Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-09-01 18:57:23.403 00:02:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 18:57:23.403 00:02:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 18:59:47.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45768 1 80 1 2025-09-01 18:59:47.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50476 1 109 1 2025-09-01 18:59:47.806 00:00:00.000 UDP 28.104.0.1:45768 -> 198.28.0.2:53 1 64 1 2025-09-01 18:59:47.806 00:00:00.000 UDP 28.104.0.1:50476 -> 198.28.0.2:53 1 64 1 2025-09-01 18:56:22.055 00:05:01.350 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 18:56:22.095 00:05:01.209 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:00:48.097 00:00:00.000 UDP 28.104.0.1:36439 -> 198.28.0.2:53 1 64 1 2025-09-01 19:00:48.096 00:00:00.000 UDP 28.104.0.1:58351 -> 198.28.0.2:53 1 64 1 2025-09-01 19:00:48.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58351 1 80 1 2025-09-01 19:00:48.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36439 1 109 1 2025-09-01 18:56:38.968 00:05:10.016 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2468 1 2025-09-01 19:00:23.403 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:00:23.403 00:01:00.093 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 18:57:22.044 00:05:01.369 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:01:48.396 00:00:00.000 UDP 28.104.0.1:49454 -> 198.28.0.2:53 1 64 1 2025-09-01 19:01:48.396 00:00:00.000 UDP 28.104.0.1:33564 -> 198.28.0.2:53 1 64 1 2025-09-01 19:01:46.798 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:01:48.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49454 1 80 1 2025-09-01 19:01:48.406 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33564 1 109 1 2025-09-01 18:58:22.045 00:05:01.270 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:02:48.650 00:00:00.000 UDP 28.104.0.1:41672 -> 198.28.0.2:53 1 64 1 2025-09-01 19:02:48.650 00:00:00.000 UDP 28.104.0.1:57345 -> 198.28.0.2:53 1 64 1 2025-09-01 19:02:48.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41672 1 109 1 2025-09-01 19:02:48.660 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57345 1 80 1 2025-09-01 19:03:48.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50641 1 109 1 2025-09-01 19:03:48.951 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36685 1 80 1 2025-09-01 19:03:48.941 00:00:00.000 UDP 28.104.0.1:50641 -> 198.28.0.2:53 1 64 1 2025-09-01 19:03:48.941 00:00:00.000 UDP 28.104.0.1:36685 -> 198.28.0.2:53 1 64 1 2025-09-01 19:02:23.404 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:02:23.404 00:02:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:04:49.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55860 1 80 1 2025-09-01 19:04:49.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37200 1 109 1 2025-09-01 19:04:49.237 00:00:00.000 UDP 28.104.0.1:55860 -> 198.28.0.2:53 1 64 1 2025-09-01 19:04:49.237 00:00:00.000 UDP 28.104.0.1:37200 -> 198.28.0.2:53 1 64 1 2025-09-01 19:05:49.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41075 1 80 1 2025-09-01 19:05:49.535 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59672 1 109 1 2025-09-01 19:05:49.526 00:00:00.000 UDP 28.104.0.1:41075 -> 198.28.0.2:53 1 64 1 2025-09-01 19:05:49.526 00:00:00.000 UDP 28.104.0.1:59672 -> 198.28.0.2:53 1 64 1 2025-09-01 19:01:58.984 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2416 1 2025-09-01 19:05:23.404 00:01:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:05:23.404 00:01:00.065 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:02:22.095 00:05:01.209 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:02:22.055 00:05:01.350 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:06:47.261 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:06:49.855 00:00:00.000 UDP 28.104.0.1:38435 -> 198.28.0.2:53 1 64 1 2025-09-01 19:06:49.855 00:00:00.000 UDP 28.104.0.1:42257 -> 198.28.0.2:53 1 64 1 2025-09-01 19:06:49.867 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38435 1 109 1 2025-09-01 19:06:49.