Windows
Analysis Report
https://www.amerazcicanexcddazpress.com.fhjhfzfgb.top/jp
Overview
General Information
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 6428 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" --sta rt-maximiz ed "about: blank MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 4760 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2040 --fi eld-trial- handle=172 4,i,114340 8347525055 6663,76031 8987613287 4215,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 1196 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" "http s://www.am erazcicane xcddazpres s.com.fhjh fzfgb.top/ jp MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Exfiltration | Command and Control | Network Effects | Remote Service Effects | Impact | Resource Development | Reconnaissance |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 11 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | Exfiltration Over Other Network Medium | 1 Encrypted Channel | Exploit SS7 to Redirect Phone Calls/SMS | Remotely Wipe Data Without Authorization | Abuse Accessibility Features | Acquire Infrastructure | Gather Victim Identity Information |
Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | Exfiltration Over Bluetooth | 4 Non-Application Layer Protocol | SIM Card Swap | Obtain Device Cloud Backups | Network Denial of Service | Domains | Credentials |
Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | Automated Exfiltration | 5 Application Layer Protocol | Data Encrypted for Impact | DNS Server | Email Addresses | ||
Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | Traffic Duplication | 3 Ingress Tool Transfer | Data Destruction | Virtual Private Server | Employee Names |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
accounts.google.com | 142.251.179.84 | true | false | high | |
www.google.com | 142.251.16.104 | true | false | high | |
www.amerazcicanexcddazpress.com.fhjhfzfgb.top | 114.29.238.135 | true | false | unknown | |
clients.l.google.com | 142.251.16.101 | true | false | high | |
clients2.google.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false | unknown | ||
false | high | ||
false |
| unknown | |
false | unknown | ||
false | high | ||
false | unknown | ||
true | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.251.179.84 | accounts.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
114.29.238.135 | www.amerazcicanexcddazpress.com.fhjhfzfgb.top | India | 134032 | ICENET-AS-ININFONETCOMMENTERPRISESIN | false | |
142.251.16.104 | www.google.com | United States | 15169 | GOOGLEUS | false | |
142.251.16.101 | clients.l.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.5 |
Joe Sandbox Version: | 38.0.0 Ammolite |
Analysis ID: | 1345521 |
Start date and time: | 2023-11-21 01:15:21 +01:00 |
Joe Sandbox Product: | CloudBasic |
Overall analysis duration: | 0h 2m 48s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://www.amerazcicanexcddazpress.com.fhjhfzfgb.top/jp |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.win@16/8@10/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.253.62.94, 34.104.35.123, 8.253.131.120, 192.229.211.108, 8.252.81.126, 172.253.122.94
- Excluded domains from analysis (whitelisted): fs.microsoft.com, ocsp.digicert.com, edgedl.me.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- VT rate limit hit for: https://www.amerazcicanexcddazpress.com.fhjhfzfgb.top/jp
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9740412023145386 |
Encrypted: | false |
SSDEEP: | 48:8KdFTNh9HSidAKZdA19ehwiZUklqehLy+3:8QHOMy |
MD5: | 9C5C65E5A8BEDADC1C4AAABC2E8CF7EB |
SHA1: | E29F9A4B6366D96E195E446D16AA03546C7F1597 |
SHA-256: | F4696E05DF2E9008551837378DED10EDBC1D06B80D8403C9EFA3E2C86B1EA250 |
SHA-512: | 3F1F035E59E1F6CD147F87D522DB89DD1EF3740A19B10D2D9EF8801379106B932AF36B8653885D59D3A59C91E7B6E0DA8D1B2658131E8D5D23F211AC16314349 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9892645189327953 |
Encrypted: | false |
SSDEEP: | 48:8zdFTNh9HSidAKZdA1weh/iZUkAQkqeh8y+2:8bHM9Q5y |
MD5: | 8BCBA97D7046B5CC6A24EED8578E0D37 |
SHA1: | 44620BE28C45073337F3513F6865DE7D204BBE00 |
SHA-256: | 17C8CDBE8535F6F4E4B9CAC09815E9D1A6AB6B5B90136A72A2E6198D8629EC21 |
SHA-512: | E58E149B5A7771C6A81BE1B2CA5BEFBA8E774508EF22CCE2BF98F91A063DA04DDBD618579D187654037622BF82D18F76FA8460888DF6D8D941E4F92C08B81B4B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.001374087384518 |
Encrypted: | false |
SSDEEP: | 48:8xydFTNhsHSidAKZdA14tseh7sFiZUkmgqeh7sKy+BX:8xIHLnwy |
MD5: | FAD55676000688E291EDC500B6B52A80 |
SHA1: | A7C95D968D8C2EE41FAAB9E376DAA54C3B87CC46 |
SHA-256: | 8F5ADAC64D2C5C9D1F6014FA6CEA91208D42FF399379B4217363FE43B4DD5A13 |
SHA-512: | D01CE96B4D65AEE28D409E2240BD8D80BEE101DFCDE17CF784743B3500A8C021B27DCF1F5F3EC6D3A5E30B18B2DC1F5FC91BAE9C984A17238831D4442F7EFE18 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9900869359175237 |
Encrypted: | false |
SSDEEP: | 48:8fdFTNh9HSidAKZdA1vehDiZUkwqehoy+R:8fH3iy |
MD5: | 56D4801BAA7607FB41050867E8D99CBF |
SHA1: | 68DF90BEE6C6B26CEDC37E1819AC43CEEE27689D |
SHA-256: | 102BE67CB63B495B3AE43EFF82A48820376C466AD92072C01C455B416CA1CE4F |
SHA-512: | 1033E775C5E39C5E3064E24E0F6C66C83E7B72463E561B3F5B0B905ACB841BDE49FE740F5F35E80D86A9895B8B53CC87A56B0D8F58FDB5D646EF2B44E13DBC66 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.976122354546834 |
Encrypted: | false |
SSDEEP: | 48:89dFTNh9HSidAKZdA1hehBiZUk1W1qehuy+C:81HH9Oy |
MD5: | 592E7834228535BD33CC2442963C6B49 |
SHA1: | E5C800222FC06E5FCE5328A1DFC7FF9F9E4E46EC |
SHA-256: | E2C4E4024F1532B2C056E7A9C45B58D5875C72550D1D4A046F67D06538E66CE4 |
SHA-512: | 1BBF2CFF22A8E098844B5590AC0A17C49EE7C0D509D1D268D39B4581B5B6F84A9D9954D462F0EA24BCB4E474E2411AF3674F48626CC7CF99B262D3DB90E47D25 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.9872870758736 |
Encrypted: | false |
SSDEEP: | 48:8tdFTNh9HSidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbwy+yT+:8lHPT/TbxWOvTbwy7T |
MD5: | C915EB84F9F24BA9B01EE358B5535CFD |
SHA1: | 3831F89118D192C2E098F761CD524625C0A09CC5 |
SHA-256: | 9DC03C8DDC1A53ABDCF62CC5FA3A425BF41C7313886AAAB5205BBDFE23408AB7 |
SHA-512: | FCACCC187DDEE4E9BC7465A914F188913C34AC71F534B0DFA6D9F818BDE5CC9B05C10F97BA8FC9E6750146D1E01569DA9990E0888F479983B83393998088989A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 292 |
