Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 05:54:06.964 00:05:50.877 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 05:58:06.956 00:01:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-15 05:54:57.840 00:05:09.180 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 05:59:24.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50697 1 109 1 2025-11-15 05:59:24.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56575 1 80 1 2025-11-15 05:59:24.404 00:00:00.000 UDP 28.104.0.1:50697 -> 198.28.0.2:53 1 64 1 2025-11-15 05:59:24.404 00:00:00.000 UDP 28.104.0.1:56575 -> 198.28.0.2:53 1 64 1 2025-11-15 06:00:06.955 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 05:55:57.851 00:05:09.105 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:00:24.707 00:00:00.000 UDP 28.104.0.1:47314 -> 198.28.0.2:53 1 64 1 2025-11-15 06:00:24.707 00:00:00.000 UDP 28.104.0.1:58229 -> 198.28.0.2:53 1 64 1 2025-11-15 06:00:24.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58229 1 80 1 2025-11-15 06:00:24.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47314 1 109 1 2025-11-15 06:01:06.955 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:01:25.041 00:00:00.000 UDP 28.104.0.1:59092 -> 198.28.0.2:53 1 64 1 2025-11-15 06:01:25.040 00:00:00.000 UDP 28.104.0.1:50430 -> 198.28.0.2:53 1 64 1 2025-11-15 06:01:25.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50430 1 109 1 2025-11-15 06:01:25.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59092 1 80 1 2025-11-15 06:02:06.956 00:00:00.039 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:02:25.341 00:00:00.000 UDP 28.104.0.1:53570 -> 198.28.0.2:53 1 64 1 2025-11-15 06:02:25.341 00:00:00.000 UDP 28.104.0.1:51827 -> 198.28.0.2:53 1 64 1 2025-11-15 06:02:25.352 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53570 1 80 1 2025-11-15 06:02:25.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51827 1 109 1 2025-11-15 06:02:45.148 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:03:06.956 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 05:59:06.956 00:05:00.167 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:03:25.635 00:00:00.000 UDP 28.104.0.1:49838 -> 198.28.0.2:53 1 64 1 2025-11-15 06:03:25.634 00:00:00.000 UDP 28.104.0.1:60012 -> 198.28.0.2:53 1 64 1 2025-11-15 06:03:25.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49838 1 80 1 2025-11-15 06:03:25.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60012 1 109 1 2025-11-15 05:59:28.053 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 2960 1 2025-11-15 06:04:06.955 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 05:59:57.891 00:05:09.121 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:04:25.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56483 1 80 1 2025-11-15 06:04:25.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55641 1 109 1 2025-11-15 06:04:25.934 00:00:00.000 UDP 28.104.0.1:56483 -> 198.28.0.2:53 1 64 1 2025-11-15 06:04:25.934 00:00:00.000 UDP 28.104.0.1:55641 -> 198.28.0.2:53 1 64 1 2025-11-15 06:00:06.965 00:05:50.876 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:05:06.955 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:00:57.840 00:05:09.180 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:05:26.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53828 1 80 1 2025-11-15 06:05:26.255 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55491 1 109 1 2025-11-15 06:05:26.244 00:00:00.000 UDP 28.104.0.1:55491 -> 198.28.0.2:53 1 64 1 2025-11-15 06:05:26.244 00:00:00.000 UDP 28.104.0.1:53828 -> 198.28.0.2:53 1 64 1 2025-11-15 06:06:06.957 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:01:57.850 00:05:09.105 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:06:26.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35395 1 80 1 2025-11-15 06:06:26.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47072 1 109 1 2025-11-15 06:06:26.550 00:00:00.000 UDP 28.104.0.1:35395 -> 198.28.0.2:53 1 64 1 2025-11-15 06:06:26.550 00:00:00.000 UDP 28.104.0.1:47072 -> 198.28.0.2:53 1 64 1 2025-11-15 06:07:06.957 00:00:00.039 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:07:26.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40440 1 80 1 2025-11-15 06:07:26.855 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54679 1 109 1 2025-11-15 06:07:26.846 00:00:00.000 UDP 28.104.0.1:54679 -> 198.28.0.2:53 1 64 1 2025-11-15 06:07:26.846 00:00:00.000 UDP 28.104.0.1:40440 -> 198.28.0.2:53 1 64 1 2025-11-15 06:07:44.894 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:08:06.956 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:08:27.156 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40560 1 80 1 2025-11-15 06:08:27.156 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57346 1 109 1 2025-11-15 06:08:27.146 00:00:00.000 UDP 28.104.0.1:57346 -> 198.28.0.2:53 1 64 1 2025-11-15 06:08:27.146 00:00:00.000 UDP 28.104.0.1:40560 -> 198.28.0.2:53 1 64 1 2025-11-15 06:04:48.060 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2776 1 2025-11-15 06:09:06.956 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:05:06.956 00:05:00.168 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:09:27.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59138 1 109 1 2025-11-15 06:09:27.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37619 1 80 1 2025-11-15 06:09:27.442 00:00:00.000 UDP 28.104.0.1:37619 -> 198.28.0.2:53 1 64 1 2025-11-15 06:09:27.442 00:00:00.000 UDP 28.104.0.1:59138 -> 198.28.0.2:53 1 64 1 2025-11-15 06:10:06.956 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:05:57.891 00:05:09.120 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:10:27.768 00:00:00.000 UDP 28.104.0.1:34905 -> 198.28.0.2:53 1 64 1 2025-11-15 06:10:27.767 00:00:00.000 UDP 28.104.0.1:39428 -> 198.28.0.2:53 1 64 1 2025-11-15 06:10:27.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34905 1 80 1 2025-11-15 06:10:27.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39428 1 109 1 2025-11-15 06:06:06.965 00:05:50.881 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:06:57.842 00:05:09.179 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:11:28.041 00:00:00.000 UDP 28.104.0.1:38609 -> 198.28.0.2:53 1 64 1 2025-11-15 06:11:28.041 00:00:00.000 UDP 28.104.0.1:36356 -> 198.28.0.2:53 1 64 1 2025-11-15 06:11:28.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36356 1 109 1 2025-11-15 06:11:28.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38609 1 80 1 2025-11-15 06:11:06.957 00:01:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-15 06:07:57.854 00:05:09.104 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:12:28.419 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50897 1 109 1 2025-11-15 06:12:28.419 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48978 1 80 1 2025-11-15 06:12:28.408 00:00:00.000 UDP 28.104.0.1:48978 -> 198.28.0.2:53 1 64 1 2025-11-15 06:12:28.408 00:00:00.000 UDP 28.104.0.1:50897 -> 198.28.0.2:53 1 64 1 2025-11-15 06:12:45.033 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:13:06.957 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:13:28.710 00:00:00.000 UDP 28.104.0.1:38779 -> 198.28.0.2:53 1 64 1 2025-11-15 06:13:28.710 00:00:00.000 UDP 28.104.0.1:34350 -> 198.28.0.2:53 1 64 1 2025-11-15 06:13:28.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34350 1 109 1 2025-11-15 06:13:28.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38779 1 80 1 2025-11-15 06:14:06.957 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:10:08.065 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-15 06:14:29.001 00:00:00.000 UDP 28.104.0.1:49673 -> 198.28.0.2:53 1 64 1 2025-11-15 06:14:29.001 00:00:00.000 UDP 28.104.0.1:48725 -> 198.28.0.2:53 1 64 1 2025-11-15 06:14:29.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49673 1 109 1 2025-11-15 06:14:29.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48725 1 80 1 2025-11-15 06:15:06.956 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:11:06.956 00:05:00.168 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:15:29.