Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 04:58:59.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58954 1 109 1 2025-11-14 04:54:06.384 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 04:58:59.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42038 1 80 1 2025-11-14 04:58:59.267 00:00:00.000 UDP 28.104.0.1:42038 -> 198.28.0.2:53 1 64 1 2025-11-14 04:58:59.267 00:00:00.000 UDP 28.104.0.1:58954 -> 198.28.0.2:53 1 64 1 2025-11-14 04:54:57.346 00:05:09.094 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 04:59:59.565 00:00:00.000 UDP 28.104.0.1:55555 -> 198.28.0.2:53 1 64 1 2025-11-14 04:59:59.565 00:00:00.000 UDP 28.104.0.1:35934 -> 198.28.0.2:53 1 64 1 2025-11-14 04:59:59.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55555 1 80 1 2025-11-14 04:59:59.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35934 1 109 1 2025-11-14 04:55:57.356 00:05:09.020 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:00:59.885 00:00:00.000 UDP 28.104.0.1:56036 -> 198.28.0.2:53 1 64 1 2025-11-14 05:00:59.885 00:00:00.000 UDP 28.104.0.1:56016 -> 198.28.0.2:53 1 64 1 2025-11-14 05:00:59.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56016 1 109 1 2025-11-14 05:00:59.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56036 1 80 1 2025-11-14 04:59:06.376 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 04:59:06.376 00:02:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:02:00.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59919 1 109 1 2025-11-14 05:02:00.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50710 1 80 1 2025-11-14 05:02:00.242 00:00:00.000 UDP 28.104.0.1:50710 -> 198.28.0.2:53 1 64 1 2025-11-14 05:02:00.243 00:00:00.000 UDP 28.104.0.1:59919 -> 198.28.0.2:53 1 64 1 2025-11-14 05:02:14.819 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:03:00.541 00:00:00.000 UDP 28.104.0.1:49440 -> 198.28.0.2:53 1 64 1 2025-11-14 05:03:00.541 00:00:00.000 UDP 28.104.0.1:49238 -> 198.28.0.2:53 1 64 1 2025-11-14 05:03:00.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49238 1 109 1 2025-11-14 05:03:00.552 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49440 1 80 1 2025-11-14 05:02:06.376 00:01:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:02:06.376 00:01:00.014 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:04:00.841 00:00:00.000 UDP 28.104.0.1:44878 -> 198.28.0.2:53 1 64 1 2025-11-14 05:04:00.841 00:00:00.000 UDP 28.104.0.1:38002 -> 198.28.0.2:53 1 64 1 2025-11-14 04:59:45.908 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2320 1 2025-11-14 05:04:00.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44878 1 80 1 2025-11-14 05:04:00.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38002 1 109 1 2025-11-14 04:59:57.397 00:05:09.038 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:05:01.170 00:00:00.000 UDP 28.104.0.1:35591 -> 198.28.0.2:53 1 64 1 2025-11-14 05:05:01.170 00:00:00.000 UDP 28.104.0.1:41252 -> 198.28.0.2:53 1 64 1 2025-11-14 05:00:06.386 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:05:01.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35591 1 80 1 2025-11-14 05:05:01.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41252 1 109 1 2025-11-14 05:00:57.347 00:05:09.097 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:06:01.432 00:00:00.000 UDP 28.104.0.1:33028 -> 198.28.0.2:53 1 64 1 2025-11-14 05:06:01.433 00:00:00.000 UDP 28.104.0.1:34027 -> 198.28.0.2:53 1 64 1 2025-11-14 05:06:01.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34027 1 80 1 2025-11-14 05:06:01.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33028 1 109 1 2025-11-14 05:04:06.377 00:02:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:04:06.377 00:02:00.016 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:01:57.358 00:05:09.021 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:07:01.725 00:00:00.000 UDP 28.104.0.1:36105 -> 198.28.0.2:53 1 64 1 2025-11-14 05:07:01.725 00:00:00.000 UDP 28.104.0.1:50813 -> 198.28.0.2:53 1 64 1 2025-11-14 05:07:01.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36105 1 80 1 2025-11-14 05:07:01.