Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-12-04 08:58:59.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49459 1 80 1 2025-12-04 08:58:59.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45388 1 109 1 2025-12-04 08:58:59.695 00:00:00.000 UDP 28.104.0.1:45388 -> 198.28.0.2:53 1 64 1 2025-12-04 08:58:59.695 00:00:00.000 UDP 28.104.0.1:49459 -> 198.28.0.2:53 1 64 1 2025-12-04 08:57:16.362 00:02:00.484 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 08:55:07.571 00:05:08.919 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:00:00.000 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59827 1 109 1 2025-12-04 08:59:59.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33963 1 80 1 2025-12-04 08:59:59.988 00:00:00.000 UDP 28.104.0.1:33963 -> 198.28.0.2:53 1 64 1 2025-12-04 08:59:59.988 00:00:00.000 UDP 28.104.0.1:59827 -> 198.28.0.2:53 1 64 1 2025-12-04 09:01:00.287 00:00:00.000 UDP 28.104.0.1:34294 -> 198.28.0.2:53 1 64 1 2025-12-04 09:01:00.287 00:00:00.000 UDP 28.104.0.1:32982 -> 198.28.0.2:53 1 64 1 2025-12-04 09:01:00.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34294 1 109 1 2025-12-04 09:01:00.298 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32982 1 80 1 2025-12-04 09:00:16.362 00:01:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:02:00.583 00:00:00.000 UDP 28.104.0.1:33165 -> 198.28.0.2:53 1 64 1 2025-12-04 09:02:00.583 00:00:00.000 UDP 28.104.0.1:47228 -> 198.28.0.2:53 1 64 1 2025-12-04 09:01:58.828 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:02:00.593 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33165 1 80 1 2025-12-04 09:02:00.593 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47228 1 109 1 2025-12-04 09:03:00.877 00:00:00.000 UDP 28.104.0.1:55844 -> 198.28.0.2:53 1 64 1 2025-12-04 09:03:00.878 00:00:00.000 UDP 28.104.0.1:51600 -> 198.28.0.2:53 1 64 1 2025-12-04 08:58:45.594 00:05:10.005 OSPF 28.0.2.1:0 -> 224.0.0.5:0 33 2240 1 2025-12-04 09:03:00.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55844 1 80 1 2025-12-04 09:03:00.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51600 1 109 1 2025-12-04 09:04:01.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47267 1 80 1 2025-12-04 09:04:01.198 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47206 1 109 1 2025-12-04 09:04:01.188 00:00:00.000 UDP 28.104.0.1:47206 -> 198.28.0.2:53 1 64 1 2025-12-04 09:04:01.188 00:00:00.000 UDP 28.104.0.1:47267 -> 198.28.0.2:53 1 64 1 2025-12-04 09:00:07.571 00:05:08.802 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:02:16.363 00:02:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:00:07.621 00:05:08.865 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:00:07.581 00:05:08.782 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:00:16.362 00:05:00.868 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:05:01.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34896 1 109 1 2025-12-04 09:05:01.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47851 1 80 1 2025-12-04 09:05:01.439 00:00:00.000 UDP 28.104.0.1:47851 -> 198.28.0.2:53 1 64 1 2025-12-04 09:05:01.439 00:00:00.000 UDP 28.104.0.1:34896 -> 198.28.0.2:53 1 64 1 2025-12-04 09:01:07.573 00:05:08.924 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:06:01.737 00:00:00.000 UDP 28.104.0.1:48744 -> 198.28.0.2:53 1 64 1 2025-12-04 09:06:01.738 00:00:00.000 UDP 28.104.0.1:59524 -> 198.28.0.2:53 1 64 1 2025-12-04 09:06:01.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59524 1 109 1 2025-12-04 09:06:01.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48744 1 80 1 2025-12-04 09:05:16.363 00:01:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:06:58.879 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:07:02.054 00:00:00.000 UDP 28.104.0.1:41401 -> 198.28.0.2:53 1 64 1 2025-12-04 09:07:02.055 00:00:00.000 UDP 28.104.0.1:52614 -> 198.28.0.2:53 1 64 1 2025-12-04 09:07:02.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52614 1 109 1 2025-12-04 09:07:02.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41401 1 80 1 2025-12-04 09:08:02.350 00:00:00.000 UDP 28.104.0.1:60673 -> 198.28.0.2:53 1 64 1 2025-12-04 09:08:02.350 00:00:00.000 UDP 28.104.0.1:47403 -> 198.28.0.2:53 1 64 1 2025-12-04 09:08:02.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47403 1 80 1 2025-12-04 09:08:02.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60673 1 109 1 2025-12-04 09:04:05.599 00:05:10.011 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2652 1 2025-12-04 09:09:02.647 00:00:00.000 UDP 28.104.0.1:50822 -> 198.28.0.2:53 1 64 1 2025-12-04 09:09:02.647 00:00:00.000 UDP 28.104.0.1:33087 -> 198.28.0.2:53 1 64 1 2025-12-04 09:09:02.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50822 1 109 1 2025-12-04 09:09:02.656 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33087 1 80 1 2025-12-04 09:07:16.363 00:02:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:10:02.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53769 1 80 1 2025-12-04 09:10:02.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37144 1 109 1 2025-12-04 09:10:02.898 00:00:00.000 UDP 28.104.0.1:53769 -> 198.28.0.2:53 1 64 1 2025-12-04 09:10:02.898 00:00:00.000 UDP 28.104.0.1:37144 -> 198.28.0.2:53 1 64 1 2025-12-04 09:06:07.622 00:05:08.864 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:06:07.582 00:05:08.781 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:06:16.364 00:05:00.871 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:06:07.572 00:05:08.802 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:11:03.199 00:00:00.000 UDP 28.104.0.1:43174 -> 198.28.0.2:53 1 64 1 2025-12-04 09:11:03.199 00:00:00.000 UDP 28.104.0.1:56197 -> 198.28.0.2:53 1 64 1 2025-12-04 09:11:03.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56197 1 109 1 2025-12-04 09:11:03.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43174 1 80 1 2025-12-04 09:10:16.363 00:01:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:07:07.574 00:05:08.925 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:11:59.358 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:12:03.492 00:00:00.000 UDP 28.104.0.1:37598 -> 198.28.0.2:53 1 64 1 2025-12-04 09:12:03.491 00:00:00.000 UDP 28.104.0.1:45757 -> 198.28.0.2:53 1 64 1 2025-12-04 09:12:03.502 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45757 1 109 1 2025-12-04 09:12:03.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37598 1 80 1 2025-12-04 09:13:03.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39757 1 109 1 2025-12-04 09:13:03.789 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52955 1 80 1 2025-12-04 09:13:03.779 00:00:00.000 UDP 28.104.0.1:52955 -> 198.28.0.2:53 1 64 1 2025-12-04 09:13:03.779 00:00:00.000 UDP 28.104.0.1:39757 -> 198.28.0.2:53 1 64 1 2025-12-04 09:09:16.502 00:05:09.111 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2852 1 2025-12-04 09:14:04.122 00:00:00.000 UDP 28.104.0.1:50344 -> 198.28.0.2:53 1 64 1 2025-12-04 09:14:04.122 00:00:00.000 UDP 28.104.0.1:38894 -> 198.28.0.2:53 1 64 1 2025-12-04 09:14:04.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50344 1 109 1 2025-12-04 09:14:04.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38894 1 80 1 2025-12-04 09:12:16.364 00:02:00.493 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:15:04.416 00:00:00.000 UDP 28.104.0.1:52036 -> 198.28.0.2:53 1 64 1 2025-12-04 09:15:04.415 00:00:00.000 UDP 28.104.0.1:58786 -> 198.28.0.2:53 1 64 1 2025-12-04 09:15:04.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58786 1 109 1 2025-12-04 09:15:04.425 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52036 1 80 1 2025-12-04 09:16:04.705 00:00:00.000 UDP 28.104.0.1:50946 -> 198.28.0.2:53 1 64 1 2025-12-04 09:16:04.705 00:00:00.000 UDP 28.104.0.1:53632 -> 198.28.0.2:53 1 64 1 2025-12-04 09:16:04.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50946 1 109 1 2025-12-04 09:16:04.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53632 1 80 1 2025-12-04 09:15:16.364 00:01:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:12:07.575 00:05:08.799 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:12:07.626 00:05:08.864 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:12:07.586 00:05:08.779 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:12:16.364 00:05:00.872 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:16:58.960 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:17:05.001 00:00:00.000 UDP 28.104.0.1:57418 -> 198.28.0.2:53 1 64 1 2025-12-04 09:17:05.001 00:00:00.000 UDP 28.104.0.1:44362 -> 198.28.0.2:53 1 64 1 2025-12-04 09:17:05.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57418 1 109 1 2025-12-04 09:17:05.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44362 1 80 1 2025-12-04 09:13:07.576 00:05:08.924 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:18:05.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59834 1 109 1 2025-12-04 09:18:05.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50432 1 80 1 2025-12-04 09:18:05.304 00:00:00.000 UDP 28.104.0.1:50432 -> 198.28.0.2:53 1 64 1 2025-12-04 09:18:05.304 00:00:00.000 UDP 28.104.0.1:59834 -> 198.28.0.2:53 1 64 1 2025-12-04 09:14:35.613 00:05:10.015 OSPF 28.0.2.1:0 -> 224.0.0.5:0 40 2752 1 2025-12-04 09:19:05.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37389 1 80 1 2025-12-04 09:19:05.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34015 1 109 1 2025-12-04 09:19:05.560 00:00:00.000 UDP 28.104.0.1:34015 -> 198.28.0.2:53 1 64 1 2025-12-04 09:19:05.560 00:00:00.000 UDP 28.104.0.1:37389 -> 198.28.0.2:53 1 64 1 2025-12-04 09:17:16.365 00:02:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:20:05.820 00:00:00.000 UDP 28.104.0.1:44447 -> 198.28.0.2:53 1 64 1 2025-12-04 09:20:05.820 00:00:00.000 UDP 28.104.0.1:46236 -> 198.28.0.2:53 1 64 1 2025-12-04 09:20:05.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46236 1 80 1 2025-12-04 09:20:05.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44447 1 109 1 2025-12-04 09:21:06.451 00:00:00.000 UDP 28.104.0.1:53405 -> 198.28.0.2:53 1 64 1 2025-12-04 09:21:06.451 00:00:00.000 UDP 28.104.0.1:39846 -> 198.28.0.2:53 1 64 1 2025-12-04 09:21:06.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39846 1 109 1 2025-12-04 09:21:06.462 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53405 1 80 1 2025-12-04 09:20:16.366 00:01:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:21:59.251 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:22:06.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53032 1 80 1 2025-12-04 09:22:06.752 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59501 1 109 1 2025-12-04 09:22:06.742 00:00:00.000 UDP 28.104.0.1:53032 -> 198.28.0.2:53 1 64 1 2025-12-04 09:22:06.741 00:00:00.000 UDP 28.104.0.1:59501 -> 198.28.0.2:53 1 64 1 2025-12-04 09:18:07.627 00:05:08.876 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:18:07.587 00:05:08.781 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:18:07.577 00:05:08.801 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:18:16.365 00:05:00.872 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:23:07.084 00:00:00.000 UDP 28.104.0.1:41351 -> 198.28.0.2:53 1 64 1 2025-12-04 09:23:07.084 00:00:00.000 UDP 28.104.0.1:57473 -> 198.28.0.2:53 1 64 1 2025-12-04 09:23:07.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57473 1 80 1 2025-12-04 09:23:07.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41351 1 109 1 2025-12-04 09:19:07.577 00:05:08.927 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:19:55.614 00:05:10.014 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2972 1 2025-12-04 09:24:07.383 00:00:00.000 UDP 28.104.0.1:50214 -> 198.28.0.2:53 1 64 1 2025-12-04 09:24:07.383 00:00:00.000 UDP 28.104.0.1:33503 -> 198.28.0.2:53 1 64 1 2025-12-04 09:24:07.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33503 1 109 1 2025-12-04 09:24:07.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50214 1 80 1 2025-12-04 09:22:16.367 00:02:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:25:08.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34699 1 80 1 2025-12-04 09:25:08.366 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48777 1 109 1 2025-12-04 09:25:08.355 00:00:00.000 UDP 28.104.0.1:48777 -> 198.28.0.2:53 1 64 1 2025-12-04 09:25:08.355 00:00:00.000 UDP 28.104.0.1:34699 -> 198.28.0.2:53 1 64 1 2025-12-04 09:26:08.603 00:00:00.000 UDP 28.104.0.1:51028 -> 198.28.0.2:53 1 64 1 2025-12-04 09:26:08.603 00:00:00.000 UDP 28.104.0.1:44635 -> 198.28.0.2:53 1 64 1 2025-12-04 09:26:08.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51028 1 109 1 2025-12-04 09:26:08.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44635 1 80 1 2025-12-04 09:25:16.368 00:01:00.484 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:26:59.028 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:27:08.858 00:00:00.000 UDP 28.104.0.1:36102 -> 198.28.0.2:53 1 64 1 2025-12-04 09:27:08.857 00:00:00.000 UDP 28.104.0.1:51495 -> 198.28.0.2:53 1 64 1 2025-12-04 09:27:08.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36102 1 109 1 2025-12-04 09:27:08.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51495 1 80 1 2025-12-04 09:28:09.170 00:00:00.000 UDP 28.104.0.1:59113 -> 198.28.0.2:53 1 64 1 2025-12-04 09:28:09.170 00:00:00.000 UDP 28.104.0.1:52462 -> 198.28.0.2:53 1 64 1 2025-12-04 09:28:09.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59113 1 109 1 2025-12-04 09:28:09.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52462 1 80 1 2025-12-04 09:24:07.585 00:05:08.793 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:27:16.368 00:01:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:24:07.635 00:05:08.859 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:24:07.595 00:05:08.773 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:24:16.367 00:05:00.872 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:29:09.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56723 1 109 1 2025-12-04 09:29:09.478 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59732 1 80 1 2025-12-04 09:29:09.467 00:00:00.000 UDP 28.104.0.1:56723 -> 198.28.0.2:53 1 64 1 2025-12-04 09:29:09.467 00:00:00.000 UDP 28.104.0.1:59732 -> 198.28.0.2:53 1 64 1 2025-12-04 09:25:07.584 00:05:08.919 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:25:15.628 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2620 1 2025-12-04 09:30:09.763 00:00:00.000 UDP 28.104.0.1:39278 -> 198.28.0.2:53 1 64 1 2025-12-04 09:30:09.763 00:00:00.000 UDP 28.104.0.1:48183 -> 198.28.0.2:53 1 64 1 2025-12-04 09:30:09.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39278 1 80 1 2025-12-04 09:30:09.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48183 1 109 1 2025-12-04 09:31:10.059 00:00:00.000 UDP 28.104.0.1:34222 -> 198.28.0.2:53 1 64 1 2025-12-04 09:31:10.059 00:00:00.000 UDP 28.104.0.1:39631 -> 198.28.0.2:53 1 64 1 2025-12-04 09:31:10.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39631 1 80 1 2025-12-04 09:31:10.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34222 1 109 1 2025-12-04 09:29:16.368 00:02:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:31:59.345 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:32:10.312 00:00:00.000 UDP 28.104.0.1:51418 -> 198.28.0.2:53 1 64 1 2025-12-04 09:32:10.312 00:00:00.000 UDP 28.104.0.1:43140 -> 198.28.0.2:53 1 64 1 2025-12-04 09:32:10.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51418 1 109 1 2025-12-04 09:32:10.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43140 1 80 1 2025-12-04 09:33:10.617 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35065 1 80 1 2025-12-04 09:33:10.617 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42973 1 109 1 2025-12-04 09:33:10.606 00:00:00.000 UDP 28.104.0.1:42973 -> 198.28.0.2:53 1 64 1 2025-12-04 09:33:10.606 00:00:00.000 UDP 28.104.0.1:35065 -> 198.28.0.2:53 1 64 1 2025-12-04 09:32:16.368 00:01:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:34:16.141 00:00:00.000 UDP 28.104.0.1:51383 -> 198.28.0.2:53 1 64 1 2025-12-04 09:34:16.142 00:00:00.000 UDP 28.104.0.1:45916 -> 198.28.0.2:53 1 64 1 2025-12-04 09:30:07.597 00:05:08.772 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:34:16.152 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45916 1 109 1 2025-12-04 09:34:16.151 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51383 1 80 1 2025-12-04 09:30:07.586 00:05:08.793 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:30:07.636 00:05:08.866 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:30:16.369 00:05:00.872 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:30:35.630 00:05:10.009 OSPF 28.0.2.1:0 -> 224.0.0.5:0 37 2668 1 2025-12-04 09:35:16.433 00:00:00.000 UDP 28.104.0.1:35963 -> 198.28.0.2:53 1 64 1 2025-12-04 09:35:16.433 00:00:00.000 UDP 28.104.0.1:35364 -> 198.28.0.2:53 1 64 1 2025-12-04 09:35:16.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35364 1 80 1 2025-12-04 09:35:16.443 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35963 1 109 1 2025-12-04 09:31:07.586 00:05:08.927 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:34:16.370 00:02:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:36:17.334 00:00:00.000 UDP 28.104.0.1:52160 -> 198.28.0.2:53 1 64 1 2025-12-04 09:36:17.334 00:00:00.000 UDP 28.104.0.1:45241 -> 198.28.0.2:53 1 64 1 2025-12-04 09:36:17.343 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52160 1 80 1 2025-12-04 09:36:17.343 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45241 1 109 1 2025-12-04 09:36:59.426 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:37:17.633 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51378 1 109 1 2025-12-04 09:37:17.633 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57493 1 80 1 2025-12-04 09:37:17.623 00:00:00.000 UDP 28.104.0.1:57493 -> 198.28.0.2:53 1 64 1 2025-12-04 09:37:17.623 00:00:00.000 UDP 28.104.0.1:51378 -> 198.28.0.2:53 1 64 1 2025-12-04 09:37:16.370 00:01:00.496 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:38:17.915 00:00:00.000 UDP 28.104.0.1:39461 -> 198.28.0.2:53 1 64 1 2025-12-04 09:38:17.915 00:00:00.000 UDP 28.104.0.1:51940 -> 198.28.0.2:53 1 64 1 2025-12-04 09:38:17.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51940 1 109 1 2025-12-04 09:38:17.927 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39461 1 80 1 2025-12-04 09:39:18.178 00:00:00.000 UDP 28.104.0.1:57593 -> 198.28.0.2:53 1 64 1 2025-12-04 09:39:18.178 00:00:00.000 UDP 28.104.0.1:48346 -> 198.28.0.2:53 1 64 1 2025-12-04 09:39:18.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48346 1 80 1 2025-12-04 09:39:18.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57593 1 109 1 2025-12-04 09:35:55.640 00:05:10.004 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2632 1 2025-12-04 09:36:07.591 00:05:08.794 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:36:07.641 00:05:08.862 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:36:07.601 00:05:08.774 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:40:18.472 00:00:00.000 UDP 28.104.0.1:40454 -> 198.28.0.2:53 1 64 1 2025-12-04 09:36:16.369 00:05:00.879 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:40:18.473 00:00:00.000 UDP 28.104.0.1:57081 -> 198.28.0.2:53 1 64 1 2025-12-04 09:40:18.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40454 1 80 1 2025-12-04 09:40:18.482 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57081 1 109 1 2025-12-04 09:39:16.369 00:02:00.497 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:41:18.763 00:00:00.000 UDP 28.104.0.1:59939 -> 198.28.0.2:53 1 64 1 2025-12-04 09:41:18.763 00:00:00.000 UDP 28.104.0.1:51928 -> 198.28.0.2:53 1 64 1 2025-12-04 09:37:07.592 00:05:08.924 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:41:18.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59939 1 109 1 2025-12-04 09:41:18.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51928 1 80 1 2025-12-04 09:41:59.554 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:42:19.076 00:00:00.000 UDP 28.104.0.1:33349 -> 198.28.0.2:53 1 64 1 2025-12-04 09:42:19.076 00:00:00.000 UDP 28.104.0.1:59146 -> 198.28.0.2:53 1 64 1 2025-12-04 09:42:19.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59146 1 109 1 2025-12-04 09:42:19.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33349 1 80 1 2025-12-04 09:42:16.381 00:01:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:43:19.333 00:00:00.000 UDP 28.104.0.1:59138 -> 198.28.0.2:53 1 64 1 2025-12-04 09:43:19.332 00:00:00.000 UDP 28.104.0.1:53051 -> 198.28.0.2:53 1 64 1 2025-12-04 09:43:19.343 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53051 1 109 1 2025-12-04 09:43:19.343 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59138 1 80 1 2025-12-04 09:44:19.589 00:00:00.000 UDP 28.104.0.1:58449 -> 198.28.0.2:53 1 64 1 2025-12-04 09:44:19.589 00:00:00.000 UDP 28.104.0.1:43835 -> 198.28.0.2:53 1 64 1 2025-12-04 09:44:19.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58449 1 80 1 2025-12-04 09:44:19.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43835 1 109 1 2025-12-04 09:45:19.895 00:00:00.000 UDP 28.104.0.1:38732 -> 198.28.0.2:53 1 64 1 2025-12-04 09:45:19.895 00:00:00.000 UDP 28.104.0.1:56359 -> 198.28.0.2:53 1 64 1 2025-12-04 09:45:19.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56359 1 80 1 2025-12-04 09:45:19.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38732 1 109 1 2025-12-04 09:41:15.645 00:05:10.002 OSPF 28.0.2.1:0 -> 224.0.0.5:0 38 2688 1 2025-12-04 09:44:16.381 00:02:00.493 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:42:07.590 00:05:08.801 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:46:20.168 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35326 1 109 1 2025-12-04 09:46:20.168 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38957 1 80 1 2025-12-04 09:42:07.640 00:05:08.865 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:42:07.600 00:05:08.781 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:46:20.158 00:00:00.000 UDP 28.104.0.1:38957 -> 198.28.0.2:53 1 64 1 2025-12-04 09:42:16.380 00:05:00.869 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:46:20.158 00:00:00.000 UDP 28.104.0.1:35326 -> 198.28.0.2:53 1 64 1 2025-12-04 09:46:59.757 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:43:07.591 00:05:08.925 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:47:20.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59245 1 80 1 2025-12-04 09:47:20.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44727 1 109 1 2025-12-04 09:47:20.418 00:00:00.000 UDP 28.104.0.1:44727 -> 198.28.0.2:53 1 64 1 2025-12-04 09:47:20.419 00:00:00.000 UDP 28.104.0.1:59245 -> 198.28.0.2:53 1 64 1 2025-12-04 09:47:16.382 00:01:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:48:20.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47652 1 109 1 2025-12-04 09:48:20.717 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46801 1 80 1 2025-12-04 09:48:20.707 00:00:00.000 UDP 28.104.0.1:46801 -> 198.28.0.2:53 1 64 1 2025-12-04 09:48:20.707 00:00:00.000 UDP 28.104.0.1:47652 -> 198.28.0.2:53 1 64 1 2025-12-04 09:49:21.001 00:00:00.000 UDP 28.104.0.1:48866 -> 198.28.0.2:53 1 64 1 2025-12-04 09:49:21.001 00:00:00.000 UDP 28.104.0.1:38553 -> 198.28.0.2:53 1 64 1 2025-12-04 09:49:21.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38553 1 80 1 2025-12-04 09:49:21.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48866 1 109 1 2025-12-04 09:50:21.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60951 1 80 1 2025-12-04 09:50:21.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42166 1 109 1 2025-12-04 09:50:21.302 00:00:00.000 UDP 28.104.0.1:42166 -> 198.28.0.2:53 1 64 1 2025-12-04 09:50:21.302 00:00:00.000 UDP 28.104.0.1:60951 -> 198.28.0.2:53 1 64 1 2025-12-04 09:46:35.646 00:05:00.463 OSPF 28.0.2.1:0 -> 224.0.0.5:0 41 2948 1 2025-12-04 09:49:16.383 00:02:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:51:21.551 00:00:00.000 UDP 28.104.0.1:37937 -> 198.28.0.2:53 1 64 1 2025-12-04 09:51:21.551 00:00:00.000 UDP 28.104.0.1:53486 -> 198.28.0.2:53 1 64 1 2025-12-04 09:51:21.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37937 1 80 1 2025-12-04 09:51:21.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53486 1 109 1 2025-12-04 09:51:59.659 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:48:07.643 00:05:08.863 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:48:07.603 00:05:08.778 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:52:21.850 00:00:00.000 UDP 28.104.0.1:58526 -> 198.28.0.2:53 1 64 1 2025-12-04 09:52:21.850 00:00:00.000 UDP 28.104.0.1:32805 -> 198.28.0.2:53 1 64 1 2025-12-04 09:48:16.382 00:05:00.868 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:48:07.594 00:05:08.798 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:52:21.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58526 1 109 1 2025-12-04 09:52:21.861 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32805 1 80 1 2025-12-04 09:52:16.383 00:01:00.485 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:49:07.595 00:05:08.923 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-12-04 09:53:22.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53651 1 80 1 2025-12-04 09:53:22.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43461 1 109 1 2025-12-04 09:53:22.169 00:00:00.000 UDP 28.104.0.1:53651 -> 198.28.0.2:53 1 64 1 2025-12-04 09:53:22.169 00:00:00.000 UDP 28.104.0.1:43461 -> 198.28.0.2:53 1 64 1 2025-12-04 09:54:22.511 00:00:00.000 UDP 28.104.0.1:35317 -> 198.28.0.2:53 1 64 1 2025-12-04 09:54:22.511 00:00:00.000 UDP 28.104.0.1:55046 -> 198.28.0.2:53 1 64 1 2025-12-04 09:54:22.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35317 1 109 1 2025-12-04 09:54:22.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55046 1 80 1 2025-12-04 09:55:22.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52984 1 80 1 2025-12-04 09:55:22.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43964 1 109 1 2025-12-04 09:55:22.811 00:00:00.000 UDP 28.104.0.1:52984 -> 198.28.0.2:53 1 64 1 2025-12-04 09:55:22.811 00:00:00.000 UDP 28.104.0.1:43964 -> 198.28.0.2:53 1 64 1 2025-12-04 09:51:45.652 00:05:10.019 OSPF 28.0.2.1:0 -> 224.0.0.5:0 39 2752 1 2025-12-04 09:54:16.383 00:02:00.486 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-12-04 09:56:23.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56365 1 80 1 2025-12-04 09:56:23.115 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45150 1 109 1 2025-12-04 09:56:23.105 00:00:00.000 UDP 28.104.0.1:56365 -> 198.28.0.2:53 1 64 1 2025-12-04 09:56:23.105 00:00:00.000 UDP 28.104.0.1:45150 -> 198.28.0.2:53 1 64 1 2025-12-04 09:57:00.038 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-12-04 09:57:23.402 00:00:00.000 UDP 28.104.0.1:44012 -> 198.28.0.2:53 1 64 1 2025-12-04 09:57:23.402 00:00:00.000 UDP 28.104.0.1:33228 -> 198.28.0.2:53 1 64 1 2025-12-04 09:57:23.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44012 1 80 1 2025-12-04 09:57:23.412 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33228 1 109 1 2025-12-04 09:54:07.594 00:05:08.799 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-12-04 09:57:16.383 00:01:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-12-04 09:58:23.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41805 1 109 1 2025-12-04 09:58:23.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58533 1 80 1 2025-12-04 09:54:07.645 00:05:08.862 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-12-04 09:54:07.604 00:05:08.779 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-12-04 09:54:16.382 00:05:00.871 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-12-04 09:58:23.697 00:00:00.000 UDP 28.104.0.1:58533 -> 198.28.0.2:53 1 64 1 2025-12-04 09:58:23.697 00:00:00.000 UDP 28.104.0.1:41805 -> 198.28.0.2:53 1 64 1 Summary: total flows: 338, total bytes: 96346, total packets: 1421, avg bps: 200, avg pps: 0, avg bpp: 67 Time window: 2025-12-04 08:55:07 - 2025-12-04 09:59:17 Total flows processed: 338, passed: 338, Blocks skipped: 0, Bytes read: 35216 Sys: 0.0037s User: 0.0037s Wall: 0.0041s flows/second: 81484.9 Runtime: 0.0042s