03:03.099 00:00:00.000 UDP 28.104.0.1:44243 -> 198.28.0.2:53 1 64 1 2025-11-10 05:03:03.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49669 1 80 1 2025-11-10 05:03:03.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44243 1 109 1 2025-11-10 05:00:03.938 00:05:00.160 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:04:03.398 00:00:00.000 UDP 28.104.0.1:35365 -> 198.28.0.2:53 1 64 1 2025-11-10 05:04:03.398 00:00:00.000 UDP 28.104.0.1:45692 -> 198.28.0.2:53 1 64 1 2025-11-10 05:04:03.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35365 1 80 1 2025-11-10 05:04:03.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45692 1 109 1 2025-11-10 05:00:04.015 00:05:51.584 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:05:03.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45250 1 109 1 2025-11-10 05:05:03.658 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41737 1 80 1 2025-11-10 05:05:03.649 00:00:00.000 UDP 28.104.0.1:41737 -> 198.28.0.2:53 1 64 1 2025-11-10 05:05:03.649 00:00:00.000 UDP 28.104.0.1:45250 -> 198.28.0.2:53 1 64 1 2025-11-10 05:05:19.385 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:01:03.949 00:05:51.600 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:06:03.906 00:00:00.000 UDP 28.104.0.1:50360 -> 198.28.0.2:53 1 64 1 2025-11-10 05:06:03.908 00:00:00.000 UDP 28.104.0.1:60505 -> 198.28.0.2:53 1 64 1 2025-11-10 05:06:03.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60505 1 109 1 2025-11-10 05:06:03.916 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50360 1 80 1 2025-11-10 05:02:55.547 00:05:08.479 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:07:04.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58748 1 109 1 2025-11-10 05:07:04.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43579 1 80 1 2025-11-10 05:07:04.205 00:00:00.000 UDP 28.104.0.1:43579 -> 198.28.0.2:53 1 64 1 2025-11-10 05:07:04.205 00:00:00.000 UDP 28.104.0.1:58748 -> 198.28.0.2:53 1 64 1 2025-11-10 05:03:18.253 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2728 1 2025-11-10 05:03:03.939 00:05:51.621 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:08:04.471 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59809 1 109 1 2025-11-10 05:08:04.471 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50192 1 80 1 2025-11-10 05:08:04.461 00:00:00.000 UDP 28.104.0.1:50192 -> 198.28.0.2:53 1 64 1 2025-11-10 05:04:03.939 00:05:00.313 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:08:04.461 00:00:00.000 UDP 28.104.0.1:59809 -> 198.28.0.2:53 1 64 1 2025-11-10 05:09:04.769 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50213 1 80 1 2025-11-10 05:09:04.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38066 1 109 1 2025-11-10 05:09:04.759 00:00:00.000 UDP 28.104.0.1:38066 -> 198.28.0.2:53 1 64 1 2025-11-10 05:09:04.759 00:00:00.000 UDP 28.104.0.1:50213 -> 198.28.0.2:53 1 64 1 2025-11-10 05:06:03.939 00:05:00.160 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:10:05.057 00:00:00.000 UDP 28.104.0.1:38363 -> 198.28.0.2:53 1 64 1 2025-11-10 05:10:05.057 00:00:00.000 UDP 28.104.0.1:43020 -> 198.28.0.2:53 1 64 1 2025-11-10 05:10:05.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38363 1 109 1 2025-11-10 05:10:05.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43020 1 80 1 2025-11-10 05:10:19.439 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:06:04.017 00:05:51.585 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:11:05.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51033 1 109 1 2025-11-10 05:11:05.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33777 1 80 1 2025-11-10 05:11:05.310 00:00:00.000 UDP 28.104.0.1:51033 -> 198.28.0.2:53 1 64 1 2025-11-10 05:11:05.310 00:00:00.000 UDP 28.104.0.1:33777 -> 198.28.0.2:53 1 64 1 2025-11-10 05:07:03.949 00:05:51.603 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:12:05.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59706 1 109 1 2025-11-10 05:12:05.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51351 1 80 1 2025-11-10 05:12:05.560 00:00:00.000 UDP 28.104.0.1:59706 -> 198.28.0.2:53 1 64 1 2025-11-10 05:12:05.560 00:00:00.000 UDP 28.104.0.1:51351 -> 198.28.0.2:53 1 64 1 2025-11-10 05:08:38.258 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2384 1 2025-11-10 05:13:05.