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50813 1 109 1 2025-11-14 05:07:14.898 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:08:03.228 00:00:00.000 UDP 28.104.0.1:59257 -> 198.28.0.2:53 1 64 1 2025-11-14 05:08:03.228 00:00:00.000 UDP 28.104.0.1:41306 -> 198.28.0.2:53 1 64 1 2025-11-14 05:07:06.379 00:01:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:07:06.379 00:01:00.014 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:08:03.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59257 1 80 1 2025-11-14 05:08:03.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41306 1 109 1 2025-11-14 05:09:03.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46748 1 80 1 2025-11-14 05:09:03.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52493 1 109 1 2025-11-14 05:09:03.489 00:00:00.000 UDP 28.104.0.1:52493 -> 198.28.0.2:53 1 64 1 2025-11-14 05:09:03.489 00:00:00.000 UDP 28.104.0.1:46748 -> 198.28.0.2:53 1 64 1 2025-11-14 05:05:05.915 00:05:00.622 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 3092 1 2025-11-14 05:10:03.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40268 1 80 1 2025-11-14 05:10:03.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51785 1 109 1 2025-11-14 05:05:57.400 00:05:09.036 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:10:03.789 00:00:00.000 UDP 28.104.0.1:40268 -> 198.28.0.2:53 1 64 1 2025-11-14 05:10:03.788 00:00:00.000 UDP 28.104.0.1:51785 -> 198.28.0.2:53 1 64 1 2025-11-14 05:09:06.379 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:11:04.101 00:00:00.000 UDP 28.104.0.1:34118 -> 198.28.0.2:53 1 64 1 2025-11-14 05:09:06.379 00:02:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:11:04.101 00:00:00.000 UDP 28.104.0.1:51479 -> 198.28.0.2:53 1 64 1 2025-11-14 05:06:06.388 00:05:50.962 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:06:57.350 00:05:09.096 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:11:04.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51479 1 80 1 2025-11-14 05:11:04.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34118 1 109 1 2025-11-14 05:12:04.453 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56312 1 80 1 2025-11-14 05:12:04.453 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52338 1 109 1 2025-11-14 05:12:04.442 00:00:00.000 UDP 28.104.0.1:56312 -> 198.28.0.2:53 1 64 1 2025-11-14 05:07:57.360 00:05:09.019 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:12:04.442 00:00:00.000 UDP 28.104.0.1:52338 -> 198.28.0.2:53 1 64 1 2025-11-14 05:12:14.827 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:13:04.737 00:00:00.000 UDP 28.104.0.1:40401 -> 198.28.0.2:53 1 64 1 2025-11-14 05:13:04.737 00:00:00.000 UDP 28.104.0.1:60950 -> 198.28.0.2:53 1 64 1 2025-11-14 05:12:06.379 00:01:00.075 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:12:06.379 00:01:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:13:04.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60950 1 80 1 2025-11-14 05:13:04.746 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40401 1 109 1 2025-11-14 05:14:05.054 00:00:00.000 UDP 28.104.0.1:45651 -> 198.28.0.2:53 1 64 1 2025-11-14 05:14:05.054 00:00:00.000 UDP 28.104.0.1:46990 -> 198.28.0.2:53 1 64 1 2025-11-14 05:14:05.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45651 1 80 1 2025-11-14 05:14:05.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46990 1 109 1 2025-11-14 05:10:15.922 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2956 1 2025-11-14 05:15:05.348 00:00:00.000 UDP 28.104.0.1:54247 -> 198.28.0.2:53 1 64 1 2025-11-14 05:15:05.348 00:00:00.000 UDP 28.104.0.1:37716 -> 198.28.0.2:53 1 64 1 2025-11-14 05:15:05.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54247 1 80 1 2025-11-14 05:15:05.359 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37716 1 109 1 2025-11-14 05:16:06.680 00:00:00.000 UDP 28.104.0.1:58766 -> 198.28.0.2:53 1 64 1 2025-11-14 05:14:06.380 00:02:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:16:06.680 00:00:00.000 UDP 28.104.0.1:39720 -> 198.28.0.2:53 1 64 1 2025-11-14 05:14:06.380 00:02:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:16:06.