Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 02:59:03.003 00:00:00.000 UDP 28.104.0.1:58847 -> 198.28.0.2:53 1 64 1 2025-11-20 02:59:03.003 00:00:00.000 UDP 28.104.0.1:59723 -> 198.28.0.2:53 1 64 1 2025-11-20 02:59:03.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59723 1 80 1 2025-11-20 02:59:03.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58847 1 109 1 2025-11-20 02:54:09.255 00:06:00.208 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:00:03.308 00:00:00.000 UDP 28.104.0.1:46664 -> 198.28.0.2:53 1 64 1 2025-11-20 03:00:03.308 00:00:00.000 UDP 28.104.0.1:57701 -> 198.28.0.2:53 1 64 1 2025-11-20 03:00:05.744 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:00:03.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57701 1 109 1 2025-11-20 03:00:03.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46664 1 80 1 2025-11-20 02:56:17.657 00:05:10.010 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 03:01:03.553 00:00:00.000 UDP 28.104.0.1:49479 -> 198.28.0.2:53 1 64 1 2025-11-20 03:01:03.553 00:00:00.000 UDP 28.104.0.1:60203 -> 198.28.0.2:53 1 64 1 2025-11-20 03:01:03.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60203 1 80 1 2025-11-20 03:01:03.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49479 1 109 1 2025-11-20 03:02:03.885 00:00:00.000 UDP 28.104.0.1:33656 -> 198.28.0.2:53 1 64 1 2025-11-20 03:02:03.885 00:00:00.000 UDP 28.104.0.1:55824 -> 198.28.0.2:53 1 64 1 2025-11-20 03:02:03.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33656 1 109 1 2025-11-20 03:02:03.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55824 1 80 1 2025-11-20 02:58:00.533 00:05:08.733 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 02:58:09.711 00:05:50.881 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:03:04.190 00:00:00.000 UDP 28.104.0.1:50669 -> 198.28.0.2:53 1 64 1 2025-11-20 03:03:04.190 00:00:00.000 UDP 28.104.0.1:36552 -> 198.28.0.2:53 1 64 1 2025-11-20 03:03:04.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50669 1 80 1 2025-11-20 03:03:04.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36552 1 109 1 2025-11-20 02:59:09.720 00:05:50.821 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:04:04.483 00:00:00.000 UDP 28.104.0.1:58503 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:04.483 00:00:00.000 UDP 28.104.0.1:45067 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:04.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58503 1 109 1 2025-11-20 03:04:04.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45067 1 80 1 2025-11-20 03:00:00.557 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:05:04.792 00:00:00.000 UDP 28.104.0.1:55035 -> 198.28.0.2:53 1 64 1 2025-11-20 03:05:04.792 00:00:00.000 UDP 28.104.0.1:44153 -> 198.28.0.2:53 1 64 1 2025-11-20 03:05:06.011 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:05:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44153 1 80 1 2025-11-20 03:05:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55035 1 109 1 2025-11-20 03:00:09.256 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:01:37.667 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-20 03:06:05.099 00:00:00.000 UDP 28.104.0.1:43198 -> 198.28.0.2:53 1 64 1 2025-11-20 03:06:05.099 00:00:00.000 UDP 28.104.0.1:52859 -> 198.28.0.2:53 1 64 1 2025-11-20 03:06:05.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52859 1 80 1 2025-11-20 03:06:05.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43198 1 109 1 2025-11-20 03:01:09.256 00:06:00.208 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:07:05.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55418 1 80 1 2025-11-20 03:07:05.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49907 1 109 1 2025-11-20 03:07:05.390 00:00:00.000 UDP 28.104.0.1:55418 -> 198.28.0.2:53 1 64 1 2025-11-20 03:07:05.390 00:00:00.000 UDP 28.104.0.1:49907 -> 198.28.0.2:53 1 64 1 2025-11-20 03:08:05.713 00:00:00.000 UDP 28.104.0.1:43688 -> 198.28.0.2:53 1 64 1 2025-11-20 03:08:05.713 00:00:00.000 UDP 28.104.0.1:49836 -> 198.28.0.2:53 1 64 1 2025-11-20 03:08:05.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49836 1 80 1 2025-11-20 03:08:05.723 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43688 1 109 1 2025-11-20 03:04:00.542 00:05:08.726 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:04:09.711 00:05:50.881 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:09:06.007 00:00:00.000 UDP 28.104.0.1:33727 -> 198.28.0.2:53 1 64 1 2025-11-20 03:09:06.007 00:00:00.000 UDP 28.104.0.1:47841 -> 198.28.0.2:53 1 64 1 2025-11-20 03:09:06.