Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-15 13:54:07.254 00:05:50.818 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 13:59:30.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55100 1 80 1 2025-11-15 13:59:30.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53438 1 109 1 2025-11-15 13:59:30.647 00:00:00.000 UDP 28.104.0.1:55100 -> 198.28.0.2:53 1 64 1 2025-11-15 13:59:30.647 00:00:00.000 UDP 28.104.0.1:53438 -> 198.28.0.2:53 1 64 1 2025-11-15 13:55:07.159 00:05:50.925 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:00:30.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34326 1 80 1 2025-11-15 14:00:30.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58999 1 109 1 2025-11-15 14:00:30.943 00:00:00.000 UDP 28.104.0.1:34326 -> 198.28.0.2:53 1 64 1 2025-11-15 14:00:30.943 00:00:00.000 UDP 28.104.0.1:58999 -> 198.28.0.2:53 1 64 1 2025-11-15 14:01:31.230 00:00:00.000 UDP 28.104.0.1:35366 -> 198.28.0.2:53 1 64 1 2025-11-15 14:01:31.230 00:00:00.000 UDP 28.104.0.1:42847 -> 198.28.0.2:53 1 64 1 2025-11-15 14:01:31.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35366 1 109 1 2025-11-15 14:01:31.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42847 1 80 1 2025-11-15 13:57:07.157 00:06:00.179 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 13:57:07.157 00:06:00.006 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 13:58:18.705 00:05:00.498 OSPF 28.0.2.1:0 -> 224.0.0.5:0 42 3216 1 2025-11-15 14:02:31.532 00:00:00.000 UDP 28.104.0.1:46668 -> 198.28.0.2:53 1 64 1 2025-11-15 14:02:31.532 00:00:00.000 UDP 28.104.0.1:33216 -> 198.28.0.2:53 1 64 1 2025-11-15 14:02:31.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33216 1 109 1 2025-11-15 14:02:31.541 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46668 1 80 1 2025-11-15 14:02:54.387 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:03:31.827 00:00:00.000 UDP 28.104.0.1:40825 -> 198.28.0.2:53 1 64 1 2025-11-15 14:03:31.827 00:00:00.000 UDP 28.104.0.1:41402 -> 198.28.0.2:53 1 64 1 2025-11-15 14:03:31.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40825 1 109 1 2025-11-15 14:03:31.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41402 1 80 1 2025-11-15 13:59:07.167 00:05:50.905 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 13:59:58.121 00:05:09.126 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:04:32.116 00:00:00.000 UDP 28.104.0.1:42268 -> 198.28.0.2:53 1 64 1 2025-11-15 14:04:32.116 00:00:00.000 UDP 28.104.0.1:48905 -> 198.28.0.2:53 1 64 1 2025-11-15 14:04:32.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42268 1 80 1 2025-11-15 14:04:32.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48905 1 109 1 2025-11-15 14:00:07.255 00:05:50.817 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:05:32.410 00:00:00.000 UDP 28.104.0.1:49440 -> 198.28.0.2:53 1 64 1 2025-11-15 14:05:32.410 00:00:00.000 UDP 28.104.0.1:54621 -> 198.28.0.2:53 1 64 1 2025-11-15 14:05:32.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49440 1 80 1 2025-11-15 14:05:32.419 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54621 1 109 1 2025-11-15 14:01:07.160 00:05:50.924 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:06:32.709 00:00:00.000 UDP 28.104.0.1:37701 -> 198.28.0.2:53 1 64 1 2025-11-15 14:06:32.709 00:00:00.000 UDP 28.104.0.1:39738 -> 198.28.0.2:53 1 64 1 2025-11-15 14:06:32.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39738 1 80 1 2025-11-15 14:06:32.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37701 1 109 1 2025-11-15 14:07:33.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42737 1 80 1 2025-11-15 14:07:33.094 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36456 1 109 1 2025-11-15 14:07:33.084 00:00:00.000 UDP 28.104.0.1:42737 -> 198.28.0.2:53 1 64 1 2025-11-15 14:07:33.084 00:00:00.000 UDP 28.104.0.1:36456 -> 198.28.0.2:53 1 64 1 2025-11-15 14:03:28.710 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2892 1 2025-11-15 14:07:54.633 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:08:33.