Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-30 04:59:11.053 00:00:00.000 UDP 28.104.0.1:33694 -> 198.28.0.2:53 1 64 1 2025-11-30 04:59:11.053 00:00:00.000 UDP 28.104.0.1:35099 -> 198.28.0.2:53 1 64 1 2025-11-30 04:59:11.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35099 1 80 1 2025-11-30 04:59:11.062 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33694 1 109 1 2025-11-30 04:55:05.803 00:05:08.680 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 04:59:58.538 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:00:11.316 00:00:00.000 UDP 28.104.0.1:56681 -> 198.28.0.2:53 1 64 1 2025-11-30 05:00:11.316 00:00:00.000 UDP 28.104.0.1:36464 -> 198.28.0.2:53 1 64 1 2025-11-30 05:00:11.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36464 1 80 1 2025-11-30 05:00:11.327 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56681 1 109 1 2025-11-30 04:56:05.815 00:05:08.659 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 04:56:05.855 00:05:08.770 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 04:56:37.422 00:05:10.006 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2452 1 2025-11-30 05:01:11.566 00:00:00.000 UDP 28.104.0.1:55811 -> 198.28.0.2:53 1 64 1 2025-11-30 05:01:11.566 00:00:00.000 UDP 28.104.0.1:40439 -> 198.28.0.2:53 1 64 1 2025-11-30 05:01:11.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55811 1 80 1 2025-11-30 05:01:11.578 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40439 1 109 1 2025-11-30 04:57:05.805 00:05:08.831 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:02:11.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54129 1 109 1 2025-11-30 05:02:11.868 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59846 1 80 1 2025-11-30 05:02:11.858 00:00:00.000 UDP 28.104.0.1:59846 -> 198.28.0.2:53 1 64 1 2025-11-30 05:02:11.858 00:00:00.000 UDP 28.104.0.1:54129 -> 198.28.0.2:53 1 64 1 2025-11-30 05:03:12.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41755 1 109 1 2025-11-30 05:03:12.138 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38703 1 80 1 2025-11-30 05:03:12.128 00:00:00.000 UDP 28.104.0.1:38703 -> 198.28.0.2:53 1 64 1 2025-11-30 05:03:12.127 00:00:00.000 UDP 28.104.0.1:41755 -> 198.28.0.2:53 1 64 1 2025-11-30 05:04:12.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37739 1 109 1 2025-11-30 05:04:12.438 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54136 1 80 1 2025-11-30 05:04:12.426 00:00:00.000 UDP 28.104.0.1:37739 -> 198.28.0.2:53 1 64 1 2025-11-30 05:04:12.426 00:00:00.000 UDP 28.104.0.1:54136 -> 198.28.0.2:53 1 64 1 2025-11-30 04:59:14.475 00:06:00.492 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:00:14.475 00:05:00.619 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:04:58.589 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:05:12.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56970 1 80 1 2025-11-30 05:05:12.731 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40438 1 109 1 2025-11-30 05:05:12.720 00:00:00.000 UDP 28.104.0.1:56970 -> 198.28.0.2:53 1 64 1 2025-11-30 05:05:12.721 00:00:00.000 UDP 28.104.0.1:40438 -> 198.28.0.2:53 1 64 1 2025-11-30 05:01:05.812 00:05:08.675 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:06:12.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41394 1 109 1 2025-11-30 05:06:12.994 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:38823 1 80 1 2025-11-30 05:01:57.429 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 34 2336 1 2025-11-30 05:06:12.977 00:00:00.000 UDP 28.104.0.1:41394 -> 198.28.0.2:53 1 64 1 2025-11-30 05:06:12.977 00:00:00.000 UDP 28.104.0.1:38823 -> 198.28.0.2:53 1 64 1 2025-11-30 05:02:05.816 00:05:08.661 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:02:05.856 00:05:08.770 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:07:13.281 00:00:00.000 UDP 28.104.0.1:55658 -> 198.28.0.2:53 1 64 1 2025-11-30 05:07:13.281 00:00:00.000 UDP 28.104.0.1:35116 -> 198.28.0.2:53 1 64 1 2025-11-30 05:07:13.