Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 15:54:05.993 00:05:51.183 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 15:54:05.936 00:05:51.190 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 15:54:57.126 00:05:08.880 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 15:59:05.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36453 1 80 1 2025-11-13 15:59:05.480 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46586 1 109 1 2025-11-13 15:59:05.469 00:00:00.000 UDP 28.104.0.1:36453 -> 198.28.0.2:53 1 64 1 2025-11-13 15:59:05.469 00:00:00.000 UDP 28.104.0.1:46586 -> 198.28.0.2:53 1 64 1 2025-11-13 16:00:05.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45107 1 109 1 2025-11-13 16:00:05.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53865 1 80 1 2025-11-13 15:56:05.926 00:05:00.251 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 15:55:57.135 00:05:08.792 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:00:05.764 00:00:00.000 UDP 28.104.0.1:53865 -> 198.28.0.2:53 1 64 1 2025-11-13 16:00:05.763 00:00:00.000 UDP 28.104.0.1:45107 -> 198.28.0.2:53 1 64 1 2025-11-13 16:01:06.077 00:00:00.000 UDP 28.104.0.1:37500 -> 198.28.0.2:53 1 64 1 2025-11-13 16:01:06.077 00:00:00.000 UDP 28.104.0.1:51837 -> 198.28.0.2:53 1 64 1 2025-11-13 16:01:06.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37500 1 109 1 2025-11-13 16:01:06.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51837 1 80 1 2025-11-13 16:01:59.245 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:02:06.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54168 1 109 1 2025-11-13 15:57:54.844 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2776 1 2025-11-13 16:02:06.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47152 1 80 1 2025-11-13 16:02:06.382 00:00:00.000 UDP 28.104.0.1:54168 -> 198.28.0.2:53 1 64 1 2025-11-13 16:02:06.382 00:00:00.000 UDP 28.104.0.1:47152 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.682 00:00:00.000 UDP 28.104.0.1:60909 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.681 00:00:00.000 UDP 28.104.0.1:52917 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52917 1 80 1 2025-11-13 16:03:06.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60909 1 109 1 2025-11-13 15:59:05.927 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:04:06.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50804 1 109 1 2025-11-13 16:04:06.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46433 1 80 1 2025-11-13 16:04:06.984 00:00:00.000 UDP 28.104.0.1:46433 -> 198.28.0.2:53 1 64 1 2025-11-13 16:04:06.984 00:00:00.000 UDP 28.104.0.1:50804 -> 198.28.0.2:53 1 64 1 2025-11-13 16:00:05.938 00:05:51.189 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:00:05.994 00:05:51.182 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:00:57.126 00:05:08.883 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:05:07.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44912 1 109 1 2025-11-13 16:05:07.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45401 1 80 1 2025-11-13 16:05:07.285 00:00:00.000 UDP 28.104.0.1:44912 -> 198.28.0.2:53 1 64 1 2025-11-13 16:05:07.285 00:00:00.000 UDP 28.104.0.1:45401 -> 198.28.0.2:53 1 64 1 2025-11-13 16:02:05.928 00:05:00.253 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:01:57.141 00:05:08.788 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:06:07.589 00:00:00.000 UDP 28.104.0.1:35632 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:07.589 00:00:00.000 UDP 28.104.0.1:41991 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:07.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41991 1 80 1 2025-11-13 16:06:07.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35632 1 109 1 2025-11-13 16:06:59.605 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:07:07.898 00:00:00.000 UDP 28.104.0.1:49697 -> 198.28.0.2:53 1 64 1 2025-11-13 16:07:07.898 00:00:00.000 UDP 28.104.0.1:41523 -> 198.28.0.2:53 1 64 1 2025-11-13 16:07:07.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41523 1 109 1 2025-11-13 16:07:07.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49697 1 80 1 2025-11-13 16:03:14.849 00:05:10.015 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-13 16:08:08.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53786 1 80 1 2025-11-13 16:08:08.