Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-12 18:54:05.525 00:05:51.273 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 18:54:56.746 00:05:08.678 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 18:59:18.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49375 1 109 1 2025-11-12 18:59:18.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35171 1 80 1 2025-11-12 18:59:18.130 00:00:00.000 UDP 28.104.0.1:49375 -> 198.28.0.2:53 1 64 1 2025-11-12 18:59:18.130 00:00:00.000 UDP 28.104.0.1:35171 -> 198.28.0.2:53 1 64 1 2025-11-12 18:55:56.745 00:05:08.791 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 18:55:05.414 00:06:00.109 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 18:55:56.757 00:05:08.658 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 18:55:05.414 00:06:00.128 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:00:18.424 00:00:00.000 UDP 28.104.0.1:59234 -> 198.28.0.2:53 1 64 1 2025-11-12 19:00:18.424 00:00:00.000 UDP 28.104.0.1:36395 -> 198.28.0.2:53 1 64 1 2025-11-12 19:00:18.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36395 1 109 1 2025-11-12 19:00:18.434 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59234 1 80 1 2025-11-12 18:56:43.235 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2752 1 2025-11-12 19:01:18.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42848 1 109 1 2025-11-12 19:01:18.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47259 1 80 1 2025-11-12 19:01:18.713 00:00:00.000 UDP 28.104.0.1:42848 -> 198.28.0.2:53 1 64 1 2025-11-12 19:01:18.713 00:00:00.000 UDP 28.104.0.1:47259 -> 198.28.0.2:53 1 64 1 2025-11-12 19:01:33.968 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:02:19.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39864 1 80 1 2025-11-12 19:02:19.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58041 1 109 1 2025-11-12 19:02:19.002 00:00:00.000 UDP 28.104.0.1:58041 -> 198.28.0.2:53 1 64 1 2025-11-12 19:02:19.003 00:00:00.000 UDP 28.104.0.1:39864 -> 198.28.0.2:53 1 64 1 2025-11-12 19:03:19.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43550 1 109 1 2025-11-12 19:03:19.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51280 1 80 1 2025-11-12 19:03:19.268 00:00:00.000 UDP 28.104.0.1:51280 -> 198.28.0.2:53 1 64 1 2025-11-12 19:03:19.268 00:00:00.000 UDP 28.104.0.1:43550 -> 198.28.0.2:53 1 64 1 2025-11-12 19:04:19.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54866 1 109 1 2025-11-12 19:04:19.579 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60814 1 80 1 2025-11-12 19:04:19.568 00:00:00.000 UDP 28.104.0.1:54866 -> 198.28.0.2:53 1 64 1 2025-11-12 19:04:19.568 00:00:00.000 UDP 28.104.0.1:60814 -> 198.28.0.2:53 1 64 1 2025-11-12 19:00:05.526 00:05:51.273 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:00:56.748 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:05:19.825 00:00:00.000 UDP 28.104.0.1:45743 -> 198.28.0.2:53 1 64 1 2025-11-12 19:05:19.825 00:00:00.000 UDP 28.104.0.1:53129 -> 198.28.0.2:53 1 64 1 2025-11-12 19:05:19.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53129 1 80 1 2025-11-12 19:05:19.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45743 1 109 1 2025-11-12 19:01:56.758 00:05:08.662 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:01:56.748 00:05:08.791 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:02:03.243 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-12 19:06:20.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36795 1 80 1 2025-11-12 19:06:20.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60389 1 109 1 2025-11-12 19:06:20.128 00:00:00.000 UDP 28.104.0.1:60389 -> 198.28.0.2:53 1 64 1 2025-11-12 19:06:20.128 00:00:00.000 UDP 28.104.0.1:36795 -> 198.28.0.2:53 1 64 1 2025-11-12 19:06:34.109 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:02:05.415 00:06:00.117 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:02:05.415 00:06:00.130 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:07:20.417 00:00:00.000 UDP 28.104.0.1:56099 -> 198.28.0.2:53 1 64 1 2025-11-12 19:07:20.417 00:00:00.000 UDP 28.104.0.1:59028 -> 198.28.0.2:53 1 64 1 2025-11-12 19:07:20.