Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-20 15:59:06.120 00:00:00.000 UDP 28.104.0.1:38638 -> 198.28.0.2:53 1 64 1 2025-11-20 15:59:06.120 00:00:00.000 UDP 28.104.0.1:45230 -> 198.28.0.2:53 1 64 1 2025-11-20 15:59:06.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38638 1 80 1 2025-11-20 15:59:06.129 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45230 1 109 1 2025-11-20 15:55:09.957 00:05:51.008 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:00:06.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42914 1 80 1 2025-11-20 16:00:06.435 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56482 1 109 1 2025-11-20 16:00:06.426 00:00:00.000 UDP 28.104.0.1:42914 -> 198.28.0.2:53 1 64 1 2025-11-20 16:00:06.426 00:00:00.000 UDP 28.104.0.1:56482 -> 198.28.0.2:53 1 64 1 2025-11-20 16:00:23.112 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 15:56:38.819 00:05:10.015 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-11-20 16:01:06.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48495 1 80 1 2025-11-20 16:01:06.741 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34936 1 109 1 2025-11-20 16:01:06.730 00:00:00.000 UDP 28.104.0.1:48495 -> 198.28.0.2:53 1 64 1 2025-11-20 16:01:06.730 00:00:00.000 UDP 28.104.0.1:34936 -> 198.28.0.2:53 1 64 1 2025-11-20 16:02:07.378 00:00:00.000 UDP 28.104.0.1:60776 -> 198.28.0.2:53 1 64 1 2025-11-20 16:02:07.377 00:00:00.000 UDP 28.104.0.1:44108 -> 198.28.0.2:53 1 64 1 2025-11-20 16:02:07.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44108 1 109 1 2025-11-20 16:02:07.389 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60776 1 80 1 2025-11-20 15:58:00.965 00:05:08.520 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 15:58:09.474 00:05:00.662 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 15:57:09.473 00:06:00.250 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 15:58:09.949 00:05:51.068 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:03:07.665 00:00:00.000 UDP 28.104.0.1:41162 -> 198.28.0.2:53 1 64 1 2025-11-20 16:03:07.665 00:00:00.000 UDP 28.104.0.1:56732 -> 198.28.0.2:53 1 64 1 2025-11-20 16:03:07.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56732 1 109 1 2025-11-20 16:03:07.675 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41162 1 80 1 2025-11-20 16:04:08.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53617 1 80 1 2025-11-20 16:04:08.019 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46837 1 109 1 2025-11-20 16:04:08.007 00:00:00.000 UDP 28.104.0.1:53617 -> 198.28.0.2:53 1 64 1 2025-11-20 16:04:08.007 00:00:00.000 UDP 28.104.0.1:46837 -> 198.28.0.2:53 1 64 1 2025-11-20 16:00:00.974 00:05:08.500 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:05:08.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50631 1 80 1 2025-11-20 16:05:08.310 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46687 1 109 1 2025-11-20 16:05:08.299 00:00:00.000 UDP 28.104.0.1:46687 -> 198.28.0.2:53 1 64 1 2025-11-20 16:05:08.299 00:00:00.000 UDP 28.104.0.1:50631 -> 198.28.0.2:53 1 64 1 2025-11-20 16:05:22.903 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:01:09.961 00:05:51.007 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:06:08.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48750 1 80 1 2025-11-20 16:06:08.611 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60445 1 109 1 2025-11-20 16:06:08.601 00:00:00.000 UDP 28.104.0.1:48750 -> 198.28.0.2:53 1 64 1 2025-11-20 16:06:08.601 00:00:00.000 UDP 28.104.0.1:60445 -> 198.28.0.2:53 1 64 1 2025-11-20 16:01:58.834 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 42 3160 1 2025-11-20 16:07:08.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37459 1 109 1 2025-11-20 16:07:08.910 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44195 1 80 1 2025-11-20 16:07:08.899 00:00:00.000 UDP 28.104.0.1:37459 -> 198.28.0.2:53 1 64 1 2025-11-20 16:07:08.899 00:00:00.000 UDP 28.104.0.1:44195 -> 198.28.0.2:53 1 64 1 2025-11-20 16:08:09.