Windows
Analysis Report
https://link.mail.beehiiv.com/ls/click?upn=fBLT-2BLuQl3NwiQlY-2FUB-2F7yZK63rzVbOt6SRjyVrBIqFzFDo8M-2Fg4Bo4-2BO4hpom8z7ZLuxy2QxlYMgW1Gzy6pwCm23aez0vVyhBm7eCGwE0WdMbo1BXh-2BFRtbcaklbKh26FDy0n-2FdQ9t7RCwaH39WupxeBlLns-2FCYgl5f1ctJEhM-3DLmFo_AmeWD5ZsKC-2B3ZheZjnDpbUkAKgKl5WpTuOJCpyDqXRc8K-2FlFlJ4-2Bn1zD
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 3192 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" --sta rt-maximiz ed "about: blank MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 3716 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2104 --fi eld-trial- handle=201 6,i,915354 0945449359 898,776365 2752025325 57,262144 --disable- features=O ptimizatio nGuideMode lDownloadi ng,Optimiz ationHints ,Optimizat ionHintsFe tching,Opt imizationT argetPredi ction /pre fetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6432 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" "http s://link.m ail.beehii v.com/ls/c lick?upn=f BLT-2BLuQl 3NwiQlY-2F UB-2F7yZK6 3rzVbOt6SR jyVrBIqFzF Do8M-2Fg4B o4-2BO4hpo m8z7ZLuxy2 QxlYMgW1Gz y6pwCm23ae z0vVyhBm7e CGwE0WdMbo 1BXh-2BFRt bcaklbKh26 FDy0n-2FdQ 9t7RCwaH39 WupxeBlLns -2FCYgl5f1 ctJEhM-3DL mFo_AmeWD5 ZsKC-2B3Zh eZjnDpbUkA KgKl5WpTuO JCpyDqXRc8 K-2FlFlJ4- 2Bn1zDfmQE 1bOIB5-2Bm aBYS52bqAM uImdaBWt-2 B7NcvDjHLS jDEqun4F40 VGOju6f5er aMm-2BmA2c I4TwN5m-2F dXmsuh3AvB 8I3hqCf5Su 72C52AB82b XT78OFaGhL dykrKPYdzA mNePbUMkJf eZ1o1xXkpY 533PpjggEu fwqS96U2lH FtuM0AF0Xz njCWvz2-2F AJxdv2yOU4 Rja8sE1aVz AzUItssHkU W9tujzTKsH ooxa0T1wqU -2BXsNw6IZ YMBuNd2XQD 3BPavL2FyK wgqOl-2BNl CpAsuRQyxx qbQ0sxmCsv EzI2nw166v YROKCjGmPP QtR1NyNiLp j317EtiqLr lvsktdS8N6 bgTfK0t-2F A2HLcAR1cl K9xdGWlVko BfmmnRGIBb oAePQ8ToZa gwj4auB1Pm TKZ9aQMtFd h-2FNJV17V PUH2ibgU2d 8MV21fLKU- 3D#/?/%23/ ?/marketin g@virtuali ntelligenc ebriefing. com MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: |
Source: | Sample URL: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware | ||
100% | Avira URL Cloud | phishing | ||
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
95mc5.zal0.com | 104.21.42.31 | true | false | unknown | |
djdhde.mypi.co | 23.237.26.135 | true | false | unknown | |
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
accounts.google.com | 74.125.138.84 | true | false | high | |
link.mail.beehiiv.com | 104.18.69.40 | true | false | unknown | |
www.google.com | 64.233.185.99 | true | false | high | |
clients.l.google.com | 173.194.219.138 | true | false | high | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown | |
clients1.google.com | unknown | unknown | false | high | |
clients2.google.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
false | high | ||
false |
| unknown | |
false |
| unknown | |
false | high | ||
false |
| unknown | |
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
104.21.42.31 | 95mc5.zal0.com | United States | 13335 | CLOUDFLARENETUS | false | |
23.237.26.135 | djdhde.mypi.co | United States | 174 | COGENT-174US | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
173.194.219.138 | clients.l.google.com | United States | 15169 | GOOGLEUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false | |
104.18.69.40 | link.mail.beehiiv.com | United States | 13335 | CLOUDFLARENETUS | false | |
74.125.138.84 | accounts.google.com | United States | 15169 | GOOGLEUS | false | |
64.233.185.99 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1388680 |
Start date and time: | 2024-02-07 22:33:39 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 5s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://link.mail.beehiiv.com/ls/click?upn=fBLT-2BLuQl3NwiQlY-2FUB-2F7yZK63rzVbOt6SRjyVrBIqFzFDo8M-2Fg4Bo4-2BO4hpom8z7ZLuxy2QxlYMgW1Gzy6pwCm23aez0vVyhBm7eCGwE0WdMbo1BXh-2BFRtbcaklbKh26FDy0n-2FdQ9t7RCwaH39WupxeBlLns-2FCYgl5f1ctJEhM-3DLmFo_AmeWD5ZsKC-2B3ZheZjnDpbUkAKgKl5WpTuOJCpyDqXRc8K-2FlFlJ4-2Bn1zDfmQE1bOIB5-2BmaBYS52bqAMuImdaBWt-2B7NcvDjHLSjDEqun4F40VGOju6f5eraMm-2BmA2cI4TwN5m-2FdXmsuh3AvB8I3hqCf5Su72C52AB82bXT78OFaGhLdykrKPYdzAmNePbUMkJfeZ1o1xXkpY533PpjggEufwqS96U2lHFtuM0AF0XznjCWvz2-2FAJxdv2yOU4Rja8sE1aVzAzUItssHkUW9tujzTKsHooxa0T1wqU-2BXsNw6IZYMBuNd2XQD3BPavL2FyKwgqOl-2BNlCpAsuRQyxxqbQ0sxmCsvEzI2nw166vYROKCjGmPPQtR1NyNiLpj317EtiqLrlvsktdS8N6bgTfK0t-2FA2HLcAR1clK9xdGWlVkoBfmmnRGIBboAePQ8ToZagwj4auB1PmTKZ9aQMtFdh-2FNJV17VPUH2ibgU2d8MV21fLKU-3D#/?/%23/?/marketing@virtualintelligencebriefing.com |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@19/2@16/9 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.105.94, 34.104.35.123, 40.68.123.157, 72.21.81.240, 192.229.211.108, 20.242.39.171, 13.95.31.18, 172.217.215.94
- Excluded domains from analysis (whitelisted): fs.microsoft.com, slscr.update.microsoft.com, wu.ec.azureedge.net, clientservices.googleapis.com, ctldl.windowsupdate.com, wu-bg-shim.trafficmanager.net, wu.azureedge.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, ocsp.digicert.com, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtOpenFile calls found.