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56099 1 80 1 2025-11-12 19:07:20.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59028 1 109 1 2025-11-12 19:08:20.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34398 1 80 1 2025-11-12 19:08:20.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48360 1 109 1 2025-11-12 19:08:20.709 00:00:00.000 UDP 28.104.0.1:48360 -> 198.28.0.2:53 1 64 1 2025-11-12 19:08:20.709 00:00:00.000 UDP 28.104.0.1:34398 -> 198.28.0.2:53 1 64 1 2025-11-12 19:09:21.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52226 1 80 1 2025-11-12 19:09:21.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58661 1 109 1 2025-11-12 19:09:21.004 00:00:00.000 UDP 28.104.0.1:52226 -> 198.28.0.2:53 1 64 1 2025-11-12 19:09:21.005 00:00:00.000 UDP 28.104.0.1:58661 -> 198.28.0.2:53 1 64 1 2025-11-12 19:10:21.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44755 1 80 1 2025-11-12 19:10:21.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52541 1 109 1 2025-11-12 19:10:21.309 00:00:00.000 UDP 28.104.0.1:52541 -> 198.28.0.2:53 1 64 1 2025-11-12 19:10:21.309 00:00:00.000 UDP 28.104.0.1:44755 -> 198.28.0.2:53 1 64 1 2025-11-12 19:06:05.529 00:05:51.274 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:06:56.749 00:05:08.693 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:11:21.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49334 1 80 1 2025-11-12 19:11:21.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38030 1 109 1 2025-11-12 19:11:21.609 00:00:00.000 UDP 28.104.0.1:38030 -> 198.28.0.2:53 1 64 1 2025-11-12 19:11:21.610 00:00:00.000 UDP 28.104.0.1:49334 -> 198.28.0.2:53 1 64 1 2025-11-12 19:11:34.253 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:07:23.248 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-12 19:07:56.759 00:05:08.672 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:07:56.749 00:05:08.791 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:12:21.921 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40179 1 80 1 2025-11-12 19:12:21.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58550 1 109 1 2025-11-12 19:12:21.912 00:00:00.000 UDP 28.104.0.1:58550 -> 198.28.0.2:53 1 64 1 2025-11-12 19:12:21.912 00:00:00.000 UDP 28.104.0.1:40179 -> 198.28.0.2:53 1 64 1 2025-11-12 19:13:22.231 00:00:00.000 UDP 28.104.0.1:42293 -> 198.28.0.2:53 1 64 1 2025-11-12 19:13:22.232 00:00:00.000 UDP 28.104.0.1:58026 -> 198.28.0.2:53 1 64 1 2025-11-12 19:13:22.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58026 1 109 1 2025-11-12 19:13:22.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42293 1 80 1 2025-11-12 19:09:05.431 00:06:00.102 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:09:05.431 00:06:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:14:22.527 00:00:00.000 UDP 28.104.0.1:53064 -> 198.28.0.2:53 1 64 1 2025-11-12 19:14:22.526 00:00:00.000 UDP 28.104.0.1:47942 -> 198.28.0.2:53 1 64 1 2025-11-12 19:14:22.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47942 1 80 1 2025-11-12 19:14:22.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53064 1 109 1 2025-11-12 19:15:22.825 00:00:00.000 UDP 28.104.0.1:55858 -> 198.28.0.2:53 1 64 1 2025-11-12 19:15:22.825 00:00:00.000 UDP 28.104.0.1:45146 -> 198.28.0.2:53 1 64 1 2025-11-12 19:15:22.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45146 1 80 1 2025-11-12 19:15:22.834 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55858 1 109 1 2025-11-12 19:16:33.402 00:00:00.000 UDP 28.104.0.1:47027 -> 198.28.0.2:53 1 64 1 2025-11-12 19:16:33.402 00:00:00.000 UDP 28.104.0.1:46329 -> 198.28.0.2:53 1 64 1 2025-11-12 19:16:34.342 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:16:33.