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55974 1 109 1 2025-11-20 16:08:09.219 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41385 1 80 1 2025-11-20 16:04:00.966 00:05:08.519 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:04:09.475 00:05:00.663 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:08:09.209 00:00:00.000 UDP 28.104.0.1:41385 -> 198.28.0.2:53 1 64 1 2025-11-20 16:08:09.209 00:00:00.000 UDP 28.104.0.1:55974 -> 198.28.0.2:53 1 64 1 2025-11-20 16:04:09.951 00:05:51.066 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:09:09.472 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43671 1 109 1 2025-11-20 16:09:09.471 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43191 1 80 1 2025-11-20 16:09:09.461 00:00:00.000 UDP 28.104.0.1:43671 -> 198.28.0.2:53 1 64 1 2025-11-20 16:04:09.475 00:06:00.252 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:09:09.461 00:00:00.000 UDP 28.104.0.1:43191 -> 198.28.0.2:53 1 64 1 2025-11-20 16:06:00.977 00:05:08.499 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:10:09.768 00:00:00.000 UDP 28.104.0.1:34431 -> 198.28.0.2:53 1 64 1 2025-11-20 16:10:09.768 00:00:00.000 UDP 28.104.0.1:36213 -> 198.28.0.2:53 1 64 1 2025-11-20 16:10:09.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36213 1 109 1 2025-11-20 16:10:09.778 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34431 1 80 1 2025-11-20 16:10:23.679 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:11:10.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38751 1 80 1 2025-11-20 16:11:10.083 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57266 1 109 1 2025-11-20 16:11:10.072 00:00:00.000 UDP 28.104.0.1:38751 -> 198.28.0.2:53 1 64 1 2025-11-20 16:11:10.072 00:00:00.000 UDP 28.104.0.1:57266 -> 198.28.0.2:53 1 64 1 2025-11-20 16:07:18.837 00:05:10.014 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2480 1 2025-11-20 16:07:09.962 00:05:51.005 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:12:10.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55015 1 109 1 2025-11-20 16:12:10.384 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36939 1 80 1 2025-11-20 16:12:10.375 00:00:00.000 UDP 28.104.0.1:36939 -> 198.28.0.2:53 1 64 1 2025-11-20 16:12:10.376 00:00:00.000 UDP 28.104.0.1:55015 -> 198.28.0.2:53 1 64 1 2025-11-20 16:13:10.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60357 1 109 1 2025-11-20 16:13:10.685 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47362 1 80 1 2025-11-20 16:13:10.674 00:00:00.000 UDP 28.104.0.1:47362 -> 198.28.0.2:53 1 64 1 2025-11-20 16:13:10.674 00:00:00.000 UDP 28.104.0.1:60357 -> 198.28.0.2:53 1 64 1 2025-11-20 16:14:10.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51137 1 109 1 2025-11-20 16:14:10.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46835 1 80 1 2025-11-20 16:10:00.966 00:05:08.522 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:14:10.981 00:00:00.000 UDP 28.104.0.1:51137 -> 198.28.0.2:53 1 64 1 2025-11-20 16:10:09.475 00:05:00.662 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:14:10.981 00:00:00.000 UDP 28.104.0.1:46835 -> 198.28.0.2:53 1 64 1 2025-11-20 16:10:09.953 00:05:51.066 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:15:11.280 00:00:00.000 UDP 28.104.0.1:40470 -> 198.28.0.2:53 1 64 1 2025-11-20 16:15:11.281 00:00:00.000 UDP 28.104.0.1:56010 -> 198.28.0.2:53 1 64 1 2025-11-20 16:15:11.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40470 1 109 1 2025-11-20 16:15:11.290 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56010 1 80 1 2025-11-20 16:15:23.156 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:16:11.575 00:00:00.000 UDP 28.104.0.1:47952 -> 198.28.0.2:53 1 64 1 2025-11-20 16:12:00.977 00:05:08.502 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:11:09.476 00:06:00.253 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:16:11.575 00:00:00.000 UDP 28.104.0.1:36308 -> 198.28.0.2:53 1 64 1 2025-11-20 16:16:11.