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56163 1 80 1 2025-11-10 05:08:55.549 00:05:08.479 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:13:05.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47916 1 109 1 2025-11-10 05:13:05.851 00:00:00.000 UDP 28.104.0.1:56163 -> 198.28.0.2:53 1 64 1 2025-11-10 05:13:05.851 00:00:00.000 UDP 28.104.0.1:47916 -> 198.28.0.2:53 1 64 1 2025-11-10 05:09:03.940 00:05:51.623 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:10:03.941 00:05:00.312 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:14:06.170 00:00:00.000 UDP 28.104.0.1:39668 -> 198.28.0.2:53 1 64 1 2025-11-10 05:14:06.170 00:00:00.000 UDP 28.104.0.1:41762 -> 198.28.0.2:53 1 64 1 2025-11-10 05:14:06.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39668 1 80 1 2025-11-10 05:14:06.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41762 1 109 1 2025-11-10 05:15:06.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43420 1 80 1 2025-11-10 05:15:06.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53682 1 109 1 2025-11-10 05:15:06.463 00:00:00.000 UDP 28.104.0.1:43420 -> 198.28.0.2:53 1 64 1 2025-11-10 05:15:06.463 00:00:00.000 UDP 28.104.0.1:53682 -> 198.28.0.2:53 1 64 1 2025-11-10 05:15:19.469 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:16:06.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34801 1 109 1 2025-11-10 05:16:06.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51032 1 80 1 2025-11-10 05:12:03.941 00:05:00.161 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:16:06.787 00:00:00.000 UDP 28.104.0.1:51032 -> 198.28.0.2:53 1 64 1 2025-11-10 05:16:06.787 00:00:00.000 UDP 28.104.0.1:34801 -> 198.28.0.2:53 1 64 1 2025-11-10 05:12:04.018 00:05:51.588 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:17:07.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38973 1 80 1 2025-11-10 05:17:07.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42764 1 109 1 2025-11-10 05:17:07.101 00:00:00.000 UDP 28.104.0.1:38973 -> 198.28.0.2:53 1 64 1 2025-11-10 05:17:07.101 00:00:00.000 UDP 28.104.0.1:42764 -> 198.28.0.2:53 1 64 1 2025-11-10 05:13:03.950 00:05:51.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:18:07.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48259 1 80 1 2025-11-10 05:13:58.265 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-10 05:18:07.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50640 1 109 1 2025-11-10 05:18:07.395 00:00:00.000 UDP 28.104.0.1:50640 -> 198.28.0.2:53 1 64 1 2025-11-10 05:18:07.395 00:00:00.000 UDP 28.104.0.1:48259 -> 198.28.0.2:53 1 64 1 2025-11-10 05:14:55.552 00:05:08.476 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:19:07.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57665 1 80 1 2025-11-10 05:19:07.702 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47629 1 109 1 2025-11-10 05:19:07.692 00:00:00.000 UDP 28.104.0.1:57665 -> 198.28.0.2:53 1 64 1 2025-11-10 05:19:07.692 00:00:00.000 UDP 28.104.0.1:47629 -> 198.28.0.2:53 1 64 1 2025-11-10 05:15:03.941 00:05:51.626 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:16:03.941 00:05:00.312 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:20:07.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49544 1 109 1 2025-11-10 05:20:07.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48463 1 80 1 2025-11-10 05:20:07.982 00:00:00.000 UDP 28.104.0.1:48463 -> 198.28.0.2:53 1 64 1 2025-11-10 05:20:07.983 00:00:00.000 UDP 28.104.0.1:49544 -> 198.28.0.2:53 1 64 1 2025-11-10 05:20:19.586 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:21:08.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37232 1 109 1 2025-11-10 05:21:08.