Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 08:59:21.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48577 1 80 1 2025-11-20 08:59:21.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50671 1 109 1 2025-11-20 08:59:21.230 00:00:00.000 UDP 28.104.0.1:48577 -> 198.28.0.2:53 1 64 1 2025-11-20 08:59:21.232 00:00:00.000 UDP 28.104.0.1:50671 -> 198.28.0.2:53 1 64 1 2025-11-20 09:00:12.699 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:00:21.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44225 1 109 1 2025-11-20 09:00:21.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42072 1 80 1 2025-11-20 09:00:21.536 00:00:00.000 UDP 28.104.0.1:42072 -> 198.28.0.2:53 1 64 1 2025-11-20 09:00:21.536 00:00:00.000 UDP 28.104.0.1:44225 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.780 00:00:00.000 UDP 28.104.0.1:38758 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.781 00:00:00.000 UDP 28.104.0.1:34352 -> 198.28.0.2:53 1 64 1 2025-11-20 09:01:21.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38758 1 109 1 2025-11-20 09:01:21.791 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34352 1 80 1 2025-11-20 08:57:09.367 00:06:00.583 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 08:58:00.730 00:05:08.649 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:02:22.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54231 1 80 1 2025-11-20 09:02:22.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42898 1 109 1 2025-11-20 09:02:22.093 00:00:00.000 UDP 28.104.0.1:54231 -> 198.28.0.2:53 1 64 1 2025-11-20 09:02:22.093 00:00:00.000 UDP 28.104.0.1:42898 -> 198.28.0.2:53 1 64 1 2025-11-20 08:58:18.215 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2688 1 2025-11-20 08:58:09.824 00:05:50.962 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 08:58:09.368 00:06:00.215 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:03:22.391 00:00:00.000 UDP 28.104.0.1:34916 -> 198.28.0.2:53 1 64 1 2025-11-20 09:03:22.391 00:00:00.000 UDP 28.104.0.1:51079 -> 198.28.0.2:53 1 64 1 2025-11-20 09:03:22.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34916 1 80 1 2025-11-20 09:03:22.402 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51079 1 109 1 2025-11-20 08:59:09.835 00:05:50.901 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:00:00.740 00:05:08.629 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:04:22.726 00:00:00.000 UDP 28.104.0.1:36783 -> 198.28.0.2:53 1 64 1 2025-11-20 09:04:22.726 00:00:00.000 UDP 28.104.0.1:59775 -> 198.28.0.2:53 1 64 1 2025-11-20 09:04:22.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36783 1 80 1 2025-11-20 09:04:22.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59775 1 109 1 2025-11-20 09:05:12.905 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:05:23.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42934 1 109 1 2025-11-20 09:05:23.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58797 1 80 1 2025-11-20 09:05:23.049 00:00:00.000 UDP 28.104.0.1:58797 -> 198.28.0.2:53 1 64 1 2025-11-20 09:05:23.048 00:00:00.000 UDP 28.104.0.1:42934 -> 198.28.0.2:53 1 64 1 2025-11-20 09:06:23.301 00:00:00.000 UDP 28.104.0.1:60129 -> 198.28.0.2:53 1 64 1 2025-11-20 09:06:23.301 00:00:00.000 UDP 28.104.0.1:40427 -> 198.28.0.2:53 1 64 1 2025-11-20 09:06:23.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60129 1 109 1 2025-11-20 09:06:23.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40427 1 80 1 2025-11-20 09:07:23.602 00:00:00.000 UDP 28.104.0.1:42599 -> 198.28.0.2:53 1 64 1 2025-11-20 09:07:23.602 00:00:00.000 UDP 28.104.0.1:43289 -> 198.28.0.2:53 1 64 1 2025-11-20 09:07:23.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43289 1 80 1 2025-11-20 09:07:23.613 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42599 1 109 1 2025-11-20 09:03:38.223 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2424 1 2025-11-20 09:04:00.736 00:05:08.644 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:08:23.908 00:00:00.000 UDP 28.104.0.1:39708 -> 198.28.0.2:53 1 64 1 2025-11-20 09:08:23.908 00:00:00.000 UDP 28.104.0.1:59221 -> 198.28.0.2:53 1 64 1 2025-11-20 09:08:23.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39708 1 80 1 2025-11-20 09:08:23.918 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59221 1 109 1 2025-11-20 09:04:09.826 00:05:50.975 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:04:09.370 00:06:00.583 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:09:29.