Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 02:59:03.004 00:00:00.000 UDP 28.104.0.1:58847 -> 198.28.0.2:53 1 64 1 2025-11-20 02:59:03.004 00:00:00.000 UDP 28.104.0.1:59723 -> 198.28.0.2:53 1 64 1 2025-11-20 02:59:03.018 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59723 1 80 1 2025-11-20 02:59:03.015 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58847 1 109 1 2025-11-20 03:00:03.307 00:00:00.000 UDP 28.104.0.1:57701 -> 198.28.0.2:53 1 64 1 2025-11-20 03:00:03.307 00:00:00.000 UDP 28.104.0.1:46664 -> 198.28.0.2:53 1 64 1 2025-11-20 03:00:03.317 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57701 1 109 1 2025-11-20 03:00:03.318 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46664 1 80 1 2025-11-20 02:55:09.719 00:05:50.821 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:00:05.744 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:01:03.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49479 1 109 1 2025-11-20 03:01:03.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60203 1 80 1 2025-11-20 03:01:03.552 00:00:00.000 UDP 28.104.0.1:60203 -> 198.28.0.2:53 1 64 1 2025-11-20 03:01:03.552 00:00:00.000 UDP 28.104.0.1:49479 -> 198.28.0.2:53 1 64 1 2025-11-20 03:02:03.884 00:00:00.000 UDP 28.104.0.1:55824 -> 198.28.0.2:53 1 64 1 2025-11-20 03:02:03.884 00:00:00.000 UDP 28.104.0.1:33656 -> 198.28.0.2:53 1 64 1 2025-11-20 03:02:03.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33656 1 109 1 2025-11-20 03:02:03.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55824 1 80 1 2025-11-20 02:58:00.533 00:05:08.733 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 02:57:09.256 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 02:58:47.667 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 03:03:04.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50669 1 80 1 2025-11-20 03:03:04.202 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36552 1 109 1 2025-11-20 02:58:09.711 00:05:50.881 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:03:04.192 00:00:00.000 UDP 28.104.0.1:50669 -> 198.28.0.2:53 1 64 1 2025-11-20 03:03:04.192 00:00:00.000 UDP 28.104.0.1:36552 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:04.493 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45067 1 80 1 2025-11-20 03:04:04.494 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58503 1 109 1 2025-11-20 03:04:04.483 00:00:00.000 UDP 28.104.0.1:45067 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:04.483 00:00:00.000 UDP 28.104.0.1:58503 -> 198.28.0.2:53 1 64 1 2025-11-20 03:00:00.557 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:05:04.791 00:00:00.000 UDP 28.104.0.1:44153 -> 198.28.0.2:53 1 64 1 2025-11-20 03:05:04.791 00:00:00.000 UDP 28.104.0.1:55035 -> 198.28.0.2:53 1 64 1 2025-11-20 03:05:06.011 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:05:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55035 1 109 1 2025-11-20 03:05:04.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44153 1 80 1 2025-11-20 03:00:09.257 00:06:00.207 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:06:05.100 00:00:00.000 UDP 28.104.0.1:43198 -> 198.28.0.2:53 1 64 1 2025-11-20 03:06:05.099 00:00:00.000 UDP 28.104.0.1:52859 -> 198.28.0.2:53 1 64 1 2025-11-20 03:01:09.721 00:05:50.821 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:06:05.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52859 1 80 1 2025-11-20 03:06:05.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43198 1 109 1 2025-11-20 03:07:05.390 00:00:00.000 UDP 28.104.0.1:49907 -> 198.28.0.2:53 1 64 1 2025-11-20 03:07:05.390 00:00:00.000 UDP 28.104.0.1:55418 -> 198.28.0.2:53 1 64 1 2025-11-20 03:07:05.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55418 1 80 1 2025-11-20 03:07:05.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49907 1 109 1 2025-11-20 03:08:05.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43688 1 109 1 2025-11-20 03:08:05.722 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49836 1 80 1 2025-11-20 03:08:05.713 00:00:00.000 UDP 28.104.0.1:49836 -> 198.28.0.2:53 1 64 1 2025-11-20 03:08:05.713 00:00:00.000 UDP 28.104.0.1:43688 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:00.542 00:05:08.726 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:04:07.679 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2796 1 2025-11-20 03:04:09.711 00:05:50.882 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:09:06.022 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47841 1 80 1 2025-11-20 03:09:06.021 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33727 1 109 1 2025-11-20 03:09:06.007 00:00:00.000 UDP 28.104.0.1:33727 -> 198.28.0.2:53 1 64 1 2025-11-20 03:09:06.007 00:00:00.000 UDP 28.104.0.1:47841 -> 198.28.0.2:53 1 64 1 2025-11-20 03:04:09.256 00:06:00.579 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:10:05.761 00:00:00.019 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:10:06.