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46329 1 109 1 2025-11-12 19:16:33.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47027 1 80 1 2025-11-12 19:12:43.253 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2836 1 2025-11-12 19:12:05.542 00:05:51.260 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:12:56.752 00:05:08.691 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:17:33.717 00:00:00.000 UDP 28.104.0.1:53378 -> 198.28.0.2:53 1 64 1 2025-11-12 19:17:33.717 00:00:00.000 UDP 28.104.0.1:60531 -> 198.28.0.2:53 1 64 1 2025-11-12 19:17:33.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53378 1 80 1 2025-11-12 19:17:33.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60531 1 109 1 2025-11-12 19:13:56.752 00:05:08.791 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:13:56.763 00:05:08.671 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:18:34.043 00:00:00.000 UDP 28.104.0.1:34017 -> 198.28.0.2:53 1 64 1 2025-11-12 19:18:34.043 00:00:00.000 UDP 28.104.0.1:54264 -> 198.28.0.2:53 1 64 1 2025-11-12 19:18:34.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34017 1 109 1 2025-11-12 19:18:34.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54264 1 80 1 2025-11-12 19:19:34.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48314 1 109 1 2025-11-12 19:19:34.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38830 1 80 1 2025-11-12 19:19:34.343 00:00:00.000 UDP 28.104.0.1:38830 -> 198.28.0.2:53 1 64 1 2025-11-12 19:19:34.343 00:00:00.000 UDP 28.104.0.1:48314 -> 198.28.0.2:53 1 64 1 2025-11-12 19:20:34.781 00:00:00.000 UDP 28.104.0.1:59542 -> 198.28.0.2:53 1 64 1 2025-11-12 19:20:34.781 00:00:00.000 UDP 28.104.0.1:45340 -> 198.28.0.2:53 1 64 1 2025-11-12 19:20:34.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59542 1 80 1 2025-11-12 19:20:34.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45340 1 109 1 2025-11-12 19:16:05.432 00:06:00.103 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:16:05.432 00:06:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:21:34.304 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:21:35.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43858 1 109 1 2025-11-12 19:21:35.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56890 1 80 1 2025-11-12 19:21:35.058 00:00:00.000 UDP 28.104.0.1:56890 -> 198.28.0.2:53 1 64 1 2025-11-12 19:21:35.059 00:00:00.000 UDP 28.104.0.1:43858 -> 198.28.0.2:53 1 64 1 2025-11-12 19:18:03.262 00:05:10.294 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2708 1 2025-11-12 19:22:35.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45440 1 80 1 2025-11-12 19:22:35.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60845 1 109 1 2025-11-12 19:22:35.350 00:00:00.000 UDP 28.104.0.1:45440 -> 198.28.0.2:53 1 64 1 2025-11-12 19:22:35.351 00:00:00.000 UDP 28.104.0.1:60845 -> 198.28.0.2:53 1 64 1 2025-11-12 19:18:05.532 00:05:51.272 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:18:56.753 00:05:08.691 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:23:35.609 00:00:00.000 UDP 28.104.0.1:50949 -> 198.28.0.2:53 1 64 1 2025-11-12 19:23:35.609 00:00:00.000 UDP 28.104.0.1:44039 -> 198.28.0.2:53 1 64 1 2025-11-12 19:23:35.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50949 1 80 1 2025-11-12 19:23:35.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44039 1 109 1 2025-11-12 19:19:56.753 00:05:08.790 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:19:56.763 00:05:08.670 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:24:35.902 00:00:00.000 UDP 28.104.0.1:39902 -> 198.28.0.2:53 1 64 1 2025-11-12 19:24:35.901 00:00:00.000 UDP 28.104.0.1:35539 -> 198.28.0.2:53 1 64 1 2025-11-12 19:24:35.