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51071 1 109 1 2025-11-20 09:09:29.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44180 1 80 1 2025-11-20 09:09:29.783 00:00:00.000 UDP 28.104.0.1:51071 -> 198.28.0.2:53 1 64 1 2025-11-20 09:09:29.783 00:00:00.000 UDP 28.104.0.1:44180 -> 198.28.0.2:53 1 64 1 2025-11-20 09:05:09.836 00:05:50.918 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:06:00.761 00:05:08.609 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:05:09.369 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:10:12.874 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:10:30.085 00:00:00.000 UDP 28.104.0.1:41383 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:30.084 00:00:00.000 UDP 28.104.0.1:40373 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:30.096 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41383 1 80 1 2025-11-20 09:10:30.096 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40373 1 109 1 2025-11-20 09:11:30.341 00:00:00.000 UDP 28.104.0.1:47154 -> 198.28.0.2:53 1 64 1 2025-11-20 09:11:30.341 00:00:00.000 UDP 28.104.0.1:56202 -> 198.28.0.2:53 1 64 1 2025-11-20 09:11:30.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56202 1 80 1 2025-11-20 09:11:30.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47154 1 109 1 2025-11-20 09:12:30.636 00:00:00.000 UDP 28.104.0.1:53298 -> 198.28.0.2:53 1 64 1 2025-11-20 09:12:30.636 00:00:00.000 UDP 28.104.0.1:37830 -> 198.28.0.2:53 1 64 1 2025-11-20 09:12:30.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37830 1 80 1 2025-11-20 09:12:30.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53298 1 109 1 2025-11-20 09:08:58.228 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-20 09:13:30.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59353 1 109 1 2025-11-20 09:13:30.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44766 1 80 1 2025-11-20 09:13:30.890 00:00:00.000 UDP 28.104.0.1:44766 -> 198.28.0.2:53 1 64 1 2025-11-20 09:13:30.891 00:00:00.000 UDP 28.104.0.1:59353 -> 198.28.0.2:53 1 64 1 2025-11-20 09:10:00.751 00:05:08.630 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:14:31.192 00:00:00.000 UDP 28.104.0.1:41467 -> 198.28.0.2:53 1 64 1 2025-11-20 09:14:31.192 00:00:00.000 UDP 28.104.0.1:35397 -> 198.28.0.2:53 1 64 1 2025-11-20 09:14:31.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35397 1 109 1 2025-11-20 09:14:31.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41467 1 80 1 2025-11-20 09:10:09.829 00:05:50.974 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:15:13.055 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:15:31.448 00:00:00.000 UDP 28.104.0.1:39023 -> 198.28.0.2:53 1 64 1 2025-11-20 09:15:31.448 00:00:00.000 UDP 28.104.0.1:53492 -> 198.28.0.2:53 1 64 1 2025-11-20 09:15:31.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39023 1 109 1 2025-11-20 09:15:31.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53492 1 80 1 2025-11-20 09:11:09.839 00:05:50.913 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:11:09.370 00:06:00.583 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:12:00.761 00:05:08.611 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:16:31.748 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49104 1 80 1 2025-11-20 09:16:31.749 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52547 1 109 1 2025-11-20 09:16:31.739 00:00:00.000 UDP 28.104.0.1:49104 -> 198.28.0.2:53 1 64 1 2025-11-20 09:16:31.739 00:00:00.000 UDP 28.104.0.1:52547 -> 198.28.0.2:53 1 64 1 2025-11-20 09:12:09.371 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:17:32.059 00:00:00.000 UDP 28.104.0.1:35980 -> 198.28.0.2:53 1 64 1 2025-11-20 09:17:32.059 00:00:00.000 UDP 28.104.0.1:47813 -> 198.28.0.2:53 1 64 1 2025-11-20 09:17:32.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47813 1 109 1 2025-11-20 09:17:32.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35980 1 80 1 2025-11-20 09:14:18.234 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2672 1 2025-11-20 09:18:32.407 00:00:00.000 UDP 28.104.0.1:56807 -> 198.28.0.2:53 1 64 1 2025-11-20 09:18:32.407 00:00:00.000 UDP 28.104.0.1:40160 -> 198.28.0.2:53 1 64 1 2025-11-20 09:18:32.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56807 1 109 1 2025-11-20 09:18:32.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40160 1 80 1 2025-11-20 09:19:32.