network traffic dies-high traffic dst tcp port 2828 detected

hi… i have been experiencing strange network behavior during last weeks

suddenly network traffic to wan side falls to almost 0kbps. using The Dude y see that there is still network traffic in lan environment.

i did some “torching” and i could see a client with a lot of packets Protocol TCP Dst-Port 2828 with destination ip of some MT devices in my network. i loose connection to some of those devices when this packet storm happens.

Have someone experienced something like this? What could it be?
is it about some hacker or some misconfiguration in my network?

just firewall that port in prerouting chain .. not in forward