Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-13 15:54:05.937 00:05:51.190 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 15:54:05.994 00:05:51.183 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 15:59:05.469 00:00:00.000 UDP 28.104.0.1:36453 -> 198.28.0.2:53 1 64 1 2025-11-13 15:59:05.469 00:00:00.000 UDP 28.104.0.1:46586 -> 198.28.0.2:53 1 64 1 2025-11-13 15:59:05.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36453 1 80 1 2025-11-13 15:59:05.481 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46586 1 109 1 2025-11-13 16:00:05.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45107 1 109 1 2025-11-13 16:00:05.774 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53865 1 80 1 2025-11-13 15:56:05.926 00:05:00.251 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 15:55:57.135 00:05:08.792 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:00:05.764 00:00:00.000 UDP 28.104.0.1:45107 -> 198.28.0.2:53 1 64 1 2025-11-13 16:00:05.764 00:00:00.000 UDP 28.104.0.1:53865 -> 198.28.0.2:53 1 64 1 2025-11-13 16:01:06.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51837 1 80 1 2025-11-13 16:01:06.088 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37500 1 109 1 2025-11-13 16:01:06.077 00:00:00.000 UDP 28.104.0.1:51837 -> 198.28.0.2:53 1 64 1 2025-11-13 16:01:06.077 00:00:00.000 UDP 28.104.0.1:37500 -> 198.28.0.2:53 1 64 1 2025-11-13 15:57:06.005 00:05:51.122 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:01:59.245 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:02:06.391 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54168 1 109 1 2025-11-13 16:02:06.391 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47152 1 80 1 2025-11-13 16:02:06.381 00:00:00.000 UDP 28.104.0.1:47152 -> 198.28.0.2:53 1 64 1 2025-11-13 16:02:06.381 00:00:00.000 UDP 28.104.0.1:54168 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60909 1 109 1 2025-11-13 16:03:06.691 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52917 1 80 1 2025-11-13 16:03:06.681 00:00:00.000 UDP 28.104.0.1:52917 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.682 00:00:00.000 UDP 28.104.0.1:60909 -> 198.28.0.2:53 1 64 1 2025-11-13 15:59:05.927 00:05:00.163 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:04:06.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46433 1 80 1 2025-11-13 16:04:06.993 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50804 1 109 1 2025-11-13 16:04:06.983 00:00:00.000 UDP 28.104.0.1:50804 -> 198.28.0.2:53 1 64 1 2025-11-13 15:59:54.838 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-13 16:04:06.983 00:00:00.000 UDP 28.104.0.1:46433 -> 198.28.0.2:53 1 64 1 2025-11-13 16:00:05.994 00:05:51.182 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:00:05.939 00:05:51.189 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:05:07.287 00:00:00.000 UDP 28.104.0.1:44912 -> 198.28.0.2:53 1 64 1 2025-11-13 16:05:07.287 00:00:00.000 UDP 28.104.0.1:45401 -> 198.28.0.2:53 1 64 1 2025-11-13 16:05:07.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45401 1 80 1 2025-11-13 16:05:07.296 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44912 1 109 1 2025-11-13 16:02:05.927 00:05:00.254 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:01:57.140 00:05:08.788 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:06:07.587 00:00:00.000 UDP 28.104.0.1:41991 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:07.588 00:00:00.000 UDP 28.104.0.1:35632 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:07.599 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35632 1 109 1 2025-11-13 16:06:07.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41991 1 80 1 2025-11-13 16:06:59.605 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:07:07.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49697 1 80 1 2025-11-13 16:07:07.908 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41523 1 109 1 2025-11-13 16:07:07.897 00:00:00.000 UDP 28.104.0.1:49697 -> 198.28.0.2:53 1 64 1 2025-11-13 16:07:07.897 00:00:00.000 UDP 28.104.0.1:41523 -> 198.28.0.2:53 1 64 1 2025-11-13 16:03:06.006 00:05:51.123 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:08:08.201 00:00:00.000 UDP 28.104.0.1:53786 -> 198.28.0.2:53 1 64 1 2025-11-13 16:08:08.201 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-11-13 16:08:08.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53786 1 80 1 2025-11-13 16:08:08.