Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 00:59:38.598 00:00:00.000 UDP 28.104.0.1:50460 -> 198.28.0.2:53 1 64 1 2025-11-25 00:59:38.598 00:00:00.000 UDP 28.104.0.1:33998 -> 198.28.0.2:53 1 64 1 2025-11-25 00:59:38.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33998 1 109 1 2025-11-25 00:59:38.607 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50460 1 80 1 2025-11-25 01:00:38.888 00:00:00.000 UDP 28.104.0.1:41222 -> 198.28.0.2:53 1 64 1 2025-11-25 01:00:38.888 00:00:00.000 UDP 28.104.0.1:36455 -> 198.28.0.2:53 1 64 1 2025-11-25 01:00:38.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41222 1 80 1 2025-11-25 01:00:38.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36455 1 109 1 2025-11-25 00:57:11.948 00:05:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 00:57:11.948 00:05:00.406 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 00:57:03.434 00:05:08.524 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:01:39.189 00:00:00.000 UDP 28.104.0.1:42969 -> 198.28.0.2:53 1 64 1 2025-11-25 01:01:39.189 00:00:00.000 UDP 28.104.0.1:46290 -> 198.28.0.2:53 1 64 1 2025-11-25 01:01:39.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42969 1 80 1 2025-11-25 01:01:39.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46290 1 109 1 2025-11-25 00:57:47.436 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2812 1 2025-11-25 00:57:12.102 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 00:58:03.435 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:02:29.245 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:02:39.443 00:00:00.000 UDP 28.104.0.1:42564 -> 198.28.0.2:53 1 64 1 2025-11-25 01:02:39.443 00:00:00.000 UDP 28.104.0.1:57448 -> 198.28.0.2:53 1 64 1 2025-11-25 01:02:39.453 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42564 1 80 1 2025-11-25 01:02:39.453 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57448 1 109 1 2025-11-25 00:58:11.947 00:05:51.500 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:03:51.183 00:00:00.000 UDP 28.104.0.1:48635 -> 198.28.0.2:53 1 64 1 2025-11-25 01:03:51.183 00:00:00.000 UDP 28.104.0.1:39959 -> 198.28.0.2:53 1 64 1 2025-11-25 01:03:51.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39959 1 109 1 2025-11-25 01:03:51.192 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48635 1 80 1 2025-11-25 01:04:51.478 00:00:00.000 UDP 28.104.0.1:55084 -> 198.28.0.2:53 1 64 1 2025-11-25 01:04:51.478 00:00:00.000 UDP 28.104.0.1:44617 -> 198.28.0.2:53 1 64 1 2025-11-25 01:04:51.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44617 1 109 1 2025-11-25 01:04:51.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55084 1 80 1 2025-11-25 01:05:51.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54444 1 109 1 2025-11-25 01:05:51.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53807 1 80 1 2025-11-25 01:05:51.783 00:00:00.000 UDP 28.104.0.1:53807 -> 198.28.0.2:53 1 64 1 2025-11-25 01:05:51.783 00:00:00.000 UDP 28.104.0.1:54444 -> 198.28.0.2:53 1 64 1 2025-11-25 01:06:52.079 00:00:00.000 UDP 28.104.0.1:56303 -> 198.28.0.2:53 1 64 1 2025-11-25 01:06:52.079 00:00:00.000 UDP 28.104.0.1:46345 -> 198.28.0.2:53 1 64 1 2025-11-25 01:06:52.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56303 1 80 1 2025-11-25 01:06:52.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46345 1 109 1 2025-11-25 01:03:03.436 00:05:08.524 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:03:11.949 00:05:00.407 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:03:11.949 00:05:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:03:07.445 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 32 2176 1 2025-11-25 01:07:29.323 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:07:52.369 00:00:00.000 UDP 28.104.0.1:35663 -> 198.28.0.2:53 1 64 1 2025-11-25 01:07:52.369 00:00:00.000 UDP 28.104.0.1:52263 -> 198.28.0.2:53 1 64 1 2025-11-25 01:07:52.