Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-02 03:55:06.614 00:05:08.732 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 03:55:06.663 00:05:08.825 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 03:55:06.622 00:05:08.713 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 03:59:45.513 00:00:00.000 UDP 28.104.0.1:59344 -> 198.28.0.2:53 1 64 1 2025-12-02 03:59:45.513 00:00:00.000 UDP 28.104.0.1:59260 -> 198.28.0.2:53 1 64 1 2025-12-02 03:59:45.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59344 1 109 1 2025-12-02 03:59:45.524 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59260 1 80 1 2025-12-02 03:56:06.613 00:05:08.886 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:00:45.768 00:00:00.000 UDP 28.104.0.1:49072 -> 198.28.0.2:53 1 64 1 2025-12-02 04:00:45.768 00:00:00.000 UDP 28.104.0.1:58156 -> 198.28.0.2:53 1 64 1 2025-12-02 04:00:45.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58156 1 109 1 2025-12-02 04:00:45.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49072 1 80 1 2025-12-02 04:00:55.251 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 03:57:15.336 00:05:00.747 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:01:46.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40635 1 80 1 2025-12-02 04:01:46.077 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42750 1 109 1 2025-12-02 04:01:46.066 00:00:00.000 UDP 28.104.0.1:40635 -> 198.28.0.2:53 1 64 1 2025-12-02 04:01:46.066 00:00:00.000 UDP 28.104.0.1:42750 -> 198.28.0.2:53 1 64 1 2025-12-02 03:58:11.206 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2916 1 2025-12-02 04:02:46.320 00:00:00.000 UDP 28.104.0.1:48684 -> 198.28.0.2:53 1 64 1 2025-12-02 04:02:46.320 00:00:00.000 UDP 28.104.0.1:59239 -> 198.28.0.2:53 1 64 1 2025-12-02 04:02:46.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59239 1 80 1 2025-12-02 04:02:46.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48684 1 109 1 2025-12-02 03:58:15.335 00:06:00.469 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:03:46.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60403 1 109 1 2025-12-02 04:03:46.621 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53199 1 80 1 2025-12-02 04:03:46.611 00:00:00.000 UDP 28.104.0.1:60403 -> 198.28.0.2:53 1 64 1 2025-12-02 04:03:46.612 00:00:00.000 UDP 28.104.0.1:53199 -> 198.28.0.2:53 1 64 1 2025-12-02 04:04:46.874 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55718 1 109 1 2025-12-02 04:04:46.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43209 1 80 1 2025-12-02 04:04:46.862 00:00:00.000 UDP 28.104.0.1:43209 -> 198.28.0.2:53 1 64 1 2025-12-02 04:04:46.863 00:00:00.000 UDP 28.104.0.1:55718 -> 198.28.0.2:53 1 64 1 2025-12-02 04:01:06.624 00:05:08.717 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:01:06.664 00:05:08.828 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:01:06.614 00:05:08.737 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:05:47.171 00:00:00.000 UDP 28.104.0.1:59498 -> 198.28.0.2:53 1 64 1 2025-12-02 04:05:47.171 00:00:00.000 UDP 28.104.0.1:51419 -> 198.28.0.2:53 1 64 1 2025-12-02 04:05:47.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59498 1 80 1 2025-12-02 04:05:47.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51419 1 109 1 2025-12-02 04:05:55.171 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:02:06.613 00:05:08.889 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:06:47.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44668 1 80 1 2025-12-02 04:06:47.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43214 1 109 1 2025-12-02 04:06:47.466 00:00:00.000 UDP 28.104.0.1:44668 -> 198.28.0.2:53 1 64 1 2025-12-02 04:06:47.466 00:00:00.000 UDP 28.104.0.1:43214 -> 198.28.0.2:53 1 64 1 2025-12-02 04:03:15.337 00:05:00.753 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:03:31.211 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2624 1 2025-12-02 04:07:47.762 00:00:00.000 UDP 28.104.0.1:38048 -> 198.28.0.2:53 1 64 1 2025-12-02 04:07:47.762 00:00:00.000 UDP 28.104.0.1:43370 -> 198.28.0.2:53 1 64 1 2025-12-02 04:07:47.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38048 1 80 1 2025-12-02 04:07:47.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43370 1 109 1 2025-12-02 04:08:48.125 00:00:00.000 UDP 28.104.0.1:37050 -> 198.28.0.2:53 1 64 1 2025-12-02 04:08:48.124 00:00:00.000 UDP 28.104.0.1:45887 -> 198.28.0.2:53 1 64 1 2025-12-02 04:08:48.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45887 1 80 1 2025-12-02 04:08:48.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37050 1 109 1 2025-12-02 04:09:48.429 00:00:00.000 UDP 28.104.0.1:34815 -> 198.28.0.2:53 1 64 1 2025-12-02 04:09:48.429 00:00:00.000 UDP 28.104.0.1:50349 -> 198.28.0.2:53 1 64 1 2025-12-02 04:09:48.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50349 1 109 1 2025-12-02 04:09:48.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34815 1 80 1 2025-12-02 04:05:15.336 00:06:00.472 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:10:48.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48721 1 80 1 2025-12-02 04:10:48.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42858 1 109 1 2025-12-02 04:10:48.731 00:00:00.000 UDP 28.104.0.1:48721 -> 198.28.0.2:53 1 64 1 2025-12-02 04:10:48.731 00:00:00.000 UDP 28.104.0.1:42858 -> 198.28.0.2:53 1 64 1 2025-12-02 04:10:55.689 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:07:06.665 00:05:08.829 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:07:06.625 00:05:08.718 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:07:06.614 00:05:08.739 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:11:49.049 00:00:00.000 UDP 28.104.0.1:43432 -> 198.28.0.2:53 1 64 1 2025-12-02 04:11:49.049 00:00:00.000 UDP 28.104.0.1:54967 -> 198.28.0.2:53 1 64 1 2025-12-02 04:11:49.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43432 1 109 1 2025-12-02 04:11:49.058 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54967 1 80 1 2025-12-02 04:08:06.615 00:05:08.889 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:12:49.301 00:00:00.000 UDP 28.104.0.1:36813 -> 198.28.0.2:53 1 64 1 2025-12-02 04:12:49.301 00:00:00.000 UDP 28.104.0.1:49436 -> 198.28.0.2:53 1 64 1 2025-12-02 04:12:49.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36813 1 109 1 2025-12-02 04:12:49.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49436 1 80 1 2025-12-02 04:08:51.214 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 36 2448 1 2025-12-02 04:09:15.342 00:05:00.748 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:13:49.598 00:00:00.000 UDP 28.104.0.1:57330 -> 198.28.0.2:53 1 64 1 2025-12-02 04:13:49.598 00:00:00.000 UDP 28.104.0.1:35762 -> 198.28.0.2:53 1 64 1 2025-12-02 04:13:49.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35762 1 80 1 2025-12-02 04:13:49.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57330 1 109 1 2025-12-02 04:14:49.854 00:00:00.000 UDP 28.104.0.1:60308 -> 198.28.0.2:53 1 64 1 2025-12-02 04:14:49.854 00:00:00.000 UDP 28.104.0.1:36817 -> 198.28.0.2:53 1 64 1 2025-12-02 04:14:49.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36817 1 80 1 2025-12-02 04:14:49.865 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60308 1 109 1 2025-12-02 04:15:50.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43830 1 109 1 2025-12-02 04:15:50.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44838 1 80 1 2025-12-02 04:15:50.167 00:00:00.000 UDP 28.104.0.1:43830 -> 198.28.0.2:53 1 64 1 2025-12-02 04:15:50.167 00:00:00.000 UDP 28.104.0.1:44838 -> 198.28.0.2:53 1 64 1 2025-12-02 04:15:55.472 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:16:50.465 00:00:00.000 UDP 28.104.0.1:58991 -> 198.28.0.2:53 1 64 1 2025-12-02 04:16:50.465 00:00:00.000 UDP 28.104.0.1:34189 -> 198.28.0.2:53 1 64 1 2025-12-02 04:16:50.476 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58991 1 80 1 2025-12-02 04:16:50.476 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34189 1 109 1 2025-12-02 04:13:06.615 00:05:08.740 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:13:06.665 00:05:08.831 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:12:15.343 00:06:00.466 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:13:06.625 00:05:08.720 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:17:50.771 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43865 1 80 1 2025-12-02 04:17:50.770 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47555 1 109 1 2025-12-02 04:17:50.760 00:00:00.000 UDP 28.104.0.1:47555 -> 198.28.0.2:53 1 64 1 2025-12-02 04:17:50.760 00:00:00.000 UDP 28.104.0.1:43865 -> 198.28.0.2:53 1 64 1 2025-12-02 04:14:06.616 00:05:08.893 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:14:11.218 00:05:10.003 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2732 1 2025-12-02 04:18:51.071 00:00:00.000 UDP 28.104.0.1:36672 -> 198.28.0.2:53 1 64 1 2025-12-02 04:18:51.071 00:00:00.000 UDP 28.104.0.1:51342 -> 198.28.0.2:53 1 64 1 2025-12-02 04:18:51.081 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51342 1 80 1 2025-12-02 04:18:51.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36672 1 109 1 2025-12-02 04:15:15.343 00:05:00.751 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:19:51.366 00:00:00.000 UDP 28.104.0.1:46692 -> 198.28.0.2:53 1 64 1 2025-12-02 04:19:51.366 00:00:00.000 UDP 28.104.0.1:38671 -> 198.28.0.2:53 1 64 1 2025-12-02 04:19:51.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38671 1 109 1 2025-12-02 04:19:51.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46692 1 80 1 2025-12-02 04:20:51.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38711 1 109 1 2025-12-02 04:20:51.670 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60738 1 80 1 2025-12-02 04:20:51.660 00:00:00.000 UDP 28.104.0.1:60738 -> 198.28.0.2:53 1 64 1 2025-12-02 04:20:51.660 00:00:00.000 UDP 28.104.0.1:38711 -> 198.28.0.2:53 1 64 1 2025-12-02 04:20:55.506 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:21:51.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54289 1 80 1 2025-12-02 04:21:51.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43699 1 109 1 2025-12-02 04:21:51.961 00:00:00.000 UDP 28.104.0.1:54289 -> 198.28.0.2:53 1 64 1 2025-12-02 04:21:51.961 00:00:00.000 UDP 28.104.0.1:43699 -> 198.28.0.2:53 1 64 1 2025-12-02 04:22:52.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45407 1 109 1 2025-12-02 04:22:52.273 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54574 1 80 1 2025-12-02 04:22:52.260 00:00:00.000 UDP 28.104.0.1:45407 -> 198.28.0.2:53 1 64 1 2025-12-02 04:22:52.261 00:00:00.000 UDP 28.104.0.1:54574 -> 198.28.0.2:53 1 64 1 2025-12-02 04:19:06.665 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:19:06.625 00:05:08.720 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:19:06.617 00:05:08.740 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:19:31.220 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2776 1 2025-12-02 04:23:52.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49116 1 109 1 2025-12-02 04:23:52.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39117 1 80 1 2025-12-02 04:23:52.553 00:00:00.000 UDP 28.104.0.1:39117 -> 198.28.0.2:53 1 64 1 2025-12-02 04:23:52.553 00:00:00.000 UDP 28.104.0.1:49116 -> 198.28.0.2:53 1 64 1 2025-12-02 04:19:15.345 00:06:00.465 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:20:06.618 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:24:52.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39997 1 109 1 2025-12-02 04:24:52.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53842 1 80 1 2025-12-02 04:24:52.848 00:00:00.000 UDP 28.104.0.1:39997 -> 198.28.0.2:53 1 64 1 2025-12-02 04:24:52.848 00:00:00.000 UDP 28.104.0.1:53842 -> 198.28.0.2:53 1 64 1 2025-12-02 04:21:15.346 00:05:00.751 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:25:55.769 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:25:53.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35338 1 109 1 2025-12-02 04:25:53.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54593 1 80 1 2025-12-02 04:25:53.109 00:00:00.000 UDP 28.104.0.1:54593 -> 198.28.0.2:53 1 64 1 2025-12-02 04:25:53.109 00:00:00.000 UDP 28.104.0.1:35338 -> 198.28.0.2:53 1 64 1 2025-12-02 04:26:53.410 00:00:00.000 UDP 28.104.0.1:55475 -> 198.28.0.2:53 1 64 1 2025-12-02 04:26:53.410 00:00:00.000 UDP 28.104.0.1:33011 -> 198.28.0.2:53 1 64 1 2025-12-02 04:26:53.420 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55475 1 109 1 2025-12-02 04:26:53.421 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33011 1 80 1 2025-12-02 04:27:53.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59554 1 80 1 2025-12-02 04:27:53.671 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60529 1 109 1 2025-12-02 04:27:53.661 00:00:00.000 UDP 28.104.0.1:59554 -> 198.28.0.2:53 1 64 1 2025-12-02 04:27:53.661 00:00:00.000 UDP 28.104.0.1:60529 -> 198.28.0.2:53 1 64 1 2025-12-02 04:28:53.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57329 1 80 1 2025-12-02 04:28:53.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38224 1 109 1 2025-12-02 04:28:53.953 00:00:00.000 UDP 28.104.0.1:38224 -> 198.28.0.2:53 1 64 1 2025-12-02 04:28:53.953 00:00:00.000 UDP 28.104.0.1:57329 -> 198.28.0.2:53 1 64 1 2025-12-02 04:24:51.227 00:05:10.007 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3080 1 2025-12-02 04:25:06.668 00:05:08.836 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:25:06.628 00:05:08.718 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:25:06.618 00:05:08.738 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:29:54.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46596 1 109 1 2025-12-02 04:29:54.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51703 1 80 1 2025-12-02 04:29:54.240 00:00:00.000 UDP 28.104.0.1:46596 -> 198.28.0.2:53 1 64 1 2025-12-02 04:29:54.240 00:00:00.000 UDP 28.104.0.1:51703 -> 198.28.0.2:53 1 64 1 2025-12-02 04:26:06.620 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:30:54.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45558 1 109 1 2025-12-02 04:30:54.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41729 1 80 1 2025-12-02 04:30:55.797 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:30:54.530 00:00:00.000 UDP 28.104.0.1:45558 -> 198.28.0.2:53 1 64 1 2025-12-02 04:30:54.530 00:00:00.000 UDP 28.104.0.1:41729 -> 198.28.0.2:53 1 64 1 2025-12-02 04:26:15.346 00:06:00.467 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:27:15.347 00:05:00.752 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:31:54.794 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57708 1 80 1 2025-12-02 04:31:54.795 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51844 1 109 1 2025-12-02 04:31:54.784 00:00:00.000 UDP 28.104.0.1:51844 -> 198.28.0.2:53 1 64 1 2025-12-02 04:31:54.784 00:00:00.000 UDP 28.104.0.1:57708 -> 198.28.0.2:53 1 64 1 2025-12-02 04:32:55.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55435 1 80 1 2025-12-02 04:32:55.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43766 1 109 1 2025-12-02 04:32:55.097 00:00:00.000 UDP 28.104.0.1:43766 -> 198.28.0.2:53 1 64 1 2025-12-02 04:32:55.096 00:00:00.000 UDP 28.104.0.1:55435 -> 198.28.0.2:53 1 64 1 2025-12-02 04:33:55.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38849 1 109 1 2025-12-02 04:33:55.436 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51377 1 80 1 2025-12-02 04:33:55.424 00:00:00.000 UDP 28.104.0.1:38849 -> 198.28.0.2:53 1 64 1 2025-12-02 04:33:55.424 00:00:00.000 UDP 28.104.0.1:51377 -> 198.28.0.2:53 1 64 1 2025-12-02 04:30:11.235 00:05:10.012 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2768 1 2025-12-02 04:34:55.701 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53923 1 109 1 2025-12-02 04:34:55.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49911 1 80 1 2025-12-02 04:34:55.692 00:00:00.000 UDP 28.104.0.1:53923 -> 198.28.0.2:53 1 64 1 2025-12-02 04:34:55.692 00:00:00.000 UDP 28.104.0.1:49911 -> 198.28.0.2:53 1 64 1 2025-12-02 04:31:06.619 00:05:08.738 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:31:06.670 00:05:08.836 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:31:06.630 00:05:08.718 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:35:55.990 00:00:00.000 UDP 28.104.0.1:56471 -> 198.28.0.2:53 1 64 1 2025-12-02 04:35:55.990 00:00:00.000 UDP 28.104.0.1:42200 -> 198.28.0.2:53 1 64 1 2025-12-02 04:35:56.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42200 1 80 1 2025-12-02 04:35:56.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56471 1 109 1 2025-12-02 04:35:55.797 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:32:06.619 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:36:56.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34436 1 109 1 2025-12-02 04:36:56.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52451 1 80 1 2025-12-02 04:36:56.308 00:00:00.000 UDP 28.104.0.1:34436 -> 198.28.0.2:53 1 64 1 2025-12-02 04:36:56.308 00:00:00.000 UDP 28.104.0.1:52451 -> 198.28.0.2:53 1 64 1 2025-12-02 04:33:15.349 00:05:00.751 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:37:56.606 00:00:00.000 UDP 28.104.0.1:46830 -> 198.28.0.2:53 1 64 1 2025-12-02 04:37:56.606 00:00:00.000 UDP 28.104.0.1:47084 -> 198.28.0.2:53 1 64 1 2025-12-02 04:37:56.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46830 1 109 1 2025-12-02 04:37:56.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47084 1 80 1 2025-12-02 04:33:15.348 00:06:00.466 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:38:56.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34828 1 80 1 2025-12-02 04:38:56.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36047 1 109 1 2025-12-02 04:38:56.863 00:00:00.000 UDP 28.104.0.1:36047 -> 198.28.0.2:53 1 64 1 2025-12-02 04:38:56.863 00:00:00.000 UDP 28.104.0.1:34828 -> 198.28.0.2:53 1 64 1 2025-12-02 04:35:31.247 00:05:10.008 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2528 1 2025-12-02 04:39:57.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46082 1 80 1 2025-12-02 04:39:57.785 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35278 1 109 1 2025-12-02 04:39:57.775 00:00:00.000 UDP 28.104.0.1:35278 -> 198.28.0.2:53 1 64 1 2025-12-02 04:39:57.775 00:00:00.000 UDP 28.104.0.1:46082 -> 198.28.0.2:53 1 64 1 2025-12-02 04:40:55.890 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:40:58.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36850 1 80 1 2025-12-02 04:40:58.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34778 1 109 1 2025-12-02 04:40:58.046 00:00:00.000 UDP 28.104.0.1:34778 -> 198.28.0.2:53 1 64 1 2025-12-02 04:40:58.046 00:00:00.000 UDP 28.104.0.1:36850 -> 198.28.0.2:53 1 64 1 2025-12-02 04:37:06.671 00:05:08.836 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:37:06.631 00:05:08.720 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:37:06.620 00:05:08.741 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:41:58.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41865 1 80 1 2025-12-02 04:41:58.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35040 1 109 1 2025-12-02 04:41:58.300 00:00:00.000 UDP 28.104.0.1:35040 -> 198.28.0.2:53 1 64 1 2025-12-02 04:41:58.300 00:00:00.000 UDP 28.104.0.1:41865 -> 198.28.0.2:53 1 64 1 2025-12-02 04:38:06.619 00:05:08.897 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:42:58.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33576 1 80 1 2025-12-02 04:42:58.602 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45183 1 109 1 2025-12-02 04:42:58.592 00:00:00.000 UDP 28.104.0.1:45183 -> 198.28.0.2:53 1 64 1 2025-12-02 04:42:58.593 00:00:00.000 UDP 28.104.0.1:33576 -> 198.28.0.2:53 1 64 1 2025-12-02 04:39:15.351 00:05:00.749 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:43:58.886 00:00:00.000 UDP 28.104.0.1:40440 -> 198.28.0.2:53 1 64 1 2025-12-02 04:43:58.886 00:00:00.000 UDP 28.104.0.1:52040 -> 198.28.0.2:53 1 64 1 2025-12-02 04:43:58.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40440 1 109 1 2025-12-02 04:43:58.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52040 1 80 1 2025-12-02 04:44:59.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45308 1 80 1 2025-12-02 04:40:51.255 00:05:10.013 OSPF 28.0.2.1:0 -> 224.0.0.5:0 34 2444 1 2025-12-02 04:44:59.217 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56168 1 109 1 2025-12-02 04:44:59.207 00:00:00.000 UDP 28.104.0.1:56168 -> 198.28.0.2:53 1 64 1 2025-12-02 04:44:59.208 00:00:00.000 UDP 28.104.0.1:45308 -> 198.28.0.2:53 1 64 1 2025-12-02 04:40:15.351 00:06:00.466 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:45:55.994 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:45:59.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41396 1 109 1 2025-12-02 04:45:59.473 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41747 1 80 1 2025-12-02 04:45:59.465 00:00:00.000 UDP 28.104.0.1:41396 -> 198.28.0.2:53 1 64 1 2025-12-02 04:45:59.464 00:00:00.000 UDP 28.104.0.1:41747 -> 198.28.0.2:53 1 64 1 2025-12-02 04:46:59.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42495 1 80 1 2025-12-02 04:46:59.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36098 1 109 1 2025-12-02 04:46:59.765 00:00:00.000 UDP 28.104.0.1:36098 -> 198.28.0.2:53 1 64 1 2025-12-02 04:46:59.765 00:00:00.000 UDP 28.104.0.1:42495 -> 198.28.0.2:53 1 64 1 2025-12-02 04:43:06.625 00:05:08.739 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:43:06.676 00:05:08.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:43:06.636 00:05:08.719 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:48:00.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40076 1 109 1 2025-12-02 04:48:00.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38388 1 80 1 2025-12-02 04:48:00.070 00:00:00.000 UDP 28.104.0.1:40076 -> 198.28.0.2:53 1 64 1 2025-12-02 04:48:00.070 00:00:00.000 UDP 28.104.0.1:38388 -> 198.28.0.2:53 1 64 1 2025-12-02 04:44:06.625 00:05:08.895 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:49:00.587 00:00:00.000 UDP 28.104.0.1:34732 -> 198.28.0.2:53 1 64 1 2025-12-02 04:49:00.588 00:00:00.000 UDP 28.104.0.1:57478 -> 198.28.0.2:53 1 64 1 2025-12-02 04:49:00.596 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34732 1 80 1 2025-12-02 04:49:00.597 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57478 1 109 1 2025-12-02 04:45:15.355 00:05:00.748 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:50:00.883 00:00:00.000 UDP 28.104.0.1:42612 -> 198.28.0.2:53 1 64 1 2025-12-02 04:50:00.883 00:00:00.000 UDP 28.104.0.1:36379 -> 198.28.0.2:53 1 64 1 2025-12-02 04:50:00.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36379 1 80 1 2025-12-02 04:50:00.893 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42612 1 109 1 2025-12-02 04:46:11.267 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 43 3064 1 2025-12-02 04:50:56.003 00:00:00.020 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:51:01.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56199 1 109 1 2025-12-02 04:51:01.190 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44553 1 80 1 2025-12-02 04:51:01.181 00:00:00.000 UDP 28.104.0.1:56199 -> 198.28.0.2:53 1 64 1 2025-12-02 04:51:01.181 00:00:00.000 UDP 28.104.0.1:44553 -> 198.28.0.2:53 1 64 1 2025-12-02 04:52:01.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43668 1 80 1 2025-12-02 04:52:01.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44357 1 109 1 2025-12-02 04:52:01.469 00:00:00.000 UDP 28.104.0.1:43668 -> 198.28.0.2:53 1 64 1 2025-12-02 04:52:01.469 00:00:00.000 UDP 28.104.0.1:44357 -> 198.28.0.2:53 1 64 1 2025-12-02 04:47:15.355 00:06:00.467 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-12-02 04:53:01.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51739 1 80 1 2025-12-02 04:53:01.780 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60067 1 109 1 2025-12-02 04:53:01.769 00:00:00.000 UDP 28.104.0.1:60067 -> 198.28.0.2:53 1 64 1 2025-12-02 04:53:01.769 00:00:00.000 UDP 28.104.0.1:51739 -> 198.28.0.2:53 1 64 1 2025-12-02 04:49:06.676 00:05:08.836 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-02 04:49:06.636 00:05:08.720 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-02 04:49:06.625 00:05:08.740 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-02 04:54:02.074 00:00:00.000 UDP 28.104.0.1:49576 -> 198.28.0.2:53 1 64 1 2025-12-02 04:54:02.074 00:00:00.000 UDP 28.104.0.1:53905 -> 198.28.0.2:53 1 64 1 2025-12-02 04:54:02.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49576 1 109 1 2025-12-02 04:54:02.084 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53905 1 80 1 2025-12-02 04:50:06.625 00:05:08.896 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-02 04:55:02.325 00:00:00.000 UDP 28.104.0.1:43034 -> 198.28.0.2:53 1 64 1 2025-12-02 04:55:02.325 00:00:00.000 UDP 28.104.0.1:42091 -> 198.28.0.2:53 1 64 1 2025-12-02 04:55:02.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42091 1 109 1 2025-12-02 04:55:02.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43034 1 80 1 2025-12-02 04:51:15.356 00:05:00.749 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-02 04:51:31.277 00:05:10.502 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2800 1 2025-12-02 04:55:56.167 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-02 04:56:02.577 00:00:00.000 UDP 28.104.0.1:56399 -> 198.28.0.2:53 1 64 1 2025-12-02 04:56:02.578 00:00:00.000 UDP 28.104.0.1:37856 -> 198.28.0.2:53 1 64 1 2025-12-02 04:56:02.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37856 1 80 1 2025-12-02 04:56:02.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56399 1 109 1 2025-12-02 04:57:02.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43039 1 109 1 2025-12-02 04:57:02.881 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48582 1 80 1 2025-12-02 04:57:02.870 00:00:00.000 UDP 28.104.0.1:48582 -> 198.28.0.2:53 1 64 1 2025-12-02 04:57:02.870 00:00:00.000 UDP 28.104.0.1:43039 -> 198.28.0.2:53 1 64 1 2025-12-02 04:58:03.143 00:00:00.000 UDP 28.104.0.1:43080 -> 198.28.0.2:53 1 64 1 2025-12-02 04:58:03.143 00:00:00.000 UDP 28.104.0.1:49388 -> 198.28.0.2:53 1 64 1 2025-12-02 04:58:03.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49388 1 109 1 2025-12-02 04:58:03.153 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43080 1 80 1 Summary: total flows: 317, total bytes: 95695, total packets: 1412, avg bps: 202, avg pps: 0, avg bpp: 67 Time window: 2025-12-02 03:55:06 - 2025-12-02 04:58:03 Total flows processed: 317, passed: 317, Blocks skipped: 0, Bytes read: 33032 Sys: 0.0053s User: 0.0032s Wall: 0.0038s flows/second: 83638.1 Runtime: 0.0038s