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50085 1 109 1 2025-11-15 06:15:29.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35571 1 80 1 2025-11-15 06:15:29.258 00:00:00.000 UDP 28.104.0.1:50085 -> 198.28.0.2:53 1 64 1 2025-11-15 06:15:29.259 00:00:00.000 UDP 28.104.0.1:35571 -> 198.28.0.2:53 1 64 1 2025-11-15 06:16:06.957 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:11:57.897 00:05:09.117 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:16:29.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35046 1 109 1 2025-11-15 06:16:29.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51018 1 80 1 2025-11-15 06:16:29.556 00:00:00.000 UDP 28.104.0.1:51018 -> 198.28.0.2:53 1 64 1 2025-11-15 06:16:29.556 00:00:00.000 UDP 28.104.0.1:35046 -> 198.28.0.2:53 1 64 1 2025-11-15 06:12:06.967 00:05:50.883 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:17:06.958 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:12:57.846 00:05:09.176 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:17:29.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46782 1 80 1 2025-11-15 06:17:29.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46370 1 109 1 2025-11-15 06:17:29.864 00:00:00.000 UDP 28.104.0.1:46782 -> 198.28.0.2:53 1 64 1 2025-11-15 06:17:29.864 00:00:00.000 UDP 28.104.0.1:46370 -> 198.28.0.2:53 1 64 1 2025-11-15 06:17:45.127 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:18:06.957 00:00:00.040 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:13:57.857 00:05:09.101 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:18:30.201 00:00:00.000 UDP 28.104.0.1:49733 -> 198.28.0.2:53 1 64 1 2025-11-15 06:18:30.201 00:00:00.000 UDP 28.104.0.1:60517 -> 198.28.0.2:53 1 64 1 2025-11-15 06:18:30.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49733 1 80 1 2025-11-15 06:18:30.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60517 1 109 1 2025-11-15 06:19:06.957 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:19:30.490 00:00:00.000 UDP 28.104.0.1:52653 -> 198.28.0.2:53 1 64 1 2025-11-15 06:19:30.490 00:00:00.000 UDP 28.104.0.1:57308 -> 198.28.0.2:53 1 64 1 2025-11-15 06:19:30.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57308 1 80 1 2025-11-15 06:19:30.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52653 1 109 1 2025-11-15 06:15:28.072 00:05:11.362 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-15 06:20:06.957 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:20:30.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38216 1 109 1 2025-11-15 06:20:30.800 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41344 1 80 1 2025-11-15 06:20:30.789 00:00:00.000 UDP 28.104.0.1:38216 -> 198.28.0.2:53 1 64 1 2025-11-15 06:20:30.789 00:00:00.000 UDP 28.104.0.1:41344 -> 198.28.0.2:53 1 64 1 2025-11-15 06:21:06.958 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:17:06.957 00:05:00.170 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:21:31.098 00:00:00.000 UDP 28.104.0.1:52375 -> 198.28.0.2:53 1 64 1 2025-11-15 06:21:31.098 00:00:00.000 UDP 28.104.0.1:39942 -> 198.28.0.2:53 1 64 1 2025-11-15 06:21:31.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52375 1 109 1 2025-11-15 06:21:31.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39942 1 80 1 2025-11-15 06:22:06.958 00:00:00.041 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-15 06:17:57.899 00:05:09.115 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:22:31.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58933 1 80 1 2025-11-15 06:22:31.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58738 1 109 1 2025-11-15 06:22:31.445 00:00:00.000 UDP 28.104.0.1:58933 -> 198.28.0.2:53 1 64 1 2025-11-15 06:22:31.445 00:00:00.000 UDP 28.104.0.1:58738 -> 198.28.0.2:53 1 64 1 2025-11-15 06:22:45.171 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:18:06.968 00:05:50.890 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:18:57.850 00:05:09.174 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:23:41.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35137 1 80 1 2025-11-15 06:23:41.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50647 1 109 1 2025-11-15 06:23:41.475 00:00:00.000 UDP 28.104.0.1:50647 -> 198.28.0.2:53 1 64 1 2025-11-15 06:23:41.475 00:00:00.000 UDP 28.104.0.1:35137 -> 198.28.0.2:53 1 64 1 2025-11-15 06:19:57.859 00:05:09.098 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:24:41.767 00:00:00.000 UDP 28.104.0.1:55425 -> 198.28.0.2:53 1 64 1 2025-11-15 06:24:41.768 00:00:00.000 UDP 28.104.0.1:47860 -> 198.28.0.2:53 1 64 1 2025-11-15 06:24:41.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47860 1 80 1 2025-11-15 06:24:41.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55425 1 109 1 2025-11-15 06:20:48.079 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3184 1 2025-11-15 06:25:42.068 00:00:00.000 UDP 28.104.0.1:55889 -> 198.28.0.2:53 1 64 1 2025-11-15 06:25:42.068 00:00:00.000 UDP 28.104.0.1:55361 -> 198.28.0.2:53 1 64 1 2025-11-15 06:25:42.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55889 1 109 1 2025-11-15 06:25:42.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55361 1 80 1 2025-11-15 06:26:42.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35106 1 80 1 2025-11-15 06:26:42.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44055 1 109 1 2025-11-15 06:26:42.361 00:00:00.000 UDP 28.104.0.1:44055 -> 198.28.0.2:53 1 64 1 2025-11-15 06:26:42.362 00:00:00.000 UDP 28.104.0.1:35106 -> 198.28.0.2:53 1 64 1 2025-11-15 06:23:06.958 00:05:00.170 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:23:06.958 00:05:00.044 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:27:45.222 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:27:42.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40856 1 109 1 2025-11-15 06:27:42.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51038 1 80 1 2025-11-15 06:27:42.666 00:00:00.000 UDP 28.104.0.1:51038 -> 198.28.0.2:53 1 64 1 2025-11-15 06:27:42.666 00:00:00.000 UDP 28.104.0.1:40856 -> 198.28.0.2:53 1 64 1 2025-11-15 06:23:57.908 00:05:09.110 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:28:42.966 00:00:00.000 UDP 28.104.0.1:53303 -> 198.28.0.2:53 1 64 1 2025-11-15 06:28:42.965 00:00:00.000 UDP 28.104.0.1:57293 -> 198.28.0.2:53 1 64 1 2025-11-15 06:28:42.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53303 1 109 1 2025-11-15 06:28:42.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57293 1 80 1 2025-11-15 06:24:06.969 00:05:50.885 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:24:57.852 00:05:09.181 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:29:43.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47385 1 109 1 2025-11-15 06:29:43.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38527 1 80 1 2025-11-15 06:29:43.264 00:00:00.000 UDP 28.104.0.1:38527 -> 198.28.0.2:53 1 64 1 2025-11-15 06:29:43.264 00:00:00.000 UDP 28.104.0.1:47385 -> 198.28.0.2:53 1 64 1 2025-11-15 06:25:57.862 00:05:09.096 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:26:08.084 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 2936 1 2025-11-15 06:30:43.577 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38092 1 80 1 2025-11-15 06:30:43.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44084 1 109 1 2025-11-15 06:30:43.566 00:00:00.000 UDP 28.104.0.1:44084 -> 198.28.0.2:53 1 64 1 2025-11-15 06:30:43.566 00:00:00.000 UDP 28.104.0.1:38092 -> 198.28.0.2:53 1 64 1 2025-11-15 06:31:43.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59394 1 80 1 2025-11-15 06:31:43.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48563 1 109 1 2025-11-15 06:31:43.869 00:00:00.000 UDP 28.104.0.1:48563 -> 198.28.0.2:53 1 64 1 2025-11-15 06:31:43.869 00:00:00.000 UDP 28.104.0.1:59394 -> 198.28.0.2:53 1 64 1 2025-11-15 06:32:44.189 00:00:00.000 UDP 28.104.0.1:34137 -> 198.28.0.2:53 1 64 1 2025-11-15 06:32:44.189 00:00:00.000 UDP 28.104.0.1:58233 -> 198.28.0.2:53 1 64 1 2025-11-15 06:32:45.376 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:32:44.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34137 1 80 1 2025-11-15 06:32:44.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58233 1 109 1 2025-11-15 06:29:06.958 00:05:00.176 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:29:06.958 00:05:00.045 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:33:44.495 00:00:00.000 UDP 28.104.0.1:60297 -> 198.28.0.2:53 1 64 1 2025-11-15 06:33:44.494 00:00:00.000 UDP 28.104.0.1:37970 -> 198.28.0.2:53 1 64 1 2025-11-15 06:33:44.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37970 1 109 1 2025-11-15 06:33:44.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60297 1 80 1 2025-11-15 06:29:57.903 00:05:09.121 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:34:44.812 00:00:00.000 UDP 28.104.0.1:58918 -> 198.28.0.2:53 1 64 1 2025-11-15 06:34:44.812 00:00:00.000 UDP 28.104.0.1:57424 -> 198.28.0.2:53 1 64 1 2025-11-15 06:34:44.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58918 1 80 1 2025-11-15 06:34:44.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57424 1 109 1 2025-11-15 06:30:06.970 00:05:50.889 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:30:57.854 00:05:09.181 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:35:45.102 00:00:00.000 UDP 28.104.0.1:40349 -> 198.28.0.2:53 1 64 1 2025-11-15 06:35:45.102 00:00:00.000 UDP 28.104.0.1:44963 -> 198.28.0.2:53 1 64 1 2025-11-15 06:31:28.090 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2844 1 2025-11-15 06:35:45.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44963 1 109 1 2025-11-15 06:35:45.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40349 1 80 1 2025-11-15 06:31:57.863 00:05:09.097 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:36:45.405 00:00:00.000 UDP 28.104.0.1:43465 -> 198.28.0.2:53 1 64 1 2025-11-15 06:36:45.404 00:00:00.000 UDP 28.104.0.1:35926 -> 198.28.0.2:53 1 64 1 2025-11-15 06:36:45.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35926 1 80 1 2025-11-15 06:36:45.415 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43465 1 109 1 2025-11-15 06:37:45.699 00:00:00.000 UDP 28.104.0.1:38813 -> 198.28.0.2:53 1 64 1 2025-11-15 06:37:45.698 00:00:00.000 UDP 28.104.0.1:55815 -> 198.28.0.2:53 1 64 1 2025-11-15 06:37:45.481 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:37:45.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55815 1 109 1 2025-11-15 06:37:45.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38813 1 80 1 2025-11-15 06:38:46.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56488 1 109 1 2025-11-15 06:38:46.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44137 1 80 1 2025-11-15 06:38:46.513 00:00:00.000 UDP 28.104.0.1:56488 -> 198.28.0.2:53 1 64 1 2025-11-15 06:38:46.513 00:00:00.000 UDP 28.104.0.1:44137 -> 198.28.0.2:53 1 64 1 2025-11-15 06:35:06.961 00:05:00.172 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:35:06.961 00:05:00.045 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:39:46.816 00:00:00.000 UDP 28.104.0.1:58401 -> 198.28.0.2:53 1 64 1 2025-11-15 06:39:46.815 00:00:00.000 UDP 28.104.0.1:40067 -> 198.28.0.2:53 1 64 1 2025-11-15 06:39:46.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58401 1 80 1 2025-11-15 06:39:46.826 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40067 1 109 1 2025-11-15 06:35:57.909 00:05:09.116 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:40:47.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53647 1 80 1 2025-11-15 06:40:47.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47460 1 109 1 2025-11-15 06:40:47.087 00:00:00.000 UDP 28.104.0.1:53647 -> 198.28.0.2:53 1 64 1 2025-11-15 06:40:47.087 00:00:00.000 UDP 28.104.0.1:47460 -> 198.28.0.2:53 1 64 1 2025-11-15 06:36:06.970 00:05:50.890 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:36:48.092 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-15 06:36:57.859 00:05:09.176 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:41:47.