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57039 1 80 1 2025-11-10 05:21:08.279 00:00:00.000 UDP 28.104.0.1:37232 -> 198.28.0.2:53 1 64 1 2025-11-10 05:21:08.279 00:00:00.000 UDP 28.104.0.1:57039 -> 198.28.0.2:53 1 64 1 2025-11-10 05:18:03.942 00:05:00.161 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:22:08.583 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40988 1 109 1 2025-11-10 05:22:08.583 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60046 1 80 1 2025-11-10 05:22:08.573 00:00:00.000 UDP 28.104.0.1:60046 -> 198.28.0.2:53 1 64 1 2025-11-10 05:22:08.573 00:00:00.000 UDP 28.104.0.1:40988 -> 198.28.0.2:53 1 64 1 2025-11-10 05:18:04.019 00:05:51.590 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:23:08.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53480 1 80 1 2025-11-10 05:23:08.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52721 1 109 1 2025-11-10 05:23:08.863 00:00:00.000 UDP 28.104.0.1:53480 -> 198.28.0.2:53 1 64 1 2025-11-10 05:23:08.863 00:00:00.000 UDP 28.104.0.1:52721 -> 198.28.0.2:53 1 64 1 2025-11-10 05:19:18.278 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2876 1 2025-11-10 05:19:03.951 00:05:51.608 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:24:09.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38458 1 80 1 2025-11-10 05:24:09.187 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45833 1 109 1 2025-11-10 05:24:09.176 00:00:00.000 UDP 28.104.0.1:38458 -> 198.28.0.2:53 1 64 1 2025-11-10 05:24:09.176 00:00:00.000 UDP 28.104.0.1:45833 -> 198.28.0.2:53 1 64 1 2025-11-10 05:20:55.556 00:05:08.473 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:25:09.470 00:00:00.000 UDP 28.104.0.1:44455 -> 198.28.0.2:53 1 64 1 2025-11-10 05:25:09.470 00:00:00.000 UDP 28.104.0.1:50682 -> 198.28.0.2:53 1 64 1 2025-11-10 05:25:09.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50682 1 109 1 2025-11-10 05:25:09.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44455 1 80 1 2025-11-10 05:25:19.750 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:21:03.942 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:22:03.942 00:05:00.312 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:26:10.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59196 1 80 1 2025-11-10 05:26:10.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43379 1 109 1 2025-11-10 05:26:10.266 00:00:00.000 UDP 28.104.0.1:59196 -> 198.28.0.2:53 1 64 1 2025-11-10 05:26:10.266 00:00:00.000 UDP 28.104.0.1:43379 -> 198.28.0.2:53 1 64 1 2025-11-10 05:27:10.570 00:00:00.000 UDP 28.104.0.1:35787 -> 198.28.0.2:53 1 64 1 2025-11-10 05:27:10.570 00:00:00.000 UDP 28.104.0.1:39791 -> 198.28.0.2:53 1 64 1 2025-11-10 05:27:10.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39791 1 80 1 2025-11-10 05:27:10.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35787 1 109 1 2025-11-10 05:24:03.942 00:05:00.161 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:28:10.875 00:00:00.000 UDP 28.104.0.1:35637 -> 198.28.0.2:53 1 64 1 2025-11-10 05:28:10.875 00:00:00.000 UDP 28.104.0.1:42252 -> 198.28.0.2:53 1 64 1 2025-11-10 05:28:10.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35637 1 109 1 2025-11-10 05:28:10.885 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42252 1 80 1 2025-11-10 05:24:38.288 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3304 1 2025-11-10 05:24:04.019 00:05:51.591 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:29:11.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60842 1 80 1 2025-11-10 05:29:11.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41750 1 109 1 2025-11-10 05:29:11.180 00:00:00.000 UDP 28.104.0.1:60842 -> 198.28.0.2:53 1 64 1 2025-11-10 05:29:11.180 00:00:00.000 UDP 28.104.0.1:41750 -> 198.28.0.2:53 1 64 1 2025-11-10 05:25:03.952 00:05:51.608 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:30:11.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53529 1 109 1 2025-11-10 05:30:11.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50216 1 80 1 2025-11-10 05:30:11.475 00:00:00.000 UDP 28.104.0.1:53529 -> 198.28.0.2:53 1 64 1 2025-11-10 05:30:11.475 00:00:00.000 UDP 28.104.0.1:50216 -> 198.28.0.2:53 1 64 1 2025-11-10 05:30:19.949 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:26:55.560 00:05:08.472 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:31:11.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50579 1 80 1 2025-11-10 05:31:11.