Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-10-19 01:59:33.240 00:00:00.000 UDP 28.104.0.1:51597 -> 198.28.0.2:53 1 64 1 2025-10-19 01:59:33.240 00:00:00.000 UDP 28.104.0.1:36317 -> 198.28.0.2:53 1 64 1 2025-10-19 01:59:33.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36317 1 109 1 2025-10-19 01:59:33.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51597 1 80 1 2025-10-19 01:59:39.978 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:54:53.442 00:05:51.034 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 01:57:53.470 00:02:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 01:56:03.539 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2464 1 2025-10-19 02:00:33.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46781 1 80 1 2025-10-19 02:00:33.551 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48895 1 109 1 2025-10-19 02:00:33.541 00:00:00.000 UDP 28.104.0.1:48895 -> 198.28.0.2:53 1 64 1 2025-10-19 02:00:33.541 00:00:00.000 UDP 28.104.0.1:46781 -> 198.28.0.2:53 1 64 1 2025-10-19 01:55:53.479 00:05:50.946 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:01:33.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58649 1 80 1 2025-10-19 02:01:33.852 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52355 1 109 1 2025-10-19 02:01:33.841 00:00:00.000 UDP 28.104.0.1:58649 -> 198.28.0.2:53 1 64 1 2025-10-19 02:01:33.841 00:00:00.000 UDP 28.104.0.1:52355 -> 198.28.0.2:53 1 64 1 2025-10-19 01:56:53.453 00:05:50.974 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 01:57:53.272 00:04:00.198 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:00:53.470 00:01:00.073 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:02:34.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38481 1 109 1 2025-10-19 02:02:34.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47741 1 80 1 2025-10-19 02:02:34.103 00:00:00.000 UDP 28.104.0.1:38481 -> 198.28.0.2:53 1 64 1 2025-10-19 02:02:34.103 00:00:00.000 UDP 28.104.0.1:47741 -> 198.28.0.2:53 1 64 1 2025-10-19 02:03:34.399 00:00:00.000 UDP 28.104.0.1:46051 -> 198.28.0.2:53 1 64 1 2025-10-19 02:03:34.399 00:00:00.000 UDP 28.104.0.1:52589 -> 198.28.0.2:53 1 64 1 2025-10-19 02:03:34.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46051 1 109 1 2025-10-19 02:03:34.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52589 1 80 1 2025-10-19 02:04:34.699 00:00:00.000 UDP 28.104.0.1:60658 -> 198.28.0.2:53 1 64 1 2025-10-19 02:04:34.699 00:00:00.000 UDP 28.104.0.1:42322 -> 198.28.0.2:53 1 64 1 2025-10-19 02:04:34.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42322 1 80 1 2025-10-19 02:04:34.710 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60658 1 109 1 2025-10-19 02:04:39.996 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 01:59:53.471 00:05:50.967 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:02:53.472 00:02:00.074 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:05:35.011 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49644 1 80 1 2025-10-19 02:05:35.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49068 1 109 1 2025-10-19 02:05:34.999 00:00:00.000 UDP 28.104.0.1:49068 -> 198.28.0.2:53 1 64 1 2025-10-19 02:01:23.544 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-10-19 02:05:34.999 00:00:00.000 UDP 28.104.0.1:49644 -> 198.28.0.2:53 1 64 1 2025-10-19 02:00:53.443 00:05:51.034 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:06:35.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46542 1 80 1 2025-10-19 02:06:35.320 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44205 1 109 1 2025-10-19 02:06:35.310 00:00:00.000 UDP 28.104.0.1:46542 -> 198.28.0.2:53 1 64 1 2025-10-19 02:06:35.310 00:00:00.000 UDP 28.104.0.1:44205 -> 198.28.0.2:53 1 64 1 2025-10-19 02:01:53.482 00:05:50.947 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:05:53.474 00:01:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:02:53.275 00:04:00.199 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:07:35.633 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52485 1 80 1 2025-10-19 02:07:35.633 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59569 1 109 1 2025-10-19 02:07:35.622 00:00:00.000 UDP 28.104.0.1:59569 -> 198.28.0.2:53 1 64 1 2025-10-19 02:07:35.623 00:00:00.000 UDP 28.104.0.1:52485 -> 198.28.0.2:53 1 64 1 2025-10-19 02:02:53.455 00:05:50.973 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:08:35.