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41957 1 109 1 2025-11-20 09:19:32.708 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32790 1 80 1 2025-11-20 09:19:32.698 00:00:00.000 UDP 28.104.0.1:41957 -> 198.28.0.2:53 1 64 1 2025-11-20 09:19:32.699 00:00:00.000 UDP 28.104.0.1:32790 -> 198.28.0.2:53 1 64 1 2025-11-20 09:16:00.751 00:05:08.632 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:20:13.054 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:20:32.956 00:00:00.000 UDP 28.104.0.1:34284 -> 198.28.0.2:53 1 64 1 2025-11-20 09:20:32.956 00:00:00.000 UDP 28.104.0.1:54493 -> 198.28.0.2:53 1 64 1 2025-11-20 09:20:32.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34284 1 109 1 2025-11-20 09:20:32.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54493 1 80 1 2025-11-20 09:16:09.831 00:05:50.981 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:21:33.258 00:00:00.000 UDP 28.104.0.1:35565 -> 198.28.0.2:53 1 64 1 2025-11-20 09:21:33.258 00:00:00.000 UDP 28.104.0.1:56259 -> 198.28.0.2:53 1 64 1 2025-11-20 09:21:33.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56259 1 109 1 2025-11-20 09:21:33.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35565 1 80 1 2025-11-20 09:17:09.841 00:05:50.922 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:18:00.762 00:05:08.612 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:22:33.556 00:00:00.000 UDP 28.104.0.1:45129 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:33.556 00:00:00.000 UDP 28.104.0.1:46291 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:33.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45129 1 80 1 2025-11-20 09:22:33.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46291 1 109 1 2025-11-20 09:18:09.372 00:06:00.582 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:23:33.853 00:00:00.000 UDP 28.104.0.1:54390 -> 198.28.0.2:53 1 64 1 2025-11-20 09:23:33.853 00:00:00.000 UDP 28.104.0.1:56944 -> 198.28.0.2:53 1 64 1 2025-11-20 09:23:33.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56944 1 80 1 2025-11-20 09:23:33.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54390 1 109 1 2025-11-20 09:19:32.981 00:05:05.641 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3280 1 2025-11-20 09:19:09.373 00:06:00.216 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:24:34.166 00:00:00.000 UDP 28.104.0.1:40958 -> 198.28.0.2:53 1 64 1 2025-11-20 09:24:34.166 00:00:00.000 UDP 28.104.0.1:48903 -> 198.28.0.2:53 1 64 1 2025-11-20 09:24:34.176 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40958 1 80 1 2025-11-20 09:24:34.176 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48903 1 109 1 2025-11-20 09:25:13.298 00:00:00.026 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:25:34.469 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42184 1 109 1 2025-11-20 09:25:34.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53009 1 80 1 2025-11-20 09:25:34.458 00:00:00.000 UDP 28.104.0.1:42184 -> 198.28.0.2:53 1 64 1 2025-11-20 09:25:34.457 00:00:00.000 UDP 28.104.0.1:53009 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:00.763 00:05:08.623 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:26:34.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58179 1 109 1 2025-11-20 09:26:34.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55680 1 80 1 2025-11-20 09:26:34.754 00:00:00.000 UDP 28.104.0.1:58179 -> 198.28.0.2:53 1 64 1 2025-11-20 09:26:34.754 00:00:00.000 UDP 28.104.0.1:55680 -> 198.28.0.2:53 1 64 1 2025-11-20 09:22:09.831 00:05:51.000 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:27:35.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50717 1 80 1 2025-11-20 09:27:35.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58246 1 109 1 2025-11-20 09:27:35.058 00:00:00.000 UDP 28.104.0.1:58246 -> 198.28.0.2:53 1 64 1 2025-11-20 09:27:35.058 00:00:00.000 UDP 28.104.0.1:50717 -> 198.28.0.2:53 1 64 1 2025-11-20 09:23:09.841 00:05:50.941 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:24:00.772 00:05:08.603 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:28:35.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45254 1 109 1 2025-11-20 09:28:35.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36408 1 80 1 2025-11-20 09:28:35.350 00:00:00.000 UDP 28.104.0.1:36408 -> 198.28.0.2:53 1 64 1 2025-11-20 09:28:35.350 00:00:00.000 UDP 28.104.0.1:45254 -> 198.28.0.2:53 1 64 1 2025-11-20 09:24:48.243 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2736 1 2025-11-20 09:29:35.648 00:00:00.000 UDP 28.104.0.1:44573 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:35.649 00:00:00.000 UDP 28.104.0.1:50758 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:35.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50758 1 80 1 2025-11-20 09:29:35.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44573 1 109 1 2025-11-20 09:25:09.376 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:30:13.253 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:30:35.938 00:00:00.000 UDP 28.104.0.1:43733 -> 198.28.0.2:53 1 64 1 2025-11-20 09:30:35.938 00:00:00.000 UDP 28.104.0.1:40262 -> 198.28.0.2:53 1 64 1 2025-11-20 09:30:35.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43733 1 80 1 2025-11-20 09:30:35.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40262 1 109 1 2025-11-20 09:26:09.375 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:31:36.231 00:00:00.000 UDP 28.104.0.1:46896 -> 198.28.0.2:53 1 64 1 2025-11-20 09:31:36.231 00:00:00.000 UDP 28.104.0.1:41915 -> 198.28.0.2:53 1 64 1 2025-11-20 09:31:36.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46896 1 109 1 2025-11-20 09:31:36.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41915 1 80 1 2025-11-20 09:28:00.781 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:32:36.928 00:00:00.000 UDP 28.104.0.1:37481 -> 198.28.0.2:53 1 64 1 2025-11-20 09:32:36.928 00:00:00.000 UDP 28.104.0.1:42179 -> 198.28.0.2:53 1 64 1 2025-11-20 09:32:36.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42179 1 80 1 2025-11-20 09:32:36.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37481 1 109 1 2025-11-20 09:28:09.831 00:05:51.001 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:33:37.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35060 1 80 1 2025-11-20 09:33:37.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46435 1 109 1 2025-11-20 09:33:37.240 00:00:00.000 UDP 28.104.0.1:35060 -> 198.28.0.2:53 1 64 1 2025-11-20 09:33:37.240 00:00:00.000 UDP 28.104.0.1:46435 -> 198.28.0.2:53 1 64 1 2025-11-20 09:29:09.842 00:05:50.942 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:30:00.793 00:05:08.586 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:30:08.249 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2664 1 2025-11-20 09:34:37.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36733 1 109 1 2025-11-20 09:34:37.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46350 1 80 1 2025-11-20 09:34:37.539 00:00:00.000 UDP 28.104.0.1:36733 -> 198.28.0.2:53 1 64 1 2025-11-20 09:34:37.540 00:00:00.000 UDP 28.104.0.1:46350 -> 198.28.0.2:53 1 64 1 2025-11-20 09:35:13.404 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:35:37.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52197 1 109 1 2025-11-20 09:35:37.912 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51901 1 80 1 2025-11-20 09:35:37.902 00:00:00.000 UDP 28.104.0.1:51901 -> 198.28.0.2:53 1 64 1 2025-11-20 09:35:37.902 00:00:00.000 UDP 28.104.0.1:52197 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:38.263 00:00:00.000 UDP 28.104.0.1:43947 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:38.264 00:00:00.000 UDP 28.104.0.1:36307 -> 198.28.0.2:53 1 64 1 2025-11-20 09:36:38.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43947 1 109 1 2025-11-20 09:36:38.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36307 1 80 1 2025-11-20 09:32:09.376 00:06:00.580 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:37:38.563 00:00:00.000 UDP 28.104.0.1:59958 -> 198.28.0.2:53 1 64 1 2025-11-20 09:37:38.563 00:00:00.000 UDP 28.104.0.1:48506 -> 198.28.0.2:53 1 64 1 2025-11-20 09:37:38.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59958 1 109 1 2025-11-20 09:37:38.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48506 1 80 1 2025-11-20 09:34:00.783 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:33:09.377 00:06:00.214 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:38:38.862 00:00:00.000 UDP 28.104.0.1:54857 -> 198.28.0.2:53 1 64 1 2025-11-20 09:38:38.862 00:00:00.000 UDP 28.104.0.1:35005 -> 198.28.0.2:53 1 64 1 2025-11-20 09:38:38.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35005 1 109 1 2025-11-20 09:38:38.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54857 1 80 1 2025-11-20 09:34:09.833 00:05:51.003 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:39:39.196 00:00:00.000 UDP 28.104.0.1:38686 -> 198.28.0.2:53 1 64 1 2025-11-20 09:39:39.196 00:00:00.000 UDP 28.104.0.1:50155 -> 198.28.0.2:53 1 64 1 2025-11-20 09:35:28.256 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 09:39:39.