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40157 1 80 1 2025-11-20 03:10:06.424 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51966 1 109 1 2025-11-20 03:10:06.414 00:00:00.000 UDP 28.104.0.1:51966 -> 198.28.0.2:53 1 64 1 2025-11-20 03:10:06.414 00:00:00.000 UDP 28.104.0.1:40157 -> 198.28.0.2:53 1 64 1 2025-11-20 03:06:00.552 00:05:08.711 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:11:06.664 00:00:00.000 UDP 28.104.0.1:34312 -> 198.28.0.2:53 1 64 1 2025-11-20 03:11:06.664 00:00:00.000 UDP 28.104.0.1:51011 -> 198.28.0.2:53 1 64 1 2025-11-20 03:11:06.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51011 1 80 1 2025-11-20 03:11:06.676 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34312 1 109 1 2025-11-20 03:07:09.722 00:05:50.821 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:12:06.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54338 1 80 1 2025-11-20 03:12:06.969 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47868 1 109 1 2025-11-20 03:12:06.959 00:00:00.000 UDP 28.104.0.1:54338 -> 198.28.0.2:53 1 64 1 2025-11-20 03:12:06.959 00:00:00.000 UDP 28.104.0.1:47868 -> 198.28.0.2:53 1 64 1 2025-11-20 03:07:09.258 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:13:07.212 00:00:00.000 UDP 28.104.0.1:55080 -> 198.28.0.2:53 1 64 1 2025-11-20 03:13:07.212 00:00:00.000 UDP 28.104.0.1:43477 -> 198.28.0.2:53 1 64 1 2025-11-20 03:13:07.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55080 1 109 1 2025-11-20 03:13:07.223 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43477 1 80 1 2025-11-20 03:09:27.688 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 42 3124 1 2025-11-20 03:14:07.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58584 1 109 1 2025-11-20 03:14:07.563 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55396 1 80 1 2025-11-20 03:14:07.553 00:00:00.000 UDP 28.104.0.1:55396 -> 198.28.0.2:53 1 64 1 2025-11-20 03:14:07.553 00:00:00.000 UDP 28.104.0.1:58584 -> 198.28.0.2:53 1 64 1 2025-11-20 03:10:00.542 00:05:08.730 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:10:09.712 00:05:50.889 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:15:07.847 00:00:00.000 UDP 28.104.0.1:45727 -> 198.28.0.2:53 1 64 1 2025-11-20 03:15:07.847 00:00:00.000 UDP 28.104.0.1:55532 -> 198.28.0.2:53 1 64 1 2025-11-20 03:15:05.850 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:15:07.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55532 1 109 1 2025-11-20 03:15:07.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45727 1 80 1 2025-11-20 03:16:08.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50185 1 80 1 2025-11-20 03:16:08.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59527 1 109 1 2025-11-20 03:16:08.140 00:00:00.000 UDP 28.104.0.1:59527 -> 198.28.0.2:53 1 64 1 2025-11-20 03:16:08.140 00:00:00.000 UDP 28.104.0.1:50185 -> 198.28.0.2:53 1 64 1 2025-11-20 03:11:09.264 00:06:00.574 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:12:00.553 00:05:08.709 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:17:08.441 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42022 1 80 1 2025-11-20 03:17:08.440 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33108 1 109 1 2025-11-20 03:17:08.429 00:00:00.000 UDP 28.104.0.1:33108 -> 198.28.0.2:53 1 64 1 2025-11-20 03:17:08.429 00:00:00.000 UDP 28.104.0.1:42022 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:08.733 00:00:00.000 UDP 28.104.0.1:34801 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:08.733 00:00:00.000 UDP 28.104.0.1:36872 -> 198.28.0.2:53 1 64 1 2025-11-20 03:13:09.723 00:05:50.828 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:18:08.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34801 1 109 1 2025-11-20 03:18:08.743 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36872 1 80 1 2025-11-20 03:14:47.697 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-11-20 03:19:09.