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33395 1 80 1 2025-10-19 02:08:35.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45947 1 109 1 2025-10-19 02:08:35.929 00:00:00.000 UDP 28.104.0.1:45947 -> 198.28.0.2:53 1 64 1 2025-10-19 02:08:35.929 00:00:00.000 UDP 28.104.0.1:33395 -> 198.28.0.2:53 1 64 1 2025-10-19 02:09:36.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35998 1 109 1 2025-10-19 02:09:36.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50646 1 80 1 2025-10-19 02:09:36.245 00:00:00.000 UDP 28.104.0.1:35998 -> 198.28.0.2:53 1 64 1 2025-10-19 02:09:36.245 00:00:00.000 UDP 28.104.0.1:50646 -> 198.28.0.2:53 1 64 1 2025-10-19 02:09:40.060 00:00:00.035 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:07:53.473 00:02:00.076 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:10:36.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35770 1 80 1 2025-10-19 02:10:36.554 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53193 1 109 1 2025-10-19 02:10:36.544 00:00:00.000 UDP 28.104.0.1:53193 -> 198.28.0.2:53 1 64 1 2025-10-19 02:10:36.544 00:00:00.000 UDP 28.104.0.1:35770 -> 198.28.0.2:53 1 64 1 2025-10-19 02:05:53.473 00:05:50.965 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:06:43.549 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2704 1 2025-10-19 02:11:36.844 00:00:00.000 UDP 28.104.0.1:32890 -> 198.28.0.2:53 1 64 1 2025-10-19 02:11:36.844 00:00:00.000 UDP 28.104.0.1:46493 -> 198.28.0.2:53 1 64 1 2025-10-19 02:11:36.854 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46493 1 80 1 2025-10-19 02:11:36.854 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32890 1 109 1 2025-10-19 02:06:53.445 00:05:51.034 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:10:53.497 00:01:00.053 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:07:53.279 00:04:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:12:37.212 00:00:00.000 UDP 28.104.0.1:60309 -> 198.28.0.2:53 1 64 1 2025-10-19 02:12:37.211 00:00:00.000 UDP 28.104.0.1:57614 -> 198.28.0.2:53 1 64 1 2025-10-19 02:12:37.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60309 1 109 1 2025-10-19 02:12:37.222 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57614 1 80 1 2025-10-19 02:07:53.483 00:05:50.947 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:13:37.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59794 1 109 1 2025-10-19 02:13:37.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60092 1 80 1 2025-10-19 02:13:37.552 00:00:00.000 UDP 28.104.0.1:59794 -> 198.28.0.2:53 1 64 1 2025-10-19 02:13:37.552 00:00:00.000 UDP 28.104.0.1:60092 -> 198.28.0.2:53 1 64 1 2025-10-19 02:08:53.456 00:05:50.975 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:12:53.279 00:01:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:14:37.828 00:00:00.000 UDP 28.104.0.1:60512 -> 198.28.0.2:53 1 64 1 2025-10-19 02:14:37.828 00:00:00.000 UDP 28.104.0.1:47471 -> 198.28.0.2:53 1 64 1 2025-10-19 02:14:37.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60512 1 109 1 2025-10-19 02:14:37.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47471 1 80 1 2025-10-19 02:14:41.169 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:12:53.499 00:02:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:15:38.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35559 1 109 1 2025-10-19 02:15:38.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47408 1 80 1 2025-10-19 02:15:38.118 00:00:00.000 UDP 28.104.0.1:47408 -> 198.28.0.2:53 1 64 1 2025-10-19 02:15:38.118 00:00:00.000 UDP 28.104.0.1:35559 -> 198.28.0.2:53 1 64 1 2025-10-19 02:12:03.555 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2692 1 2025-10-19 02:16:38.402 00:00:00.000 UDP 28.104.0.1:50805 -> 198.28.0.2:53 1 64 1 2025-10-19 02:16:38.402 00:00:00.000 UDP 28.104.0.1:34103 -> 198.28.0.2:53 1 64 1 2025-10-19 02:16:38.416 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34103 1 109 1 2025-10-19 02:16:38.414 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50805 1 80 1 2025-10-19 02:11:53.499 00:05:50.943 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:15:53.502 00:01:00.052 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:14:53.282 00:02:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 02:17:38.662 00:00:00.000 UDP 28.104.0.1:47808 -> 198.28.0.2:53 1 64 1 2025-10-19 02:17:38.661 00:00:00.000 UDP 28.104.0.1:49002 -> 198.28.0.2:53 1 64 1 2025-10-19 02:17:38.673 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47808 1 109 1 2025-10-19 02:17:38.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49002 1 80 1 2025-10-19 02:12:53.446 00:05:51.036 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:18:38.952 00:00:00.000 UDP 28.104.0.1:35092 -> 198.28.0.2:53 1 64 1 2025-10-19 02:18:38.952 00:00:00.000 UDP 28.104.0.1:51266 -> 198.28.0.2:53 1 64 1 2025-10-19 02:18:38.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51266 1 80 1 2025-10-19 02:18:38.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35092 1 109 1 2025-10-19 02:13:53.509 00:05:50.923 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:17:53.506 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:17:53.282 00:01:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:19:39.248 00:00:00.000 UDP 28.104.0.1:43589 -> 198.28.0.2:53 1 64 1 2025-10-19 02:19:39.248 00:00:00.000 UDP 28.104.0.1:52594 -> 198.28.0.2:53 1 64 1 2025-10-19 02:19:40.348 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:19:39.258 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52594 1 80 1 2025-10-19 02:19:39.260 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43589 1 109 1 2025-10-19 02:14:53.457 00:05:50.976 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:19:53.504 00:00:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 02:20:39.550 00:00:00.000 UDP 28.104.0.1:37318 -> 198.28.0.2:53 1 64 1 2025-10-19 02:20:39.550 00:00:00.000 UDP 28.104.0.1:43993 -> 198.28.0.2:53 1 64 1 2025-10-19 02:20:39.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43993 1 80 1 2025-10-19 02:20:39.562 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37318 1 109 1 2025-10-19 02:17:23.565 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-19 02:21:40.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47079 1 109 1 2025-10-19 02:21:40.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46419 1 80 1 2025-10-19 02:21:39.991 00:00:00.000 UDP 28.104.0.1:47079 -> 198.28.0.2:53 1 64 1 2025-10-19 02:21:39.991 00:00:00.000 UDP 28.104.0.1:46419 -> 198.28.0.2:53 1 64 1 2025-10-19 02:20:53.505 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:19:53.281 00:02:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 02:22:40.309 00:00:00.000 UDP 28.104.0.1:34295 -> 198.28.0.2:53 1 64 1 2025-10-19 02:22:40.309 00:00:00.000 UDP 28.104.0.1:33805 -> 198.28.0.2:53 1 64 1 2025-10-19 02:22:40.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34295 1 80 1 2025-10-19 02:22:40.321 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33805 1 109 1 2025-10-19 02:17:53.504 00:05:50.942 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:23:40.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53912 1 109 1 2025-10-19 02:23:40.674 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59377 1 80 1 2025-10-19 02:23:40.664 00:00:00.000 UDP 28.104.0.1:53912 -> 198.28.0.2:53 1 64 1 2025-10-19 02:23:40.664 00:00:00.000 UDP 28.104.0.1:59377 -> 198.28.0.2:53 1 64 1 2025-10-19 02:18:53.447 00:05:51.039 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:22:53.505 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:22:53.281 00:01:00.224 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:24:40.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51991 1 80 1 2025-10-19 02:24:40.246 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:24:40.933 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53293 1 109 1 2025-10-19 02:24:40.923 00:00:00.000 UDP 28.104.0.1:53293 -> 198.28.0.2:53 1 64 1 2025-10-19 02:24:40.923 00:00:00.000 UDP 28.104.0.1:51991 -> 198.28.0.2:53 1 64 1 2025-10-19 02:19:53.514 00:05:50.921 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:24:53.507 00:00:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 02:25:41.233 00:00:00.000 UDP 28.104.0.1:34648 -> 198.28.0.2:53 1 64 1 2025-10-19 02:25:41.233 00:00:00.000 UDP 28.104.0.1:33250 -> 198.28.0.2:53 1 64 1 2025-10-19 02:25:41.243 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34648 1 109 1 2025-10-19 02:25:41.244 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33250 1 80 1 2025-10-19 02:20:53.457 00:05:50.979 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:26:41.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55472 1 109 1 2025-10-19 02:26:41.536 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45400 1 80 1 2025-10-19 02:26:41.525 00:00:00.000 UDP 28.104.0.1:55472 -> 198.28.0.2:53 1 64 1 2025-10-19 02:26:41.525 00:00:00.000 UDP 28.104.0.1:45400 -> 198.28.0.2:53 1 64 1 2025-10-19 02:25:53.507 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:22:43.572 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2660 1 2025-10-19 02:27:41.823 00:00:00.000 UDP 28.104.0.1:49047 -> 198.28.0.2:53 1 64 1 2025-10-19 02:27:41.823 00:00:00.000 UDP 28.104.0.1:37626 -> 198.28.0.2:53 1 64 1 2025-10-19 02:27:41.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49047 1 109 1 2025-10-19 02:27:41.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37626 1 80 1 2025-10-19 02:28:42.120 00:00:00.000 UDP 28.104.0.1:45118 -> 198.28.0.2:53 1 64 1 2025-10-19 02:28:42.120 00:00:00.000 UDP 28.104.0.1:54566 -> 198.28.0.2:53 1 64 1 2025-10-19 02:28:42.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45118 1 109 1 2025-10-19 02:28:42.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54566 1 80 1 2025-10-19 02:23:53.506 00:05:50.940 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:24:53.286 00:04:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:27:53.507 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:29:42.411 00:00:00.000 UDP 28.104.0.1:34256 -> 198.28.0.2:53 1 64 1 2025-10-19 02:29:42.411 00:00:00.000 UDP 28.104.0.1:60976 -> 198.28.0.2:53 1 64 1 2025-10-19 02:29:42.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34256 1 80 1 2025-10-19 02:29:40.005 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:29:42.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60976 1 109 1 2025-10-19 02:24:53.449 00:05:51.037 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:30:43.084 00:00:00.000 UDP 28.104.0.1:46165 -> 198.28.0.2:53 1 64 1 2025-10-19 02:30:43.084 00:00:00.000 UDP 28.104.0.1:50767 -> 198.28.0.2:53 1 64 1 2025-10-19 02:30:43.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50767 1 109 1 2025-10-19 02:30:43.095 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46165 1 80 1 2025-10-19 02:25:53.516 00:05:50.920 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:31:43.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52548 1 109 1 2025-10-19 02:31:43.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43902 1 80 1 2025-10-19 02:31:43.375 00:00:00.000 UDP 28.104.0.1:43902 -> 198.28.0.2:53 1 64 1 2025-10-19 02:31:43.375 00:00:00.000 UDP 28.104.0.1:52548 -> 198.28.0.2:53 1 64 1 2025-10-19 02:26:53.459 00:05:50.977 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:29:53.508 00:02:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:28:03.575 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-10-19 02:32:43.673 00:00:00.000 UDP 28.104.0.1:37727 -> 198.28.0.2:53 1 64 1 2025-10-19 02:32:43.673 00:00:00.000 UDP 28.104.0.1:55763 -> 198.28.0.2:53 1 64 1 2025-10-19 02:32:43.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55763 1 80 1 2025-10-19 02:32:43.683 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37727 1 109 1 2025-10-19 02:33:43.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59930 1 109 1 2025-10-19 02:33:43.982 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50810 1 80 1 2025-10-19 02:33:43.971 00:00:00.000 UDP 28.104.0.1:50810 -> 198.28.0.2:53 1 64 1 2025-10-19 02:33:43.971 00:00:00.000 UDP 28.104.0.1:59930 -> 198.28.0.2:53 1 64 1 2025-10-19 02:32:53.509 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:29:53.288 00:04:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:34:40.760 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:34:44.270 00:00:00.000 UDP 28.104.0.1:38612 -> 198.28.0.2:53 1 64 1 2025-10-19 02:29:53.508 00:05:50.939 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:34:44.270 00:00:00.000 UDP 28.104.0.1:42718 -> 198.28.0.2:53 1 64 1 2025-10-19 02:34:44.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38612 1 80 1 2025-10-19 02:34:44.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42718 1 109 1 2025-10-19 02:35:44.564 00:00:00.000 UDP 28.104.0.1:45853 -> 198.28.0.2:53 1 64 1 2025-10-19 02:35:44.564 00:00:00.000 UDP 28.104.0.1:37481 -> 198.28.0.2:53 1 64 1 2025-10-19 02:30:53.450 00:05:51.037 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:35:44.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37481 1 109 1 2025-10-19 02:35:44.574 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45853 1 80 1 2025-10-19 02:36:44.862 00:00:00.000 UDP 28.104.0.1:53004 -> 198.28.0.2:53 1 64 1 2025-10-19 02:36:44.861 00:00:00.000 UDP 28.104.0.1:58855 -> 198.28.0.2:53 1 64 1 2025-10-19 02:36:44.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53004 1 80 1 2025-10-19 02:36:44.873 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58855 1 109 1 2025-10-19 02:31:53.519 00:05:50.919 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:34:53.509 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:33:23.587 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2720 1 2025-10-19 02:37:45.202 00:00:00.000 UDP 28.104.0.1:33494 -> 198.28.0.2:53 1 64 1 2025-10-19 02:37:45.202 00:00:00.000 UDP 28.104.0.1:60058 -> 198.28.0.2:53 1 64 1 2025-10-19 02:37:45.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33494 1 80 1 2025-10-19 02:37:45.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60058 1 109 1 2025-10-19 02:32:53.460 00:05:50.978 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:38:45.450 00:00:00.000 UDP 28.104.0.1:36617 -> 198.28.0.2:53 1 64 1 2025-10-19 02:38:45.450 00:00:00.000 UDP 28.104.0.1:55230 -> 198.28.0.2:53 1 64 1 2025-10-19 02:38:45.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55230 1 109 1 2025-10-19 02:38:45.459 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36617 1 80 1 2025-10-19 02:37:53.510 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:34:53.289 00:04:00.221 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:39:40.853 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:39:45.698 00:00:00.000 UDP 28.104.0.1:50758 -> 198.28.0.2:53 1 64 1 2025-10-19 02:39:45.698 00:00:00.000 UDP 28.104.0.1:50601 -> 198.28.0.2:53 1 64 1 2025-10-19 02:39:45.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50758 1 80 1 2025-10-19 02:39:45.709 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50601 1 109 1 2025-10-19 02:40:45.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53184 1 109 1 2025-10-19 02:40:45.996 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47753 1 80 1 2025-10-19 02:35:53.508 00:05:50.943 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:40:45.985 00:00:00.000 UDP 28.104.0.1:47753 -> 198.28.0.2:53 1 64 1 2025-10-19 02:40:45.985 00:00:00.000 UDP 28.104.0.1:53184 -> 198.28.0.2:53 1 64 1 2025-10-19 02:41:46.285 00:00:00.000 UDP 28.104.0.1:56737 -> 198.28.0.2:53 1 64 1 2025-10-19 02:36:53.450 00:05:51.042 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:41:46.284 00:00:00.000 UDP 28.104.0.1:46180 -> 198.28.0.2:53 1 64 1 2025-10-19 02:41:46.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56737 1 109 1 2025-10-19 02:41:46.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46180 1 80 1 2025-10-19 02:39:53.510 00:02:00.051 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:42:46.579 00:00:00.000 UDP 28.104.0.1:42865 -> 198.28.0.2:53 1 64 1 2025-10-19 02:42:46.580 00:00:00.000 UDP 28.104.0.1:36939 -> 198.28.0.2:53 1 64 1 2025-10-19 02:37:53.520 00:05:50.923 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:42:46.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36939 1 80 1 2025-10-19 02:42:46.589 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42865 1 109 1 2025-10-19 02:38:43.600 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2756 1 2025-10-19 02:43:46.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48953 1 80 1 2025-10-19 02:43:46.948 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48831 1 109 1 2025-10-19 02:38:53.461 00:05:50.984 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:43:46.937 00:00:00.000 UDP 28.104.0.1:48831 -> 198.28.0.2:53 1 64 1 2025-10-19 02:43:46.937 00:00:00.000 UDP 28.104.0.1:48953 -> 198.28.0.2:53 1 64 1 2025-10-19 02:42:53.510 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:39:53.290 00:04:00.220 TCP 28.154.0.1:179 -> 28.155.0.1:36643 10 615 1 2025-10-19 02:44:40.631 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:44:47.236 00:00:00.000 UDP 28.104.0.1:50952 -> 198.28.0.2:53 1 64 1 2025-10-19 02:44:47.236 00:00:00.000 UDP 28.104.0.1:49108 -> 198.28.0.2:53 1 64 1 2025-10-19 02:44:47.246 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49108 1 109 1 2025-10-19 02:44:47.246 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50952 1 80 1 2025-10-19 02:45:47.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43186 1 80 1 2025-10-19 02:45:47.542 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55792 1 109 1 2025-10-19 02:45:47.530 00:00:00.000 UDP 28.104.0.1:55792 -> 198.28.0.2:53 1 64 1 2025-10-19 02:45:47.530 00:00:00.000 UDP 28.104.0.1:43186 -> 198.28.0.2:53 1 64 1 2025-10-19 02:44:53.294 00:01:00.217 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:46:47.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59714 1 80 1 2025-10-19 02:46:47.835 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57750 1 109 1 2025-10-19 02:46:47.826 00:00:00.000 UDP 28.104.0.1:59714 -> 198.28.0.2:53 1 64 1 2025-10-19 02:41:53.512 00:05:50.943 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:46:47.826 00:00:00.000 UDP 28.104.0.1:57750 -> 198.28.0.2:53 1 64 1 2025-10-19 02:44:53.512 00:02:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 6 369 1 2025-10-19 02:47:48.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60377 1 109 1 2025-10-19 02:47:48.128 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35629 1 80 1 2025-10-19 02:47:48.118 00:00:00.000 UDP 28.104.0.1:35629 -> 198.28.0.2:53 1 64 1 2025-10-19 02:42:53.452 00:05:51.043 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:47:48.118 00:00:00.000 UDP 28.104.0.1:60377 -> 198.28.0.2:53 1 64 1 2025-10-19 02:44:03.611 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-10-19 02:43:53.522 00:05:50.925 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:48:53.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36210 1 109 1 2025-10-19 02:48:53.799 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50164 1 80 1 2025-10-19 02:47:53.512 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:48:53.789 00:00:00.000 UDP 28.104.0.1:50164 -> 198.28.0.2:53 1 64 1 2025-10-19 02:46:53.294 00:02:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 02:48:53.789 00:00:00.000 UDP 28.104.0.1:36210 -> 198.28.0.2:53 1 64 1 2025-10-19 02:49:40.832 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:44:53.461 00:05:50.985 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:49:54.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44728 1 80 1 2025-10-19 02:49:54.106 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57105 1 109 1 2025-10-19 02:49:54.096 00:00:00.000 UDP 28.104.0.1:44728 -> 198.28.0.2:53 1 64 1 2025-10-19 02:49:54.096 00:00:00.000 UDP 28.104.0.1:57105 -> 198.28.0.2:53 1 64 1 2025-10-19 02:49:53.513 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:49:53.300 00:01:00.213 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:50:54.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44039 1 109 1 2025-10-19 02:50:54.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46288 1 80 1 2025-10-19 02:50:54.399 00:00:00.000 UDP 28.104.0.1:46288 -> 198.28.0.2:53 1 64 1 2025-10-19 02:50:54.399 00:00:00.000 UDP 28.104.0.1:44039 -> 198.28.0.2:53 1 64 1 2025-10-19 02:51:53.513 00:00:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 02:51:54.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39452 1 109 1 2025-10-19 02:51:54.666 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51521 1 80 1 2025-10-19 02:51:54.656 00:00:00.000 UDP 28.104.0.1:51521 -> 198.28.0.2:53 1 64 1 2025-10-19 02:51:54.656 00:00:00.000 UDP 28.104.0.1:39452 -> 198.28.0.2:53 1 64 1 2025-10-19 02:47:53.511 00:05:50.945 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:52:54.960 00:00:00.000 UDP 28.104.0.1:54619 -> 198.28.0.2:53 1 64 1 2025-10-19 02:52:54.960 00:00:00.000 UDP 28.104.0.1:59617 -> 198.28.0.2:53 1 64 1 2025-10-19 02:52:54.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59617 1 80 1 2025-10-19 02:52:54.971 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54619 1 109 1 2025-10-19 02:49:23.614 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2660 1 2025-10-19 02:48:53.453 00:05:51.044 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-10-19 02:52:53.511 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:51:53.294 00:02:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 2025-10-19 02:53:55.323 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53111 1 80 1 2025-10-19 02:53:55.322 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60426 1 109 1 2025-10-19 02:53:55.312 00:00:00.000 UDP 28.104.0.1:60426 -> 198.28.0.2:53 1 64 1 2025-10-19 02:53:55.312 00:00:00.000 UDP 28.104.0.1:53111 -> 198.28.0.2:53 1 64 1 2025-10-19 02:54:40.991 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-10-19 02:49:53.522 00:05:50.925 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-10-19 02:54:55.573 00:00:00.000 UDP 28.104.0.1:46029 -> 198.28.0.2:53 1 64 1 2025-10-19 02:54:55.574 00:00:00.000 UDP 28.104.0.1:35191 -> 198.28.0.2:53 1 64 1 2025-10-19 02:54:55.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46029 1 80 1 2025-10-19 02:54:55.584 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35191 1 109 1 2025-10-19 02:50:53.464 00:05:50.983 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-10-19 02:54:53.294 00:01:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 4 246 1 2025-10-19 02:54:53.512 00:01:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:55:55.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53546 1 109 1 2025-10-19 02:55:55.843 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53659 1 80 1 2025-10-19 02:55:55.832 00:00:00.000 UDP 28.104.0.1:53659 -> 198.28.0.2:53 1 64 1 2025-10-19 02:55:55.832 00:00:00.000 UDP 28.104.0.1:53546 -> 198.28.0.2:53 1 64 1 2025-10-19 02:56:56.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52362 1 80 1 2025-10-19 02:56:56.134 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48058 1 109 1 2025-10-19 02:56:53.512 00:00:00.050 TCP 28.154.0.1:179 -> 28.157.0.1:37077 2 123 1 2025-10-19 02:56:56.123 00:00:00.000 UDP 28.104.0.1:48058 -> 198.28.0.2:53 1 64 1 2025-10-19 02:56:56.123 00:00:00.000 UDP 28.104.0.1:52362 -> 198.28.0.2:53 1 64 1 2025-10-19 02:57:56.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60813 1 80 1 2025-10-19 02:57:56.444 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53491 1 109 1 2025-10-19 02:57:56.435 00:00:00.000 UDP 28.104.0.1:53491 -> 198.28.0.2:53 1 64 1 2025-10-19 02:57:56.435 00:00:00.000 UDP 28.104.0.1:60813 -> 198.28.0.2:53 1 64 1 2025-10-19 02:53:53.512 00:05:50.946 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-10-19 02:57:53.514 00:01:00.049 TCP 28.154.0.1:179 -> 28.157.0.1:37077 4 246 1 2025-10-19 02:56:53.296 00:02:00.218 TCP 28.154.0.1:179 -> 28.155.0.1:36643 6 369 1 Summary: total flows: 346, total bytes: 94923, total packets: 1399, avg bps: 195, avg pps: 0, avg bpp: 67 Time window: 2025-10-19 01:54:53 - 2025-10-19 02:59:44 Total flows processed: 346, passed: 346, Blocks skipped: 0, Bytes read: 36048 Sys: 0.0052s User: 0.0017s Wall: 0.0031s flows/second: 110865.5 Runtime: 0.0031s