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39902 1 109 1 2025-11-12 19:24:35.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35539 1 80 1 2025-11-12 19:25:36.178 00:00:00.000 UDP 28.104.0.1:34938 -> 198.28.0.2:53 1 64 1 2025-11-12 19:25:36.178 00:00:00.000 UDP 28.104.0.1:35145 -> 198.28.0.2:53 1 64 1 2025-11-12 19:25:36.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35145 1 80 1 2025-11-12 19:25:36.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34938 1 109 1 2025-11-12 19:26:34.539 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:26:36.448 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39094 1 109 1 2025-11-12 19:26:36.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36894 1 80 1 2025-11-12 19:26:36.434 00:00:00.000 UDP 28.104.0.1:39094 -> 198.28.0.2:53 1 64 1 2025-11-12 19:26:36.434 00:00:00.000 UDP 28.104.0.1:36894 -> 198.28.0.2:53 1 64 1 2025-11-12 19:27:36.736 00:00:00.000 UDP 28.104.0.1:40825 -> 198.28.0.2:53 1 64 1 2025-11-12 19:27:36.737 00:00:00.000 UDP 28.104.0.1:38412 -> 198.28.0.2:53 1 64 1 2025-11-12 19:27:36.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40825 1 109 1 2025-11-12 19:23:23.271 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3200 1 2025-11-12 19:27:36.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38412 1 80 1 2025-11-12 19:23:05.433 00:06:00.106 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:23:05.433 00:06:00.114 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:28:37.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45207 1 80 1 2025-11-12 19:28:37.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57650 1 109 1 2025-11-12 19:28:37.051 00:00:00.000 UDP 28.104.0.1:57650 -> 198.28.0.2:53 1 64 1 2025-11-12 19:28:37.051 00:00:00.000 UDP 28.104.0.1:45207 -> 198.28.0.2:53 1 64 1 2025-11-12 19:24:05.534 00:05:51.273 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:24:56.755 00:05:08.698 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:29:37.341 00:00:00.000 UDP 28.104.0.1:60841 -> 198.28.0.2:53 1 64 1 2025-11-12 19:29:37.341 00:00:00.000 UDP 28.104.0.1:36312 -> 198.28.0.2:53 1 64 1 2025-11-12 19:29:37.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36312 1 109 1 2025-11-12 19:29:37.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60841 1 80 1 2025-11-12 19:25:56.764 00:05:08.678 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:25:56.754 00:05:08.789 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:30:37.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54954 1 80 1 2025-11-12 19:30:37.695 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50852 1 109 1 2025-11-12 19:30:37.682 00:00:00.000 UDP 28.104.0.1:54954 -> 198.28.0.2:53 1 64 1 2025-11-12 19:30:37.682 00:00:00.000 UDP 28.104.0.1:50852 -> 198.28.0.2:53 1 64 1 2025-11-12 19:31:35.087 00:00:00.030 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:31:38.038 00:00:00.000 UDP 28.104.0.1:41716 -> 198.28.0.2:53 1 64 1 2025-11-12 19:31:38.038 00:00:00.000 UDP 28.104.0.1:56890 -> 198.28.0.2:53 1 64 1 2025-11-12 19:31:38.048 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41716 1 80 1 2025-11-12 19:31:38.048 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56890 1 109 1 2025-11-12 19:32:38.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50065 1 80 1 2025-11-12 19:32:38.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58495 1 109 1 2025-11-12 19:32:38.339 00:00:00.000 UDP 28.104.0.1:58495 -> 198.28.0.2:53 1 64 1 2025-11-12 19:32:38.339 00:00:00.000 UDP 28.104.0.1:50065 -> 198.28.0.2:53 1 64 1 2025-11-12 19:28:43.275 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-12 19:33:38.607 00:00:00.000 UDP 28.104.0.1:54851 -> 198.28.0.2:53 1 64 1 2025-11-12 19:33:38.607 00:00:00.000 UDP 28.104.0.1:58634 -> 198.28.0.2:53 1 64 1 2025-11-12 19:33:38.617 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58634 1 80 1 2025-11-12 19:33:38.617 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54851 1 109 1 2025-11-12 19:34:38.913 00:00:00.000 UDP 28.104.0.1:55956 -> 198.28.0.2:53 1 64 1 2025-11-12 19:34:38.913 00:00:00.000 UDP 28.104.0.1:35419 -> 198.28.0.2:53 1 64 1 2025-11-12 19:34:38.