Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-16 16:59:29.718 00:00:00.000 UDP 28.104.0.1:43377 -> 198.28.0.2:53 1 64 1 2025-10-16 16:59:29.717 00:00:00.000 UDP 28.104.0.1:58586 -> 198.28.0.2:53 1 64 1 2025-10-16 16:59:29.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58586 1 109 1 2025-10-16 16:59:29.728 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43377 1 80 1 2025-10-16 16:54:52.316 00:05:50.695 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 16:54:52.218 00:05:50.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:00:30.048 00:00:00.000 UDP 28.104.0.1:48434 -> 198.28.0.2:53 1 64 1 2025-10-16 17:00:30.048 00:00:00.000 UDP 28.104.0.1:53812 -> 198.28.0.2:53 1 64 1 2025-10-16 17:00:30.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53812 1 80 1 2025-10-16 17:00:30.059 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48434 1 109 1 2025-10-16 16:56:28.872 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2480 1 2025-10-16 16:56:43.001 00:05:09.331 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:01:30.337 00:00:00.000 UDP 28.104.0.1:37320 -> 198.28.0.2:53 1 64 1 2025-10-16 17:01:30.337 00:00:00.000 UDP 28.104.0.1:42273 -> 198.28.0.2:53 1 64 1 2025-10-16 17:01:30.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37320 1 109 1 2025-10-16 17:01:30.348 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42273 1 80 1 2025-10-16 17:02:30.641 00:00:00.000 UDP 28.104.0.1:49914 -> 198.28.0.2:53 1 64 1 2025-10-16 17:02:30.641 00:00:00.000 UDP 28.104.0.1:37515 -> 198.28.0.2:53 1 64 1 2025-10-16 17:02:30.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37515 1 109 1 2025-10-16 17:02:30.651 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49914 1 80 1 2025-10-16 16:57:52.232 00:05:50.809 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 16:57:52.320 00:06:00.045 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:03:30.943 00:00:00.000 UDP 28.104.0.1:41256 -> 198.28.0.2:53 1 64 1 2025-10-16 17:03:30.943 00:00:00.000 UDP 28.104.0.1:54223 -> 198.28.0.2:53 1 64 1 2025-10-16 17:03:30.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41256 1 80 1 2025-10-16 17:03:31.276 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:03:30.953 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54223 1 109 1 2025-10-16 17:04:31.239 00:00:00.000 UDP 28.104.0.1:58938 -> 198.28.0.2:53 1 64 1 2025-10-16 17:04:31.240 00:00:00.000 UDP 28.104.0.1:34995 -> 198.28.0.2:53 1 64 1 2025-10-16 17:04:31.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34995 1 109 1 2025-10-16 17:04:31.249 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58938 1 80 1 2025-10-16 16:59:52.145 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:05:31.533 00:00:00.000 UDP 28.104.0.1:49174 -> 198.28.0.2:53 1 64 1 2025-10-16 17:05:31.533 00:00:00.000 UDP 28.104.0.1:53226 -> 198.28.0.2:53 1 64 1 2025-10-16 17:05:31.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53226 1 80 1 2025-10-16 17:05:31.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49174 1 109 1 2025-10-16 17:00:52.323 00:05:50.692 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:00:52.222 00:05:50.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:01:48.876 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-16 17:06:31.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56797 1 109 1 2025-10-16 17:06:31.837 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54488 1 80 1 2025-10-16 17:06:31.829 00:00:00.000 UDP 28.104.0.1:56797 -> 198.28.0.2:53 1 64 1 2025-10-16 17:06:31.828 00:00:00.000 UDP 28.104.0.1:54488 -> 198.28.0.2:53 1 64 1 2025-10-16 17:02:43.001 00:05:09.333 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:07:32.123 00:00:00.000 UDP 28.104.0.1:48293 -> 198.28.0.2:53 1 64 1 2025-10-16 17:07:32.124 00:00:00.000 UDP 28.104.0.1:34816 -> 198.28.0.2:53 1 64 1 2025-10-16 17:07:32.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48293 1 109 1 2025-10-16 17:07:32.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34816 1 80 1 2025-10-16 17:08:32.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35808 1 109 1 2025-10-16 17:08:31.331 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:08:32.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45101 1 80 1 2025-10-16 17:08:32.431 00:00:00.000 UDP 28.104.0.1:45101 -> 198.28.0.2:53 1 64 1 2025-10-16 17:08:32.431 00:00:00.000 UDP 28.104.0.1:35808 -> 198.28.0.2:53 1 64 1 2025-10-16 17:03:52.233 00:05:50.773 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:09:32.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33932 1 80 1 2025-10-16 17:09:32.736 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35159 1 109 1 2025-10-16 17:09:32.726 00:00:00.000 UDP 28.104.0.1:35159 -> 198.28.0.2:53 1 64 1 2025-10-16 17:09:32.726 00:00:00.000 UDP 28.104.0.1:33932 -> 198.28.0.2:53 1 64 1 2025-10-16 17:04:52.322 00:06:00.044 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:10:33.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59901 1 109 1 2025-10-16 17:10:33.063 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49911 1 80 1 2025-10-16 17:10:33.052 00:00:00.000 UDP 28.104.0.1:59901 -> 198.28.0.2:53 1 64 1 2025-10-16 17:10:33.052 00:00:00.000 UDP 28.104.0.1:49911 -> 198.28.0.2:53 1 64 1 2025-10-16 17:07:08.887 00:05:10.014 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2772 1 2025-10-16 17:11:33.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50685 1 80 1 2025-10-16 17:11:33.349 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42108 1 109 1 2025-10-16 17:11:33.341 00:00:00.000 UDP 28.104.0.1:50685 -> 198.28.0.2:53 1 64 1 2025-10-16 17:11:33.340 00:00:00.000 UDP 28.104.0.1:42108 -> 198.28.0.2:53 1 64 1 2025-10-16 17:06:52.323 00:05:50.693 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:06:52.223 00:05:50.832 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:06:52.147 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:12:33.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41949 1 80 1 2025-10-16 17:12:33.638 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48633 1 109 1 2025-10-16 17:12:33.628 00:00:00.000 UDP 28.104.0.1:48633 -> 198.28.0.2:53 1 64 1 2025-10-16 17:12:33.629 00:00:00.000 UDP 28.104.0.1:41949 -> 198.28.0.2:53 1 64 1 2025-10-16 17:08:43.005 00:05:09.329 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:13:33.921 00:00:00.000 UDP 28.104.0.1:55662 -> 198.28.0.2:53 1 64 1 2025-10-16 17:13:33.921 00:00:00.000 UDP 28.104.0.1:38831 -> 198.28.0.2:53 1 64 1 2025-10-16 17:13:31.632 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:13:33.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38831 1 109 1 2025-10-16 17:13:33.932 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55662 1 80 1 2025-10-16 17:14:34.233 00:00:00.000 UDP 28.104.0.1:55507 -> 198.28.0.2:53 1 64 1 2025-10-16 17:14:34.233 00:00:00.000 UDP 28.104.0.1:43811 -> 198.28.0.2:53 1 64 1 2025-10-16 17:14:34.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43811 1 80 1 2025-10-16 17:14:34.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55507 1 109 1 2025-10-16 17:09:52.234 00:05:50.774 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:15:34.528 00:00:00.000 UDP 28.104.0.1:48363 -> 198.28.0.2:53 1 64 1 2025-10-16 17:15:34.528 00:00:00.000 UDP 28.104.0.1:45689 -> 198.28.0.2:53 1 64 1 2025-10-16 17:15:34.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48363 1 80 1 2025-10-16 17:15:34.539 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45689 1 109 1 2025-10-16 17:16:34.821 00:00:00.000 UDP 28.104.0.1:41850 -> 198.28.0.2:53 1 64 1 2025-10-16 17:16:34.821 00:00:00.000 UDP 28.104.0.1:58647 -> 198.28.0.2:53 1 64 1 2025-10-16 17:16:34.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58647 1 80 1 2025-10-16 17:16:34.832 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41850 1 109 1 2025-10-16 17:12:28.900 00:05:10.013 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-10-16 17:11:52.325 00:06:00.043 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:17:35.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34631 1 109 1 2025-10-16 17:17:35.172 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48493 1 80 1 2025-10-16 17:17:35.160 00:00:00.000 UDP 28.104.0.1:34631 -> 198.28.0.2:53 1 64 1 2025-10-16 17:17:35.160 00:00:00.000 UDP 28.104.0.1:48493 -> 198.28.0.2:53 1 64 1 2025-10-16 17:12:52.324 00:05:50.694 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:12:52.224 00:05:50.833 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:18:31.909 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:18:35.413 00:00:00.000 UDP 28.104.0.1:35412 -> 198.28.0.2:53 1 64 1 2025-10-16 17:18:35.413 00:00:00.000 UDP 28.104.0.1:53460 -> 198.28.0.2:53 1 64 1 2025-10-16 17:18:35.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35412 1 109 1 2025-10-16 17:18:35.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53460 1 80 1 2025-10-16 17:13:52.150 00:06:00.176 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:14:43.007 00:05:09.328 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:19:35.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59799 1 109 1 2025-10-16 17:19:35.721 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37559 1 80 1 2025-10-16 17:19:35.710 00:00:00.000 UDP 28.104.0.1:37559 -> 198.28.0.2:53 1 64 1 2025-10-16 17:19:35.710 00:00:00.000 UDP 28.104.0.1:59799 -> 198.28.0.2:53 1 64 1 2025-10-16 17:20:36.008 00:00:00.000 UDP 28.104.0.1:38407 -> 198.28.0.2:53 1 64 1 2025-10-16 17:20:36.008 00:00:00.000 UDP 28.104.0.1:60805 -> 198.28.0.2:53 1 64 1 2025-10-16 17:20:36.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38407 1 109 1 2025-10-16 17:20:36.020 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60805 1 80 1 2025-10-16 17:15:52.236 00:05:50.774 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:21:36.319 00:00:00.000 UDP 28.104.0.1:36585 -> 198.28.0.2:53 1 64 1 2025-10-16 17:21:36.319 00:00:00.000 UDP 28.104.0.1:42808 -> 198.28.0.2:53 1 64 1 2025-10-16 17:21:36.330 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36585 1 80 1 2025-10-16 17:21:36.331 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42808 1 109 1 2025-10-16 17:17:48.912 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2628 1 2025-10-16 17:22:36.626 00:00:00.000 UDP 28.104.0.1:37424 -> 198.28.0.2:53 1 64 1 2025-10-16 17:22:36.626 00:00:00.000 UDP 28.104.0.1:57044 -> 198.28.0.2:53 1 64 1 2025-10-16 17:22:36.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37424 1 109 1 2025-10-16 17:22:36.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57044 1 80 1 2025-10-16 17:23:31.776 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:23:36.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43904 1 80 1 2025-10-16 17:23:36.938 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49938 1 109 1 2025-10-16 17:23:36.928 00:00:00.000 UDP 28.104.0.1:43904 -> 198.28.0.2:53 1 64 1 2025-10-16 17:23:36.928 00:00:00.000 UDP 28.104.0.1:49938 -> 198.28.0.2:53 1 64 1 2025-10-16 17:18:52.226 00:05:50.869 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:18:52.325 00:05:50.730 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:18:52.325 00:06:00.043 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:24:37.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44858 1 80 1 2025-10-16 17:24:37.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56956 1 109 1 2025-10-16 17:24:37.251 00:00:00.000 UDP 28.104.0.1:44858 -> 198.28.0.2:53 1 64 1 2025-10-16 17:24:37.251 00:00:00.000 UDP 28.104.0.1:56956 -> 198.28.0.2:53 1 64 1 2025-10-16 17:20:43.009 00:05:09.328 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:25:37.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54211 1 109 1 2025-10-16 17:25:37.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37853 1 80 1 2025-10-16 17:25:37.550 00:00:00.000 UDP 28.104.0.1:37853 -> 198.28.0.2:53 1 64 1 2025-10-16 17:25:37.550 00:00:00.000 UDP 28.104.0.1:54211 -> 198.28.0.2:53 1 64 1 2025-10-16 17:20:52.150 00:06:00.176 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:26:37.805 00:00:00.000 UDP 28.104.0.1:45853 -> 198.28.0.2:53 1 64 1 2025-10-16 17:26:37.805 00:00:00.000 UDP 28.104.0.1:55459 -> 198.28.0.2:53 1 64 1 2025-10-16 17:26:37.815 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45853 1 80 1 2025-10-16 17:26:37.816 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55459 1 109 1 2025-10-16 17:21:52.236 00:05:50.809 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:23:08.919 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2576 1 2025-10-16 17:27:38.114 00:00:00.000 UDP 28.104.0.1:37255 -> 198.28.0.2:53 1 64 1 2025-10-16 17:27:38.114 00:00:00.000 UDP 28.104.0.1:54952 -> 198.28.0.2:53 1 64 1 2025-10-16 17:27:38.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54952 1 109 1 2025-10-16 17:27:38.124 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37255 1 80 1 2025-10-16 17:28:31.888 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:28:38.376 00:00:00.000 UDP 28.104.0.1:43237 -> 198.28.0.2:53 1 64 1 2025-10-16 17:28:38.376 00:00:00.000 UDP 28.104.0.1:54919 -> 198.28.0.2:53 1 64 1 2025-10-16 17:28:38.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43237 1 80 1 2025-10-16 17:28:38.387 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54919 1 109 1 2025-10-16 17:29:38.678 00:00:00.000 UDP 28.104.0.1:35005 -> 198.28.0.2:53 1 64 1 2025-10-16 17:29:38.679 00:00:00.000 UDP 28.104.0.1:50244 -> 198.28.0.2:53 1 64 1 2025-10-16 17:29:38.690 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50244 1 109 1 2025-10-16 17:29:38.689 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35005 1 80 1 2025-10-16 17:24:52.328 00:05:50.730 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:24:52.228 00:05:50.871 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:30:38.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32870 1 80 1 2025-10-16 17:30:38.989 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55352 1 109 1 2025-10-16 17:30:38.979 00:00:00.000 UDP 28.104.0.1:55352 -> 198.28.0.2:53 1 64 1 2025-10-16 17:30:38.979 00:00:00.000 UDP 28.104.0.1:32870 -> 198.28.0.2:53 1 64 1 2025-10-16 17:26:43.045 00:05:09.292 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:25:52.327 00:06:00.042 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:31:39.284 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35914 1 109 1 2025-10-16 17:31:39.287 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44468 1 80 1 2025-10-16 17:31:39.275 00:00:00.000 UDP 28.104.0.1:35914 -> 198.28.0.2:53 1 64 1 2025-10-16 17:31:39.275 00:00:00.000 UDP 28.104.0.1:44468 -> 198.28.0.2:53 1 64 1 2025-10-16 17:32:39.576 00:00:00.000 UDP 28.104.0.1:39684 -> 198.28.0.2:53 1 64 1 2025-10-16 17:28:28.922 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2640 1 2025-10-16 17:32:39.576 00:00:00.000 UDP 28.104.0.1:46105 -> 198.28.0.2:53 1 64 1 2025-10-16 17:32:39.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46105 1 109 1 2025-10-16 17:27:52.238 00:05:50.810 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:32:39.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39684 1 80 1 2025-10-16 17:27:52.152 00:06:00.175 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:33:32.062 00:00:00.041 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:33:39.882 00:00:00.000 UDP 28.104.0.1:49652 -> 198.28.0.2:53 1 64 1 2025-10-16 17:33:39.882 00:00:00.000 UDP 28.104.0.1:38393 -> 198.28.0.2:53 1 64 1 2025-10-16 17:33:39.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49652 1 80 1 2025-10-16 17:33:39.891 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38393 1 109 1 2025-10-16 17:34:40.199 00:00:00.000 UDP 28.104.0.1:52241 -> 198.28.0.2:53 1 64 1 2025-10-16 17:34:40.199 00:00:00.000 UDP 28.104.0.1:48783 -> 198.28.0.2:53 1 64 1 2025-10-16 17:34:40.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52241 1 80 1 2025-10-16 17:34:40.210 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48783 1 109 1 2025-10-16 17:35:40.508 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53285 1 80 1 2025-10-16 17:35:40.509 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47502 1 109 1 2025-10-16 17:35:40.497 00:00:00.000 UDP 28.104.0.1:47502 -> 198.28.0.2:53 1 64 1 2025-10-16 17:35:40.497 00:00:00.000 UDP 28.104.0.1:53285 -> 198.28.0.2:53 1 64 1 2025-10-16 17:30:52.228 00:05:50.872 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:30:52.327 00:05:50.733 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:36:40.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56074 1 109 1 2025-10-16 17:36:40.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37322 1 80 1 2025-10-16 17:36:40.749 00:00:00.000 UDP 28.104.0.1:56074 -> 198.28.0.2:53 1 64 1 2025-10-16 17:36:40.748 00:00:00.000 UDP 28.104.0.1:37322 -> 198.28.0.2:53 1 64 1 2025-10-16 17:32:43.047 00:05:09.291 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:37:41.056 00:00:00.000 UDP 28.104.0.1:46056 -> 198.28.0.2:53 1 64 1 2025-10-16 17:37:41.056 00:00:00.000 UDP 28.104.0.1:53323 -> 198.28.0.2:53 1 64 1 2025-10-16 17:37:41.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46056 1 80 1 2025-10-16 17:37:41.066 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53323 1 109 1 2025-10-16 17:32:52.326 00:06:00.047 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:33:48.926 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-10-16 17:38:32.774 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:38:41.367 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37231 1 109 1 2025-10-16 17:38:41.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33955 1 80 1 2025-10-16 17:33:52.238 00:05:50.811 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:38:41.358 00:00:00.000 UDP 28.104.0.1:37231 -> 198.28.0.2:53 1 64 1 2025-10-16 17:38:41.358 00:00:00.000 UDP 28.104.0.1:33955 -> 198.28.0.2:53 1 64 1 2025-10-16 17:39:41.619 00:00:00.000 UDP 28.104.0.1:52745 -> 198.28.0.2:53 1 64 1 2025-10-16 17:39:41.619 00:00:00.000 UDP 28.104.0.1:40567 -> 198.28.0.2:53 1 64 1 2025-10-16 17:39:41.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40567 1 109 1 2025-10-16 17:39:41.629 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52745 1 80 1 2025-10-16 17:34:52.155 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:40:41.912 00:00:00.000 UDP 28.104.0.1:34969 -> 198.28.0.2:53 1 64 1 2025-10-16 17:40:41.912 00:00:00.000 UDP 28.104.0.1:56198 -> 198.28.0.2:53 1 64 1 2025-10-16 17:40:41.923 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34969 1 80 1 2025-10-16 17:40:41.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56198 1 109 1 2025-10-16 17:36:52.328 00:05:50.732 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:36:52.228 00:05:50.873 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:41:42.231 00:00:00.000 UDP 28.104.0.1:34700 -> 198.28.0.2:53 1 64 1 2025-10-16 17:41:42.231 00:00:00.000 UDP 28.104.0.1:46996 -> 198.28.0.2:53 1 64 1 2025-10-16 17:41:42.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34700 1 80 1 2025-10-16 17:41:42.242 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46996 1 109 1 2025-10-16 17:42:42.525 00:00:00.000 UDP 28.104.0.1:42964 -> 198.28.0.2:53 1 64 1 2025-10-16 17:42:42.525 00:00:00.000 UDP 28.104.0.1:47929 -> 198.28.0.2:53 1 64 1 2025-10-16 17:42:42.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42964 1 80 1 2025-10-16 17:42:42.537 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47929 1 109 1 2025-10-16 17:38:43.051 00:05:09.289 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:39:08.937 00:05:10.025 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-16 17:43:32.165 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:43:42.814 00:00:00.000 UDP 28.104.0.1:51476 -> 198.28.0.2:53 1 64 1 2025-10-16 17:43:42.814 00:00:00.000 UDP 28.104.0.1:34833 -> 198.28.0.2:53 1 64 1 2025-10-16 17:43:42.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51476 1 109 1 2025-10-16 17:43:42.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34833 1 80 1 2025-10-16 17:44:43.106 00:00:00.000 UDP 28.104.0.1:54299 -> 198.28.0.2:53 1 64 1 2025-10-16 17:44:43.106 00:00:00.000 UDP 28.104.0.1:40142 -> 198.28.0.2:53 1 64 1 2025-10-16 17:44:43.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54299 1 80 1 2025-10-16 17:44:43.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40142 1 109 1 2025-10-16 17:39:52.240 00:05:50.823 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:39:52.329 00:06:00.054 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:45:43.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37720 1 80 1 2025-10-16 17:45:43.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52018 1 109 1 2025-10-16 17:45:43.400 00:00:00.000 UDP 28.104.0.1:37720 -> 198.28.0.2:53 1 64 1 2025-10-16 17:45:43.400 00:00:00.000 UDP 28.104.0.1:52018 -> 198.28.0.2:53 1 64 1 2025-10-16 17:46:43.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36174 1 109 1 2025-10-16 17:46:43.700 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43911 1 80 1 2025-10-16 17:46:43.691 00:00:00.000 UDP 28.104.0.1:36174 -> 198.28.0.2:53 1 64 1 2025-10-16 17:46:43.690 00:00:00.000 UDP 28.104.0.1:43911 -> 198.28.0.2:53 1 64 1 2025-10-16 17:41:52.157 00:06:00.174 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:42:52.230 00:05:50.874 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:42:52.329 00:05:50.735 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:47:44.002 00:00:00.000 UDP 28.104.0.1:58686 -> 198.28.0.2:53 1 64 1 2025-10-16 17:47:44.002 00:00:00.000 UDP 28.104.0.1:36589 -> 198.28.0.2:53 1 64 1 2025-10-16 17:47:44.013 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58686 1 80 1 2025-10-16 17:47:44.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36589 1 109 1 2025-10-16 17:48:32.751 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:44:28.963 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2700 1 2025-10-16 17:48:44.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40181 1 109 1 2025-10-16 17:48:44.315 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54361 1 80 1 2025-10-16 17:48:44.305 00:00:00.000 UDP 28.104.0.1:40181 -> 198.28.0.2:53 1 64 1 2025-10-16 17:48:44.305 00:00:00.000 UDP 28.104.0.1:54361 -> 198.28.0.2:53 1 64 1 2025-10-16 17:44:43.052 00:05:09.290 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:49:44.605 00:00:00.000 UDP 28.104.0.1:48805 -> 198.28.0.2:53 1 64 1 2025-10-16 17:49:44.605 00:00:00.000 UDP 28.104.0.1:52744 -> 198.28.0.2:53 1 64 1 2025-10-16 17:49:44.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48805 1 109 1 2025-10-16 17:49:44.615 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52744 1 80 1 2025-10-16 17:45:52.241 00:05:50.812 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:50:44.904 00:00:00.000 UDP 28.104.0.1:34289 -> 198.28.0.2:53 1 64 1 2025-10-16 17:50:44.904 00:00:00.000 UDP 28.104.0.1:44691 -> 198.28.0.2:53 1 64 1 2025-10-16 17:50:44.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34289 1 109 1 2025-10-16 17:50:44.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44691 1 80 1 2025-10-16 17:51:45.194 00:00:00.000 UDP 28.104.0.1:42295 -> 198.28.0.2:53 1 64 1 2025-10-16 17:51:45.195 00:00:00.000 UDP 28.104.0.1:51363 -> 198.28.0.2:53 1 64 1 2025-10-16 17:51:45.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51363 1 109 1 2025-10-16 17:51:45.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42295 1 80 1 2025-10-16 17:46:52.332 00:06:00.056 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-10-16 17:52:45.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48461 1 80 1 2025-10-16 17:52:45.503 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50695 1 109 1 2025-10-16 17:52:45.492 00:00:00.000 UDP 28.104.0.1:50695 -> 198.28.0.2:53 1 64 1 2025-10-16 17:52:45.491 00:00:00.000 UDP 28.104.0.1:48461 -> 198.28.0.2:53 1 64 1 2025-10-16 17:53:32.419 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:48:52.331 00:05:50.733 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-16 17:48:52.231 00:05:50.873 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-16 17:53:45.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57692 1 80 1 2025-10-16 17:53:45.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52579 1 109 1 2025-10-16 17:53:45.793 00:00:00.000 UDP 28.104.0.1:57692 -> 198.28.0.2:53 1 64 1 2025-10-16 17:53:45.792 00:00:00.000 UDP 28.104.0.1:52579 -> 198.28.0.2:53 1 64 1 2025-10-16 17:48:52.158 00:06:00.177 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-10-16 17:49:48.967 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2520 1 2025-10-16 17:54:46.104 00:00:00.000 UDP 28.104.0.1:38944 -> 198.28.0.2:53 1 64 1 2025-10-16 17:54:46.103 00:00:00.000 UDP 28.104.0.1:43768 -> 198.28.0.2:53 1 64 1 2025-10-16 17:54:46.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38944 1 109 1 2025-10-16 17:54:46.114 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43768 1 80 1 2025-10-16 17:50:43.053 00:05:09.291 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-16 17:55:46.400 00:00:00.000 UDP 28.104.0.1:41873 -> 198.28.0.2:53 1 64 1 2025-10-16 17:55:46.400 00:00:00.000 UDP 28.104.0.1:39944 -> 198.28.0.2:53 1 64 1 2025-10-16 17:55:46.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41873 1 109 1 2025-10-16 17:55:46.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39944 1 80 1 2025-10-16 17:51:52.246 00:05:50.809 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-16 17:56:46.698 00:00:00.000 UDP 28.104.0.1:53547 -> 198.28.0.2:53 1 64 1 2025-10-16 17:56:46.698 00:00:00.000 UDP 28.104.0.1:57096 -> 198.28.0.2:53 1 64 1 2025-10-16 17:56:46.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53547 1 109 1 2025-10-16 17:56:46.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57096 1 80 1 2025-10-16 17:57:46.996 00:00:00.000 UDP 28.104.0.1:41772 -> 198.28.0.2:53 1 64 1 2025-10-16 17:57:46.996 00:00:00.000 UDP 28.104.0.1:48127 -> 198.28.0.2:53 1 64 1 2025-10-16 17:57:47.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48127 1 109 1 2025-10-16 17:57:47.008 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41772 1 80 1 2025-10-16 17:58:33.019 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-16 17:58:47.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44568 1 109 1 2025-10-16 17:58:47.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52164 1 80 1 2025-10-16 17:58:47.306 00:00:00.000 UDP 28.104.0.1:44568 -> 198.28.0.2:53 1 64 1 2025-10-16 17:58:47.306 00:00:00.000 UDP 28.104.0.1:52164 -> 198.28.0.2:53 1 64 1 2025-10-16 17:53:52.335 00:06:00.057 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 Summary: total flows: 320, total bytes: 94457, total packets: 1392, avg bps: 193, avg pps: 0, avg bpp: 67 Time window: 2025-10-16 16:54:52 - 2025-10-16 17:59:52 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0037s User: 0.0019s Wall: 0.0022s flows/second: 144600.0 Runtime: 0.0022s