Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 22:54:06.240 00:05:51.013 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 22:54:57.251 00:05:08.954 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 22:57:06.233 00:02:00.005 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-13 22:57:06.233 00:02:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-13 22:59:39.679 00:00:00.000 UDP 28.104.0.1:37853 -> 198.28.0.2:53 1 64 1 2025-11-13 22:59:39.679 00:00:00.000 UDP 28.104.0.1:57903 -> 198.28.0.2:53 1 64 1 2025-11-13 22:59:39.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57903 1 109 1 2025-11-13 22:59:39.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37853 1 80 1 2025-11-13 22:55:57.263 00:05:08.971 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:00:39.980 00:00:00.000 UDP 28.104.0.1:53745 -> 198.28.0.2:53 1 64 1 2025-11-13 23:00:39.981 00:00:00.000 UDP 28.104.0.1:47123 -> 198.28.0.2:53 1 64 1 2025-11-13 23:00:39.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53745 1 109 1 2025-11-13 23:00:39.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47123 1 80 1 2025-11-13 23:00:06.234 00:01:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-13 23:00:06.234 00:01:00.006 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-13 23:01:40.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57499 1 80 1 2025-11-13 23:01:40.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54009 1 109 1 2025-11-13 23:01:40.276 00:00:00.000 UDP 28.104.0.1:54009 -> 198.28.0.2:53 1 64 1 2025-11-13 23:01:40.276 00:00:00.000 UDP 28.104.0.1:57499 -> 198.28.0.2:53 1 64 1 2025-11-13 23:02:07.498 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 22:58:15.478 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2972 1 2025-11-13 23:02:40.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34235 1 109 1 2025-11-13 23:02:40.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49541 1 80 1 2025-11-13 23:02:40.534 00:00:00.000 UDP 28.104.0.1:34235 -> 198.28.0.2:53 1 64 1 2025-11-13 23:02:40.534 00:00:00.000 UDP 28.104.0.1:49541 -> 198.28.0.2:53 1 64 1 2025-11-13 23:03:40.839 00:00:00.000 UDP 28.104.0.1:32768 -> 198.28.0.2:53 1 64 1 2025-11-13 23:03:40.839 00:00:00.000 UDP 28.104.0.1:34128 -> 198.28.0.2:53 1 64 1 2025-11-13 23:03:40.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34128 1 80 1 2025-11-13 23:03:40.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32768 1 109 1 2025-11-13 22:59:57.303 00:05:08.893 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:04:41.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51442 1 80 1 2025-11-13 23:04:41.146 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53531 1 109 1 2025-11-13 23:04:41.136 00:00:00.000 UDP 28.104.0.1:53531 -> 198.28.0.2:53 1 64 1 2025-11-13 23:04:41.136 00:00:00.000 UDP 28.104.0.1:51442 -> 198.28.0.2:53 1 64 1 2025-11-13 23:00:06.244 00:05:51.011 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:00:57.255 00:05:08.954 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:05:41.887 00:00:00.000 UDP 28.104.0.1:34290 -> 198.28.0.2:53 1 64 1 2025-11-13 23:05:41.887 00:00:00.000 UDP 28.104.0.1:40313 -> 198.28.0.2:53 1 64 1 2025-11-13 23:05:41.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40313 1 109 1 2025-11-13 23:05:41.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34290 1 80 1 2025-11-13 23:02:06.234 00:04:00.099 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:02:06.234 00:04:00.006 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-13 23:01:57.264 00:05:08.972 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:06:42.202 00:00:00.000 UDP 28.104.0.1:42912 -> 198.28.0.2:53 1 64 1 2025-11-13 23:06:42.202 00:00:00.000 UDP 28.104.0.1:55154 -> 198.28.0.2:53 1 64 1 2025-11-13 23:06:42.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55154 1 109 1 2025-11-13 23:06:42.