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36308 1 109 1 2025-11-20 16:16:11.585 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47952 1 80 1 2025-11-20 16:12:38.852 00:05:10.002 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-20 16:17:11.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54046 1 109 1 2025-11-20 16:17:11.879 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44311 1 80 1 2025-11-20 16:17:11.870 00:00:00.000 UDP 28.104.0.1:44311 -> 198.28.0.2:53 1 64 1 2025-11-20 16:17:11.870 00:00:00.000 UDP 28.104.0.1:54046 -> 198.28.0.2:53 1 64 1 2025-11-20 16:13:09.965 00:05:51.007 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:18:12.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45500 1 80 1 2025-11-20 16:18:12.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51018 1 109 1 2025-11-20 16:18:12.184 00:00:00.000 UDP 28.104.0.1:45500 -> 198.28.0.2:53 1 64 1 2025-11-20 16:18:12.184 00:00:00.000 UDP 28.104.0.1:51018 -> 198.28.0.2:53 1 64 1 2025-11-20 16:19:12.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34493 1 80 1 2025-11-20 16:19:12.484 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40675 1 109 1 2025-11-20 16:19:12.475 00:00:00.000 UDP 28.104.0.1:34493 -> 198.28.0.2:53 1 64 1 2025-11-20 16:19:12.475 00:00:00.000 UDP 28.104.0.1:40675 -> 198.28.0.2:53 1 64 1 2025-11-20 16:20:12.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45956 1 109 1 2025-11-20 16:16:00.968 00:05:08.521 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:20:12.775 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52626 1 80 1 2025-11-20 16:16:09.480 00:05:00.659 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:20:12.765 00:00:00.000 UDP 28.104.0.1:52626 -> 198.28.0.2:53 1 64 1 2025-11-20 16:20:12.765 00:00:00.000 UDP 28.104.0.1:45956 -> 198.28.0.2:53 1 64 1 2025-11-20 16:20:23.253 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:16:09.956 00:05:51.076 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:21:13.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40291 1 109 1 2025-11-20 16:21:13.078 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51200 1 80 1 2025-11-20 16:21:13.067 00:00:00.000 UDP 28.104.0.1:51200 -> 198.28.0.2:53 1 64 1 2025-11-20 16:21:13.067 00:00:00.000 UDP 28.104.0.1:40291 -> 198.28.0.2:53 1 64 1 2025-11-20 16:22:13.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35776 1 80 1 2025-11-20 16:22:13.368 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52670 1 109 1 2025-11-20 16:18:00.985 00:05:08.495 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:22:13.359 00:00:00.000 UDP 28.104.0.1:52670 -> 198.28.0.2:53 1 64 1 2025-11-20 16:22:13.359 00:00:00.000 UDP 28.104.0.1:35776 -> 198.28.0.2:53 1 64 1 2025-11-20 16:17:58.856 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-20 16:23:13.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51220 1 109 1 2025-11-20 16:23:13.662 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54210 1 80 1 2025-11-20 16:23:13.653 00:00:00.000 UDP 28.104.0.1:51220 -> 198.28.0.2:53 1 64 1 2025-11-20 16:23:13.653 00:00:00.000 UDP 28.104.0.1:54210 -> 198.28.0.2:53 1 64 1 2025-11-20 16:18:09.479 00:06:00.252 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:19:09.968 00:05:51.016 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:24:13.954 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46768 1 109 1 2025-11-20 16:24:13.952 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45087 1 80 1 2025-11-20 16:24:13.942 00:00:00.000 UDP 28.104.0.1:46768 -> 198.28.0.2:53 1 64 1 2025-11-20 16:24:13.942 00:00:00.000 UDP 28.104.0.1:45087 -> 198.28.0.2:53 1 64 1 2025-11-20 16:25:14.240 00:00:00.000 UDP 28.104.0.1:33017 -> 198.28.0.2:53 1 64 1 2025-11-20 16:25:14.240 00:00:00.000 UDP 28.104.0.1:59910 -> 198.28.0.2:53 1 64 1 2025-11-20 16:25:14.251 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33017 1 109 1 2025-11-20 16:25:14.252 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59910 1 80 1 2025-11-20 16:25:23.398 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:22:09.479 00:05:00.661 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:22:00.982 00:05:08.508 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:26:14.