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51799 1 80 1 2025-11-15 14:08:33.392 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43374 1 109 1 2025-11-15 14:08:33.381 00:00:00.000 UDP 28.104.0.1:51799 -> 198.28.0.2:53 1 64 1 2025-11-15 14:08:33.381 00:00:00.000 UDP 28.104.0.1:43374 -> 198.28.0.2:53 1 64 1 2025-11-15 14:04:07.159 00:06:00.179 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:04:07.159 00:06:00.007 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:09:33.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37406 1 109 1 2025-11-15 14:09:33.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51762 1 80 1 2025-11-15 14:09:33.675 00:00:00.000 UDP 28.104.0.1:37406 -> 198.28.0.2:53 1 64 1 2025-11-15 14:09:33.674 00:00:00.000 UDP 28.104.0.1:51762 -> 198.28.0.2:53 1 64 1 2025-11-15 14:05:07.169 00:05:50.907 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:05:58.123 00:05:09.126 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:10:33.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45508 1 109 1 2025-11-15 14:10:33.985 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42071 1 80 1 2025-11-15 14:10:33.974 00:00:00.000 UDP 28.104.0.1:42071 -> 198.28.0.2:53 1 64 1 2025-11-15 14:10:33.974 00:00:00.000 UDP 28.104.0.1:45508 -> 198.28.0.2:53 1 64 1 2025-11-15 14:06:07.266 00:05:50.810 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:11:34.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60601 1 109 1 2025-11-15 14:11:34.277 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53249 1 80 1 2025-11-15 14:11:34.267 00:00:00.000 UDP 28.104.0.1:60601 -> 198.28.0.2:53 1 64 1 2025-11-15 14:11:34.267 00:00:00.000 UDP 28.104.0.1:53249 -> 198.28.0.2:53 1 64 1 2025-11-15 14:07:07.161 00:05:50.925 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:12:34.554 00:00:00.000 UDP 28.104.0.1:36646 -> 198.28.0.2:53 1 64 1 2025-11-15 14:12:34.554 00:00:00.000 UDP 28.104.0.1:44214 -> 198.28.0.2:53 1 64 1 2025-11-15 14:12:34.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44214 1 109 1 2025-11-15 14:12:34.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36646 1 80 1 2025-11-15 14:12:54.597 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:08:48.721 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2676 1 2025-11-15 14:13:34.849 00:00:00.000 UDP 28.104.0.1:43412 -> 198.28.0.2:53 1 64 1 2025-11-15 14:13:34.849 00:00:00.000 UDP 28.104.0.1:55267 -> 198.28.0.2:53 1 64 1 2025-11-15 14:13:34.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55267 1 109 1 2025-11-15 14:13:34.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43412 1 80 1 2025-11-15 14:14:35.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51855 1 109 1 2025-11-15 14:14:35.173 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57751 1 80 1 2025-11-15 14:14:35.163 00:00:00.000 UDP 28.104.0.1:51855 -> 198.28.0.2:53 1 64 1 2025-11-15 14:14:35.163 00:00:00.000 UDP 28.104.0.1:57751 -> 198.28.0.2:53 1 64 1 2025-11-15 14:15:35.414 00:00:00.000 UDP 28.104.0.1:40420 -> 198.28.0.2:53 1 64 1 2025-11-15 14:15:35.414 00:00:00.000 UDP 28.104.0.1:56872 -> 198.28.0.2:53 1 64 1 2025-11-15 14:15:35.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56872 1 80 1 2025-11-15 14:15:35.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40420 1 109 1 2025-11-15 14:11:07.173 00:05:50.904 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:11:58.127 00:05:09.124 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:11:07.163 00:06:00.176 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:11:07.163 00:06:00.006 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:16:35.708 00:00:00.000 UDP 28.104.0.1:60708 -> 198.28.0.2:53 1 64 1 2025-11-15 14:16:35.708 00:00:00.000 UDP 28.104.0.1:35616 -> 198.28.0.2:53 1 64 1 2025-11-15 14:16:35.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35616 1 109 1 2025-11-15 14:16:35.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60708 1 80 1 2025-11-15 14:12:07.260 00:05:50.817 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:17:35.955 00:00:00.000 UDP 28.104.0.1:54282 -> 198.28.0.2:53 1 64 1 2025-11-15 14:17:35.955 00:00:00.000 UDP 28.104.0.1:58599 -> 198.28.0.2:53 1 64 1 2025-11-15 14:17:35.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58599 1 80 1 2025-11-15 14:17:35.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54282 1 109 1 2025-11-15 14:17:54.984 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:13:07.162 00:05:50.925 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:14:08.726 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-15 14:18:36.252 00:00:00.000 UDP 28.104.0.1:37915 -> 198.28.0.2:53 1 64 1 2025-11-15 14:18:36.253 00:00:00.000 UDP 28.104.0.1:45922 -> 198.28.0.2:53 1 64 1 2025-11-15 14:18:36.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37915 1 80 1 2025-11-15 14:18:36.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45922 1 109 1 2025-11-15 14:19:36.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42125 1 80 1 2025-11-15 14:19:36.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56692 1 109 1 2025-11-15 14:19:36.519 00:00:00.000 UDP 28.104.0.1:42125 -> 198.28.0.2:53 1 64 1 2025-11-15 14:19:36.519 00:00:00.000 UDP 28.104.0.1:56692 -> 198.28.0.2:53 1 64 1 2025-11-15 14:20:36.811 00:00:00.000 UDP 28.104.0.1:47293 -> 198.28.0.2:53 1 64 1 2025-11-15 14:20:36.811 00:00:00.000 UDP 28.104.0.1:38841 -> 198.28.0.2:53 1 64 1 2025-11-15 14:20:36.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38841 1 80 1 2025-11-15 14:20:36.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47293 1 109 1 2025-11-15 14:21:37.074 00:00:00.000 UDP 28.104.0.1:41767 -> 198.28.0.2:53 1 64 1 2025-11-15 14:21:37.074 00:00:00.000 UDP 28.104.0.1:33914 -> 198.28.0.2:53 1 64 1 2025-11-15 14:21:37.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33914 1 80 1 2025-11-15 14:21:37.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41767 1 109 1 2025-11-15 14:17:07.173 00:05:50.904 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:17:58.127 00:05:09.126 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:22:37.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33218 1 80 1 2025-11-15 14:22:37.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52702 1 109 1 2025-11-15 14:22:37.365 00:00:00.000 UDP 28.104.0.1:52702 -> 198.28.0.2:53 1 64 1 2025-11-15 14:22:37.365 00:00:00.000 UDP 28.104.0.1:33218 -> 198.28.0.2:53 1 64 1 2025-11-15 14:22:54.696 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:18:07.261 00:05:50.818 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:18:07.166 00:06:00.175 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:18:07.166 00:06:00.003 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:23:37.659 00:00:00.000 UDP 28.104.0.1:48502 -> 198.28.0.2:53 1 64 1 2025-11-15 14:23:37.659 00:00:00.000 UDP 28.104.0.1:34271 -> 198.28.0.2:53 1 64 1 2025-11-15 14:23:37.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48502 1 80 1 2025-11-15 14:19:28.739 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-15 14:23:37.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34271 1 109 1 2025-11-15 14:19:07.167 00:05:50.922 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:24:37.952 00:00:00.000 UDP 28.104.0.1:34766 -> 198.28.0.2:53 1 64 1 2025-11-15 14:24:37.952 00:00:00.000 UDP 28.104.0.1:32852 -> 198.28.0.2:53 1 64 1 2025-11-15 14:24:37.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34766 1 109 1 2025-11-15 14:24:37.