Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-29 11:55:05.462 00:05:08.722 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 11:59:27.382 00:00:00.000 UDP 28.104.0.1:56776 -> 198.28.0.2:53 1 64 1 2025-11-29 11:59:27.382 00:00:00.000 UDP 28.104.0.1:55545 -> 198.28.0.2:53 1 64 1 2025-11-29 11:59:27.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56776 1 80 1 2025-11-29 11:59:27.393 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55545 1 109 1 2025-11-29 11:59:38.117 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 11:56:05.473 00:05:08.702 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 11:56:05.513 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:00:27.687 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45605 1 80 1 2025-11-29 12:00:27.688 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49792 1 109 1 2025-11-29 12:00:27.678 00:00:00.000 UDP 28.104.0.1:45605 -> 198.28.0.2:53 1 64 1 2025-11-29 12:00:27.678 00:00:00.000 UDP 28.104.0.1:49792 -> 198.28.0.2:53 1 64 1 2025-11-29 11:57:05.462 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 11:56:14.174 00:06:00.497 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:01:27.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60413 1 109 1 2025-11-29 12:01:27.961 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35005 1 80 1 2025-11-29 12:01:27.951 00:00:00.000 UDP 28.104.0.1:35005 -> 198.28.0.2:53 1 64 1 2025-11-29 12:01:27.951 00:00:00.000 UDP 28.104.0.1:60413 -> 198.28.0.2:53 1 64 1 2025-11-29 11:57:14.172 00:06:00.501 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:02:28.247 00:00:00.000 UDP 28.104.0.1:54951 -> 198.28.0.2:53 1 64 1 2025-11-29 12:02:28.247 00:00:00.000 UDP 28.104.0.1:53842 -> 198.28.0.2:53 1 64 1 2025-11-29 12:02:28.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53842 1 80 1 2025-11-29 12:02:28.259 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54951 1 109 1 2025-11-29 11:59:05.889 00:05:10.017 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-11-29 12:03:29.185 00:00:00.000 UDP 28.104.0.1:42400 -> 198.28.0.2:53 1 64 1 2025-11-29 12:03:29.185 00:00:00.000 UDP 28.104.0.1:56783 -> 198.28.0.2:53 1 64 1 2025-11-29 12:03:29.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56783 1 80 1 2025-11-29 12:03:29.195 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42400 1 109 1 2025-11-29 12:04:29.484 00:00:00.000 UDP 28.104.0.1:49598 -> 198.28.0.2:53 1 64 1 2025-11-29 12:04:29.484 00:00:00.000 UDP 28.104.0.1:53561 -> 198.28.0.2:53 1 64 1 2025-11-29 12:04:29.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53561 1 109 1 2025-11-29 12:04:29.495 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49598 1 80 1 2025-11-29 12:04:38.175 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:01:05.464 00:05:08.722 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:05:29.774 00:00:00.000 UDP 28.104.0.1:56043 -> 198.28.0.2:53 1 64 1 2025-11-29 12:05:29.774 00:00:00.000 UDP 28.104.0.1:47234 -> 198.28.0.2:53 1 64 1 2025-11-29 12:05:29.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47234 1 80 1 2025-11-29 12:05:29.784 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56043 1 109 1 2025-11-29 12:02:05.474 00:05:08.701 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:02:05.514 00:05:08.811 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:06:30.078 00:00:00.000 UDP 28.104.0.1:40070 -> 198.28.0.2:53 1 64 1 2025-11-29 12:06:30.078 00:00:00.000 UDP 28.104.0.1:40720 -> 198.28.0.2:53 1 64 1 2025-11-29 12:06:30.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40070 1 109 1 2025-11-29 12:06:30.089 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40720 1 80 1 2025-11-29 12:03:05.462 00:05:08.872 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:07:30.372 00:00:00.000 UDP 28.104.0.1:47769 -> 198.28.0.2:53 1 64 1 2025-11-29 12:07:30.372 00:00:00.000 UDP 28.104.0.1:49959 -> 198.28.0.2:53 1 64 1 2025-11-29 12:07:30.