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48687 1 80 1 2025-11-15 06:41:47.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57096 1 109 1 2025-11-15 06:41:47.379 00:00:00.000 UDP 28.104.0.1:48687 -> 198.28.0.2:53 1 64 1 2025-11-15 06:41:47.379 00:00:00.000 UDP 28.104.0.1:57096 -> 198.28.0.2:53 1 64 1 2025-11-15 06:37:57.870 00:05:09.091 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:42:45.464 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:42:47.675 00:00:00.000 UDP 28.104.0.1:42077 -> 198.28.0.2:53 1 64 1 2025-11-15 06:42:47.675 00:00:00.000 UDP 28.104.0.1:54916 -> 198.28.0.2:53 1 64 1 2025-11-15 06:42:47.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42077 1 109 1 2025-11-15 06:42:47.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54916 1 80 1 2025-11-15 06:43:47.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37046 1 80 1 2025-11-15 06:43:47.978 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59125 1 109 1 2025-11-15 06:43:47.967 00:00:00.000 UDP 28.104.0.1:59125 -> 198.28.0.2:53 1 64 1 2025-11-15 06:43:47.968 00:00:00.000 UDP 28.104.0.1:37046 -> 198.28.0.2:53 1 64 1 2025-11-15 06:44:48.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56411 1 80 1 2025-11-15 06:44:48.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46982 1 109 1 2025-11-15 06:44:48.260 00:00:00.000 UDP 28.104.0.1:46982 -> 198.28.0.2:53 1 64 1 2025-11-15 06:44:48.260 00:00:00.000 UDP 28.104.0.1:56411 -> 198.28.0.2:53 1 64 1 2025-11-15 06:41:06.962 00:05:00.209 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:41:06.962 00:05:00.042 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:45:48.551 00:00:00.000 UDP 28.104.0.1:44563 -> 198.28.0.2:53 1 64 1 2025-11-15 06:45:48.551 00:00:00.000 UDP 28.104.0.1:43892 -> 198.28.0.2:53 1 64 1 2025-11-15 06:45:48.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43892 1 80 1 2025-11-15 06:45:48.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44563 1 109 1 2025-11-15 06:41:57.911 00:05:09.134 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:42:08.100 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-15 06:46:48.843 00:00:00.000 UDP 28.104.0.1:48668 -> 198.28.0.2:53 1 64 1 2025-11-15 06:46:48.843 00:00:00.000 UDP 28.104.0.1:57799 -> 198.28.0.2:53 1 64 1 2025-11-15 06:46:48.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57799 1 80 1 2025-11-15 06:46:48.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48668 1 109 1 2025-11-15 06:42:06.971 00:05:50.894 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:42:57.864 00:05:09.204 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:47:45.719 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:47:49.134 00:00:00.000 UDP 28.104.0.1:39588 -> 198.28.0.2:53 1 64 1 2025-11-15 06:47:49.134 00:00:00.000 UDP 28.104.0.1:53421 -> 198.28.0.2:53 1 64 1 2025-11-15 06:47:49.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53421 1 80 1 2025-11-15 06:47:49.144 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39588 1 109 1 2025-11-15 06:43:57.874 00:05:09.090 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:48:49.432 00:00:00.000 UDP 28.104.0.1:60008 -> 198.28.0.2:53 1 64 1 2025-11-15 06:48:49.431 00:00:00.000 UDP 28.104.0.1:59505 -> 198.28.0.2:53 1 64 1 2025-11-15 06:48:49.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59505 1 109 1 2025-11-15 06:48:49.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60008 1 80 1 2025-11-15 06:49:49.725 00:00:00.000 UDP 28.104.0.1:40118 -> 198.28.0.2:53 1 64 1 2025-11-15 06:49:49.725 00:00:00.000 UDP 28.104.0.1:46992 -> 198.28.0.2:53 1 64 1 2025-11-15 06:49:49.