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32852 1 80 1 2025-11-15 14:25:38.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39027 1 109 1 2025-11-15 14:25:38.239 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57180 1 80 1 2025-11-15 14:25:38.229 00:00:00.000 UDP 28.104.0.1:57180 -> 198.28.0.2:53 1 64 1 2025-11-15 14:25:38.230 00:00:00.000 UDP 28.104.0.1:39027 -> 198.28.0.2:53 1 64 1 2025-11-15 14:26:38.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42529 1 109 1 2025-11-15 14:26:38.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42147 1 80 1 2025-11-15 14:26:38.482 00:00:00.000 UDP 28.104.0.1:42529 -> 198.28.0.2:53 1 64 1 2025-11-15 14:26:38.482 00:00:00.000 UDP 28.104.0.1:42147 -> 198.28.0.2:53 1 64 1 2025-11-15 14:27:38.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38748 1 80 1 2025-11-15 14:27:38.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42325 1 109 1 2025-11-15 14:27:38.732 00:00:00.000 UDP 28.104.0.1:42325 -> 198.28.0.2:53 1 64 1 2025-11-15 14:27:38.732 00:00:00.000 UDP 28.104.0.1:38748 -> 198.28.0.2:53 1 64 1 2025-11-15 14:27:54.918 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:23:07.179 00:05:50.900 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:23:58.128 00:05:09.131 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:28:39.068 00:00:00.000 UDP 28.104.0.1:36791 -> 198.28.0.2:53 1 64 1 2025-11-15 14:28:39.068 00:00:00.000 UDP 28.104.0.1:51856 -> 198.28.0.2:53 1 64 1 2025-11-15 14:28:39.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36791 1 80 1 2025-11-15 14:28:39.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51856 1 109 1 2025-11-15 14:24:07.262 00:05:50.817 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:24:48.740 00:05:10.742 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3304 1 2025-11-15 14:29:39.317 00:00:00.000 UDP 28.104.0.1:60709 -> 198.28.0.2:53 1 64 1 2025-11-15 14:29:39.317 00:00:00.000 UDP 28.104.0.1:49802 -> 198.28.0.2:53 1 64 1 2025-11-15 14:29:39.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60709 1 80 1 2025-11-15 14:29:39.329 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49802 1 109 1 2025-11-15 14:25:07.169 00:05:50.921 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:25:07.169 00:06:00.173 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:25:07.169 00:06:00.000 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:30:39.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55729 1 80 1 2025-11-15 14:30:39.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38884 1 109 1 2025-11-15 14:30:39.618 00:00:00.000 UDP 28.104.0.1:38884 -> 198.28.0.2:53 1 64 1 2025-11-15 14:30:39.619 00:00:00.000 UDP 28.104.0.1:55729 -> 198.28.0.2:53 1 64 1 2025-11-15 14:31:39.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57679 1 109 1 2025-11-15 14:31:39.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47314 1 80 1 2025-11-15 14:31:39.913 00:00:00.000 UDP 28.104.0.1:47314 -> 198.28.0.2:53 1 64 1 2025-11-15 14:31:39.913 00:00:00.000 UDP 28.104.0.1:57679 -> 198.28.0.2:53 1 64 1 2025-11-15 14:32:40.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40794 1 109 1 2025-11-15 14:32:40.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58467 1 80 1 2025-11-15 14:32:40.213 00:00:00.000 UDP 28.104.0.1:40794 -> 198.28.0.2:53 1 64 1 2025-11-15 14:32:40.213 00:00:00.000 UDP 28.104.0.1:58467 -> 198.28.0.2:53 1 64 1 2025-11-15 14:32:55.247 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:33:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49410 1 109 1 2025-11-15 14:33:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59373 1 80 1 2025-11-15 14:33:40.466 00:00:00.000 UDP 28.104.0.1:59373 -> 198.28.0.2:53 1 64 1 2025-11-15 14:33:40.466 00:00:00.000 UDP 28.104.0.1:49410 -> 198.28.0.2:53 1 64 1 2025-11-15 14:29:07.180 00:05:50.901 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:29:58.130 00:05:09.131 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:30:08.746 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2872 1 2025-11-15 14:34:40.760 00:00:00.000 UDP 28.104.0.1:44891 -> 198.28.0.2:53 1 64 1 2025-11-15 14:34:40.760 00:00:00.000 UDP 28.104.0.1:34821 -> 198.28.0.2:53 1 64 1 2025-11-15 14:34:40.