Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-24 14:58:57.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37491 1 109 1 2025-11-24 14:58:57.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32797 1 80 1 2025-11-24 14:58:57.837 00:00:00.000 UDP 28.104.0.1:37491 -> 198.28.0.2:53 1 64 1 2025-11-24 14:58:57.836 00:00:00.000 UDP 28.104.0.1:32797 -> 198.28.0.2:53 1 64 1 2025-11-24 14:59:58.135 00:00:00.000 UDP 28.104.0.1:58434 -> 198.28.0.2:53 1 64 1 2025-11-24 14:59:58.135 00:00:00.000 UDP 28.104.0.1:36999 -> 198.28.0.2:53 1 64 1 2025-11-24 14:59:58.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58434 1 80 1 2025-11-24 14:59:58.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36999 1 109 1 2025-11-24 14:59:11.665 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 14:56:26.551 00:05:10.583 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2708 1 2025-11-24 15:00:58.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51177 1 80 1 2025-11-24 15:00:58.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48229 1 109 1 2025-11-24 15:00:58.438 00:00:00.000 UDP 28.104.0.1:51177 -> 198.28.0.2:53 1 64 1 2025-11-24 15:00:58.438 00:00:00.000 UDP 28.104.0.1:48229 -> 198.28.0.2:53 1 64 1 2025-11-24 15:01:11.667 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 14:57:11.665 00:05:00.438 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 14:57:03.209 00:05:08.469 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:01:58.738 00:00:00.000 UDP 28.104.0.1:40843 -> 198.28.0.2:53 1 64 1 2025-11-24 15:01:58.737 00:00:00.000 UDP 28.104.0.1:51380 -> 198.28.0.2:53 1 64 1 2025-11-24 15:01:58.748 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40843 1 109 1 2025-11-24 15:01:58.748 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51380 1 80 1 2025-11-24 14:57:11.831 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:02:17.281 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:02:59.060 00:00:00.000 UDP 28.104.0.1:45295 -> 198.28.0.2:53 1 64 1 2025-11-24 15:02:59.059 00:00:00.000 UDP 28.104.0.1:48812 -> 198.28.0.2:53 1 64 1 2025-11-24 15:02:59.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45295 1 80 1 2025-11-24 15:02:59.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48812 1 109 1 2025-11-24 14:58:11.665 00:05:51.554 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 14:58:11.841 00:05:51.369 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:02:11.667 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:03:59.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40395 1 80 1 2025-11-24 15:03:59.365 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41340 1 109 1 2025-11-24 15:03:59.357 00:00:00.000 UDP 28.104.0.1:41340 -> 198.28.0.2:53 1 64 1 2025-11-24 15:03:59.357 00:00:00.000 UDP 28.104.0.1:40395 -> 198.28.0.2:53 1 64 1 2025-11-24 15:04:59.658 00:00:00.000 UDP 28.104.0.1:49692 -> 198.28.0.2:53 1 64 1 2025-11-24 15:04:59.659 00:00:00.000 UDP 28.104.0.1:40243 -> 198.28.0.2:53 1 64 1 2025-11-24 15:04:59.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40243 1 109 1 2025-11-24 15:04:59.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49692 1 80 1 2025-11-24 15:04:11.667 00:01:00.089 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:01:46.558 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2360 1 2025-11-24 15:05:59.950 00:00:00.000 UDP 28.104.0.1:35380 -> 198.28.0.2:53 1 64 1 2025-11-24 15:05:59.950 00:00:00.000 UDP 28.104.0.1:36031 -> 198.28.0.2:53 1 64 1 2025-11-24 15:05:59.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35380 1 109 1 2025-11-24 15:05:59.959 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36031 1 80 1 2025-11-24 15:06:11.668 00:00:00.089 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:07:00.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35008 1 80 1 2025-11-24 15:07:00.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44270 1 109 1 2025-11-24 15:07:00.255 00:00:00.000 UDP 28.104.0.1:35008 -> 198.28.0.2:53 1 64 1 2025-11-24 15:07:00.255 00:00:00.000 UDP 28.104.0.1:44270 -> 198.28.0.2:53 1 64 1 2025-11-24 15:03:11.667 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:03:03.210 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:07:17.460 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:08:00.552 00:00:00.000 UDP 28.104.0.1:38334 -> 198.28.0.2:53 1 64 1 2025-11-24 15:08:00.551 00:00:00.000 UDP 28.104.0.1:52367 -> 198.28.0.2:53 1 64 1 2025-11-24 15:08:00.