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42912 1 80 1 2025-11-13 23:07:07.605 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:07:42.505 00:00:00.000 UDP 28.104.0.1:58930 -> 198.28.0.2:53 1 64 1 2025-11-13 23:07:42.505 00:00:00.000 UDP 28.104.0.1:60708 -> 198.28.0.2:53 1 64 1 2025-11-13 23:03:35.484 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2944 1 2025-11-13 23:07:42.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60708 1 80 1 2025-11-13 23:07:42.514 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58930 1 109 1 2025-11-13 23:08:42.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54691 1 109 1 2025-11-13 23:08:42.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33002 1 80 1 2025-11-13 23:08:42.771 00:00:00.000 UDP 28.104.0.1:33002 -> 198.28.0.2:53 1 64 1 2025-11-13 23:08:42.771 00:00:00.000 UDP 28.104.0.1:54691 -> 198.28.0.2:53 1 64 1 2025-11-13 23:09:43.130 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60386 1 109 1 2025-11-13 23:09:43.130 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54033 1 80 1 2025-11-13 23:09:43.119 00:00:00.000 UDP 28.104.0.1:54033 -> 198.28.0.2:53 1 64 1 2025-11-13 23:09:43.119 00:00:00.000 UDP 28.104.0.1:60386 -> 198.28.0.2:53 1 64 1 2025-11-13 23:05:57.303 00:05:08.896 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:10:43.412 00:00:00.000 UDP 28.104.0.1:45059 -> 198.28.0.2:53 1 64 1 2025-11-13 23:10:43.412 00:00:00.000 UDP 28.104.0.1:39858 -> 198.28.0.2:53 1 64 1 2025-11-13 23:10:43.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45059 1 109 1 2025-11-13 23:10:43.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39858 1 80 1 2025-11-13 23:06:06.247 00:05:51.008 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:06:57.254 00:05:08.956 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:07:06.236 00:04:00.098 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:07:06.236 00:04:00.009 TCP 28.154.0.1:179 -> 28.155.0.1:36643 9 563 1 2025-11-13 23:11:43.706 00:00:00.000 UDP 28.104.0.1:40607 -> 198.28.0.2:53 1 64 1 2025-11-13 23:11:43.706 00:00:00.000 UDP 28.104.0.1:44129 -> 198.28.0.2:53 1 64 1 2025-11-13 23:11:43.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44129 1 109 1 2025-11-13 23:11:43.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40607 1 80 1 2025-11-13 23:07:57.265 00:05:08.982 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:12:07.579 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:12:44.002 00:00:00.000 UDP 28.104.0.1:45090 -> 198.28.0.2:53 1 64 1 2025-11-13 23:12:44.002 00:00:00.000 UDP 28.104.0.1:53723 -> 198.28.0.2:53 1 64 1 2025-11-13 23:12:44.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53723 1 109 1 2025-11-13 23:12:44.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45090 1 80 1 2025-11-13 23:08:55.496 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-13 23:13:44.303 00:00:00.000 UDP 28.104.0.1:45691 -> 198.28.0.2:53 1 64 1 2025-11-13 23:13:44.303 00:00:00.000 UDP 28.104.0.1:56725 -> 198.28.0.2:53 1 64 1 2025-11-13 23:13:44.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56725 1 80 1 2025-11-13 23:13:44.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45691 1 109 1 2025-11-13 23:14:44.592 00:00:00.000 UDP 28.104.0.1:47418 -> 198.28.0.2:53 1 64 1 2025-11-13 23:14:44.592 00:00:00.000 UDP 28.104.0.1:35413 -> 198.28.0.2:53 1 64 1 2025-11-13 23:14:44.604 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47418 1 80 1 2025-11-13 23:14:44.604 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35413 1 109 1 2025-11-13 23:15:44.847 00:00:00.000 UDP 28.104.0.1:43007 -> 198.28.0.2:53 1 64 1 2025-11-13 23:15:44.847 00:00:00.000 UDP 28.104.0.1:44697 -> 198.28.0.2:53 1 64 1 2025-11-13 23:15:44.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44697 1 109 1 2025-11-13 23:15:44.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43007 1 80 1 2025-11-13 23:12:06.245 00:04:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:12:06.245 00:04:00.002 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:11:57.306 00:05:08.899 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:16:45.804 00:00:00.000 UDP 28.104.0.1:43939 -> 198.28.0.2:53 1 64 1 2025-11-13 23:16:45.804 00:00:00.000 UDP 28.104.0.1:40445 -> 198.28.0.2:53 1 64 1 2025-11-13 23:16:45.