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51478 1 109 1 2025-11-20 16:26:14.544 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43682 1 80 1 2025-11-20 16:26:14.534 00:00:00.000 UDP 28.104.0.1:43682 -> 198.28.0.2:53 1 64 1 2025-11-20 16:26:14.534 00:00:00.000 UDP 28.104.0.1:51478 -> 198.28.0.2:53 1 64 1 2025-11-20 16:22:09.958 00:05:51.081 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:27:14.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40162 1 109 1 2025-11-20 16:27:14.838 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58062 1 80 1 2025-11-20 16:27:14.828 00:00:00.000 UDP 28.104.0.1:40162 -> 198.28.0.2:53 1 64 1 2025-11-20 16:27:14.828 00:00:00.000 UDP 28.104.0.1:58062 -> 198.28.0.2:53 1 64 1 2025-11-20 16:23:18.865 00:05:10.010 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2496 1 2025-11-20 16:24:00.994 00:05:08.487 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:28:15.131 00:00:00.000 UDP 28.104.0.1:48489 -> 198.28.0.2:53 1 64 1 2025-11-20 16:28:15.130 00:00:00.000 UDP 28.104.0.1:38231 -> 198.28.0.2:53 1 64 1 2025-11-20 16:28:15.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38231 1 80 1 2025-11-20 16:28:15.142 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48489 1 109 1 2025-11-20 16:29:15.454 00:00:00.000 UDP 28.104.0.1:37919 -> 198.28.0.2:53 1 64 1 2025-11-20 16:29:15.454 00:00:00.000 UDP 28.104.0.1:58419 -> 198.28.0.2:53 1 64 1 2025-11-20 16:29:15.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58419 1 109 1 2025-11-20 16:29:15.464 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37919 1 80 1 2025-11-20 16:25:09.970 00:05:51.019 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:25:09.480 00:06:00.253 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:30:15.721 00:00:00.000 UDP 28.104.0.1:60609 -> 198.28.0.2:53 1 64 1 2025-11-20 16:30:15.721 00:00:00.000 UDP 28.104.0.1:41641 -> 198.28.0.2:53 1 64 1 2025-11-20 16:30:15.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41641 1 80 1 2025-11-20 16:30:15.730 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60609 1 109 1 2025-11-20 16:30:23.465 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:31:16.060 00:00:00.000 UDP 28.104.0.1:48509 -> 198.28.0.2:53 1 64 1 2025-11-20 16:31:16.060 00:00:00.000 UDP 28.104.0.1:36092 -> 198.28.0.2:53 1 64 1 2025-11-20 16:31:16.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36092 1 109 1 2025-11-20 16:31:16.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48509 1 80 1 2025-11-20 16:28:00.988 00:05:08.503 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:28:09.480 00:05:00.661 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:32:25.282 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35575 1 109 1 2025-11-20 16:32:25.281 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43269 1 80 1 2025-11-20 16:32:25.271 00:00:00.000 UDP 28.104.0.1:43269 -> 198.28.0.2:53 1 64 1 2025-11-20 16:32:25.271 00:00:00.000 UDP 28.104.0.1:35575 -> 198.28.0.2:53 1 64 1 2025-11-20 16:28:38.877 00:05:00.269 OSPF 28.0.2.2:0 -> 224.0.0.5:0 40 3116 1 2025-11-20 16:28:09.960 00:05:51.080 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:33:25.