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50155 1 80 1 2025-11-20 09:39:39.207 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38686 1 109 1 2025-11-20 09:35:09.843 00:05:50.942 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:36:00.794 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:40:13.523 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:40:39.454 00:00:00.000 UDP 28.104.0.1:38470 -> 198.28.0.2:53 1 64 1 2025-11-20 09:40:39.454 00:00:00.000 UDP 28.104.0.1:40678 -> 198.28.0.2:53 1 64 1 2025-11-20 09:40:39.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40678 1 80 1 2025-11-20 09:40:39.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38470 1 109 1 2025-11-20 09:41:39.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56411 1 80 1 2025-11-20 09:41:39.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60363 1 109 1 2025-11-20 09:41:39.755 00:00:00.000 UDP 28.104.0.1:60363 -> 198.28.0.2:53 1 64 1 2025-11-20 09:41:39.755 00:00:00.000 UDP 28.104.0.1:56411 -> 198.28.0.2:53 1 64 1 2025-11-20 09:42:40.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51051 1 80 1 2025-11-20 09:42:40.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54518 1 109 1 2025-11-20 09:42:40.069 00:00:00.000 UDP 28.104.0.1:54518 -> 198.28.0.2:53 1 64 1 2025-11-20 09:42:40.069 00:00:00.000 UDP 28.104.0.1:51051 -> 198.28.0.2:53 1 64 1 2025-11-20 09:43:40.387 00:00:00.000 UDP 28.104.0.1:52444 -> 198.28.0.2:53 1 64 1 2025-11-20 09:43:40.387 00:00:00.000 UDP 28.104.0.1:40799 -> 198.28.0.2:53 1 64 1 2025-11-20 09:43:40.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52444 1 109 1 2025-11-20 09:43:40.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40799 1 80 1 2025-11-20 09:40:00.786 00:05:08.604 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:39:09.379 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:44:40.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55189 1 109 1 2025-11-20 09:44:40.686 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34864 1 80 1 2025-11-20 09:44:40.677 00:00:00.000 UDP 28.104.0.1:34864 -> 198.28.0.2:53 1 64 1 2025-11-20 09:44:40.677 00:00:00.000 UDP 28.104.0.1:55189 -> 198.28.0.2:53 1 64 1 2025-11-20 09:40:09.834 00:05:51.004 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:40:48.260 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2508 1 2025-11-20 09:40:09.380 00:06:00.215 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:45:13.750 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:45:40.982 00:00:00.000 UDP 28.104.0.1:54274 -> 198.28.0.2:53 1 64 1 2025-11-20 09:45:40.982 00:00:00.000 UDP 28.104.0.1:45004 -> 198.28.0.2:53 1 64 1 2025-11-20 09:45:40.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54274 1 109 1 2025-11-20 09:45:40.991 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45004 1 80 1 2025-11-20 09:41:09.844 00:05:50.944 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:42:00.796 00:05:08.584 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:46:41.283 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36546 1 80 1 2025-11-20 09:46:41.283 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58868 1 109 1 2025-11-20 09:46:41.273 00:00:00.000 UDP 28.104.0.1:36546 -> 198.28.0.2:53 1 64 1 2025-11-20 09:46:41.273 00:00:00.000 UDP 28.104.0.1:58868 -> 198.28.0.2:53 1 64 1 2025-11-20 09:47:41.566 00:00:00.000 UDP 28.104.0.1:37343 -> 198.28.0.2:53 1 64 1 2025-11-20 09:47:41.566 00:00:00.000 UDP 28.104.0.1:49207 -> 198.28.0.2:53 1 64 1 2025-11-20 09:47:41.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49207 1 80 1 2025-11-20 09:47:41.575 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37343 1 109 1 2025-11-20 09:48:41.860 00:00:00.000 UDP 28.104.0.1:58131 -> 198.28.0.2:53 1 64 1 2025-11-20 09:48:41.860 00:00:00.000 UDP 28.104.0.1:38839 -> 198.28.0.2:53 1 64 1 2025-11-20 09:48:41.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58131 1 109 1 2025-11-20 09:48:41.870 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38839 1 80 1 2025-11-20 09:49:42.171 00:00:00.000 UDP 28.104.0.1:40052 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:42.171 00:00:00.000 UDP 28.104.0.1:58208 -> 198.28.0.2:53 1 64 1 2025-11-20 09:49:42.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40052 1 109 1 2025-11-20 09:49:42.