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 109 1 2025-11-13 16:08:08.200 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-11-13 16:08:08.200 00:00:00.000 UDP 28.104.0.1:53786 -> 198.28.0.2:53 1 64 1 2025-11-13 16:05:05.928 00:05:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:09:08.494 00:00:00.000 UDP 28.104.0.1:48664 -> 198.28.0.2:53 1 64 1 2025-11-13 16:09:08.494 00:00:00.000 UDP 28.104.0.1:56646 -> 198.28.0.2:53 1 64 1 2025-11-13 16:09:08.507 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48664 1 109 1 2025-11-13 16:09:08.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56646 1 80 1 2025-11-13 16:06:05.998 00:05:00.002 TCP 28.156.0.1:179 -> 28.151.0.1:39145 11 686 1 2025-11-13 16:10:08.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52074 1 80 1 2025-11-13 16:10:08.760 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53306 1 109 1 2025-11-13 16:10:08.749 00:00:00.000 UDP 28.104.0.1:53306 -> 198.28.0.2:53 1 64 1 2025-11-13 16:10:08.749 00:00:00.000 UDP 28.104.0.1:52074 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:05.938 00:05:51.192 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:06:57.127 00:05:08.883 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:11:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48219 1 80 1 2025-11-13 16:11:09.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49451 1 109 1 2025-11-13 16:11:09.054 00:00:00.000 UDP 28.104.0.1:49451 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:09.054 00:00:00.000 UDP 28.104.0.1:48219 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:59.219 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:08:05.929 00:05:00.257 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:07:57.138 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:12:09.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53479 1 109 1 2025-11-13 16:12:09.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35107 1 80 1 2025-11-13 16:12:09.300 00:00:00.000 UDP 28.104.0.1:53479 -> 198.28.0.2:53 1 64 1 2025-11-13 16:12:09.300 00:00:00.000 UDP 28.104.0.1:35107 -> 198.28.0.2:53 1 64 1 2025-11-13 16:08:34.866 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2628 1 2025-11-13 16:13:09.594 00:00:00.000 UDP 28.104.0.1:39637 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:09.594 00:00:00.000 UDP 28.104.0.1:50629 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:09.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39637 1 109 1 2025-11-13 16:13:09.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50629 1 80 1 2025-11-13 16:14:09.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50973 1 109 1 2025-11-13 16:14:09.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56948 1 80 1 2025-11-13 16:14:09.894 00:00:00.000 UDP 28.104.0.1:50973 -> 198.28.0.2:53 1 64 1 2025-11-13 16:14:09.893 00:00:00.000 UDP 28.104.0.1:56948 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:05.935 00:05:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:15:10.212 00:00:00.000 UDP 28.104.0.1:44251 -> 198.28.0.2:53 1 64 1 2025-11-13 16:15:10.211 00:00:00.000 UDP 28.104.0.1:45878 -> 198.28.0.2:53 1 64 1 2025-11-13 16:15:10.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45878 1 80 1 2025-11-13 16:15:10.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44251 1 109 1 2025-11-13 16:11:57.180 00:05:08.824 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:16:10.521 00:00:00.000 UDP 28.104.0.1:38885 -> 198.28.0.2:53 1 64 1 2025-11-13 16:16:10.520 00:00:00.000 UDP 28.104.0.1:51905 -> 198.28.0.2:53 1 64 1 2025-11-13 16:16:10.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51905 1 109 1 2025-11-13 16:16:10.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38885 1 80 1 2025-11-13 16:16:59.327 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:12:05.957 00:05:51.172 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:12:57.127 00:05:08.887 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:17:10.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38123 1 80 1 2025-11-13 16:17:10.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52234 1 109 1 2025-11-13 16:17:10.814 00:00:00.000 UDP 28.104.0.1:52234 -> 198.28.0.2:53 1 64 1 2025-11-13 16:17:10.813 00:00:00.000 UDP 28.104.0.1:38123 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:54.871 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2772 1 2025-11-13 16:13:57.138 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:14:05.949 00:05:00.239 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:18:11.093 00:00:00.000 UDP 28.104.0.1:58467 -> 198.28.0.2:53 1 64 1 2025-11-13 16:18:11.093 00:00:00.000 UDP 28.104.0.1:50970 -> 198.28.0.2:53 1 64 1 2025-11-13 16:18:11.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50970 1 109 1 2025-11-13 16:18:11.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58467 1 80 1 2025-11-13 16:19:11.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52887 1 80 1 2025-11-13 16:19:11.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47886 1 109 1 2025-11-13 16:19:11.395 00:00:00.000 UDP 28.104.0.1:52887 -> 198.28.0.2:53 1 64 1 2025-11-13 16:19:11.395 00:00:00.000 UDP 28.104.0.1:47886 -> 198.28.0.2:53 1 64 1 2025-11-13 16:20:11.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55350 1 80 1 2025-11-13 16:20:11.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60936 1 109 1 2025-11-13 16:20:11.697 00:00:00.000 UDP 28.104.0.1:60936 -> 198.28.0.2:53 1 64 1 2025-11-13 16:20:11.697 00:00:00.000 UDP 28.104.0.1:55350 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:11.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40533 1 109 1 2025-11-13 16:21:11.960 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59612 1 80 1 2025-11-13 16:17:05.958 00:05:00.136 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:21:11.950 00:00:00.000 UDP 28.104.0.1:40533 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:11.950 00:00:00.000 UDP 28.104.0.1:59612 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:59.616 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:17:57.179 00:05:08.831 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:22:12.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57124 1 80 1 2025-11-13 16:22:12.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36566 1 109 1 2025-11-13 16:22:12.254 00:00:00.000 UDP 28.104.0.1:36566 -> 198.28.0.2:53 1 64 1 2025-11-13 16:22:12.254 00:00:00.000 UDP 28.104.0.1:57124 -> 198.28.0.2:53 1 64 1 2025-11-13 16:18:05.959 00:05:51.174 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:18:57.128 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:23:12.550 00:00:00.000 UDP 28.104.0.1:58429 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:12.550 00:00:00.000 UDP 28.104.0.1:37648 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:12.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58429 1 80 1 2025-11-13 16:23:12.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37648 1 109 1 2025-11-13 16:19:14.872 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2892 1 2025-11-13 16:20:05.950 00:05:00.239 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:19:57.141 00:05:08.811 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:24:13.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53225 1 80 1 2025-11-13 16:24:13.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35772 1 109 1 2025-11-13 16:24:13.340 00:00:00.000 UDP 28.104.0.1:35772 -> 198.28.0.2:53 1 64 1 2025-11-13 16:24:13.340 00:00:00.000 UDP 28.104.0.1:53225 -> 198.28.0.2:53 1 64 1 2025-11-13 16:25:13.661 00:00:00.000 UDP 28.104.0.1:50443 -> 198.28.0.2:53 1 64 1 2025-11-13 16:25:13.661 00:00:00.000 UDP 28.104.0.1:40899 -> 198.28.0.2:53 1 64 1 2025-11-13 16:25:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40899 1 80 1 2025-11-13 16:25:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50443 1 109 1 2025-11-13 16:26:13.960 00:00:00.000 UDP 28.104.0.1:47039 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:13.961 00:00:00.000 UDP 28.104.0.1:41403 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:13.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41403 1 80 1 2025-11-13 16:26:13.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47039 1 109 1 2025-11-13 16:26:59.495 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:23:05.949 00:05:00.144 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:27:14.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36027 1 80 1 2025-11-13 16:27:14.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42140 1 109 1 2025-11-13 16:27:14.266 00:00:00.000 UDP 28.104.0.1:42140 -> 198.28.0.2:53 1 64 1 2025-11-13 16:27:14.266 00:00:00.000 UDP 28.104.0.1:36027 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:57.183 00:05:08.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:28:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46394 1 80 1 2025-11-13 16:28:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59498 1 109 1 2025-11-13 16:28:14.558 00:00:00.000 UDP 28.104.0.1:59498 -> 198.28.0.2:53 1 64 1 2025-11-13 16:28:14.558 00:00:00.000 UDP 28.104.0.1:46394 -> 198.28.0.2:53 1 64 1 2025-11-13 16:24:34.880 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2900 1 2025-11-13 16:24:05.962 00:05:51.172 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:24:57.133 00:05:08.891 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:29:14.862 00:00:00.000 UDP 28.104.0.1:60597 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:14.862 00:00:00.000 UDP 28.104.0.1:34741 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:14.