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35663 1 80 1 2025-11-25 01:07:52.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52263 1 109 1 2025-11-25 01:03:12.104 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:04:03.436 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:08:52.662 00:00:00.000 UDP 28.104.0.1:48049 -> 198.28.0.2:53 1 64 1 2025-11-25 01:08:52.661 00:00:00.000 UDP 28.104.0.1:52165 -> 198.28.0.2:53 1 64 1 2025-11-25 01:08:52.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52165 1 109 1 2025-11-25 01:08:52.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48049 1 80 1 2025-11-25 01:04:11.950 00:05:51.498 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:09:52.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50329 1 80 1 2025-11-25 01:09:52.966 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41410 1 109 1 2025-11-25 01:09:52.956 00:00:00.000 UDP 28.104.0.1:41410 -> 198.28.0.2:53 1 64 1 2025-11-25 01:09:52.956 00:00:00.000 UDP 28.104.0.1:50329 -> 198.28.0.2:53 1 64 1 2025-11-25 01:10:53.213 00:00:00.000 UDP 28.104.0.1:41463 -> 198.28.0.2:53 1 64 1 2025-11-25 01:10:53.213 00:00:00.000 UDP 28.104.0.1:58489 -> 198.28.0.2:53 1 64 1 2025-11-25 01:10:53.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41463 1 80 1 2025-11-25 01:10:53.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58489 1 109 1 2025-11-25 01:11:53.567 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36055 1 80 1 2025-11-25 01:11:53.568 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34407 1 109 1 2025-11-25 01:11:53.557 00:00:00.000 UDP 28.104.0.1:36055 -> 198.28.0.2:53 1 64 1 2025-11-25 01:11:53.557 00:00:00.000 UDP 28.104.0.1:34407 -> 198.28.0.2:53 1 64 1 2025-11-25 01:12:29.474 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:08:27.452 00:05:10.006 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2716 1 2025-11-25 01:12:53.850 00:00:00.000 UDP 28.104.0.1:44009 -> 198.28.0.2:53 1 64 1 2025-11-25 01:12:53.851 00:00:00.000 UDP 28.104.0.1:42207 -> 198.28.0.2:53 1 64 1 2025-11-25 01:12:53.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42207 1 109 1 2025-11-25 01:12:53.862 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44009 1 80 1 2025-11-25 01:09:11.951 00:05:00.412 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:09:11.951 00:05:00.164 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:09:03.437 00:05:08.524 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:13:54.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48174 1 109 1 2025-11-25 01:13:54.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49259 1 80 1 2025-11-25 01:13:54.167 00:00:00.000 UDP 28.104.0.1:48174 -> 198.28.0.2:53 1 64 1 2025-11-25 01:13:54.167 00:00:00.000 UDP 28.104.0.1:49259 -> 198.28.0.2:53 1 64 1 2025-11-25 01:09:12.104 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:10:03.437 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:14:54.457 00:00:00.000 UDP 28.104.0.1:45169 -> 198.28.0.2:53 1 64 1 2025-11-25 01:14:54.458 00:00:00.000 UDP 28.104.0.1:35157 -> 198.28.0.2:53 1 64 1 2025-11-25 01:14:54.467 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35157 1 80 1 2025-11-25 01:14:54.467 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45169 1 109 1 2025-11-25 01:10:11.950 00:05:51.500 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:15:54.755 00:00:00.000 UDP 28.104.0.1:39486 -> 198.28.0.2:53 1 64 1 2025-11-25 01:15:54.755 00:00:00.000 UDP 28.104.0.1:37939 -> 198.28.0.2:53 1 64 1 2025-11-25 01:15:54.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39486 1 109 1 2025-11-25 01:15:54.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37939 1 80 1 2025-11-25 01:16:55.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35543 1 80 1 2025-11-25 01:16:55.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55157 1 109 1 2025-11-25 01:16:55.055 00:00:00.000 UDP 28.104.0.1:35543 -> 198.28.0.2:53 1 64 1 2025-11-25 01:16:55.056 00:00:00.000 UDP 28.104.0.1:55157 -> 198.28.0.2:53 1 64 1 2025-11-25 01:17:29.658 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:17:55.333 00:00:00.000 UDP 28.104.0.1:49320 -> 198.28.0.2:53 1 64 1 2025-11-25 01:17:55.333 00:00:00.000 UDP 28.104.0.1:47316 -> 198.28.0.2:53 1 64 1 2025-11-25 01:17:55.343 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47316 1 80 1 2025-11-25 01:17:55.342 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49320 1 109 1 2025-11-25 01:13:47.458 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2668 1 2025-11-25 01:18:55.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54451 1 80 1 2025-11-25 01:18:55.605 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52623 1 109 1 2025-11-25 01:18:55.594 00:00:00.000 UDP 28.104.0.1:52623 -> 198.28.0.2:53 1 64 1 2025-11-25 01:18:55.594 00:00:00.000 UDP 28.104.0.1:54451 -> 198.28.0.2:53 1 64 1 2025-11-25 01:15:11.951 00:05:00.412 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:15:11.951 00:05:00.165 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:15:03.439 00:05:08.523 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:19:55.844 00:00:00.000 UDP 28.104.0.1:51030 -> 198.28.0.2:53 1 64 1 2025-11-25 01:19:55.844 00:00:00.000 UDP 28.104.0.1:58316 -> 198.28.0.2:53 1 64 1 2025-11-25 01:19:55.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51030 1 80 1 2025-11-25 01:19:55.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58316 1 109 1 2025-11-25 01:15:12.105 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:16:03.440 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:20:56.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59572 1 109 1 2025-11-25 01:20:56.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49686 1 80 1 2025-11-25 01:20:56.177 00:00:00.000 UDP 28.104.0.1:49686 -> 198.28.0.2:53 1 64 1 2025-11-25 01:20:56.177 00:00:00.000 UDP 28.104.0.1:59572 -> 198.28.0.2:53 1 64 1 2025-11-25 01:16:11.953 00:05:51.498 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:21:56.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38105 1 109 1 2025-11-25 01:21:56.555 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35091 1 80 1 2025-11-25 01:21:56.544 00:00:00.000 UDP 28.104.0.1:38105 -> 198.28.0.2:53 1 64 1 2025-11-25 01:21:56.544 00:00:00.000 UDP 28.104.0.1:35091 -> 198.28.0.2:53 1 64 1 2025-11-25 01:22:29.943 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:22:56.845 00:00:00.000 UDP 28.104.0.1:47568 -> 198.28.0.2:53 1 64 1 2025-11-25 01:22:56.845 00:00:00.000 UDP 28.104.0.1:38601 -> 198.28.0.2:53 1 64 1 2025-11-25 01:22:56.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38601 1 109 1 2025-11-25 01:22:56.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47568 1 80 1 2025-11-25 01:19:07.467 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 48 3372 1 2025-11-25 01:23:57.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35294 1 80 1 2025-11-25 01:23:57.157 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43838 1 109 1 2025-11-25 01:23:57.147 00:00:00.000 UDP 28.104.0.1:35294 -> 198.28.0.2:53 1 64 1 2025-11-25 01:23:57.147 00:00:00.000 UDP 28.104.0.1:43838 -> 198.28.0.2:53 1 64 1 2025-11-25 01:24:57.397 00:00:00.000 UDP 28.104.0.1:56229 -> 198.28.0.2:53 1 64 1 2025-11-25 01:24:57.397 00:00:00.000 UDP 28.104.0.1:49086 -> 198.28.0.2:53 1 64 1 2025-11-25 01:24:57.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49086 1 80 1 2025-11-25 01:24:57.