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 109 1 2025-11-13 16:05:05.928 00:05:00.162 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:09:08.494 00:00:00.000 UDP 28.104.0.1:56646 -> 198.28.0.2:53 1 64 1 2025-11-13 16:09:08.494 00:00:00.000 UDP 28.104.0.1:48664 -> 198.28.0.2:53 1 64 1 2025-11-13 16:09:08.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56646 1 80 1 2025-11-13 16:09:08.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48664 1 109 1 2025-11-13 16:05:14.842 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-11-13 16:10:08.750 00:00:00.000 UDP 28.104.0.1:52074 -> 198.28.0.2:53 1 64 1 2025-11-13 16:10:08.750 00:00:00.000 UDP 28.104.0.1:53306 -> 198.28.0.2:53 1 64 1 2025-11-13 16:06:05.998 00:05:00.002 TCP 28.156.0.1:179 -> 28.151.0.1:39145 11 686 1 2025-11-13 16:10:08.760 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53306 1 109 1 2025-11-13 16:10:08.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52074 1 80 1 2025-11-13 16:06:05.938 00:05:51.191 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:11:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49451 1 109 1 2025-11-13 16:11:09.064 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48219 1 80 1 2025-11-13 16:11:09.053 00:00:00.000 UDP 28.104.0.1:49451 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:09.053 00:00:00.000 UDP 28.104.0.1:48219 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:59.220 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:08:05.929 00:05:00.256 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:07:57.138 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:12:09.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35107 1 80 1 2025-11-13 16:12:09.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53479 1 109 1 2025-11-13 16:12:09.299 00:00:00.000 UDP 28.104.0.1:35107 -> 198.28.0.2:53 1 64 1 2025-11-13 16:12:09.299 00:00:00.000 UDP 28.104.0.1:53479 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:09.594 00:00:00.000 UDP 28.104.0.1:39637 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:09.594 00:00:00.000 UDP 28.104.0.1:50629 -> 198.28.0.2:53 1 64 1 2025-11-13 16:13:09.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50629 1 80 1 2025-11-13 16:13:09.603 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39637 1 109 1 2025-11-13 16:09:06.009 00:05:51.118 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:14:09.904 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56948 1 80 1 2025-11-13 16:14:09.905 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50973 1 109 1 2025-11-13 16:14:09.894 00:00:00.000 UDP 28.104.0.1:50973 -> 198.28.0.2:53 1 64 1 2025-11-13 16:14:09.893 00:00:00.000 UDP 28.104.0.1:56948 -> 198.28.0.2:53 1 64 1 2025-11-13 16:10:34.844 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2440 1 2025-11-13 16:11:05.934 00:05:00.158 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:15:10.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44251 1 109 1 2025-11-13 16:15:10.221 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45878 1 80 1 2025-11-13 16:15:10.212 00:00:00.000 UDP 28.104.0.1:44251 -> 198.28.0.2:53 1 64 1 2025-11-13 16:15:10.212 00:00:00.000 UDP 28.104.0.1:45878 -> 198.28.0.2:53 1 64 1 2025-11-13 16:11:57.180 00:05:08.824 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:16:10.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51905 1 109 1 2025-11-13 16:16:10.530 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38885 1 80 1 2025-11-13 16:16:10.521 00:00:00.000 UDP 28.104.0.1:38885 -> 198.28.0.2:53 1 64 1 2025-11-13 16:16:10.521 00:00:00.000 UDP 28.104.0.1:51905 -> 198.28.0.2:53 1 64 1 2025-11-13 16:12:05.958 00:05:51.172 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:16:59.328 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:17:10.824 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38123 1 80 1 2025-11-13 16:17:10.825 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52234 1 109 1 2025-11-13 16:17:10.814 00:00:00.000 UDP 28.104.0.1:38123 -> 198.28.0.2:53 1 64 1 2025-11-13 16:17:10.815 00:00:00.000 UDP 28.104.0.1:52234 -> 198.28.0.2:53 1 64 1 2025-11-13 16:14:05.949 00:05:00.238 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:13:57.139 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:18:11.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50970 1 109 1 2025-11-13 16:18:11.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58467 1 80 1 2025-11-13 16:18:11.092 00:00:00.000 UDP 28.104.0.1:50970 -> 198.28.0.2:53 1 64 1 2025-11-13 16:18:11.092 00:00:00.000 UDP 28.104.0.1:58467 -> 198.28.0.2:53 1 64 1 2025-11-13 16:19:11.395 00:00:00.000 UDP 28.104.0.1:47886 -> 198.28.0.2:53 1 64 1 2025-11-13 16:19:11.395 00:00:00.000 UDP 28.104.0.1:52887 -> 198.28.0.2:53 1 64 1 2025-11-13 16:19:11.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47886 1 109 1 2025-11-13 16:19:11.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52887 1 80 1 2025-11-13 16:15:06.012 00:05:51.120 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:20:11.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60936 1 109 1 2025-11-13 16:20:11.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55350 1 80 1 2025-11-13 16:15:54.845 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2820 1 2025-11-13 16:20:11.696 00:00:00.000 UDP 28.104.0.1:60936 -> 198.28.0.2:53 1 64 1 2025-11-13 16:20:11.696 00:00:00.000 UDP 28.104.0.1:55350 -> 198.28.0.2:53 1 64 1 2025-11-13 16:17:05.957 00:05:00.136 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:21:11.949 00:00:00.000 UDP 28.104.0.1:40533 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:11.949 00:00:00.000 UDP 28.104.0.1:59612 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:11.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40533 1 109 1 2025-11-13 16:21:11.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59612 1 80 1 2025-11-13 16:21:59.615 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:17:57.180 00:05:08.831 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:22:12.255 00:00:00.000 UDP 28.104.0.1:36566 -> 198.28.0.2:53 1 64 1 2025-11-13 16:22:12.255 00:00:00.000 UDP 28.104.0.1:57124 -> 198.28.0.2:53 1 64 1 2025-11-13 16:22:12.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36566 1 109 1 2025-11-13 16:22:12.266 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57124 1 80 1 2025-11-13 16:18:05.960 00:05:51.174 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:23:12.551 00:00:00.000 UDP 28.104.0.1:37648 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:12.551 00:00:00.000 UDP 28.104.0.1:58429 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:12.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58429 1 80 1 2025-11-13 16:23:12.561 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37648 1 109 1 2025-11-13 16:20:05.949 00:05:00.239 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:19:57.140 00:05:08.811 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:24:13.341 00:00:00.000 UDP 28.104.0.1:35772 -> 198.28.0.2:53 1 64 1 2025-11-13 16:24:13.341 00:00:00.000 UDP 28.104.0.1:53225 -> 198.28.0.2:53 1 64 1 2025-11-13 16:24:13.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53225 1 80 1 2025-11-13 16:24:13.351 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35772 1 109 1 2025-11-13 16:25:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40899 1 80 1 2025-11-13 16:25:13.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50443 1 109 1 2025-11-13 16:25:13.662 00:00:00.000 UDP 28.104.0.1:40899 -> 198.28.0.2:53 1 64 1 2025-11-13 16:25:13.662 00:00:00.000 UDP 28.104.0.1:50443 -> 198.28.0.2:53 1 64 1 2025-11-13 16:21:14.849 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2756 1 2025-11-13 16:21:06.017 00:05:51.116 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:26:13.961 00:00:00.000 UDP 28.104.0.1:47039 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:13.961 00:00:00.000 UDP 28.104.0.1:41403 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:13.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47039 1 109 1 2025-11-13 16:26:13.972 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41403 1 80 1 2025-11-13 16:26:59.494 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:23:05.949 00:05:00.144 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:27:14.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36027 1 80 1 2025-11-13 16:27:14.276 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42140 1 109 1 2025-11-13 16:27:14.266 00:00:00.000 UDP 28.104.0.1:36027 -> 198.28.0.2:53 1 64 1 2025-11-13 16:27:14.266 00:00:00.000 UDP 28.104.0.1:42140 -> 198.28.0.2:53 1 64 1 2025-11-13 16:23:57.183 00:05:08.832 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:28:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46394 1 80 1 2025-11-13 16:28:14.569 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59498 1 109 1 2025-11-13 16:28:14.560 00:00:00.000 UDP 28.104.0.1:59498 -> 198.28.0.2:53 1 64 1 2025-11-13 16:28:14.559 00:00:00.000 UDP 28.104.0.1:46394 -> 198.28.0.2:53 1 64 1 2025-11-13 16:24:05.962 00:05:51.172 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:29:14.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60597 1 80 1 2025-11-13 16:29:14.872 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34741 1 109 1 2025-11-13 16:29:14.862 00:00:00.000 UDP 28.104.0.1:34741 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:14.862 00:00:00.000 UDP 28.104.0.1:60597 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:05.952 00:05:00.240 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:25:57.143 00:05:08.810 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:30:15.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35301 1 109 1 2025-11-13 16:30:15.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37373 1 80 1 2025-11-13 16:30:15.190 00:00:00.000 UDP 28.104.0.1:37373 -> 198.28.0.2:53 1 64 1 2025-11-13 16:30:15.191 00:00:00.000 UDP 28.104.0.1:35301 -> 198.28.0.2:53 1 64 1 2025-11-13 16:26:34.856 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2616 1 2025-11-13 16:31:15.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54519 1 109 1 2025-11-13 16:31:15.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39109 1 80 1 2025-11-13 16:31:15.483 00:00:00.000 UDP 28.104.0.1:39109 -> 198.28.0.2:53 1 64 1 2025-11-13 16:31:15.483 00:00:00.000 UDP 28.104.0.1:54519 -> 198.28.0.2:53 1 64 1 2025-11-13 16:27:06.037 00:05:51.098 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:31:59.751 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:32:15.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42505 1 80 1 2025-11-13 16:32:15.790 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41093 1 109 1 2025-11-13 16:32:15.780 00:00:00.000 UDP 28.104.0.1:41093 -> 198.28.0.2:53 1 64 1 2025-11-13 16:32:15.781 00:00:00.000 UDP 28.104.0.1:42505 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:05.953 00:05:00.141 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:33:16.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38525 1 80 1 2025-11-13 16:33:16.086 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34034 1 109 1 2025-11-13 16:33:16.077 00:00:00.000 UDP 28.104.0.1:34034 -> 198.28.0.2:53 1 64 1 2025-11-13 16:33:16.077 00:00:00.000 UDP 28.104.0.1:38525 -> 198.28.0.2:53 1 64 1 2025-11-13 16:29:57.184 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:34:16.384 00:00:00.000 UDP 28.104.0.1:54541 -> 198.28.0.2:53 1 64 1 2025-11-13 16:34:16.384 00:00:00.000 UDP 28.104.0.1:59353 -> 198.28.0.2:53 1 64 1 2025-11-13 16:34:16.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59353 1 80 1 2025-11-13 16:34:16.395 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54541 1 109 1 2025-11-13 16:30:05.963 00:05:51.172 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:35:16.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41294 1 80 1 2025-11-13 16:35:16.697 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51825 1 109 1 2025-11-13 16:35:16.686 00:00:00.000 UDP 28.104.0.1:41294 -> 198.28.0.2:53 1 64 1 2025-11-13 16:35:16.686 00:00:00.000 UDP 28.104.0.1:51825 -> 198.28.0.2:53 1 64 1 2025-11-13 16:31:54.860 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-13 16:32:05.955 00:05:00.240 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:31:57.145 00:05:08.828 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:36:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56698 1 80 1 2025-11-13 16:36:16.999 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34401 1 109 1 2025-11-13 16:36:16.989 00:00:00.000 UDP 28.104.0.1:56698 -> 198.28.0.2:53 1 64 1 2025-11-13 16:36:16.989 00:00:00.000 UDP 28.104.0.1:34401 -> 198.28.0.2:53 1 64 1 2025-11-13 16:36:59.655 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:37:17.295 00:00:00.000 UDP 28.104.0.1:55002 -> 198.28.0.2:53 1 64 1 2025-11-13 16:37:17.296 00:00:00.000 UDP 28.104.0.1:45714 -> 198.28.0.2:53 1 64 1 2025-11-13 16:37:17.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45714 1 80 1 2025-11-13 16:37:17.307 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55002 1 109 1 2025-11-13 16:33:06.026 00:05:51.109 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:38:17.597 00:00:00.000 UDP 28.104.0.1:40532 -> 198.28.0.2:53 1 64 1 2025-11-13 16:38:17.597 00:00:00.000 UDP 28.104.0.1:52820 -> 198.28.0.2:53 1 64 1 2025-11-13 16:38:17.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40532 1 80 1 2025-11-13 16:38:17.608 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52820 1 109 1 2025-11-13 16:35:05.973 00:05:00.123 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:39:17.899 00:00:00.000 UDP 28.104.0.1:47080 -> 198.28.0.2:53 1 64 1 2025-11-13 16:39:17.899 00:00:00.000 UDP 28.104.0.1:39796 -> 198.28.0.2:53 1 64 1 2025-11-13 16:39:17.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47080 1 80 1 2025-11-13 16:39:17.909 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39796 1 109 1 2025-11-13 16:35:57.184 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:40:18.161 00:00:00.000 UDP 28.104.0.1:45387 -> 198.28.0.2:53 1 64 1 2025-11-13 16:40:18.161 00:00:00.000 UDP 28.104.0.1:36053 -> 198.28.0.2:53 1 64 1 2025-11-13 16:40:18.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45387 1 109 1 2025-11-13 16:40:18.170 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36053 1 80 1 2025-11-13 16:36:05.982 00:05:51.153 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:41:18.455 00:00:00.000 UDP 28.104.0.1:35450 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:18.455 00:00:00.000 UDP 28.104.0.1:36874 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:18.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35450 1 80 1 2025-11-13 16:41:18.466 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36874 1 109 1 2025-11-13 16:37:14.864 00:05:10.812 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2440 1 2025-11-13 16:42:00.117 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:38:05.971 00:05:00.224 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:37:57.144 00:05:08.828 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:42:18.747 00:00:00.000 UDP 28.104.0.1:49887 -> 198.28.0.2:53 1 64 1 2025-11-13 16:42:18.747 00:00:00.000 UDP 28.104.0.1:60631 -> 198.28.0.2:53 1 64 1 2025-11-13 16:42:18.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60631 1 109 1 2025-11-13 16:42:18.757 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49887 1 80 1 2025-11-13 16:43:19.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52386 1 80 1 2025-11-13 16:43:19.069 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49686 1 109 1 2025-11-13 16:43:19.060 00:00:00.000 UDP 28.104.0.1:52386 -> 198.28.0.2:53 1 64 1 2025-11-13 16:43:19.060 00:00:00.000 UDP 28.104.0.1:49686 -> 198.28.0.2:53 1 64 1 2025-11-13 16:39:06.030 00:05:51.108 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:44:19.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56374 1 80 1 2025-11-13 16:44:19.356 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37678 1 109 1 2025-11-13 16:44:19.345 00:00:00.000 UDP 28.104.0.1:56374 -> 198.28.0.2:53 1 64 1 2025-11-13 16:44:19.346 00:00:00.000 UDP 28.104.0.1:37678 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:05.973 00:05:00.125 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:45:19.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33897 1 109 1 2025-11-13 16:45:19.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51965 1 80 1 2025-11-13 16:45:19.651 00:00:00.000 UDP 28.104.0.1:33897 -> 198.28.0.2:53 1 64 1 2025-11-13 16:45:19.651 00:00:00.000 UDP 28.104.0.1:51965 -> 198.28.0.2:53 1 64 1 2025-11-13 16:41:57.186 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:46:19.946 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38383 1 109 1 2025-11-13 16:46:19.947 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60066 1 80 1 2025-11-13 16:46:19.936 00:00:00.000 UDP 28.104.0.1:38383 -> 198.28.0.2:53 1 64 1 2025-11-13 16:46:19.936 00:00:00.000 UDP 28.104.0.1:60066 -> 198.28.0.2:53 1 64 1 2025-11-13 16:42:34.868 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2580 1 2025-11-13 16:42:05.982 00:05:51.154 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:46:59.949 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:47:20.235 00:00:00.000 UDP 28.104.0.1:36093 -> 198.28.0.2:53 1 64 1 2025-11-13 16:47:20.236 00:00:00.000 UDP 28.104.0.1:46740 -> 198.28.0.2:53 1 64 1 2025-11-13 16:47:20.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36093 1 109 1 2025-11-13 16:47:20.247 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46740 1 80 1 2025-11-13 16:44:05.972 00:05:00.229 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:43:57.145 00:05:08.844 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:48:20.545 00:00:00.000 UDP 28.104.0.1:46655 -> 198.28.0.2:53 1 64 1 2025-11-13 16:48:20.545 00:00:00.000 UDP 28.104.0.1:44337 -> 198.28.0.2:53 1 64 1 2025-11-13 16:48:20.556 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46655 1 80 1 2025-11-13 16:48:20.557 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44337 1 109 1 2025-11-13 16:49:23.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35940 1 109 1 2025-11-13 16:49:23.111 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46474 1 80 1 2025-11-13 16:49:23.100 00:00:00.000 UDP 28.104.0.1:46474 -> 198.28.0.2:53 1 64 1 2025-11-13 16:49:23.100 00:00:00.000 UDP 28.104.0.1:35940 -> 198.28.0.2:53 1 64 1 2025-11-13 16:45:06.031 00:05:51.107 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:50:23.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46999 1 109 1 2025-11-13 16:50:23.413 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38209 1 80 1 2025-11-13 16:50:23.403 00:00:00.000 UDP 28.104.0.1:38209 -> 198.28.0.2:53 1 64 1 2025-11-13 16:50:23.403 00:00:00.000 UDP 28.104.0.1:46999 -> 198.28.0.2:53 1 64 1 2025-11-13 16:47:05.977 00:05:00.122 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:51:23.699 00:00:00.000 UDP 28.104.0.1:55800 -> 198.28.0.2:53 1 64 1 2025-11-13 16:51:23.700 00:00:00.000 UDP 28.104.0.1:34390 -> 198.28.0.2:53 1 64 1 2025-11-13 16:51:23.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55800 1 80 1 2025-11-13 16:51:23.711 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34390 1 109 1 2025-11-13 16:52:00.004 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:47:57.187 00:05:08.834 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:47:54.872 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2688 1 2025-11-13 16:52:23.990 00:00:00.000 UDP 28.104.0.1:57069 -> 198.28.0.2:53 1 64 1 2025-11-13 16:52:23.990 00:00:00.000 UDP 28.104.0.1:38058 -> 198.28.0.2:53 1 64 1 2025-11-13 16:52:24.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57069 1 80 1 2025-11-13 16:52:24.001 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38058 1 109 1 2025-11-13 16:48:05.988 00:05:51.150 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-13 16:53:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58966 1 109 1 2025-11-13 16:53:24.311 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49818 1 80 1 2025-11-13 16:53:24.301 00:00:00.000 UDP 28.104.0.1:49818 -> 198.28.0.2:53 1 64 1 2025-11-13 16:53:24.301 00:00:00.000 UDP 28.104.0.1:58966 -> 198.28.0.2:53 1 64 1 2025-11-13 16:50:05.988 00:05:00.215 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-13 16:49:57.147 00:05:08.841 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-13 16:54:24.600 00:00:00.000 UDP 28.104.0.1:41006 -> 198.28.0.2:53 1 64 1 2025-11-13 16:54:24.600 00:00:00.000 UDP 28.104.0.1:32856 -> 198.28.0.2:53 1 64 1 2025-11-13 16:54:24.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41006 1 109 1 2025-11-13 16:54:24.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32856 1 80 1 2025-11-13 16:55:24.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42426 1 109 1 2025-11-13 16:55:24.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35852 1 80 1 2025-11-13 16:55:24.886 00:00:00.000 UDP 28.104.0.1:42426 -> 198.28.0.2:53 1 64 1 2025-11-13 16:55:24.887 00:00:00.000 UDP 28.104.0.1:35852 -> 198.28.0.2:53 1 64 1 2025-11-13 16:51:06.031 00:05:51.107 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-13 16:56:25.209 00:00:00.000 UDP 28.104.0.1:34800 -> 198.28.0.2:53 1 64 1 2025-11-13 16:56:25.209 00:00:00.000 UDP 28.104.0.1:51112 -> 198.28.0.2:53 1 64 1 2025-11-13 16:56:25.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51112 1 80 1 2025-11-13 16:56:25.220 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34800 1 109 1 2025-11-13 16:57:00.023 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-13 16:53:05.989 00:05:00.120 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-13 16:57:25.702 00:00:00.000 UDP 28.104.0.1:39762 -> 198.28.0.2:53 1 64 1 2025-11-13 16:57:25.702 00:00:00.000 UDP 28.104.0.1:35816 -> 198.28.0.2:53 1 64 1 2025-11-13 16:53:14.878 00:05:10.014 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2788 1 2025-11-13 16:57:25.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35816 1 80 1 2025-11-13 16:57:25.713 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39762 1 109 1 2025-11-13 16:53:57.187 00:05:08.835 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-13 16:58:26.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41959 1 80 1 2025-11-13 16:58:26.017 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46828 1 109 1 2025-11-13 16:58:26.005 00:00:00.000 UDP 28.104.0.1:46828 -> 198.28.0.2:53 1 64 1 2025-11-13 16:58:26.005 00:00:00.000 UDP 28.104.0.1:41959 -> 198.28.0.2:53 1 64 1 Summary: total flows: 324, total bytes: 95266, total packets: 1405, avg bps: 195, avg pps: 0, avg bpp: 67 Time window: 2025-11-13 15:54:05 - 2025-11-13 16:59:06 Total flows processed: 324, passed: 324, Blocks skipped: 0, Bytes read: 33760 Sys: 0.0030s User: 0.0040s Wall: 0.0040s flows/second: 81550.3 Runtime: 0.0040s