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://link.mail.beehiiv.com/ls/click?upn=fBLT-2BLuQl3NwiQlY-2FUB-2F7yZK63rzVbOt6SRjyVrBIqFzFDo8M-2Fg4Bo4-2BO4hpom8z7ZLuxy2QxlYMgW1Gzy6pwCm23aez0vVyhBm7eCGwE0WdMbo1BXh-2BFRtbcaklbKh26FDy0n-2FdQ9t7RCwaH39WupxeBlLns-2FCYgl5f1ctJEhM-3DLmFo_AmeWD5ZsKC-2B3ZheZjnDpbUkAKgKl5WpTuOJCpyDqXRc8K-2FlFlJ4-2Bn1zDfmQE1bOIB5-2BmaBYS52bqAMuImdaBWt-2B7NcvDjHLSjDEqun4F40VGOju6f5eraMm-2BmA2cI4TwN5m-2FdXmsuh3AvB8I3hqCf5Su72C52AB82bXT78OFaGhLdykrKPYdzAmNePbUMkJfeZ1o1xXkpY533PpjggEufwqS96U2lHFtuM0AF0XznjCWvz2-2FAJxdv2yOU4Rja8sE1aVzAzUItssHkUW9tujzTKsHooxa0T1wqU-2BXsNw6IZYMBuNd2XQD3BPavL2FyKwgqOl-2BNlCpAsuRQyxxqbQ0sxmCsvEzI2nw166vYROKCjGmPPQtR1NyNiLpj317EtiqLrlvsktdS8N6bgTfK0t-2FA2HLcAR1clK9xdGWlVkoBfmmnRGIBboAePQ8ToZagwj4auB1PmTKZ9aQMtFdh-2FNJV17VPUH2ibgU2d8MV21fLKU-3D#/?/%23/?/marketing@virtualintelligencebriefing.com
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 232 |
Entropy (8bit): | 4.979386507392717 |
Encrypted: | false |
SSDEEP: | 6:OK7XnfIuPxm9/UAY8SYfmFr7VddQezMcGh:OEfIuZY/Ur8hfQr7VbHzMbh |
MD5: | DB43D1E8377836DCC645F300AC0C490F |
SHA1: | 9694476AA14218476EDC612069E060DCFDD87657 |
SHA-256: | 9A97CD4AA6A50586ECEB5D58FCBE19E163FA61BE60AA5D65C472C70227E8FB54 |
SHA-512: | F138AEA35636B83E3F967227F46DD570F359E23487B889F5FD8F1DA027FC5E08C4AE267E5FFD6DD922A0D069B0C359061007EAF38E84F71478FA4D95ECE4ADF3 |
Malicious: | false |
Reputation: | low |
URL: | https://djdhde.mypi.co/sss/?utm_source=capils-newsletter.beehiiv.com&utm_medium=newsletter&utm_campaign=new-post |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 7, 2024 22:34:20.948373079 CET | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Feb 7, 2024 22:34:21.557672977 CET | 49678 | 443 | 192.168.2.4 | 104.46.162.224 |
Feb 7, 2024 22:34:26.403649092 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.403739929 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.403844118 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.404397011 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.404481888 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.404550076 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.404575109 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.404592991 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.404736042 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.404761076 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.641061068 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.641441107 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.641504049 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.642055988 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.642244101 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.643469095 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.643646955 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.644332886 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.644376040 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.644471884 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.644653082 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.644714117 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.644813061 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.644841909 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.646382093 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.646469116 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.647201061 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.647295952 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.647376060 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.693902969 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.696939945 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.696996927 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.697077036 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.743911028 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.851725101 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.851897001 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.851963997 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.854377031 CET | 49731 | 443 | 192.168.2.4 | 173.194.219.138 |
Feb 7, 2024 22:34:26.854417086 CET | 443 | 49731 | 173.194.219.138 | 192.168.2.4 |
Feb 7, 2024 22:34:26.855622053 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.855958939 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:26.856034040 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.859028101 CET | 49730 | 443 | 192.168.2.4 | 74.125.138.84 |
Feb 7, 2024 22:34:26.859071970 CET | 443 | 49730 | 74.125.138.84 | 192.168.2.4 |
Feb 7, 2024 22:34:28.113714933 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.113805056 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.113897085 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.114207029 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.114262104 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.114326954 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.114634991 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.114671946 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.114998102 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.115021944 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.413145065 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.413187981 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.413419008 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.413454056 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.413638115 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.413702011 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.414905071 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.414984941 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.415158987 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.415240049 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.416822910 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.416910887 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.417013884 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.417093039 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.417103052 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.417112112 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.463022947 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.464101076 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.464159966 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.512104034 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.707134962 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.707411051 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.707467079 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.707797050 