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56229 1 109 1 2025-11-25 01:21:03.439 00:05:08.523 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:21:11.952 00:05:00.412 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:21:11.952 00:05:00.185 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:25:57.663 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45752 1 80 1 2025-11-25 01:25:57.665 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52730 1 109 1 2025-11-25 01:25:57.652 00:00:00.000 UDP 28.104.0.1:45752 -> 198.28.0.2:53 1 64 1 2025-11-25 01:25:57.652 00:00:00.000 UDP 28.104.0.1:52730 -> 198.28.0.2:53 1 64 1 2025-11-25 01:21:12.107 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:22:03.440 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:26:57.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32893 1 109 1 2025-11-25 01:26:57.922 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43819 1 80 1 2025-11-25 01:26:57.912 00:00:00.000 UDP 28.104.0.1:32893 -> 198.28.0.2:53 1 64 1 2025-11-25 01:26:57.911 00:00:00.000 UDP 28.104.0.1:43819 -> 198.28.0.2:53 1 64 1 2025-11-25 01:22:11.954 00:05:51.498 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:27:29.732 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:27:58.178 00:00:00.000 UDP 28.104.0.1:44996 -> 198.28.0.2:53 1 64 1 2025-11-25 01:27:58.179 00:00:00.000 UDP 28.104.0.1:49847 -> 198.28.0.2:53 1 64 1 2025-11-25 01:27:58.189 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49847 1 109 1 2025-11-25 01:27:58.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44996 1 80 1 2025-11-25 01:24:27.472 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 35 2400 1 2025-11-25 01:28:58.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37506 1 109 1 2025-11-25 01:28:58.485 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42105 1 80 1 2025-11-25 01:28:58.476 00:00:00.000 UDP 28.104.0.1:42105 -> 198.28.0.2:53 1 64 1 2025-11-25 01:28:58.476 00:00:00.000 UDP 28.104.0.1:37506 -> 198.28.0.2:53 1 64 1 2025-11-25 01:29:58.734 00:00:00.000 UDP 28.104.0.1:51126 -> 198.28.0.2:53 1 64 1 2025-11-25 01:29:58.733 00:00:00.000 UDP 28.104.0.1:45792 -> 198.28.0.2:53 1 64 1 2025-11-25 01:29:58.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51126 1 109 1 2025-11-25 01:29:58.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45792 1 80 1 2025-11-25 01:30:59.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47438 1 109 1 2025-11-25 01:30:59.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45020 1 80 1 2025-11-25 01:30:59.193 00:00:00.000 UDP 28.104.0.1:47438 -> 198.28.0.2:53 1 64 1 2025-11-25 01:30:59.193 00:00:00.000 UDP 28.104.0.1:45020 -> 198.28.0.2:53 1 64 1 2025-11-25 01:27:11.953 00:05:00.417 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:27:11.953 00:05:00.191 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:27:03.441 00:05:08.524 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:31:59.497 00:00:00.000 UDP 28.104.0.1:33263 -> 198.28.0.2:53 1 64 1 2025-11-25 01:31:59.496 00:00:00.000 UDP 28.104.0.1:54665 -> 198.28.0.2:53 1 64 1 2025-11-25 01:31:59.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54665 1 109 1 2025-11-25 01:31:59.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33263 1 80 1 2025-11-25 01:27:12.108 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:28:03.442 00:05:08.679 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:32:29.758 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:32:59.789 00:00:00.000 UDP 28.104.0.1:55035 -> 198.28.0.2:53 1 64 1 2025-11-25 01:32:59.789 00:00:00.000 UDP 28.104.0.1:48864 -> 198.28.0.2:53 1 64 1 2025-11-25 01:32:59.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48864 1 80 1 2025-11-25 01:32:59.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55035 1 109 1 2025-11-25 01:28:11.952 00:05:51.501 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:34:00.095 00:00:00.000 UDP 28.104.0.1:42929 -> 198.28.0.2:53 1 64 1 2025-11-25 01:34:00.095 00:00:00.000 UDP 28.104.0.1:40254 -> 198.28.0.2:53 1 64 1 2025-11-25 01:29:47.473 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-11-25 01:34:00.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40254 1 80 1 2025-11-25 01:34:00.105 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42929 1 109 1 2025-11-25 01:35:00.388 00:00:00.000 UDP 28.104.0.1:38671 -> 198.28.0.2:53 1 64 1 2025-11-25 01:35:00.388 00:00:00.000 UDP 28.104.0.1:40361 -> 198.28.0.2:53 1 64 1 2025-11-25 01:35:00.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40361 1 80 1 2025-11-25 01:35:00.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38671 1 109 1 2025-11-25 01:36:00.683 00:00:00.000 UDP 28.104.0.1:58770 -> 198.28.0.2:53 1 64 1 2025-11-25 01:36:00.683 00:00:00.000 UDP 28.104.0.1:52801 -> 198.28.0.2:53 1 64 1 2025-11-25 01:36:00.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58770 1 109 1 2025-11-25 01:36:00.693 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52801 1 80 1 2025-11-25 01:37:00.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52274 1 80 1 2025-11-25 01:37:00.983 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54531 1 109 1 2025-11-25 01:37:00.972 00:00:00.000 UDP 28.104.0.1:54531 -> 198.28.0.2:53 1 64 1 2025-11-25 01:37:00.972 00:00:00.000 UDP 28.104.0.1:52274 -> 198.28.0.2:53 1 64 1 2025-11-25 01:33:03.442 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:33:11.959 00:05:00.414 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:33:11.959 00:05:00.194 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:37:29.926 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:38:01.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33244 1 109 1 2025-11-25 01:38:01.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36893 1 80 1 2025-11-25 01:38:01.235 00:00:00.000 UDP 28.104.0.1:36893 -> 198.28.0.2:53 1 64 1 2025-11-25 01:38:01.235 00:00:00.000 UDP 28.104.0.1:33244 -> 198.28.0.2:53 1 64 1 2025-11-25 01:33:12.111 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:34:03.443 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:39:01.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34438 1 80 1 2025-11-25 01:39:01.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52378 1 109 1 2025-11-25 01:39:01.541 00:00:00.000 UDP 28.104.0.1:52378 -> 198.28.0.2:53 1 64 1 2025-11-25 01:39:01.541 00:00:00.000 UDP 28.104.0.1:34438 -> 198.28.0.2:53 1 64 1 2025-11-25 01:34:11.959 00:05:51.496 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:35:07.477 00:05:10.565 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-11-25 01:40:01.840 00:00:00.000 UDP 28.104.0.1:36105 -> 198.28.0.2:53 1 64 1 2025-11-25 01:40:01.840 00:00:00.000 UDP 28.104.0.1:60555 -> 198.28.0.2:53 1 64 1 2025-11-25 01:40:01.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36105 1 109 1 2025-11-25 01:40:01.850 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60555 1 80 1 2025-11-25 01:41:02.149 00:00:00.000 UDP 28.104.0.1:43764 -> 198.28.0.2:53 1 64 1 2025-11-25 01:41:02.149 00:00:00.000 UDP 28.104.0.1:46273 -> 198.28.0.2:53 1 64 1 2025-11-25 01:41:02.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43764 1 109 1 2025-11-25 01:41:02.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46273 1 80 1 2025-11-25 01:42:02.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38749 1 109 1 2025-11-25 01:42:02.465 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59838 1 80 1 2025-11-25 01:42:02.455 00:00:00.000 UDP 28.104.0.1:38749 -> 198.28.0.2:53 1 64 1 2025-11-25 01:42:02.454 00:00:00.000 UDP 28.104.0.1:59838 -> 198.28.0.2:53 1 64 1 2025-11-25 01:42:30.275 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:43:02.755 00:00:00.000 UDP 28.104.0.1:48703 -> 198.28.0.2:53 1 64 1 2025-11-25 01:43:02.755 00:00:00.000 UDP 28.104.0.1:58094 -> 198.28.0.2:53 1 64 1 2025-11-25 01:43:02.