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34820 1 109 1 2025-11-10 05:31:11.767 00:00:00.000 UDP 28.104.0.1:50579 -> 198.28.0.2:53 1 64 1 2025-11-10 05:31:11.767 00:00:00.000 UDP 28.104.0.1:34820 -> 198.28.0.2:53 1 64 1 2025-11-10 05:27:03.944 00:05:51.628 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:28:03.944 00:05:00.313 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:32:12.031 00:00:00.000 UDP 28.104.0.1:48035 -> 198.28.0.2:53 1 64 1 2025-11-10 05:32:12.031 00:00:00.000 UDP 28.104.0.1:50029 -> 198.28.0.2:53 1 64 1 2025-11-10 05:32:12.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48035 1 80 1 2025-11-10 05:32:12.040 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50029 1 109 1 2025-11-10 05:33:12.336 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52903 1 109 1 2025-11-10 05:33:12.336 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34126 1 80 1 2025-11-10 05:33:12.325 00:00:00.000 UDP 28.104.0.1:52903 -> 198.28.0.2:53 1 64 1 2025-11-10 05:33:12.325 00:00:00.000 UDP 28.104.0.1:34126 -> 198.28.0.2:53 1 64 1 2025-11-10 05:30:03.945 00:05:00.159 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:29:58.294 00:05:10.499 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-11-10 05:34:12.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58866 1 80 1 2025-11-10 05:34:12.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58496 1 109 1 2025-11-10 05:34:12.579 00:00:00.000 UDP 28.104.0.1:58866 -> 198.28.0.2:53 1 64 1 2025-11-10 05:34:12.578 00:00:00.000 UDP 28.104.0.1:58496 -> 198.28.0.2:53 1 64 1 2025-11-10 05:30:04.020 00:05:51.592 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:35:12.872 00:00:00.000 UDP 28.104.0.1:43768 -> 198.28.0.2:53 1 64 1 2025-11-10 05:35:12.872 00:00:00.000 UDP 28.104.0.1:45424 -> 198.28.0.2:53 1 64 1 2025-11-10 05:35:12.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43768 1 109 1 2025-11-10 05:35:12.883 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45424 1 80 1 2025-11-10 05:35:19.920 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:31:03.955 00:05:51.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:36:13.178 00:00:00.000 UDP 28.104.0.1:46794 -> 198.28.0.2:53 1 64 1 2025-11-10 05:36:13.178 00:00:00.000 UDP 28.104.0.1:43660 -> 198.28.0.2:53 1 64 1 2025-11-10 05:36:13.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46794 1 80 1 2025-11-10 05:36:13.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43660 1 109 1 2025-11-10 05:32:55.561 00:05:08.474 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:37:13.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55830 1 109 1 2025-11-10 05:37:13.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35712 1 80 1 2025-11-10 05:37:13.471 00:00:00.000 UDP 28.104.0.1:55830 -> 198.28.0.2:53 1 64 1 2025-11-10 05:37:13.471 00:00:00.000 UDP 28.104.0.1:35712 -> 198.28.0.2:53 1 64 1 2025-11-10 05:33:03.947 00:05:51.626 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:34:03.946 00:05:00.311 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:38:13.765 00:00:00.000 UDP 28.104.0.1:38092 -> 198.28.0.2:53 1 64 1 2025-11-10 05:38:13.765 00:00:00.000 UDP 28.104.0.1:35254 -> 198.28.0.2:53 1 64 1 2025-11-10 05:38:13.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35254 1 80 1 2025-11-10 05:38:13.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38092 1 109 1 2025-11-10 05:39:14.040 00:00:00.000 UDP 28.104.0.1:57527 -> 198.28.0.2:53 1 64 1 2025-11-10 05:39:14.040 00:00:00.000 UDP 28.104.0.1:55450 -> 198.28.0.2:53 1 64 1 2025-11-10 05:39:14.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57527 1 80 1 2025-11-10 05:39:14.050 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55450 1 109 1 2025-11-10 05:35:18.302 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2728 1 2025-11-10 05:36:03.946 00:05:00.159 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:40:14.282 00:00:00.000 UDP 28.104.0.1:44877 -> 198.28.0.2:53 1 64 1 2025-11-10 05:40:14.282 00:00:00.000 UDP 28.104.0.1:33817 -> 198.28.0.2:53 1 64 1 2025-11-10 05:40:14.