Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 03:54:06.360 00:05:50.973 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 03:54:57.331 00:05:09.055 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 03:58:06.351 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 03:58:06.351 00:01:00.017 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 03:59:41.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38432 1 109 1 2025-11-14 03:59:41.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33615 1 80 1 2025-11-14 03:59:41.899 00:00:00.000 UDP 28.104.0.1:33615 -> 198.28.0.2:53 1 64 1 2025-11-14 03:59:41.899 00:00:00.000 UDP 28.104.0.1:38432 -> 198.28.0.2:53 1 64 1 2025-11-14 03:55:57.341 00:05:09.009 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 03:55:55.851 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-14 04:00:42.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43882 1 109 1 2025-11-14 04:00:42.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56931 1 80 1 2025-11-14 04:00:42.170 00:00:00.000 UDP 28.104.0.1:56931 -> 198.28.0.2:53 1 64 1 2025-11-14 04:00:42.170 00:00:00.000 UDP 28.104.0.1:43882 -> 198.28.0.2:53 1 64 1 2025-11-14 04:01:42.433 00:00:00.000 UDP 28.104.0.1:45192 -> 198.28.0.2:53 1 64 1 2025-11-14 04:01:42.433 00:00:00.000 UDP 28.104.0.1:48554 -> 198.28.0.2:53 1 64 1 2025-11-14 04:01:42.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48554 1 80 1 2025-11-14 04:01:42.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45192 1 109 1 2025-11-14 04:00:06.351 00:02:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:00:06.351 00:02:00.019 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:02:13.662 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:02:42.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35873 1 80 1 2025-11-14 04:02:42.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39559 1 109 1 2025-11-14 04:02:42.736 00:00:00.000 UDP 28.104.0.1:35873 -> 198.28.0.2:53 1 64 1 2025-11-14 04:02:42.736 00:00:00.000 UDP 28.104.0.1:39559 -> 198.28.0.2:53 1 64 1 2025-11-14 04:03:43.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39133 1 109 1 2025-11-14 04:03:43.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33670 1 80 1 2025-11-14 04:03:43.053 00:00:00.000 UDP 28.104.0.1:33670 -> 198.28.0.2:53 1 64 1 2025-11-14 04:03:43.053 00:00:00.000 UDP 28.104.0.1:39133 -> 198.28.0.2:53 1 64 1 2025-11-14 04:03:06.350 00:01:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:03:06.350 00:01:00.018 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 03:59:57.383 00:05:09.005 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:04:43.311 00:00:00.000 UDP 28.104.0.1:40883 -> 198.28.0.2:53 1 64 1 2025-11-14 04:04:43.312 00:00:00.000 UDP 28.104.0.1:45832 -> 198.28.0.2:53 1 64 1 2025-11-14 04:04:43.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40883 1 109 1 2025-11-14 04:04:43.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45832 1 80 1 2025-11-14 04:00:06.360 00:05:50.976 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:00:57.334 00:05:09.066 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:01:15.855 00:05:00.688 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2316 1 2025-11-14 04:05:43.597 00:00:00.000 UDP 28.104.0.1:57582 -> 198.28.0.2:53 1 64 1 2025-11-14 04:05:43.598 00:00:00.000 UDP 28.104.0.1:37592 -> 198.28.0.2:53 1 64 1 2025-11-14 04:05:43.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57582 1 80 1 2025-11-14 04:05:43.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37592 1 109 1 2025-11-14 04:01:57.344 00:05:09.009 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:06:43.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50903 1 109 1 2025-11-14 04:06:43.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52893 1 80 1 2025-11-14 04:06:43.890 00:00:00.000 UDP 28.104.0.1:52893 -> 198.28.0.2:53 1 64 1 2025-11-14 04:06:43.890 00:00:00.000 UDP 28.104.0.1:50903 -> 198.28.0.2:53 1 64 1 2025-11-14 04:05:06.351 00:02:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:05:06.351 00:02:00.020 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:07:13.873 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:07:44.