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52367 1 109 1 2025-11-24 15:08:00.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38334 1 80 1 2025-11-24 15:03:11.834 00:05:51.449 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:07:11.667 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:09:00.847 00:00:00.000 UDP 28.104.0.1:60539 -> 198.28.0.2:53 1 64 1 2025-11-24 15:09:00.847 00:00:00.000 UDP 28.104.0.1:42676 -> 198.28.0.2:53 1 64 1 2025-11-24 15:09:00.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42676 1 109 1 2025-11-24 15:09:00.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60539 1 80 1 2025-11-24 15:04:11.667 00:05:51.555 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:04:11.844 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:10:01.172 00:00:00.000 UDP 28.104.0.1:44676 -> 198.28.0.2:53 1 64 1 2025-11-24 15:10:01.172 00:00:00.000 UDP 28.104.0.1:44327 -> 198.28.0.2:53 1 64 1 2025-11-24 15:10:01.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44676 1 109 1 2025-11-24 15:10:01.182 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44327 1 80 1 2025-11-24 15:09:11.669 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:11:01.464 00:00:00.000 UDP 28.104.0.1:39344 -> 198.28.0.2:53 1 64 1 2025-11-24 15:11:01.464 00:00:00.000 UDP 28.104.0.1:51013 -> 198.28.0.2:53 1 64 1 2025-11-24 15:11:01.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51013 1 80 1 2025-11-24 15:11:01.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39344 1 109 1 2025-11-24 15:11:11.668 00:00:00.092 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:07:06.564 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2588 1 2025-11-24 15:12:01.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35364 1 80 1 2025-11-24 15:12:01.768 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56528 1 109 1 2025-11-24 15:12:01.758 00:00:00.000 UDP 28.104.0.1:35364 -> 198.28.0.2:53 1 64 1 2025-11-24 15:12:01.757 00:00:00.000 UDP 28.104.0.1:56528 -> 198.28.0.2:53 1 64 1 2025-11-24 15:12:11.677 00:00:00.079 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:12:17.503 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:13:02.050 00:00:00.000 UDP 28.104.0.1:56047 -> 198.28.0.2:53 1 64 1 2025-11-24 15:13:02.050 00:00:00.000 UDP 28.104.0.1:55207 -> 198.28.0.2:53 1 64 1 2025-11-24 15:13:02.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55207 1 80 1 2025-11-24 15:13:02.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56047 1 109 1 2025-11-24 15:13:11.670 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:09:11.668 00:05:00.437 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:09:03.213 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:09:11.835 00:05:51.428 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:14:02.340 00:00:00.000 UDP 28.104.0.1:49231 -> 198.28.0.2:53 1 64 1 2025-11-24 15:14:02.341 00:00:00.000 UDP 28.104.0.1:36591 -> 198.28.0.2:53 1 64 1 2025-11-24 15:14:02.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36591 1 80 1 2025-11-24 15:14:02.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49231 1 109 1 2025-11-24 15:15:02.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56647 1 109 1 2025-11-24 15:10:11.845 00:05:51.369 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:15:02.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51831 1 80 1 2025-11-24 15:10:11.668 00:05:51.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:15:02.628 00:00:00.000 UDP 28.104.0.1:56647 -> 198.28.0.2:53 1 64 1 2025-11-24 15:15:02.628 00:00:00.000 UDP 28.104.0.1:51831 -> 198.28.0.2:53 1 64 1 2025-11-24 15:14:11.668 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:16:02.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59510 1 109 1 2025-11-24 15:16:02.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55350 1 80 1 2025-11-24 15:16:02.917 00:00:00.000 UDP 28.104.0.1:59510 -> 198.28.0.2:53 1 64 1 2025-11-24 15:16:02.917 00:00:00.000 UDP 28.104.0.1:55350 -> 198.28.0.2:53 1 64 1 2025-11-24 15:16:11.670 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:12:26.579 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2744 1 2025-11-24 15:17:03.191 00:00:00.000 UDP 28.104.0.1:42078 -> 198.28.0.2:53 1 64 1 2025-11-24 15:17:03.191 00:00:00.000 UDP 28.104.0.1:41707 -> 198.28.0.2:53 1 64 1 2025-11-24 15:17:03.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42078 1 80 1 2025-11-24 15:17:03.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41707 1 109 1 2025-11-24 15:17:11.669 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:17:17.469 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:18:04.189 00:00:00.000 UDP 28.104.0.1:53480 -> 198.28.0.2:53 1 64 1 2025-11-24 15:18:04.189 00:00:00.000 UDP 28.104.0.1:56962 -> 198.28.0.2:53 1 64 1 2025-11-24 15:18:04.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56962 1 109 1 2025-11-24 15:18:04.199 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53480 1 80 1 2025-11-24 15:18:11.669 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:19:04.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39890 1 80 1 2025-11-24 15:19:04.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43885 1 109 1 2025-11-24 15:19:04.529 00:00:00.000 UDP 28.104.0.1:43885 -> 198.28.0.2:53 1 64 1 2025-11-24 15:19:04.529 00:00:00.000 UDP 28.104.0.1:39890 -> 198.28.0.2:53 1 64 1 2025-11-24 15:15:11.670 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:15:03.213 00:05:08.467 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:20:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34137 1 109 1 2025-11-24 15:20:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59635 1 80 1 2025-11-24 15:20:04.791 00:00:00.000 UDP 28.104.0.1:59635 -> 198.28.0.2:53 1 64 1 2025-11-24 15:20:04.791 00:00:00.000 UDP 28.104.0.1:34137 -> 198.28.0.2:53 1 64 1 2025-11-24 15:15:11.835 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:19:11.669 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:16:11.845 00:05:51.369 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:21:05.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49283 1 109 1 2025-11-24 15:21:05.104 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41352 1 80 1 2025-11-24 15:21:05.094 00:00:00.000 UDP 28.104.0.1:41352 -> 198.28.0.2:53 1 64 1 2025-11-24 15:16:11.669 00:05:51.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:21:05.094 00:00:00.000 UDP 28.104.0.1:49283 -> 198.28.0.2:53 1 64 1 2025-11-24 15:21:11.670 00:00:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:17:46.104 00:05:11.263 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3372 1 2025-11-24 15:22:05.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43782 1 109 1 2025-11-24 15:22:05.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51039 1 80 1 2025-11-24 15:22:05.393 00:00:00.000 UDP 28.104.0.1:51039 -> 198.28.0.2:53 1 64 1 2025-11-24 15:22:05.393 00:00:00.000 UDP 28.104.0.1:43782 -> 198.28.0.2:53 1 64 1 2025-11-24 15:22:11.669 00:00:00.091 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:22:17.759 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:23:05.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40833 1 109 1 2025-11-24 15:23:05.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38798 1 80 1 2025-11-24 15:23:05.688 00:00:00.000 UDP 28.104.0.1:40833 -> 198.28.0.2:53 1 64 1 2025-11-24 15:23:05.688 00:00:00.000 UDP 28.104.0.1:38798 -> 198.28.0.2:53 1 64 1 2025-11-24 15:23:11.671 00:00:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:24:05.941 00:00:00.000 UDP 28.104.0.1:42350 -> 198.28.0.2:53 1 64 1 2025-11-24 15:24:05.941 00:00:00.000 UDP 28.104.0.1:34689 -> 198.28.0.2:53 1 64 1 2025-11-24 15:24:05.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42350 1 80 1 2025-11-24 15:24:05.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34689 1 109 1 2025-11-24 15:25:06.230 00:00:00.000 UDP 28.104.0.1:33962 -> 198.28.0.2:53 1 64 1 2025-11-24 15:25:06.230 00:00:00.000 UDP 28.104.0.1:38594 -> 198.28.0.2:53 1 64 1 2025-11-24 15:25:06.241 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33962 1 80 1 2025-11-24 15:25:06.