Entropy (8bit): | 5.241410209140482 |
Encrypted: | false |
SSDEEP: | 6:pn0+Dy9xwGObRmEr6VnetdzRx3G0CezoIRV8WOzOHwb8oD:J0+oxBeRmR9etdzRxGezHLR+8+ |
MD5: | FD940E81571245AD9B80B42F1D70F0FB |
SHA1: | CE10BBACEF5A9DB117FE736D02DD7BF6AD797E7B |
SHA-256: | 91B7839095821ED9120CD6A841E9D5D4AA60931C2B18D9E7E2AD9CA7385B7688 |
SHA-512: | A861F9F71EE6A777BE2C7352E23305B4A5E368069685764A39A8FA46D3CC12A285B27494CEEA0D159340368F68DC212553BE308BDE79539FDC199EDBE5C1D029 |
Malicious: | false |
Reputation: | low |
URL: | https://www.amerazcicanexcddazpress.com.fhjhfzfgb.top/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4981 |
Entropy (8bit): | 5.113240961469081 |
Encrypted: | false |
SSDEEP: | 96:zDEqwrbv1+GtJ8VuCDJwSUZ+pO8/npbKdHR9BweSW5WRq1EB6eOkkCGomn:zDlMzkGf8VuCJpO8ktRoeSWoq1Ece39m |
MD5: | 48DE24BB73AF029E4812C12060509B28 |
SHA1: | E715A83CBF612971F0275FFDFBA2E45604BE742A |
SHA-256: | AE9DA3C9A568A7B3602DC54E10C324166DB3ABE1D3A6892770D6CE6A7CC8C1C6 |
SHA-512: | FFE85C26D576B7FFBB6052BE6D26E8D48D354FC927D05A2395B0C88F0D87A56E7A5077CDBAEB905F10B17895ACA49353ED4E46B01D5061ECB514617069AA9900 |
Malicious: | false |
Reputation: | low |
URL: | https://www.amerazcicanexcddazpress.com.fhjhfzfgb.top/vendor/vendor.23238u92u82.js |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 21, 2023 01:16:06.160036087 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:06.160038948 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:06.285007000 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:09.962759972 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:09.962816954 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:09.962877035 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:09.963347912 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:09.963377953 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:09.963421106 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:09.964494944 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:09.964504957 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:09.964792967 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:09.964802980 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.196504116 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.196579933 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.196749926 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.196768999 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.196831942 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.196846008 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.197170019 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.197240114 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.198404074 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.198405027 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.200191021 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.200191021 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.200191021 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.200262070 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.201467991 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.201477051 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.201821089 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.201899052 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.201946974 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.201955080 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.286802053 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.286808014 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.383285999 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.383395910 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.383446932 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.383814096 CET | 49705 | 443 | 192.168.2.5 | 142.251.16.101 |
Nov 21, 2023 01:16:10.383830070 CET | 443 | 49705 | 142.251.16.101 | 192.168.2.5 |
Nov 21, 2023 01:16:10.401053905 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.401165009 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:10.401230097 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.401951075 CET | 49704 | 443 | 192.168.2.5 | 142.251.179.84 |
Nov 21, 2023 01:16:10.401985884 CET | 443 | 49704 | 142.251.179.84 | 192.168.2.5 |
Nov 21, 2023 01:16:12.990076065 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.990139008 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:12.990205050 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.992094994 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.992130995 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:12.992187977 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.992801905 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.992821932 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:12.993274927 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:12.993288040 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.615232944 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.616029978 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.616055965 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.616947889 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.617029905 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.617997885 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.618407965 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.618431091 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.618613005 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.618684053 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.619112015 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.619122982 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.619518042 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.619582891 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.621151924 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.621212006 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.661401987 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.661411047 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:13.661412001 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:13.713958979 