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35419 1 80 1 2025-11-12 19:34:38.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55956 1 109 1 2025-11-12 19:30:05.533 00:05:51.274 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:30:56.756 00:05:08.702 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:30:05.443 00:06:00.102 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:30:05.443 00:06:00.106 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:35:39.227 00:00:00.000 UDP 28.104.0.1:58912 -> 198.28.0.2:53 1 64 1 2025-11-12 19:35:39.227 00:00:00.000 UDP 28.104.0.1:44271 -> 198.28.0.2:53 1 64 1 2025-11-12 19:35:39.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58912 1 80 1 2025-11-12 19:35:39.237 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44271 1 109 1 2025-11-12 19:31:56.766 00:05:08.682 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:31:56.755 00:05:08.792 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:36:34.730 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:36:39.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59365 1 109 1 2025-11-12 19:36:39.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42509 1 80 1 2025-11-12 19:36:39.496 00:00:00.000 UDP 28.104.0.1:42509 -> 198.28.0.2:53 1 64 1 2025-11-12 19:36:39.496 00:00:00.000 UDP 28.104.0.1:59365 -> 198.28.0.2:53 1 64 1 2025-11-12 19:37:39.808 00:00:00.000 UDP 28.104.0.1:53109 -> 198.28.0.2:53 1 64 1 2025-11-12 19:37:39.808 00:00:00.000 UDP 28.104.0.1:37843 -> 198.28.0.2:53 1 64 1 2025-11-12 19:37:39.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53109 1 109 1 2025-11-12 19:37:39.819 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37843 1 80 1 2025-11-12 19:34:03.280 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-12 19:38:40.192 00:00:00.000 UDP 28.104.0.1:40273 -> 198.28.0.2:53 1 64 1 2025-11-12 19:38:40.192 00:00:00.000 UDP 28.104.0.1:50356 -> 198.28.0.2:53 1 64 1 2025-11-12 19:38:40.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50356 1 109 1 2025-11-12 19:38:40.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40273 1 80 1 2025-11-12 19:39:40.489 00:00:00.000 UDP 28.104.0.1:39944 -> 198.28.0.2:53 1 64 1 2025-11-12 19:39:40.489 00:00:00.000 UDP 28.104.0.1:42137 -> 198.28.0.2:53 1 64 1 2025-11-12 19:39:40.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39944 1 109 1 2025-11-12 19:39:40.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42137 1 80 1 2025-11-12 19:40:40.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41598 1 109 1 2025-11-12 19:40:40.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52128 1 80 1 2025-11-12 19:40:40.789 00:00:00.000 UDP 28.104.0.1:52128 -> 198.28.0.2:53 1 64 1 2025-11-12 19:40:40.789 00:00:00.000 UDP 28.104.0.1:41598 -> 198.28.0.2:53 1 64 1 2025-11-12 19:36:05.537 00:05:51.271 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:36:56.757 00:05:08.701 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:41:34.715 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:41:41.091 00:00:00.000 UDP 28.104.0.1:53425 -> 198.28.0.2:53 1 64 1 2025-11-12 19:41:41.091 00:00:00.000 UDP 28.104.0.1:45298 -> 198.28.0.2:53 1 64 1 2025-11-12 19:41:41.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53425 1 109 1 2025-11-12 19:41:41.