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54650 1 109 1 2025-11-14 04:07:44.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50864 1 80 1 2025-11-14 04:07:44.199 00:00:00.000 UDP 28.104.0.1:50864 -> 198.28.0.2:53 1 64 1 2025-11-14 04:07:44.199 00:00:00.000 UDP 28.104.0.1:54650 -> 198.28.0.2:53 1 64 1 2025-11-14 04:08:44.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34439 1 80 1 2025-11-14 04:08:44.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60675 1 109 1 2025-11-14 04:08:44.495 00:00:00.000 UDP 28.104.0.1:34439 -> 198.28.0.2:53 1 64 1 2025-11-14 04:08:44.495 00:00:00.000 UDP 28.104.0.1:60675 -> 198.28.0.2:53 1 64 1 2025-11-14 04:08:06.354 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:08:06.354 00:01:00.019 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:09:44.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50288 1 109 1 2025-11-14 04:09:44.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34745 1 80 1 2025-11-14 04:09:44.745 00:00:00.000 UDP 28.104.0.1:34745 -> 198.28.0.2:53 1 64 1 2025-11-14 04:09:44.746 00:00:00.000 UDP 28.104.0.1:50288 -> 198.28.0.2:53 1 64 1 2025-11-14 04:05:57.387 00:05:09.005 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:06:25.866 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2808 1 2025-11-14 04:10:45.055 00:00:00.000 UDP 28.104.0.1:35982 -> 198.28.0.2:53 1 64 1 2025-11-14 04:10:45.055 00:00:00.000 UDP 28.104.0.1:40152 -> 198.28.0.2:53 1 64 1 2025-11-14 04:10:45.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35982 1 109 1 2025-11-14 04:10:45.065 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40152 1 80 1 2025-11-14 04:06:06.361 00:05:50.979 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:06:57.338 00:05:09.066 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:11:45.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48171 1 109 1 2025-11-14 04:11:45.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35235 1 80 1 2025-11-14 04:11:45.344 00:00:00.000 UDP 28.104.0.1:48171 -> 198.28.0.2:53 1 64 1 2025-11-14 04:11:45.344 00:00:00.000 UDP 28.104.0.1:35235 -> 198.28.0.2:53 1 64 1 2025-11-14 04:07:57.347 00:05:09.006 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:12:13.763 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:12:45.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58274 1 109 1 2025-11-14 04:12:45.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40973 1 80 1 2025-11-14 04:12:45.594 00:00:00.000 UDP 28.104.0.1:40973 -> 198.28.0.2:53 1 64 1 2025-11-14 04:12:45.594 00:00:00.000 UDP 28.104.0.1:58274 -> 198.28.0.2:53 1 64 1 2025-11-14 04:13:45.841 00:00:00.000 UDP 28.104.0.1:38130 -> 198.28.0.2:53 1 64 1 2025-11-14 04:13:45.841 00:00:00.000 UDP 28.104.0.1:37566 -> 198.28.0.2:53 1 64 1 2025-11-14 04:13:45.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37566 1 109 1 2025-11-14 04:13:45.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38130 1 80 1 2025-11-14 04:10:06.353 00:04:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-14 04:10:06.353 00:04:00.022 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-14 04:14:46.138 00:00:00.000 UDP 28.104.0.1:34144 -> 198.28.0.2:53 1 64 1 2025-11-14 04:14:46.138 00:00:00.000 UDP 28.104.0.1:36498 -> 198.28.0.2:53 1 64 1 2025-11-14 04:14:46.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36498 1 109 1 2025-11-14 04:14:46.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34144 1 80 1 2025-11-14 04:15:46.431 00:00:00.000 UDP 28.104.0.1:44048 -> 198.28.0.2:53 1 64 1 2025-11-14 04:15:46.431 00:00:00.000 UDP 28.104.0.1:41980 -> 198.28.0.2:53 1 64 1 2025-11-14 04:15:46.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41980 1 109 1 2025-11-14 04:15:46.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44048 1 80 1 2025-11-14 04:11:45.873 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3308 1 2025-11-14 04:11:57.390 00:05:09.004 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:16:46.