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38594 1 109 1 2025-11-24 15:21:03.214 00:05:08.467 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:24:11.671 00:01:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:21:11.671 00:05:00.438 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:26:06.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34151 1 80 1 2025-11-24 15:26:06.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54951 1 109 1 2025-11-24 15:21:11.847 00:05:51.420 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:26:06.527 00:00:00.000 UDP 28.104.0.1:34151 -> 198.28.0.2:53 1 64 1 2025-11-24 15:26:06.527 00:00:00.000 UDP 28.104.0.1:54951 -> 198.28.0.2:53 1 64 1 2025-11-24 15:22:11.845 00:05:51.371 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:27:06.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52625 1 109 1 2025-11-24 15:27:06.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48186 1 80 1 2025-11-24 15:22:11.670 00:05:51.557 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:27:06.821 00:00:00.000 UDP 28.104.0.1:52625 -> 198.28.0.2:53 1 64 1 2025-11-24 15:27:06.821 00:00:00.000 UDP 28.104.0.1:48186 -> 198.28.0.2:53 1 64 1 2025-11-24 15:26:11.672 00:01:00.097 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:23:06.597 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2564 1 2025-11-24 15:27:17.692 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:28:11.673 00:00:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:28:07.115 00:00:00.000 UDP 28.104.0.1:58781 -> 198.28.0.2:53 1 64 1 2025-11-24 15:28:07.115 00:00:00.000 UDP 28.104.0.1:59382 -> 198.28.0.2:53 1 64 1 2025-11-24 15:28:07.127 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58781 1 109 1 2025-11-24 15:28:07.127 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59382 1 80 1 2025-11-24 15:29:07.410 00:00:00.000 UDP 28.104.0.1:53266 -> 198.28.0.2:53 1 64 1 2025-11-24 15:29:07.410 00:00:00.000 UDP 28.104.0.1:35506 -> 198.28.0.2:53 1 64 1 2025-11-24 15:29:07.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35506 1 80 1 2025-11-24 15:29:07.422 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53266 1 109 1 2025-11-24 15:30:07.731 00:00:00.000 UDP 28.104.0.1:44827 -> 198.28.0.2:53 1 64 1 2025-11-24 15:29:11.673 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:30:07.732 00:00:00.000 UDP 28.104.0.1:47612 -> 198.28.0.2:53 1 64 1 2025-11-24 15:30:07.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44827 1 80 1 2025-11-24 15:30:07.742 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47612 1 109 1 2025-11-24 15:31:08.057 00:00:00.000 UDP 28.104.0.1:35422 -> 198.28.0.2:53 1 64 1 2025-11-24 15:31:08.057 00:00:00.000 UDP 28.104.0.1:38041 -> 198.28.0.2:53 1 64 1 2025-11-24 15:31:08.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38041 1 80 1 2025-11-24 15:31:08.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35422 1 109 1 2025-11-24 15:27:03.217 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:27:11.671 00:05:00.437 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:27:11.837 00:05:51.431 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:32:08.689 00:00:00.000 UDP 28.104.0.1:47212 -> 198.28.0.2:53 1 64 1 2025-11-24 15:31:11.673 00:01:00.088 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:32:08.689 00:00:00.000 UDP 28.104.0.1:54986 -> 198.28.0.2:53 1 64 1 2025-11-24 15:32:08.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54986 1 109 1 2025-11-24 15:32:08.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47212 1 80 1 2025-11-24 15:32:17.931 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:28:26.603 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2568 1 2025-11-24 15:28:11.674 00:05:51.554 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:33:08.987 00:00:00.000 UDP 28.104.0.1:33171 -> 198.28.0.2:53 1 64 1 2025-11-24 15:33:11.676 00:00:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:33:08.987 00:00:00.000 UDP 28.104.0.1:35909 -> 198.28.0.2:53 1 64 1 2025-11-24 15:28:11.849 00:05:51.369 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:33:08.