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44891 1 80 1 2025-11-15 14:34:40.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34821 1 109 1 2025-11-15 14:30:07.269 00:05:50.811 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:35:41.058 00:00:00.000 UDP 28.104.0.1:51066 -> 198.28.0.2:53 1 64 1 2025-11-15 14:35:41.058 00:00:00.000 UDP 28.104.0.1:37163 -> 198.28.0.2:53 1 64 1 2025-11-15 14:35:41.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37163 1 109 1 2025-11-15 14:35:41.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51066 1 80 1 2025-11-15 14:31:07.170 00:05:50.922 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:36:41.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41208 1 109 1 2025-11-15 14:36:41.361 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55838 1 80 1 2025-11-15 14:36:41.352 00:00:00.000 UDP 28.104.0.1:41208 -> 198.28.0.2:53 1 64 1 2025-11-15 14:36:41.352 00:00:00.000 UDP 28.104.0.1:55838 -> 198.28.0.2:53 1 64 1 2025-11-15 14:32:07.170 00:06:00.175 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:32:07.170 00:06:00.001 TCP 28.154.0.1:179 -> 28.155.0.1:36643 13 809 1 2025-11-15 14:37:41.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35696 1 109 1 2025-11-15 14:37:41.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53087 1 80 1 2025-11-15 14:37:41.645 00:00:00.000 UDP 28.104.0.1:35696 -> 198.28.0.2:53 1 64 1 2025-11-15 14:37:41.646 00:00:00.000 UDP 28.104.0.1:53087 -> 198.28.0.2:53 1 64 1 2025-11-15 14:37:55.095 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:38:41.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56829 1 80 1 2025-11-15 14:38:41.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50661 1 109 1 2025-11-15 14:38:41.936 00:00:00.000 UDP 28.104.0.1:50661 -> 198.28.0.2:53 1 64 1 2025-11-15 14:38:41.936 00:00:00.000 UDP 28.104.0.1:56829 -> 198.28.0.2:53 1 64 1 2025-11-15 14:35:28.754 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2836 1 2025-11-15 14:39:42.234 00:00:00.000 UDP 28.104.0.1:46287 -> 198.28.0.2:53 1 64 1 2025-11-15 14:39:42.234 00:00:00.000 UDP 28.104.0.1:56700 -> 198.28.0.2:53 1 64 1 2025-11-15 14:39:42.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46287 1 109 1 2025-11-15 14:39:42.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56700 1 80 1 2025-11-15 14:35:07.181 00:05:50.900 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:35:58.132 00:05:09.132 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:40:42.524 00:00:00.000 UDP 28.104.0.1:60574 -> 198.28.0.2:53 1 64 1 2025-11-15 14:40:42.524 00:00:00.000 UDP 28.104.0.1:50477 -> 198.28.0.2:53 1 64 1 2025-11-15 14:40:42.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60574 1 109 1 2025-11-15 14:40:42.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50477 1 80 1 2025-11-15 14:36:07.270 00:05:50.812 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:41:42.777 00:00:00.000 UDP 28.104.0.1:34764 -> 198.28.0.2:53 1 64 1 2025-11-15 14:41:42.777 00:00:00.000 UDP 28.104.0.1:54595 -> 198.28.0.2:53 1 64 1 2025-11-15 14:41:42.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54595 1 80 1 2025-11-15 14:41:42.788 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34764 1 109 1 2025-11-15 14:37:07.172 00:05:50.921 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:42:43.076 00:00:00.000 UDP 28.104.0.1:44472 -> 198.28.0.2:53 1 64 1 2025-11-15 14:42:43.076 00:00:00.000 UDP 28.104.0.1:44210 -> 198.28.0.2:53 1 64 1 2025-11-15 14:42:43.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44210 1 80 1 2025-11-15 14:42:43.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44472 1 109 1 2025-11-15 14:42:55.187 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:43:43.372 00:00:00.000 UDP 28.104.0.1:56485 -> 198.28.0.2:53 1 64 1 2025-11-15 14:43:43.372 00:00:00.000 UDP 28.104.0.1:36191 -> 198.28.0.2:53 1 64 1 2025-11-15 14:43:43.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36191 1 80 1 2025-11-15 14:43:43.383 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56485 1 109 1 2025-11-15 14:39:07.172 00:06:00.175 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:39:07.172 00:06:00.005 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:44:43.667 00:00:00.000 UDP 28.104.0.1:57143 -> 198.28.0.2:53 1 64 1 2025-11-15 14:44:43.667 00:00:00.000 UDP 28.104.0.1:57597 -> 198.28.0.2:53 1 64 1 2025-11-15 14:44:43.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57143 1 80 1 2025-11-15 14:44:43.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57597 1 109 1 2025-11-15 14:40:48.758 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2712 1 2025-11-15 14:45:43.962 00:00:00.000 UDP 28.104.0.1:57213 -> 198.28.0.2:53 1 64 1 2025-11-15 14:45:43.962 00:00:00.000 UDP 28.104.0.1:55025 -> 198.28.0.2:53 1 64 1 2025-11-15 14:45:43.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55025 1 109 1 2025-11-15 14:45:43.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57213 1 80 1 2025-11-15 14:41:07.182 00:05:50.902 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:41:58.133 00:05:09.131 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:46:44.270 00:00:00.000 UDP 28.104.0.1:38839 -> 198.28.0.2:53 1 64 1 2025-11-15 14:46:44.270 00:00:00.000 UDP 28.104.0.1:51206 -> 198.28.0.2:53 1 64 1 2025-11-15 14:46:44.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51206 1 80 1 2025-11-15 14:46:44.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38839 1 109 1 2025-11-15 14:42:07.273 00:05:50.812 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:47:44.567 00:00:00.000 UDP 28.104.0.1:50616 -> 198.28.0.2:53 1 64 1 2025-11-15 14:47:44.567 00:00:00.000 UDP 28.104.0.1:52853 -> 198.28.0.2:53 1 64 1 2025-11-15 14:47:44.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52853 1 80 1 2025-11-15 14:47:44.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50616 1 109 1 2025-11-15 14:47:55.459 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:43:07.173 00:05:50.921 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:48:44.824 00:00:00.000 UDP 28.104.0.1:49944 -> 198.28.0.2:53 1 64 1 2025-11-15 14:48:44.823 00:00:00.000 UDP 28.104.0.1:59175 -> 198.28.0.2:53 1 64 1 2025-11-15 14:48:44.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59175 1 80 1 2025-11-15 14:48:44.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49944 1 109 1 2025-11-15 14:49:45.117 00:00:00.000 UDP 28.104.0.1:40577 -> 198.28.0.2:53 1 64 1 2025-11-15 14:49:45.117 00:00:00.000 UDP 28.104.0.1:46073 -> 198.28.0.2:53 1 64 1 2025-11-15 14:49:45.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46073 1 109 1 2025-11-15 14:49:45.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40577 1 80 1 2025-11-15 14:46:08.763 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-15 14:50:45.408 00:00:00.000 UDP 28.104.0.1:33970 -> 198.28.0.2:53 1 64 1 2025-11-15 14:50:45.408 00:00:00.000 UDP 28.104.0.1:43470 -> 198.28.0.2:53 1 64 1 2025-11-15 14:50:45.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43470 1 109 1 2025-11-15 14:50:45.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33970 1 80 1 2025-11-15 14:46:07.174 00:06:00.177 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:46:07.174 00:06:00.005 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:51:45.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35784 1 80 1 2025-11-15 14:51:45.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42845 1 109 1 2025-11-15 14:51:45.707 00:00:00.000 UDP 28.104.0.1:35784 -> 198.28.0.2:53 1 64 1 2025-11-15 14:51:45.707 00:00:00.000 UDP 28.104.0.1:42845 -> 198.28.0.2:53 1 64 1 2025-11-15 14:47:07.184 00:05:50.900 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:47:58.134 00:05:09.130 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:52:45.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56318 1 109 1 2025-11-15 14:52:45.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59390 1 80 1 2025-11-15 14:52:45.961 00:00:00.000 UDP 28.104.0.1:56318 -> 198.28.0.2:53 1 64 1 2025-11-15 14:52:45.961 00:00:00.000 UDP 28.104.0.1:59390 -> 198.28.0.2:53 1 64 1 2025-11-15 14:52:55.487 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:48:07.273 00:05:50.811 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-15 14:53:46.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46886 1 80 1 2025-11-15 14:53:46.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59176 1 109 1 2025-11-15 14:53:46.260 00:00:00.000 UDP 28.104.0.1:59176 -> 198.28.0.2:53 1 64 1 2025-11-15 14:53:46.260 00:00:00.000 UDP 28.104.0.1:46886 -> 198.28.0.2:53 1 64 1 2025-11-15 14:49:07.176 00:05:50.919 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-15 14:54:46.547 00:00:00.000 UDP 28.104.0.1:50101 -> 198.28.0.2:53 1 64 1 2025-11-15 14:54:46.547 00:00:00.000 UDP 28.104.0.1:60380 -> 198.28.0.2:53 1 64 1 2025-11-15 14:54:46.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50101 1 109 1 2025-11-15 14:54:46.558 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60380 1 80 1 2025-11-15 14:51:28.766 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-15 14:55:46.864 00:00:00.000 UDP 28.104.0.1:45832 -> 198.28.0.2:53 1 64 1 2025-11-15 14:55:46.864 00:00:00.000 UDP 28.104.0.1:36212 -> 198.28.0.2:53 1 64 1 2025-11-15 14:55:46.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45832 1 80 1 2025-11-15 14:55:46.875 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36212 1 109 1 2025-11-15 14:56:47.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52198 1 80 1 2025-11-15 14:56:47.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53776 1 109 1 2025-11-15 14:56:47.176 00:00:00.000 UDP 28.104.0.1:52198 -> 198.28.0.2:53 1 64 1 2025-11-15 14:56:47.176 00:00:00.000 UDP 28.104.0.1:53776 -> 198.28.0.2:53 1 64 1 2025-11-15 14:57:47.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40408 1 109 1 2025-11-15 14:57:47.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48729 1 80 1 2025-11-15 14:57:47.431 00:00:00.000 UDP 28.104.0.1:48729 -> 198.28.0.2:53 1 64 1 2025-11-15 14:57:47.431 00:00:00.000 UDP 28.104.0.1:40408 -> 198.28.0.2:53 1 64 1 2025-11-15 14:57:55.320 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-15 14:53:07.187 00:05:50.898 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-15 14:53:58.135 00:05:09.131 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-15 14:53:07.177 00:06:00.174 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-15 14:53:07.177 00:06:00.002 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-15 14:58:47.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51007 1 109 1 2025-11-15 14:58:47.737 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50668 1 80 1 2025-11-15 14:58:47.727 00:00:00.000 UDP 28.104.0.1:51007 -> 198.28.0.2:53 1 64 1 2025-11-15 14:58:47.727 00:00:00.000 UDP 28.104.0.1:50668 -> 198.28.0.2:53 1 64 1 Summary: total flows: 321, total bytes: 96862, total packets: 1429, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-15 13:54:07 - 2025-11-15 14:59:07 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0041s User: 0.0031s Wall: 0.0031s flows/second: 102752.9 Runtime: 0.0032s