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37205 1 109 1 2025-11-14 04:16:46.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60519 1 80 1 2025-11-14 04:16:46.688 00:00:00.000 UDP 28.104.0.1:60519 -> 198.28.0.2:53 1 64 1 2025-11-14 04:16:46.688 00:00:00.000 UDP 28.104.0.1:37205 -> 198.28.0.2:53 1 64 1 2025-11-14 04:12:06.365 00:05:50.977 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:12:57.340 00:05:09.094 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:17:13.907 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:17:46.990 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33990 1 80 1 2025-11-14 04:17:46.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56042 1 109 1 2025-11-14 04:17:46.979 00:00:00.000 UDP 28.104.0.1:33990 -> 198.28.0.2:53 1 64 1 2025-11-14 04:17:46.979 00:00:00.000 UDP 28.104.0.1:56042 -> 198.28.0.2:53 1 64 1 2025-11-14 04:13:57.350 00:05:09.014 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:18:47.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39248 1 80 1 2025-11-14 04:18:47.285 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49604 1 109 1 2025-11-14 04:18:47.275 00:00:00.000 UDP 28.104.0.1:49604 -> 198.28.0.2:53 1 64 1 2025-11-14 04:18:47.275 00:00:00.000 UDP 28.104.0.1:39248 -> 198.28.0.2:53 1 64 1 2025-11-14 04:15:06.353 00:04:00.083 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-14 04:15:06.353 00:04:00.023 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-14 04:19:47.564 00:00:00.000 UDP 28.104.0.1:38688 -> 198.28.0.2:53 1 64 1 2025-11-14 04:19:47.564 00:00:00.000 UDP 28.104.0.1:41024 -> 198.28.0.2:53 1 64 1 2025-11-14 04:19:47.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41024 1 109 1 2025-11-14 04:19:47.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38688 1 80 1 2025-11-14 04:20:47.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33890 1 80 1 2025-11-14 04:20:47.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45855 1 109 1 2025-11-14 04:20:47.860 00:00:00.000 UDP 28.104.0.1:45855 -> 198.28.0.2:53 1 64 1 2025-11-14 04:20:47.860 00:00:00.000 UDP 28.104.0.1:33890 -> 198.28.0.2:53 1 64 1 2025-11-14 04:20:06.365 00:01:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:20:06.365 00:01:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:17:05.877 00:05:10.887 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2880 1 2025-11-14 04:21:48.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48667 1 80 1 2025-11-14 04:21:48.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49310 1 109 1 2025-11-14 04:21:48.178 00:00:00.000 UDP 28.104.0.1:48667 -> 198.28.0.2:53 1 64 1 2025-11-14 04:21:48.178 00:00:00.000 UDP 28.104.0.1:49310 -> 198.28.0.2:53 1 64 1 2025-11-14 04:17:57.391 00:05:09.028 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:22:14.456 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:22:48.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44010 1 109 1 2025-11-14 04:22:48.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33472 1 80 1 2025-11-14 04:22:48.477 00:00:00.000 UDP 28.104.0.1:33472 -> 198.28.0.2:53 1 64 1 2025-11-14 04:22:48.477 00:00:00.000 UDP 28.104.0.1:44010 -> 198.28.0.2:53 1 64 1 2025-11-14 04:18:06.374 00:05:50.968 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:18:57.342 00:05:09.088 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:23:48.769 00:00:00.000 UDP 28.104.0.1:55326 -> 198.28.0.2:53 1 64 1 2025-11-14 04:23:48.769 00:00:00.000 UDP 28.104.0.1:36296 -> 198.28.0.2:53 1 64 1 2025-11-14 04:23:48.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36296 1 80 1 2025-11-14 04:23:48.781 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55326 1 109 1 2025-11-14 04:22:06.366 00:02:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:22:06.366 00:02:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:19:57.352 00:05:09.014 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:24:49.065 00:00:00.000 UDP 28.104.0.1:43695 -> 198.28.0.2:53 1 64 1 2025-11-14 04:24:49.065 00:00:00.000 UDP 28.104.0.1:57906 -> 198.28.0.2:53 1 64 1 2025-11-14 04:24:49.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57906 1 109 1 2025-11-14 04:24:49.075 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43695 1 80 1 2025-11-14 04:25:49.372 00:00:00.000 UDP 28.104.0.1:47816 -> 198.28.0.2:53 1 64 1 2025-11-14 04:25:49.372 00:00:00.000 UDP 28.104.0.1:37847 -> 198.28.0.2:53 1 64 1 2025-11-14 04:25:49.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47816 1 80 1 2025-11-14 04:25:49.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37847 1 109 1 2025-11-14 04:25:06.366 00:01:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:25:06.366 00:01:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:22:25.883 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-14 04:26:49.680 00:00:00.000 UDP 28.104.0.1:55154 -> 198.28.0.2:53 1 64 1 2025-11-14 04:26:49.680 00:00:00.000 UDP 28.104.0.1:47954 -> 198.28.0.2:53 1 64 1 2025-11-14 04:26:49.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55154 1 109 1 2025-11-14 04:26:49.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47954 1 80 1 2025-11-14 04:27:14.171 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:27:49.980 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50878 1 80 1 2025-11-14 04:27:49.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36263 1 109 1 2025-11-14 04:27:49.969 00:00:00.000 UDP 28.104.0.1:36263 -> 198.28.0.2:53 1 64 1 2025-11-14 04:27:49.970 00:00:00.000 UDP 28.104.0.1:50878 -> 198.28.0.2:53 1 64 1 2025-11-14 04:23:57.392 00:05:09.028 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:28:50.267 00:00:00.000 UDP 28.104.0.1:37386 -> 198.28.0.2:53 1 64 1 2025-11-14 04:28:50.266 00:00:00.000 UDP 28.104.0.1:52952 -> 198.28.0.2:53 1 64 1 2025-11-14 04:28:50.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37386 1 109 1 2025-11-14 04:28:50.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52952 1 80 1 2025-11-14 04:24:06.375 00:05:50.967 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:24:57.342 00:05:09.090 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:27:06.367 00:02:00.071 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:27:06.367 00:02:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:29:50.557 00:00:00.000 UDP 28.104.0.1:47967 -> 198.28.0.2:53 1 64 1 2025-11-14 04:29:50.557 00:00:00.000 UDP 28.104.0.1:36859 -> 198.28.0.2:53 1 64 1 2025-11-14 04:29:50.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36859 1 80 1 2025-11-14 04:29:50.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47967 1 109 1 2025-11-14 04:25:57.352 00:05:09.018 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:30:50.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56503 1 109 1 2025-11-14 04:30:50.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53571 1 80 1 2025-11-14 04:30:50.854 00:00:00.000 UDP 28.104.0.1:53571 -> 198.28.0.2:53 1 64 1 2025-11-14 04:30:50.854 00:00:00.000 UDP 28.104.0.1:56503 -> 198.28.0.2:53 1 64 1 2025-11-14 04:30:06.367 00:01:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:30:06.367 00:01:00.014 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:31:51.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39519 1 80 1 2025-11-14 04:31:51.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55268 1 109 1 2025-11-14 04:31:51.173 00:00:00.000 UDP 28.104.0.1:55268 -> 198.28.0.2:53 1 64 1 2025-11-14 04:31:51.173 00:00:00.000 UDP 28.104.0.1:39519 -> 198.28.0.2:53 1 64 1 2025-11-14 04:27:45.892 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2304 1 2025-11-14 04:32:14.289 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:32:51.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50597 1 109 1 2025-11-14 04:32:51.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44106 1 80 1 2025-11-14 04:32:51.471 00:00:00.000 UDP 28.104.0.1:44106 -> 198.28.0.2:53 1 64 1 2025-11-14 04:32:51.471 00:00:00.000 UDP 28.104.0.1:50597 -> 198.28.0.2:53 1 64 1 2025-11-14 04:33:51.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34067 1 80 1 2025-11-14 04:33:51.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55911 1 109 1 2025-11-14 04:33:51.738 00:00:00.000 UDP 28.104.0.1:55911 -> 198.28.0.2:53 1 64 1 2025-11-14 04:33:51.738 00:00:00.000 UDP 28.104.0.1:34067 -> 198.28.0.2:53 1 64 1 2025-11-14 04:32:06.370 00:02:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:32:06.370 00:02:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:29:57.393 00:05:09.032 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:34:52.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48946 1 109 1 2025-11-14 04:34:52.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35500 1 80 1 2025-11-14 04:34:52.057 00:00:00.000 UDP 28.104.0.1:35500 -> 198.28.0.2:53 1 64 1 2025-11-14 04:34:52.057 00:00:00.000 UDP 28.104.0.1:48946 -> 198.28.0.2:53 1 64 1 2025-11-14 04:30:06.377 00:05:50.966 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:30:57.343 00:05:09.092 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:35:52.354 00:00:00.000 UDP 28.104.0.1:48396 -> 198.28.0.2:53 1 64 1 2025-11-14 04:35:52.354 00:00:00.000 UDP 28.104.0.1:48868 -> 198.28.0.2:53 1 64 1 2025-11-14 04:35:52.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48396 1 109 1 2025-11-14 04:35:52.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48868 1 80 1 2025-11-14 04:35:06.371 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:35:06.371 00:01:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:31:57.353 00:05:09.018 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:36:52.649 00:00:00.000 UDP 28.104.0.1:34975 -> 198.28.0.2:53 1 64 1 2025-11-14 04:36:52.649 00:00:00.000 UDP 28.104.0.1:52405 -> 198.28.0.2:53 1 64 1 2025-11-14 04:36:52.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52405 1 80 1 2025-11-14 04:36:52.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34975 1 109 1 2025-11-14 04:37:14.355 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:33:05.890 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2628 1 2025-11-14 04:37:52.947 00:00:00.000 UDP 28.104.0.1:59568 -> 198.28.0.2:53 1 64 1 2025-11-14 04:37:52.947 00:00:00.000 UDP 28.104.0.1:55660 -> 198.28.0.2:53 1 64 1 2025-11-14 04:37:52.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55660 1 80 1 2025-11-14 04:37:52.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59568 1 109 1 2025-11-14 04:38:53.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51404 1 109 1 2025-11-14 04:38:53.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57157 1 80 1 2025-11-14 04:38:53.255 00:00:00.000 UDP 28.104.0.1:57157 -> 198.28.0.2:53 1 64 1 2025-11-14 04:38:53.255 00:00:00.000 UDP 28.104.0.1:51404 -> 198.28.0.2:53 1 64 1 2025-11-14 04:37:06.370 00:02:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:37:06.370 00:02:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:39:53.509 00:00:00.000 UDP 28.104.0.1:42559 -> 198.28.0.2:53 1 64 1 2025-11-14 04:39:53.509 00:00:00.000 UDP 28.104.0.1:60811 -> 198.28.0.2:53 1 64 1 2025-11-14 04:39:53.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60811 1 80 1 2025-11-14 04:39:53.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42559 1 109 1 2025-11-14 04:35:57.394 00:05:09.032 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:40:53.815 00:00:00.000 UDP 28.104.0.1:43733 -> 198.28.0.2:53 1 64 1 2025-11-14 04:40:53.815 00:00:00.000 UDP 28.104.0.1:57769 -> 198.28.0.2:53 1 64 1 2025-11-14 04:40:53.827 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43733 1 80 1 2025-11-14 04:40:53.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57769 1 109 1 2025-11-14 04:36:06.381 00:05:50.965 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:36:57.344 00:05:09.092 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:40:06.371 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:40:06.371 00:01:00.011 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:41:54.107 00:00:00.000 UDP 28.104.0.1:38615 -> 198.28.0.2:53 1 64 1 2025-11-14 04:41:54.107 00:00:00.000 UDP 28.104.0.1:60141 -> 198.28.0.2:53 1 64 1 2025-11-14 04:41:54.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60141 1 109 1 2025-11-14 04:41:54.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38615 1 80 1 2025-11-14 04:37:57.355 00:05:09.018 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:42:14.449 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:38:25.894 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 3036 1 2025-11-14 04:42:54.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48827 1 80 1 2025-11-14 04:42:54.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43609 1 109 1 2025-11-14 04:42:54.399 00:00:00.000 UDP 28.104.0.1:48827 -> 198.28.0.2:53 1 64 1 2025-11-14 04:42:54.399 00:00:00.000 UDP 28.104.0.1:43609 -> 198.28.0.2:53 1 64 1 2025-11-14 04:43:54.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45300 1 109 1 2025-11-14 04:43:54.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40410 1 80 1 2025-11-14 04:43:54.687 00:00:00.000 UDP 28.104.0.1:45300 -> 198.28.0.2:53 1 64 1 2025-11-14 04:43:54.686 00:00:00.000 UDP 28.104.0.1:40410 -> 198.28.0.2:53 1 64 1 2025-11-14 04:44:54.964 00:00:00.000 UDP 28.104.0.1:34978 -> 198.28.0.2:53 1 64 1 2025-11-14 04:44:54.964 00:00:00.000 UDP 28.104.0.1:38822 -> 198.28.0.2:53 1 64 1 2025-11-14 04:44:54.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38822 1 109 1 2025-11-14 04:44:54.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34978 1 80 1 2025-11-14 04:45:55.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41550 1 109 1 2025-11-14 04:45:55.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54281 1 80 1 2025-11-14 04:45:55.266 00:00:00.000 UDP 28.104.0.1:54281 -> 198.28.0.2:53 1 64 1 2025-11-14 04:45:55.266 00:00:00.000 UDP 28.104.0.1:41550 -> 198.28.0.2:53 1 64 1 2025-11-14 04:42:06.372 00:04:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 10 615 1 2025-11-14 04:42:06.372 00:04:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-11-14 04:41:57.396 00:05:09.031 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:46:55.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52968 1 109 1 2025-11-14 04:46:55.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51199 1 80 1 2025-11-14 04:46:55.595 00:00:00.000 UDP 28.104.0.1:51199 -> 198.28.0.2:53 1 64 1 2025-11-14 04:46:55.595 00:00:00.000 UDP 28.104.0.1:52968 -> 198.28.0.2:53 1 64 1 2025-11-14 04:42:06.382 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:42:57.344 00:05:09.092 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:47:14.382 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:47:55.889 00:00:00.000 UDP 28.104.0.1:36647 -> 198.28.0.2:53 1 64 1 2025-11-14 04:47:55.888 00:00:00.000 UDP 28.104.0.1:44043 -> 198.28.0.2:53 1 64 1 2025-11-14 04:43:45.897 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2924 1 2025-11-14 04:47:55.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36647 1 80 1 2025-11-14 04:47:55.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44043 1 109 1 2025-11-14 04:47:06.374 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:47:06.374 00:01:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:43:57.354 00:05:09.019 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:48:56.207 00:00:00.000 UDP 28.104.0.1:59033 -> 198.28.0.2:53 1 64 1 2025-11-14 04:48:56.207 00:00:00.000 UDP 28.104.0.1:50243 -> 198.28.0.2:53 1 64 1 2025-11-14 04:48:56.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59033 1 80 1 2025-11-14 04:48:56.231 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50243 1 109 1 2025-11-14 04:49:56.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50705 1 80 1 2025-11-14 04:49:56.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41176 1 109 1 2025-11-14 04:49:56.573 00:00:00.000 UDP 28.104.0.1:41176 -> 198.28.0.2:53 1 64 1 2025-11-14 04:49:56.573 00:00:00.000 UDP 28.104.0.1:50705 -> 198.28.0.2:53 1 64 1 2025-11-14 04:50:56.882 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43763 1 80 1 2025-11-14 04:50:56.882 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53390 1 109 1 2025-11-14 04:50:56.872 00:00:00.000 UDP 28.104.0.1:43763 -> 198.28.0.2:53 1 64 1 2025-11-14 04:50:56.872 00:00:00.000 UDP 28.104.0.1:53390 -> 198.28.0.2:53 1 64 1 2025-11-14 04:49:06.374 00:02:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:49:06.374 00:02:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:51:57.