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47769 1 109 1 2025-11-29 12:07:30.382 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49959 1 80 1 2025-11-29 12:03:14.174 00:06:00.497 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:08:30.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58183 1 109 1 2025-11-29 12:08:30.672 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46063 1 80 1 2025-11-29 12:08:30.661 00:00:00.000 UDP 28.104.0.1:46063 -> 198.28.0.2:53 1 64 1 2025-11-29 12:08:30.661 00:00:00.000 UDP 28.104.0.1:58183 -> 198.28.0.2:53 1 64 1 2025-11-29 12:04:25.908 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2820 1 2025-11-29 12:04:14.176 00:06:00.501 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:09:30.953 00:00:00.000 UDP 28.104.0.1:49060 -> 198.28.0.2:53 1 64 1 2025-11-29 12:09:30.953 00:00:00.000 UDP 28.104.0.1:60651 -> 198.28.0.2:53 1 64 1 2025-11-29 12:09:30.963 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60651 1 109 1 2025-11-29 12:09:30.962 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49060 1 80 1 2025-11-29 12:09:38.277 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:10:31.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33596 1 80 1 2025-11-29 12:10:31.267 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36495 1 109 1 2025-11-29 12:10:31.257 00:00:00.000 UDP 28.104.0.1:36495 -> 198.28.0.2:53 1 64 1 2025-11-29 12:10:31.257 00:00:00.000 UDP 28.104.0.1:33596 -> 198.28.0.2:53 1 64 1 2025-11-29 12:07:05.468 00:05:08.719 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:11:31.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60744 1 109 1 2025-11-29 12:11:31.564 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42084 1 80 1 2025-11-29 12:11:31.553 00:00:00.000 UDP 28.104.0.1:60744 -> 198.28.0.2:53 1 64 1 2025-11-29 12:11:31.553 00:00:00.000 UDP 28.104.0.1:42084 -> 198.28.0.2:53 1 64 1 2025-11-29 12:08:05.517 00:05:08.809 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:08:05.477 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:12:31.853 00:00:00.000 UDP 28.104.0.1:54967 -> 198.28.0.2:53 1 64 1 2025-11-29 12:12:31.853 00:00:00.000 UDP 28.104.0.1:41262 -> 198.28.0.2:53 1 64 1 2025-11-29 12:12:31.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41262 1 109 1 2025-11-29 12:12:31.863 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54967 1 80 1 2025-11-29 12:09:05.467 00:05:08.869 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:13:32.194 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59913 1 80 1 2025-11-29 12:13:32.193 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36576 1 109 1 2025-11-29 12:13:32.183 00:00:00.000 UDP 28.104.0.1:36576 -> 198.28.0.2:53 1 64 1 2025-11-29 12:13:32.183 00:00:00.000 UDP 28.104.0.1:59913 -> 198.28.0.2:53 1 64 1 2025-11-29 12:09:45.920 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2456 1 2025-11-29 12:14:32.490 00:00:00.000 UDP 28.104.0.1:60584 -> 198.28.0.2:53 1 64 1 2025-11-29 12:14:32.490 00:00:00.000 UDP 28.104.0.1:59089 -> 198.28.0.2:53 1 64 1 2025-11-29 12:14:32.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60584 1 80 1 2025-11-29 12:14:32.500 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59089 1 109 1 2025-11-29 12:14:38.316 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:10:14.175 00:06:00.497 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:15:32.798 00:00:00.000 UDP 28.104.0.1:44384 -> 198.28.0.2:53 1 64 1 2025-11-29 12:15:32.798 00:00:00.000 UDP 28.104.0.1:41758 -> 198.28.0.2:53 1 64 1 2025-11-29 12:15:32.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41758 1 80 1 2025-11-29 12:15:32.807 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44384 1 109 1 2025-11-29 12:11:14.175 00:06:00.502 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:16:33.