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35116 1 80 1 2025-11-30 05:07:13.291 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55658 1 109 1 2025-11-30 05:03:05.806 00:05:08.831 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:08:13.588 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47317 1 109 1 2025-11-30 05:08:13.587 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50910 1 80 1 2025-11-30 05:08:13.576 00:00:00.000 UDP 28.104.0.1:47317 -> 198.28.0.2:53 1 64 1 2025-11-30 05:08:13.576 00:00:00.000 UDP 28.104.0.1:50910 -> 198.28.0.2:53 1 64 1 2025-11-30 05:09:13.879 00:00:00.000 UDP 28.104.0.1:52145 -> 198.28.0.2:53 1 64 1 2025-11-30 05:09:13.879 00:00:00.000 UDP 28.104.0.1:34048 -> 198.28.0.2:53 1 64 1 2025-11-30 05:09:13.890 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34048 1 109 1 2025-11-30 05:09:13.890 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52145 1 80 1 2025-11-30 05:09:58.932 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:06:14.476 00:05:00.617 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:10:14.174 00:00:00.000 UDP 28.104.0.1:35827 -> 198.28.0.2:53 1 64 1 2025-11-30 05:10:14.174 00:00:00.000 UDP 28.104.0.1:58833 -> 198.28.0.2:53 1 64 1 2025-11-30 05:10:14.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58833 1 80 1 2025-11-30 05:10:14.185 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:35827 1 109 1 2025-11-30 05:11:14.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42270 1 80 1 2025-11-30 05:11:14.479 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55534 1 109 1 2025-11-30 05:07:05.806 00:05:08.689 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:06:14.477 00:06:00.490 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:11:14.469 00:00:00.000 UDP 28.104.0.1:42270 -> 198.28.0.2:53 1 64 1 2025-11-30 05:11:14.469 00:00:00.000 UDP 28.104.0.1:55534 -> 198.28.0.2:53 1 64 1 2025-11-30 05:07:17.438 00:05:10.106 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2704 1 2025-11-30 05:12:14.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54274 1 80 1 2025-11-30 05:12:14.773 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34615 1 109 1 2025-11-30 05:08:05.816 00:05:08.661 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:08:05.856 00:05:08.772 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:12:14.763 00:00:00.000 UDP 28.104.0.1:54274 -> 198.28.0.2:53 1 64 1 2025-11-30 05:12:14.763 00:00:00.000 UDP 28.104.0.1:34615 -> 198.28.0.2:53 1 64 1 2025-11-30 05:13:15.061 00:00:00.000 UDP 28.104.0.1:32869 -> 198.28.0.2:53 1 64 1 2025-11-30 05:13:15.061 00:00:00.000 UDP 28.104.0.1:53863 -> 198.28.0.2:53 1 64 1 2025-11-30 05:13:15.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53863 1 109 1 2025-11-30 05:13:15.070 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32869 1 80 1 2025-11-30 05:09:05.806 00:05:08.831 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:14:15.308 00:00:00.000 UDP 28.104.0.1:34224 -> 198.28.0.2:53 1 64 1 2025-11-30 05:14:15.309 00:00:00.000 UDP 28.104.0.1:40839 -> 198.28.0.2:53 1 64 1 2025-11-30 05:14:15.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40839 1 80 1 2025-11-30 05:14:15.319 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34224 1 109 1 2025-11-30 05:14:58.933 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:15:15.595 00:00:00.000 UDP 28.104.0.1:59871 -> 198.28.0.2:53 1 64 1 2025-11-30 05:15:15.595 00:00:00.000 UDP 28.104.0.1:54004 -> 198.28.0.2:53 1 64 1 2025-11-30 05:15:15.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59871 1 109 1 2025-11-30 05:15:15.606 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54004 1 80 1 2025-11-30 05:16:15.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41267 1 109 1 2025-11-30 05:16:15.896 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40789 1 80 1 2025-11-30 05:16:15.887 00:00:00.000 UDP 28.104.0.1:41267 -> 198.28.0.2:53 1 64 1 2025-11-30 05:12:14.487 00:05:00.608 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:16:15.887 00:00:00.000 UDP 28.104.0.1:40789 -> 198.28.0.2:53 1 64 1 2025-11-30 05:12:37.445 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 38 2860 1 2025-11-30 05:17:16.161 00:00:00.000 UDP 28.104.0.1:59342 -> 198.28.0.2:53 1 64 1 2025-11-30 05:17:16.161 00:00:00.000 UDP 28.104.0.1:39991 -> 198.28.0.2:53 1 64 1 2025-11-30 05:17:16.171 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59342 1 109 1 2025-11-30 05:13:05.807 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:17:16.171 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39991 1 80 1 2025-11-30 05:18:16.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55731 1 109 1 2025-11-30 05:18:16.511 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37536 1 80 1 2025-11-30 05:18:16.502 00:00:00.000 UDP 28.104.0.1:37536 -> 198.28.0.2:53 1 64 1 2025-11-30 05:13:14.478 00:06:00.492 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:14:05.819 00:05:08.660 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:14:05.859 00:05:08.771 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:18:16.501 00:00:00.000 UDP 28.104.0.1:55731 -> 198.28.0.2:53 1 64 1 2025-11-30 05:19:16.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36795 1 109 1 2025-11-30 05:15:05.809 00:05:08.832 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:19:16.802 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50646 1 80 1 2025-11-30 05:19:16.791 00:00:00.000 UDP 28.104.0.1:36795 -> 198.28.0.2:53 1 64 1 2025-11-30 05:19:16.792 00:00:00.000 UDP 28.104.0.1:50646 -> 198.28.0.2:53 1 64 1 2025-11-30 05:19:58.996 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:20:17.092 00:00:00.000 UDP 28.104.0.1:55006 -> 198.28.0.2:53 1 64 1 2025-11-30 05:20:17.092 00:00:00.000 UDP 28.104.0.1:52782 -> 198.28.0.2:53 1 64 1 2025-11-30 05:20:17.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:52782 1 109 1 2025-11-30 05:20:17.102 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55006 1 80 1 2025-11-30 05:21:17.386 00:00:00.000 UDP 28.104.0.1:50308 -> 198.28.0.2:53 1 64 1 2025-11-30 05:21:17.387 00:00:00.000 UDP 28.104.0.1:39000 -> 198.28.0.2:53 1 64 1 2025-11-30 05:21:17.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50308 1 80 1 2025-11-30 05:21:17.398 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39000 1 109 1 2025-11-30 05:17:57.449 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2560 1 2025-11-30 05:22:17.748 00:00:00.000 UDP 28.104.0.1:47802 -> 198.28.0.2:53 1 64 1 2025-11-30 05:18:14.478 00:05:00.618 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:22:17.748 00:00:00.000 UDP 28.104.0.1:50415 -> 198.28.0.2:53 1 64 1 2025-11-30 05:22:17.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50415 1 109 1 2025-11-30 05:22:17.759 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47802 1 80 1 2025-11-30 05:23:18.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54456 1 109 1 2025-11-30 05:23:18.060 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46488 1 80 1 2025-11-30 05:19:05.810 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:23:18.051 00:00:00.000 UDP 28.104.0.1:54456 -> 198.28.0.2:53 1 64 1 2025-11-30 05:23:18.051 00:00:00.000 UDP 28.104.0.1:46488 -> 198.28.0.2:53 1 64 1 2025-11-30 05:24:18.349 00:00:00.000 UDP 28.104.0.1:43156 -> 198.28.0.2:53 1 64 1 2025-11-30 05:20:05.823 00:05:08.659 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:24:18.349 00:00:00.000 UDP 28.104.0.1:50464 -> 198.28.0.2:53 1 64 1 2025-11-30 05:20:05.863 00:05:08.772 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:24:18.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50464 1 109 1 2025-11-30 05:24:18.360 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43156 1 80 1 2025-11-30 05:24:58.749 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:21:05.813 00:05:08.832 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:25:18.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43112 1 109 1 2025-11-30 05:25:18.653 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51094 1 80 1 2025-11-30 05:20:14.480 00:06:00.489 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:25:18.642 00:00:00.000 UDP 28.104.0.1:51094 -> 198.28.0.2:53 1 64 1 2025-11-30 05:25:18.642 00:00:00.000 UDP 28.104.0.1:43112 -> 198.28.0.2:53 1 64 1 2025-11-30 05:26:18.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45112 1 80 1 2025-11-30 05:26:18.897 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44696 1 109 1 2025-11-30 05:26:18.887 00:00:00.000 UDP 28.104.0.1:44696 -> 198.28.0.2:53 1 64 1 2025-11-30 05:26:18.887 00:00:00.000 UDP 28.104.0.1:45112 -> 198.28.0.2:53 1 64 1 2025-11-30 05:27:19.212 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57312 1 80 1 2025-11-30 05:27:19.211 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39531 1 109 1 2025-11-30 05:27:19.202 00:00:00.000 UDP 28.104.0.1:39531 -> 198.28.0.2:53 1 64 1 2025-11-30 05:27:19.202 00:00:00.000 UDP 28.104.0.1:57312 -> 198.28.0.2:53 1 64 1 2025-11-30 05:23:17.453 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 33 2240 1 2025-11-30 05:24:14.481 00:05:00.616 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:28:19.495 00:00:00.000 UDP 28.104.0.1:39092 -> 198.28.0.2:53 1 64 1 2025-11-30 05:28:19.495 00:00:00.000 UDP 28.104.0.1:46869 -> 198.28.0.2:53 1 64 1 2025-11-30 05:28:19.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39092 1 80 1 2025-11-30 05:28:19.504 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:46869 1 109 1 2025-11-30 05:25:05.814 00:05:08.680 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:29:19.784 00:00:00.000 UDP 28.104.0.1:39060 -> 198.28.0.2:53 1 64 1 2025-11-30 05:29:19.784 00:00:00.000 UDP 28.104.0.1:56861 -> 198.28.0.2:53 1 64 1 2025-11-30 05:29:19.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39060 1 80 1 2025-11-30 05:29:19.793 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56861 1 109 1 2025-11-30 05:29:59.291 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:26:05.823 00:05:08.660 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:26:05.864 00:05:08.773 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:30:20.088 00:00:00.000 UDP 28.104.0.1:39425 -> 198.28.0.2:53 1 64 1 2025-11-30 05:30:20.088 00:00:00.000 UDP 28.104.0.1:39982 -> 198.28.0.2:53 1 64 1 2025-11-30 05:30:20.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39982 1 109 1 2025-11-30 05:30:20.097 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39425 1 80 1 2025-11-30 05:27:05.813 00:05:08.841 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:31:20.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39014 1 80 1 2025-11-30 05:31:20.390 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45092 1 109 1 2025-11-30 05:31:20.380 00:00:00.000 UDP 28.104.0.1:45092 -> 198.28.0.2:53 1 64 1 2025-11-30 05:31:20.380 00:00:00.000 UDP 28.104.0.1:39014 -> 198.28.0.2:53 1 64 1 2025-11-30 05:27:14.481 00:06:00.488 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:32:20.670 00:00:00.000 UDP 28.104.0.1:51625 -> 198.28.0.2:53 1 64 1 2025-11-30 05:32:20.670 00:00:00.000 UDP 28.104.0.1:54630 -> 198.28.0.2:53 1 64 1 2025-11-30 05:32:20.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54630 1 109 1 2025-11-30 05:32:20.681 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:51625 1 80 1 2025-11-30 05:28:37.457 00:05:10.004 OSPF 28.0.2.2:0 -> 224.0.0.5:0 37 2612 1 2025-11-30 05:33:20.930 00:00:00.000 UDP 28.104.0.1:36675 -> 198.28.0.2:53 1 64 1 2025-11-30 05:33:20.930 00:00:00.000 UDP 28.104.0.1:42513 -> 198.28.0.2:53 1 64 1 2025-11-30 05:33:20.942 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36675 1 109 1 2025-11-30 05:33:20.941 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42513 1 80 1 2025-11-30 05:30:14.484 00:05:00.615 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:34:21.245 00:00:00.000 UDP 28.104.0.1:33844 -> 198.28.0.2:53 1 64 1 2025-11-30 05:34:21.245 00:00:00.000 UDP 28.104.0.1:47316 -> 198.28.0.2:53 1 64 1 2025-11-30 05:34:21.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33844 1 109 1 2025-11-30 05:34:21.256 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:47316 1 80 1 2025-11-30 05:34:59.220 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:31:05.814 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:35:21.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49494 1 80 1 2025-11-30 05:35:21.506 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37235 1 109 1 2025-11-30 05:35:21.496 00:00:00.000 UDP 28.104.0.1:37235 -> 198.28.0.2:53 1 64 1 2025-11-30 05:35:21.496 00:00:00.000 UDP 28.104.0.1:49494 -> 198.28.0.2:53 1 64 1 2025-11-30 05:32:05.825 00:05:08.660 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:32:05.865 00:05:08.780 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:36:21.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54279 1 80 1 2025-11-30 05:36:21.801 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40955 1 109 1 2025-11-30 05:36:21.791 00:00:00.000 UDP 28.104.0.1:40955 -> 198.28.0.2:53 1 64 1 2025-11-30 05:36:21.791 00:00:00.000 UDP 28.104.0.1:54279 -> 198.28.0.2:53 1 64 1 2025-11-30 05:33:05.815 00:05:08.840 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:37:22.099 00:00:00.000 UDP 28.104.0.1:40953 -> 198.28.0.2:53 1 64 1 2025-11-30 05:37:22.098 00:00:00.000 UDP 28.104.0.1:50976 -> 198.28.0.2:53 1 64 1 2025-11-30 05:37:22.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50976 1 80 1 2025-11-30 05:37:22.110 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40953 1 109 1 2025-11-30 05:33:57.462 00:05:10.012 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2544 1 2025-11-30 05:38:22.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:48497 1 80 1 2025-11-30 05:38:22.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34609 1 109 1 2025-11-30 05:38:22.399 00:00:00.000 UDP 28.104.0.1:48497 -> 198.28.0.2:53 1 64 1 2025-11-30 05:38:22.399 00:00:00.000 UDP 28.104.0.1:34609 -> 198.28.0.2:53 1 64 1 2025-11-30 05:34:14.484 00:06:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:39:22.687 00:00:00.000 UDP 28.104.0.1:59503 -> 198.28.0.2:53 1 64 1 2025-11-30 05:39:22.686 00:00:00.000 UDP 28.104.0.1:56407 -> 198.28.0.2:53 1 64 1 2025-11-30 05:39:22.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59503 1 109 1 2025-11-30 05:39:22.698 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56407 1 80 1 2025-11-30 05:39:59.317 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:36:14.485 00:05:00.626 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:40:22.986 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:54652 1 109 1 2025-11-30 05:40:22.987 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:37802 1 80 1 2025-11-30 05:40:22.976 00:00:00.000 UDP 28.104.0.1:54652 -> 198.28.0.2:53 1 64 1 2025-11-30 05:40:22.976 00:00:00.000 UDP 28.104.0.1:37802 -> 198.28.0.2:53 1 64 1 2025-11-30 05:37:05.815 00:05:08.682 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:41:23.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:59462 1 80 1 2025-11-30 05:41:23.278 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42895 1 109 1 2025-11-30 05:41:23.269 00:00:00.000 UDP 28.104.0.1:42895 -> 198.28.0.2:53 1 64 1 2025-11-30 05:41:23.269 00:00:00.000 UDP 28.104.0.1:59462 -> 198.28.0.2:53 1 64 1 2025-11-30 05:38:05.825 00:05:08.662 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:38:05.867 00:05:08.779 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:42:23.561 00:00:00.000 UDP 28.104.0.1:33019 -> 198.28.0.2:53 1 64 1 2025-11-30 05:42:23.561 00:00:00.000 UDP 28.104.0.1:58236 -> 198.28.0.2:53 1 64 1 2025-11-30 05:42:23.572 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33019 1 80 1 2025-11-30 05:42:23.571 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:58236 1 109 1 2025-11-30 05:39:05.816 00:05:08.840 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:43:23.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39878 1 80 1 2025-11-30 05:43:23.822 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45343 1 109 1 2025-11-30 05:43:23.812 00:00:00.000 UDP 28.104.0.1:45343 -> 198.28.0.2:53 1 64 1 2025-11-30 05:43:23.812 00:00:00.000 UDP 28.104.0.1:39878 -> 198.28.0.2:53 1 64 1 2025-11-30 05:39:17.474 00:05:10.057 OSPF 28.0.2.2:0 -> 224.0.0.5:0 39 2940 1 2025-11-30 05:44:24.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60059 1 80 1 2025-11-30 05:44:24.116 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:34859 1 109 1 2025-11-30 05:44:24.105 00:00:00.000 UDP 28.104.0.1:60059 -> 198.28.0.2:53 1 64 1 2025-11-30 05:44:24.106 00:00:00.000 UDP 28.104.0.1:34859 -> 198.28.0.2:53 1 64 1 2025-11-30 05:44:59.134 00:00:00.022 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:45:24.397 00:00:00.000 UDP 28.104.0.1:53512 -> 198.28.0.2:53 1 64 1 2025-11-30 05:45:24.398 00:00:00.000 UDP 28.104.0.1:42174 -> 198.28.0.2:53 1 64 1 2025-11-30 05:45:24.409 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53512 1 80 1 2025-11-30 05:45:24.410 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42174 1 109 1 2025-11-30 05:41:14.487 00:06:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:42:14.487 00:05:00.626 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:46:24.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49314 1 109 1 2025-11-30 05:46:24.659 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36305 1 80 1 2025-11-30 05:46:24.649 00:00:00.000 UDP 28.104.0.1:49314 -> 198.28.0.2:53 1 64 1 2025-11-30 05:46:24.649 00:00:00.000 UDP 28.104.0.1:36305 -> 198.28.0.2:53 1 64 1 2025-11-30 05:43:05.818 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:47:24.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:40718 1 80 1 2025-11-30 05:47:24.957 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:57234 1 109 1 2025-11-30 05:47:24.948 00:00:00.000 UDP 28.104.0.1:40718 -> 198.28.0.2:53 1 64 1 2025-11-30 05:47:24.948 00:00:00.000 UDP 28.104.0.1:57234 -> 198.28.0.2:53 1 64 1 2025-11-30 05:44:05.828 00:05:08.661 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:44:05.868 00:05:08.779 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:48:25.254 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:49783 1 80 1 2025-11-30 05:48:25.253 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:56790 1 109 1 2025-11-30 05:48:25.244 00:00:00.000 UDP 28.104.0.1:49783 -> 198.28.0.2:53 1 64 1 2025-11-30 05:48:25.243 00:00:00.000 UDP 28.104.0.1:56790 -> 198.28.0.2:53 1 64 1 2025-11-30 05:44:37.477 00:05:10.007 OSPF 28.0.2.2:0 -> 224.0.0.5:0 35 2416 1 2025-11-30 05:45:05.818 00:05:08.839 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:49:25.535 00:00:00.000 UDP 28.104.0.1:42064 -> 198.28.0.2:53 1 64 1 2025-11-30 05:49:25.535 00:00:00.000 UDP 28.104.0.1:44783 -> 198.28.0.2:53 1 64 1 2025-11-30 05:49:25.548 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44783 1 80 1 2025-11-30 05:49:25.549 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:42064 1 109 1 2025-11-30 05:49:59.484 00:00:00.024 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:50:25.840 00:00:00.000 UDP 28.104.0.1:36862 -> 198.28.0.2:53 1 64 1 2025-11-30 05:50:25.840 00:00:00.000 UDP 28.104.0.1:44452 -> 198.28.0.2:53 1 64 1 2025-11-30 05:50:25.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36862 1 80 1 2025-11-30 05:50:25.851 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44452 1 109 1 2025-11-30 05:51:26.173 00:00:00.000 UDP 28.104.0.1:41800 -> 198.28.0.2:53 1 64 1 2025-11-30 05:51:26.173 00:00:00.000 UDP 28.104.0.1:53651 -> 198.28.0.2:53 1 64 1 2025-11-30 05:51:26.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53651 1 109 1 2025-11-30 05:51:26.184 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41800 1 80 1 2025-11-30 05:48:14.490 00:05:00.625 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:52:26.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:36374 1 80 1 2025-11-30 05:52:26.487 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:32776 1 109 1 2025-11-30 05:52:26.478 00:00:00.000 UDP 28.104.0.1:36374 -> 198.28.0.2:53 1 64 1 2025-11-30 05:52:26.478 00:00:00.000 UDP 28.104.0.1:32776 -> 198.28.0.2:53 1 64 1 2025-11-30 05:48:14.489 00:06:00.487 TCP 28.154.0.1:179 -> 28.157.0.1:37077 14 861 1 2025-11-30 05:49:05.819 00:05:08.681 TCP 28.151.0.1:179 -> 28.154.0.1:41239 12 738 1 2025-11-30 05:53:26.767 00:00:00.000 UDP 28.104.0.1:55228 -> 198.28.0.2:53 1 64 1 2025-11-30 05:53:26.767 00:00:00.000 UDP 28.104.0.1:45862 -> 198.28.0.2:53 1 64 1 2025-11-30 05:53:26.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:45862 1 80 1 2025-11-30 05:53:26.779 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:55228 1 109 1 2025-11-30 05:49:57.483 00:05:10.005 OSPF 28.0.2.2:0 -> 224.0.0.5:0 36 2576 1 2025-11-30 05:50:05.830 00:05:08.660 TCP 28.154.0.1:41239 -> 28.151.0.1:179 12 738 1 2025-11-30 05:50:05.870 00:05:08.779 TCP 28.156.0.1:179 -> 28.151.0.1:39145 12 738 1 2025-11-30 05:54:27.048 00:00:00.000 UDP 28.104.0.1:41327 -> 198.28.0.2:53 1 64 1 2025-11-30 05:54:27.049 00:00:00.000 UDP 28.104.0.1:43475 -> 198.28.0.2:53 1 64 1 2025-11-30 05:54:27.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:41327 1 109 1 2025-11-30 05:54:27.057 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:43475 1 80 1 2025-11-30 05:54:59.742 00:00:00.023 ICMP 28.107.0.1:0 -> 28.0.198.2:0.0 3 252 1 2025-11-30 05:51:05.818 00:05:08.839 TCP 28.151.0.1:39145 -> 28.156.0.1:179 12 738 1 2025-11-30 05:55:27.305 00:00:00.000 UDP 28.104.0.1:53819 -> 198.28.0.2:53 1 64 1 2025-11-30 05:55:27.305 00:00:00.000 UDP 28.104.0.1:39796 -> 198.28.0.2:53 1 64 1 2025-11-30 05:55:27.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53819 1 109 1 2025-11-30 05:55:27.316 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:39796 1 80 1 2025-11-30 05:56:27.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:53028 1 109 1 2025-11-30 05:56:27.618 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:33173 1 80 1 2025-11-30 05:56:27.607 00:00:00.000 UDP 28.104.0.1:33173 -> 198.28.0.2:53 1 64 1 2025-11-30 05:56:27.607 00:00:00.000 UDP 28.104.0.1:53028 -> 198.28.0.2:53 1 64 1 2025-11-30 05:57:27.904 00:00:00.000 UDP 28.104.0.1:60104 -> 198.28.0.2:53 1 64 1 2025-11-30 05:57:27.904 00:00:00.000 UDP 28.104.0.1:60567 -> 198.28.0.2:53 1 64 1 2025-11-30 05:57:27.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60104 1 109 1 2025-11-30 05:57:27.914 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:60567 1 80 1 2025-11-30 05:54:14.489 00:05:00.626 TCP 28.154.0.1:179 -> 28.155.0.1:36643 12 738 1 2025-11-30 05:58:28.167 00:00:00.000 UDP 28.104.0.1:44840 -> 198.28.0.2:53 1 64 1 2025-11-30 05:58:28.167 00:00:00.000 UDP 28.104.0.1:50143 -> 198.28.0.2:53 1 64 1 2025-11-30 05:58:28.178 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:50143 1 80 1 2025-11-30 05:58:28.177 00:00:00.000 UDP 198.28.0.2:53 -> 28.104.0.1:44840 1 109 1 Summary: total flows: 321, total bytes: 94072, total packets: 1386, avg bps: 195, avg pps: 0, avg bpp: 67 Time window: 2025-11-30 04:55:05 - 2025-11-30 05:59:15 Total flows processed: 321, passed: 321, Blocks skipped: 0, Bytes read: 33448 Sys: 0.0060s User: 0.0020s Wall: 0.0041s flows/second: 78386.8 Runtime: 0.0041s