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.707818031 CET | 443 | 49735 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:28.707830906 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.707879066 CET | 49735 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:28.951289892 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:28.951318026 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:28.951387882 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:28.951651096 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:28.951658010 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.261940002 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.262192965 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.262209892 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.263844013 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.263922930 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.265252113 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.265337944 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.265463114 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.265472889 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.307065964 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.533864021 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.534085989 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.534162998 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.550334930 CET | 49738 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.550354958 CET | 443 | 49738 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.553612947 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.553703070 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.553795099 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.554450035 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.554482937 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.856661081 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.857098103 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.857131958 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.857614994 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.858850956 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.858935118 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:29.859411001 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:29.901918888 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:30.144459009 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:30.144536018 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:30.144582987 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:30.147409916 CET | 49739 | 443 | 192.168.2.4 | 23.237.26.135 |
Feb 7, 2024 22:34:30.147444963 CET | 443 | 49739 | 23.237.26.135 | 192.168.2.4 |
Feb 7, 2024 22:34:30.480019093 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.480104923 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.480190992 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.480698109 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.480732918 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.559571981 CET | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Feb 7, 2024 22:34:30.731456041 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.731919050 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.731983900 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.733393908 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.733469009 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.832644939 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:30.832745075 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:30.832906008 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:30.835202932 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:30.835244894 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:30.880953074 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.880990028 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.882009029 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.890055895 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.890074015 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.891938925 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.891940117 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.892024994 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.892433882 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.934175968 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:30.934206009 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:30.978826046 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.017409086 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.017491102 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.017608881 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.018227100 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.018261909 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.052258968 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.052398920 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.057332993 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.057360888 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.057780981 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.103241920 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.139868975 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.168755054 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.168786049 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.172547102 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.172665119 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.190079927 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.190417051 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.234904051 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.236881018 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.236910105 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.263125896 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.263185024 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.266727924 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.266861916 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.276371956 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.297127008 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.297601938 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.328807116 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.354233027 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.354290009 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:31.373904943 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.401449919 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:31.432214975 