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38123 1 80 1 2025-11-20 16:33:25.570 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44161 1 109 1 2025-11-20 16:33:25.559 00:00:00.000 UDP 28.104.0.1:44161 -> 198.28.0.2:53 1 64 1 2025-11-20 16:33:25.559 00:00:00.000 UDP 28.104.0.1:38123 -> 198.28.0.2:53 1 64 1 2025-11-20 16:30:01.000 00:05:00.003 TCP 28.154.0.1:41239 -> 28.151.0.1:179 11 667 1 2025-11-20 16:34:25.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49914 1 109 1 2025-11-20 16:34:25.857 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37027 1 80 1 2025-11-20 16:34:25.847 00:00:00.000 UDP 28.104.0.1:37027 -> 198.28.0.2:53 1 64 1 2025-11-20 16:34:25.847 00:00:00.000 UDP 28.104.0.1:49914 -> 198.28.0.2:53 1 64 1 2025-11-20 16:35:23.582 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:35:26.108 00:00:00.000 UDP 28.104.0.1:59338 -> 198.28.0.2:53 1 64 1 2025-11-20 16:35:26.108 00:00:00.000 UDP 28.104.0.1:48102 -> 198.28.0.2:53 1 64 1 2025-11-20 16:35:26.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48102 1 80 1 2025-11-20 16:35:26.119 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59338 1 109 1 2025-11-20 16:31:09.970 00:05:51.023 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:36:27.875 00:00:00.000 UDP 28.104.0.1:41282 -> 198.28.0.2:53 1 64 1 2025-11-20 16:36:27.875 00:00:00.000 UDP 28.104.0.1:43778 -> 198.28.0.2:53 1 64 1 2025-11-20 16:36:27.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41282 1 80 1 2025-11-20 16:36:27.884 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43778 1 109 1 2025-11-20 16:32:09.481 00:06:00.254 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:37:28.204 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53229 1 109 1 2025-11-20 16:37:28.205 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46842 1 80 1 2025-11-20 16:37:28.195 00:00:00.000 UDP 28.104.0.1:46842 -> 198.28.0.2:53 1 64 1 2025-11-20 16:37:28.195 00:00:00.000 UDP 28.104.0.1:53229 -> 198.28.0.2:53 1 64 1 2025-11-20 16:33:48.887 00:05:10.008 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2560 1 2025-11-20 16:34:00.991 00:05:08.502 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:34:09.480 00:05:00.664 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:38:28.497 00:00:00.000 UDP 28.104.0.1:37819 -> 198.28.0.2:53 1 64 1 2025-11-20 16:38:28.497 00:00:00.000 UDP 28.104.0.1:35998 -> 198.28.0.2:53 1 64 1 2025-11-20 16:38:28.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37819 1 109 1 2025-11-20 16:38:28.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35998 1 80 1 2025-11-20 16:34:09.961 00:05:51.083 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:39:28.793 00:00:00.000 UDP 28.104.0.1:52644 -> 198.28.0.2:53 1 64 1 2025-11-20 16:39:28.793 00:00:00.000 UDP 28.104.0.1:34215 -> 198.28.0.2:53 1 64 1 2025-11-20 16:39:28.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34215 1 80 1 2025-11-20 16:39:28.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52644 1 109 1 2025-11-20 16:35:09.481 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:40:23.671 00:00:00.025 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:40:29.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53517 1 80 1 2025-11-20 16:40:29.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60081 1 109 1 2025-11-20 16:40:29.092 00:00:00.000 UDP 28.104.0.1:60081 -> 198.28.0.2:53 1 64 1 2025-11-20 16:40:29.091 00:00:00.000 UDP 28.104.0.1:53517 -> 198.28.0.2:53 1 64 1 2025-11-20 16:41:29.397 00:00:00.000 UDP 28.104.0.1:53852 -> 198.28.0.2:53 1 64 1 2025-11-20 16:41:29.397 00:00:00.000 UDP 28.104.0.1:59040 -> 198.28.0.2:53 1 64 1 2025-11-20 16:41:29.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59040 1 109 1 2025-11-20 16:41:29.408 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53852 1 80 1 2025-11-20 16:37:09.971 00:05:51.023 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:42:29.689 00:00:00.000 UDP 28.104.0.1:58378 -> 198.28.0.2:53 1 64 1 2025-11-20 16:42:29.689 00:00:00.000 UDP 28.104.0.1:35630 -> 198.28.0.2:53 1 64 1 2025-11-20 16:42:29.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58378 1 80 1 2025-11-20 16:42:29.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35630 1 109 1 2025-11-20 16:39:08.895 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-11-20 16:43:29.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41514 1 80 1 2025-11-20 16:43:29.949 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35073 1 109 1 2025-11-20 16:43:29.939 00:00:00.000 UDP 28.104.0.1:41514 -> 198.28.0.2:53 1 64 1 2025-11-20 16:43:29.939 00:00:00.000 UDP 28.104.0.1:35073 -> 198.28.0.2:53 1 64 1 2025-11-20 16:40:00.994 00:05:08.500 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:40:09.483 00:05:00.663 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:39:09.483 00:06:00.254 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:44:30.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34463 1 80 1 2025-11-20 16:44:30.248 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54043 1 109 1 2025-11-20 16:44:30.238 00:00:00.000 UDP 28.104.0.1:54043 -> 198.28.0.2:53 1 64 1 2025-11-20 16:44:30.237 00:00:00.000 UDP 28.104.0.1:34463 -> 198.28.0.2:53 1 64 1 2025-11-20 16:40:09.963 00:05:51.081 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:45:23.620 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:45:30.536 00:00:00.000 UDP 28.104.0.1:36767 -> 198.28.0.2:53 1 64 1 2025-11-20 16:45:30.537 00:00:00.000 UDP 28.104.0.1:53997 -> 198.28.0.2:53 1 64 1 2025-11-20 16:45:30.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53997 1 80 1 2025-11-20 16:45:30.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36767 1 109 1 2025-11-20 16:41:09.483 00:05:51.524 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:46:30.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44965 1 109 1 2025-11-20 16:46:30.836 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53725 1 80 1 2025-11-20 16:46:30.824 00:00:00.000 UDP 28.104.0.1:44965 -> 198.28.0.2:53 1 64 1 2025-11-20 16:46:30.824 00:00:00.000 UDP 28.104.0.1:53725 -> 198.28.0.2:53 1 64 1 2025-11-20 16:47:31.132 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50482 1 80 1 2025-11-20 16:47:31.133 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33649 1 109 1 2025-11-20 16:47:31.123 00:00:00.000 UDP 28.104.0.1:33649 -> 198.28.0.2:53 1 64 1 2025-11-20 16:47:31.122 00:00:00.000 UDP 28.104.0.1:50482 -> 198.28.0.2:53 1 64 1 2025-11-20 16:43:09.975 00:05:51.022 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:48:31.413 00:00:00.000 UDP 28.104.0.1:47393 -> 198.28.0.2:53 1 64 1 2025-11-20 16:48:31.413 00:00:00.000 UDP 28.104.0.1:37591 -> 198.28.0.2:53 1 64 1 2025-11-20 16:48:31.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37591 1 109 1 2025-11-20 16:48:31.423 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47393 1 80 1 2025-11-20 16:44:28.900 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2256 1 2025-11-20 16:49:31.708 00:00:00.000 UDP 28.104.0.1:34525 -> 198.28.0.2:53 1 64 1 2025-11-20 16:49:31.708 00:00:00.000 UDP 28.104.0.1:48440 -> 198.28.0.2:53 1 64 1 2025-11-20 16:49:31.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34525 1 109 1 2025-11-20 16:49:31.718 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48440 1 80 1 2025-11-20 16:46:00.994 00:05:00.006 TCP 28.151.0.1:179 -> 28.154.0.1:41239 11 686 1 2025-11-20 16:46:09.483 00:05:00.663 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:50:23.965 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:50:32.003 00:00:00.000 UDP 28.104.0.1:34919 -> 198.28.0.2:53 1 64 1 2025-11-20 16:50:32.003 00:00:00.000 UDP 28.104.0.1:50607 -> 198.28.0.2:53 1 64 1 2025-11-20 16:50:32.016 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50607 1 109 1 2025-11-20 16:50:32.014 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34919 1 80 1 2025-11-20 16:46:09.964 00:05:51.086 