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33171 1 80 1 2025-11-24 15:33:08.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35909 1 109 1 2025-11-24 15:34:09.243 00:00:00.000 UDP 28.104.0.1:56668 -> 198.28.0.2:53 1 64 1 2025-11-24 15:34:09.243 00:00:00.000 UDP 28.104.0.1:39419 -> 198.28.0.2:53 1 64 1 2025-11-24 15:34:09.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56668 1 109 1 2025-11-24 15:34:09.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39419 1 80 1 2025-11-24 15:35:09.536 00:00:00.000 UDP 28.104.0.1:53739 -> 198.28.0.2:53 1 64 1 2025-11-24 15:35:09.536 00:00:00.000 UDP 28.104.0.1:43761 -> 198.28.0.2:53 1 64 1 2025-11-24 15:34:11.675 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:35:09.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43761 1 80 1 2025-11-24 15:35:09.547 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53739 1 109 1 2025-11-24 15:36:09.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37228 1 109 1 2025-11-24 15:36:09.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59931 1 80 1 2025-11-24 15:36:09.827 00:00:00.000 UDP 28.104.0.1:37228 -> 198.28.0.2:53 1 64 1 2025-11-24 15:36:09.827 00:00:00.000 UDP 28.104.0.1:59931 -> 198.28.0.2:53 1 64 1 2025-11-24 15:36:11.676 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:37:10.121 00:00:00.000 UDP 28.104.0.1:48471 -> 198.28.0.2:53 1 64 1 2025-11-24 15:37:10.121 00:00:00.000 UDP 28.104.0.1:54586 -> 198.28.0.2:53 1 64 1 2025-11-24 15:37:10.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54586 1 109 1 2025-11-24 15:33:03.218 00:05:08.468 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:37:10.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48471 1 80 1 2025-11-24 15:33:11.675 00:05:00.436 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:37:17.868 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:33:46.616 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2380 1 2025-11-24 15:33:11.840 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:38:11.676 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:38:10.421 00:00:00.000 UDP 28.104.0.1:39155 -> 198.28.0.2:53 1 64 1 2025-11-24 15:38:10.422 00:00:00.000 UDP 28.104.0.1:39181 -> 198.28.0.2:53 1 64 1 2025-11-24 15:38:10.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39155 1 109 1 2025-11-24 15:38:10.432 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39181 1 80 1 2025-11-24 15:34:11.675 00:05:51.554 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:34:11.851 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:39:10.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35396 1 80 1 2025-11-24 15:39:10.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57254 1 109 1 2025-11-24 15:39:10.670 00:00:00.000 UDP 28.104.0.1:57254 -> 198.28.0.2:53 1 64 1 2025-11-24 15:39:10.670 00:00:00.000 UDP 28.104.0.1:35396 -> 198.28.0.2:53 1 64 1 2025-11-24 15:40:10.962 00:00:00.000 UDP 28.104.0.1:36673 -> 198.28.0.2:53 1 64 1 2025-11-24 15:39:11.677 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:40:10.962 00:00:00.000 UDP 28.104.0.1:36943 -> 198.28.0.2:53 1 64 1 2025-11-24 15:40:10.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36673 1 109 1 2025-11-24 15:40:10.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36943 1 80 1 2025-11-24 15:41:11.306 00:00:00.000 UDP 28.104.0.1:45754 -> 198.28.0.2:53 1 64 1 2025-11-24 15:41:11.306 00:00:00.000 UDP 28.104.0.1:33805 -> 198.28.0.2:53 1 64 1 2025-11-24 15:41:11.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33805 1 109 1 2025-11-24 15:41:11.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45754 1 80 1 2025-11-24 15:42:11.610 00:00:00.000 UDP 28.104.0.1:46769 -> 198.28.0.2:53 1 64 1 2025-11-24 15:41:11.677 00:01:00.086 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:42:11.610 00:00:00.000 UDP 28.104.0.1:46632 -> 198.28.0.2:53 1 64 1 2025-11-24 15:42:11.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46632 1 80 1 2025-11-24 15:42:11.620 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46769 1 109 1 2025-11-24 15:42:17.855 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:43:11.909 00:00:00.000 UDP 28.104.0.1:59609 -> 198.28.0.2:53 1 64 1 2025-11-24 15:43:11.677 00:00:00.087 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:43:11.910 00:00:00.000 UDP 28.104.0.1:35508 -> 198.28.0.2:53 1 64 1 2025-11-24 15:43:11.919 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59609 1 80 1 2025-11-24 15:43:11.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35508 1 109 1 2025-11-24 15:39:03.219 00:05:08.477 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:39:11.677 00:05:00.435 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:39:06.628 00:05:10.001 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2852 1 2025-11-24 15:39:11.842 00:05:51.429 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:44:11.680 00:00:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:44:12.204 00:00:00.000 UDP 28.104.0.1:37872 -> 198.28.0.2:53 1 64 1 2025-11-24 15:44:12.204 00:00:00.000 UDP 28.104.0.1:58678 -> 198.28.0.2:53 1 64 1 2025-11-24 15:44:12.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58678 1 80 1 2025-11-24 15:44:12.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37872 1 109 1 2025-11-24 15:40:11.676 00:05:51.556 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:40:11.854 00:05:51.369 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:45:11.679 00:00:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:45:12.471 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53836 1 80 1 2025-11-24 15:45:12.471 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60152 1 109 1 2025-11-24 15:45:12.460 00:00:00.000 UDP 28.104.0.1:60152 -> 198.28.0.2:53 1 64 1 2025-11-24 15:45:12.460 00:00:00.000 UDP 28.104.0.1:53836 -> 198.28.0.2:53 1 64 1 2025-11-24 15:46:12.768 00:00:00.000 UDP 28.104.0.1:59008 -> 198.28.0.2:53 1 64 1 2025-11-24 15:46:12.768 00:00:00.000 UDP 28.104.0.1:33232 -> 198.28.0.2:53 1 64 1 2025-11-24 15:46:12.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33232 1 109 1 2025-11-24 15:46:12.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59008 1 80 1 2025-11-24 15:46:11.680 00:01:00.085 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:47:13.044 00:00:00.000 UDP 28.104.0.1:36855 -> 198.28.0.2:53 1 64 1 2025-11-24 15:47:13.044 00:00:00.000 UDP 28.104.0.1:55175 -> 198.28.0.2:53 1 64 1 2025-11-24 15:47:13.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55175 1 80 1 2025-11-24 15:47:13.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36855 1 109 1 2025-11-24 15:47:19.301 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:48:11.681 00:00:00.083 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:48:13.306 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51402 1 80 1 2025-11-24 15:48:13.306 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43262 1 109 1 2025-11-24 15:48:13.298 00:00:00.000 UDP 28.104.0.1:43262 -> 198.28.0.2:53 1 64 1 2025-11-24 15:48:13.298 00:00:00.000 UDP 28.104.0.1:51402 -> 198.28.0.2:53 1 64 1 2025-11-24 15:44:26.630 00:05:10.074 OSPF 28.0.2.1:0 -> 224.0.0.5:0 46 3224 1 2025-11-24 15:49:11.682 00:00:00.082 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:49:13.589 00:00:00.000 UDP 28.104.0.1:39386 -> 198.28.0.2:53 1 64 1 2025-11-24 15:49:13.590 00:00:00.000 UDP 28.104.0.1:46999 -> 198.28.0.2:53 1 64 1 2025-11-24 15:45:11.679 00:05:00.434 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:45:03.221 00:05:08.471 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:49:13.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39386 1 80 1 2025-11-24 15:49:13.601 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46999 1 109 1 2025-11-24 15:45:11.843 00:05:51.428 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:50:11.683 00:00:00.082 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:50:13.890 00:00:00.000 UDP 28.104.0.1:39588 -> 198.28.0.2:53 1 64 1 2025-11-24 15:50:13.890 00:00:00.000 UDP 28.104.0.1:50380 -> 198.28.0.2:53 1 64 1 2025-11-24 15:50:13.901 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50380 1 109 1 2025-11-24 15:50:13.902 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39588 1 80 1 2025-11-24 15:46:11.681 00:05:51.553 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:46:11.854 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:51:14.191 00:00:00.000 UDP 28.104.0.1:44464 -> 198.28.0.2:53 1 64 1 2025-11-24 15:51:14.190 00:00:00.000 UDP 28.104.0.1:44328 -> 198.28.0.2:53 1 64 1 2025-11-24 15:51:14.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44464 1 109 1 2025-11-24 15:51:14.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44328 1 80 1 2025-11-24 15:51:11.682 00:01:00.083 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:52:14.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45353 1 80 1 2025-11-24 15:52:14.451 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58465 1 109 1 2025-11-24 15:52:14.441 00:00:00.000 UDP 28.104.0.1:45353 -> 198.28.0.2:53 1 64 1 2025-11-24 15:52:14.441 00:00:00.000 UDP 28.104.0.1:58465 -> 198.28.0.2:53 1 64 1 2025-11-24 15:52:18.134 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:53:11.683 00:00:00.083 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:53:14.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59308 1 80 1 2025-11-24 15:53:14.747 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41408 1 109 1 2025-11-24 15:53:14.735 00:00:00.000 UDP 28.104.0.1:59308 -> 198.28.0.2:53 1 64 1 2025-11-24 15:53:14.735 00:00:00.000 UDP 28.104.0.1:41408 -> 198.28.0.2:53 1 64 1 2025-11-24 15:49:46.639 00:05:10.016 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2632 1 2025-11-24 15:54:11.683 00:00:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:54:15.051 00:00:00.000 UDP 28.104.0.1:54040 -> 198.28.0.2:53 1 64 1 2025-11-24 15:54:15.051 00:00:00.000 UDP 28.104.0.1:57395 -> 198.28.0.2:53 1 64 1 2025-11-24 15:54:15.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57395 1 109 1 2025-11-24 15:54:15.061 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54040 1 80 1 2025-11-24 15:55:11.684 00:00:00.083 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-11-24 15:51:11.683 00:05:00.432 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-24 15:55:15.299 00:00:00.000 UDP 28.104.0.1:54730 -> 198.28.0.2:53 1 64 1 2025-11-24 15:55:15.299 00:00:00.000 UDP 28.104.0.1:41254 -> 198.28.0.2:53 1 64 1 2025-11-24 15:51:03.221 00:05:08.471 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-24 15:55:15.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41254 1 109 1 2025-11-24 15:55:15.308 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54730 1 80 1 2025-11-24 15:51:11.844 00:05:51.428 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-24 15:56:15.585 00:00:00.000 UDP 28.104.0.1:54821 -> 198.28.0.2:53 1 64 1 2025-11-24 15:56:15.585 00:00:00.000 UDP 28.104.0.1:44855 -> 198.28.0.2:53 1 64 1 2025-11-24 15:56:15.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54821 1 109 1 2025-11-24 15:56:15.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44855 1 80 1 2025-11-24 15:52:11.855 00:05:51.368 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-24 15:52:11.682 00:05:51.551 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-24 15:56:11.682 00:01:00.084 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-11-24 15:57:15.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49808 1 109 1 2025-11-24 15:57:15.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41501 1 80 1 2025-11-24 15:57:15.880 00:00:00.000 UDP 28.104.0.1:49808 -> 198.28.0.2:53 1 64 1 2025-11-24 15:57:15.880 00:00:00.000 UDP 28.104.0.1:41501 -> 198.28.0.2:53 1 64 1 2025-11-24 15:57:18.378 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-24 15:58:16.185 00:00:00.000 UDP 28.104.0.1:37436 -> 198.28.0.2:53 1 64 1 2025-11-24 15:58:16.185 00:00:00.000 UDP 28.104.0.1:58637 -> 198.28.0.2:53 1 64 1 2025-11-24 15:58:16.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58637 1 109 1 2025-11-24 15:58:16.197 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37436 1 80 1 Summary: total flows: 354, total bytes: 96193, total packets: 1416, avg bps: 207, avg pps: 0, avg bpp: 67 Time window: 2025-11-24 14:56:26 - 2025-11-24 15:58:16 Total flows processed: 354, passed: 354, Blocks skipped: 0, Bytes read: 36880 Sys: 0.0037s User: 0.0037s Wall: 0.0089s flows/second: 39788.4 Runtime: 0.0089s