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.432362080 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.432831049 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.433357954 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.433357954 CET | 49741 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.433372974 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.433381081 CET | 443 | 49741 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.466528893 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.466700077 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.466844082 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.470453978 CET | 49740 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:31.470465899 CET | 443 | 49740 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:31.521636963 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.521676064 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.521817923 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.522109985 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.522119999 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.597183943 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.597237110 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.597297907 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.597829103 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.597852945 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.738187075 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.740392923 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.740392923 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.740411043 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.740612030 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.742259026 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.789902925 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.821568012 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.822043896 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.822078943 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.823009014 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.823077917 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.826076984 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.826133013 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.826570034 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.826575994 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.867607117 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:31.940753937 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.940917015 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:31.940973043 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.958427906 CET | 49744 | 443 | 192.168.2.4 | 23.33.136.127 |
Feb 7, 2024 22:34:31.958451033 CET | 443 | 49744 | 23.33.136.127 | 192.168.2.4 |
Feb 7, 2024 22:34:32.050194025 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.050376892 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.050570965 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.051033020 CET | 49745 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.051053047 CET | 443 | 49745 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.053257942 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.053343058 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.053421021 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.054230928 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.054266930 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.269828081 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.270133972 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.270194054 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.270541906 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.271069050 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.271133900 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.271364927 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.313920021 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.502713919 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.502971888 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:32.503002882 CET | 443 | 49746 | 35.190.80.1 | 192.168.2.4 |
Feb 7, 2024 22:34:32.503058910 CET | 49746 | 443 | 192.168.2.4 | 35.190.80.1 |
Feb 7, 2024 22:34:41.232321978 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:41.232480049 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:41.232810974 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:42.429086924 CET | 49743 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:34:42.429162025 CET | 443 | 49743 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:34:43.376070976 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:43.376302958 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:43.376394033 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:44.320588112 CET | 49734 | 443 | 192.168.2.4 | 104.18.69.40 |
Feb 7, 2024 22:34:44.320669889 CET | 443 | 49734 | 104.18.69.40 | 192.168.2.4 |
Feb 7, 2024 22:34:46.128345966 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:46.128515959 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:46.128582001 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:46.422528028 CET | 49742 | 443 | 192.168.2.4 | 104.21.42.31 |
Feb 7, 2024 22:34:46.422544956 CET | 443 | 49742 | 104.21.42.31 | 192.168.2.4 |
Feb 7, 2024 22:34:50.955089092 CET | 80 | 49723 | 69.164.42.0 | 192.168.2.4 |
Feb 7, 2024 22:34:50.955367088 CET | 49723 | 80 | 192.168.2.4 | 69.164.42.0 |
Feb 7, 2024 22:34:50.955367088 CET | 49723 | 80 | 192.168.2.4 | 69.164.42.0 |
Feb 7, 2024 22:34:51.260101080 CET | 49723 | 80 | 192.168.2.4 | 69.164.42.0 |
Feb 7, 2024 22:34:51.361747980 CET | 80 | 49723 | 69.164.42.0 | 192.168.2.4 |
Feb 7, 2024 22:35:05.396544933 CET | 80 | 49724 | 69.164.42.0 | 192.168.2.4 |
Feb 7, 2024 22:35:05.396665096 CET | 49724 | 80 | 192.168.2.4 | 69.164.42.0 |
Feb 7, 2024 22:35:05.396893024 CET | 49724 | 80 | 192.168.2.4 | 69.164.42.0 |
Feb 7, 2024 22:35:05.498575926 CET | 80 | 49724 | 69.164.42.0 | 192.168.2.4 |
Feb 7, 2024 22:35:30.938322067 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:30.938358068 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:30.938440084 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:30.939140081 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:30.939156055 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:31.152628899 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:31.153719902 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:31.153747082 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:31.154050112 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:31.155335903 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:31.155402899 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:31.198303938 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:41.163213968 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:41.163305044 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:41.163362980 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:42.439505100 CET | 49755 | 443 | 192.168.2.4 | 64.233.185.99 |