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40445 1 80 1 2025-11-13 23:16:45.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43939 1 109 1 2025-11-13 23:12:06.254 00:05:51.002 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:17:07.872 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:12:57.256 00:05:08.959 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:17:46.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37172 1 80 1 2025-11-13 23:17:46.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54007 1 109 1 2025-11-13 23:17:46.108 00:00:00.000 UDP 28.104.0.1:54007 -> 198.28.0.2:53 1 64 1 2025-11-13 23:17:46.108 00:00:00.000 UDP 28.104.0.1:37172 -> 198.28.0.2:53 1 64 1 2025-11-13 23:13:57.265 00:05:08.982 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:14:15.507 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2304 1 2025-11-13 23:18:46.360 00:00:00.000 UDP 28.104.0.1:54982 -> 198.28.0.2:53 1 64 1 2025-11-13 23:18:46.360 00:00:00.000 UDP 28.104.0.1:48294 -> 198.28.0.2:53 1 64 1 2025-11-13 23:18:46.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54982 1 109 1 2025-11-13 23:18:46.370 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48294 1 80 1 2025-11-13 23:19:46.654 00:00:00.000 UDP 28.104.0.1:48084 -> 198.28.0.2:53 1 64 1 2025-11-13 23:19:46.654 00:00:00.000 UDP 28.104.0.1:60193 -> 198.28.0.2:53 1 64 1 2025-11-13 23:19:46.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60193 1 109 1 2025-11-13 23:19:46.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48084 1 80 1 2025-11-13 23:20:46.942 00:00:00.000 UDP 28.104.0.1:37279 -> 198.28.0.2:53 1 64 1 2025-11-13 23:20:46.942 00:00:00.000 UDP 28.104.0.1:42582 -> 198.28.0.2:53 1 64 1 2025-11-13 23:20:46.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42582 1 109 1 2025-11-13 23:20:46.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37279 1 80 1 2025-11-13 23:17:06.248 00:04:00.092 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:17:06.248 00:04:00.000 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:21:47.250 00:00:00.000 UDP 28.104.0.1:38356 -> 198.28.0.2:53 1 64 1 2025-11-13 23:21:47.250 00:00:00.000 UDP 28.104.0.1:55714 -> 198.28.0.2:53 1 64 1 2025-11-13 23:21:47.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38356 1 80 1 2025-11-13 23:21:47.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55714 1 109 1 2025-11-13 23:17:57.307 00:05:08.899 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:22:07.958 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:22:47.551 00:00:00.000 UDP 28.104.0.1:40533 -> 198.28.0.2:53 1 64 1 2025-11-13 23:22:47.551 00:00:00.000 UDP 28.104.0.1:34494 -> 198.28.0.2:53 1 64 1 2025-11-13 23:22:47.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40533 1 109 1 2025-11-13 23:22:47.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34494 1 80 1 2025-11-13 23:18:06.257 00:05:50.999 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:18:57.256 00:05:08.959 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:19:35.513 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2952 1 2025-11-13 23:23:48.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37997 1 80 1 2025-11-13 23:23:48.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50258 1 109 1 2025-11-13 23:23:48.004 00:00:00.000 UDP 28.104.0.1:37997 -> 198.28.0.2:53 1 64 1 2025-11-13 23:23:48.004 00:00:00.000 UDP 28.104.0.1:50258 -> 198.28.0.2:53 1 64 1 2025-11-13 23:19:57.267 00:05:08.982 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:24:48.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40148 1 109 1 2025-11-13 23:24:48.