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60597 1 80 1 2025-11-13 16:29:14.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34741 1 109 1 2025-11-13 16:25:57.143 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:30:15.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35301 1 109 1 2025-11-13 16:30:15.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37373 1 80 1 2025-11-13 16:26:05.953 00:05:00.241 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:30:15.192 00:00:00.000 UDP 28.104.0.1:37373 -> 198.28.0.2:53 1 64 1 2025-11-13 16:30:15.192 00:00:00.000 UDP 28.104.0.1:35301 -> 198.28.0.2:53 1 64 1 2025-11-13 16:31:15.492 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39109 1 80 1 2025-11-13 16:31:15.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54519 1 109 1 2025-11-13 16:31:15.483 00:00:00.000 UDP 28.104.0.1:39109 -> 198.28.0.2:53 1 64 1 2025-11-13 16:31:15.483 00:00:00.000 UDP 28.104.0.1:54519 -> 198.28.0.2:53 1 64 1 2025-11-13 16:31:59.749 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:32:15.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41093 1 109 1 2025-11-13 16:32:15.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42505 1 80 1 2025-11-13 16:32:15.781 00:00:00.000 UDP 28.104.0.1:41093 -> 198.28.0.2:53 1 64 1 2025-11-13 16:32:15.781 00:00:00.000 UDP 28.104.0.1:42505 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:05.953 00:05:00.142 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:33:16.075 00:00:00.000 UDP 28.104.0.1:38525 -> 198.28.0.2:53 1 64 1 2025-11-13 16:33:16.076 00:00:00.000 UDP 28.104.0.1:34034 -> 198.28.0.2:53 1 64 1 2025-11-13 16:33:16.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38525 1 80 1 2025-11-13 16:33:16.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34034 1 109 1 2025-11-13 16:29:57.184 00:05:08.834 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:29:54.887 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-13 16:34:16.383 00:00:00.000 UDP 28.104.0.1:59353 -> 198.28.0.2:53 1 64 1 2025-11-13 16:34:16.383 00:00:00.000 UDP 28.104.0.1:54541 -> 198.28.0.2:53 1 64 1 2025-11-13 16:34:16.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59353 1 80 1 2025-11-13 16:34:16.394 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54541 1 109 1 2025-11-13 16:30:05.964 00:05:51.171 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:30:57.133 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:35:16.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41294 1 80 1 2025-11-13 16:35:16.696 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51825 1 109 1 2025-11-13 16:35:16.687 00:00:00.000 UDP 28.104.0.1:41294 -> 198.28.0.2:53 1 64 1 2025-11-13 16:35:16.687 00:00:00.000 UDP 28.104.0.1:51825 -> 198.28.0.2:53 1 64 1 2025-11-13 16:32:05.953 00:05:00.240 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:31:57.144 00:05:08.827 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:36:16.988 00:00:00.000 UDP 28.104.0.1:34401 -> 198.28.0.2:53 1 64 1 2025-11-13 16:36:16.988 00:00:00.000 UDP 28.104.0.1:56698 -> 198.28.0.2:53 1 64 1 2025-11-13 16:36:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34401 1 109 1 2025-11-13 16:36:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56698 1 80 1 2025-11-13 16:36:59.655 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:37:17.305 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55002 1 109 1 2025-11-13 16:37:17.305 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45714 1 80 1 2025-11-13 16:37:17.295 00:00:00.000 UDP 28.104.0.1:45714 -> 198.28.0.2:53 1 64 1 2025-11-13 16:37:17.294 00:00:00.000 UDP 28.104.0.1:55002 -> 198.28.0.2:53 1 64 1 2025-11-13 16:38:17.597 00:00:00.000 UDP 28.104.0.1:40532 -> 198.28.0.2:53 1 64 1 2025-11-13 16:38:17.597 00:00:00.000 UDP 28.104.0.1:52820 -> 198.28.0.2:53 1 64 1 2025-11-13 16:38:17.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52820 1 109 1 2025-11-13 16:38:17.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40532 1 80 1 2025-11-13 16:35:05.973 00:05:00.123 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:39:17.899 00:00:00.000 UDP 28.104.0.1:47080 -> 198.28.0.2:53 1 64 1 2025-11-13 16:39:17.899 00:00:00.000 UDP 28.104.0.1:39796 -> 198.28.0.2:53 1 64 1 2025-11-13 16:35:14.891 00:05:00.475 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2316 1 2025-11-13 16:39:17.