Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 11:59:27.741 00:00:00.000 UDP 28.104.0.1:56310 -> 198.28.0.2:53 1 64 1 2025-10-16 11:59:27.740 00:00:00.000 UDP 28.104.0.1:40498 -> 198.28.0.2:53 1 64 1 2025-10-16 11:59:27.751 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56310 1 109 1 2025-10-16 11:59:27.750 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40498 1 80 1 2025-10-16 11:55:42.865 00:05:09.338 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 11:55:42.905 00:05:09.221 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:00:28.078 00:00:00.000 UDP 28.104.0.1:41781 -> 198.28.0.2:53 1 64 1 2025-10-16 12:00:28.077 00:00:00.000 UDP 28.104.0.1:46547 -> 198.28.0.2:53 1 64 1 2025-10-16 12:00:28.087 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46547 1 109 1 2025-10-16 12:00:28.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41781 1 80 1 2025-10-16 11:56:42.855 00:05:09.359 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:01:28.376 00:00:00.000 UDP 28.104.0.1:49275 -> 198.28.0.2:53 1 64 1 2025-10-16 12:01:28.376 00:00:00.000 UDP 28.104.0.1:40728 -> 198.28.0.2:53 1 64 1 2025-10-16 12:01:28.386 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40728 1 80 1 2025-10-16 12:01:28.386 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49275 1 109 1 2025-10-16 11:56:52.200 00:06:00.055 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 11:57:58.518 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-16 12:02:28.670 00:00:00.000 UDP 28.104.0.1:54817 -> 198.28.0.2:53 1 64 1 2025-10-16 12:02:28.670 00:00:00.000 UDP 28.104.0.1:33542 -> 198.28.0.2:53 1 64 1 2025-10-16 12:02:28.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33542 1 80 1 2025-10-16 12:02:28.680 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54817 1 109 1 2025-10-16 11:58:42.854 00:05:09.282 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:03:28.962 00:00:00.000 UDP 28.104.0.1:44868 -> 198.28.0.2:53 1 64 1 2025-10-16 12:03:28.962 00:00:00.000 UDP 28.104.0.1:34733 -> 198.28.0.2:53 1 64 1 2025-10-16 12:03:28.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34733 1 80 1 2025-10-16 12:03:25.287 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:03:28.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44868 1 109 1 2025-10-16 11:58:52.032 00:06:00.172 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:04:29.265 00:00:00.000 UDP 28.104.0.1:57335 -> 198.28.0.2:53 1 64 1 2025-10-16 12:04:29.265 00:00:00.000 UDP 28.104.0.1:37031 -> 198.28.0.2:53 1 64 1 2025-10-16 12:04:29.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57335 1 80 1 2025-10-16 12:04:29.274 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37031 1 109 1 2025-10-16 12:05:29.569 00:00:00.000 UDP 28.104.0.1:32884 -> 198.28.0.2:53 1 64 1 2025-10-16 12:05:29.569 00:00:00.000 UDP 28.104.0.1:54365 -> 198.28.0.2:53 1 64 1 2025-10-16 12:05:29.580 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54365 1 80 1 2025-10-16 12:05:29.581 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32884 1 109 1 2025-10-16 12:01:42.905 00:05:09.222 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:01:42.865 00:05:09.338 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:06:29.889 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42996 1 109 1 2025-10-16 12:06:29.889 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47455 1 80 1 2025-10-16 12:06:29.878 00:00:00.000 UDP 28.104.0.1:42996 -> 198.28.0.2:53 1 64 1 2025-10-16 12:06:29.878 00:00:00.000 UDP 28.104.0.1:47455 -> 198.28.0.2:53 1 64 1 2025-10-16 12:02:42.861 00:05:09.355 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:07:30.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40557 1 109 1 2025-10-16 12:07:30.