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48703 1 109 1 2025-11-25 01:43:02.767 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58094 1 80 1 2025-11-25 01:39:11.959 00:05:00.416 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:39:11.959 00:05:00.192 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:39:03.444 00:05:08.526 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:44:03.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48039 1 80 1 2025-11-25 01:44:03.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32947 1 109 1 2025-11-25 01:44:03.068 00:00:00.000 UDP 28.104.0.1:32947 -> 198.28.0.2:53 1 64 1 2025-11-25 01:39:12.111 00:05:51.384 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:44:03.068 00:00:00.000 UDP 28.104.0.1:48039 -> 198.28.0.2:53 1 64 1 2025-11-25 01:40:03.444 00:05:08.678 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:40:27.481 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2880 1 2025-11-25 01:45:03.374 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38098 1 109 1 2025-11-25 01:45:03.373 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55331 1 80 1 2025-11-25 01:45:03.364 00:00:00.000 UDP 28.104.0.1:38098 -> 198.28.0.2:53 1 64 1 2025-11-25 01:45:03.363 00:00:00.000 UDP 28.104.0.1:55331 -> 198.28.0.2:53 1 64 1 2025-11-25 01:40:11.960 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:46:03.660 00:00:00.000 UDP 28.104.0.1:33969 -> 198.28.0.2:53 1 64 1 2025-11-25 01:46:03.659 00:00:00.000 UDP 28.104.0.1:36587 -> 198.28.0.2:53 1 64 1 2025-11-25 01:46:03.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33969 1 80 1 2025-11-25 01:46:03.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36587 1 109 1 2025-11-25 01:47:03.927 00:00:00.000 UDP 28.104.0.1:36114 -> 198.28.0.2:53 1 64 1 2025-11-25 01:47:03.927 00:00:00.000 UDP 28.104.0.1:34037 -> 198.28.0.2:53 1 64 1 2025-11-25 01:47:03.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36114 1 109 1 2025-11-25 01:47:03.937 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34037 1 80 1 2025-11-25 01:47:30.145 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:48:04.234 00:00:00.000 UDP 28.104.0.1:40586 -> 198.28.0.2:53 1 64 1 2025-11-25 01:48:04.234 00:00:00.000 UDP 28.104.0.1:53864 -> 198.28.0.2:53 1 64 1 2025-11-25 01:48:04.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40586 1 80 1 2025-11-25 01:48:04.245 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53864 1 109 1 2025-11-25 01:49:04.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46162 1 109 1 2025-11-25 01:49:04.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47065 1 80 1 2025-11-25 01:49:04.496 00:00:00.000 UDP 28.104.0.1:47065 -> 198.28.0.2:53 1 64 1 2025-11-25 01:49:04.496 00:00:00.000 UDP 28.104.0.1:46162 -> 198.28.0.2:53 1 64 1 2025-11-25 01:45:11.959 00:05:00.196 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:45:11.959 00:05:00.417 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:45:03.445 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:45:47.488 00:05:00.737 OSPF 28.0.2.1:0 -> 224.0.0.5:0 44 3152 1 2025-11-25 01:50:04.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37977 1 109 1 2025-11-25 01:50:04.766 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44106 1 80 1 2025-11-25 01:45:12.112 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:50:04.755 00:00:00.000 UDP 28.104.0.1:37977 -> 198.28.0.2:53 1 64 1 2025-11-25 01:50:04.755 00:00:00.000 UDP 28.104.0.1:44106 -> 198.28.0.2:53 1 64 1 2025-11-25 01:46:03.446 00:05:08.677 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:51:05.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49891 1 80 1 2025-11-25 01:51:05.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58683 1 109 1 2025-11-25 01:51:05.377 00:00:00.000 UDP 28.104.0.1:58683 -> 198.28.0.2:53 1 64 1 2025-11-25 01:46:11.959 00:05:51.498 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:51:05.377 00:00:00.000 UDP 28.104.0.1:49891 -> 198.28.0.2:53 1 64 1 2025-11-25 01:52:05.669 00:00:00.000 UDP 28.104.0.1:34914 -> 198.28.0.2:53 1 64 1 2025-11-25 01:52:05.668 00:00:00.000 UDP 28.104.0.1:50792 -> 198.28.0.2:53 1 64 1 2025-11-25 01:52:05.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34914 1 109 1 2025-11-25 01:52:05.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50792 1 80 1 2025-11-25 01:52:30.071 00:00:00.048 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:53:05.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45777 1 80 1 2025-11-25 01:53:05.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42153 1 109 1 2025-11-25 01:53:05.959 00:00:00.000 UDP 28.104.0.1:45777 -> 198.28.0.2:53 1 64 1 2025-11-25 01:53:05.959 00:00:00.000 UDP 28.104.0.1:42153 -> 198.28.0.2:53 1 64 1 2025-11-25 01:54:06.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37832 1 80 1 2025-11-25 01:54:06.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32892 1 109 1 2025-11-25 01:54:06.268 00:00:00.000 UDP 28.104.0.1:37832 -> 198.28.0.2:53 1 64 1 2025-11-25 01:54:06.268 00:00:00.000 UDP 28.104.0.1:32892 -> 198.28.0.2:53 1 64 1 2025-11-25 01:55:06.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47911 1 109 1 2025-11-25 01:55:06.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33401 1 80 1 2025-11-25 01:55:06.558 00:00:00.000 UDP 28.104.0.1:33401 -> 198.28.0.2:53 1 64 1 2025-11-25 01:55:06.558 00:00:00.000 UDP 28.104.0.1:47911 -> 198.28.0.2:53 1 64 1 2025-11-25 01:51:03.447 00:05:08.525 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-25 01:50:57.501 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2592 1 2025-11-25 01:51:11.961 00:05:00.418 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-25 01:51:11.961 00:05:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-25 01:56:06.860 00:00:00.000 UDP 28.104.0.1:33634 -> 198.28.0.2:53 1 64 1 2025-11-25 01:56:06.860 00:00:00.000 UDP 28.104.0.1:60323 -> 198.28.0.2:53 1 64 1 2025-11-25 01:51:12.113 00:05:51.385 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-25 01:56:06.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33634 1 80 1 2025-11-25 01:56:06.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60323 1 109 1 2025-11-25 01:52:03.448 00:05:08.689 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-25 01:52:11.960 00:05:51.497 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-25 01:57:07.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57322 1 80 1 2025-11-25 01:57:07.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56296 1 109 1 2025-11-25 01:57:07.127 00:00:00.000 UDP 28.104.0.1:57322 -> 198.28.0.2:53 1 64 1 2025-11-25 01:57:07.127 00:00:00.000 UDP 28.104.0.1:56296 -> 198.28.0.2:53 1 64 1 2025-11-25 01:57:30.402 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-25 01:58:07.643 00:00:00.000 UDP 28.104.0.1:47660 -> 198.28.0.2:53 1 64 1 2025-11-25 01:58:07.643 00:00:00.000 UDP 28.104.0.1:47164 -> 198.28.0.2:53 1 64 1 2025-11-25 01:58:07.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47164 1 80 1 2025-11-25 01:58:07.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47660 1 109 1 Summary: total flows: 319, total bytes: 95887, total packets: 1415, avg bps: 209, avg pps: 0, avg bpp: 67 Time window: 2025-11-25 00:57:03 - 2025-11-25 01:58:07 Total flows processed: 319, passed: 319, Blocks skipped: 0, Bytes read: 33240 Sys: 0.0032s User: 0.0032s Wall: 0.0037s flows/second: 85276.2 Runtime: 0.0038s