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58766 1 109 1 2025-11-14 05:16:06.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39720 1 80 1 2025-11-14 05:11:57.400 00:05:09.037 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:12:06.389 00:05:50.962 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:17:06.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57032 1 80 1 2025-11-14 05:17:06.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58060 1 109 1 2025-11-14 05:17:06.972 00:00:00.000 UDP 28.104.0.1:58060 -> 198.28.0.2:53 1 64 1 2025-11-14 05:17:06.972 00:00:00.000 UDP 28.104.0.1:57032 -> 198.28.0.2:53 1 64 1 2025-11-14 05:12:57.351 00:05:09.096 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:17:15.019 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:17:06.381 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:17:06.381 00:01:00.014 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:18:07.275 00:00:00.000 UDP 28.104.0.1:44774 -> 198.28.0.2:53 1 64 1 2025-11-14 05:13:57.360 00:05:09.021 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:18:07.275 00:00:00.000 UDP 28.104.0.1:57672 -> 198.28.0.2:53 1 64 1 2025-11-14 05:18:07.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44774 1 109 1 2025-11-14 05:18:07.286 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57672 1 80 1 2025-11-14 05:19:07.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40286 1 80 1 2025-11-14 05:19:07.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35279 1 109 1 2025-11-14 05:19:07.571 00:00:00.000 UDP 28.104.0.1:40286 -> 198.28.0.2:53 1 64 1 2025-11-14 05:19:07.571 00:00:00.000 UDP 28.104.0.1:35279 -> 198.28.0.2:53 1 64 1 2025-11-14 05:15:35.930 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2880 1 2025-11-14 05:19:06.381 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:19:06.381 00:01:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:20:08.567 00:00:00.000 UDP 28.104.0.1:36029 -> 198.28.0.2:53 1 64 1 2025-11-14 05:20:08.567 00:00:00.000 UDP 28.104.0.1:56627 -> 198.28.0.2:53 1 64 1 2025-11-14 05:20:08.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36029 1 80 1 2025-11-14 05:20:08.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56627 1 109 1 2025-11-14 05:21:08.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49738 1 80 1 2025-11-14 05:21:08.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34942 1 109 1 2025-11-14 05:21:08.874 00:00:00.000 UDP 28.104.0.1:34942 -> 198.28.0.2:53 1 64 1 2025-11-14 05:21:08.874 00:00:00.000 UDP 28.104.0.1:49738 -> 198.28.0.2:53 1 64 1 2025-11-14 05:17:57.401 00:05:09.037 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:22:09.183 00:00:00.000 UDP 28.104.0.1:60549 -> 198.28.0.2:53 1 64 1 2025-11-14 05:22:09.183 00:00:00.000 UDP 28.104.0.1:54296 -> 198.28.0.2:53 1 64 1 2025-11-14 05:22:09.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54296 1 109 1 2025-11-14 05:22:09.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60549 1 80 1 2025-11-14 05:22:15.011 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:18:06.391 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:21:06.382 00:02:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:21:06.381 00:02:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:18:57.357 00:05:09.091 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:23:09.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59047 1 109 1 2025-11-14 05:23:09.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47639 1 80 1 2025-11-14 05:23:09.484 00:00:00.000 UDP 28.104.0.1:59047 -> 198.28.0.2:53 1 64 1 2025-11-14 05:23:09.484 00:00:00.000 UDP 28.104.0.1:47639 -> 198.28.0.2:53 1 64 1 2025-11-14 05:19:57.364 00:05:09.019 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:24:09.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37399 1 109 1 2025-11-14 05:24:09.804 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54267 1 80 1 2025-11-14 05:24:09.795 00:00:00.000 UDP 28.104.0.1:54267 -> 198.28.0.2:53 1 64 1 2025-11-14 05:24:09.795 00:00:00.000 UDP 28.104.0.1:37399 -> 198.28.0.2:53 1 64 1 2025-11-14 05:24:06.382 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:24:06.381 00:01:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:20:55.938 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2504 1 2025-11-14 05:25:10.064 00:00:00.000 UDP 28.104.0.1:39089 -> 198.28.0.2:53 1 64 1 2025-11-14 05:25:10.064 00:00:00.000 UDP 28.104.0.1:58670 -> 198.28.0.2:53 1 64 1 2025-11-14 05:25:10.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58670 1 80 1 2025-11-14 05:25:10.076 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39089 1 109 1 2025-11-14 05:26:10.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45415 1 80 1 2025-11-14 05:26:10.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38279 1 109 1 2025-11-14 05:26:10.319 00:00:00.000 UDP 28.104.0.1:45415 -> 198.28.0.2:53 1 64 1 2025-11-14 05:26:10.319 00:00:00.000 UDP 28.104.0.1:38279 -> 198.28.0.2:53 1 64 1 2025-11-14 05:27:10.611 00:00:00.000 UDP 28.104.0.1:52643 -> 198.28.0.2:53 1 64 1 2025-11-14 05:27:10.612 00:00:00.000 UDP 28.104.0.1:44891 -> 198.28.0.2:53 1 64 1 2025-11-14 05:27:10.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44891 1 109 1 2025-11-14 05:27:10.622 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52643 1 80 1 2025-11-14 05:27:15.454 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:26:06.382 00:02:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:26:06.382 00:02:00.024 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:28:10.913 00:00:00.000 UDP 28.104.0.1:56627 -> 198.28.0.2:53 1 64 1 2025-11-14 05:28:10.913 00:00:00.000 UDP 28.104.0.1:50107 -> 198.28.0.2:53 1 64 1 2025-11-14 05:23:57.405 00:05:09.035 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:28:10.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56627 1 109 1 2025-11-14 05:28:10.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50107 1 80 1 2025-11-14 05:24:06.392 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:29:11.235 00:00:00.000 UDP 28.104.0.1:53651 -> 198.28.0.2:53 1 64 1 2025-11-14 05:29:11.234 00:00:00.000 UDP 28.104.0.1:56763 -> 198.28.0.2:53 1 64 1 2025-11-14 05:24:57.355 00:05:09.095 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:29:11.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53651 1 109 1 2025-11-14 05:29:11.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56763 1 80 1 2025-11-14 05:29:06.385 00:01:00.077 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:29:06.385 00:01:00.022 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:25:57.366 00:05:09.019 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:30:11.562 00:00:00.000 UDP 28.104.0.1:59520 -> 198.28.0.2:53 1 64 1 2025-11-14 05:30:11.562 00:00:00.000 UDP 28.104.0.1:60264 -> 198.28.0.2:53 1 64 1 2025-11-14 05:30:11.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59520 1 109 1 2025-11-14 05:30:11.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60264 1 80 1 2025-11-14 05:26:15.941 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-14 05:31:11.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55103 1 80 1 2025-11-14 05:31:11.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54056 1 109 1 2025-11-14 05:31:11.862 00:00:00.000 UDP 28.104.0.1:54056 -> 198.28.0.2:53 1 64 1 2025-11-14 05:31:11.863 00:00:00.000 UDP 28.104.0.1:55103 -> 198.28.0.2:53 1 64 1 2025-11-14 05:32:12.187 00:00:00.000 UDP 28.104.0.1:54877 -> 198.28.0.2:53 1 64 1 2025-11-14 05:32:12.186 00:00:00.000 UDP 28.104.0.1:37165 -> 198.28.0.2:53 1 64 1 2025-11-14 05:32:15.680 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:32:12.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37165 1 80 1 2025-11-14 05:32:12.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54877 1 109 1 2025-11-14 05:31:06.385 00:02:00.022 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:31:06.385 00:02:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:33:12.484 00:00:00.000 UDP 28.104.0.1:50874 -> 198.28.0.2:53 1 64 1 2025-11-14 05:33:12.486 00:00:00.000 UDP 28.104.0.1:34579 -> 198.28.0.2:53 1 64 1 2025-11-14 05:33:12.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50874 1 80 1 2025-11-14 05:33:12.