Feb 7, 2024 22:35:42.439526081 CET | 443 | 49755 | 64.233.185.99 | 192.168.2.4 |
Feb 7, 2024 22:35:55.650479078 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.650542974 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.650618076 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.650934935 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.650959969 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.867805004 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.868092060 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.868122101 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.868599892 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.868779898 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.869201899 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.869265079 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.870182037 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.870258093 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.870384932 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:55.870413065 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:55.917886972 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:56.087742090 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:56.089097977 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Feb 7, 2024 22:35:56.089222908 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:56.089323044 CET | 49756 | 443 | 192.168.2.4 | 74.125.136.100 |
Feb 7, 2024 22:35:56.089360952 CET | 443 | 49756 | 74.125.136.100 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 7, 2024 22:34:26.283444881 CET | 51260 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:26.283595085 CET | 61219 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:26.284126043 CET | 56731 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:26.284288883 CET | 58047 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:26.390809059 CET | 53 | 62826 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:26.400612116 CET | 53 | 51260 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:26.401341915 CET | 53 | 61219 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:26.401665926 CET | 53 | 58047 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:26.401770115 CET | 53 | 56731 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:27.034881115 CET | 53 | 55992 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:27.994453907 CET | 64479 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:27.994723082 CET | 61193 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:28.112004995 CET | 53 | 64479 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:28.112869978 CET | 53 | 61193 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:28.709810972 CET | 53735 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:28.710160017 CET | 57694 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:28.897871017 CET | 53 | 53735 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:29.147142887 CET | 53 | 57694 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:30.288830996 CET | 53255 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:30.290024042 CET | 59770 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:30.410244942 CET | 53 | 59770 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:30.471610069 CET | 53 | 53255 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:30.894057035 CET | 52421 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:30.896900892 CET | 59157 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:31.011517048 CET | 53 | 52421 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.015466928 CET | 53 | 59157 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.468902111 CET | 59799 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:31.469491959 CET | 56707 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:34:31.586766005 CET | 53 | 56707 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:31.586988926 CET | 53 | 59799 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:44.439075947 CET | 53 | 63693 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:34:52.064100027 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Feb 7, 2024 22:35:03.192002058 CET | 53 | 59770 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:35:26.101306915 CET | 53 | 61115 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:35:26.193505049 CET | 53 | 54860 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:35:54.740895033 CET | 53 | 64363 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:35:55.532114983 CET | 51572 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:35:55.532180071 CET | 64402 | 53 | 192.168.2.4 | 1.1.1.1 |
Feb 7, 2024 22:35:55.649836063 CET | 53 | 51572 | 1.1.1.1 | 192.168.2.4 |
Feb 7, 2024 22:35:55.650137901 CET | 53 | 64402 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Feb 7, 2024 22:34:29.147259951 CET | 192.168.2.4 | 1.1.1.1 | c221 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Feb 7, 2024 22:34:26.283444881 CET | 192.168.2.4 | 1.1.1.1 | 0x321a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:26.283595085 CET | 192.168.2.4 | 1.1.1.1 | 0x9823 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:26.284126043 CET | 192.168.2.4 | 1.1.1.1 | 0xf881 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:26.284288883 CET | 192.168.2.4 | 1.1.1.1 | 0x7cdb | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:27.994453907 CET | 192.168.2.4 | 1.1.1.1 | 0xc7ea | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:27.994723082 CET | 192.168.2.4 | 1.1.1.1 | 0x59e0 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:28.709810972 CET | 192.168.2.4 | 1.1.1.1 | 0x4689 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:28.710160017 CET | 192.168.2.4 | 1.1.1.1 | 0xd1f4 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:30.288830996 CET | 192.168.2.4 | 1.1.1.1 | 0xa650 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:30.290024042 CET | 192.168.2.4 | 1.1.1.1 | 0x9f67 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:30.894057035 CET | 192.168.2.4 | 1.1.1.1 | 0xf6b1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:30.896900892 CET | 192.168.2.4 | 1.1.1.1 | 0xa153 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:34:31.468902111 CET | 192.168.2.4 | 1.1.1.1 | 0x8477 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:34:31.469491959 CET | 192.168.2.4 | 1.1.1.1 | 0xad51 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 7, 2024 22:35:55.532114983 CET | 192.168.2.4 | 1.1.1.1 | 0xd444 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 7, 2024 22:35:55.532180071 CET | 192.168.2.4 | 1.1.1.1 | 0x182c | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.138 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.139 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.102 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.101 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.113 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.400612116 CET | 1.1.1.1 | 192.168.2.4 | 0x321a | No error (0) | 173.194.219.100 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.401341915 CET | 1.1.1.1 | 192.168.2.4 | 0x9823 | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:26.401770115 CET | 1.1.1.1 | 192.168.2.4 | 0xf881 | No error (0) | 74.125.138.84 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:28.112004995 CET | 1.1.1.1 | 192.168.2.4 | 0xc7ea | No error (0) | 104.18.69.40 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:28.112004995 CET | 1.1.1.1 | 192.168.2.4 | 0xc7ea | No error (0) | 104.18.68.40 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:28.112869978 CET | 1.1.1.1 | 192.168.2.4 | 0x59e0 | No error (0) | 65 | IN (0x0001) | false | |||
Feb 7, 2024 22:34:28.897871017 CET | 1.1.1.1 | 192.168.2.4 | 0x4689 | No error (0) | 23.237.26.135 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:30.410244942 CET | 1.1.1.1 | 192.168.2.4 | 0x9f67 | No error (0) | 65 | IN (0x0001) | false | |||
Feb 7, 2024 22:34:30.471610069 CET | 1.1.1.1 | 192.168.2.4 | 0xa650 | No error (0) | 104.21.42.31 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:30.471610069 CET | 1.1.1.1 | 192.168.2.4 | 0xa650 | No error (0) | 172.67.199.185 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.99 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.105 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.103 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.104 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.147 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.011517048 CET | 1.1.1.1 | 192.168.2.4 | 0xf6b1 | No error (0) | 64.233.185.106 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:31.015466928 CET | 1.1.1.1 | 192.168.2.4 | 0xa153 | No error (0) | 65 | IN (0x0001) | false | |||
Feb 7, 2024 22:34:31.586988926 CET | 1.1.1.1 | 192.168.2.4 | 0x8477 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:44.833103895 CET | 1.1.1.1 | 192.168.2.4 | 0x877 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:44.833103895 CET | 1.1.1.1 | 192.168.2.4 | 0x877 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:57.722835064 CET | 1.1.1.1 | 192.168.2.4 | 0xf608 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:34:57.722835064 CET | 1.1.1.1 | 192.168.2.4 | 0xf608 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:18.275068998 CET | 1.1.1.1 | 192.168.2.4 | 0xad3e | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:18.275068998 CET | 1.1.1.1 | 192.168.2.4 | 0xad3e | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:38.881129980 CET | 1.1.1.1 | 192.168.2.4 | 0x3719 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:38.881129980 CET | 1.1.1.1 | 192.168.2.4 | 0x3719 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.100 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.113 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.101 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.139 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.138 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.649836063 CET | 1.1.1.1 | 192.168.2.4 | 0xd444 | No error (0) | 74.125.136.102 | A (IP address) | IN (0x0001) | false | ||
Feb 7, 2024 22:35:55.650137901 CET | 1.1.1.1 | 192.168.2.4 | 0x182c | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49731 | 173.194.219.138 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:26 UTC | 752 | OUT | |
2024-02-07 21:34:26 UTC | 732 | IN | |
2024-02-07 21:34:26 UTC | 520 | IN | |
2024-02-07 21:34:26 UTC | 200 | IN | |
2024-02-07 21:34:26 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49730 | 74.125.138.84 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:26 UTC | 680 | OUT | |
2024-02-07 21:34:26 UTC | 1 | OUT | |
2024-02-07 21:34:26 UTC | 1799 | IN | |
2024-02-07 21:34:26 UTC | 23 | IN | |
2024-02-07 21:34:26 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49735 | 104.18.69.40 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:28 UTC | 1390 | OUT | |
2024-02-07 21:34:28 UTC | 644 | IN | |
2024-02-07 21:34:28 UTC | 148 | IN | |
2024-02-07 21:34:28 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49738 | 23.237.26.135 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:29 UTC | 745 | OUT | |
2024-02-07 21:34:29 UTC | 296 | IN | |
2024-02-07 21:34:29 UTC | 328 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49739 | 23.237.26.135 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:29 UTC | 746 | OUT | |
2024-02-07 21:34:30 UTC | 159 | IN | |
2024-02-07 21:34:30 UTC | 243 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49740 | 104.21.42.31 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:30 UTC | 723 | OUT | |
2024-02-07 21:34:31 UTC | 589 | IN | |
2024-02-07 21:34:31 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49741 | 23.33.136.127 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:31 UTC | 161 | OUT | |
2024-02-07 21:34:31 UTC | 533 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49744 | 23.33.136.127 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:31 UTC | 239 | OUT | |
2024-02-07 21:34:31 UTC | 531 | IN | |
2024-02-07 21:34:31 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49745 | 35.190.80.1 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:31 UTC | 543 | OUT | |
2024-02-07 21:34:32 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49746 | 35.190.80.1 | 443 | 3716 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:34:32 UTC | 486 | OUT | |
2024-02-07 21:34:32 UTC | 453 | OUT | |
2024-02-07 21:34:32 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
10 | 192.168.2.4 | 49756 | 74.125.136.100 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-02-07 21:35:55 UTC | 449 | OUT | |
2024-02-07 21:35:56 UTC | 817 | IN | |
2024-02-07 21:35:56 UTC | 219 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 22:34:24 |
Start date: | 07/02/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 22:34:25 |
Start date: | 07/02/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 22:34:27 |
Start date: | 07/02/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |