Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 03:54:05.003 00:05:51.491 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 03:59:00.954 00:00:00.000 UDP 28.104.0.1:57420 -> 198.28.0.2:53 1 64 1 2025-11-12 03:59:00.954 00:00:00.000 UDP 28.104.0.1:58498 -> 198.28.0.2:53 1 64 1 2025-11-12 03:59:00.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58498 1 109 1 2025-11-12 03:59:00.964 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57420 1 80 1 2025-11-12 03:54:56.443 00:05:08.509 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:00:01.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52726 1 109 1 2025-11-12 04:00:01.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48636 1 80 1 2025-11-12 04:00:01.306 00:00:00.000 UDP 28.104.0.1:52726 -> 198.28.0.2:53 1 64 1 2025-11-12 04:00:01.306 00:00:00.000 UDP 28.104.0.1:48636 -> 198.28.0.2:53 1 64 1 2025-11-12 03:55:56.443 00:05:08.571 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 03:56:42.114 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-12 04:01:01.607 00:00:00.000 UDP 28.104.0.1:36928 -> 198.28.0.2:53 1 64 1 2025-11-12 04:01:01.607 00:00:00.000 UDP 28.104.0.1:50569 -> 198.28.0.2:53 1 64 1 2025-11-12 03:56:04.940 00:05:51.515 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:01:01.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50569 1 109 1 2025-11-12 04:01:01.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36928 1 80 1 2025-11-12 04:01:16.006 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:02:01.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53904 1 109 1 2025-11-12 04:02:01.926 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35861 1 80 1 2025-11-12 04:02:01.915 00:00:00.000 UDP 28.104.0.1:35861 -> 198.28.0.2:53 1 64 1 2025-11-12 04:02:01.915 00:00:00.000 UDP 28.104.0.1:53904 -> 198.28.0.2:53 1 64 1 2025-11-12 03:59:04.941 00:05:00.175 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 03:59:04.941 00:05:00.270 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:03:02.230 00:00:00.000 UDP 28.104.0.1:56694 -> 198.28.0.2:53 1 64 1 2025-11-12 04:03:02.230 00:00:00.000 UDP 28.104.0.1:38050 -> 198.28.0.2:53 1 64 1 2025-11-12 04:03:02.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38050 1 80 1 2025-11-12 04:03:02.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56694 1 109 1 2025-11-12 04:04:02.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52504 1 109 1 2025-11-12 04:04:02.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34321 1 80 1 2025-11-12 04:04:02.513 00:00:00.000 UDP 28.104.0.1:52504 -> 198.28.0.2:53 1 64 1 2025-11-12 04:04:02.513 00:00:00.000 UDP 28.104.0.1:34321 -> 198.28.0.2:53 1 64 1 2025-11-12 04:00:05.009 00:05:51.486 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:05:02.808 00:00:00.000 UDP 28.104.0.1:34805 -> 198.28.0.2:53 1 64 1 2025-11-12 04:05:02.808 00:00:00.000 UDP 28.104.0.1:59988 -> 198.28.0.2:53 1 64 1 2025-11-12 04:05:02.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34805 1 109 1 2025-11-12 04:00:56.443 00:05:08.508 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:05:02.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59988 1 80 1 2025-11-12 04:01:56.444 00:05:08.571 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:06:03.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52451 1 80 1 2025-11-12 04:06:03.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35789 1 109 1 2025-11-12 04:06:03.105 00:00:00.000 UDP 28.104.0.1:35789 -> 198.28.0.2:53 1 64 1 2025-11-12 04:06:03.106 00:00:00.000 UDP 28.104.0.1:52451 -> 198.28.0.2:53 1 64 1 2025-11-12 04:06:15.845 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:02:02.120 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2812 1 2025-11-12 04:02:04.941 00:05:51.513 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:07:03.395 00:00:00.000 UDP 28.104.0.1:40294 -> 198.28.0.2:53 1 64 1 2025-11-12 04:07:03.395 00:00:00.000 UDP 28.104.0.1:50535 -> 198.28.0.2:53 1 64 1 2025-11-12 04:07:03.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50535 1 109 1 2025-11-12 04:07:03.405 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40294 1 80 1 2025-11-12 04:08:03.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57122 1 80 1 2025-11-12 04:08:03.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44538 1 109 1 2025-11-12 04:08:03.696 00:00:00.000 UDP 28.104.0.1:44538 -> 198.28.0.2:53 1 64 1 2025-11-12 04:08:03.697 00:00:00.000 UDP 28.104.0.1:57122 -> 198.28.0.2:53 1 64 1 2025-11-12 04:09:04.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53039 1 80 1 2025-11-12 04:09:04.004 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41823 1 109 1 2025-11-12 04:09:03.993 00:00:00.000 UDP 28.104.0.1:53039 -> 198.28.0.2:53 1 64 1 2025-11-12 04:05:04.942 00:05:00.202 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:05:04.942 00:05:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:09:03.993 00:00:00.000 UDP 28.104.0.1:41823 -> 198.28.0.2:53 1 64 1 2025-11-12 04:10:04.340 00:00:00.000 UDP 28.104.0.1:60677 -> 198.28.0.2:53 1 64 1 2025-11-12 04:10:04.340 00:00:00.000 UDP 28.104.0.1:38902 -> 198.28.0.2:53 1 64 1 2025-11-12 04:10:04.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38902 1 109 1 2025-11-12 04:10:04.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60677 1 80 1 2025-11-12 04:06:05.005 00:05:51.491 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:06:56.445 00:05:08.509 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:11:04.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40721 1 109 1 2025-11-12 04:11:04.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53719 1 80 1 2025-11-12 04:11:04.640 00:00:00.000 UDP 28.104.0.1:40721 -> 198.28.0.2:53 1 64 1 2025-11-12 04:11:04.640 00:00:00.000 UDP 28.104.0.1:53719 -> 198.28.0.2:53 1 64 1 2025-11-12 04:11:15.888 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:07:22.122 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3224 1 2025-11-12 04:07:56.445 00:05:08.631 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:12:04.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56761 1 109 1 2025-11-12 04:12:04.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35022 1 80 1 2025-11-12 04:12:04.937 00:00:00.000 UDP 28.104.0.1:56761 -> 198.28.0.2:53 1 64 1 2025-11-12 04:12:04.937 00:00:00.000 UDP 28.104.0.1:35022 -> 198.28.0.2:53 1 64 1 2025-11-12 04:08:04.942 00:05:51.513 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:13:05.243 00:00:00.000 UDP 28.104.0.1:40511 -> 198.28.0.2:53 1 64 1 2025-11-12 04:13:05.243 00:00:00.000 UDP 28.104.0.1:42485 -> 198.28.0.2:53 1 64 1 2025-11-12 04:13:05.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42485 1 109 1 2025-11-12 04:13:05.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40511 1 80 1 2025-11-12 04:14:05.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38204 1 80 1 2025-11-12 04:14:05.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56204 1 109 1 2025-11-12 04:14:05.496 00:00:00.000 UDP 28.104.0.1:38204 -> 198.28.0.2:53 1 64 1 2025-11-12 04:14:05.496 00:00:00.000 UDP 28.104.0.1:56204 -> 198.28.0.2:53 1 64 1 2025-11-12 04:15:05.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60369 1 109 1 2025-11-12 04:15:05.754 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34207 1 80 1 2025-11-12 04:15:05.743 00:00:00.000 UDP 28.104.0.1:34207 -> 198.28.0.2:53 1 64 1 2025-11-12 04:11:04.943 00:05:00.213 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:11:04.943 00:05:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:15:05.743 00:00:00.000 UDP 28.104.0.1:60369 -> 198.28.0.2:53 1 64 1 2025-11-12 04:16:05.997 00:00:00.000 UDP 28.104.0.1:36446 -> 198.28.0.2:53 1 64 1 2025-11-12 04:16:05.997 00:00:00.000 UDP 28.104.0.1:60052 -> 198.28.0.2:53 1 64 1 2025-11-12 04:16:06.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60052 1 109 1 2025-11-12 04:16:06.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36446 1 80 1 2025-11-12 04:16:16.218 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:12:42.129 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2688 1 2025-11-12 04:12:05.065 00:05:51.435 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:12:56.446 00:05:08.509 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:17:06.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53057 1 109 1 2025-11-12 04:17:06.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50454 1 80 1 2025-11-12 04:17:06.266 00:00:00.000 UDP 28.104.0.1:53057 -> 198.28.0.2:53 1 64 1 2025-11-12 04:17:06.266 00:00:00.000 UDP 28.104.0.1:50454 -> 198.28.0.2:53 1 64 1 2025-11-12 04:18:06.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55351 1 109 1 2025-11-12 04:13:56.445 00:05:08.631 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:18:06.573 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53506 1 80 1 2025-11-12 04:18:06.563 00:00:00.000 UDP 28.104.0.1:53506 -> 198.28.0.2:53 1 64 1 2025-11-12 04:18:06.563 00:00:00.000 UDP 28.104.0.1:55351 -> 198.28.0.2:53 1 64 1 2025-11-12 04:14:04.944 00:05:51.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:19:06.867 00:00:00.000 UDP 28.104.0.1:56802 -> 198.28.0.2:53 1 64 1 2025-11-12 04:19:06.867 00:00:00.000 UDP 28.104.0.1:55264 -> 198.28.0.2:53 1 64 1 2025-11-12 04:19:06.878 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55264 1 109 1 2025-11-12 04:19:06.877 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56802 1 80 1 2025-11-12 04:20:07.192 00:00:00.000 UDP 28.104.0.1:49788 -> 198.28.0.2:53 1 64 1 2025-11-12 04:20:07.191 00:00:00.000 UDP 28.104.0.1:52890 -> 198.28.0.2:53 1 64 1 2025-11-12 04:20:07.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52890 1 80 1 2025-11-12 04:20:07.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49788 1 109 1 2025-11-12 04:17:04.944 00:05:00.215 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:17:04.944 00:05:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:21:07.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34570 1 80 1 2025-11-12 04:21:07.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37907 1 109 1 2025-11-12 04:21:07.497 00:00:00.000 UDP 28.104.0.1:37907 -> 198.28.0.2:53 1 64 1 2025-11-12 04:21:07.497 00:00:00.000 UDP 28.104.0.1:34570 -> 198.28.0.2:53 1 64 1 2025-11-12 04:21:15.927 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:22:07.791 00:00:00.000 UDP 28.104.0.1:38160 -> 198.28.0.2:53 1 64 1 2025-11-12 04:22:07.791 00:00:00.000 UDP 28.104.0.1:57901 -> 198.28.0.2:53 1 64 1 2025-11-12 04:22:07.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38160 1 80 1 2025-11-12 04:22:07.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57901 1 109 1 2025-11-12 04:18:02.137 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2540 1 2025-11-12 04:18:05.067 00:05:51.436 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:18:56.450 00:05:08.506 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:23:08.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58119 1 109 1 2025-11-12 04:23:08.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40327 1 80 1 2025-11-12 04:23:08.102 00:00:00.000 UDP 28.104.0.1:58119 -> 198.28.0.2:53 1 64 1 2025-11-12 04:23:08.103 00:00:00.000 UDP 28.104.0.1:40327 -> 198.28.0.2:53 1 64 1 2025-11-12 04:19:56.451 00:05:08.631 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:24:08.399 00:00:00.000 UDP 28.104.0.1:39686 -> 198.28.0.2:53 1 64 1 2025-11-12 04:24:08.399 00:00:00.000 UDP 28.104.0.1:39276 -> 198.28.0.2:53 1 64 1 2025-11-12 04:24:08.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39276 1 80 1 2025-11-12 04:24:08.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39686 1 109 1 2025-11-12 04:20:04.945 00:05:51.517 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:25:08.746 00:00:00.000 UDP 28.104.0.1:38110 -> 198.28.0.2:53 1 64 1 2025-11-12 04:25:08.746 00:00:00.000 UDP 28.104.0.1:42691 -> 198.28.0.2:53 1 64 1 2025-11-12 04:25:08.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42691 1 80 1 2025-11-12 04:25:08.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38110 1 109 1 2025-11-12 04:26:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41630 1 109 1 2025-11-12 04:26:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60228 1 80 1 2025-11-12 04:26:09.055 00:00:00.000 UDP 28.104.0.1:60228 -> 198.28.0.2:53 1 64 1 2025-11-12 04:26:09.055 00:00:00.000 UDP 28.104.0.1:41630 -> 198.28.0.2:53 1 64 1 2025-11-12 04:26:16.295 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:23:04.947 00:05:00.214 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:23:04.947 00:05:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:27:09.353 00:00:00.000 UDP 28.104.0.1:33819 -> 198.28.0.2:53 1 64 1 2025-11-12 04:27:09.353 00:00:00.000 UDP 28.104.0.1:44101 -> 198.28.0.2:53 1 64 1 2025-11-12 04:27:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33819 1 80 1 2025-11-12 04:27:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44101 1 109 1 2025-11-12 04:23:22.138 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-12 04:28:09.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33114 1 80 1 2025-11-12 04:28:09.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46287 1 109 1 2025-11-12 04:28:09.659 00:00:00.000 UDP 28.104.0.1:46287 -> 198.28.0.2:53 1 64 1 2025-11-12 04:28:09.659 00:00:00.000 UDP 28.104.0.1:33114 -> 198.28.0.2:53 1 64 1 2025-11-12 04:24:05.070 00:05:51.433 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:24:56.453 00:05:08.505 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:29:09.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42231 1 80 1 2025-11-12 04:29:09.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34424 1 109 1 2025-11-12 04:29:09.957 00:00:00.000 UDP 28.104.0.1:34424 -> 198.28.0.2:53 1 64 1 2025-11-12 04:29:09.957 00:00:00.000 UDP 28.104.0.1:42231 -> 198.28.0.2:53 1 64 1 2025-11-12 04:25:56.452 00:05:08.632 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:30:10.301 00:00:00.000 UDP 28.104.0.1:59104 -> 198.28.0.2:53 1 64 1 2025-11-12 04:30:10.301 00:00:00.000 UDP 28.104.0.1:50341 -> 198.28.0.2:53 1 64 1 2025-11-12 04:30:10.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50341 1 80 1 2025-11-12 04:30:10.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59104 1 109 1 2025-11-12 04:26:04.946 00:05:51.516 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:31:10.596 00:00:00.000 UDP 28.104.0.1:36426 -> 198.28.0.2:53 1 64 1 2025-11-12 04:31:10.596 00:00:00.000 UDP 28.104.0.1:53971 -> 198.28.0.2:53 1 64 1 2025-11-12 04:31:10.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53971 1 109 1 2025-11-12 04:31:10.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36426 1 80 1 2025-11-12 04:31:16.428 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:32:21.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36339 1 80 1 2025-11-12 04:32:21.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44031 1 109 1 2025-11-12 04:32:21.772 00:00:00.000 UDP 28.104.0.1:36339 -> 198.28.0.2:53 1 64 1 2025-11-12 04:32:21.772 00:00:00.000 UDP 28.104.0.1:44031 -> 198.28.0.2:53 1 64 1 2025-11-12 04:28:42.146 00:05:10.803 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 3144 1 2025-11-12 04:29:04.948 00:05:00.217 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:29:04.948 00:05:00.272 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:33:22.087 00:00:00.000 UDP 28.104.0.1:38181 -> 198.28.0.2:53 1 64 1 2025-11-12 04:33:22.087 00:00:00.000 UDP 28.104.0.1:51389 -> 198.28.0.2:53 1 64 1 2025-11-12 04:33:22.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51389 1 80 1 2025-11-12 04:33:22.098 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38181 1 109 1 2025-11-12 04:34:22.854 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41413 1 80 1 2025-11-12 04:34:22.854 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57538 1 109 1 2025-11-12 04:34:22.844 00:00:00.000 UDP 28.104.0.1:57538 -> 198.28.0.2:53 1 64 1 2025-11-12 04:34:22.844 00:00:00.000 UDP 28.104.0.1:41413 -> 198.28.0.2:53 1 64 1 2025-11-12 04:30:05.074 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:30:56.453 00:05:08.507 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:35:23.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39720 1 80 1 2025-11-12 04:35:23.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53237 1 109 1 2025-11-12 04:35:23.165 00:00:00.000 UDP 28.104.0.1:39720 -> 198.28.0.2:53 1 64 1 2025-11-12 04:35:23.164 00:00:00.000 UDP 28.104.0.1:53237 -> 198.28.0.2:53 1 64 1 2025-11-12 04:31:56.452 00:05:08.633 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:36:16.563 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:36:23.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45074 1 80 1 2025-11-12 04:36:23.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58805 1 109 1 2025-11-12 04:36:23.453 00:00:00.000 UDP 28.104.0.1:58805 -> 198.28.0.2:53 1 64 1 2025-11-12 04:36:23.453 00:00:00.000 UDP 28.104.0.1:45074 -> 198.28.0.2:53 1 64 1 2025-11-12 04:32:04.950 00:05:51.515 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:37:23.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36183 1 80 1 2025-11-12 04:37:23.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35688 1 109 1 2025-11-12 04:37:23.705 00:00:00.000 UDP 28.104.0.1:36183 -> 198.28.0.2:53 1 64 1 2025-11-12 04:37:23.705 00:00:00.000 UDP 28.104.0.1:35688 -> 198.28.0.2:53 1 64 1 2025-11-12 04:34:02.152 00:05:10.938 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3036 1 2025-11-12 04:38:24.003 00:00:00.000 UDP 28.104.0.1:44994 -> 198.28.0.2:53 1 64 1 2025-11-12 04:38:24.003 00:00:00.000 UDP 28.104.0.1:54251 -> 198.28.0.2:53 1 64 1 2025-11-12 04:38:24.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54251 1 109 1 2025-11-12 04:38:24.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44994 1 80 1 2025-11-12 04:35:04.949 00:05:00.217 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:35:04.949 00:05:00.271 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:39:24.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34173 1 80 1 2025-11-12 04:39:24.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47698 1 109 1 2025-11-12 04:39:24.310 00:00:00.000 UDP 28.104.0.1:34173 -> 198.28.0.2:53 1 64 1 2025-11-12 04:39:24.310 00:00:00.000 UDP 28.104.0.1:47698 -> 198.28.0.2:53 1 64 1 2025-11-12 04:40:24.611 00:00:00.000 UDP 28.104.0.1:52423 -> 198.28.0.2:53 1 64 1 2025-11-12 04:40:24.611 00:00:00.000 UDP 28.104.0.1:56594 -> 198.28.0.2:53 1 64 1 2025-11-12 04:40:24.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52423 1 109 1 2025-11-12 04:40:24.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56594 1 80 1 2025-11-12 04:36:05.076 00:05:51.430 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:36:56.455 00:05:08.515 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:41:16.933 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:41:24.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55625 1 80 1 2025-11-12 04:41:24.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54636 1 109 1 2025-11-12 04:41:24.917 00:00:00.000 UDP 28.104.0.1:54636 -> 198.28.0.2:53 1 64 1 2025-11-12 04:41:24.917 00:00:00.000 UDP 28.104.0.1:55625 -> 198.28.0.2:53 1 64 1 2025-11-12 04:37:56.455 00:05:08.632 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:42:25.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46056 1 80 1 2025-11-12 04:42:25.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45135 1 109 1 2025-11-12 04:42:25.246 00:00:00.000 UDP 28.104.0.1:45135 -> 198.28.0.2:53 1 64 1 2025-11-12 04:42:25.246 00:00:00.000 UDP 28.104.0.1:46056 -> 198.28.0.2:53 1 64 1 2025-11-12 04:38:04.959 00:05:51.507 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:43:25.533 00:00:00.000 UDP 28.104.0.1:37357 -> 198.28.0.2:53 1 64 1 2025-11-12 04:43:25.533 00:00:00.000 UDP 28.104.0.1:38244 -> 198.28.0.2:53 1 64 1 2025-11-12 04:43:25.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38244 1 80 1 2025-11-12 04:43:25.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37357 1 109 1 2025-11-12 04:39:22.158 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2916 1 2025-11-12 04:44:25.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58411 1 80 1 2025-11-12 04:44:25.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54872 1 109 1 2025-11-12 04:44:25.828 00:00:00.000 UDP 28.104.0.1:54872 -> 198.28.0.2:53 1 64 1 2025-11-12 04:44:25.828 00:00:00.000 UDP 28.104.0.1:58411 -> 198.28.0.2:53 1 64 1 2025-11-12 04:41:04.960 00:05:00.208 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:41:04.960 00:05:00.262 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:45:26.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34227 1 80 1 2025-11-12 04:45:26.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53180 1 109 1 2025-11-12 04:45:26.118 00:00:00.000 UDP 28.104.0.1:53180 -> 198.28.0.2:53 1 64 1 2025-11-12 04:45:26.118 00:00:00.000 UDP 28.104.0.1:34227 -> 198.28.0.2:53 1 64 1 2025-11-12 04:46:16.716 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:46:26.372 00:00:00.000 UDP 28.104.0.1:54036 -> 198.28.0.2:53 1 64 1 2025-11-12 04:46:26.372 00:00:00.000 UDP 28.104.0.1:49675 -> 198.28.0.2:53 1 64 1 2025-11-12 04:46:26.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49675 1 80 1 2025-11-12 04:46:26.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54036 1 109 1 2025-11-12 04:42:05.076 00:05:51.430 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:42:56.455 00:05:08.515 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:47:26.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58568 1 80 1 2025-11-12 04:47:26.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40487 1 109 1 2025-11-12 04:47:26.637 00:00:00.000 UDP 28.104.0.1:58568 -> 198.28.0.2:53 1 64 1 2025-11-12 04:47:26.637 00:00:00.000 UDP 28.104.0.1:40487 -> 198.28.0.2:53 1 64 1 2025-11-12 04:43:56.457 00:05:08.630 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:48:26.939 00:00:00.000 UDP 28.104.0.1:47868 -> 198.28.0.2:53 1 64 1 2025-11-12 04:48:26.939 00:00:00.000 UDP 28.104.0.1:43585 -> 198.28.0.2:53 1 64 1 2025-11-12 04:48:26.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43585 1 80 1 2025-11-12 04:48:26.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47868 1 109 1 2025-11-12 04:44:42.163 00:05:10.017 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-12 04:44:04.960 00:05:51.509 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:49:27.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52793 1 109 1 2025-11-12 04:49:27.262 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43007 1 80 1 2025-11-12 04:49:27.252 00:00:00.000 UDP 28.104.0.1:52793 -> 198.28.0.2:53 1 64 1 2025-11-12 04:49:27.252 00:00:00.000 UDP 28.104.0.1:43007 -> 198.28.0.2:53 1 64 1 2025-11-12 04:50:27.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47624 1 80 1 2025-11-12 04:50:27.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39510 1 109 1 2025-11-12 04:50:27.546 00:00:00.000 UDP 28.104.0.1:47624 -> 198.28.0.2:53 1 64 1 2025-11-12 04:50:27.545 00:00:00.000 UDP 28.104.0.1:39510 -> 198.28.0.2:53 1 64 1 2025-11-12 04:47:04.961 00:05:00.211 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:47:04.961 00:05:00.261 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:51:16.772 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:51:27.835 00:00:00.000 UDP 28.104.0.1:55597 -> 198.28.0.2:53 1 64 1 2025-11-12 04:51:27.834 00:00:00.000 UDP 28.104.0.1:34162 -> 198.28.0.2:53 1 64 1 2025-11-12 04:51:27.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34162 1 109 1 2025-11-12 04:51:27.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55597 1 80 1 2025-11-12 04:52:28.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48526 1 80 1 2025-11-12 04:52:28.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42296 1 109 1 2025-11-12 04:52:28.132 00:00:00.000 UDP 28.104.0.1:42296 -> 198.28.0.2:53 1 64 1 2025-11-12 04:52:28.132 00:00:00.000 UDP 28.104.0.1:48526 -> 198.28.0.2:53 1 64 1 2025-11-12 04:48:05.077 00:05:51.432 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 04:48:56.457 00:05:08.518 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 04:53:28.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47104 1 109 1 2025-11-12 04:53:28.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48151 1 80 1 2025-11-12 04:53:28.426 00:00:00.000 UDP 28.104.0.1:47104 -> 198.28.0.2:53 1 64 1 2025-11-12 04:53:28.426 00:00:00.000 UDP 28.104.0.1:48151 -> 198.28.0.2:53 1 64 1 2025-11-12 04:49:56.458 00:05:08.633 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 04:50:02.182 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-12 04:54:28.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44397 1 80 1 2025-11-12 04:54:28.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48469 1 109 1 2025-11-12 04:54:28.719 00:00:00.000 UDP 28.104.0.1:44397 -> 198.28.0.2:53 1 64 1 2025-11-12 04:54:28.719 00:00:00.000 UDP 28.104.0.1:48469 -> 198.28.0.2:53 1 64 1 2025-11-12 04:50:04.961 00:05:51.508 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 04:55:29.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44390 1 80 1 2025-11-12 04:55:29.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34864 1 109 1 2025-11-12 04:55:29.043 00:00:00.000 UDP 28.104.0.1:34864 -> 198.28.0.2:53 1 64 1 2025-11-12 04:55:29.043 00:00:00.000 UDP 28.104.0.1:44390 -> 198.28.0.2:53 1 64 1 2025-11-12 04:56:16.876 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 04:56:29.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39612 1 80 1 2025-11-12 04:56:29.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33551 1 109 1 2025-11-12 04:56:29.338 00:00:00.000 UDP 28.104.0.1:39612 -> 198.28.0.2:53 1 64 1 2025-11-12 04:56:29.338 00:00:00.000 UDP 28.104.0.1:33551 -> 198.28.0.2:53 1 64 1 2025-11-12 04:53:04.962 00:05:00.213 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-12 04:53:04.962 00:05:00.268 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-12 04:57:29.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40788 1 80 1 2025-11-12 04:57:29.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54125 1 109 1 2025-11-12 04:57:29.603 00:00:00.000 UDP 28.104.0.1:54125 -> 198.28.0.2:53 1 64 1 2025-11-12 04:57:29.603 00:00:00.000 UDP 28.104.0.1:40788 -> 198.28.0.2:53 1 64 1 2025-11-12 04:58:29.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33754 1 80 1 2025-11-12 04:58:29.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47753 1 109 1 2025-11-12 04:58:29.902 00:00:00.000 UDP 28.104.0.1:33754 -> 198.28.0.2:53 1 64 1 2025-11-12 04:58:29.903 00:00:00.000 UDP 28.104.0.1:47753 -> 198.28.0.2:53 1 64 1 Summary: total flows: 323, total bytes: 96112, total packets: 1417, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-12 03:54:05 - 2025-11-12 04:58:29 Total flows processed: 323, passed: 323, Blocks skipped: 0, Bytes read: 33656 Sys: 0.0029s User: 0.0038s Wall: 0.0029s flows/second: 109714.9 Runtime: 0.0030s