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34579 1 109 1 2025-11-14 05:29:57.406 00:05:09.035 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:34:12.794 00:00:00.000 UDP 28.104.0.1:47951 -> 198.28.0.2:53 1 64 1 2025-11-14 05:34:12.794 00:00:00.000 UDP 28.104.0.1:46690 -> 198.28.0.2:53 1 64 1 2025-11-14 05:34:12.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47951 1 80 1 2025-11-14 05:34:12.805 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46690 1 109 1 2025-11-14 05:30:06.395 00:05:50.964 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:30:57.356 00:05:09.096 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:34:06.385 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:34:06.385 00:01:00.021 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:35:13.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37368 1 80 1 2025-11-14 05:35:13.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46555 1 109 1 2025-11-14 05:35:13.100 00:00:00.000 UDP 28.104.0.1:46555 -> 198.28.0.2:53 1 64 1 2025-11-14 05:35:13.099 00:00:00.000 UDP 28.104.0.1:37368 -> 198.28.0.2:53 1 64 1 2025-11-14 05:31:35.943 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2952 1 2025-11-14 05:31:57.365 00:05:09.020 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:36:13.405 00:00:00.000 UDP 28.104.0.1:57271 -> 198.28.0.2:53 1 64 1 2025-11-14 05:36:13.405 00:00:00.000 UDP 28.104.0.1:33085 -> 198.28.0.2:53 1 64 1 2025-11-14 05:36:13.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57271 1 80 1 2025-11-14 05:36:13.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33085 1 109 1 2025-11-14 05:37:13.705 00:00:00.000 UDP 28.104.0.1:58483 -> 198.28.0.2:53 1 64 1 2025-11-14 05:37:13.705 00:00:00.000 UDP 28.104.0.1:44283 -> 198.28.0.2:53 1 64 1 2025-11-14 05:37:15.463 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:37:13.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44283 1 80 1 2025-11-14 05:37:13.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58483 1 109 1 2025-11-14 05:36:06.385 00:02:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:36:06.385 00:02:00.021 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:38:14.803 00:00:00.000 UDP 28.104.0.1:53825 -> 198.28.0.2:53 1 64 1 2025-11-14 05:38:14.803 00:00:00.000 UDP 28.104.0.1:32851 -> 198.28.0.2:53 1 64 1 2025-11-14 05:38:14.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53825 1 109 1 2025-11-14 05:38:14.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32851 1 80 1 2025-11-14 05:39:15.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53590 1 109 1 2025-11-14 05:39:15.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59936 1 80 1 2025-11-14 05:39:15.105 00:00:00.000 UDP 28.104.0.1:53590 -> 198.28.0.2:53 1 64 1 2025-11-14 05:39:15.105 00:00:00.000 UDP 28.104.0.1:59936 -> 198.28.0.2:53 1 64 1 2025-11-14 05:39:06.387 00:01:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:39:06.387 00:01:00.021 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:35:57.408 00:05:09.034 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:40:15.404 00:00:00.000 UDP 28.104.0.1:52705 -> 198.28.0.2:53 1 64 1 2025-11-14 05:40:15.404 00:00:00.000 UDP 28.104.0.1:33504 -> 198.28.0.2:53 1 64 1 2025-11-14 05:40:15.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52705 1 80 1 2025-11-14 05:40:15.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33504 1 109 1 2025-11-14 05:36:06.397 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:36:55.946 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3000 1 2025-11-14 05:41:15.664 00:00:00.000 UDP 28.104.0.1:47173 -> 198.28.0.2:53 1 64 1 2025-11-14 05:41:15.664 00:00:00.000 UDP 28.104.0.1:35798 -> 198.28.0.2:53 1 64 1 2025-11-14 05:36:57.359 00:05:09.094 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:41:15.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35798 1 109 1 2025-11-14 05:41:15.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47173 1 80 1 2025-11-14 05:37:57.369 00:05:09.024 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:42:15.716 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:42:15.