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.208058119 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.208158970 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.208218098 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.212516069 CET | 49711 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.212543964 CET | 443 | 49711 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.259411097 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.259438038 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.259501934 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.259848118 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.259859085 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.269644022 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.317260981 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.460125923 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.473191023 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.473236084 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.478406906 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.478550911 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.494400024 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.501427889 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.551290989 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.551317930 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:14.568701029 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.568731070 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.568774939 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.568799973 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.568861961 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.568898916 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.592573881 CET | 49712 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.592595100 CET | 443 | 49712 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.600214005 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:14.608875990 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.608903885 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.608968019 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.609275103 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.609302998 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.609354973 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.612595081 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.612607956 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:14.612736940 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:14.612757921 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.056349993 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.056372881 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.056451082 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.059346914 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.059360027 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.239614964 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.239903927 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.239943027 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.240489960 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.240813971 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.240843058 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.240885973 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.240963936 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.241085052 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.241111040 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.241480112 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.241750002 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.241811991 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.268942118 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.269069910 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.271317005 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.271322966 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.271533012 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.285254002 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:15.293183088 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:15.324295044 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.369277000 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.464925051 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.465064049 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.465138912 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.465215921 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.465226889 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.465245962 CET | 49716 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.465255022 CET | 443 | 49716 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.499033928 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.499089956 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.499181032 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.499694109 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.499707937 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.712188005 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.712351084 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.713844061 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.713857889 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.717544079 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.720277071 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.765263081 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.770658016 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:15.770680904 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:15.895034075 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:15.912358999 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.912467957 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.912547112 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.914375067 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.914419889 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:15.914449930 CET | 49717 | 443 | 192.168.2.5 | 23.197.37.167 |