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47036 1 80 1 2025-10-16 12:07:30.243 00:00:00.000 UDP 28.104.0.1:47036 -> 198.28.0.2:53 1 64 1 2025-10-16 12:07:30.243 00:00:00.000 UDP 28.104.0.1:40557 -> 198.28.0.2:53 1 64 1 2025-10-16 12:03:18.532 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2628 1 2025-10-16 12:08:25.526 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:08:30.526 00:00:00.000 UDP 28.104.0.1:39890 -> 198.28.0.2:53 1 64 1 2025-10-16 12:08:30.526 00:00:00.000 UDP 28.104.0.1:56057 -> 198.28.0.2:53 1 64 1 2025-10-16 12:08:30.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39890 1 109 1 2025-10-16 12:08:30.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56057 1 80 1 2025-10-16 12:03:52.204 00:06:00.054 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:04:42.863 00:05:09.277 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:09:30.818 00:00:00.000 UDP 28.104.0.1:51431 -> 198.28.0.2:53 1 64 1 2025-10-16 12:09:30.818 00:00:00.000 UDP 28.104.0.1:58731 -> 198.28.0.2:53 1 64 1 2025-10-16 12:09:30.828 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51431 1 80 1 2025-10-16 12:09:30.830 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58731 1 109 1 2025-10-16 12:10:31.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47961 1 80 1 2025-10-16 12:10:31.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47443 1 109 1 2025-10-16 12:10:31.117 00:00:00.000 UDP 28.104.0.1:47961 -> 198.28.0.2:53 1 64 1 2025-10-16 12:10:31.117 00:00:00.000 UDP 28.104.0.1:47443 -> 198.28.0.2:53 1 64 1 2025-10-16 12:05:52.034 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:11:31.418 00:00:00.000 UDP 28.104.0.1:43268 -> 198.28.0.2:53 1 64 1 2025-10-16 12:11:31.418 00:00:00.000 UDP 28.104.0.1:39143 -> 198.28.0.2:53 1 64 1 2025-10-16 12:11:31.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39143 1 80 1 2025-10-16 12:11:31.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43268 1 109 1 2025-10-16 12:07:42.874 00:05:09.333 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:07:42.914 00:05:09.215 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:12:31.672 00:00:00.000 UDP 28.104.0.1:34051 -> 198.28.0.2:53 1 64 1 2025-10-16 12:12:31.672 00:00:00.000 UDP 28.104.0.1:33076 -> 198.28.0.2:53 1 64 1 2025-10-16 12:12:31.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34051 1 109 1 2025-10-16 12:12:31.682 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33076 1 80 1 2025-10-16 12:08:38.536 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2664 1 2025-10-16 12:08:42.864 00:05:09.354 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:13:25.792 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:13:31.962 00:00:00.000 UDP 28.104.0.1:54047 -> 198.28.0.2:53 1 64 1 2025-10-16 12:13:31.962 00:00:00.000 UDP 28.104.0.1:37480 -> 198.28.0.2:53 1 64 1 2025-10-16 12:13:31.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37480 1 80 1 2025-10-16 12:13:31.973 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54047 1 109 1 2025-10-16 12:14:32.589 00:00:00.000 UDP 28.104.0.1:35527 -> 198.28.0.2:53 1 64 1 2025-10-16 12:14:32.589 00:00:00.000 UDP 28.104.0.1:46787 -> 198.28.0.2:53 1 64 1 2025-10-16 12:14:32.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46787 1 109 1 2025-10-16 12:14:32.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35527 1 80 1 2025-10-16 12:10:42.864 00:05:09.277 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:15:32.883 00:00:00.000 UDP 28.104.0.1:41248 -> 198.28.0.2:53 1 64 1 2025-10-16 12:15:32.884 00:00:00.000 UDP 28.104.0.1:60420 -> 198.28.0.2:53 1 64 1 2025-10-16 12:15:32.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60420 1 109 1 2025-10-16 12:15:32.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41248 1 80 1 2025-10-16 12:10:52.207 00:06:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:16:33.204 00:00:00.000 UDP 28.104.0.1:54125 -> 198.28.0.2:53 1 64 1 2025-10-16 12:16:33.205 00:00:00.000 UDP 28.104.0.1:46740 -> 198.28.0.2:53 1 64 1 2025-10-16 12:16:33.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54125 1 80 1 2025-10-16 12:16:33.214 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46740 1 109 1 2025-10-16 12:17:33.454 00:00:00.000 UDP 28.104.0.1:52299 -> 198.28.0.2:53 1 64 1 2025-10-16 12:17:33.454 00:00:00.000 UDP 28.104.0.1:35415 -> 198.28.0.2:53 1 64 1 2025-10-16 12:17:33.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35415 1 109 1 2025-10-16 12:17:33.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52299 1 80 1 2025-10-16 12:13:42.916 00:05:09.216 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:12:52.037 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:13:42.876 00:05:09.335 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:13:58.550 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-10-16 12:18:33.705 00:00:00.000 UDP 28.104.0.1:34016 -> 198.28.0.2:53 1 64 1 2025-10-16 12:18:33.705 00:00:00.000 UDP 28.104.0.1:54426 -> 198.28.0.2:53 1 64 1 2025-10-16 12:18:25.518 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:18:33.714 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34016 1 109 1 2025-10-16 12:18:33.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54426 1 80 1 2025-10-16 12:14:42.867 00:05:09.354 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:19:34.057 00:00:00.000 UDP 28.104.0.1:60514 -> 198.28.0.2:53 1 64 1 2025-10-16 12:19:34.057 00:00:00.000 UDP 28.104.0.1:54345 -> 198.28.0.2:53 1 64 1 2025-10-16 12:19:34.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54345 1 80 1 2025-10-16 12:19:34.068 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60514 1 109 1 2025-10-16 12:20:34.352 00:00:00.000 UDP 28.104.0.1:38407 -> 198.28.0.2:53 1 64 1 2025-10-16 12:20:34.352 00:00:00.000 UDP 28.104.0.1:53612 -> 198.28.0.2:53 1 64 1 2025-10-16 12:20:34.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53612 1 80 1 2025-10-16 12:20:34.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38407 1 109 1 2025-10-16 12:16:42.867 00:05:09.275 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:21:34.640 00:00:00.000 UDP 28.104.0.1:48416 -> 198.28.0.2:53 1 64 1 2025-10-16 12:21:34.640 00:00:00.000 UDP 28.104.0.1:56261 -> 198.28.0.2:53 1 64 1 2025-10-16 12:21:34.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48416 1 109 1 2025-10-16 12:21:34.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56261 1 80 1 2025-10-16 12:22:34.988 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40901 1 109 1 2025-10-16 12:22:34.988 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35385 1 80 1 2025-10-16 12:22:34.980 00:00:00.000 UDP 28.104.0.1:35385 -> 198.28.0.2:53 1 64 1 2025-10-16 12:22:34.980 00:00:00.000 UDP 28.104.0.1:40901 -> 198.28.0.2:53 1 64 1 2025-10-16 12:17:52.210 00:06:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:23:25.771 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:19:18.554 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2596 1 2025-10-16 12:23:35.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40788 1 80 1 2025-10-16 12:23:35.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35227 1 109 1 2025-10-16 12:23:35.234 00:00:00.000 UDP 28.104.0.1:40788 -> 198.28.0.2:53 1 64 1 2025-10-16 12:23:35.234 00:00:00.000 UDP 28.104.0.1:35227 -> 198.28.0.2:53 1 64 1 2025-10-16 12:19:42.918 00:05:09.215 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:19:42.878 00:05:09.337 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:24:35.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41295 1 80 1 2025-10-16 12:24:35.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51104 1 109 1 2025-10-16 12:24:35.526 00:00:00.000 UDP 28.104.0.1:51104 -> 198.28.0.2:53 1 64 1 2025-10-16 12:24:35.527 00:00:00.000 UDP 28.104.0.1:41295 -> 198.28.0.2:53 1 64 1 2025-10-16 12:20:42.868 00:05:09.357 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:19:52.038 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:25:36.542 00:00:00.000 UDP 28.104.0.1:46954 -> 198.28.0.2:53 1 64 1 2025-10-16 12:25:36.542 00:00:00.000 UDP 28.104.0.1:36597 -> 198.28.0.2:53 1 64 1 2025-10-16 12:25:36.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36597 1 80 1 2025-10-16 12:25:36.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46954 1 109 1 2025-10-16 12:26:36.836 00:00:00.000 UDP 28.104.0.1:41405 -> 198.28.0.2:53 1 64 1 2025-10-16 12:26:36.836 00:00:00.000 UDP 28.104.0.1:34445 -> 198.28.0.2:53 1 64 1 2025-10-16 12:26:36.845 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34445 1 80 1 2025-10-16 12:26:36.846 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41405 1 109 1 2025-10-16 12:22:42.868 00:05:09.275 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:27:37.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34283 1 109 1 2025-10-16 12:27:37.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33243 1 80 1 2025-10-16 12:27:37.124 00:00:00.000 UDP 28.104.0.1:33243 -> 198.28.0.2:53 1 64 1 2025-10-16 12:27:37.124 00:00:00.000 UDP 28.104.0.1:34283 -> 198.28.0.2:53 1 64 1 2025-10-16 12:28:25.864 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:28:37.428 00:00:00.000 UDP 28.104.0.1:49106 -> 198.28.0.2:53 1 64 1 2025-10-16 12:28:37.428 00:00:00.000 UDP 28.104.0.1:44718 -> 198.28.0.2:53 1 64 1 2025-10-16 12:28:37.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44718 1 80 1 2025-10-16 12:28:37.437 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49106 1 109 1 2025-10-16 12:24:38.560 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-16 12:29:37.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53438 1 109 1 2025-10-16 12:29:37.744 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56838 1 80 1 2025-10-16 12:29:37.734 00:00:00.000 UDP 28.104.0.1:53438 -> 198.28.0.2:53 1 64 1 2025-10-16 12:29:37.734 00:00:00.000 UDP 28.104.0.1:56838 -> 198.28.0.2:53 1 64 1 2025-10-16 12:24:52.215 00:06:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:25:42.879 00:05:09.346 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:25:42.919 00:05:09.215 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:30:37.988 00:00:00.000 UDP 28.104.0.1:38262 -> 198.28.0.2:53 1 64 1 2025-10-16 12:30:37.988 00:00:00.000 UDP 28.104.0.1:57796 -> 198.28.0.2:53 1 64 1 2025-10-16 12:30:37.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38262 1 80 1 2025-10-16 12:30:37.997 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57796 1 109 1 2025-10-16 12:26:42.871 00:05:09.364 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:31:38.283 00:00:00.000 UDP 28.104.0.1:58992 -> 198.28.0.2:53 1 64 1 2025-10-16 12:31:38.283 00:00:00.000 UDP 28.104.0.1:56460 -> 198.28.0.2:53 1 64 1 2025-10-16 12:31:38.295 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58992 1 109 1 2025-10-16 12:31:38.293 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56460 1 80 1 2025-10-16 12:26:52.057 00:06:00.168 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:32:38.590 00:00:00.000 UDP 28.104.0.1:46647 -> 198.28.0.2:53 1 64 1 2025-10-16 12:32:38.590 00:00:00.000 UDP 28.104.0.1:36162 -> 198.28.0.2:53 1 64 1 2025-10-16 12:32:38.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36162 1 80 1 2025-10-16 12:32:38.600 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46647 1 109 1 2025-10-16 12:28:42.870 00:05:09.274 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:33:26.179 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:33:38.895 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43309 1 80 1 2025-10-16 12:33:38.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39451 1 109 1 2025-10-16 12:33:38.886 00:00:00.000 UDP 28.104.0.1:43309 -> 198.28.0.2:53 1 64 1 2025-10-16 12:33:38.886 00:00:00.000 UDP 28.104.0.1:39451 -> 198.28.0.2:53 1 64 1 2025-10-16 12:29:58.565 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2580 1 2025-10-16 12:34:39.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58702 1 109 1 2025-10-16 12:34:39.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40298 1 80 1 2025-10-16 12:34:39.212 00:00:00.000 UDP 28.104.0.1:40298 -> 198.28.0.2:53 1 64 1 2025-10-16 12:34:39.212 00:00:00.000 UDP 28.104.0.1:58702 -> 198.28.0.2:53 1 64 1 2025-10-16 12:35:39.512 00:00:00.000 UDP 28.104.0.1:48292 -> 198.28.0.2:53 1 64 1 2025-10-16 12:35:39.512 00:00:00.000 UDP 28.104.0.1:45506 -> 198.28.0.2:53 1 64 1 2025-10-16 12:35:39.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48292 1 80 1 2025-10-16 12:35:39.522 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45506 1 109 1 2025-10-16 12:31:42.882 00:05:09.343 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:31:42.922 00:05:09.213 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:36:39.801 00:00:00.000 UDP 28.104.0.1:43584 -> 198.28.0.2:53 1 64 1 2025-10-16 12:36:39.801 00:00:00.000 UDP 28.104.0.1:58829 -> 198.28.0.2:53 1 64 1 2025-10-16 12:36:39.812 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43584 1 109 1 2025-10-16 12:36:39.811 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58829 1 80 1 2025-10-16 12:31:52.225 00:06:00.044 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:32:42.872 00:05:09.364 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:37:40.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49443 1 80 1 2025-10-16 12:37:40.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43477 1 109 1 2025-10-16 12:37:40.097 00:00:00.000 UDP 28.104.0.1:49443 -> 198.28.0.2:53 1 64 1 2025-10-16 12:37:40.098 00:00:00.000 UDP 28.104.0.1:43477 -> 198.28.0.2:53 1 64 1 2025-10-16 12:38:26.167 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:38:40.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42533 1 109 1 2025-10-16 12:38:40.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42903 1 80 1 2025-10-16 12:38:40.414 00:00:00.000 UDP 28.104.0.1:42903 -> 198.28.0.2:53 1 64 1 2025-10-16 12:38:40.414 00:00:00.000 UDP 28.104.0.1:42533 -> 198.28.0.2:53 1 64 1 2025-10-16 12:33:52.074 00:06:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:34:42.872 00:05:09.273 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:35:09.169 00:05:09.413 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2572 1 2025-10-16 12:39:40.668 00:00:00.000 UDP 28.104.0.1:52485 -> 198.28.0.2:53 1 64 1 2025-10-16 12:39:40.668 00:00:00.000 UDP 28.104.0.1:57100 -> 198.28.0.2:53 1 64 1 2025-10-16 12:39:40.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52485 1 109 1 2025-10-16 12:39:40.678 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57100 1 80 1 2025-10-16 12:40:40.956 00:00:00.000 UDP 28.104.0.1:44387 -> 198.28.0.2:53 1 64 1 2025-10-16 12:40:40.956 00:00:00.000 UDP 28.104.0.1:37340 -> 198.28.0.2:53 1 64 1 2025-10-16 12:40:40.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37340 1 109 1 2025-10-16 12:40:40.967 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44387 1 80 1 2025-10-16 12:41:41.255 00:00:00.000 UDP 28.104.0.1:56972 -> 198.28.0.2:53 1 64 1 2025-10-16 12:41:41.255 00:00:00.000 UDP 28.104.0.1:46580 -> 198.28.0.2:53 1 64 1 2025-10-16 12:41:41.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46580 1 109 1 2025-10-16 12:41:41.265 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56972 1 80 1 2025-10-16 12:37:42.922 00:05:09.213 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:37:42.882 00:05:09.344 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:42:41.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57733 1 109 1 2025-10-16 12:42:41.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53689 1 80 1 2025-10-16 12:42:41.546 00:00:00.000 UDP 28.104.0.1:53689 -> 198.28.0.2:53 1 64 1 2025-10-16 12:42:41.546 00:00:00.000 UDP 28.104.0.1:57733 -> 198.28.0.2:53 1 64 1 2025-10-16 12:38:42.873 00:05:09.364 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:43:26.059 00:00:00.031 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:43:41.877 00:00:00.000 UDP 28.104.0.1:49247 -> 198.28.0.2:53 1 64 1 2025-10-16 12:43:41.876 00:00:00.000 UDP 28.104.0.1:40212 -> 198.28.0.2:53 1 64 1 2025-10-16 12:43:41.888 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49247 1 80 1 2025-10-16 12:43:41.887 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40212 1 109 1 2025-10-16 12:38:52.226 00:06:00.045 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:40:28.584 00:05:10.043 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-10-16 12:44:42.209 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33807 1 80 1 2025-10-16 12:44:42.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57717 1 109 1 2025-10-16 12:44:42.202 00:00:00.000 UDP 28.104.0.1:57717 -> 198.28.0.2:53 1 64 1 2025-10-16 12:44:42.201 00:00:00.000 UDP 28.104.0.1:33807 -> 198.28.0.2:53 1 64 1 2025-10-16 12:40:42.873 00:05:09.274 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:45:42.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47501 1 80 1 2025-10-16 12:45:42.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38446 1 109 1 2025-10-16 12:45:42.502 00:00:00.000 UDP 28.104.0.1:47501 -> 198.28.0.2:53 1 64 1 2025-10-16 12:45:42.502 00:00:00.000 UDP 28.104.0.1:38446 -> 198.28.0.2:53 1 64 1 2025-10-16 12:40:52.074 00:06:00.152 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:46:42.803 00:00:00.000 UDP 28.104.0.1:42594 -> 198.28.0.2:53 1 64 1 2025-10-16 12:46:42.803 00:00:00.000 UDP 28.104.0.1:39399 -> 198.28.0.2:53 1 64 1 2025-10-16 12:46:42.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39399 1 80 1 2025-10-16 12:46:42.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42594 1 109 1 2025-10-16 12:47:43.110 00:00:00.000 UDP 28.104.0.1:37747 -> 198.28.0.2:53 1 64 1 2025-10-16 12:47:43.109 00:00:00.000 UDP 28.104.0.1:57866 -> 198.28.0.2:53 1 64 1 2025-10-16 12:47:43.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37747 1 109 1 2025-10-16 12:47:43.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57866 1 80 1 2025-10-16 12:43:42.884 00:05:09.344 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:43:42.925 00:05:09.213 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:48:26.332 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:48:43.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44854 1 109 1 2025-10-16 12:48:43.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59038 1 80 1 2025-10-16 12:48:43.402 00:00:00.000 UDP 28.104.0.1:44854 -> 198.28.0.2:53 1 64 1 2025-10-16 12:48:43.402 00:00:00.000 UDP 28.104.0.1:59038 -> 198.28.0.2:53 1 64 1 2025-10-16 12:44:42.875 00:05:09.363 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:49:43.705 00:00:00.000 UDP 28.104.0.1:44156 -> 198.28.0.2:53 1 64 1 2025-10-16 12:49:43.705 00:00:00.000 UDP 28.104.0.1:41580 -> 198.28.0.2:53 1 64 1 2025-10-16 12:49:43.716 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44156 1 109 1 2025-10-16 12:49:43.715 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41580 1 80 1 2025-10-16 12:45:48.593 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-10-16 12:50:44.030 00:00:00.000 UDP 28.104.0.1:34996 -> 198.28.0.2:53 1 64 1 2025-10-16 12:50:44.032 00:00:00.000 UDP 28.104.0.1:45607 -> 198.28.0.2:53 1 64 1 2025-10-16 12:50:44.041 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45607 1 109 1 2025-10-16 12:50:44.038 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34996 1 80 1 2025-10-16 12:45:52.227 00:06:00.046 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:46:42.874 00:05:09.274 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:51:44.334 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51286 1 109 1 2025-10-16 12:51:44.335 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57320 1 80 1 2025-10-16 12:51:44.324 00:00:00.000 UDP 28.104.0.1:57320 -> 198.28.0.2:53 1 64 1 2025-10-16 12:51:44.324 00:00:00.000 UDP 28.104.0.1:51286 -> 198.28.0.2:53 1 64 1 2025-10-16 12:52:44.627 00:00:00.000 UDP 28.104.0.1:45307 -> 198.28.0.2:53 1 64 1 2025-10-16 12:52:44.627 00:00:00.000 UDP 28.104.0.1:50454 -> 198.28.0.2:53 1 64 1 2025-10-16 12:52:44.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45307 1 80 1 2025-10-16 12:52:44.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50454 1 109 1 2025-10-16 12:47:52.081 00:06:00.148 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 12:53:26.448 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:53:44.923 00:00:00.000 UDP 28.104.0.1:34192 -> 198.28.0.2:53 1 64 1 2025-10-16 12:53:44.923 00:00:00.000 UDP 28.104.0.1:36921 -> 198.28.0.2:53 1 64 1 2025-10-16 12:53:44.934 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34192 1 80 1 2025-10-16 12:53:44.935 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36921 1 109 1 2025-10-16 12:49:42.886 00:05:09.342 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 12:49:42.927 00:05:09.212 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 12:54:45.254 00:00:00.000 UDP 28.104.0.1:42454 -> 198.28.0.2:53 1 64 1 2025-10-16 12:54:45.254 00:00:00.000 UDP 28.104.0.1:54788 -> 198.28.0.2:53 1 64 1 2025-10-16 12:54:45.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54788 1 109 1 2025-10-16 12:54:45.263 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42454 1 80 1 2025-10-16 12:50:42.876 00:05:09.363 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 12:51:08.596 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2772 1 2025-10-16 12:55:45.510 00:00:00.000 UDP 28.104.0.1:51224 -> 198.28.0.2:53 1 64 1 2025-10-16 12:55:45.510 00:00:00.000 UDP 28.104.0.1:50157 -> 198.28.0.2:53 1 64 1 2025-10-16 12:55:45.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50157 1 80 1 2025-10-16 12:55:45.521 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51224 1 109 1 2025-10-16 12:56:45.804 00:00:00.000 UDP 28.104.0.1:38268 -> 198.28.0.2:53 1 64 1 2025-10-16 12:56:45.804 00:00:00.000 UDP 28.104.0.1:41551 -> 198.28.0.2:53 1 64 1 2025-10-16 12:56:45.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38268 1 80 1 2025-10-16 12:56:45.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41551 1 109 1 2025-10-16 12:52:42.876 00:05:09.273 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 12:57:46.149 00:00:00.000 UDP 28.104.0.1:51068 -> 198.28.0.2:53 1 64 1 2025-10-16 12:57:46.149 00:00:00.000 UDP 28.104.0.1:44357 -> 198.28.0.2:53 1 64 1 2025-10-16 12:57:46.160 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51068 1 109 1 2025-10-16 12:57:46.161 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44357 1 80 1 2025-10-16 12:52:52.228 00:06:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 12:58:26.381 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 12:58:46.436 00:00:00.000 UDP 28.104.0.1:43902 -> 198.28.0.2:53 1 64 1 2025-10-16 12:58:46.436 00:00:00.000 UDP 28.104.0.1:43879 -> 198.28.0.2:53 1 64 1 2025-10-16 12:58:46.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43902 1 80 1 2025-10-16 12:58:46.447 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43879 1 109 1 Summary: total flows: 320, total bytes: 94381, total packets: 1392, avg bps: 199, avg pps: 0, avg bpp: 67 Time window: 2025-10-16 11:55:42 - 2025-10-16 12:58:52 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0029s User: 0.0039s Wall: 0.0040s flows/second: 80182.6 Runtime: 0.0040s