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40118 1 109 1 2025-11-15 06:49:49.735 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46992 1 80 1 2025-11-15 06:50:50.042 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50768 1 109 1 2025-11-15 06:50:50.041 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33993 1 80 1 2025-11-15 06:50:50.030 00:00:00.000 UDP 28.104.0.1:33993 -> 198.28.0.2:53 1 64 1 2025-11-15 06:50:50.031 00:00:00.000 UDP 28.104.0.1:50768 -> 198.28.0.2:53 1 64 1 2025-11-15 06:47:06.963 00:05:00.212 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:47:06.963 00:05:00.045 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:47:28.106 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2972 1 2025-11-15 06:51:50.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44238 1 80 1 2025-11-15 06:51:50.338 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33031 1 109 1 2025-11-15 06:51:50.328 00:00:00.000 UDP 28.104.0.1:44238 -> 198.28.0.2:53 1 64 1 2025-11-15 06:51:50.328 00:00:00.000 UDP 28.104.0.1:33031 -> 198.28.0.2:53 1 64 1 2025-11-15 06:47:57.916 00:05:09.165 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 06:52:45.958 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:52:50.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38551 1 80 1 2025-11-15 06:52:50.635 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54296 1 109 1 2025-11-15 06:52:50.624 00:00:00.000 UDP 28.104.0.1:38551 -> 198.28.0.2:53 1 64 1 2025-11-15 06:52:50.624 00:00:00.000 UDP 28.104.0.1:54296 -> 198.28.0.2:53 1 64 1 2025-11-15 06:48:06.974 00:05:50.892 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 06:48:57.865 00:05:09.226 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 06:53:51.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41374 1 109 1 2025-11-15 06:53:51.005 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57807 1 80 1 2025-11-15 06:53:50.993 00:00:00.000 UDP 28.104.0.1:57807 -> 198.28.0.2:53 1 64 1 2025-11-15 06:53:50.993 00:00:00.000 UDP 28.104.0.1:41374 -> 198.28.0.2:53 1 64 1 2025-11-15 06:49:57.875 00:05:09.091 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 06:54:51.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37300 1 109 1 2025-11-15 06:54:51.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38895 1 80 1 2025-11-15 06:54:51.310 00:00:00.000 UDP 28.104.0.1:37300 -> 198.28.0.2:53 1 64 1 2025-11-15 06:54:51.310 00:00:00.000 UDP 28.104.0.1:38895 -> 198.28.0.2:53 1 64 1 2025-11-15 06:55:51.603 00:00:00.000 UDP 28.104.0.1:51023 -> 198.28.0.2:53 1 64 1 2025-11-15 06:55:51.603 00:00:00.000 UDP 28.104.0.1:51967 -> 198.28.0.2:53 1 64 1 2025-11-15 06:55:51.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51967 1 80 1 2025-11-15 06:55:51.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51023 1 109 1 2025-11-15 06:56:51.863 00:00:00.000 UDP 28.104.0.1:55132 -> 198.28.0.2:53 1 64 1 2025-11-15 06:56:51.863 00:00:00.000 UDP 28.104.0.1:46040 -> 198.28.0.2:53 1 64 1 2025-11-15 06:56:51.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46040 1 80 1 2025-11-15 06:56:51.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55132 1 109 1 2025-11-15 06:52:48.110 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2936 1 2025-11-15 06:53:06.966 00:05:00.211 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-15 06:53:06.966 00:05:00.043 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-15 06:57:45.965 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 06:57:52.180 00:00:00.000 UDP 28.104.0.1:46630 -> 198.28.0.2:53 1 64 1 2025-11-15 06:57:52.180 00:00:00.000 UDP 28.104.0.1:47484 -> 198.28.0.2:53 1 64 1 2025-11-15 06:57:52.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46630 1 109 1 2025-11-15 06:57:52.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47484 1 80 1 2025-11-15 06:53:57.917 00:05:09.166 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 Summary: total flows: 338, total bytes: 96082, total packets: 1417, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-11-15 05:54:06 - 2025-11-15 06:59:07 Total flows processed: 338, passed: 338, Blocks skipped: 0, Bytes read: 35216 Sys: 0.0032s User: 0.0041s Wall: 0.0141s flows/second: 23941.1 Runtime: 0.0141s