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39796 1 109 1 2025-11-13 16:39:17.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47080 1 80 1 2025-11-13 16:35:57.184 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:40:18.159 00:00:00.000 UDP 28.104.0.1:45387 -> 198.28.0.2:53 1 64 1 2025-11-13 16:40:18.159 00:00:00.000 UDP 28.104.0.1:36053 -> 198.28.0.2:53 1 64 1 2025-11-13 16:40:18.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45387 1 109 1 2025-11-13 16:40:18.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36053 1 80 1 2025-11-13 16:36:05.981 00:05:51.154 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:36:57.134 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:41:18.455 00:00:00.000 UDP 28.104.0.1:35450 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:18.456 00:00:00.000 UDP 28.104.0.1:36874 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:18.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36874 1 109 1 2025-11-13 16:41:18.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35450 1 80 1 2025-11-13 16:42:00.116 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:38:05.973 00:05:00.224 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:37:57.146 00:05:08.828 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:42:18.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49887 1 80 1 2025-11-13 16:42:18.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60631 1 109 1 2025-11-13 16:42:18.746 00:00:00.000 UDP 28.104.0.1:60631 -> 198.28.0.2:53 1 64 1 2025-11-13 16:42:18.746 00:00:00.000 UDP 28.104.0.1:49887 -> 198.28.0.2:53 1 64 1 2025-11-13 16:43:19.059 00:00:00.000 UDP 28.104.0.1:52386 -> 198.28.0.2:53 1 64 1 2025-11-13 16:43:19.059 00:00:00.000 UDP 28.104.0.1:49686 -> 198.28.0.2:53 1 64 1 2025-11-13 16:43:19.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49686 1 109 1 2025-11-13 16:43:19.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52386 1 80 1 2025-11-13 16:44:19.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56374 1 80 1 2025-11-13 16:44:19.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37678 1 109 1 2025-11-13 16:44:19.346 00:00:00.000 UDP 28.104.0.1:56374 -> 198.28.0.2:53 1 64 1 2025-11-13 16:44:19.346 00:00:00.000 UDP 28.104.0.1:37678 -> 198.28.0.2:53 1 64 1 2025-11-13 16:40:24.899 00:05:00.538 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2948 1 2025-11-13 16:41:05.972 00:05:00.125 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:45:19.651 00:00:00.000 UDP 28.104.0.1:33897 -> 198.28.0.2:53 1 64 1 2025-11-13 16:45:19.651 00:00:00.000 UDP 28.104.0.1:51965 -> 198.28.0.2:53 1 64 1 2025-11-13 16:45:19.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33897 1 109 1 2025-11-13 16:45:19.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51965 1 80 1 2025-11-13 16:41:57.185 00:05:08.834 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:46:19.938 00:00:00.000 UDP 28.104.0.1:38383 -> 198.28.0.2:53 1 64 1 2025-11-13 16:46:19.938 00:00:00.000 UDP 28.104.0.1:60066 -> 198.28.0.2:53 1 64 1 2025-11-13 16:46:19.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60066 1 80 1 2025-11-13 16:46:19.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38383 1 109 1 2025-11-13 16:46:59.949 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:42:05.983 00:05:51.154 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:42:57.135 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:47:20.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46740 1 80 1 2025-11-13 16:47:20.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36093 1 109 1 2025-11-13 16:47:20.236 00:00:00.000 UDP 28.104.0.1:46740 -> 198.28.0.2:53 1 64 1 2025-11-13 16:47:20.236 00:00:00.000 UDP 28.104.0.1:36093 -> 198.28.0.2:53 1 64 1 2025-11-13 16:44:05.973 00:05:00.229 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:43:57.145 00:05:08.844 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:48:20.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46655 1 80 1 2025-11-13 16:48:20.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44337 1 109 1 2025-11-13 16:48:20.547 00:00:00.000 UDP 28.104.0.1:46655 -> 198.28.0.2:53 1 64 1 2025-11-13 16:48:20.547 00:00:00.000 UDP 28.104.0.1:44337 -> 198.28.0.2:53 1 64 1 2025-11-13 16:49:23.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46474 1 80 1 2025-11-13 16:49:23.