Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-08-15 03:55:12.471 00:05:01.645 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 03:59:23.671 00:00:00.000 UDP 28.104.0.1:59759 -> 198.28.0.2:53 1 64 1 2025-08-15 03:59:23.672 00:00:00.000 UDP 28.104.0.1:45686 -> 198.28.0.2:53 1 64 1 2025-08-15 03:59:23.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59759 1 80 1 2025-08-15 03:59:23.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45686 1 109 1 2025-08-15 03:56:12.421 00:05:01.705 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:00:23.969 00:00:00.000 UDP 28.104.0.1:55737 -> 198.28.0.2:53 1 64 1 2025-08-15 04:00:23.969 00:00:00.000 UDP 28.104.0.1:48447 -> 198.28.0.2:53 1 64 1 2025-08-15 04:00:23.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48447 1 80 1 2025-08-15 04:00:23.979 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55737 1 109 1 2025-08-15 03:56:14.079 00:06:00.188 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 03:56:14.264 00:06:00.078 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:01:24.265 00:00:00.000 UDP 28.104.0.1:49450 -> 198.28.0.2:53 1 64 1 2025-08-15 04:01:24.265 00:00:00.000 UDP 28.104.0.1:33170 -> 198.28.0.2:53 1 64 1 2025-08-15 04:01:24.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49450 1 109 1 2025-08-15 04:01:24.275 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33170 1 80 1 2025-08-15 03:58:12.433 00:05:01.833 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:02:24.558 00:00:00.000 UDP 28.104.0.1:41981 -> 198.28.0.2:53 1 64 1 2025-08-15 04:02:24.558 00:00:00.000 UDP 28.104.0.1:53423 -> 198.28.0.2:53 1 64 1 2025-08-15 04:02:24.568 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53423 1 80 1 2025-08-15 04:02:24.568 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41981 1 109 1 2025-08-15 04:03:17.629 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:03:24.861 00:00:00.000 UDP 28.104.0.1:47463 -> 198.28.0.2:53 1 64 1 2025-08-15 04:03:24.861 00:00:00.000 UDP 28.104.0.1:50612 -> 198.28.0.2:53 1 64 1 2025-08-15 04:03:24.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47463 1 80 1 2025-08-15 04:03:24.871 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50612 1 109 1 2025-08-15 03:59:53.897 00:05:10.001 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-08-15 04:00:12.423 00:05:01.853 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:04:25.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35222 1 80 1 2025-08-15 04:04:25.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46781 1 109 1 2025-08-15 04:04:25.193 00:00:00.000 UDP 28.104.0.1:35222 -> 198.28.0.2:53 1 64 1 2025-08-15 04:04:25.193 00:00:00.000 UDP 28.104.0.1:46781 -> 198.28.0.2:53 1 64 1 2025-08-15 04:01:12.474 00:05:01.643 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:05:25.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34946 1 109 1 2025-08-15 04:05:25.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33292 1 80 1 2025-08-15 04:05:25.482 00:00:00.000 UDP 28.104.0.1:33292 -> 198.28.0.2:53 1 64 1 2025-08-15 04:05:25.482 00:00:00.000 UDP 28.104.0.1:34946 -> 198.28.0.2:53 1 64 1 2025-08-15 04:02:12.424 00:05:01.703 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:06:25.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48184 1 109 1 2025-08-15 04:06:25.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39832 1 80 1 2025-08-15 04:06:25.795 00:00:00.000 UDP 28.104.0.1:48184 -> 198.28.0.2:53 1 64 1 2025-08-15 04:06:25.795 00:00:00.000 UDP 28.104.0.1:39832 -> 198.28.0.2:53 1 64 1 2025-08-15 04:07:26.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55913 1 109 1 2025-08-15 04:07:26.