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45298 1 80 1 2025-11-12 19:37:05.448 00:06:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:37:56.767 00:05:08.682 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:37:05.448 00:06:00.101 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:37:56.757 00:05:08.792 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:42:41.391 00:00:00.000 UDP 28.104.0.1:36144 -> 198.28.0.2:53 1 64 1 2025-11-12 19:42:41.391 00:00:00.000 UDP 28.104.0.1:41590 -> 198.28.0.2:53 1 64 1 2025-11-12 19:42:41.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36144 1 109 1 2025-11-12 19:42:41.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41590 1 80 1 2025-11-12 19:39:23.285 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2304 1 2025-11-12 19:43:41.694 00:00:00.000 UDP 28.104.0.1:34365 -> 198.28.0.2:53 1 64 1 2025-11-12 19:43:41.694 00:00:00.000 UDP 28.104.0.1:54773 -> 198.28.0.2:53 1 64 1 2025-11-12 19:43:41.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54773 1 109 1 2025-11-12 19:43:41.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34365 1 80 1 2025-11-12 19:44:41.993 00:00:00.000 UDP 28.104.0.1:45554 -> 198.28.0.2:53 1 64 1 2025-11-12 19:44:41.993 00:00:00.000 UDP 28.104.0.1:47323 -> 198.28.0.2:53 1 64 1 2025-11-12 19:44:42.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47323 1 80 1 2025-11-12 19:44:42.006 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45554 1 109 1 2025-11-12 19:45:42.290 00:00:00.000 UDP 28.104.0.1:37142 -> 198.28.0.2:53 1 64 1 2025-11-12 19:45:42.290 00:00:00.000 UDP 28.104.0.1:57107 -> 198.28.0.2:53 1 64 1 2025-11-12 19:45:42.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57107 1 109 1 2025-11-12 19:45:42.301 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37142 1 80 1 2025-11-12 19:46:34.896 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:46:42.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53257 1 80 1 2025-11-12 19:46:42.590 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51838 1 109 1 2025-11-12 19:46:42.579 00:00:00.000 UDP 28.104.0.1:53257 -> 198.28.0.2:53 1 64 1 2025-11-12 19:46:42.579 00:00:00.000 UDP 28.104.0.1:51838 -> 198.28.0.2:53 1 64 1 2025-11-12 19:42:05.539 00:05:51.271 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:42:56.758 00:05:08.702 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:47:42.833 00:00:00.000 UDP 28.104.0.1:34303 -> 198.28.0.2:53 1 64 1 2025-11-12 19:47:42.833 00:00:00.000 UDP 28.104.0.1:51528 -> 198.28.0.2:53 1 64 1 2025-11-12 19:47:42.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51528 1 80 1 2025-11-12 19:47:42.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34303 1 109 1 2025-11-12 19:43:56.768 00:05:08.682 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:43:56.758 00:05:08.794 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:48:43.130 00:00:00.000 UDP 28.104.0.1:55269 -> 198.28.0.2:53 1 64 1 2025-11-12 19:48:43.130 00:00:00.000 UDP 28.104.0.1:43892 -> 198.28.0.2:53 1 64 1 2025-11-12 19:48:43.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43892 1 80 1 2025-11-12 19:48:43.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55269 1 109 1 2025-11-12 19:44:43.292 00:05:10.023 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 3016 1 2025-11-12 19:44:05.449 00:06:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:44:05.449 00:06:00.103 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:49:43.446 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47143 1 109 1 2025-11-12 19:49:43.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35599 1 80 1 2025-11-12 19:49:43.435 00:00:00.000 UDP 28.104.0.1:35599 -> 198.28.0.2:53 1 64 1 2025-11-12 19:49:43.435 00:00:00.000 UDP 28.104.0.1:47143 -> 198.28.0.2:53 1 64 1 2025-11-12 19:50:43.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48678 1 109 1 2025-11-12 19:50:43.745 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46476 1 80 1 2025-11-12 19:50:43.735 00:00:00.000 UDP 28.104.0.1:46476 -> 198.28.0.2:53 1 64 1 2025-11-12 19:50:43.735 00:00:00.000 UDP 28.104.0.1:48678 -> 198.28.0.2:53 1 64 1 2025-11-12 19:51:35.376 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:51:44.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58920 1 109 1 2025-11-12 19:51:44.067 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55690 1 80 1 2025-11-12 19:51:44.056 00:00:00.000 UDP 28.104.0.1:55690 -> 198.28.0.2:53 1 64 1 2025-11-12 19:51:44.057 00:00:00.000 UDP 28.104.0.1:58920 -> 198.28.0.2:53 1 64 1 2025-11-12 19:52:44.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33869 1 109 1 2025-11-12 19:52:44.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56869 1 80 1 2025-11-12 19:52:44.353 00:00:00.000 UDP 28.104.0.1:33869 -> 198.28.0.2:53 1 64 1 2025-11-12 19:52:44.353 00:00:00.000 UDP 28.104.0.1:56869 -> 198.28.0.2:53 1 64 1 2025-11-12 19:48:05.540 00:05:51.273 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-12 19:48:56.761 00:05:08.700 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-12 19:53:44.652 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34238 1 109 1 2025-11-12 19:53:44.652 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38636 1 80 1 2025-11-12 19:53:44.641 00:00:00.000 UDP 28.104.0.1:34238 -> 198.28.0.2:53 1 64 1 2025-11-12 19:53:44.641 00:00:00.000 UDP 28.104.0.1:38636 -> 198.28.0.2:53 1 64 1 2025-11-12 19:49:56.771 00:05:08.681 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-12 19:49:56.761 00:05:08.792 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-12 19:50:03.315 00:05:00.726 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3076 1 2025-11-12 19:54:44.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34245 1 109 1 2025-11-12 19:54:44.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37250 1 80 1 2025-11-12 19:54:44.892 00:00:00.000 UDP 28.104.0.1:34245 -> 198.28.0.2:53 1 64 1 2025-11-12 19:54:44.892 00:00:00.000 UDP 28.104.0.1:37250 -> 198.28.0.2:53 1 64 1 2025-11-12 19:55:45.183 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56534 1 109 1 2025-11-12 19:55:45.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46802 1 80 1 2025-11-12 19:55:45.172 00:00:00.000 UDP 28.104.0.1:56534 -> 198.28.0.2:53 1 64 1 2025-11-12 19:55:45.171 00:00:00.000 UDP 28.104.0.1:46802 -> 198.28.0.2:53 1 64 1 2025-11-12 19:51:05.450 00:06:00.103 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-12 19:51:05.450 00:06:00.111 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-12 19:56:35.127 00:00:00.026 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-12 19:56:45.474 00:00:00.000 UDP 28.104.0.1:56828 -> 198.28.0.2:53 1 64 1 2025-11-12 19:56:45.474 00:00:00.000 UDP 28.104.0.1:52326 -> 198.28.0.2:53 1 64 1 2025-11-12 19:56:45.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56828 1 80 1 2025-11-12 19:56:45.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52326 1 109 1 2025-11-12 19:57:45.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43666 1 80 1 2025-11-12 19:57:45.782 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32851 1 109 1 2025-11-12 19:57:45.770 00:00:00.000 UDP 28.104.0.1:32851 -> 198.28.0.2:53 1 64 1 2025-11-12 19:57:45.770 00:00:00.000 UDP 28.104.0.1:43666 -> 198.28.0.2:53 1 64 1 2025-11-12 19:58:46.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38911 1 109 1 2025-11-12 19:58:46.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52039 1 80 1 2025-11-12 19:58:46.075 00:00:00.000 UDP 28.104.0.1:38911 -> 198.28.0.2:53 1 64 1 2025-11-12 19:58:46.075 00:00:00.000 UDP 28.104.0.1:52039 -> 198.28.0.2:53 1 64 1 Summary: total flows: 321, total bytes: 96858, total packets: 1430, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-12 18:54:05 - 2025-11-12 19:58:46 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0045s User: 0.0027s Wall: 0.0038s flows/second: 84608.3 Runtime: 0.0038s