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:46:09.484 00:06:00.257 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:51:32.301 00:00:00.000 UDP 28.104.0.1:43381 -> 198.28.0.2:53 1 64 1 2025-11-20 16:51:32.301 00:00:00.000 UDP 28.104.0.1:37208 -> 198.28.0.2:53 1 64 1 2025-11-20 16:51:32.314 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37208 1 109 1 2025-11-20 16:51:32.313 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43381 1 80 1 2025-11-20 16:47:09.484 00:05:51.527 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:52:32.588 00:00:00.000 UDP 28.104.0.1:58473 -> 198.28.0.2:53 1 64 1 2025-11-20 16:52:32.588 00:00:00.000 UDP 28.104.0.1:41112 -> 198.28.0.2:53 1 64 1 2025-11-20 16:52:32.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58473 1 109 1 2025-11-20 16:52:32.598 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41112 1 80 1 2025-11-20 16:53:32.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33599 1 109 1 2025-11-20 16:53:32.894 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36774 1 80 1 2025-11-20 16:53:32.883 00:00:00.000 UDP 28.104.0.1:36774 -> 198.28.0.2:53 1 64 1 2025-11-20 16:53:32.883 00:00:00.000 UDP 28.104.0.1:33599 -> 198.28.0.2:53 1 64 1 2025-11-20 16:49:09.975 00:05:51.026 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-20 16:49:48.906 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2320 1 2025-11-20 16:54:33.180 00:00:00.000 UDP 28.104.0.1:53766 -> 198.28.0.2:53 1 64 1 2025-11-20 16:54:33.181 00:00:00.000 UDP 28.104.0.1:54627 -> 198.28.0.2:53 1 64 1 2025-11-20 16:54:33.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54627 1 80 1 2025-11-20 16:54:33.191 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53766 1 109 1 2025-11-20 16:55:23.829 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-20 16:55:33.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36631 1 109 1 2025-11-20 16:55:33.488 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37104 1 80 1 2025-11-20 16:55:33.477 00:00:00.000 UDP 28.104.0.1:36631 -> 198.28.0.2:53 1 64 1 2025-11-20 16:55:33.478 00:00:00.000 UDP 28.104.0.1:37104 -> 198.28.0.2:53 1 64 1 2025-11-20 16:51:09.494 00:05:51.507 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-20 16:52:09.486 00:05:00.663 TCP 28.154.0.1:179 -> 28.157.0.1:37077 12 738 1 2025-11-20 16:56:33.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54660 1 109 1 2025-11-20 16:56:33.776 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39294 1 80 1 2025-11-20 16:56:33.766 00:00:00.000 UDP 28.104.0.1:54660 -> 198.28.0.2:53 1 64 1 2025-11-20 16:56:33.766 00:00:00.000 UDP 28.104.0.1:39294 -> 198.28.0.2:53 1 64 1 2025-11-20 16:52:09.965 00:05:51.086 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-20 16:57:34.063 00:00:00.000 UDP 28.104.0.1:48992 -> 198.28.0.2:53 1 64 1 2025-11-20 16:57:34.063 00:00:00.000 UDP 28.104.0.1:36005 -> 198.28.0.2:53 1 64 1 2025-11-20 16:57:34.073 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48992 1 80 1 2025-11-20 16:57:34.074 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36005 1 109 1 2025-11-20 16:53:09.484 00:05:51.529 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-20 16:53:09.484 00:06:00.259 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-20 16:58:34.368 00:00:00.000 UDP 28.104.0.1:48495 -> 198.28.0.2:53 1 64 1 2025-11-20 16:58:34.368 00:00:00.000 UDP 28.104.0.1:50906 -> 198.28.0.2:53 1 64 1 2025-11-20 16:58:34.378 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50906 1 109 1 2025-11-20 16:58:34.378 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48495 1 80 1 Summary: total flows: 322, total bytes: 94790, total packets: 1398, avg bps: 197, avg pps: 0, avg bpp: 67 Time window: 2025-11-20 15:55:09 - 2025-11-20 16:59:09 Total flows processed: 322, passed: 322, Blocks skipped: 0, Bytes read: 33552 Sys: 0.0043s User: 0.0021s Wall: 0.0034s flows/second: 96064.2 Runtime: 0.0034s