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51079 1 80 1 2025-11-13 23:24:48.311 00:00:00.000 UDP 28.104.0.1:51079 -> 198.28.0.2:53 1 64 1 2025-11-13 23:24:48.311 00:00:00.000 UDP 28.104.0.1:40148 -> 198.28.0.2:53 1 64 1 2025-11-13 23:25:48.616 00:00:00.000 UDP 28.104.0.1:42552 -> 198.28.0.2:53 1 64 1 2025-11-13 23:25:48.616 00:00:00.000 UDP 28.104.0.1:40064 -> 198.28.0.2:53 1 64 1 2025-11-13 23:25:48.626 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42552 1 80 1 2025-11-13 23:25:48.627 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40064 1 109 1 2025-11-13 23:22:06.249 00:04:00.092 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:22:06.248 00:04:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:26:48.921 00:00:00.000 UDP 28.104.0.1:53011 -> 198.28.0.2:53 1 64 1 2025-11-13 23:26:48.921 00:00:00.000 UDP 28.104.0.1:36913 -> 198.28.0.2:53 1 64 1 2025-11-13 23:26:48.931 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53011 1 80 1 2025-11-13 23:26:48.935 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36913 1 109 1 2025-11-13 23:27:07.746 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:27:49.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58380 1 80 1 2025-11-13 23:27:49.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48741 1 109 1 2025-11-13 23:27:49.257 00:00:00.000 UDP 28.104.0.1:58380 -> 198.28.0.2:53 1 64 1 2025-11-13 23:27:49.257 00:00:00.000 UDP 28.104.0.1:48741 -> 198.28.0.2:53 1 64 1 2025-11-13 23:27:06.249 00:01:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-13 23:27:06.249 00:01:00.000 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 142 1 2025-11-13 23:23:57.307 00:05:08.900 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:28:49.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52467 1 80 1 2025-11-13 23:28:49.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38682 1 109 1 2025-11-13 23:28:49.551 00:00:00.000 UDP 28.104.0.1:52467 -> 198.28.0.2:53 1 64 1 2025-11-13 23:28:49.551 00:00:00.000 UDP 28.104.0.1:38682 -> 198.28.0.2:53 1 64 1 2025-11-13 23:24:55.517 00:05:00.853 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3012 1 2025-11-13 23:24:06.259 00:05:51.001 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:24:57.257 00:05:08.960 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:29:49.847 00:00:00.000 UDP 28.104.0.1:43311 -> 198.28.0.2:53 1 64 1 2025-11-13 23:29:49.847 00:00:00.000 UDP 28.104.0.1:57976 -> 198.28.0.2:53 1 64 1 2025-11-13 23:29:49.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43311 1 80 1 2025-11-13 23:29:49.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57976 1 109 1 2025-11-13 23:25:57.268 00:05:08.984 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:30:50.169 00:00:00.000 UDP 28.104.0.1:47997 -> 198.28.0.2:53 1 64 1 2025-11-13 23:30:50.169 00:00:00.000 UDP 28.104.0.1:48190 -> 198.28.0.2:53 1 64 1 2025-11-13 23:30:50.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47997 1 109 1 2025-11-13 23:30:50.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48190 1 80 1 2025-11-13 23:29:06.250 00:02:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-13 23:29:06.250 00:02:00.002 TCP 28.154.0.1:179 -> 28.155.0.1:36643 3 213 1 2025-11-13 23:31:50.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55103 1 80 1 2025-11-13 23:31:50.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44821 1 109 1 2025-11-13 23:31:50.476 00:00:00.000 UDP 28.104.0.1:44821 -> 198.28.0.2:53 1 64 1 2025-11-13 23:31:50.476 00:00:00.000 UDP 28.104.0.1:55103 -> 198.28.0.2:53 1 64 1 2025-11-13 23:32:08.205 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:32:50.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41165 1 109 1 2025-11-13 23:32:50.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55873 1 80 1 2025-11-13 23:32:50.781 00:00:00.000 UDP 28.104.0.1:41165 -> 198.28.0.2:53 1 64 1 2025-11-13 23:32:50.780 00:00:00.000 UDP 28.104.0.1:55873 -> 198.28.0.2:53 1 64 1 2025-11-13 23:32:06.251 00:01:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-13 23:32:06.251 00:01:00.000 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 142 1 2025-11-13 23:33:51.070 00:00:00.000 UDP 28.104.0.1:45894 -> 198.28.0.2:53 1 64 1 2025-11-13 23:33:51.070 00:00:00.000 UDP 28.104.0.1:54422 -> 198.28.0.2:53 1 64 1 2025-11-13 23:33:51.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45894 1 109 1 2025-11-13 23:33:51.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54422 1 80 1 2025-11-13 23:29:57.310 00:05:08.899 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:30:05.520 00:05:10.018 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-13 23:34:51.322 00:00:00.000 UDP 28.104.0.1:46475 -> 198.28.0.2:53 1 64 1 2025-11-13 23:34:51.322 00:00:00.000 UDP 28.104.0.1:35346 -> 198.28.0.2:53 1 64 1 2025-11-13 23:34:51.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35346 1 80 1 2025-11-13 23:34:51.330 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46475 1 109 1 2025-11-13 23:30:06.259 00:05:51.004 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:30:57.259 00:05:08.959 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:35:51.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43813 1 80 1 2025-11-13 23:35:51.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39971 1 109 1 2025-11-13 23:35:51.620 00:00:00.000 UDP 28.104.0.1:43813 -> 198.28.0.2:53 1 64 1 2025-11-13 23:35:51.620 00:00:00.000 UDP 28.104.0.1:39971 -> 198.28.0.2:53 1 64 1 2025-11-13 23:34:06.250 00:02:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-13 23:34:06.250 00:02:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 3 213 1 2025-11-13 23:31:57.269 00:05:08.981 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:36:52.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42358 1 80 1 2025-11-13 23:36:52.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53140 1 109 1 2025-11-13 23:36:52.354 00:00:00.000 UDP 28.104.0.1:53140 -> 198.28.0.2:53 1 64 1 2025-11-13 23:36:52.354 00:00:00.000 UDP 28.104.0.1:42358 -> 198.28.0.2:53 1 64 1 2025-11-13 23:37:08.292 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:37:52.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35389 1 109 1 2025-11-13 23:37:52.664 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39040 1 80 1 2025-11-13 23:37:52.653 00:00:00.000 UDP 28.104.0.1:39040 -> 198.28.0.2:53 1 64 1 2025-11-13 23:37:52.653 00:00:00.000 UDP 28.104.0.1:35389 -> 198.28.0.2:53 1 64 1 2025-11-13 23:37:06.251 00:01:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-13 23:37:06.251 00:01:00.000 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 142 1 2025-11-13 23:38:52.958 00:00:00.000 UDP 28.104.0.1:60462 -> 198.28.0.2:53 1 64 1 2025-11-13 23:38:52.958 00:00:00.000 UDP 28.104.0.1:56497 -> 198.28.0.2:53 1 64 1 2025-11-13 23:38:52.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60462 1 80 1 2025-11-13 23:38:52.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56497 1 109 1 2025-11-13 23:35:16.444 00:05:09.083 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2788 1 2025-11-13 23:39:53.255 00:00:00.000 UDP 28.104.0.1:35121 -> 198.28.0.2:53 1 64 1 2025-11-13 23:39:53.255 00:00:00.000 UDP 28.104.0.1:60390 -> 198.28.0.2:53 1 64 1 2025-11-13 23:39:53.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35121 1 109 1 2025-11-13 23:39:53.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60390 1 80 1 2025-11-13 23:35:57.314 00:05:08.897 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:40:53.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56617 1 109 1 2025-11-13 23:40:53.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33479 1 80 1 2025-11-13 23:40:53.547 00:00:00.000 UDP 28.104.0.1:56617 -> 198.28.0.2:53 1 64 1 2025-11-13 23:40:53.547 00:00:00.000 UDP 28.104.0.1:33479 -> 198.28.0.2:53 1 64 1 2025-11-13 23:36:06.262 00:05:51.002 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:36:57.263 00:05:08.958 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:41:53.843 00:00:00.000 UDP 28.104.0.1:43296 -> 198.28.0.2:53 1 64 1 2025-11-13 23:41:53.843 00:00:00.000 UDP 28.104.0.1:43981 -> 198.28.0.2:53 1 64 1 2025-11-13 23:41:53.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43296 1 109 1 2025-11-13 23:41:53.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43981 1 80 1 2025-11-13 23:37:57.273 00:05:08.979 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:42:08.109 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:42:54.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43019 1 109 1 2025-11-13 23:42:54.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34891 1 80 1 2025-11-13 23:42:54.104 00:00:00.000 UDP 28.104.0.1:43019 -> 198.28.0.2:53 1 64 1 2025-11-13 23:42:54.104 00:00:00.000 UDP 28.104.0.1:34891 -> 198.28.0.2:53 1 64 1 2025-11-13 23:39:06.253 00:04:00.093 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:39:06.253 00:04:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:43:54.941 00:00:00.000 UDP 28.104.0.1:46576 -> 198.28.0.2:53 1 64 1 2025-11-13 23:43:54.941 00:00:00.000 UDP 28.104.0.1:47474 -> 198.28.0.2:53 1 64 1 2025-11-13 23:43:54.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46576 1 109 1 2025-11-13 23:43:54.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47474 1 80 1 2025-11-13 23:40:35.526 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-13 23:44:55.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48926 1 80 1 2025-11-13 23:44:55.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60214 1 109 1 2025-11-13 23:44:55.230 00:00:00.000 UDP 28.104.0.1:60214 -> 198.28.0.2:53 1 64 1 2025-11-13 23:44:55.230 00:00:00.000 UDP 28.104.0.1:48926 -> 198.28.0.2:53 1 64 1 2025-11-13 23:45:55.518 00:00:00.000 UDP 28.104.0.1:39821 -> 198.28.0.2:53 1 64 1 2025-11-13 23:45:55.518 00:00:00.000 UDP 28.104.0.1:60408 -> 198.28.0.2:53 1 64 1 2025-11-13 23:45:55.527 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39821 1 80 1 2025-11-13 23:45:55.527 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60408 1 109 1 2025-11-13 23:41:57.314 00:05:08.899 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:46:55.810 00:00:00.000 UDP 28.104.0.1:41227 -> 198.28.0.2:53 1 64 1 2025-11-13 23:46:55.810 00:00:00.000 UDP 28.104.0.1:32939 -> 198.28.0.2:53 1 64 1 2025-11-13 23:46:55.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32939 1 109 1 2025-11-13 23:46:55.821 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41227 1 80 1 2025-11-13 23:42:06.262 00:05:51.002 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:42:57.263 00:05:08.959 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:47:08.283 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:47:56.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42465 1 80 1 2025-11-13 23:47:56.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49589 1 109 1 2025-11-13 23:47:56.069 00:00:00.000 UDP 28.104.0.1:42465 -> 198.28.0.2:53 1 64 1 2025-11-13 23:47:56.070 00:00:00.000 UDP 28.104.0.1:49589 -> 198.28.0.2:53 1 64 1 2025-11-13 23:44:06.253 00:04:00.093 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:44:06.253 00:04:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:43:57.274 00:05:08.980 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:48:56.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42935 1 109 1 2025-11-13 23:48:56.386 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48163 1 80 1 2025-11-13 23:48:56.376 00:00:00.000 UDP 28.104.0.1:48163 -> 198.28.0.2:53 1 64 1 2025-11-13 23:48:56.376 00:00:00.000 UDP 28.104.0.1:42935 -> 198.28.0.2:53 1 64 1 2025-11-13 23:49:56.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36166 1 80 1 2025-11-13 23:49:56.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55383 1 109 1 2025-11-13 23:49:56.681 00:00:00.000 UDP 28.104.0.1:55383 -> 198.28.0.2:53 1 64 1 2025-11-13 23:49:56.681 00:00:00.000 UDP 28.104.0.1:36166 -> 198.28.0.2:53 1 64 1 2025-11-13 23:45:55.541 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-13 23:50:56.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44817 1 109 1 2025-11-13 23:50:56.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46501 1 80 1 2025-11-13 23:50:56.931 00:00:00.000 UDP 28.104.0.1:46501 -> 198.28.0.2:53 1 64 1 2025-11-13 23:50:56.931 00:00:00.000 UDP 28.104.0.1:44817 -> 198.28.0.2:53 1 64 1 2025-11-13 23:51:57.249 00:00:00.000 UDP 28.104.0.1:48560 -> 198.28.0.2:53 1 64 1 2025-11-13 23:51:57.248 00:00:00.000 UDP 28.104.0.1:44741 -> 198.28.0.2:53 1 64 1 2025-11-13 23:51:57.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44741 1 80 1 2025-11-13 23:51:57.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48560 1 109 1 2025-11-13 23:47:57.315 00:05:08.905 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 23:52:08.372 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:52:57.549 00:00:00.000 UDP 28.104.0.1:47250 -> 198.28.0.2:53 1 64 1 2025-11-13 23:52:57.549 00:00:00.000 UDP 28.104.0.1:54344 -> 198.28.0.2:53 1 64 1 2025-11-13 23:48:06.264 00:05:51.002 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 23:52:57.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47250 1 80 1 2025-11-13 23:52:57.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54344 1 109 1 2025-11-13 23:48:57.265 00:05:08.960 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 23:49:06.254 00:04:00.092 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:49:06.254 00:04:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 5 355 1 2025-11-13 23:53:57.857 00:00:00.000 UDP 28.104.0.1:48418 -> 198.28.0.2:53 1 64 1 2025-11-13 23:53:57.858 00:00:00.000 UDP 28.104.0.1:49432 -> 198.28.0.2:53 1 64 1 2025-11-13 23:53:57.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48418 1 80 1 2025-11-13 23:53:57.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49432 1 109 1 2025-11-13 23:49:57.274 00:05:08.981 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 23:54:58.219 00:00:00.000 UDP 28.104.0.1:49481 -> 198.28.0.2:53 1 64 1 2025-11-13 23:54:58.219 00:00:00.000 UDP 28.104.0.1:48672 -> 198.28.0.2:53 1 64 1 2025-11-13 23:54:58.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48672 1 80 1 2025-11-13 23:54:58.230 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49481 1 109 1 2025-11-13 23:51:15.548 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 3016 1 2025-11-13 23:55:58.534 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44047 1 80 1 2025-11-13 23:55:58.534 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43409 1 109 1 2025-11-13 23:55:58.524 00:00:00.000 UDP 28.104.0.1:43409 -> 198.28.0.2:53 1 64 1 2025-11-13 23:55:58.524 00:00:00.000 UDP 28.104.0.1:44047 -> 198.28.0.2:53 1 64 1 2025-11-13 23:56:58.828 00:00:00.000 UDP 28.104.0.1:48558 -> 198.28.0.2:53 1 64 1 2025-11-13 23:56:58.829 00:00:00.000 UDP 28.104.0.1:51027 -> 198.28.0.2:53 1 64 1 2025-11-13 23:56:58.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48558 1 80 1 2025-11-13 23:56:58.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51027 1 109 1 2025-11-13 23:57:08.357 00:00:00.028 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 23:57:59.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48530 1 80 1 2025-11-13 23:57:59.139 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45559 1 109 1 2025-11-13 23:57:59.129 00:00:00.000 UDP 28.104.0.1:48530 -> 198.28.0.2:53 1 64 1 2025-11-13 23:57:59.129 00:00:00.000 UDP 28.104.0.1:45559 -> 198.28.0.2:53 1 64 1 2025-11-13 23:54:06.256 00:04:00.091 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-13 23:54:06.256 00:04:00.046 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 407 1 2025-11-13 23:53:57.316 00:05:08.899 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 Summary: total flows: 331, total bytes: 93907, total packets: 1376, avg bps: 192, avg pps: 0, avg bpp: 68 Time window: 2025-11-13 22:54:06 - 2025-11-13 23:59:06 Total flows processed: 331, passed: 331, Blocks skipped: 0, Bytes read: 34488 Sys: 0.0051s User: 0.0020s Wall: 0.0042s flows/second: 78325.2 Runtime: 0.0042s