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41696 1 109 1 2025-11-29 12:16:33.109 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33178 1 80 1 2025-11-29 12:16:33.100 00:00:00.000 UDP 28.104.0.1:33178 -> 198.28.0.2:53 1 64 1 2025-11-29 12:16:33.100 00:00:00.000 UDP 28.104.0.1:41696 -> 198.28.0.2:53 1 64 1 2025-11-29 12:13:05.467 00:05:08.720 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:17:33.389 00:00:00.000 UDP 28.104.0.1:57303 -> 198.28.0.2:53 1 64 1 2025-11-29 12:17:33.389 00:00:00.000 UDP 28.104.0.1:57545 -> 198.28.0.2:53 1 64 1 2025-11-29 12:17:33.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57303 1 109 1 2025-11-29 12:17:33.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57545 1 80 1 2025-11-29 12:14:05.478 00:05:08.700 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:14:05.518 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:18:33.639 00:00:00.000 UDP 28.104.0.1:38457 -> 198.28.0.2:53 1 64 1 2025-11-29 12:18:33.639 00:00:00.000 UDP 28.104.0.1:44917 -> 198.28.0.2:53 1 64 1 2025-11-29 12:18:33.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38457 1 80 1 2025-11-29 12:18:33.648 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44917 1 109 1 2025-11-29 12:15:05.467 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:15:05.923 00:05:10.009 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2376 1 2025-11-29 12:19:33.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47091 1 109 1 2025-11-29 12:19:33.944 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34109 1 80 1 2025-11-29 12:19:33.933 00:00:00.000 UDP 28.104.0.1:47091 -> 198.28.0.2:53 1 64 1 2025-11-29 12:19:33.933 00:00:00.000 UDP 28.104.0.1:34109 -> 198.28.0.2:53 1 64 1 2025-11-29 12:19:38.289 00:00:00.021 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:20:34.239 00:00:00.000 UDP 28.104.0.1:43437 -> 198.28.0.2:53 1 64 1 2025-11-29 12:20:34.239 00:00:00.000 UDP 28.104.0.1:59561 -> 198.28.0.2:53 1 64 1 2025-11-29 12:20:34.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59561 1 109 1 2025-11-29 12:20:34.250 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43437 1 80 1 2025-11-29 12:21:34.529 00:00:00.000 UDP 28.104.0.1:47312 -> 198.28.0.2:53 1 64 1 2025-11-29 12:21:34.529 00:00:00.000 UDP 28.104.0.1:35338 -> 198.28.0.2:53 1 64 1 2025-11-29 12:21:34.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35338 1 80 1 2025-11-29 12:21:34.540 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47312 1 109 1 2025-11-29 12:17:14.177 00:06:00.497 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:22:34.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41549 1 109 1 2025-11-29 12:22:34.833 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36323 1 80 1 2025-11-29 12:22:34.823 00:00:00.000 UDP 28.104.0.1:41549 -> 198.28.0.2:53 1 64 1 2025-11-29 12:22:34.823 00:00:00.000 UDP 28.104.0.1:36323 -> 198.28.0.2:53 1 64 1 2025-11-29 12:19:05.468 00:05:08.723 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:18:14.179 00:06:00.500 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:23:35.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56904 1 109 1 2025-11-29 12:23:35.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60520 1 80 1 2025-11-29 12:23:35.092 00:00:00.000 UDP 28.104.0.1:56904 -> 198.28.0.2:53 1 64 1 2025-11-29 12:23:35.092 00:00:00.000 UDP 28.104.0.1:60520 -> 198.28.0.2:53 1 64 1 2025-11-29 12:20:05.478 00:05:08.703 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:20:05.518 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:24:38.791 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:24:35.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52822 1 80 1 2025-11-29 12:24:35.399 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59024 1 109 1 2025-11-29 12:24:35.389 00:00:00.000 UDP 28.104.0.1:59024 -> 198.28.0.2:53 1 64 1 2025-11-29 12:24:35.389 00:00:00.000 UDP 28.104.0.1:52822 -> 198.28.0.2:53 1 64 1 2025-11-29 12:20:25.932 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-11-29 12:21:05.469 00:05:08.871 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:25:35.688 00:00:00.000 UDP 28.104.0.1:51915 -> 198.28.0.2:53 1 64 1 2025-11-29 12:25:35.688 00:00:00.000 UDP 28.104.0.1:52301 -> 198.28.0.2:53 1 64 1 2025-11-29 12:25:35.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52301 1 109 1 2025-11-29 12:25:35.699 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51915 1 80 1 2025-11-29 12:26:35.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33991 1 109 1 2025-11-29 12:26:35.992 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50022 1 80 1 2025-11-29 12:26:35.982 00:00:00.000 UDP 28.104.0.1:33991 -> 198.28.0.2:53 1 64 1 2025-11-29 12:26:35.982 00:00:00.000 UDP 28.104.0.1:50022 -> 198.28.0.2:53 1 64 1 2025-11-29 12:27:36.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44669 1 109 1 2025-11-29 12:27:36.289 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40813 1 80 1 2025-11-29 12:27:36.279 00:00:00.000 UDP 28.104.0.1:44669 -> 198.28.0.2:53 1 64 1 2025-11-29 12:27:36.279 00:00:00.000 UDP 28.104.0.1:40813 -> 198.28.0.2:53 1 64 1 2025-11-29 12:28:36.628 00:00:00.000 UDP 28.104.0.1:43092 -> 198.28.0.2:53 1 64 1 2025-11-29 12:28:36.628 00:00:00.000 UDP 28.104.0.1:53521 -> 198.28.0.2:53 1 64 1 2025-11-29 12:28:36.640 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43092 1 109 1 2025-11-29 12:28:36.640 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53521 1 80 1 2025-11-29 12:25:05.469 00:05:08.723 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:24:14.182 00:06:00.494 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:29:38.870 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:29:36.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40160 1 109 1 2025-11-29 12:29:36.950 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33381 1 80 1 2025-11-29 12:29:36.939 00:00:00.000 UDP 28.104.0.1:33381 -> 198.28.0.2:53 1 64 1 2025-11-29 12:29:36.939 00:00:00.000 UDP 28.104.0.1:40160 -> 198.28.0.2:53 1 64 1 2025-11-29 12:25:45.936 00:05:10.011 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2760 1 2025-11-29 12:25:14.182 00:06:00.499 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:26:05.480 00:05:08.704 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:26:05.520 00:05:08.811 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:30:37.242 00:00:00.000 UDP 28.104.0.1:51063 -> 198.28.0.2:53 1 64 1 2025-11-29 12:30:37.243 00:00:00.000 UDP 28.104.0.1:41227 -> 198.28.0.2:53 1 64 1 2025-11-29 12:30:37.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51063 1 109 1 2025-11-29 12:30:37.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41227 1 80 1 2025-11-29 12:27:05.471 00:05:08.871 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:31:37.543 00:00:00.000 UDP 28.104.0.1:56146 -> 198.28.0.2:53 1 64 1 2025-11-29 12:31:37.542 00:00:00.000 UDP 28.104.0.1:55177 -> 198.28.0.2:53 1 64 1 2025-11-29 12:31:37.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55177 1 109 1 2025-11-29 12:31:37.553 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56146 1 80 1 2025-11-29 12:32:37.838 00:00:00.000 UDP 28.104.0.1:54568 -> 198.28.0.2:53 1 64 1 2025-11-29 12:32:37.838 00:00:00.000 UDP 28.104.0.1:43475 -> 198.28.0.2:53 1 64 1 2025-11-29 12:32:37.