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54328 1 80 1 2025-11-14 04:51:57.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40271 1 109 1 2025-11-14 04:51:57.177 00:00:00.000 UDP 28.104.0.1:40271 -> 198.28.0.2:53 1 64 1 2025-11-14 04:51:57.177 00:00:00.000 UDP 28.104.0.1:54328 -> 198.28.0.2:53 1 64 1 2025-11-14 04:47:57.395 00:05:09.032 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:52:14.384 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:52:57.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60053 1 80 1 2025-11-14 04:48:06.383 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:52:57.486 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35438 1 109 1 2025-11-14 04:52:57.477 00:00:00.000 UDP 28.104.0.1:60053 -> 198.28.0.2:53 1 64 1 2025-11-14 04:52:57.477 00:00:00.000 UDP 28.104.0.1:35438 -> 198.28.0.2:53 1 64 1 2025-11-14 04:52:06.375 00:01:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:52:06.375 00:01:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:48:57.345 00:05:09.093 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:49:05.902 00:05:10.408 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2856 1 2025-11-14 04:53:57.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52928 1 109 1 2025-11-14 04:53:57.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52478 1 80 1 2025-11-14 04:53:57.780 00:00:00.000 UDP 28.104.0.1:52478 -> 198.28.0.2:53 1 64 1 2025-11-14 04:53:57.780 00:00:00.000 UDP 28.104.0.1:52928 -> 198.28.0.2:53 1 64 1 2025-11-14 04:49:57.354 00:05:09.021 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 04:54:58.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58995 1 109 1 2025-11-14 04:54:58.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48870 1 80 1 2025-11-14 04:54:58.072 00:00:00.000 UDP 28.104.0.1:58995 -> 198.28.0.2:53 1 64 1 2025-11-14 04:54:58.072 00:00:00.000 UDP 28.104.0.1:48870 -> 198.28.0.2:53 1 64 1 2025-11-14 04:55:58.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44432 1 80 1 2025-11-14 04:55:58.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34279 1 109 1 2025-11-14 04:55:58.372 00:00:00.000 UDP 28.104.0.1:44432 -> 198.28.0.2:53 1 64 1 2025-11-14 04:55:58.372 00:00:00.000 UDP 28.104.0.1:34279 -> 198.28.0.2:53 1 64 1 2025-11-14 04:54:06.374 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:54:06.374 00:02:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 04:56:58.672 00:00:00.000 UDP 28.104.0.1:32953 -> 198.28.0.2:53 1 64 1 2025-11-14 04:56:58.673 00:00:00.000 UDP 28.104.0.1:49271 -> 198.28.0.2:53 1 64 1 2025-11-14 04:56:58.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49271 1 80 1 2025-11-14 04:56:58.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32953 1 109 1 2025-11-14 04:57:14.776 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 04:57:58.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35800 1 109 1 2025-11-14 04:57:58.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45784 1 80 1 2025-11-14 04:57:58.977 00:00:00.000 UDP 28.104.0.1:45784 -> 198.28.0.2:53 1 64 1 2025-11-14 04:57:58.977 00:00:00.000 UDP 28.104.0.1:35800 -> 198.28.0.2:53 1 64 1 2025-11-14 04:57:06.376 00:01:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 04:57:06.376 00:01:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 04:53:57.397 00:05:09.033 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 04:54:25.903 00:05:10.484 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 Summary: total flows: 344, total bytes: 98769, total packets: 1456, avg bps: 201, avg pps: 0, avg bpp: 67 Time window: 2025-11-14 03:54:06 - 2025-11-14 04:59:36 Total flows processed: 344, passed: 344, Blocks skipped: 0, Bytes read: 35840 Sys: 0.0041s User: 0.0031s Wall: 0.0044s flows/second: 77409.8 Runtime: 0.0045s