Nov 21, 2023 01:16:15.914464951 CET | 443 | 49717 | 23.197.37.167 | 192.168.2.5 |
Nov 21, 2023 01:16:17.330837965 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:17.330962896 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:21.498265028 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:21.498353004 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:21.498437881 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:22.754424095 CET | 49715 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:22.754456997 CET | 443 | 49715 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:22.783030033 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:22.825263023 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:23.080301046 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:23.080389023 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:23.080485106 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:23.081033945 CET | 49714 | 443 | 192.168.2.5 | 114.29.238.135 |
Nov 21, 2023 01:16:23.081049919 CET | 443 | 49714 | 114.29.238.135 | 192.168.2.5 |
Nov 21, 2023 01:16:24.481436968 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:24.481518030 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:24.481590033 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:26.160278082 CET | 49713 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:16:26.160309076 CET | 443 | 49713 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:16:26.732114077 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:26.732184887 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:26.732309103 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:26.734704971 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:26.734724998 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.126833916 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.126955986 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.129802942 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.129822016 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.130075932 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.177512884 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.357098103 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.357158899 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.357778072 CET | 49721 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.357803106 CET | 443 | 49721 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:27.357897043 CET | 49721 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.358625889 CET | 49721 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.358639002 CET | 443 | 49721 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:27.510585070 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:27.510718107 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:27.593172073 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.637255907 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.677092075 CET | 443 | 49721 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:27.677182913 CET | 49721 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:16:27.857708931 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857759953 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857815027 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857841015 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857873917 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857903957 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.857934952 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.857956886 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.858091116 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:27.858108997 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.858108997 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.858108997 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:27.858140945 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:28.108112097 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:28.108112097 CET | 49718 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:16:28.108148098 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:28.108166933 CET | 443 | 49718 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:16:46.909245968 CET | 443 | 49721 | 23.1.237.91 | 192.168.2.5 |
Nov 21, 2023 01:16:46.909327030 CET | 49721 | 443 | 192.168.2.5 | 23.1.237.91 |
Nov 21, 2023 01:17:04.485337973 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.485368967 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:04.485435963 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.486079931 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.486088991 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:04.878271103 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:04.878479004 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.881835938 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.881845951 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:04.882168055 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:04.892844915 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:04.933264017 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.252959013 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.252979040 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.253031015 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.253073931 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:05.253103018 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.253117085 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.253122091 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.253124952 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:05.253181934 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:05.257854939 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:05.257870913 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:05.257894993 CET | 49726 | 443 | 192.168.2.5 | 52.165.165.26 |
Nov 21, 2023 01:17:05.257900000 CET | 443 | 49726 | 52.165.165.26 | 192.168.2.5 |
