Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-13 01:58:58.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49117 1 80 1 2025-08-13 01:58:58.777 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52577 1 109 1 2025-08-13 01:58:58.766 00:00:00.000 UDP 28.104.0.1:49117 -> 198.28.0.2:53 1 64 1 2025-08-13 01:58:58.766 00:00:00.000 UDP 28.104.0.1:52577 -> 198.28.0.2:53 1 64 1 2025-08-13 01:55:11.515 00:05:01.433 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 01:59:59.074 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56640 1 109 1 2025-08-13 01:59:59.074 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49718 1 80 1 2025-08-13 01:59:59.064 00:00:00.000 UDP 28.104.0.1:49718 -> 198.28.0.2:53 1 64 1 2025-08-13 01:59:59.064 00:00:00.000 UDP 28.104.0.1:56640 -> 198.28.0.2:53 1 64 1 2025-08-13 01:56:11.466 00:05:01.493 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:00:59.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49201 1 80 1 2025-08-13 02:00:59.369 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56093 1 109 1 2025-08-13 02:00:59.358 00:00:00.000 UDP 28.104.0.1:56093 -> 198.28.0.2:53 1 64 1 2025-08-13 02:00:59.359 00:00:00.000 UDP 28.104.0.1:49201 -> 198.28.0.2:53 1 64 1 2025-08-13 02:01:59.652 00:00:00.000 UDP 28.104.0.1:35106 -> 198.28.0.2:53 1 64 1 2025-08-13 02:01:59.652 00:00:00.000 UDP 28.104.0.1:57699 -> 198.28.0.2:53 1 64 1 2025-08-13 02:01:59.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35106 1 109 1 2025-08-13 02:01:59.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57699 1 80 1 2025-08-13 01:58:11.476 00:05:01.650 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:02:17.255 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 01:58:29.890 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2544 1 2025-08-13 02:02:59.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38960 1 80 1 2025-08-13 02:02:59.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38726 1 109 1 2025-08-13 02:02:59.941 00:00:00.000 UDP 28.104.0.1:38960 -> 198.28.0.2:53 1 64 1 2025-08-13 02:02:59.941 00:00:00.000 UDP 28.104.0.1:38726 -> 198.28.0.2:53 1 64 1 2025-08-13 01:58:13.123 00:06:00.012 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 757 1 2025-08-13 02:04:00.249 00:00:00.000 UDP 28.104.0.1:45484 -> 198.28.0.2:53 1 64 1 2025-08-13 02:04:00.248 00:00:00.000 UDP 28.104.0.1:42862 -> 198.28.0.2:53 1 64 1 2025-08-13 02:04:00.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42862 1 80 1 2025-08-13 02:04:00.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45484 1 109 1 2025-08-13 02:00:11.466 00:05:01.671 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:05:00.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44474 1 109 1 2025-08-13 02:05:00.550 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47031 1 80 1 2025-08-13 02:05:00.540 00:00:00.000 UDP 28.104.0.1:47031 -> 198.28.0.2:53 1 64 1 2025-08-13 02:05:00.540 00:00:00.000 UDP 28.104.0.1:44474 -> 198.28.0.2:53 1 64 1 2025-08-13 02:00:13.009 00:06:00.118 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:01:11.517 00:05:01.432 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:06:00.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42329 1 109 1 2025-08-13 02:06:00.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47029 1 80 1 2025-08-13 02:06:00.841 00:00:00.000 UDP 28.104.0.1:47029 -> 198.28.0.2:53 1 64 1 2025-08-13 02:06:00.841 00:00:00.000 UDP 28.104.0.1:42329 -> 198.28.0.2:53 1 64 1 2025-08-13 02:02:11.466 00:05:01.493 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:07:01.169 00:00:00.000 UDP 28.104.0.1:39158 -> 198.28.0.2:53 1 64 1 2025-08-13 02:07:01.169 00:00:00.000 UDP 28.104.0.1:58426 -> 198.28.0.2:53 1 64 1 2025-08-13 02:07:01.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58426 1 80 1 2025-08-13 02:07:01.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39158 1 109 1 2025-08-13 02:07:13.009 00:00:00.118 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-08-13 02:05:13.127 00:02:00.009 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-08-13 02:07:17.460 00:00:00.026 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:08:01.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46202 1 109 1 2025-08-13 02:08:01.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33745 1 80 1 2025-08-13 02:08:01.425 00:00:00.000 UDP 28.104.0.1:46202 -> 198.28.0.2:53 1 64 1 2025-08-13 02:08:01.425 00:00:00.000 UDP 28.104.0.1:33745 -> 198.28.0.2:53 1 64 1 2025-08-13 02:03:49.895 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2712 1 2025-08-13 02:04:11.477 00:05:01.650 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:09:01.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59835 1 80 1 2025-08-13 02:09:01.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54947 1 109 1 2025-08-13 02:09:01.675 00:00:00.000 UDP 28.104.0.1:59835 -> 198.28.0.2:53 1 64 1 2025-08-13 02:09:01.675 00:00:00.000 UDP 28.104.0.1:54947 -> 198.28.0.2:53 1 64 1 2025-08-13 02:10:01.988 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45530 1 80 1 2025-08-13 02:10:01.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50316 1 109 1 2025-08-13 02:10:01.977 00:00:00.000 UDP 28.104.0.1:50316 -> 198.28.0.2:53 1 64 1 2025-08-13 02:10:01.977 00:00:00.000 UDP 28.104.0.1:45530 -> 198.28.0.2:53 1 64 1 2025-08-13 02:06:11.468 00:05:01.670 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:11:02.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36648 1 109 1 2025-08-13 02:11:02.297 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47894 1 80 1 2025-08-13 02:11:02.287 00:00:00.000 UDP 28.104.0.1:36648 -> 198.28.0.2:53 1 64 1 2025-08-13 02:11:02.287 00:00:00.000 UDP 28.104.0.1:47894 -> 198.28.0.2:53 1 64 1 2025-08-13 02:07:11.519 00:05:01.454 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:12:02.538 00:00:00.000 UDP 28.104.0.1:55397 -> 198.28.0.2:53 1 64 1 2025-08-13 02:12:02.538 00:00:00.000 UDP 28.104.0.1:57982 -> 198.28.0.2:53 1 64 1 2025-08-13 02:12:02.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55397 1 80 1 2025-08-13 02:12:02.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57982 1 109 1 2025-08-13 02:08:11.471 00:05:01.512 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:08:13.127 00:04:00.009 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:12:17.511 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:13:02.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43120 1 80 1 2025-08-13 02:13:02.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58314 1 109 1 2025-08-13 02:13:02.838 00:00:00.000 UDP 28.104.0.1:43120 -> 198.28.0.2:53 1 64 1 2025-08-13 02:13:02.838 00:00:00.000 UDP 28.104.0.1:58314 -> 198.28.0.2:53 1 64 1 2025-08-13 02:08:13.009 00:06:00.119 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:09:09.906 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2600 1 2025-08-13 02:14:03.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44500 1 80 1 2025-08-13 02:14:03.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49776 1 109 1 2025-08-13 02:14:03.132 00:00:00.000 UDP 28.104.0.1:49776 -> 198.28.0.2:53 1 64 1 2025-08-13 02:14:03.132 00:00:00.000 UDP 28.104.0.1:44500 -> 198.28.0.2:53 1 64 1 2025-08-13 02:10:11.480 00:05:01.649 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:15:03.429 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45485 1 80 1 2025-08-13 02:15:03.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58575 1 109 1 2025-08-13 02:15:03.419 00:00:00.000 UDP 28.104.0.1:45485 -> 198.28.0.2:53 1 64 1 2025-08-13 02:15:03.419 00:00:00.000 UDP 28.104.0.1:58575 -> 198.28.0.2:53 1 64 1 2025-08-13 02:16:03.716 00:00:00.000 UDP 28.104.0.1:59033 -> 198.28.0.2:53 1 64 1 2025-08-13 02:16:03.716 00:00:00.000 UDP 28.104.0.1:57186 -> 198.28.0.2:53 1 64 1 2025-08-13 02:16:03.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59033 1 109 1 2025-08-13 02:16:03.726 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57186 1 80 1 2025-08-13 02:12:11.470 00:05:01.669 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:17:04.041 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54424 1 80 1 2025-08-13 02:17:04.042 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42897 1 109 1 2025-08-13 02:17:04.029 00:00:00.000 UDP 28.104.0.1:54424 -> 198.28.0.2:53 1 64 1 2025-08-13 02:17:04.030 00:00:00.000 UDP 28.104.0.1:42897 -> 198.28.0.2:53 1 64 1 2025-08-13 02:13:11.521 00:05:01.457 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:13:13.129 00:04:00.008 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:17:17.765 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:18:04.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56973 1 109 1 2025-08-13 02:18:04.337 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33826 1 80 1 2025-08-13 02:18:04.328 00:00:00.000 UDP 28.104.0.1:33826 -> 198.28.0.2:53 1 64 1 2025-08-13 02:18:04.328 00:00:00.000 UDP 28.104.0.1:56973 -> 198.28.0.2:53 1 64 1 2025-08-13 02:14:11.473 00:05:01.517 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:14:29.917 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-08-13 02:19:04.627 00:00:00.000 UDP 28.104.0.1:36252 -> 198.28.0.2:53 1 64 1 2025-08-13 02:19:04.627 00:00:00.000 UDP 28.104.0.1:58853 -> 198.28.0.2:53 1 64 1 2025-08-13 02:19:04.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58853 1 80 1 2025-08-13 02:19:04.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36252 1 109 1 2025-08-13 02:18:13.129 00:01:00.008 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-08-13 02:20:08.105 00:00:00.000 UDP 28.104.0.1:55266 -> 198.28.0.2:53 1 64 1 2025-08-13 02:20:08.105 00:00:00.000 UDP 28.104.0.1:33486 -> 198.28.0.2:53 1 64 1 2025-08-13 02:20:08.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55266 1 80 1 2025-08-13 02:20:08.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33486 1 109 1 2025-08-13 02:15:13.012 00:06:00.118 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:16:11.483 00:05:01.647 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:21:08.356 00:00:00.000 UDP 28.104.0.1:52636 -> 198.28.0.2:53 1 64 1 2025-08-13 02:21:08.356 00:00:00.000 UDP 28.104.0.1:37274 -> 198.28.0.2:53 1 64 1 2025-08-13 02:21:08.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52636 1 80 1 2025-08-13 02:21:08.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37274 1 109 1 2025-08-13 02:22:08.655 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39562 1 109 1 2025-08-13 02:22:08.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56780 1 80 1 2025-08-13 02:22:08.645 00:00:00.000 UDP 28.104.0.1:56780 -> 198.28.0.2:53 1 64 1 2025-08-13 02:22:08.644 00:00:00.000 UDP 28.104.0.1:39562 -> 198.28.0.2:53 1 64 1 2025-08-13 02:18:11.474 00:05:01.666 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:22:17.684 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:23:08.956 00:00:00.000 UDP 28.104.0.1:40944 -> 198.28.0.2:53 1 64 1 2025-08-13 02:23:08.955 00:00:00.000 UDP 28.104.0.1:52885 -> 198.28.0.2:53 1 64 1 2025-08-13 02:23:08.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52885 1 80 1 2025-08-13 02:23:08.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40944 1 109 1 2025-08-13 02:19:11.525 00:05:01.457 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:19:49.925 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2856 1 2025-08-13 02:24:09.256 00:00:00.000 UDP 28.104.0.1:52938 -> 198.28.0.2:53 1 64 1 2025-08-13 02:24:09.256 00:00:00.000 UDP 28.104.0.1:53892 -> 198.28.0.2:53 1 64 1 2025-08-13 02:24:09.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53892 1 109 1 2025-08-13 02:20:11.473 00:05:01.517 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:24:09.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52938 1 80 1 2025-08-13 02:25:09.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35440 1 109 1 2025-08-13 02:25:09.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42032 1 80 1 2025-08-13 02:20:13.130 00:06:00.014 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-13 02:25:09.553 00:00:00.000 UDP 28.104.0.1:35440 -> 198.28.0.2:53 1 64 1 2025-08-13 02:25:09.553 00:00:00.000 UDP 28.104.0.1:42032 -> 198.28.0.2:53 1 64 1 2025-08-13 02:26:09.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54561 1 80 1 2025-08-13 02:26:09.817 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34749 1 109 1 2025-08-13 02:22:11.484 00:05:01.647 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:26:09.807 00:00:00.000 UDP 28.104.0.1:34749 -> 198.28.0.2:53 1 64 1 2025-08-13 02:26:09.807 00:00:00.000 UDP 28.104.0.1:54561 -> 198.28.0.2:53 1 64 1 2025-08-13 02:22:13.012 00:06:00.119 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:27:10.102 00:00:00.000 UDP 28.104.0.1:57839 -> 198.28.0.2:53 1 64 1 2025-08-13 02:27:10.102 00:00:00.000 UDP 28.104.0.1:51257 -> 198.28.0.2:53 1 64 1 2025-08-13 02:27:10.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57839 1 109 1 2025-08-13 02:27:10.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51257 1 80 1 2025-08-13 02:27:17.982 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:28:10.407 00:00:00.000 UDP 28.104.0.1:42467 -> 198.28.0.2:53 1 64 1 2025-08-13 02:28:10.407 00:00:00.000 UDP 28.104.0.1:41826 -> 198.28.0.2:53 1 64 1 2025-08-13 02:28:10.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42467 1 109 1 2025-08-13 02:28:10.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41826 1 80 1 2025-08-13 02:24:11.474 00:05:01.668 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:25:11.525 00:05:01.456 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:29:10.703 00:00:00.000 UDP 28.104.0.1:34671 -> 198.28.0.2:53 1 64 1 2025-08-13 02:29:10.703 00:00:00.000 UDP 28.104.0.1:44813 -> 198.28.0.2:53 1 64 1 2025-08-13 02:29:10.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44813 1 80 1 2025-08-13 02:29:10.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34671 1 109 1 2025-08-13 02:25:09.928 00:05:10.017 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-08-13 02:30:11.001 00:00:00.000 UDP 28.104.0.1:44409 -> 198.28.0.2:53 1 64 1 2025-08-13 02:30:11.002 00:00:00.000 UDP 28.104.0.1:35416 -> 198.28.0.2:53 1 64 1 2025-08-13 02:26:11.475 00:05:01.518 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:30:11.012 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44409 1 109 1 2025-08-13 02:30:11.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35416 1 80 1 2025-08-13 02:31:11.297 00:00:00.000 UDP 28.104.0.1:42284 -> 198.28.0.2:53 1 64 1 2025-08-13 02:29:13.017 00:02:00.116 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-08-13 02:31:11.297 00:00:00.000 UDP 28.104.0.1:42333 -> 198.28.0.2:53 1 64 1 2025-08-13 02:27:13.132 00:04:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:31:11.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42284 1 80 1 2025-08-13 02:31:11.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42333 1 109 1 2025-08-13 02:28:11.486 00:05:01.647 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:32:11.602 00:00:00.000 UDP 28.104.0.1:34686 -> 198.28.0.2:53 1 64 1 2025-08-13 02:32:11.602 00:00:00.000 UDP 28.104.0.1:59016 -> 198.28.0.2:53 1 64 1 2025-08-13 02:32:11.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59016 1 109 1 2025-08-13 02:32:11.612 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34686 1 80 1 2025-08-13 02:32:18.016 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:33:11.900 00:00:00.000 UDP 28.104.0.1:51832 -> 198.28.0.2:53 1 64 1 2025-08-13 02:33:11.900 00:00:00.000 UDP 28.104.0.1:58712 -> 198.28.0.2:53 1 64 1 2025-08-13 02:33:11.911 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51832 1 109 1 2025-08-13 02:33:11.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58712 1 80 1 2025-08-13 02:34:12.168 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54326 1 109 1 2025-08-13 02:30:11.478 00:05:01.665 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:34:12.168 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41411 1 80 1 2025-08-13 02:34:12.159 00:00:00.000 UDP 28.104.0.1:41411 -> 198.28.0.2:53 1 64 1 2025-08-13 02:34:12.159 00:00:00.000 UDP 28.104.0.1:54326 -> 198.28.0.2:53 1 64 1 2025-08-13 02:30:29.946 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2608 1 2025-08-13 02:35:12.465 00:00:00.000 UDP 28.104.0.1:44944 -> 198.28.0.2:53 1 64 1 2025-08-13 02:31:11.529 00:05:01.458 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:35:12.465 00:00:00.000 UDP 28.104.0.1:48220 -> 198.28.0.2:53 1 64 1 2025-08-13 02:35:12.476 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44944 1 109 1 2025-08-13 02:35:12.476 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48220 1 80 1 2025-08-13 02:36:12.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51343 1 109 1 2025-08-13 02:32:11.478 00:05:01.519 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:36:12.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60673 1 80 1 2025-08-13 02:36:12.766 00:00:00.000 UDP 28.104.0.1:51343 -> 198.28.0.2:53 1 64 1 2025-08-13 02:32:13.133 00:04:00.013 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:36:12.766 00:00:00.000 UDP 28.104.0.1:60673 -> 198.28.0.2:53 1 64 1 2025-08-13 02:32:13.019 00:06:00.117 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:37:13.080 00:00:00.000 UDP 28.104.0.1:36887 -> 198.28.0.2:53 1 64 1 2025-08-13 02:37:13.080 00:00:00.000 UDP 28.104.0.1:46328 -> 198.28.0.2:53 1 64 1 2025-08-13 02:37:13.091 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46328 1 109 1 2025-08-13 02:37:13.091 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36887 1 80 1 2025-08-13 02:37:17.744 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:38:13.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38352 1 109 1 2025-08-13 02:38:13.388 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38386 1 80 1 2025-08-13 02:34:11.489 00:05:01.647 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:38:13.378 00:00:00.000 UDP 28.104.0.1:38386 -> 198.28.0.2:53 1 64 1 2025-08-13 02:38:13.378 00:00:00.000 UDP 28.104.0.1:38352 -> 198.28.0.2:53 1 64 1 2025-08-13 02:39:13.667 00:00:00.000 UDP 28.104.0.1:39484 -> 198.28.0.2:53 1 64 1 2025-08-13 02:39:13.667 00:00:00.000 UDP 28.104.0.1:52841 -> 198.28.0.2:53 1 64 1 2025-08-13 02:39:13.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52841 1 109 1 2025-08-13 02:39:13.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39484 1 80 1 2025-08-13 02:35:49.956 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2600 1 2025-08-13 02:40:13.922 00:00:00.000 UDP 28.104.0.1:39021 -> 198.28.0.2:53 1 64 1 2025-08-13 02:40:13.922 00:00:00.000 UDP 28.104.0.1:49308 -> 198.28.0.2:53 1 64 1 2025-08-13 02:40:13.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49308 1 109 1 2025-08-13 02:36:11.480 00:05:01.666 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:40:13.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39021 1 80 1 2025-08-13 02:37:11.530 00:05:01.457 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:37:13.135 00:04:00.015 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:41:14.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51455 1 80 1 2025-08-13 02:41:14.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51593 1 109 1 2025-08-13 02:41:14.243 00:00:00.000 UDP 28.104.0.1:51593 -> 198.28.0.2:53 1 64 1 2025-08-13 02:41:14.243 00:00:00.000 UDP 28.104.0.1:51455 -> 198.28.0.2:53 1 64 1 2025-08-13 02:38:11.479 00:05:01.518 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:42:14.534 00:00:00.000 UDP 28.104.0.1:49904 -> 198.28.0.2:53 1 64 1 2025-08-13 02:42:14.534 00:00:00.000 UDP 28.104.0.1:44660 -> 198.28.0.2:53 1 64 1 2025-08-13 02:42:18.117 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:42:14.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49904 1 80 1 2025-08-13 02:42:14.545 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44660 1 109 1 2025-08-13 02:43:14.822 00:00:00.000 UDP 28.104.0.1:55191 -> 198.28.0.2:53 1 64 1 2025-08-13 02:43:14.822 00:00:00.000 UDP 28.104.0.1:55142 -> 198.28.0.2:53 1 64 1 2025-08-13 02:43:14.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55191 1 80 1 2025-08-13 02:43:14.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55142 1 109 1 2025-08-13 02:39:13.025 00:06:00.111 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-13 02:40:11.490 00:05:01.646 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:44:15.121 00:00:00.000 UDP 28.104.0.1:34635 -> 198.28.0.2:53 1 64 1 2025-08-13 02:44:15.121 00:00:00.000 UDP 28.104.0.1:33248 -> 198.28.0.2:53 1 64 1 2025-08-13 02:44:15.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33248 1 80 1 2025-08-13 02:44:15.131 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34635 1 109 1 2025-08-13 02:45:15.631 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40419 1 109 1 2025-08-13 02:45:15.631 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56655 1 80 1 2025-08-13 02:45:15.621 00:00:00.000 UDP 28.104.0.1:56655 -> 198.28.0.2:53 1 64 1 2025-08-13 02:45:15.621 00:00:00.000 UDP 28.104.0.1:40419 -> 198.28.0.2:53 1 64 1 2025-08-13 02:41:09.961 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2616 1 2025-08-13 02:42:11.480 00:05:01.667 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:42:13.136 00:04:00.028 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:46:15.919 00:00:00.000 UDP 28.104.0.1:50781 -> 198.28.0.2:53 1 64 1 2025-08-13 02:46:15.919 00:00:00.000 UDP 28.104.0.1:33751 -> 198.28.0.2:53 1 64 1 2025-08-13 02:46:15.929 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50781 1 80 1 2025-08-13 02:46:15.928 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33751 1 109 1 2025-08-13 02:43:11.531 00:05:01.464 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:47:16.194 00:00:00.000 UDP 28.104.0.1:54426 -> 198.28.0.2:53 1 64 1 2025-08-13 02:47:16.194 00:00:00.000 UDP 28.104.0.1:59562 -> 198.28.0.2:53 1 64 1 2025-08-13 02:47:18.073 00:00:00.047 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:47:16.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54426 1 109 1 2025-08-13 02:47:16.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59562 1 80 1 2025-08-13 02:44:11.481 00:05:01.522 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:48:16.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54400 1 109 1 2025-08-13 02:48:16.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36747 1 80 1 2025-08-13 02:48:16.494 00:00:00.000 UDP 28.104.0.1:54400 -> 198.28.0.2:53 1 64 1 2025-08-13 02:48:16.494 00:00:00.000 UDP 28.104.0.1:36747 -> 198.28.0.2:53 1 64 1 2025-08-13 02:49:16.747 00:00:00.000 UDP 28.104.0.1:45866 -> 198.28.0.2:53 1 64 1 2025-08-13 02:49:16.747 00:00:00.000 UDP 28.104.0.1:52595 -> 198.28.0.2:53 1 64 1 2025-08-13 02:49:16.758 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52595 1 80 1 2025-08-13 02:49:16.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45866 1 109 1 2025-08-13 02:46:11.492 00:05:01.647 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:50:17.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45756 1 109 1 2025-08-13 02:50:17.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46180 1 80 1 2025-08-13 02:50:17.058 00:00:00.000 UDP 28.104.0.1:45756 -> 198.28.0.2:53 1 64 1 2025-08-13 02:50:17.058 00:00:00.000 UDP 28.104.0.1:46180 -> 198.28.0.2:53 1 64 1 2025-08-13 02:46:29.966 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2688 1 2025-08-13 02:47:13.138 00:04:00.016 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-08-13 02:46:13.029 00:06:00.006 TCP 28.154.0.1:179 -> 28.157.0.1:37077 13 790 1 2025-08-13 02:51:17.356 00:00:00.000 UDP 28.104.0.1:58398 -> 198.28.0.2:53 1 64 1 2025-08-13 02:51:17.356 00:00:00.000 UDP 28.104.0.1:33919 -> 198.28.0.2:53 1 64 1 2025-08-13 02:51:17.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33919 1 80 1 2025-08-13 02:51:17.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58398 1 109 1 2025-08-13 02:48:11.482 00:05:01.666 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:52:18.064 00:00:00.033 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:52:17.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48308 1 80 1 2025-08-13 02:52:17.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43096 1 109 1 2025-08-13 02:52:17.664 00:00:00.000 UDP 28.104.0.1:48308 -> 198.28.0.2:53 1 64 1 2025-08-13 02:52:17.664 00:00:00.000 UDP 28.104.0.1:43096 -> 198.28.0.2:53 1 64 1 2025-08-13 02:49:11.533 00:05:01.460 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-13 02:53:17.926 00:00:00.000 UDP 28.104.0.1:55626 -> 198.28.0.2:53 1 64 1 2025-08-13 02:53:17.926 00:00:00.000 UDP 28.104.0.1:34936 -> 198.28.0.2:53 1 64 1 2025-08-13 02:53:17.935 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34936 1 109 1 2025-08-13 02:53:17.936 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55626 1 80 1 2025-08-13 02:50:11.482 00:05:01.523 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-13 02:54:18.238 00:00:00.000 UDP 28.104.0.1:37099 -> 198.28.0.2:53 1 64 1 2025-08-13 02:54:18.238 00:00:00.000 UDP 28.104.0.1:44387 -> 198.28.0.2:53 1 64 1 2025-08-13 02:54:18.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37099 1 80 1 2025-08-13 02:54:18.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44387 1 109 1 2025-08-13 02:55:18.539 00:00:00.000 UDP 28.104.0.1:43281 -> 198.28.0.2:53 1 64 1 2025-08-13 02:55:18.539 00:00:00.000 UDP 28.104.0.1:42117 -> 198.28.0.2:53 1 64 1 2025-08-13 02:55:18.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42117 1 109 1 2025-08-13 02:55:18.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43281 1 80 1 2025-08-13 02:51:49.969 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-08-13 02:52:11.492 00:05:01.646 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-13 02:56:18.841 00:00:00.000 UDP 28.104.0.1:59259 -> 198.28.0.2:53 1 64 1 2025-08-13 02:56:18.842 00:00:00.000 UDP 28.104.0.1:46189 -> 198.28.0.2:53 1 64 1 2025-08-13 02:56:18.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59259 1 109 1 2025-08-13 02:56:18.853 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46189 1 80 1 2025-08-13 02:52:13.138 00:06:00.000 TCP 28.154.0.1:179 -> 28.157.0.1:37077 13 809 1 2025-08-13 02:52:13.137 00:06:00.018 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-13 02:57:18.332 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-13 02:57:19.138 00:00:00.000 UDP 28.104.0.1:35221 -> 198.28.0.2:53 1 64 1 2025-08-13 02:57:19.138 00:00:00.000 UDP 28.104.0.1:45526 -> 198.28.0.2:53 1 64 1 2025-08-13 02:57:19.149 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45526 1 109 1 2025-08-13 02:57:19.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35221 1 80 1 2025-08-13 02:54:11.484 00:05:01.666 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-13 02:58:19.435 00:00:00.000 UDP 28.104.0.1:47651 -> 198.28.0.2:53 1 64 1 2025-08-13 02:58:19.435 00:00:00.000 UDP 28.104.0.1:35037 -> 198.28.0.2:53 1 64 1 2025-08-13 02:58:19.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47651 1 109 1 2025-08-13 02:58:19.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35037 1 80 1 Summary: total flows: 325, total bytes: 94436, total packets: 1391, avg bps: 196, avg pps: 0, avg bpp: 67 Time window: 2025-08-13 01:55:11 - 2025-08-13 02:59:13 Total flows processed: 325, passed: 325, Blocks skipped: 0, Bytes read: 33864 Sys: 0.0031s User: 0.0031s Wall: 0.0041s flows/second: 78922.5 Runtime: 0.0041s