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45720 1 80 1 2025-11-20 03:19:09.071 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50868 1 109 1 2025-11-20 03:19:09.062 00:00:00.000 UDP 28.104.0.1:45720 -> 198.28.0.2:53 1 64 1 2025-11-20 03:19:09.062 00:00:00.000 UDP 28.104.0.1:50868 -> 198.28.0.2:53 1 64 1 2025-11-20 03:14:09.262 00:06:00.210 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:20:05.793 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:20:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57943 1 109 1 2025-11-20 03:16:00.550 00:05:08.726 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:20:09.362 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42756 1 80 1 2025-11-20 03:20:09.352 00:00:00.000 UDP 28.104.0.1:42756 -> 198.28.0.2:53 1 64 1 2025-11-20 03:20:09.352 00:00:00.000 UDP 28.104.0.1:57943 -> 198.28.0.2:53 1 64 1 2025-11-20 03:16:09.714 00:05:50.889 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:21:09.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35399 1 109 1 2025-11-20 03:21:09.649 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35372 1 80 1 2025-11-20 03:21:09.640 00:00:00.000 UDP 28.104.0.1:35399 -> 198.28.0.2:53 1 64 1 2025-11-20 03:21:09.640 00:00:00.000 UDP 28.104.0.1:35372 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:00.560 00:05:08.705 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:22:09.930 00:00:00.000 UDP 28.104.0.1:50289 -> 198.28.0.2:53 1 64 1 2025-11-20 03:22:09.929 00:00:00.000 UDP 28.104.0.1:58430 -> 198.28.0.2:53 1 64 1 2025-11-20 03:22:09.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50289 1 80 1 2025-11-20 03:22:09.939 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58430 1 109 1 2025-11-20 03:23:10.194 00:00:00.000 UDP 28.104.0.1:48057 -> 198.28.0.2:53 1 64 1 2025-11-20 03:23:10.194 00:00:00.000 UDP 28.104.0.1:44106 -> 198.28.0.2:53 1 64 1 2025-11-20 03:18:09.262 00:06:00.578 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:23:10.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44106 1 109 1 2025-11-20 03:23:10.206 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48057 1 80 1 2025-11-20 03:19:09.728 00:05:50.825 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:24:10.487 00:00:00.000 UDP 28.104.0.1:33007 -> 198.28.0.2:53 1 64 1 2025-11-20 03:24:10.488 00:00:00.000 UDP 28.104.0.1:45942 -> 198.28.0.2:53 1 64 1 2025-11-20 03:24:10.499 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45942 1 109 1 2025-11-20 03:24:10.498 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33007 1 80 1 2025-11-20 03:20:07.705 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 03:25:06.027 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:25:10.787 00:00:00.000 UDP 28.104.0.1:36525 -> 198.28.0.2:53 1 64 1 2025-11-20 03:25:10.787 00:00:00.000 UDP 28.104.0.1:32998 -> 198.28.0.2:53 1 64 1 2025-11-20 03:25:10.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36525 1 80 1 2025-11-20 03:25:10.798 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32998 1 109 1 2025-11-20 03:21:09.267 00:06:00.206 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:26:11.093 00:00:00.000 UDP 28.104.0.1:44454 -> 198.28.0.2:53 1 64 1 2025-11-20 03:26:11.093 00:00:00.000 UDP 28.104.0.1:42417 -> 198.28.0.2:53 1 64 1 2025-11-20 03:26:11.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44454 1 80 1 2025-11-20 03:22:00.552 00:05:08.724 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:26:11.103 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42417 1 109 1 2025-11-20 03:22:09.719 00:05:50.887 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:27:11.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47744 1 109 1 2025-11-20 03:27:11.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36986 1 80 1 2025-11-20 03:27:11.388 00:00:00.000 UDP 28.104.0.1:36986 -> 198.28.0.2:53 1 64 1 2025-11-20 03:27:11.388 00:00:00.000 UDP 28.104.0.1:47744 -> 198.28.0.2:53 1 64 1 2025-11-20 03:28:11.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34060 1 109 1 2025-11-20 03:28:11.706 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50207 1 80 1 2025-11-20 03:24:00.564 00:05:08.704 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:28:11.695 00:00:00.000 UDP 28.104.0.1:34060 -> 198.28.0.2:53 1 64 1 2025-11-20 03:28:11.695 00:00:00.000 UDP 28.104.0.1:50207 -> 198.28.0.2:53 1 64 1 2025-11-20 03:29:11.991 00:00:00.000 UDP 28.104.0.1:40850 -> 198.28.0.2:53 1 64 1 2025-11-20 03:29:11.991 00:00:00.000 UDP 28.104.0.1:47064 -> 198.28.0.2:53 1 64 1 2025-11-20 03:29:12.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47064 1 109 1 2025-11-20 03:29:12.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40850 1 80 1 2025-11-20 03:25:27.708 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 03:25:09.728 00:05:50.825 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:30:06.175 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:30:12.636 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45355 1 109 1 2025-11-20 03:30:12.637 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58648 1 80 1 2025-11-20 03:25:09.266 00:06:00.575 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:30:12.625 00:00:00.000 UDP 28.104.0.1:58648 -> 198.28.0.2:53 1 64 1 2025-11-20 03:30:12.625 00:00:00.000 UDP 28.104.0.1:45355 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:12.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38196 1 80 1 2025-11-20 03:31:12.924 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50348 1 109 1 2025-11-20 03:31:12.914 00:00:00.000 UDP 28.104.0.1:38196 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:12.915 00:00:00.000 UDP 28.104.0.1:50348 -> 198.28.0.2:53 1 64 1 2025-11-20 03:32:13.217 00:00:00.000 UDP 28.104.0.1:57453 -> 198.28.0.2:53 1 64 1 2025-11-20 03:32:13.217 00:00:00.000 UDP 28.104.0.1:57894 -> 198.28.0.2:53 1 64 1 2025-11-20 03:32:13.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57453 1 109 1 2025-11-20 03:32:13.227 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57894 1 80 1 2025-11-20 03:28:00.554 00:05:08.729 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:28:09.723 00:05:50.890 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:33:13.543 00:00:00.000 UDP 28.104.0.1:40462 -> 198.28.0.2:53 1 64 1 2025-11-20 03:33:13.543 00:00:00.000 UDP 28.104.0.1:50752 -> 198.28.0.2:53 1 64 1 2025-11-20 03:28:09.267 00:06:00.211 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:33:13.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40462 1 80 1 2025-11-20 03:33:13.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50752 1 109 1 2025-11-20 03:34:13.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45849 1 80 1 2025-11-20 03:34:13.847 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33478 1 109 1 2025-11-20 03:34:13.837 00:00:00.000 UDP 28.104.0.1:33478 -> 198.28.0.2:53 1 64 1 2025-11-20 03:34:13.837 00:00:00.000 UDP 28.104.0.1:45849 -> 198.28.0.2:53 1 64 1 2025-11-20 03:30:00.564 00:05:08.710 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:30:47.713 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-11-20 03:35:06.186 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:35:14.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44953 1 80 1 2025-11-20 03:35:14.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60632 1 109 1 2025-11-20 03:35:14.110 00:00:00.000 UDP 28.104.0.1:60632 -> 198.28.0.2:53 1 64 1 2025-11-20 03:35:14.110 00:00:00.000 UDP 28.104.0.1:44953 -> 198.28.0.2:53 1 64 1 2025-11-20 03:31:09.734 00:05:50.831 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:36:14.415 00:00:00.000 UDP 28.104.0.1:40357 -> 198.28.0.2:53 1 64 1 2025-11-20 03:36:14.415 00:00:00.000 UDP 28.104.0.1:51416 -> 198.28.0.2:53 1 64 1 2025-11-20 03:36:14.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51416 1 80 1 2025-11-20 03:36:14.426 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40357 1 109 1 2025-11-20 03:32:09.273 00:06:00.571 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:37:14.719 00:00:00.000 UDP 28.104.0.1:37453 -> 198.28.0.2:53 1 64 1 2025-11-20 03:37:14.720 00:00:00.000 UDP 28.104.0.1:57107 -> 198.28.0.2:53 1 64 1 2025-11-20 03:37:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57107 1 80 1 2025-11-20 03:37:14.729 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37453 1 109 1 2025-11-20 03:34:00.563 00:05:08.725 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:38:15.043 00:00:00.000 UDP 28.104.0.1:45216 -> 198.28.0.2:53 1 64 1 2025-11-20 03:38:15.043 00:00:00.000 UDP 28.104.0.1:35930 -> 198.28.0.2:53 1 64 1 2025-11-20 03:38:15.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45216 1 80 1 2025-11-20 03:38:15.054 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35930 1 109 1 2025-11-20 03:34:09.724 00:05:50.892 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:39:15.343 00:00:00.000 UDP 28.104.0.1:45459 -> 198.28.0.2:53 1 64 1 2025-11-20 03:39:15.344 00:00:00.000 UDP 28.104.0.1:32828 -> 198.28.0.2:53 1 64 1 2025-11-20 03:39:15.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32828 1 109 1 2025-11-20 03:39:15.354 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45459 1 80 1 2025-11-20 03:40:06.360 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:36:00.574 00:05:08.704 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:35:09.273 00:06:00.207 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:40:15.649 00:00:00.000 UDP 28.104.0.1:41620 -> 198.28.0.2:53 1 64 1 2025-11-20 03:40:15.649 00:00:00.000 UDP 28.104.0.1:52102 -> 198.28.0.2:53 1 64 1 2025-11-20 03:36:07.719 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 43 3396 1 2025-11-20 03:40:15.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41620 1 109 1 2025-11-20 03:40:15.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52102 1 80 1 2025-11-20 03:41:15.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49496 1 80 1 2025-11-20 03:41:15.965 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39634 1 109 1 2025-11-20 03:41:15.956 00:00:00.000 UDP 28.104.0.1:39634 -> 198.28.0.2:53 1 64 1 2025-11-20 03:41:15.956 00:00:00.000 UDP 28.104.0.1:49496 -> 198.28.0.2:53 1 64 1 2025-11-20 03:37:09.734 00:05:50.832 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:42:16.271 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35032 1 80 1 2025-11-20 03:42:16.270 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55567 1 109 1 2025-11-20 03:42:16.259 00:00:00.000 UDP 28.104.0.1:35032 -> 198.28.0.2:53 1 64 1 2025-11-20 03:42:16.259 00:00:00.000 UDP 28.104.0.1:55567 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:16.565 00:00:00.000 UDP 28.104.0.1:46675 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:16.565 00:00:00.000 UDP 28.104.0.1:38446 -> 198.28.0.2:53 1 64 1 2025-11-20 03:43:16.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46675 1 80 1 2025-11-20 03:43:16.576 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38446 1 109 1 2025-11-20 03:39:09.279 00:06:00.566 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:40:00.567 00:05:08.723 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:44:16.865 00:00:00.000 UDP 28.104.0.1:37984 -> 198.28.0.2:53 1 64 1 2025-11-20 03:44:16.866 00:00:00.000 UDP 28.104.0.1:57285 -> 198.28.0.2:53 1 64 1 2025-11-20 03:44:16.876 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37984 1 80 1 2025-11-20 03:44:16.876 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57285 1 109 1 2025-11-20 03:40:09.725 00:05:50.895 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:45:06.396 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:45:17.185 00:00:00.000 UDP 28.104.0.1:48116 -> 198.28.0.2:53 1 64 1 2025-11-20 03:45:17.185 00:00:00.000 UDP 28.104.0.1:46492 -> 198.28.0.2:53 1 64 1 2025-11-20 03:45:17.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48116 1 80 1 2025-11-20 03:45:17.200 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46492 1 109 1 2025-11-20 03:41:27.729 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2468 1 2025-11-20 03:42:00.576 00:05:08.703 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:46:17.494 00:00:00.000 UDP 28.104.0.1:54176 -> 198.28.0.2:53 1 64 1 2025-11-20 03:46:17.493 00:00:00.000 UDP 28.104.0.1:58758 -> 198.28.0.2:53 1 64 1 2025-11-20 03:46:17.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58758 1 80 1 2025-11-20 03:46:17.505 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54176 1 109 1 2025-11-20 03:42:09.278 00:06:00.203 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:47:17.802 00:00:00.000 UDP 28.104.0.1:50513 -> 198.28.0.2:53 1 64 1 2025-11-20 03:47:17.802 00:00:00.000 UDP 28.104.0.1:41252 -> 198.28.0.2:53 1 64 1 2025-11-20 03:47:17.813 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41252 1 109 1 2025-11-20 03:47:17.814 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50513 1 80 1 2025-11-20 03:43:09.734 00:05:50.836 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:48:18.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46647 1 109 1 2025-11-20 03:48:18.113 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36067 1 80 1 2025-11-20 03:48:18.103 00:00:00.000 UDP 28.104.0.1:36067 -> 198.28.0.2:53 1 64 1 2025-11-20 03:48:18.103 00:00:00.000 UDP 28.104.0.1:46647 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:18.397 00:00:00.000 UDP 28.104.0.1:49708 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:18.397 00:00:00.000 UDP 28.104.0.1:58166 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:18.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49708 1 109 1 2025-11-20 03:49:18.407 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58166 1 80 1 2025-11-20 03:50:06.556 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:46:00.569 00:05:08.721 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:50:18.694 00:00:00.000 UDP 28.104.0.1:54226 -> 198.28.0.2:53 1 64 1 2025-11-20 03:50:18.694 00:00:00.000 UDP 28.104.0.1:33907 -> 198.28.0.2:53 1 64 1 2025-11-20 03:50:18.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54226 1 109 1 2025-11-20 03:50:18.705 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33907 1 80 1 2025-11-20 03:46:47.738 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-20 03:46:09.727 00:05:50.895 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:46:09.280 00:06:00.568 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:51:18.990 00:00:00.000 UDP 28.104.0.1:54223 -> 198.28.0.2:53 1 64 1 2025-11-20 03:51:18.990 00:00:00.000 UDP 28.104.0.1:37545 -> 198.28.0.2:53 1 64 1 2025-11-20 03:51:19.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54223 1 109 1 2025-11-20 03:51:19.002 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37545 1 80 1 2025-11-20 03:48:00.580 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:52:19.293 00:00:00.000 UDP 28.104.0.1:54503 -> 198.28.0.2:53 1 64 1 2025-11-20 03:52:19.293 00:00:00.000 UDP 28.104.0.1:60009 -> 198.28.0.2:53 1 64 1 2025-11-20 03:52:19.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54503 1 80 1 2025-11-20 03:52:19.303 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60009 1 109 1 2025-11-20 03:53:19.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35853 1 80 1 2025-11-20 03:53:19.560 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38093 1 109 1 2025-11-20 03:53:19.549 00:00:00.000 UDP 28.104.0.1:38093 -> 198.28.0.2:53 1 64 1 2025-11-20 03:53:19.550 00:00:00.000 UDP 28.104.0.1:35853 -> 198.28.0.2:53 1 64 1 2025-11-20 03:49:09.737 00:05:50.834 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 03:49:09.280 00:06:00.202 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 03:54:19.795 00:00:00.000 UDP 28.104.0.1:47212 -> 198.28.0.2:53 1 64 1 2025-11-20 03:54:19.795 00:00:00.000 UDP 28.104.0.1:52662 -> 198.28.0.2:53 1 64 1 2025-11-20 03:54:19.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47212 1 80 1 2025-11-20 03:54:19.806 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52662 1 109 1 2025-11-20 03:55:07.470 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 03:55:20.107 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45846 1 80 1 2025-11-20 03:55:20.108 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54543 1 109 1 2025-11-20 03:55:20.097 00:00:00.000 UDP 28.104.0.1:54543 -> 198.28.0.2:53 1 64 1 2025-11-20 03:55:20.097 00:00:00.000 UDP 28.104.0.1:45846 -> 198.28.0.2:53 1 64 1 2025-11-20 03:52:00.571 00:05:08.720 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 03:52:07.746 00:05:10.003 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 03:56:20.392 00:00:00.000 UDP 28.104.0.1:41401 -> 198.28.0.2:53 1 64 1 2025-11-20 03:56:20.391 00:00:00.000 UDP 28.104.0.1:35511 -> 198.28.0.2:53 1 64 1 2025-11-20 03:56:20.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41401 1 80 1 2025-11-20 03:56:20.401 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35511 1 109 1 2025-11-20 03:52:09.727 00:05:50.896 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 03:57:20.645 00:00:00.000 UDP 28.104.0.1:42038 -> 198.28.0.2:53 1 64 1 2025-11-20 03:57:20.645 00:00:00.000 UDP 28.104.0.1:56177 -> 198.28.0.2:53 1 64 1 2025-11-20 03:57:20.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42038 1 80 1 2025-11-20 03:57:20.657 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56177 1 109 1 2025-11-20 03:53:09.280 00:06:00.568 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-20 03:54:00.581 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 03:58:20.940 00:00:00.000 UDP 28.104.0.1:43479 -> 198.28.0.2:53 1 64 1 2025-11-20 03:58:20.940 00:00:00.000 UDP 28.104.0.1:51602 -> 198.28.0.2:53 1 64 1 2025-11-20 03:58:20.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51602 1 80 1 2025-11-20 03:58:20.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43479 1 109 1 Summary: total flows: 320, total bytes: 94393, total packets: 1391, avg bps: 196, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 02:55:09 - 2025-11-20 03:59:09 Total flows processed: 320, passed: 320, Blocks skipped: 0, Bytes read: 33344 Sys: 0.0042s User: 0.0034s Wall: 0.0061s flows/second: 52287.9 Runtime: 0.0061s