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33817 1 109 1 2025-11-10 05:40:14.292 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44877 1 80 1 2025-11-10 05:40:19.897 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:36:04.024 00:05:51.589 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:41:14.593 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36328 1 80 1 2025-11-10 05:41:14.593 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49403 1 109 1 2025-11-10 05:41:14.583 00:00:00.000 UDP 28.104.0.1:36328 -> 198.28.0.2:53 1 64 1 2025-11-10 05:41:14.583 00:00:00.000 UDP 28.104.0.1:49403 -> 198.28.0.2:53 1 64 1 2025-11-10 05:37:03.957 00:05:51.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:42:14.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55241 1 109 1 2025-11-10 05:42:14.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60251 1 80 1 2025-11-10 05:42:14.847 00:00:00.000 UDP 28.104.0.1:60251 -> 198.28.0.2:53 1 64 1 2025-11-10 05:42:14.847 00:00:00.000 UDP 28.104.0.1:55241 -> 198.28.0.2:53 1 64 1 2025-11-10 05:38:55.562 00:05:08.474 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:43:15.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42220 1 80 1 2025-11-10 05:43:15.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43025 1 109 1 2025-11-10 05:43:15.154 00:00:00.000 UDP 28.104.0.1:43025 -> 198.28.0.2:53 1 64 1 2025-11-10 05:43:15.153 00:00:00.000 UDP 28.104.0.1:42220 -> 198.28.0.2:53 1 64 1 2025-11-10 05:39:03.947 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:40:03.948 00:05:00.311 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:44:15.463 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49438 1 80 1 2025-11-10 05:44:15.461 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45469 1 109 1 2025-11-10 05:44:15.450 00:00:00.000 UDP 28.104.0.1:45469 -> 198.28.0.2:53 1 64 1 2025-11-10 05:44:15.451 00:00:00.000 UDP 28.104.0.1:49438 -> 198.28.0.2:53 1 64 1 2025-11-10 05:40:38.314 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-10 05:45:15.761 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34827 1 80 1 2025-11-10 05:45:15.760 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48282 1 109 1 2025-11-10 05:45:15.750 00:00:00.000 UDP 28.104.0.1:34827 -> 198.28.0.2:53 1 64 1 2025-11-10 05:45:15.750 00:00:00.000 UDP 28.104.0.1:48282 -> 198.28.0.2:53 1 64 1 2025-11-10 05:45:20.143 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:42:03.947 00:05:00.159 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:46:16.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47039 1 80 1 2025-11-10 05:46:16.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57201 1 109 1 2025-11-10 05:46:16.058 00:00:00.000 UDP 28.104.0.1:47039 -> 198.28.0.2:53 1 64 1 2025-11-10 05:46:16.058 00:00:00.000 UDP 28.104.0.1:57201 -> 198.28.0.2:53 1 64 1 2025-11-10 05:42:04.027 00:05:51.587 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:47:16.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47390 1 80 1 2025-11-10 05:47:16.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57674 1 109 1 2025-11-10 05:47:16.370 00:00:00.000 UDP 28.104.0.1:57674 -> 198.28.0.2:53 1 64 1 2025-11-10 05:47:16.370 00:00:00.000 UDP 28.104.0.1:47390 -> 198.28.0.2:53 1 64 1 2025-11-10 05:43:03.959 00:05:51.606 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:48:16.666 00:00:00.000 UDP 28.104.0.1:36701 -> 198.28.0.2:53 1 64 1 2025-11-10 05:48:16.668 00:00:00.000 UDP 28.104.0.1:56568 -> 198.28.0.2:53 1 64 1 2025-11-10 05:48:16.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56568 1 109 1 2025-11-10 05:48:16.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36701 1 80 1 2025-11-10 05:44:55.563 00:05:08.499 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:49:16.965 00:00:00.000 UDP 28.104.0.1:47535 -> 198.28.0.2:53 1 64 1 2025-11-10 05:49:16.965 00:00:00.000 UDP 28.104.0.1:36002 -> 198.28.0.2:53 1 64 1 2025-11-10 05:49:16.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47535 1 109 1 2025-11-10 05:49:16.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36002 1 80 1 2025-11-10 05:45:03.949 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:46:03.956 00:05:00.303 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:45:58.329 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2488 1 2025-11-10 05:50:20.208 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:50:17.