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43475 1 109 1 2025-11-29 12:32:37.848 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54568 1 80 1 2025-11-29 12:33:38.169 00:00:00.000 UDP 28.104.0.1:58661 -> 198.28.0.2:53 1 64 1 2025-11-29 12:33:38.169 00:00:00.000 UDP 28.104.0.1:38352 -> 198.28.0.2:53 1 64 1 2025-11-29 12:33:38.180 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38352 1 109 1 2025-11-29 12:33:38.181 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58661 1 80 1 2025-11-29 12:34:38.766 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:34:38.431 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57062 1 109 1 2025-11-29 12:34:38.430 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35553 1 80 1 2025-11-29 12:34:38.421 00:00:00.000 UDP 28.104.0.1:35553 -> 198.28.0.2:53 1 64 1 2025-11-29 12:34:38.422 00:00:00.000 UDP 28.104.0.1:57062 -> 198.28.0.2:53 1 64 1 2025-11-29 12:31:05.947 00:05:10.020 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2480 1 2025-11-29 12:31:05.470 00:05:08.723 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:35:38.709 00:00:00.000 UDP 28.104.0.1:44310 -> 198.28.0.2:53 1 64 1 2025-11-29 12:35:38.709 00:00:00.000 UDP 28.104.0.1:53135 -> 198.28.0.2:53 1 64 1 2025-11-29 12:35:38.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53135 1 109 1 2025-11-29 12:35:38.719 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44310 1 80 1 2025-11-29 12:32:05.481 00:05:08.702 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:32:05.521 00:05:08.811 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:31:14.183 00:06:00.497 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:36:39.040 00:00:00.000 UDP 28.104.0.1:46250 -> 198.28.0.2:53 1 64 1 2025-11-29 12:36:39.040 00:00:00.000 UDP 28.104.0.1:59105 -> 198.28.0.2:53 1 64 1 2025-11-29 12:36:39.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46250 1 80 1 2025-11-29 12:36:39.051 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59105 1 109 1 2025-11-29 12:33:05.472 00:05:08.871 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:32:14.183 00:06:00.503 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:37:39.344 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41558 1 80 1 2025-11-29 12:37:39.345 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43970 1 109 1 2025-11-29 12:37:39.334 00:00:00.000 UDP 28.104.0.1:43970 -> 198.28.0.2:53 1 64 1 2025-11-29 12:37:39.333 00:00:00.000 UDP 28.104.0.1:41558 -> 198.28.0.2:53 1 64 1 2025-11-29 12:38:39.635 00:00:00.000 UDP 28.104.0.1:53857 -> 198.28.0.2:53 1 64 1 2025-11-29 12:38:39.635 00:00:00.000 UDP 28.104.0.1:49840 -> 198.28.0.2:53 1 64 1 2025-11-29 12:38:39.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49840 1 109 1 2025-11-29 12:38:39.645 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53857 1 80 1 2025-11-29 12:39:38.951 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:39:39.890 00:00:00.000 UDP 28.104.0.1:52125 -> 198.28.0.2:53 1 64 1 2025-11-29 12:39:39.890 00:00:00.000 UDP 28.104.0.1:48313 -> 198.28.0.2:53 1 64 1 2025-11-29 12:39:39.898 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52125 1 80 1 2025-11-29 12:39:39.899 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48313 1 109 1 2025-11-29 12:36:25.955 00:05:10.015 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2740 1 2025-11-29 12:40:40.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37722 1 80 1 2025-11-29 12:40:40.216 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39698 1 109 1 2025-11-29 12:40:40.205 00:00:00.000 UDP 28.104.0.1:39698 -> 198.28.0.2:53 1 64 1 2025-11-29 12:40:40.205 00:00:00.000 UDP 28.104.0.1:37722 -> 198.28.0.2:53 1 64 1 2025-11-29 12:37:05.474 00:05:08.721 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:41:40.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57336 1 109 1 2025-11-29 12:41:40.512 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38241 1 80 1 2025-11-29 12:41:40.501 00:00:00.000 UDP 28.104.0.1:38241 -> 198.28.0.2:53 1 64 1 2025-11-29 12:41:40.501 00:00:00.000 UDP 28.104.0.1:57336 -> 198.28.0.2:53 1 64 1 2025-11-29 12:38:05.482 00:05:08.702 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:38:05.522 00:05:08.810 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:42:40.769 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59491 1 109 1 2025-11-29 12:42:40.769 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38590 1 80 1 2025-11-29 12:42:40.761 00:00:00.000 UDP 28.104.0.1:59491 -> 198.28.0.2:53 1 64 1 2025-11-29 12:42:40.761 00:00:00.000 UDP 28.104.0.1:38590 -> 198.28.0.2:53 1 64 1 2025-11-29 12:39:05.472 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:38:14.183 00:06:00.499 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:43:41.044 00:00:00.000 UDP 28.104.0.1:46541 -> 198.28.0.2:53 1 64 1 2025-11-29 12:43:41.043 00:00:00.000 UDP 28.104.0.1:54631 -> 198.28.0.2:53 1 64 1 2025-11-29 12:43:41.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54631 1 80 1 2025-11-29 12:43:41.052 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46541 1 109 1 2025-11-29 12:39:14.184 00:06:00.498 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:44:38.899 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:44:41.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39844 1 80 1 2025-11-29 12:44:41.350 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50695 1 109 1 2025-11-29 12:44:41.339 00:00:00.000 UDP 28.104.0.1:39844 -> 198.28.0.2:53 1 64 1 2025-11-29 12:44:41.339 00:00:00.000 UDP 28.104.0.1:50695 -> 198.28.0.2:53 1 64 1 2025-11-29 12:45:41.637 00:00:00.000 UDP 28.104.0.1:35208 -> 198.28.0.2:53 1 64 1 2025-11-29 12:45:41.637 00:00:00.000 UDP 28.104.0.1:40947 -> 198.28.0.2:53 1 64 1 2025-11-29 12:45:41.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40947 1 80 1 2025-11-29 12:45:41.647 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35208 1 109 1 2025-11-29 12:41:45.971 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2360 1 2025-11-29 12:46:41.932 00:00:00.000 UDP 28.104.0.1:46476 -> 198.28.0.2:53 1 64 1 2025-11-29 12:46:41.932 00:00:00.000 UDP 28.104.0.1:47556 -> 198.28.0.2:53 1 64 1 2025-11-29 12:46:41.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47556 1 80 1 2025-11-29 12:46:41.943 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46476 1 109 1 2025-11-29 12:43:05.474 00:05:08.722 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:47:42.225 00:00:00.000 UDP 28.104.0.1:37044 -> 198.28.0.2:53 1 64 1 2025-11-29 12:47:42.225 00:00:00.000 UDP 28.104.0.1:58706 -> 198.28.0.2:53 1 64 1 2025-11-29 12:47:42.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37044 1 80 1 2025-11-29 12:47:42.236 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58706 1 109 1 2025-11-29 12:44:05.485 00:05:08.701 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:44:05.525 00:05:08.809 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:48:42.522 00:00:00.000 UDP 28.104.0.1:50903 -> 198.28.0.2:53 1 64 1 2025-11-29 12:48:42.522 00:00:00.000 UDP 28.104.0.1:59217 -> 198.28.0.2:53 1 64 1 2025-11-29 12:48:42.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59217 1 80 1 2025-11-29 12:48:42.533 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50903 1 109 1 2025-11-29 12:45:05.475 00:05:08.868 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:49:39.333 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:49:42.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34225 1 109 1 2025-11-29 12:49:42.829 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51357 1 80 1 2025-11-29 12:49:42.818 00:00:00.000 UDP 28.104.0.1:51357 -> 198.28.0.2:53 1 64 1 2025-11-29 12:49:42.818 00:00:00.000 UDP 28.104.0.1:34225 -> 198.28.0.2:53 1 64 1 2025-11-29 12:45:14.184 00:06:00.499 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:50:43.121 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56013 1 109 1 2025-11-29 12:50:43.120 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42351 1 80 1 2025-11-29 12:50:43.111 00:00:00.000 UDP 28.104.0.1:42351 -> 198.28.0.2:53 1 64 1 2025-11-29 12:50:43.111 00:00:00.000 UDP 28.104.0.1:56013 -> 198.28.0.2:53 1 64 1 2025-11-29 12:46:14.184 00:06:00.499 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:47:05.976 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2400 1 2025-11-29 12:51:43.407 00:00:00.000 UDP 28.104.0.1:47778 -> 198.28.0.2:53 1 64 1 2025-11-29 12:51:43.407 00:00:00.000 UDP 28.104.0.1:38474 -> 198.28.0.2:53 1 64 1 2025-11-29 12:51:43.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38474 1 109 1 2025-11-29 12:51:43.417 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47778 1 80 1 2025-11-29 12:52:43.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51118 1 109 1 2025-11-29 12:52:43.707 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40694 1 80 1 2025-11-29 12:52:43.699 00:00:00.000 UDP 28.104.0.1:40694 -> 198.28.0.2:53 1 64 1 2025-11-29 12:52:43.699 00:00:00.000 UDP 28.104.0.1:51118 -> 198.28.0.2:53 1 64 1 2025-11-29 12:49:05.476 00:05:08.721 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-29 12:53:43.997 00:00:00.000 UDP 28.104.0.1:60289 -> 198.28.0.2:53 1 64 1 2025-11-29 12:53:43.997 00:00:00.000 UDP 28.104.0.1:46928 -> 198.28.0.2:53 1 64 1 2025-11-29 12:53:44.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60289 1 109 1 2025-11-29 12:53:44.010 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46928 1 80 1 2025-11-29 12:50:05.486 00:05:08.701 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-29 12:50:05.527 00:05:08.808 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-29 12:54:39.122 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-29 12:54:44.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60575 1 80 1 2025-11-29 12:54:44.272 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54138 1 109 1 2025-11-29 12:54:44.263 00:00:00.000 UDP 28.104.0.1:60575 -> 198.28.0.2:53 1 64 1 2025-11-29 12:54:44.263 00:00:00.000 UDP 28.104.0.1:54138 -> 198.28.0.2:53 1 64 1 2025-11-29 12:51:05.476 00:05:08.870 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-29 12:55:44.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44120 1 109 1 2025-11-29 12:55:44.546 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40208 1 80 1 2025-11-29 12:55:44.537 00:00:00.000 UDP 28.104.0.1:40208 -> 198.28.0.2:53 1 64 1 2025-11-29 12:55:44.537 00:00:00.000 UDP 28.104.0.1:44120 -> 198.28.0.2:53 1 64 1 2025-11-29 12:52:19.007 00:05:06.980 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2560 1 2025-11-29 12:56:44.828 00:00:00.000 UDP 28.104.0.1:47137 -> 198.28.0.2:53 1 64 1 2025-11-29 12:56:44.828 00:00:00.000 UDP 28.104.0.1:59451 -> 198.28.0.2:53 1 64 1 2025-11-29 12:56:44.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59451 1 80 1 2025-11-29 12:56:44.839 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47137 1 109 1 2025-11-29 12:52:14.186 00:06:00.499 TCP 28.154.0.1:179 -> 28.155.0.1:36643 14 861 1 2025-11-29 12:57:45.139 00:00:00.000 UDP 28.104.0.1:57876 -> 198.28.0.2:53 1 64 1 2025-11-29 12:57:45.139 00:00:00.000 UDP 28.104.0.1:36198 -> 198.28.0.2:53 1 64 1 2025-11-29 12:57:45.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57876 1 109 1 2025-11-29 12:57:45.150 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36198 1 80 1 2025-11-29 12:53:14.185 00:06:00.500 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-29 12:58:45.402 00:00:00.000 UDP 28.104.0.1:53553 -> 198.28.0.2:53 1 64 1 2025-11-29 12:58:45.402 00:00:00.000 UDP 28.104.0.1:48424 -> 198.28.0.2:53 1 64 1 2025-11-29 12:58:45.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48424 1 109 1 2025-11-29 12:58:45.411 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53553 1 80 1 Summary: total flows: 321, total bytes: 95386, total packets: 1406, avg bps: 198, avg pps: 0, avg bpp: 67 Time window: 2025-11-29 11:55:05 - 2025-11-29 12:59:14 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0049s User: 0.0020s Wall: 0.0055s flows/second: 58770.4 Runtime: 0.0055s