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42257 1 80 1 2025-09-01 19:03:22.044 00:05:01.370 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:07:50.161 00:00:00.000 UDP 28.104.0.1:58395 -> 198.28.0.2:53 1 64 1 2025-09-01 19:07:50.160 00:00:00.000 UDP 28.104.0.1:40459 -> 198.28.0.2:53 1 64 1 2025-09-01 19:07:50.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58395 1 109 1 2025-09-01 19:07:50.169 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40459 1 80 1 2025-09-01 19:04:22.045 00:05:01.270 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:08:50.417 00:00:00.000 UDP 28.104.0.1:60072 -> 198.28.0.2:53 1 64 1 2025-09-01 19:08:50.417 00:00:00.000 UDP 28.104.0.1:48056 -> 198.28.0.2:53 1 64 1 2025-09-01 19:08:50.429 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48056 1 109 1 2025-09-01 19:08:50.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60072 1 80 1 2025-09-01 19:07:23.404 00:02:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:07:23.404 00:02:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:09:51.126 00:00:00.000 UDP 28.104.0.1:47541 -> 198.28.0.2:53 1 64 1 2025-09-01 19:09:51.126 00:00:00.000 UDP 28.104.0.1:60382 -> 198.28.0.2:53 1 64 1 2025-09-01 19:09:51.136 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60382 1 80 1 2025-09-01 19:09:51.135 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47541 1 109 1 2025-09-01 19:10:51.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44633 1 80 1 2025-09-01 19:10:51.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42876 1 109 1 2025-09-01 19:10:51.420 00:00:00.000 UDP 28.104.0.1:42876 -> 198.28.0.2:53 1 64 1 2025-09-01 19:10:51.420 00:00:00.000 UDP 28.104.0.1:44633 -> 198.28.0.2:53 1 64 1 2025-09-01 19:10:23.405 00:01:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:10:23.405 00:01:00.062 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:07:18.992 00:05:10.038 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2464 1 2025-09-01 19:11:47.160 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:11:51.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50774 1 109 1 2025-09-01 19:11:51.720 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39399 1 80 1 2025-09-01 19:11:51.709 00:00:00.000 UDP 28.104.0.1:39399 -> 198.28.0.2:53 1 64 1 2025-09-01 19:11:51.710 00:00:00.000 UDP 28.104.0.1:50774 -> 198.28.0.2:53 1 64 1 2025-09-01 19:08:22.054 00:05:01.350 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:08:22.094 00:05:01.210 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:12:52.005 00:00:00.000 UDP 28.104.0.1:51502 -> 198.28.0.2:53 1 64 1 2025-09-01 19:12:52.005 00:00:00.000 UDP 28.104.0.1:45257 -> 198.28.0.2:53 1 64 1 2025-09-01 19:12:52.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51502 1 109 1 2025-09-01 19:12:52.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45257 1 80 1 2025-09-01 19:12:23.405 00:01:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:12:23.405 00:01:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:09:22.045 00:05:01.370 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:13:52.306 00:00:00.000 UDP 28.104.0.1:50299 -> 198.28.0.2:53 1 64 1 2025-09-01 19:13:52.306 00:00:00.000 UDP 28.104.0.1:35217 -> 198.28.0.2:53 1 64 1 2025-09-01 19:13:52.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35217 1 109 1 2025-09-01 19:13:52.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50299 1 80 1 2025-09-01 19:14:23.404 00:00:00.065 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-01 19:14:23.405 00:00:00.061 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-09-01 19:10:22.049 00:05:01.266 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:14:52.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51531 1 109 1 2025-09-01 19:14:52.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32779 1 80 1 2025-09-01 19:14:52.598 00:00:00.000 UDP 28.104.0.1:32779 -> 198.28.0.2:53 1 64 1 2025-09-01 19:14:52.598 00:00:00.000 UDP 28.104.0.1:51531 -> 198.28.0.2:53 1 64 1 2025-09-01 19:15:52.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39147 1 109 1 2025-09-01 19:15:52.906 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54711 1 80 1 2025-09-01 19:15:52.894 00:00:00.000 UDP 28.104.0.1:54711 -> 198.28.0.2:53 1 64 1 2025-09-01 19:15:52.894 00:00:00.000 UDP 28.104.0.1:39147 -> 198.28.0.2:53 1 64 1 2025-09-01 19:15:23.405 00:01:00.062 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:15:23.405 00:01:00.064 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:12:38.997 00:05:00.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2548 1 2025-09-01 19:16:47.523 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:16:53.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56340 1 109 1 2025-09-01 19:16:53.203 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46109 1 80 1 2025-09-01 19:16:53.192 00:00:00.000 UDP 28.104.0.1:46109 -> 198.28.0.2:53 1 64 1 2025-09-01 19:16:53.192 00:00:00.000 UDP 28.104.0.1:56340 -> 198.28.0.2:53 1 64 1 2025-09-01 19:17:53.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38417 1 80 1 2025-09-01 19:17:53.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60787 1 109 1 2025-09-01 19:17:53.491 00:00:00.000 UDP 28.104.0.1:38417 -> 198.28.0.2:53 1 64 1 2025-09-01 19:17:53.491 00:00:00.000 UDP 28.104.0.1:60787 -> 198.28.0.2:53 1 64 1 2025-09-01 19:17:23.406 00:01:00.065 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:17:23.406 00:01:00.063 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:14:22.060 00:05:01.346 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:14:22.100 00:05:01.209 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:18:55.440 00:00:00.000 UDP 28.104.0.1:41877 -> 198.28.0.2:53 1 64 1 2025-09-01 19:18:55.439 00:00:00.000 UDP 28.104.0.1:46114 -> 198.28.0.2:53 1 64 1 2025-09-01 19:18:55.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41877 1 80 1 2025-09-01 19:18:55.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46114 1 109 1 2025-09-01 19:15:22.050 00:05:01.366 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:19:55.743 00:00:00.000 UDP 28.104.0.1:51327 -> 198.28.0.2:53 1 64 1 2025-09-01 19:19:55.742 00:00:00.000 UDP 28.104.0.1:54683 -> 198.28.0.2:53 1 64 1 2025-09-01 19:19:55.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54683 1 80 1 2025-09-01 19:19:55.753 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51327 1 109 1 2025-09-01 19:16:22.050 00:05:01.268 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:20:56.058 00:00:00.000 UDP 28.104.0.1:49339 -> 198.28.0.2:53 1 64 1 2025-09-01 19:20:56.058 00:00:00.000 UDP 28.104.0.1:38880 -> 198.28.0.2:53 1 64 1 2025-09-01 19:20:56.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49339 1 80 1 2025-09-01 19:20:56.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38880 1 109 1 2025-09-01 19:19:23.406 00:02:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:19:23.406 00:02:00.066 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:21:47.315 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:21:56.350 00:00:00.000 UDP 28.104.0.1:44790 -> 198.28.0.2:53 1 64 1 2025-09-01 19:21:56.350 00:00:00.000 UDP 28.104.0.1:55839 -> 198.28.0.2:53 1 64 1 2025-09-01 19:21:56.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44790 1 80 1 2025-09-01 19:21:56.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55839 1 109 1 2025-09-01 19:17:49.001 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 2980 1 2025-09-01 19:22:56.642 00:00:00.000 UDP 28.104.0.1:46705 -> 198.28.0.2:53 1 64 1 2025-09-01 19:22:56.644 00:00:00.000 UDP 28.104.0.1:51444 -> 198.28.0.2:53 1 64 1 2025-09-01 19:22:56.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51444 1 109 1 2025-09-01 19:22:56.652 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46705 1 80 1 2025-09-01 19:22:23.406 00:01:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:22:23.406 00:01:00.068 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:23:56.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52159 1 80 1 2025-09-01 19:23:56.907 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41410 1 109 1 2025-09-01 19:23:56.897 00:00:00.000 UDP 28.104.0.1:52159 -> 198.28.0.2:53 1 64 1 2025-09-01 19:23:56.897 00:00:00.000 UDP 28.104.0.1:41410 -> 198.28.0.2:53 1 64 1 2025-09-01 19:20:22.062 00:05:01.345 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:20:22.102 00:05:01.208 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:24:57.215 00:00:00.000 UDP 28.104.0.1:33192 -> 198.28.0.2:53 1 64 1 2025-09-01 19:24:57.214 00:00:00.000 UDP 28.104.0.1:53487 -> 198.28.0.2:53 1 64 1 2025-09-01 19:24:57.224 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53487 1 80 1 2025-09-01 19:24:57.226 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33192 1 109 1 2025-09-01 19:21:22.052 00:05:01.365 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:25:57.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57921 1 109 1 2025-09-01 19:25:57.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46576 1 80 1 2025-09-01 19:25:57.539 00:00:00.000 UDP 28.104.0.1:46576 -> 198.28.0.2:53 1 64 1 2025-09-01 19:25:57.539 00:00:00.000 UDP 28.104.0.1:57921 -> 198.28.0.2:53 1 64 1 2025-09-01 19:22:22.051 00:05:01.268 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:24:23.407 00:02:00.065 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:24:23.407 00:02:00.067 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:26:47.296 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:26:57.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39608 1 80 1 2025-09-01 19:26:57.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54604 1 109 1 2025-09-01 19:26:57.837 00:00:00.000 UDP 28.104.0.1:54604 -> 198.28.0.2:53 1 64 1 2025-09-01 19:26:57.838 00:00:00.000 UDP 28.104.0.1:39608 -> 198.28.0.2:53 1 64 1 2025-09-01 19:23:09.004 00:05:10.036 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-09-01 19:27:58.171 00:00:00.000 UDP 28.104.0.1:58958 -> 198.28.0.2:53 1 64 1 2025-09-01 19:27:58.171 00:00:00.000 UDP 28.104.0.1:59730 -> 198.28.0.2:53 1 64 1 2025-09-01 19:27:58.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58958 1 80 1 2025-09-01 19:27:58.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59730 1 109 1 2025-09-01 19:27:23.407 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:27:23.407 00:01:00.068 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:28:58.462 00:00:00.000 UDP 28.104.0.1:54915 -> 198.28.0.2:53 1 64 1 2025-09-01 19:28:58.463 00:00:00.000 UDP 28.104.0.1:50742 -> 198.28.0.2:53 1 64 1 2025-09-01 19:28:58.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54915 1 80 1 2025-09-01 19:28:58.474 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50742 1 109 1 2025-09-01 19:29:58.754 00:00:00.000 UDP 28.104.0.1:40896 -> 198.28.0.2:53 1 64 1 2025-09-01 19:29:58.754 00:00:00.000 UDP 28.104.0.1:46394 -> 198.28.0.2:53 1 64 1 2025-09-01 19:29:58.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40896 1 80 1 2025-09-01 19:29:58.765 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46394 1 109 1 2025-09-01 19:26:22.061 00:05:01.346 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:26:22.101 00:05:01.209 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:30:59.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50000 1 80 1 2025-09-01 19:30:59.079 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60098 1 109 1 2025-09-01 19:30:59.070 00:00:00.000 UDP 28.104.0.1:60098 -> 198.28.0.2:53 1 64 1 2025-09-01 19:30:59.070 00:00:00.000 UDP 28.104.0.1:50000 -> 198.28.0.2:53 1 64 1 2025-09-01 19:29:23.407 00:02:00.069 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:29:23.407 00:02:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:27:22.053 00:05:01.366 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:31:47.777 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:31:59.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42098 1 80 1 2025-09-01 19:31:59.380 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48227 1 109 1 2025-09-01 19:31:59.369 00:00:00.000 UDP 28.104.0.1:42098 -> 198.28.0.2:53 1 64 1 2025-09-01 19:31:59.369 00:00:00.000 UDP 28.104.0.1:48227 -> 198.28.0.2:53 1 64 1 2025-09-01 19:28:22.051 00:05:01.269 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:28:29.041 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2572 1 2025-09-01 19:32:59.669 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47239 1 80 1 2025-09-01 19:32:59.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39628 1 109 1 2025-09-01 19:32:59.657 00:00:00.000 UDP 28.104.0.1:39628 -> 198.28.0.2:53 1 64 1 2025-09-01 19:32:59.657 00:00:00.000 UDP 28.104.0.1:47239 -> 198.28.0.2:53 1 64 1 2025-09-01 19:32:23.407 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:32:23.407 00:01:00.070 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:33:59.960 00:00:00.000 UDP 28.104.0.1:46731 -> 198.28.0.2:53 1 64 1 2025-09-01 19:33:59.960 00:00:00.000 UDP 28.104.0.1:55803 -> 198.28.0.2:53 1 64 1 2025-09-01 19:33:59.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55803 1 80 1 2025-09-01 19:33:59.970 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46731 1 109 1 2025-09-01 19:35:00.258 00:00:00.000 UDP 28.104.0.1:37673 -> 198.28.0.2:53 1 64 1 2025-09-01 19:35:00.258 00:00:00.000 UDP 28.104.0.1:34971 -> 198.28.0.2:53 1 64 1 2025-09-01 19:35:00.268 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34971 1 80 1 2025-09-01 19:35:00.269 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37673 1 109 1 2025-09-01 19:36:00.549 00:00:00.000 UDP 28.104.0.1:49987 -> 198.28.0.2:53 1 64 1 2025-09-01 19:36:00.549 00:00:00.000 UDP 28.104.0.1:33796 -> 198.28.0.2:53 1 64 1 2025-09-01 19:36:00.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33796 1 80 1 2025-09-01 19:36:00.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49987 1 109 1 2025-09-01 19:34:23.407 00:02:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:32:22.105 00:05:01.209 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:34:23.407 00:02:00.069 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:32:22.065 00:05:01.343 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:36:47.565 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:37:00.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45756 1 80 1 2025-09-01 19:37:00.856 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52404 1 109 1 2025-09-01 19:37:00.846 00:00:00.000 UDP 28.104.0.1:52404 -> 198.28.0.2:53 1 64 1 2025-09-01 19:37:00.846 00:00:00.000 UDP 28.104.0.1:45756 -> 198.28.0.2:53 1 64 1 2025-09-01 19:33:22.056 00:05:01.364 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:38:01.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59303 1 109 1 2025-09-01 19:38:01.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40345 1 80 1 2025-09-01 19:38:01.140 00:00:00.000 UDP 28.104.0.1:59303 -> 198.28.0.2:53 1 64 1 2025-09-01 19:33:49.054 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-09-01 19:38:01.140 00:00:00.000 UDP 28.104.0.1:40345 -> 198.28.0.2:53 1 64 1 2025-09-01 19:37:23.408 00:01:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:37:23.408 00:01:00.069 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:34:22.056 00:05:01.269 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:39:01.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35507 1 80 1 2025-09-01 19:39:01.442 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39626 1 109 1 2025-09-01 19:39:01.431 00:00:00.000 UDP 28.104.0.1:39626 -> 198.28.0.2:53 1 64 1 2025-09-01 19:39:01.431 00:00:00.000 UDP 28.104.0.1:35507 -> 198.28.0.2:53 1 64 1 2025-09-01 19:40:01.722 00:00:00.000 UDP 28.104.0.1:37850 -> 198.28.0.2:53 1 64 1 2025-09-01 19:40:01.723 00:00:00.000 UDP 28.104.0.1:35993 -> 198.28.0.2:53 1 64 1 2025-09-01 19:40:01.733 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35993 1 80 1 2025-09-01 19:40:01.732 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37850 1 109 1 2025-09-01 19:41:02.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42322 1 109 1 2025-09-01 19:41:02.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48755 1 80 1 2025-09-01 19:41:02.040 00:00:00.000 UDP 28.104.0.1:42322 -> 198.28.0.2:53 1 64 1 2025-09-01 19:41:02.040 00:00:00.000 UDP 28.104.0.1:48755 -> 198.28.0.2:53 1 64 1 2025-09-01 19:39:23.415 00:02:00.060 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:39:23.415 00:02:00.062 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:41:47.672 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:42:02.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38479 1 80 1 2025-09-01 19:42:02.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33112 1 109 1 2025-09-01 19:42:02.334 00:00:00.000 UDP 28.104.0.1:33112 -> 198.28.0.2:53 1 64 1 2025-09-01 19:42:02.334 00:00:00.000 UDP 28.104.0.1:38479 -> 198.28.0.2:53 1 64 1 2025-09-01 19:38:22.066 00:05:01.344 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:38:22.106 00:05:01.211 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:43:02.612 00:00:00.000 UDP 28.104.0.1:49241 -> 198.28.0.2:53 1 64 1 2025-09-01 19:43:02.612 00:00:00.000 UDP 28.104.0.1:51426 -> 198.28.0.2:53 1 64 1 2025-09-01 19:43:02.623 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51426 1 80 1 2025-09-01 19:43:02.623 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49241 1 109 1 2025-09-01 19:39:09.058 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2712 1 2025-09-01 19:42:23.410 00:01:00.067 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:42:23.410 00:01:00.069 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:39:22.057 00:05:01.363 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:44:02.910 00:00:00.000 UDP 28.104.0.1:37236 -> 198.28.0.2:53 1 64 1 2025-09-01 19:44:02.910 00:00:00.000 UDP 28.104.0.1:55816 -> 198.28.0.2:53 1 64 1 2025-09-01 19:44:02.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55816 1 109 1 2025-09-01 19:44:02.920 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37236 1 80 1 2025-09-01 19:40:22.057 00:05:01.270 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:45:03.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59856 1 80 1 2025-09-01 19:45:03.229 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45035 1 109 1 2025-09-01 19:45:03.219 00:00:00.000 UDP 28.104.0.1:45035 -> 198.28.0.2:53 1 64 1 2025-09-01 19:45:03.219 00:00:00.000 UDP 28.104.0.1:59856 -> 198.28.0.2:53 1 64 1 2025-09-01 19:44:23.410 00:01:00.070 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:44:23.410 00:01:00.073 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:46:03.510 00:00:00.000 UDP 28.104.0.1:33874 -> 198.28.0.2:53 1 64 1 2025-09-01 19:46:03.510 00:00:00.000 UDP 28.104.0.1:50572 -> 198.28.0.2:53 1 64 1 2025-09-01 19:46:03.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50572 1 109 1 2025-09-01 19:46:03.520 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33874 1 80 1 2025-09-01 19:46:23.412 00:00:00.071 TCP 28.154.0.1:179 -> 28.155.0.1:36643 2 123 1 2025-09-01 19:46:23.412 00:00:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-09-01 19:46:47.948 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:47:03.804 00:00:00.000 UDP 28.104.0.1:52359 -> 198.28.0.2:53 1 64 1 2025-09-01 19:47:03.805 00:00:00.000 UDP 28.104.0.1:42271 -> 198.28.0.2:53 1 64 1 2025-09-01 19:47:03.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42271 1 80 1 2025-09-01 19:47:03.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52359 1 109 1 2025-09-01 19:48:04.125 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38200 1 80 1 2025-09-01 19:48:04.126 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47496 1 109 1 2025-09-01 19:48:04.115 00:00:00.000 UDP 28.104.0.1:38200 -> 198.28.0.2:53 1 64 1 2025-09-01 19:48:04.115 00:00:00.000 UDP 28.104.0.1:47496 -> 198.28.0.2:53 1 64 1 2025-09-01 19:47:23.411 00:01:00.073 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:47:23.411 00:01:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:44:22.071 00:05:01.340 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:44:22.111 00:05:01.206 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:44:29.065 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2560 1 2025-09-01 19:49:04.366 00:00:00.000 UDP 28.104.0.1:46038 -> 198.28.0.2:53 1 64 1 2025-09-01 19:49:04.366 00:00:00.000 UDP 28.104.0.1:38224 -> 198.28.0.2:53 1 64 1 2025-09-01 19:49:04.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46038 1 109 1 2025-09-01 19:49:04.377 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38224 1 80 1 2025-09-01 19:45:22.062 00:05:01.360 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:50:04.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60583 1 80 1 2025-09-01 19:50:04.668 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51728 1 109 1 2025-09-01 19:50:04.658 00:00:00.000 UDP 28.104.0.1:60583 -> 198.28.0.2:53 1 64 1 2025-09-01 19:50:04.657 00:00:00.000 UDP 28.104.0.1:51728 -> 198.28.0.2:53 1 64 1 2025-09-01 19:49:23.411 00:01:00.068 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:49:23.411 00:01:00.073 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:46:22.061 00:05:01.271 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:51:04.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35817 1 109 1 2025-09-01 19:51:04.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52248 1 80 1 2025-09-01 19:51:04.948 00:00:00.000 UDP 28.104.0.1:35817 -> 198.28.0.2:53 1 64 1 2025-09-01 19:51:04.948 00:00:00.000 UDP 28.104.0.1:52248 -> 198.28.0.2:53 1 64 1 2025-09-01 19:51:48.393 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:52:05.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36296 1 109 1 2025-09-01 19:52:05.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42374 1 80 1 2025-09-01 19:52:05.255 00:00:00.000 UDP 28.104.0.1:42374 -> 198.28.0.2:53 1 64 1 2025-09-01 19:52:05.255 00:00:00.000 UDP 28.104.0.1:36296 -> 198.28.0.2:53 1 64 1 2025-09-01 19:53:05.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54692 1 80 1 2025-09-01 19:53:05.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32865 1 109 1 2025-09-01 19:53:05.552 00:00:00.000 UDP 28.104.0.1:32865 -> 198.28.0.2:53 1 64 1 2025-09-01 19:53:05.552 00:00:00.000 UDP 28.104.0.1:54692 -> 198.28.0.2:53 1 64 1 2025-09-01 19:51:23.412 00:02:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:51:23.412 00:02:00.075 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-09-01 19:49:49.030 00:05:10.041 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2756 1 2025-09-01 19:54:05.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36922 1 109 1 2025-09-01 19:54:05.869 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37454 1 80 1 2025-09-01 19:54:05.859 00:00:00.000 UDP 28.104.0.1:37454 -> 198.28.0.2:53 1 64 1 2025-09-01 19:54:05.859 00:00:00.000 UDP 28.104.0.1:36922 -> 198.28.0.2:53 1 64 1 2025-09-01 19:50:22.073 00:05:01.348 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-09-01 19:50:22.113 00:05:01.206 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-09-01 19:55:06.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41326 1 109 1 2025-09-01 19:55:06.201 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42095 1 80 1 2025-09-01 19:55:06.190 00:00:00.000 UDP 28.104.0.1:42095 -> 198.28.0.2:53 1 64 1 2025-09-01 19:55:06.190 00:00:00.000 UDP 28.104.0.1:41326 -> 198.28.0.2:53 1 64 1 2025-09-01 19:54:23.412 00:01:00.069 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-09-01 19:54:23.412 00:01:00.074 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-09-01 19:51:22.064 00:05:01.361 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-09-01 19:56:06.499 00:00:00.000 UDP 28.104.0.1:33255 -> 198.28.0.2:53 1 64 1 2025-09-01 19:56:06.499 00:00:00.000 UDP 28.104.0.1:51504 -> 198.28.0.2:53 1 64 1 2025-09-01 19:56:06.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51504 1 80 1 2025-09-01 19:56:06.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33255 1 109 1 2025-09-01 19:52:22.064 00:05:01.266 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-09-01 19:56:48.022 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-09-01 19:57:06.802 00:00:00.000 UDP 28.104.0.1:46624 -> 198.28.0.2:53 1 64 1 2025-09-01 19:57:06.802 00:00:00.000 UDP 28.104.0.1:57395 -> 198.28.0.2:53 1 64 1 2025-09-01 19:57:06.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46624 1 80 1 2025-09-01 19:57:06.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57395 1 109 1 2025-09-01 19:58:07.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48707 1 80 1 2025-09-01 19:58:07.085 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33709 1 109 1 2025-09-01 19:58:07.077 00:00:00.000 UDP 28.104.0.1:48707 -> 198.28.0.2:53 1 64 1 2025-09-01 19:58:07.076 00:00:00.000 UDP 28.104.0.1:33709 -> 198.28.0.2:53 1 64 1 2025-09-01 19:56:23.416 00:02:00.066 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-09-01 19:56:23.416 00:02:00.073 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 Summary: total flows: 353, total bytes: 94711, total packets: 1396, avg bps: 203, avg pps: 0, avg bpp: 67 Time window: 2025-09-01 18:56:22 - 2025-09-01 19:58:23 Total flows processed: 353, passed: 353, Blocks skipped: 0, Bytes read: 36776 Sys: 0.0043s User: 0.0026s Wall: 0.0074s flows/second: 47805.7 Runtime: 0.0074s