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54502 1 109 1 2025-11-14 05:42:15.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39806 1 80 1 2025-11-14 05:42:15.918 00:00:00.000 UDP 28.104.0.1:39806 -> 198.28.0.2:53 1 64 1 2025-11-14 05:42:15.918 00:00:00.000 UDP 28.104.0.1:54502 -> 198.28.0.2:53 1 64 1 2025-11-14 05:41:06.386 00:02:00.090 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:41:06.386 00:02:00.024 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:43:16.239 00:00:00.000 UDP 28.104.0.1:43350 -> 198.28.0.2:53 1 64 1 2025-11-14 05:43:16.239 00:00:00.000 UDP 28.104.0.1:37234 -> 198.28.0.2:53 1 64 1 2025-11-14 05:43:16.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37234 1 80 1 2025-11-14 05:43:16.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43350 1 109 1 2025-11-14 05:44:16.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40172 1 80 1 2025-11-14 05:44:16.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37280 1 109 1 2025-11-14 05:44:16.535 00:00:00.000 UDP 28.104.0.1:37280 -> 198.28.0.2:53 1 64 1 2025-11-14 05:44:16.535 00:00:00.000 UDP 28.104.0.1:40172 -> 198.28.0.2:53 1 64 1 2025-11-14 05:44:06.387 00:01:00.078 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:44:06.387 00:01:00.022 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:45:16.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51686 1 80 1 2025-11-14 05:45:16.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48175 1 109 1 2025-11-14 05:45:16.842 00:00:00.000 UDP 28.104.0.1:48175 -> 198.28.0.2:53 1 64 1 2025-11-14 05:45:16.842 00:00:00.000 UDP 28.104.0.1:51686 -> 198.28.0.2:53 1 64 1 2025-11-14 05:41:57.409 00:05:09.034 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:46:17.140 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50717 1 109 1 2025-11-14 05:46:17.141 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39795 1 80 1 2025-11-14 05:46:17.130 00:00:00.000 UDP 28.104.0.1:50717 -> 198.28.0.2:53 1 64 1 2025-11-14 05:46:17.130 00:00:00.000 UDP 28.104.0.1:39795 -> 198.28.0.2:53 1 64 1 2025-11-14 05:42:15.953 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3108 1 2025-11-14 05:42:06.397 00:05:50.963 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:42:57.359 00:05:09.094 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:47:15.550 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:47:17.424 00:00:00.000 UDP 28.104.0.1:58972 -> 198.28.0.2:53 1 64 1 2025-11-14 05:47:17.424 00:00:00.000 UDP 28.104.0.1:59416 -> 198.28.0.2:53 1 64 1 2025-11-14 05:47:17.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58972 1 109 1 2025-11-14 05:47:17.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59416 1 80 1 2025-11-14 05:46:06.389 00:02:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:46:06.389 00:02:00.021 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:43:57.371 00:05:09.020 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:48:17.719 00:00:00.000 UDP 28.104.0.1:54540 -> 198.28.0.2:53 1 64 1 2025-11-14 05:48:17.719 00:00:00.000 UDP 28.104.0.1:55549 -> 198.28.0.2:53 1 64 1 2025-11-14 05:48:17.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55549 1 109 1 2025-11-14 05:48:17.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54540 1 80 1 2025-11-14 05:49:18.028 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47027 1 109 1 2025-11-14 05:49:18.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53335 1 80 1 2025-11-14 05:49:18.009 00:00:00.000 UDP 28.104.0.1:53335 -> 198.28.0.2:53 1 64 1 2025-11-14 05:49:18.012 00:00:00.000 UDP 28.104.0.1:47027 -> 198.28.0.2:53 1 64 1 2025-11-14 05:49:06.390 00:01:00.080 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:49:06.390 00:01:00.022 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:50:18.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39980 1 109 1 2025-11-14 05:50:18.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54519 1 80 1 2025-11-14 05:50:18.311 00:00:00.000 UDP 28.104.0.1:39980 -> 198.28.0.2:53 1 64 1 2025-11-14 05:50:18.311 00:00:00.000 UDP 28.104.0.1:54519 -> 198.28.0.2:53 1 64 1 2025-11-14 05:51:18.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35204 1 80 1 2025-11-14 05:51:18.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49083 1 109 1 2025-11-14 05:51:18.649 00:00:00.000 UDP 28.104.0.1:49083 -> 198.28.0.2:53 1 64 1 2025-11-14 05:51:18.649 00:00:00.000 UDP 28.104.0.1:35204 -> 198.28.0.2:53 1 64 1 2025-11-14 05:47:35.963 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2440 1 2025-11-14 05:51:06.392 00:01:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:51:06.392 00:01:00.020 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:47:57.410 00:05:09.037 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:52:15.839 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:52:18.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41985 1 80 1 2025-11-14 05:52:18.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42834 1 109 1 2025-11-14 05:52:18.899 00:00:00.000 UDP 28.104.0.1:42834 -> 198.28.0.2:53 1 64 1 2025-11-14 05:52:18.899 00:00:00.000 UDP 28.104.0.1:41985 -> 198.28.0.2:53 1 64 1 2025-11-14 05:48:06.400 00:05:50.961 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-14 05:48:57.359 00:05:09.097 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-14 05:53:19.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45387 1 109 1 2025-11-14 05:53:19.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45292 1 80 1 2025-11-14 05:53:19.232 00:00:00.000 UDP 28.104.0.1:45292 -> 198.28.0.2:53 1 64 1 2025-11-14 05:53:19.232 00:00:00.000 UDP 28.104.0.1:45387 -> 198.28.0.2:53 1 64 1 2025-11-14 05:49:57.370 00:05:09.022 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-14 05:54:21.772 00:00:00.000 UDP 28.104.0.1:40067 -> 198.28.0.2:53 1 64 1 2025-11-14 05:54:21.772 00:00:00.000 UDP 28.104.0.1:37616 -> 198.28.0.2:53 1 64 1 2025-11-14 05:54:21.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40067 1 109 1 2025-11-14 05:54:21.783 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37616 1 80 1 2025-11-14 05:53:06.392 00:02:00.020 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-11-14 05:53:06.392 00:02:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-11-14 05:55:22.071 00:00:00.000 UDP 28.104.0.1:36198 -> 198.28.0.2:53 1 64 1 2025-11-14 05:55:22.072 00:00:00.000 UDP 28.104.0.1:42298 -> 198.28.0.2:53 1 64 1 2025-11-14 05:55:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36198 1 109 1 2025-11-14 05:55:22.082 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42298 1 80 1 2025-11-14 05:56:22.330 00:00:00.000 UDP 28.104.0.1:41790 -> 198.28.0.2:53 1 64 1 2025-11-14 05:56:22.330 00:00:00.000 UDP 28.104.0.1:33882 -> 198.28.0.2:53 1 64 1 2025-11-14 05:56:22.341 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33882 1 80 1 2025-11-14 05:56:22.341 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41790 1 109 1 2025-11-14 05:52:55.977 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-11-14 05:56:06.394 00:01:00.079 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-11-14 05:56:06.394 00:01:00.018 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-14 05:57:15.797 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-14 05:57:22.638 00:00:00.000 UDP 28.104.0.1:40919 -> 198.28.0.2:53 1 64 1 2025-11-14 05:57:22.638 00:00:00.000 UDP 28.104.0.1:57101 -> 198.28.0.2:53 1 64 1 2025-11-14 05:57:22.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40919 1 80 1 2025-11-14 05:57:22.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57101 1 109 1 2025-11-14 05:53:57.411 00:05:09.038 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-14 05:58:22.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46824 1 109 1 2025-11-14 05:58:22.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46300 1 80 1 2025-11-14 05:58:22.939 00:00:00.000 UDP 28.104.0.1:46300 -> 198.28.0.2:53 1 64 1 2025-11-14 05:58:22.939 00:00:00.000 UDP 28.104.0.1:46824 -> 198.28.0.2:53 1 64 1 Summary: total flows: 351, total bytes: 96018, total packets: 1416, avg bps: 196, avg pps: 0, avg bpp: 67 Time window: 2025-11-14 04:54:06 - 2025-11-14 05:59:06 Total flows processed: 351, passed: 351, Blocks skipped: 0, Bytes read: 36568 Sys: 0.0040s User: 0.0040s Wall: 0.0066s flows/second: 53014.1 Runtime: 0.0066s