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40604 1 80 1 2025-11-10 05:50:17.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53217 1 109 1 2025-11-10 05:50:17.266 00:00:00.000 UDP 28.104.0.1:40604 -> 198.28.0.2:53 1 64 1 2025-11-10 05:50:17.266 00:00:00.000 UDP 28.104.0.1:53217 -> 198.28.0.2:53 1 64 1 2025-11-10 05:51:17.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33320 1 109 1 2025-11-10 05:51:17.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47690 1 80 1 2025-11-10 05:51:17.525 00:00:00.000 UDP 28.104.0.1:47690 -> 198.28.0.2:53 1 64 1 2025-11-10 05:51:17.525 00:00:00.000 UDP 28.104.0.1:33320 -> 198.28.0.2:53 1 64 1 2025-11-10 05:48:03.948 00:05:00.159 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:52:17.829 00:00:00.000 UDP 28.104.0.1:39522 -> 198.28.0.2:53 1 64 1 2025-11-10 05:52:17.829 00:00:00.000 UDP 28.104.0.1:42839 -> 198.28.0.2:53 1 64 1 2025-11-10 05:52:17.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42839 1 109 1 2025-11-10 05:52:17.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39522 1 80 1 2025-11-10 05:48:04.028 00:05:51.590 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-10 05:53:18.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58159 1 109 1 2025-11-10 05:53:18.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34499 1 80 1 2025-11-10 05:53:18.096 00:00:00.000 UDP 28.104.0.1:34499 -> 198.28.0.2:53 1 64 1 2025-11-10 05:53:18.097 00:00:00.000 UDP 28.104.0.1:58159 -> 198.28.0.2:53 1 64 1 2025-11-10 05:49:03.960 00:05:51.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-10 05:54:18.386 00:00:00.000 UDP 28.104.0.1:39730 -> 198.28.0.2:53 1 64 1 2025-11-10 05:54:18.386 00:00:00.000 UDP 28.104.0.1:41003 -> 198.28.0.2:53 1 64 1 2025-11-10 05:54:18.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39730 1 109 1 2025-11-10 05:54:18.396 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41003 1 80 1 2025-11-10 05:50:55.565 00:05:08.506 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-10 05:55:20.233 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-10 05:51:18.337 00:05:00.793 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3316 1 2025-11-10 05:55:18.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39177 1 109 1 2025-11-10 05:55:18.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53741 1 80 1 2025-11-10 05:55:18.681 00:00:00.000 UDP 28.104.0.1:39177 -> 198.28.0.2:53 1 64 1 2025-11-10 05:55:18.681 00:00:00.000 UDP 28.104.0.1:53741 -> 198.28.0.2:53 1 64 1 2025-11-10 05:51:03.949 00:05:51.627 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-10 05:52:03.950 00:05:00.310 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-10 05:56:18.932 00:00:00.000 UDP 28.104.0.1:57714 -> 198.28.0.2:53 1 64 1 2025-11-10 05:56:18.933 00:00:00.000 UDP 28.104.0.1:42973 -> 198.28.0.2:53 1 64 1 2025-11-10 05:56:18.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57714 1 109 1 2025-11-10 05:56:18.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42973 1 80 1 2025-11-10 05:57:19.188 00:00:00.000 UDP 28.104.0.1:39004 -> 198.28.0.2:53 1 64 1 2025-11-10 05:57:19.188 00:00:00.000 UDP 28.104.0.1:55619 -> 198.28.0.2:53 1 64 1 2025-11-10 05:57:19.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39004 1 109 1 2025-11-10 05:57:19.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55619 1 80 1 2025-11-10 05:54:03.951 00:05:00.159 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-10 05:58:19.480 00:00:00.000 UDP 28.104.0.1:53253 -> 198.28.0.2:53 1 64 1 2025-11-10 05:58:19.480 00:00:00.000 UDP 28.104.0.1:52840 -> 198.28.0.2:53 1 64 1 2025-11-10 05:58:19.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52840 1 109 1 2025-11-10 05:58:19.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53253 1 80 1 Summary: total flows: 323, total bytes: 96264, total packets: 1420, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-11-10 04:54:04 - 2025-11-10 05:59:04 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0044s User: 0.0033s Wall: 0.0035s flows/second: 92148.0 Runtime: 0.0035s