Nov 21, 2023 01:17:14.194674015 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:14.194721937 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.194812059 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:14.195095062 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:14.195115089 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.390161037 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.390398026 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:14.390423059 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.390732050 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.391043901 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:14.391108990 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:14.443728924 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:24.409457922 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:24.409555912 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Nov 21, 2023 01:17:24.409621954 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:26.147993088 CET | 49728 | 443 | 192.168.2.5 | 142.251.16.104 |
Nov 21, 2023 01:17:26.148072958 CET | 443 | 49728 | 142.251.16.104 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 21, 2023 01:16:09.810285091 CET | 62734 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:09.810502052 CET | 52293 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:09.810976028 CET | 51061 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:09.811311007 CET | 58958 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:09.884548903 CET | 53 | 64482 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:09.935286999 CET | 53 | 62734 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:09.935765982 CET | 53 | 52293 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:09.936142921 CET | 53 | 51061 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:09.937067986 CET | 53 | 58958 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:10.562047958 CET | 53 | 62912 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:11.853163004 CET | 61861 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:11.853353977 CET | 59940 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:12.870189905 CET | 57758 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:12.870594025 CET | 55037 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:12.892105103 CET | 53 | 59940 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:12.988518000 CET | 53 | 61861 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:13.717677116 CET | 53 | 55037 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:13.767208099 CET | 53 | 57758 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:14.133095980 CET | 55892 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:14.133338928 CET | 54660 | 53 | 192.168.2.5 | 1.1.1.1 |
Nov 21, 2023 01:16:14.257666111 CET | 53 | 55892 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:14.258028030 CET | 53 | 54660 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:28.804640055 CET | 53 | 56092 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:16:48.024622917 CET | 53 | 62590 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:17:09.754183054 CET | 53 | 50834 | 1.1.1.1 | 192.168.2.5 |
Nov 21, 2023 01:17:10.940305948 CET | 53 | 63483 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Nov 21, 2023 01:16:13.717780113 CET | 192.168.2.5 | 1.1.1.1 | c244 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Nov 21, 2023 01:16:09.810285091 CET | 192.168.2.5 | 1.1.1.1 | 0x2911 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 21, 2023 01:16:09.810502052 CET | 192.168.2.5 | 1.1.1.1 | 0x5eec | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 21, 2023 01:16:09.810976028 CET | 192.168.2.5 | 1.1.1.1 | 0x49c3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 21, 2023 01:16:09.811311007 CET | 192.168.2.5 | 1.1.1.1 | 0xa4eb | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 21, 2023 01:16:11.853163004 CET | 192.168.2.5 | 1.1.1.1 | 0x70e0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 21, 2023 01:16:11.853353977 CET | 192.168.2.5 | 1.1.1.1 | 0xe450 | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 21, 2023 01:16:12.870189905 CET | 192.168.2.5 | 1.1.1.1 | 0xa6b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 21, 2023 01:16:12.870594025 CET | 192.168.2.5 | 1.1.1.1 | 0xc0eb | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 21, 2023 01:16:14.133095980 CET | 192.168.2.5 | 1.1.1.1 | 0x8796 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 21, 2023 01:16:14.133338928 CET | 192.168.2.5 | 1.1.1.1 | 0x9635 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.101 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.139 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.100 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.113 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.138 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935286999 CET | 1.1.1.1 | 192.168.2.5 | 0x2911 | No error (0) | 142.251.16.102 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.935765982 CET | 1.1.1.1 | 192.168.2.5 | 0x5eec | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:09.936142921 CET | 1.1.1.1 | 192.168.2.5 | 0x49c3 | No error (0) | 142.251.179.84 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:12.988518000 CET | 1.1.1.1 | 192.168.2.5 | 0x70e0 | No error (0) | 114.29.238.135 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:13.767208099 CET | 1.1.1.1 | 192.168.2.5 | 0xa6b | No error (0) | 114.29.238.135 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.104 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.106 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.99 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.105 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.147 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.257666111 CET | 1.1.1.1 | 192.168.2.5 | 0x8796 | No error (0) | 142.251.16.103 | A (IP address) | IN (0x0001) | false | ||
Nov 21, 2023 01:16:14.258028030 CET | 1.1.1.1 | 192.168.2.5 | 0x9635 | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
0 | 192.168.2.5 | 49704 | 142.251.179.84 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 0 | OUT | |
2023-11-21 00:16:10 UTC | 0 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