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35940 1 109 1 2025-11-13 16:49:23.100 00:00:00.000 UDP 28.104.0.1:46474 -> 198.28.0.2:53 1 64 1 2025-11-13 16:49:23.100 00:00:00.000 UDP 28.104.0.1:35940 -> 198.28.0.2:53 1 64 1 2025-11-13 16:45:34.906 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2872 1 2025-11-13 16:50:23.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38209 1 80 1 2025-11-13 16:50:23.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46999 1 109 1 2025-11-13 16:50:23.404 00:00:00.000 UDP 28.104.0.1:46999 -> 198.28.0.2:53 1 64 1 2025-11-13 16:50:23.404 00:00:00.000 UDP 28.104.0.1:38209 -> 198.28.0.2:53 1 64 1 2025-11-13 16:47:05.976 00:05:00.122 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:51:23.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34390 1 109 1 2025-11-13 16:51:23.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55800 1 80 1 2025-11-13 16:51:23.699 00:00:00.000 UDP 28.104.0.1:34390 -> 198.28.0.2:53 1 64 1 2025-11-13 16:51:23.699 00:00:00.000 UDP 28.104.0.1:55800 -> 198.28.0.2:53 1 64 1 2025-11-13 16:52:00.004 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:47:57.186 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:52:23.991 00:00:00.000 UDP 28.104.0.1:38058 -> 198.28.0.2:53 1 64 1 2025-11-13 16:52:23.991 00:00:00.000 UDP 28.104.0.1:57069 -> 198.28.0.2:53 1 64 1 2025-11-13 16:52:24.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57069 1 80 1 2025-11-13 16:52:24.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38058 1 109 1 2025-11-13 16:48:05.986 00:05:51.150 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:48:57.136 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:53:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58966 1 109 1 2025-11-13 16:53:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49818 1 80 1 2025-11-13 16:53:24.302 00:00:00.000 UDP 28.104.0.1:58966 -> 198.28.0.2:53 1 64 1 2025-11-13 16:53:24.302 00:00:00.000 UDP 28.104.0.1:49818 -> 198.28.0.2:53 1 64 1 2025-11-13 16:50:05.988 00:05:00.215 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:49:57.146 00:05:08.842 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:54:24.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41006 1 109 1 2025-11-13 16:54:24.610 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32856 1 80 1 2025-11-13 16:54:24.600 00:00:00.000 UDP 28.104.0.1:32856 -> 198.28.0.2:53 1 64 1 2025-11-13 16:54:24.600 00:00:00.000 UDP 28.104.0.1:41006 -> 198.28.0.2:53 1 64 1 2025-11-13 16:50:54.907 00:05:00.667 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2976 1 2025-11-13 16:55:24.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35852 1 80 1 2025-11-13 16:55:24.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42426 1 109 1 2025-11-13 16:55:24.888 00:00:00.000 UDP 28.104.0.1:42426 -> 198.28.0.2:53 1 64 1 2025-11-13 16:55:24.888 00:00:00.000 UDP 28.104.0.1:35852 -> 198.28.0.2:53 1 64 1 2025-11-13 16:56:25.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51112 1 80 1 2025-11-13 16:56:25.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34800 1 109 1 2025-11-13 16:56:25.211 00:00:00.000 UDP 28.104.0.1:34800 -> 198.28.0.2:53 1 64 1 2025-11-13 16:56:25.211 00:00:00.000 UDP 28.104.0.1:51112 -> 198.28.0.2:53 1 64 1 2025-11-13 16:57:00.024 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:53:05.989 00:05:00.120 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:57:25.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39762 1 109 1 2025-11-13 16:57:25.712 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35816 1 80 1 2025-11-13 16:57:25.703 00:00:00.000 UDP 28.104.0.1:35816 -> 198.28.0.2:53 1 64 1 2025-11-13 16:57:25.703 00:00:00.000 UDP 28.104.0.1:39762 -> 198.28.0.2:53 1 64 1 2025-11-13 16:53:57.189 00:05:08.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:58:26.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46828 1 109 1 2025-11-13 16:58:26.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41959 1 80 1 2025-11-13 16:58:26.006 00:00:00.000 UDP 28.104.0.1:46828 -> 198.28.0.2:53 1 64 1 2025-11-13 16:58:26.006 00:00:00.000 UDP 28.104.0.1:41959 -> 198.28.0.2:53 1 64 1 Summary: total flows: 324, total bytes: 97106, total packets: 1433, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-11-13 15:54:05 - 2025-11-13 16:59:06 Total flows processed: 324, passed: 324, Blocks skipped: 0, Bytes read: 33760 Sys: 0.0045s User: 0.0022s Wall: 0.0034s flows/second: 96715.9 Runtime: 0.0034s