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47841 1 80 1 2025-11-20 03:09:06.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33727 1 109 1 2025-11-20 03:05:09.722 00:05:50.821 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:10:06.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40157 1 80 1 2025-11-20 03:10:06.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51966 1 109 1 2025-11-20 03:10:05.762 00:00:00.018 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:10:06.414 00:00:00.000 UDP 28.104.0.1:51966 -> 198.28.0.2:53 1 64 1 2025-11-20 03:10:06.414 00:00:00.000 UDP 28.104.0.1:40157 -> 198.28.0.2:53 1 64 1 2025-11-20 03:06:00.553 00:05:08.711 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:11:06.665 00:00:00.000 UDP 28.104.0.1:51011 -> 198.28.0.2:53 1 64 1 2025-11-20 03:11:06.665 00:00:00.000 UDP 28.104.0.1:34312 -> 198.28.0.2:53 1 64 1 2025-11-20 03:11:06.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51011 1 80 1 2025-11-20 03:11:06.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34312 1 109 1 2025-11-20 03:06:57.673 00:05:10.677 OSPF 28.0.2.1:0 -> 224.0.0.5:0 47 3528 1 2025-11-20 03:12:06.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47868 1 109 1 2025-11-20 03:12:06.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54338 1 80 1 2025-11-20 03:12:06.959 00:00:00.000 UDP 28.104.0.1:47868 -> 198.28.0.2:53 1 64 1 2025-11-20 03:12:06.959 00:00:00.000 UDP 28.104.0.1:54338 -> 198.28.0.2:53 1 64 1 2025-11-20 03:07:09.257 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:13:07.213 00:00:00.000 UDP 28.104.0.1:55080 -> 198.28.0.2:53 1 64 1 2025-11-20 03:13:07.213 00:00:00.000 UDP 28.104.0.1:43477 -> 198.28.0.2:53 1 64 1 2025-11-20 03:08:09.258 00:06:00.212 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:13:07.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43477 1 80 1 2025-11-20 03:13:07.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55080 1 109 1 2025-11-20 03:14:07.554 00:00:00.000 UDP 28.104.0.1:58584 -> 198.28.0.2:53 1 64 1 2025-11-20 03:14:07.554 00:00:00.000 UDP 28.104.0.1:55396 -> 198.28.0.2:53 1 64 1 2025-11-20 03:10:00.543 00:05:08.729 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:14:07.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55396 1 80 1 2025-11-20 03:14:07.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58584 1 109 1 2025-11-20 03:10:09.711 00:05:50.888 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:15:05.850 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:15:07.848 00:00:00.000 UDP 28.104.0.1:55532 -> 198.28.0.2:53 1 64 1 2025-11-20 03:15:07.848 00:00:00.000 UDP 28.104.0.1:45727 -> 198.28.0.2:53 1 64 1 2025-11-20 03:15:07.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55532 1 109 1 2025-11-20 03:15:07.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45727 1 80 1 2025-11-20 03:11:09.723 00:05:50.828 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:16:08.141 00:00:00.000 UDP 28.104.0.1:50185 -> 198.28.0.2:53 1 64 1 2025-11-20 03:16:08.141 00:00:00.000 UDP 28.104.0.1:59527 -> 198.28.0.2:53 1 64 1 2025-11-20 03:12:00.555 00:05:08.709 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:16:08.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50185 1 80 1 2025-11-20 03:16:08.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59527 1 109 1 2025-11-20 03:12:17.690 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-20 03:17:08.429 00:00:00.000 UDP 28.104.0.1:42022 -> 198.28.0.2:53 1 64 1 2025-11-20 03:17:08.429 00:00:00.000 UDP 28.104.0.1:33108 -> 198.28.0.2:53 1 64 1 2025-11-20 03:17:08.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42022 1 80 1 2025-11-20 03:17:08.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33108 1 109 1 2025-11-20 03:18:08.732 00:00:00.000 UDP 28.104.0.1:36872 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:08.732 00:00:00.000 UDP 28.104.0.1:34801 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:08.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34801 1 109 1 2025-11-20 03:18:08.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36872 1 80 1 2025-11-20 03:19:09.