0 | 142.251.179.84 | 443 | 192.168.2.5 | 49704 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 0 | OUT | |
2023-11-21 00:16:10 UTC | 0 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
1 | 192.168.2.5 | 49705 | 142.251.16.101 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 0 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
1 | 142.251.16.101 | 443 | 192.168.2.5 | 49705 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 0 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
10 | 192.168.2.5 | 49717 | 23.197.37.167 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 14 | OUT | |
2023-11-21 00:16:15 UTC | 15 | IN | |
2023-11-21 00:16:15 UTC | 15 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
10 | 23.197.37.167 | 443 | 192.168.2.5 | 49717 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 14 | OUT | |
2023-11-21 00:16:15 UTC | 15 | IN | |
2023-11-21 00:16:15 UTC | 15 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
11 | 114.29.238.135 | 443 | 192.168.2.5 | 49715 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:21 UTC | 15 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
11 | 192.168.2.5 | 49715 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:21 UTC | 15 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
12 | 114.29.238.135 | 443 | 192.168.2.5 | 49714 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:22 UTC | 16 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
12 | 192.168.2.5 | 49714 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:22 UTC | 16 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
13 | 114.29.238.135 | 443 | 192.168.2.5 | 49714 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:23 UTC | 17 | IN | |
2023-11-21 00:16:23 UTC | 17 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
13 | 192.168.2.5 | 49714 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:23 UTC | 17 | IN | |
2023-11-21 00:16:23 UTC | 17 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
14 | 192.168.2.5 | 49718 | 52.165.165.26 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:27 UTC | 17 | OUT | |
2023-11-21 00:16:27 UTC | 18 | IN | |
2023-11-21 00:16:27 UTC | 18 | IN | |
2023-11-21 00:16:27 UTC | 34 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
14 | 52.165.165.26 | 443 | 192.168.2.5 | 49718 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:27 UTC | 17 | OUT | |
2023-11-21 00:16:27 UTC | 18 | IN | |
2023-11-21 00:16:27 UTC | 18 | IN | |
2023-11-21 00:16:27 UTC | 34 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
15 | 52.165.165.26 | 443 | 192.168.2.5 | 49726 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:17:04 UTC | 42 | OUT | |
2023-11-21 00:17:05 UTC | 42 | IN | |
2023-11-21 00:17:05 UTC | 43 | IN | |
2023-11-21 00:17:05 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
15 | 192.168.2.5 | 49726 | 52.165.165.26 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:17:04 UTC | 42 | OUT | |
2023-11-21 00:17:05 UTC | 42 | IN | |
2023-11-21 00:17:05 UTC | 43 | IN | |
2023-11-21 00:17:05 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
2 | 192.168.2.5 | 49705 | 142.251.16.101 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 1 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
2 | 142.251.16.101 | 443 | 192.168.2.5 | 49705 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 1 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 2 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
3 | 192.168.2.5 | 49704 | 142.251.179.84 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 4 | IN | |
2023-11-21 00:16:10 UTC | 4 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
3 | 142.251.179.84 | 443 | 192.168.2.5 | 49704 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:10 UTC | 2 | IN | |
2023-11-21 00:16:10 UTC | 4 | IN | |
2023-11-21 00:16:10 UTC | 4 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
4 | 192.168.2.5 | 49711 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:13 UTC | 4 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
4 | 114.29.238.135 | 443 | 192.168.2.5 | 49711 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:13 UTC | 4 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
5 | 114.29.238.135 | 443 | 192.168.2.5 | 49711 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 5 | IN | |
2023-11-21 00:16:14 UTC | 6 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
5 | 192.168.2.5 | 49711 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 5 | IN | |
2023-11-21 00:16:14 UTC | 6 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
6 | 114.29.238.135 | 443 | 192.168.2.5 | 49712 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 7 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
6 | 192.168.2.5 | 49712 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 7 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
7 | 114.29.238.135 | 443 | 192.168.2.5 | 49712 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 7 | IN | |
2023-11-21 00:16:14 UTC | 8 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
7 | 192.168.2.5 | 49712 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:14 UTC | 7 | IN | |
2023-11-21 00:16:14 UTC | 8 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
8 | 114.29.238.135 | 443 | 192.168.2.5 | 49715 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 13 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
8 | 192.168.2.5 | 49715 | 114.29.238.135 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 13 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
9 | 192.168.2.5 | 49716 | 23.197.37.167 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 14 | OUT | |
2023-11-21 00:16:15 UTC | 14 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
9 | 23.197.37.167 | 443 | 192.168.2.5 | 49716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-11-21 00:16:15 UTC | 14 | OUT | |
2023-11-21 00:16:15 UTC | 14 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 01:16:05 |
Start date: | 21/11/2023 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 01:16:07 |
Start date: | 21/11/2023 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 01:16:10 |
Start date: | 21/11/2023 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |