Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 02:59:07.774 00:00:00.000 UDP 28.104.0.1:38749 -> 198.28.0.2:53 1 64 1 2025-10-16 02:59:07.774 00:00:00.000 UDP 28.104.0.1:41727 -> 198.28.0.2:53 1 64 1 2025-10-16 02:59:07.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41727 1 80 1 2025-10-16 02:59:07.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38749 1 109 1 2025-10-16 02:55:42.694 00:05:09.346 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:00:08.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45630 1 80 1 2025-10-16 03:00:08.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56178 1 109 1 2025-10-16 03:00:08.054 00:00:00.000 UDP 28.104.0.1:45630 -> 198.28.0.2:53 1 64 1 2025-10-16 03:00:08.054 00:00:00.000 UDP 28.104.0.1:56178 -> 198.28.0.2:53 1 64 1 2025-10-16 02:55:51.871 00:05:50.865 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 02:56:42.684 00:05:09.370 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:01:08.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43145 1 109 1 2025-10-16 03:01:08.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51347 1 80 1 2025-10-16 03:01:08.312 00:00:00.000 UDP 28.104.0.1:43145 -> 198.28.0.2:53 1 64 1 2025-10-16 03:01:08.312 00:00:00.000 UDP 28.104.0.1:51347 -> 198.28.0.2:53 1 64 1 2025-10-16 03:02:08.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36565 1 80 1 2025-10-16 03:02:08.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35917 1 109 1 2025-10-16 03:02:08.572 00:00:00.000 UDP 28.104.0.1:35917 -> 198.28.0.2:53 1 64 1 2025-10-16 03:02:08.572 00:00:00.000 UDP 28.104.0.1:36565 -> 198.28.0.2:53 1 64 1 2025-10-16 02:58:42.684 00:05:09.205 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 02:57:52.029 00:06:00.045 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 02:58:51.847 00:05:00.197 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:03:08.819 00:00:00.000 UDP 28.104.0.1:38153 -> 198.28.0.2:53 1 64 1 2025-10-16 03:03:08.819 00:00:00.000 UDP 28.104.0.1:33134 -> 198.28.0.2:53 1 64 1 2025-10-16 03:03:08.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38153 1 109 1 2025-10-16 03:03:08.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33134 1 80 1 2025-10-16 03:03:14.740 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 02:59:47.707 00:05:10.030 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2724 1 2025-10-16 03:04:09.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56601 1 109 1 2025-10-16 03:04:09.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55932 1 80 1 2025-10-16 03:04:09.115 00:00:00.000 UDP 28.104.0.1:55932 -> 198.28.0.2:53 1 64 1 2025-10-16 03:04:09.115 00:00:00.000 UDP 28.104.0.1:56601 -> 198.28.0.2:53 1 64 1 2025-10-16 03:05:09.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38970 1 109 1 2025-10-16 03:05:09.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38202 1 80 1 2025-10-16 03:05:09.366 00:00:00.000 UDP 28.104.0.1:38202 -> 198.28.0.2:53 1 64 1 2025-10-16 03:05:09.366 00:00:00.000 UDP 28.104.0.1:38970 -> 198.28.0.2:53 1 64 1 2025-10-16 03:01:42.695 00:05:09.350 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:06:09.656 00:00:00.000 UDP 28.104.0.1:56345 -> 198.28.0.2:53 1 64 1 2025-10-16 03:06:09.656 00:00:00.000 UDP 28.104.0.1:48892 -> 198.28.0.2:53 1 64 1 2025-10-16 03:06:09.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56345 1 80 1 2025-10-16 03:06:09.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48892 1 109 1 2025-10-16 03:01:51.877 00:05:50.862 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:02:42.685 00:05:09.370 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:07:09.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41779 1 80 1 2025-10-16 03:07:09.958 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44356 1 109 1 2025-10-16 03:07:09.947 00:00:00.000 UDP 28.104.0.1:44356 -> 198.28.0.2:53 1 64 1 2025-10-16 03:07:09.947 00:00:00.000 UDP 28.104.0.1:41779 -> 198.28.0.2:53 1 64 1 2025-10-16 03:08:10.219 00:00:00.000 UDP 28.104.0.1:55945 -> 198.28.0.2:53 1 64 1 2025-10-16 03:08:10.219 00:00:00.000 UDP 28.104.0.1:54933 -> 198.28.0.2:53 1 64 1 2025-10-16 03:08:10.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55945 1 80 1 2025-10-16 03:08:10.228 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54933 1 109 1 2025-10-16 03:08:14.636 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:04:42.689 00:05:09.202 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:04:51.847 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:09:10.940 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39459 1 80 1 2025-10-16 03:09:10.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34906 1 109 1 2025-10-16 03:09:10.930 00:00:00.000 UDP 28.104.0.1:34906 -> 198.28.0.2:53 1 64 1 2025-10-16 03:09:10.930 00:00:00.000 UDP 28.104.0.1:39459 -> 198.28.0.2:53 1 64 1 2025-10-16 03:05:07.715 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2624 1 2025-10-16 03:04:52.044 00:06:00.031 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:10:11.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59489 1 109 1 2025-10-16 03:10:11.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46824 1 80 1 2025-10-16 03:10:11.249 00:00:00.000 UDP 28.104.0.1:46824 -> 198.28.0.2:53 1 64 1 2025-10-16 03:10:11.249 00:00:00.000 UDP 28.104.0.1:59489 -> 198.28.0.2:53 1 64 1 2025-10-16 03:11:11.542 00:00:00.000 UDP 28.104.0.1:47492 -> 198.28.0.2:53 1 64 1 2025-10-16 03:11:11.542 00:00:00.000 UDP 28.104.0.1:48582 -> 198.28.0.2:53 1 64 1 2025-10-16 03:11:11.552 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48582 1 80 1 2025-10-16 03:11:11.552 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47492 1 109 1 2025-10-16 03:07:42.699 00:05:09.346 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:12:11.837 00:00:00.000 UDP 28.104.0.1:35824 -> 198.28.0.2:53 1 64 1 2025-10-16 03:12:11.837 00:00:00.000 UDP 28.104.0.1:49918 -> 198.28.0.2:53 1 64 1 2025-10-16 03:12:11.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49918 1 80 1 2025-10-16 03:12:11.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35824 1 109 1 2025-10-16 03:07:51.879 00:05:50.865 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:08:42.690 00:05:09.366 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:13:12.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36929 1 80 1 2025-10-16 03:13:12.240 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60324 1 109 1 2025-10-16 03:13:12.231 00:00:00.000 UDP 28.104.0.1:36929 -> 198.28.0.2:53 1 64 1 2025-10-16 03:13:12.231 00:00:00.000 UDP 28.104.0.1:60324 -> 198.28.0.2:53 1 64 1 2025-10-16 03:13:14.711 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:14:12.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58381 1 80 1 2025-10-16 03:14:12.538 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51936 1 109 1 2025-10-16 03:14:12.528 00:00:00.000 UDP 28.104.0.1:51936 -> 198.28.0.2:53 1 64 1 2025-10-16 03:14:12.528 00:00:00.000 UDP 28.104.0.1:58381 -> 198.28.0.2:53 1 64 1 2025-10-16 03:10:27.746 00:05:09.988 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2576 1 2025-10-16 03:10:42.690 00:05:09.203 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:10:51.848 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:15:13.345 00:00:00.000 UDP 28.104.0.1:35772 -> 198.28.0.2:53 1 64 1 2025-10-16 03:15:13.345 00:00:00.000 UDP 28.104.0.1:56542 -> 198.28.0.2:53 1 64 1 2025-10-16 03:15:13.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56542 1 80 1 2025-10-16 03:15:13.355 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35772 1 109 1 2025-10-16 03:16:13.638 00:00:00.000 UDP 28.104.0.1:53424 -> 198.28.0.2:53 1 64 1 2025-10-16 03:16:13.639 00:00:00.000 UDP 28.104.0.1:40363 -> 198.28.0.2:53 1 64 1 2025-10-16 03:16:13.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40363 1 109 1 2025-10-16 03:16:13.650 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53424 1 80 1 2025-10-16 03:11:52.046 00:06:00.037 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:17:13.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37651 1 109 1 2025-10-16 03:17:13.900 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58129 1 80 1 2025-10-16 03:17:13.891 00:00:00.000 UDP 28.104.0.1:37651 -> 198.28.0.2:53 1 64 1 2025-10-16 03:17:13.891 00:00:00.000 UDP 28.104.0.1:58129 -> 198.28.0.2:53 1 64 1 2025-10-16 03:13:42.703 00:05:09.343 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:18:14.928 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:18:14.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58926 1 109 1 2025-10-16 03:18:14.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56519 1 80 1 2025-10-16 03:18:14.185 00:00:00.000 UDP 28.104.0.1:58926 -> 198.28.0.2:53 1 64 1 2025-10-16 03:18:14.184 00:00:00.000 UDP 28.104.0.1:56519 -> 198.28.0.2:53 1 64 1 2025-10-16 03:13:51.881 00:05:50.870 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:14:42.689 00:05:09.369 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:19:14.508 00:00:00.000 UDP 28.104.0.1:60764 -> 198.28.0.2:53 1 64 1 2025-10-16 03:19:14.508 00:00:00.000 UDP 28.104.0.1:57198 -> 198.28.0.2:53 1 64 1 2025-10-16 03:19:14.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60764 1 80 1 2025-10-16 03:19:14.519 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57198 1 109 1 2025-10-16 03:15:47.735 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-10-16 03:20:14.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58994 1 109 1 2025-10-16 03:20:14.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34783 1 80 1 2025-10-16 03:20:14.796 00:00:00.000 UDP 28.104.0.1:34783 -> 198.28.0.2:53 1 64 1 2025-10-16 03:20:14.796 00:00:00.000 UDP 28.104.0.1:58994 -> 198.28.0.2:53 1 64 1 2025-10-16 03:16:51.850 00:05:00.199 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:16:42.691 00:05:09.206 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:21:15.106 00:00:00.000 UDP 28.104.0.1:39376 -> 198.28.0.2:53 1 64 1 2025-10-16 03:21:15.105 00:00:00.000 UDP 28.104.0.1:47404 -> 198.28.0.2:53 1 64 1 2025-10-16 03:21:15.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39376 1 80 1 2025-10-16 03:21:15.117 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47404 1 109 1 2025-10-16 03:22:15.456 00:00:00.000 UDP 28.104.0.1:58730 -> 198.28.0.2:53 1 64 1 2025-10-16 03:22:15.456 00:00:00.000 UDP 28.104.0.1:53646 -> 198.28.0.2:53 1 64 1 2025-10-16 03:22:15.468 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53646 1 80 1 2025-10-16 03:22:15.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58730 1 109 1 2025-10-16 03:23:15.763 00:00:00.000 UDP 28.104.0.1:39383 -> 198.28.0.2:53 1 64 1 2025-10-16 03:23:15.763 00:00:00.000 UDP 28.104.0.1:57812 -> 198.28.0.2:53 1 64 1 2025-10-16 03:23:14.994 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:23:15.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57812 1 109 1 2025-10-16 03:23:15.772 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39383 1 80 1 2025-10-16 03:18:52.046 00:06:00.043 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:19:42.701 00:05:09.348 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:24:16.483 00:00:00.000 UDP 28.104.0.1:52597 -> 198.28.0.2:53 1 64 1 2025-10-16 03:24:16.483 00:00:00.000 UDP 28.104.0.1:42993 -> 198.28.0.2:53 1 64 1 2025-10-16 03:24:16.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42993 1 80 1 2025-10-16 03:24:16.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52597 1 109 1 2025-10-16 03:19:51.885 00:05:50.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:20:42.691 00:05:09.368 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:25:16.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53259 1 80 1 2025-10-16 03:25:16.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60450 1 109 1 2025-10-16 03:25:16.774 00:00:00.000 UDP 28.104.0.1:60450 -> 198.28.0.2:53 1 64 1 2025-10-16 03:25:16.774 00:00:00.000 UDP 28.104.0.1:53259 -> 198.28.0.2:53 1 64 1 2025-10-16 03:21:07.743 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-10-16 03:26:17.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40250 1 109 1 2025-10-16 03:26:17.080 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40569 1 80 1 2025-10-16 03:26:17.070 00:00:00.000 UDP 28.104.0.1:40569 -> 198.28.0.2:53 1 64 1 2025-10-16 03:26:17.070 00:00:00.000 UDP 28.104.0.1:40250 -> 198.28.0.2:53 1 64 1 2025-10-16 03:22:42.692 00:05:09.206 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:22:51.855 00:05:00.195 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:27:17.450 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56209 1 109 1 2025-10-16 03:27:17.449 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40428 1 80 1 2025-10-16 03:27:17.439 00:00:00.000 UDP 28.104.0.1:56209 -> 198.28.0.2:53 1 64 1 2025-10-16 03:27:17.439 00:00:00.000 UDP 28.104.0.1:40428 -> 198.28.0.2:53 1 64 1 2025-10-16 03:28:15.165 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:28:17.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60997 1 109 1 2025-10-16 03:28:17.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53289 1 80 1 2025-10-16 03:28:17.697 00:00:00.000 UDP 28.104.0.1:53289 -> 198.28.0.2:53 1 64 1 2025-10-16 03:28:17.697 00:00:00.000 UDP 28.104.0.1:60997 -> 198.28.0.2:53 1 64 1 2025-10-16 03:29:18.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37797 1 109 1 2025-10-16 03:29:18.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45087 1 80 1 2025-10-16 03:29:18.004 00:00:00.000 UDP 28.104.0.1:37797 -> 198.28.0.2:53 1 64 1 2025-10-16 03:29:18.004 00:00:00.000 UDP 28.104.0.1:45087 -> 198.28.0.2:53 1 64 1 2025-10-16 03:25:42.702 00:05:09.348 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:30:18.313 00:00:00.000 UDP 28.104.0.1:40610 -> 198.28.0.2:53 1 64 1 2025-10-16 03:30:18.313 00:00:00.000 UDP 28.104.0.1:43166 -> 198.28.0.2:53 1 64 1 2025-10-16 03:30:18.324 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40610 1 109 1 2025-10-16 03:30:18.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43166 1 80 1 2025-10-16 03:26:27.753 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2436 1 2025-10-16 03:25:51.892 00:05:50.852 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:25:52.050 00:06:00.041 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:26:42.693 00:05:09.368 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:31:18.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50481 1 109 1 2025-10-16 03:31:18.619 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36471 1 80 1 2025-10-16 03:31:18.608 00:00:00.000 UDP 28.104.0.1:36471 -> 198.28.0.2:53 1 64 1 2025-10-16 03:31:18.608 00:00:00.000 UDP 28.104.0.1:50481 -> 198.28.0.2:53 1 64 1 2025-10-16 03:32:18.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51814 1 109 1 2025-10-16 03:32:18.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47509 1 80 1 2025-10-16 03:32:18.914 00:00:00.000 UDP 28.104.0.1:47509 -> 198.28.0.2:53 1 64 1 2025-10-16 03:32:18.914 00:00:00.000 UDP 28.104.0.1:51814 -> 198.28.0.2:53 1 64 1 2025-10-16 03:28:51.857 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:28:42.694 00:05:09.206 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:33:15.045 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:33:28.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36753 1 109 1 2025-10-16 03:33:28.513 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54976 1 80 1 2025-10-16 03:33:28.503 00:00:00.000 UDP 28.104.0.1:36753 -> 198.28.0.2:53 1 64 1 2025-10-16 03:33:28.503 00:00:00.000 UDP 28.104.0.1:54976 -> 198.28.0.2:53 1 64 1 2025-10-16 03:34:28.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39721 1 80 1 2025-10-16 03:34:28.823 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41368 1 109 1 2025-10-16 03:34:28.812 00:00:00.000 UDP 28.104.0.1:39721 -> 198.28.0.2:53 1 64 1 2025-10-16 03:34:28.812 00:00:00.000 UDP 28.104.0.1:41368 -> 198.28.0.2:53 1 64 1 2025-10-16 03:35:29.107 00:00:00.000 UDP 28.104.0.1:33422 -> 198.28.0.2:53 1 64 1 2025-10-16 03:35:29.107 00:00:00.000 UDP 28.104.0.1:38483 -> 198.28.0.2:53 1 64 1 2025-10-16 03:35:29.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33422 1 80 1 2025-10-16 03:35:29.118 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38483 1 109 1 2025-10-16 03:31:42.704 00:05:09.351 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:31:47.756 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2824 1 2025-10-16 03:36:29.415 00:00:00.000 UDP 28.104.0.1:52751 -> 198.28.0.2:53 1 64 1 2025-10-16 03:36:29.415 00:00:00.000 UDP 28.104.0.1:53271 -> 198.28.0.2:53 1 64 1 2025-10-16 03:36:29.428 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53271 1 109 1 2025-10-16 03:36:29.427 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52751 1 80 1 2025-10-16 03:31:51.888 00:05:50.857 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:32:42.695 00:05:09.371 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:37:29.718 00:00:00.000 UDP 28.104.0.1:59271 -> 198.28.0.2:53 1 64 1 2025-10-16 03:37:29.718 00:00:00.000 UDP 28.104.0.1:56315 -> 198.28.0.2:53 1 64 1 2025-10-16 03:37:29.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59271 1 80 1 2025-10-16 03:37:29.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56315 1 109 1 2025-10-16 03:32:52.052 00:06:00.040 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:38:15.230 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:38:30.045 00:00:00.000 UDP 28.104.0.1:33560 -> 198.28.0.2:53 1 64 1 2025-10-16 03:38:30.045 00:00:00.000 UDP 28.104.0.1:59100 -> 198.28.0.2:53 1 64 1 2025-10-16 03:38:30.056 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59100 1 109 1 2025-10-16 03:38:30.055 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33560 1 80 1 2025-10-16 03:34:51.858 00:05:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:34:42.695 00:05:09.209 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:39:30.364 00:00:00.000 UDP 28.104.0.1:57546 -> 198.28.0.2:53 1 64 1 2025-10-16 03:39:30.364 00:00:00.000 UDP 28.104.0.1:42725 -> 198.28.0.2:53 1 64 1 2025-10-16 03:39:30.375 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57546 1 80 1 2025-10-16 03:39:30.376 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42725 1 109 1 2025-10-16 03:40:30.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35052 1 109 1 2025-10-16 03:40:30.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43722 1 80 1 2025-10-16 03:40:30.648 00:00:00.000 UDP 28.104.0.1:43722 -> 198.28.0.2:53 1 64 1 2025-10-16 03:40:30.648 00:00:00.000 UDP 28.104.0.1:35052 -> 198.28.0.2:53 1 64 1 2025-10-16 03:37:07.766 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-10-16 03:41:30.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33683 1 80 1 2025-10-16 03:41:30.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50611 1 109 1 2025-10-16 03:41:30.894 00:00:00.000 UDP 28.104.0.1:50611 -> 198.28.0.2:53 1 64 1 2025-10-16 03:41:30.895 00:00:00.000 UDP 28.104.0.1:33683 -> 198.28.0.2:53 1 64 1 2025-10-16 03:37:42.704 00:05:09.355 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:42:31.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51575 1 109 1 2025-10-16 03:42:31.213 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51439 1 80 1 2025-10-16 03:42:31.203 00:00:00.000 UDP 28.104.0.1:51575 -> 198.28.0.2:53 1 64 1 2025-10-16 03:42:31.203 00:00:00.000 UDP 28.104.0.1:51439 -> 198.28.0.2:53 1 64 1 2025-10-16 03:37:51.895 00:05:50.852 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:38:42.696 00:05:09.375 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:43:15.451 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:43:31.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58352 1 80 1 2025-10-16 03:43:31.510 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46636 1 109 1 2025-10-16 03:43:31.499 00:00:00.000 UDP 28.104.0.1:46636 -> 198.28.0.2:53 1 64 1 2025-10-16 03:43:31.499 00:00:00.000 UDP 28.104.0.1:58352 -> 198.28.0.2:53 1 64 1 2025-10-16 03:44:33.011 00:00:00.000 UDP 28.104.0.1:54148 -> 198.28.0.2:53 1 64 1 2025-10-16 03:44:33.011 00:00:00.000 UDP 28.104.0.1:57728 -> 198.28.0.2:53 1 64 1 2025-10-16 03:44:33.024 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54148 1 80 1 2025-10-16 03:44:33.025 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57728 1 109 1 2025-10-16 03:40:42.696 00:05:09.207 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:40:51.858 00:05:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:39:52.055 00:06:00.041 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:45:33.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44429 1 80 1 2025-10-16 03:45:33.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51057 1 109 1 2025-10-16 03:45:33.306 00:00:00.000 UDP 28.104.0.1:51057 -> 198.28.0.2:53 1 64 1 2025-10-16 03:45:33.306 00:00:00.000 UDP 28.104.0.1:44429 -> 198.28.0.2:53 1 64 1 2025-10-16 03:46:33.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48316 1 80 1 2025-10-16 03:46:33.614 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36861 1 109 1 2025-10-16 03:46:33.604 00:00:00.000 UDP 28.104.0.1:48316 -> 198.28.0.2:53 1 64 1 2025-10-16 03:46:33.604 00:00:00.000 UDP 28.104.0.1:36861 -> 198.28.0.2:53 1 64 1 2025-10-16 03:42:27.768 00:05:10.013 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-16 03:47:33.893 00:00:00.000 UDP 28.104.0.1:37861 -> 198.28.0.2:53 1 64 1 2025-10-16 03:47:33.893 00:00:00.000 UDP 28.104.0.1:41916 -> 198.28.0.2:53 1 64 1 2025-10-16 03:47:33.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41916 1 109 1 2025-10-16 03:47:33.903 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37861 1 80 1 2025-10-16 03:43:42.706 00:05:09.356 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:48:15.614 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:48:34.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60672 1 109 1 2025-10-16 03:48:34.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52263 1 80 1 2025-10-16 03:48:34.195 00:00:00.000 UDP 28.104.0.1:60672 -> 198.28.0.2:53 1 64 1 2025-10-16 03:48:34.195 00:00:00.000 UDP 28.104.0.1:52263 -> 198.28.0.2:53 1 64 1 2025-10-16 03:43:51.893 00:05:50.855 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:44:42.698 00:05:09.376 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:49:34.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57211 1 80 1 2025-10-16 03:49:34.455 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33731 1 109 1 2025-10-16 03:49:34.447 00:00:00.000 UDP 28.104.0.1:33731 -> 198.28.0.2:53 1 64 1 2025-10-16 03:49:34.447 00:00:00.000 UDP 28.104.0.1:57211 -> 198.28.0.2:53 1 64 1 2025-10-16 03:50:34.741 00:00:00.000 UDP 28.104.0.1:43809 -> 198.28.0.2:53 1 64 1 2025-10-16 03:50:34.741 00:00:00.000 UDP 28.104.0.1:48500 -> 198.28.0.2:53 1 64 1 2025-10-16 03:50:34.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48500 1 109 1 2025-10-16 03:50:34.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43809 1 80 1 2025-10-16 03:46:51.859 00:05:00.205 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:46:42.697 00:05:09.208 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:51:35.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43732 1 109 1 2025-10-16 03:51:35.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54825 1 80 1 2025-10-16 03:51:35.055 00:00:00.000 UDP 28.104.0.1:54825 -> 198.28.0.2:53 1 64 1 2025-10-16 03:51:35.055 00:00:00.000 UDP 28.104.0.1:43732 -> 198.28.0.2:53 1 64 1 2025-10-16 03:46:52.061 00:06:00.037 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 03:47:47.781 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2596 1 2025-10-16 03:52:35.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44716 1 80 1 2025-10-16 03:52:35.403 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44650 1 109 1 2025-10-16 03:52:35.392 00:00:00.000 UDP 28.104.0.1:44716 -> 198.28.0.2:53 1 64 1 2025-10-16 03:52:35.392 00:00:00.000 UDP 28.104.0.1:44650 -> 198.28.0.2:53 1 64 1 2025-10-16 03:53:15.611 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:53:35.643 00:00:00.000 UDP 28.104.0.1:46756 -> 198.28.0.2:53 1 64 1 2025-10-16 03:53:35.643 00:00:00.000 UDP 28.104.0.1:44717 -> 198.28.0.2:53 1 64 1 2025-10-16 03:53:35.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46756 1 80 1 2025-10-16 03:53:35.654 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44717 1 109 1 2025-10-16 03:49:42.707 00:05:09.356 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 03:54:35.938 00:00:00.000 UDP 28.104.0.1:36644 -> 198.28.0.2:53 1 64 1 2025-10-16 03:54:35.938 00:00:00.000 UDP 28.104.0.1:34486 -> 198.28.0.2:53 1 64 1 2025-10-16 03:54:35.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34486 1 109 1 2025-10-16 03:54:35.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36644 1 80 1 2025-10-16 03:49:51.893 00:05:50.856 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 03:50:42.699 00:05:09.376 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 03:55:36.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39895 1 109 1 2025-10-16 03:55:36.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55835 1 80 1 2025-10-16 03:55:36.213 00:00:00.000 UDP 28.104.0.1:39895 -> 198.28.0.2:53 1 64 1 2025-10-16 03:55:36.213 00:00:00.000 UDP 28.104.0.1:55835 -> 198.28.0.2:53 1 64 1 2025-10-16 03:56:36.523 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44761 1 80 1 2025-10-16 03:56:36.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60484 1 109 1 2025-10-16 03:56:36.511 00:00:00.000 UDP 28.104.0.1:60484 -> 198.28.0.2:53 1 64 1 2025-10-16 03:56:36.511 00:00:00.000 UDP 28.104.0.1:44761 -> 198.28.0.2:53 1 64 1 2025-10-16 03:52:51.859 00:05:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-10-16 03:52:42.699 00:05:09.220 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 03:53:07.785 00:05:10.015 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-16 03:57:36.829 00:00:00.000 UDP 28.104.0.1:53721 -> 198.28.0.2:53 1 64 1 2025-10-16 03:57:36.828 00:00:00.000 UDP 28.104.0.1:39718 -> 198.28.0.2:53 1 64 1 2025-10-16 03:57:36.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39718 1 109 1 2025-10-16 03:57:36.840 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53721 1 80 1 2025-10-16 03:58:15.729 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 03:58:37.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54784 1 109 1 2025-10-16 03:58:37.143 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50119 1 80 1 2025-10-16 03:58:37.133 00:00:00.000 UDP 28.104.0.1:54784 -> 198.28.0.2:53 1 64 1 2025-10-16 03:58:37.133 00:00:00.000 UDP 28.104.0.1:50119 -> 198.28.0.2:53 1 64 1 2025-10-16 03:53:52.064 00:06:00.037 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 Summary: total flows: 322, total bytes: 95037, total packets: 1401, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-10-16 02:55:42 - 2025-10-16 03:59:52 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0059s User: 0.0020s Wall: 0.0041s flows/second: 78557.8 Runtime: 0.0041s