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50868 1 109 1 2025-11-20 03:19:09.072 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45720 1 80 1 2025-11-20 03:19:09.062 00:00:00.000 UDP 28.104.0.1:45720 -> 198.28.0.2:53 1 64 1 2025-11-20 03:19:09.062 00:00:00.000 UDP 28.104.0.1:50868 -> 198.28.0.2:53 1 64 1 2025-11-20 03:14:09.262 00:06:00.577 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:20:05.794 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:16:00.550 00:05:08.726 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:20:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57943 1 109 1 2025-11-20 03:20:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42756 1 80 1 2025-11-20 03:20:09.351 00:00:00.000 UDP 28.104.0.1:42756 -> 198.28.0.2:53 1 64 1 2025-11-20 03:20:09.351 00:00:00.000 UDP 28.104.0.1:57943 -> 198.28.0.2:53 1 64 1 2025-11-20 03:15:09.261 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:16:09.712 00:05:50.890 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:21:09.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35399 1 109 1 2025-11-20 03:21:09.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35372 1 80 1 2025-11-20 03:21:09.639 00:00:00.000 UDP 28.104.0.1:35399 -> 198.28.0.2:53 1 64 1 2025-11-20 03:21:09.639 00:00:00.000 UDP 28.104.0.1:35372 -> 198.28.0.2:53 1 64 1 2025-11-20 03:17:37.696 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2608 1 2025-11-20 03:17:09.725 00:05:50.830 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:22:09.929 00:00:00.000 UDP 28.104.0.1:50289 -> 198.28.0.2:53 1 64 1 2025-11-20 03:22:09.929 00:00:00.000 UDP 28.104.0.1:58430 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:00.559 00:05:08.706 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:22:09.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50289 1 80 1 2025-11-20 03:22:09.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58430 1 109 1 2025-11-20 03:23:10.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44106 1 109 1 2025-11-20 03:23:10.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48057 1 80 1 2025-11-20 03:23:10.194 00:00:00.000 UDP 28.104.0.1:44106 -> 198.28.0.2:53 1 64 1 2025-11-20 03:23:10.194 00:00:00.000 UDP 28.104.0.1:48057 -> 198.28.0.2:53 1 64 1 2025-11-20 03:24:10.497 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33007 1 80 1 2025-11-20 03:24:10.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45942 1 109 1 2025-11-20 03:24:10.487 00:00:00.000 UDP 28.104.0.1:33007 -> 198.28.0.2:53 1 64 1 2025-11-20 03:24:10.488 00:00:00.000 UDP 28.104.0.1:45942 -> 198.28.0.2:53 1 64 1 2025-11-20 03:25:10.787 00:00:00.000 UDP 28.104.0.1:32998 -> 198.28.0.2:53 1 64 1 2025-11-20 03:25:10.787 00:00:00.000 UDP 28.104.0.1:36525 -> 198.28.0.2:53 1 64 1 2025-11-20 03:25:06.027 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:25:10.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36525 1 80 1 2025-11-20 03:25:10.796 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32998 1 109 1 2025-11-20 03:26:11.093 00:00:00.000 UDP 28.104.0.1:42417 -> 198.28.0.2:53 1 64 1 2025-11-20 03:21:09.267 00:06:00.574 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:26:11.093 00:00:00.000 UDP 28.104.0.1:44454 -> 198.28.0.2:53 1 64 1 2025-11-20 03:22:00.552 00:05:08.724 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:26:11.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42417 1 109 1 2025-11-20 03:26:11.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44454 1 80 1 2025-11-20 03:22:09.718 00:05:50.887 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:27:11.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47744 1 109 1 2025-11-20 03:22:57.699 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-11-20 03:27:11.400 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36986 1 80 1 2025-11-20 03:22:09.265 00:06:00.207 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:27:11.388 00:00:00.000 UDP 28.104.0.1:36986 -> 198.28.0.2:53 1 64 1 2025-11-20 03:27:11.388 00:00:00.000 UDP 28.104.0.1:47744 -> 198.28.0.2:53 1 64 1 2025-11-20 03:23:09.729 00:05:50.826 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:24:00.562 00:05:08.704 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:28:11.694 00:00:00.000 UDP 28.104.0.1:34060 -> 198.28.0.2:53 1 64 1 2025-11-20 03:28:11.694 00:00:00.000 UDP 28.104.0.1:50207 -> 198.28.0.2:53 1 64 1 2025-11-20 03:28:11.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34060 1 109 1 2025-11-20 03:28:11.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50207 1 80 1 2025-11-20 03:29:11.991 00:00:00.000 UDP 28.104.0.1:40850 -> 198.28.0.2:53 1 64 1 2025-11-20 03:29:11.991 00:00:00.000 UDP 28.104.0.1:47064 -> 198.28.0.2:53 1 64 1 2025-11-20 03:29:12.