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59885 1 80 1 2025-08-15 04:07:26.099 00:00:00.000 UDP 28.104.0.1:59885 -> 198.28.0.2:53 1 64 1 2025-08-15 04:07:26.099 00:00:00.000 UDP 28.104.0.1:55913 -> 198.28.0.2:53 1 64 1 2025-08-15 04:08:17.607 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:03:14.081 00:06:00.187 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:04:12.435 00:05:01.833 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:03:14.267 00:06:00.077 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:08:26.353 00:00:00.000 UDP 28.104.0.1:39832 -> 198.28.0.2:53 1 64 1 2025-08-15 04:08:26.353 00:00:00.000 UDP 28.104.0.1:54355 -> 198.28.0.2:53 1 64 1 2025-08-15 04:08:26.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54355 1 80 1 2025-08-15 04:08:26.363 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39832 1 109 1 2025-08-15 04:09:26.682 00:00:00.000 UDP 28.104.0.1:42064 -> 198.28.0.2:53 1 64 1 2025-08-15 04:05:13.899 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 41 3048 1 2025-08-15 04:09:26.682 00:00:00.000 UDP 28.104.0.1:44331 -> 198.28.0.2:53 1 64 1 2025-08-15 04:09:26.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44331 1 80 1 2025-08-15 04:09:26.692 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42064 1 109 1 2025-08-15 04:06:12.423 00:05:01.854 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:10:26.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58247 1 109 1 2025-08-15 04:10:26.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45327 1 80 1 2025-08-15 04:10:26.976 00:00:00.000 UDP 28.104.0.1:45327 -> 198.28.0.2:53 1 64 1 2025-08-15 04:10:26.976 00:00:00.000 UDP 28.104.0.1:58247 -> 198.28.0.2:53 1 64 1 2025-08-15 04:07:12.476 00:05:01.642 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:11:27.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54171 1 80 1 2025-08-15 04:11:27.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40278 1 109 1 2025-08-15 04:11:27.524 00:00:00.000 UDP 28.104.0.1:54171 -> 198.28.0.2:53 1 64 1 2025-08-15 04:11:27.524 00:00:00.000 UDP 28.104.0.1:40278 -> 198.28.0.2:53 1 64 1 2025-08-15 04:08:12.424 00:05:01.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:12:27.831 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54409 1 80 1 2025-08-15 04:12:27.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49781 1 109 1 2025-08-15 04:12:27.823 00:00:00.000 UDP 28.104.0.1:49781 -> 198.28.0.2:53 1 64 1 2025-08-15 04:12:27.822 00:00:00.000 UDP 28.104.0.1:54409 -> 198.28.0.2:53 1 64 1 2025-08-15 04:13:17.786 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:13:28.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49326 1 80 1 2025-08-15 04:13:28.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40263 1 109 1 2025-08-15 04:13:28.099 00:00:00.000 UDP 28.104.0.1:40263 -> 198.28.0.2:53 1 64 1 2025-08-15 04:13:28.099 00:00:00.000 UDP 28.104.0.1:49326 -> 198.28.0.2:53 1 64 1 2025-08-15 04:10:12.435 00:05:01.833 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:14:28.384 00:00:00.000 UDP 28.104.0.1:49861 -> 198.28.0.2:53 1 64 1 2025-08-15 04:14:28.384 00:00:00.000 UDP 28.104.0.1:56754 -> 198.28.0.2:53 1 64 1 2025-08-15 04:14:28.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49861 1 80 1 2025-08-15 04:14:28.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56754 1 109 1 2025-08-15 04:10:33.907 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-08-15 04:10:14.268 00:06:00.077 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:10:14.082 00:06:00.190 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:15:28.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47555 1 80 1 2025-08-15 04:15:28.684 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53403 1 109 1 2025-08-15 04:15:28.675 00:00:00.000 UDP 28.104.0.1:47555 -> 198.28.0.2:53 1 64 1 2025-08-15 04:15:28.675 00:00:00.000 UDP 28.104.0.1:53403 -> 198.28.0.2:53 1 64 1 2025-08-15 04:12:12.424 00:05:01.857 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:16:28.966 00:00:00.000 UDP 28.104.0.1:49870 -> 198.28.0.2:53 1 64 1 2025-08-15 04:16:28.966 00:00:00.000 UDP 28.104.0.1:45320 -> 198.28.0.2:53 1 64 1 2025-08-15 04:16:28.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45320 1 80 1 2025-08-15 04:16:28.976 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49870 1 109 1 2025-08-15 04:13:12.476 00:05:01.645 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:17:29.259 00:00:00.000 UDP 28.104.0.1:56314 -> 198.28.0.2:53 1 64 1 2025-08-15 04:17:29.259 00:00:00.000 UDP 28.104.0.1:54120 -> 198.28.0.2:53 1 64 1 2025-08-15 04:17:29.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54120 1 109 1 2025-08-15 04:17:29.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56314 1 80 1 2025-08-15 04:18:17.879 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:14:12.426 00:05:01.705 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:18:29.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50743 1 80 1 2025-08-15 04:18:29.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59422 1 109 1 2025-08-15 04:18:29.557 00:00:00.000 UDP 28.104.0.1:50743 -> 198.28.0.2:53 1 64 1 2025-08-15 04:18:29.557 00:00:00.000 UDP 28.104.0.1:59422 -> 198.28.0.2:53 1 64 1 2025-08-15 04:19:29.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48087 1 80 1 2025-08-15 04:19:29.858 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36949 1 109 1 2025-08-15 04:19:29.846 00:00:00.000 UDP 28.104.0.1:36949 -> 198.28.0.2:53 1 64 1 2025-08-15 04:19:29.846 00:00:00.000 UDP 28.104.0.1:48087 -> 198.28.0.2:53 1 64 1 2025-08-15 04:15:53.910 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2756 1 2025-08-15 04:16:12.437 00:05:01.835 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:20:30.134 00:00:00.000 UDP 28.104.0.1:40834 -> 198.28.0.2:53 1 64 1 2025-08-15 04:20:30.134 00:00:00.000 UDP 28.104.0.1:54218 -> 198.28.0.2:53 1 64 1 2025-08-15 04:20:30.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54218 1 109 1 2025-08-15 04:20:30.145 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40834 1 80 1 2025-08-15 04:21:30.444 00:00:00.000 UDP 28.104.0.1:57571 -> 198.28.0.2:53 1 64 1 2025-08-15 04:21:30.444 00:00:00.000 UDP 28.104.0.1:54558 -> 198.28.0.2:53 1 64 1 2025-08-15 04:21:30.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57571 1 109 1 2025-08-15 04:21:30.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54558 1 80 1 2025-08-15 04:18:12.428 00:05:01.856 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:17:14.085 00:06:00.190 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:17:14.273 00:06:00.074 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:22:30.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48413 1 80 1 2025-08-15 04:22:30.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47376 1 109 1 2025-08-15 04:22:30.733 00:00:00.000 UDP 28.104.0.1:48413 -> 198.28.0.2:53 1 64 1 2025-08-15 04:22:30.733 00:00:00.000 UDP 28.104.0.1:47376 -> 198.28.0.2:53 1 64 1 2025-08-15 04:23:17.907 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:19:12.479 00:05:01.643 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:23:31.051 00:00:00.000 UDP 28.104.0.1:51309 -> 198.28.0.2:53 1 64 1 2025-08-15 04:23:31.051 00:00:00.000 UDP 28.104.0.1:50758 -> 198.28.0.2:53 1 64 1 2025-08-15 04:23:31.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50758 1 80 1 2025-08-15 04:23:31.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51309 1 109 1 2025-08-15 04:20:12.428 00:05:01.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:24:31.299 00:00:00.000 UDP 28.104.0.1:36339 -> 198.28.0.2:53 1 64 1 2025-08-15 04:24:31.299 00:00:00.000 UDP 28.104.0.1:46094 -> 198.28.0.2:53 1 64 1 2025-08-15 04:24:31.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36339 1 109 1 2025-08-15 04:24:31.309 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46094 1 80 1 2025-08-15 04:21:13.914 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2384 1 2025-08-15 04:25:31.551 00:00:00.000 UDP 28.104.0.1:52033 -> 198.28.0.2:53 1 64 1 2025-08-15 04:25:31.551 00:00:00.000 UDP 28.104.0.1:60820 -> 198.28.0.2:53 1 64 1 2025-08-15 04:25:31.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52033 1 80 1 2025-08-15 04:25:31.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60820 1 109 1 2025-08-15 04:22:12.438 00:05:01.838 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:26:31.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34322 1 109 1 2025-08-15 04:26:31.864 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45192 1 80 1 2025-08-15 04:26:31.855 00:00:00.000 UDP 28.104.0.1:45192 -> 198.28.0.2:53 1 64 1 2025-08-15 04:26:31.855 00:00:00.000 UDP 28.104.0.1:34322 -> 198.28.0.2:53 1 64 1 2025-08-15 04:27:32.170 00:00:00.000 UDP 28.104.0.1:37984 -> 198.28.0.2:53 1 64 1 2025-08-15 04:27:32.169 00:00:00.000 UDP 28.104.0.1:45671 -> 198.28.0.2:53 1 64 1 2025-08-15 04:27:32.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45671 1 109 1 2025-08-15 04:27:32.179 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37984 1 80 1 2025-08-15 04:28:18.018 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:24:12.429 00:05:01.860 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:28:32.429 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45241 1 80 1 2025-08-15 04:28:32.429 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50833 1 109 1 2025-08-15 04:28:32.420 00:00:00.000 UDP 28.104.0.1:50833 -> 198.28.0.2:53 1 64 1 2025-08-15 04:28:32.420 00:00:00.000 UDP 28.104.0.1:45241 -> 198.28.0.2:53 1 64 1 2025-08-15 04:24:14.086 00:06:00.193 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:25:12.479 00:05:01.644 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:24:14.275 00:06:00.071 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:29:32.723 00:00:00.000 UDP 28.104.0.1:44116 -> 198.28.0.2:53 1 64 1 2025-08-15 04:29:32.723 00:00:00.000 UDP 28.104.0.1:59669 -> 198.28.0.2:53 1 64 1 2025-08-15 04:29:32.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44116 1 109 1 2025-08-15 04:29:32.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59669 1 80 1 2025-08-15 04:26:12.430 00:05:01.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:30:32.979 00:00:00.000 UDP 28.104.0.1:51220 -> 198.28.0.2:53 1 64 1 2025-08-15 04:30:32.979 00:00:00.000 UDP 28.104.0.1:54021 -> 198.28.0.2:53 1 64 1 2025-08-15 04:30:32.990 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54021 1 109 1 2025-08-15 04:30:32.990 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51220 1 80 1 2025-08-15 04:26:33.920 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2388 1 2025-08-15 04:31:33.279 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33549 1 80 1 2025-08-15 04:31:33.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57396 1 109 1 2025-08-15 04:31:33.267 00:00:00.000 UDP 28.104.0.1:57396 -> 198.28.0.2:53 1 64 1 2025-08-15 04:31:33.267 00:00:00.000 UDP 28.104.0.1:33549 -> 198.28.0.2:53 1 64 1 2025-08-15 04:28:12.439 00:05:01.841 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:32:33.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43529 1 80 1 2025-08-15 04:32:33.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53361 1 109 1 2025-08-15 04:32:33.559 00:00:00.000 UDP 28.104.0.1:43529 -> 198.28.0.2:53 1 64 1 2025-08-15 04:32:33.559 00:00:00.000 UDP 28.104.0.1:53361 -> 198.28.0.2:53 1 64 1 2025-08-15 04:33:18.157 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:33:33.853 00:00:00.000 UDP 28.104.0.1:45089 -> 198.28.0.2:53 1 64 1 2025-08-15 04:33:33.852 00:00:00.000 UDP 28.104.0.1:54801 -> 198.28.0.2:53 1 64 1 2025-08-15 04:33:33.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45089 1 80 1 2025-08-15 04:33:33.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54801 1 109 1 2025-08-15 04:30:12.429 00:05:01.861 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:34:34.154 00:00:00.000 UDP 28.104.0.1:51635 -> 198.28.0.2:53 1 64 1 2025-08-15 04:34:34.154 00:00:00.000 UDP 28.104.0.1:39903 -> 198.28.0.2:53 1 64 1 2025-08-15 04:34:34.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39903 1 80 1 2025-08-15 04:34:34.164 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51635 1 109 1 2025-08-15 04:31:12.480 00:05:01.644 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:35:34.402 00:00:00.000 UDP 28.104.0.1:42336 -> 198.28.0.2:53 1 64 1 2025-08-15 04:35:34.402 00:00:00.000 UDP 28.104.0.1:36676 -> 198.28.0.2:53 1 64 1 2025-08-15 04:35:34.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42336 1 109 1 2025-08-15 04:35:34.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36676 1 80 1 2025-08-15 04:31:53.928 00:05:10.151 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2664 1 2025-08-15 04:31:14.089 00:06:00.191 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:31:14.279 00:06:00.069 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:32:12.431 00:05:01.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:36:34.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57920 1 80 1 2025-08-15 04:36:34.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45347 1 109 1 2025-08-15 04:36:34.703 00:00:00.000 UDP 28.104.0.1:45347 -> 198.28.0.2:53 1 64 1 2025-08-15 04:36:34.704 00:00:00.000 UDP 28.104.0.1:57920 -> 198.28.0.2:53 1 64 1 2025-08-15 04:37:34.997 00:00:00.000 UDP 28.104.0.1:56292 -> 198.28.0.2:53 1 64 1 2025-08-15 04:37:34.997 00:00:00.000 UDP 28.104.0.1:37956 -> 198.28.0.2:53 1 64 1 2025-08-15 04:37:35.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56292 1 80 1 2025-08-15 04:37:35.009 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37956 1 109 1 2025-08-15 04:34:12.440 00:05:01.841 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:38:18.214 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:38:35.302 00:00:00.000 UDP 28.104.0.1:42745 -> 198.28.0.2:53 1 64 1 2025-08-15 04:38:35.302 00:00:00.000 UDP 28.104.0.1:56140 -> 198.28.0.2:53 1 64 1 2025-08-15 04:38:35.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42745 1 80 1 2025-08-15 04:38:35.312 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56140 1 109 1 2025-08-15 04:39:35.666 00:00:00.000 UDP 28.104.0.1:49723 -> 198.28.0.2:53 1 64 1 2025-08-15 04:39:35.666 00:00:00.000 UDP 28.104.0.1:43535 -> 198.28.0.2:53 1 64 1 2025-08-15 04:39:35.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49723 1 80 1 2025-08-15 04:39:35.677 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43535 1 109 1 2025-08-15 04:36:12.431 00:05:01.861 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:40:35.964 00:00:00.000 UDP 28.104.0.1:58462 -> 198.28.0.2:53 1 64 1 2025-08-15 04:40:35.964 00:00:00.000 UDP 28.104.0.1:35654 -> 198.28.0.2:53 1 64 1 2025-08-15 04:40:35.974 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35654 1 80 1 2025-08-15 04:40:35.975 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58462 1 109 1 2025-08-15 04:37:12.481 00:05:01.644 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:37:13.940 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2688 1 2025-08-15 04:41:36.264 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42366 1 80 1 2025-08-15 04:41:36.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57499 1 109 1 2025-08-15 04:41:36.255 00:00:00.000 UDP 28.104.0.1:57499 -> 198.28.0.2:53 1 64 1 2025-08-15 04:41:36.255 00:00:00.000 UDP 28.104.0.1:42366 -> 198.28.0.2:53 1 64 1 2025-08-15 04:38:12.432 00:05:01.704 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:42:36.555 00:00:00.000 UDP 28.104.0.1:34864 -> 198.28.0.2:53 1 64 1 2025-08-15 04:42:36.556 00:00:00.000 UDP 28.104.0.1:52645 -> 198.28.0.2:53 1 64 1 2025-08-15 04:42:36.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34864 1 80 1 2025-08-15 04:42:36.565 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52645 1 109 1 2025-08-15 04:43:18.079 00:00:00.038 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:38:14.090 00:06:00.193 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:38:14.281 00:06:00.070 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:43:36.860 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51480 1 109 1 2025-08-15 04:43:36.859 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38185 1 80 1 2025-08-15 04:43:36.850 00:00:00.000 UDP 28.104.0.1:51480 -> 198.28.0.2:53 1 64 1 2025-08-15 04:43:36.850 00:00:00.000 UDP 28.104.0.1:38185 -> 198.28.0.2:53 1 64 1 2025-08-15 04:40:12.442 00:05:01.841 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:44:37.181 00:00:00.000 UDP 28.104.0.1:40337 -> 198.28.0.2:53 1 64 1 2025-08-15 04:44:37.181 00:00:00.000 UDP 28.104.0.1:51827 -> 198.28.0.2:53 1 64 1 2025-08-15 04:44:37.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51827 1 80 1 2025-08-15 04:44:37.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40337 1 109 1 2025-08-15 04:45:37.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39004 1 80 1 2025-08-15 04:45:37.496 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46454 1 109 1 2025-08-15 04:45:37.486 00:00:00.000 UDP 28.104.0.1:39004 -> 198.28.0.2:53 1 64 1 2025-08-15 04:45:37.486 00:00:00.000 UDP 28.104.0.1:46454 -> 198.28.0.2:53 1 64 1 2025-08-15 04:42:12.432 00:05:01.861 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:46:37.789 00:00:00.000 UDP 28.104.0.1:50941 -> 198.28.0.2:53 1 64 1 2025-08-15 04:46:37.788 00:00:00.000 UDP 28.104.0.1:42668 -> 198.28.0.2:53 1 64 1 2025-08-15 04:46:37.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42668 1 80 1 2025-08-15 04:46:37.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50941 1 109 1 2025-08-15 04:42:33.948 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2640 1 2025-08-15 04:43:12.483 00:05:01.647 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:47:38.091 00:00:00.000 UDP 28.104.0.1:60727 -> 198.28.0.2:53 1 64 1 2025-08-15 04:47:38.091 00:00:00.000 UDP 28.104.0.1:58651 -> 198.28.0.2:53 1 64 1 2025-08-15 04:47:38.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58651 1 80 1 2025-08-15 04:47:38.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60727 1 109 1 2025-08-15 04:48:18.423 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:44:12.434 00:05:01.707 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:48:38.343 00:00:00.000 UDP 28.104.0.1:47711 -> 198.28.0.2:53 1 64 1 2025-08-15 04:48:38.343 00:00:00.000 UDP 28.104.0.1:43818 -> 198.28.0.2:53 1 64 1 2025-08-15 04:48:38.353 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47711 1 80 1 2025-08-15 04:48:38.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43818 1 109 1 2025-08-15 04:49:38.668 00:00:00.000 UDP 28.104.0.1:49868 -> 198.28.0.2:53 1 64 1 2025-08-15 04:49:38.668 00:00:00.000 UDP 28.104.0.1:58327 -> 198.28.0.2:53 1 64 1 2025-08-15 04:49:38.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49868 1 80 1 2025-08-15 04:49:38.679 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58327 1 109 1 2025-08-15 04:45:14.093 00:06:00.191 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:46:12.444 00:05:01.840 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:45:14.284 00:06:00.071 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:50:38.960 00:00:00.000 UDP 28.104.0.1:53234 -> 198.28.0.2:53 1 64 1 2025-08-15 04:50:38.960 00:00:00.000 UDP 28.104.0.1:56087 -> 198.28.0.2:53 1 64 1 2025-08-15 04:50:38.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53234 1 109 1 2025-08-15 04:50:38.