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58208 1 80 1 2025-11-20 09:46:00.788 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:50:13.791 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:46:08.267 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3244 1 2025-11-20 09:50:42.465 00:00:00.000 UDP 28.104.0.1:45322 -> 198.28.0.2:53 1 64 1 2025-11-20 09:50:42.465 00:00:00.000 UDP 28.104.0.1:54164 -> 198.28.0.2:53 1 64 1 2025-11-20 09:50:42.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54164 1 80 1 2025-11-20 09:50:42.475 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45322 1 109 1 2025-11-20 09:46:09.834 00:05:51.005 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:46:09.380 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:51:42.756 00:00:00.000 UDP 28.104.0.1:33687 -> 198.28.0.2:53 1 64 1 2025-11-20 09:51:42.756 00:00:00.000 UDP 28.104.0.1:36612 -> 198.28.0.2:53 1 64 1 2025-11-20 09:51:42.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36612 1 109 1 2025-11-20 09:51:42.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33687 1 80 1 2025-11-20 09:47:09.845 00:05:50.946 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:48:00.803 00:05:08.581 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:47:09.381 00:06:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 09:52:43.009 00:00:00.000 UDP 28.104.0.1:50604 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:43.009 00:00:00.000 UDP 28.104.0.1:53974 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:43.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50604 1 109 1 2025-11-20 09:52:43.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53974 1 80 1 2025-11-20 09:53:43.304 00:00:00.000 UDP 28.104.0.1:55749 -> 198.28.0.2:53 1 64 1 2025-11-20 09:53:43.304 00:00:00.000 UDP 28.104.0.1:40024 -> 198.28.0.2:53 1 64 1 2025-11-20 09:53:43.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55749 1 80 1 2025-11-20 09:53:43.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40024 1 109 1 2025-11-20 09:54:43.558 00:00:00.000 UDP 28.104.0.1:42329 -> 198.28.0.2:53 1 64 1 2025-11-20 09:54:43.558 00:00:00.000 UDP 28.104.0.1:40790 -> 198.28.0.2:53 1 64 1 2025-11-20 09:54:43.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40790 1 109 1 2025-11-20 09:54:43.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42329 1 80 1 2025-11-20 09:55:13.833 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 09:51:28.272 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3116 1 2025-11-20 09:55:43.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32770 1 80 1 2025-11-20 09:55:43.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53939 1 109 1 2025-11-20 09:55:43.852 00:00:00.000 UDP 28.104.0.1:32770 -> 198.28.0.2:53 1 64 1 2025-11-20 09:55:43.852 00:00:00.000 UDP 28.104.0.1:53939 -> 198.28.0.2:53 1 64 1 2025-11-20 09:52:00.790 00:05:08.605 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 09:56:44.165 00:00:00.000 UDP 28.104.0.1:50371 -> 198.28.0.2:53 1 64 1 2025-11-20 09:56:44.166 00:00:00.000 UDP 28.104.0.1:59125 -> 198.28.0.2:53 1 64 1 2025-11-20 09:56:44.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50371 1 80 1 2025-11-20 09:56:44.174 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59125 1 109 1 2025-11-20 09:52:09.841 00:05:51.001 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 09:57:44.420 00:00:00.000 UDP 28.104.0.1:41091 -> 198.28.0.2:53 1 64 1 2025-11-20 09:57:44.420 00:00:00.000 UDP 28.104.0.1:36130 -> 198.28.0.2:53 1 64 1 2025-11-20 09:57:44.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36130 1 109 1 2025-11-20 09:57:44.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41091 1 80 1 2025-11-20 09:53:09.852 00:05:50.943 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 09:53:09.383 00:06:00.577 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 09:54:00.800 00:05:08.585 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 09:58:44.717 00:00:00.000 UDP 28.104.0.1:49200 -> 198.28.0.2:53 1 64 1 2025-11-20 09:58:44.718 00:00:00.000 UDP 28.104.0.1:42800 -> 198.28.0.2:53 1 64 1 2025-11-20 09:58:44.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42800 1 109 1 2025-11-20 09:58:44.727 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49200 1 80 1 Summary: total flows: 320, total bytes: 96153, total packets: 1418, avg bps: 206, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 08:57:09 - 2025-11-20 09:59:09 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0041s User: 0.0021s Wall: 0.0032s flows/second: 101557.0 Runtime: 0.0032s