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47064 1 109 1 2025-11-20 03:29:12.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40850 1 80 1 2025-11-20 03:30:06.176 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:30:12.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58648 1 80 1 2025-11-20 03:30:12.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45355 1 109 1 2025-11-20 03:30:12.626 00:00:00.000 UDP 28.104.0.1:45355 -> 198.28.0.2:53 1 64 1 2025-11-20 03:30:12.627 00:00:00.000 UDP 28.104.0.1:58648 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:12.913 00:00:00.000 UDP 28.104.0.1:50348 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:12.913 00:00:00.000 UDP 28.104.0.1:38196 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:12.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50348 1 109 1 2025-11-20 03:31:12.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38196 1 80 1 2025-11-20 03:28:00.554 00:05:08.729 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:32:13.219 00:00:00.000 UDP 28.104.0.1:57453 -> 198.28.0.2:53 1 64 1 2025-11-20 03:32:13.219 00:00:00.000 UDP 28.104.0.1:57894 -> 198.28.0.2:53 1 64 1 2025-11-20 03:32:13.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57894 1 80 1 2025-11-20 03:32:13.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57453 1 109 1 2025-11-20 03:28:17.707 00:05:10.917 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2588 1 2025-11-20 03:28:09.722 00:05:50.890 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:28:09.267 00:06:00.576 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:33:13.542 00:00:00.000 UDP 28.104.0.1:40462 -> 198.28.0.2:53 1 64 1 2025-11-20 03:33:13.542 00:00:00.000 UDP 28.104.0.1:50752 -> 198.28.0.2:53 1 64 1 2025-11-20 03:33:13.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40462 1 80 1 2025-11-20 03:33:13.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50752 1 109 1 2025-11-20 03:29:09.733 00:05:50.830 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:30:00.565 00:05:08.709 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:29:09.268 00:06:00.211 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:34:13.836 00:00:00.000 UDP 28.104.0.1:33478 -> 198.28.0.2:53 1 64 1 2025-11-20 03:34:13.836 00:00:00.000 UDP 28.104.0.1:45849 -> 198.28.0.2:53 1 64 1 2025-11-20 03:34:13.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33478 1 109 1 2025-11-20 03:34:13.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45849 1 80 1 2025-11-20 03:35:06.187 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:35:14.109 00:00:00.000 UDP 28.104.0.1:60632 -> 198.28.0.2:53 1 64 1 2025-11-20 03:35:14.110 00:00:00.000 UDP 28.104.0.1:44953 -> 198.28.0.2:53 1 64 1 2025-11-20 03:35:14.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44953 1 80 1 2025-11-20 03:35:14.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60632 1 109 1 2025-11-20 03:36:14.415 00:00:00.000 UDP 28.104.0.1:40357 -> 198.28.0.2:53 1 64 1 2025-11-20 03:36:14.415 00:00:00.000 UDP 28.104.0.1:51416 -> 198.28.0.2:53 1 64 1 2025-11-20 03:36:14.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51416 1 80 1 2025-11-20 03:36:14.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40357 1 109 1 2025-11-20 03:37:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57107 1 80 1 2025-11-20 03:37:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37453 1 109 1 2025-11-20 03:37:14.718 00:00:00.000 UDP 28.104.0.1:37453 -> 198.28.0.2:53 1 64 1 2025-11-20 03:37:14.719 00:00:00.000 UDP 28.104.0.1:57107 -> 198.28.0.2:53 1 64 1 2025-11-20 03:33:37.712 00:05:10.979 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 3008 1 2025-11-20 03:38:15.043 00:00:00.000 UDP 28.104.0.1:35930 -> 198.28.0.2:53 1 64 1 2025-11-20 03:38:15.043 00:00:00.000 UDP 28.104.0.1:45216 -> 198.28.0.2:53 1 64 1 2025-11-20 03:34:00.562 00:05:08.725 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:38:15.053 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35930 1 109 1 2025-11-20 03:38:15.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45216 1 80 1 2025-11-20 03:34:09.724 00:05:50.892 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:39:15.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45459 1 80 1 2025-11-20 03:39:15.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32828 1 109 1 2025-11-20 03:39:15.344 00:00:00.000 UDP 28.104.0.1:32828 -> 198.28.0.2:53 1 64 1 2025-11-20 03:39:15.344 00:00:00.000 UDP 28.104.0.1:45459 -> 198.28.0.2:53 1 64 1 2025-11-20 03:35:09.737 00:05:50.829 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:40:06.361 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:35:09.273 00:06:00.571 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:36:00.574 00:05:08.704 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:40:15.649 00:00:00.000 UDP 28.104.0.1:52102 -> 198.28.0.2:53 1 64 1 2025-11-20 03:40:15.649 00:00:00.000 UDP 28.104.0.1:41620 -> 198.28.0.2:53 1 64 1 2025-11-20 03:40:15.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41620 1 109 1 2025-11-20 03:40:15.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52102 1 80 1 2025-11-20 03:36:09.273 00:06:00.207 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:41:15.956 00:00:00.000 UDP 28.104.0.1:49496 -> 198.28.0.2:53 1 64 1 2025-11-20 03:41:15.956 00:00:00.000 UDP 28.104.0.1:39634 -> 198.28.0.2:53 1 64 1 2025-11-20 03:41:15.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49496 1 80 1 2025-11-20 03:41:15.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39634 1 109 1 2025-11-20 03:42:16.260 00:00:00.000 UDP 28.104.0.1:55567 -> 198.28.0.2:53 1 64 1 2025-11-20 03:42:16.260 00:00:00.000 UDP 28.104.0.1:35032 -> 198.28.0.2:53 1 64 1 2025-11-20 03:42:16.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35032 1 80 1 2025-11-20 03:42:16.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55567 1 109 1 2025-11-20 03:38:57.716 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 45 3184 1 2025-11-20 03:43:16.566 00:00:00.000 UDP 28.104.0.1:38446 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:16.566 00:00:00.000 UDP 28.104.0.1:46675 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:16.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46675 1 80 1 2025-11-20 03:43:16.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38446 1 109 1 2025-11-20 03:40:00.566 00:05:08.723 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:44:16.865 00:00:00.000 UDP 28.104.0.1:37984 -> 198.28.0.2:53 1 64 1 2025-11-20 03:44:16.865 00:00:00.000 UDP 28.104.0.1:57285 -> 198.28.0.2:53 1 64 1 2025-11-20 03:44:16.876 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37984 1 80 1 2025-11-20 03:44:16.876 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57285 1 109 1 2025-11-20 03:40:09.724 00:05:50.895 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:45:06.395 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:45:17.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48116 1 80 1 2025-11-20 03:45:17.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46492 1 109 1 2025-11-20 03:45:17.186 00:00:00.000 UDP 28.104.0.1:48116 -> 198.28.0.2:53 1 64 1 2025-11-20 03:45:17.186 00:00:00.000 UDP 28.104.0.1:46492 -> 198.28.0.2:53 1 64 1 2025-11-20 03:41:09.735 00:05:50.834 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:42:00.576 00:05:08.703 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:46:17.494 00:00:00.000 UDP 28.104.0.1:54176 -> 198.28.0.2:53 1 64 1 2025-11-20 03:46:17.493 00:00:00.000 UDP 28.104.0.1:58758 -> 198.28.0.2:53 1 64 1 2025-11-20 03:46:17.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54176 1 109 1 2025-11-20 03:46:17.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58758 1 80 1 2025-11-20 03:42:09.278 00:06:00.568 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:47:17.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50513 1 80 1 2025-11-20 03:47:17.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41252 1 109 1 2025-11-20 03:47:17.801 00:00:00.000 UDP 28.104.0.1:50513 -> 198.28.0.2:53 1 64 1 2025-11-20 03:47:17.801 00:00:00.000 UDP 28.104.0.1:41252 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:09.279 00:06:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:48:18.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46647 1 109 1 2025-11-20 03:48:18.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36067 1 80 1 2025-11-20 03:48:18.102 00:00:00.000 UDP 28.104.0.1:46647 -> 198.28.0.2:53 1 64 1 2025-11-20 03:48:18.102 00:00:00.000 UDP 28.104.0.1:36067 -> 198.28.0.2:53 1 64 1 2025-11-20 03:44:17.723 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2708 1 2025-11-20 03:49:18.397 00:00:00.000 UDP 28.104.0.1:49708 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:18.397 00:00:00.000 UDP 28.104.0.1:58166 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:18.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58166 1 80 1 2025-11-20 03:49:18.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49708 1 109 1 2025-11-20 03:50:06.557 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:46:00.569 00:05:08.721 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:50:18.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54226 1 109 1 2025-11-20 03:50:18.704 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33907 1 80 1 2025-11-20 03:50:18.695 00:00:00.000 UDP 28.104.0.1:54226 -> 198.28.0.2:53 1 64 1 2025-11-20 03:50:18.695 00:00:00.000 UDP 28.104.0.1:33907 -> 198.28.0.2:53 1 64 1 2025-11-20 03:46:09.727 00:05:50.895 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:51:18.991 00:00:00.000 UDP 28.104.0.1:54223 -> 198.28.0.2:53 1 64 1 2025-11-20 03:51:18.991 00:00:00.000 UDP 28.104.0.1:37545 -> 198.28.0.2:53 1 64 1 2025-11-20 03:51:19.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37545 1 80 1 2025-11-20 03:51:19.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54223 1 109 1 2025-11-20 03:47:09.736 00:05:50.835 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:48:00.581 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:52:19.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54503 1 80 1 2025-11-20 03:52:19.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60009 1 109 1 2025-11-20 03:52:19.293 00:00:00.000 UDP 28.104.0.1:54503 -> 198.28.0.2:53 1 64 1 2025-11-20 03:52:19.294 00:00:00.000 UDP 28.104.0.1:60009 -> 198.28.0.2:53 1 64 1 2025-11-20 03:53:19.559 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38093 1 109 1 2025-11-20 03:53:19.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35853 1 80 1 2025-11-20 03:53:19.551 00:00:00.000 UDP 28.104.0.1:35853 -> 198.28.0.2:53 1 64 1 2025-11-20 03:53:19.550 00:00:00.000 UDP 28.104.0.1:38093 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:37.731 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-20 03:49:09.280 00:06:00.568 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:54:19.796 00:00:00.000 UDP 28.104.0.1:47212 -> 198.28.0.2:53 1 64 1 2025-11-20 03:54:19.796 00:00:00.000 UDP 28.104.0.1:52662 -> 198.28.0.2:53 1 64 1 2025-11-20 03:54:19.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52662 1 109 1 2025-11-20 03:54:19.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47212 1 80 1 2025-11-20 03:55:07.470 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:50:09.280 00:06:00.201 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:55:20.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54543 1 109 1 2025-11-20 03:55:20.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45846 1 80 1 2025-11-20 03:55:20.096 00:00:00.000 UDP 28.104.0.1:54543 -> 198.28.0.2:53 1 64 1 2025-11-20 03:55:20.096 00:00:00.000 UDP 28.104.0.1:45846 -> 198.28.0.2:53 1 64 1 2025-11-20 03:52:00.572 00:05:08.720 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:56:20.390 00:00:00.000 UDP 28.104.0.1:35511 -> 198.28.0.2:53 1 64 1 2025-11-20 03:56:20.390 00:00:00.000 UDP 28.104.0.1:41401 -> 198.28.0.2:53 1 64 1 2025-11-20 03:56:20.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41401 1 80 1 2025-11-20 03:56:20.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35511 1 109 1 2025-11-20 03:52:09.728 00:05:50.895 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:57:20.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56177 1 109 1 2025-11-20 03:57:20.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42038 1 80 1 2025-11-20 03:57:20.645 00:00:00.000 UDP 28.104.0.1:56177 -> 198.28.0.2:53 1 64 1 2025-11-20 03:57:20.645 00:00:00.000 UDP 28.104.0.1:42038 -> 198.28.0.2:53 1 64 1 2025-11-20 03:53:09.737 00:05:50.835 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:54:00.582 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:58:20.940 00:00:00.000 UDP 28.104.0.1:43479 -> 198.28.0.2:53 1 64 1 2025-11-20 03:58:20.939 00:00:00.000 UDP 28.104.0.1:51602 -> 198.28.0.2:53 1 64 1 2025-11-20 03:58:20.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43479 1 109 1 2025-11-20 03:58:20.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51602 1 80 1 Summary: total flows: 320, total bytes: 96029, total packets: 1415, avg bps: 196, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 02:54:09 - 2025-11-20 03:59:09 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0034s User: 0.0034s Wall: 0.0034s flows/second: 95068.5 Runtime: 0.0034s