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56087 1 80 1 2025-08-15 04:51:39.304 00:00:00.000 UDP 28.104.0.1:56282 -> 198.28.0.2:53 1 64 1 2025-08-15 04:51:39.304 00:00:00.000 UDP 28.104.0.1:55995 -> 198.28.0.2:53 1 64 1 2025-08-15 04:51:39.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56282 1 80 1 2025-08-15 04:51:39.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55995 1 109 1 2025-08-15 04:47:53.959 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2556 1 2025-08-15 04:48:12.435 00:05:01.859 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:52:39.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55709 1 80 1 2025-08-15 04:52:39.616 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34947 1 109 1 2025-08-15 04:52:39.604 00:00:00.000 UDP 28.104.0.1:55709 -> 198.28.0.2:53 1 64 1 2025-08-15 04:52:39.605 00:00:00.000 UDP 28.104.0.1:34947 -> 198.28.0.2:53 1 64 1 2025-08-15 04:49:12.485 00:05:01.647 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-08-15 04:53:18.376 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:53:39.892 00:00:00.000 UDP 28.104.0.1:56470 -> 198.28.0.2:53 1 64 1 2025-08-15 04:53:39.893 00:00:00.000 UDP 28.104.0.1:54760 -> 198.28.0.2:53 1 64 1 2025-08-15 04:53:39.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56470 1 80 1 2025-08-15 04:53:39.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54760 1 109 1 2025-08-15 04:50:12.435 00:05:01.706 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-08-15 04:54:40.178 00:00:00.000 UDP 28.104.0.1:41618 -> 198.28.0.2:53 1 64 1 2025-08-15 04:54:40.178 00:00:00.000 UDP 28.104.0.1:51309 -> 198.28.0.2:53 1 64 1 2025-08-15 04:54:40.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51309 1 80 1 2025-08-15 04:54:40.188 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41618 1 109 1 2025-08-15 04:55:40.468 00:00:00.000 UDP 28.104.0.1:49170 -> 198.28.0.2:53 1 64 1 2025-08-15 04:55:40.468 00:00:00.000 UDP 28.104.0.1:34913 -> 198.28.0.2:53 1 64 1 2025-08-15 04:55:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34913 1 80 1 2025-08-15 04:55:40.477 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49170 1 109 1 2025-08-15 04:52:12.445 00:05:01.839 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-08-15 04:56:40.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51458 1 109 1 2025-08-15 04:56:40.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59416 1 80 1 2025-08-15 04:56:40.763 00:00:00.000 UDP 28.104.0.1:59416 -> 198.28.0.2:53 1 64 1 2025-08-15 04:56:40.763 00:00:00.000 UDP 28.104.0.1:51458 -> 198.28.0.2:53 1 64 1 2025-08-15 04:52:14.096 00:06:00.190 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-08-15 04:52:14.285 00:06:00.073 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-08-15 04:53:13.966 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2452 1 2025-08-15 04:57:41.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38607 1 80 1 2025-08-15 04:57:41.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44315 1 109 1 2025-08-15 04:57:41.073 00:00:00.000 UDP 28.104.0.1:44315 -> 198.28.0.2:53 1 64 1 2025-08-15 04:57:41.073 00:00:00.000 UDP 28.104.0.1:38607 -> 198.28.0.2:53 1 64 1 2025-08-15 04:58:18.619 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-08-15 04:54:12.437 00:05:01.859 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-08-15 04:58:41.370 00:00:00.000 UDP 28.104.0.1:41049 -> 198.28.0.2:53 1 64 1 2025-08-15 04:58:41.370 00:00:00.000 UDP 28.104.0.1:49413 -> 198.28.0.2:53 1 64 1 2025-08-15 04:58:41.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41049 1 80 1 2025-08-15 04:58:41.381 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49413 1 109 1 Summary: total flows: 321, total bytes: 95294, total packets: 1407, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-08-15 03:55:12 - 2025-08-15 04:59:14 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0042s User: 0.0021s Wall: 0.0041s flows/second: 78601.9 Runtime: 0.0041s