Windows
Analysis Report
https://0xl45.ateros1.com/OpLz16A1v5Gc/
Overview
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 2620 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" --sta rt-maximiz ed "about: blank MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 4176 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2264 --fi eld-trial- handle=220 4,i,104092 0866514990 5087,14052 3844335866 85165,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- chrome.exe (PID: 3520 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" "http s://0xl45. ateros1.co m/OpLz16A1 v5Gc/ MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | SlashNext: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
100% | SlashNext | Credential Stealing type: Phishing & Social usering |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
0xl45.ateros1.com | 104.21.24.112 | true | false | unknown | |
g461z.scharb9.com | 104.21.14.17 | true | false | unknown | |
www.google.com | 142.250.101.104 | true | false | high | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false | high | ||
false |
| unknown | |
false | high | ||
true | unknown | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.101.104 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
104.21.14.17 | g461z.scharb9.com | United States | 13335 | CLOUDFLARENETUS | false | |
104.21.24.112 | 0xl45.ateros1.com | United States | 13335 | CLOUDFLARENETUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
192.168.2.6 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1405009 |
Start date and time: | 2024-03-07 19:12:17 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 11s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://0xl45.ateros1.com/OpLz16A1v5Gc/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.win@17/5@10/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.251.2.94, 142.251.2.138, 142.251.2.102, 142.251.2.100, 142.251.2.113, 142.251.2.139, 142.251.2.101, 142.251.2.84, 34.104.35.123, 20.12.23.50, 192.229.211.108, 20.3.187.198, 52.165.164.15, 23.206.188.54, 23.206.188.49, 23.206.188.67, 23.206.188.32, 23.206.188.36, 23.206.188.52, 23.206.188.27, 23.206.188.28, 23.206.188.60, 142.250.101.94, 23.206.188.22
- Excluded domains from analysis (whitelisted): clients1.google.com, client.wns.windows.com, fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, a767.dspw65.akamai.net, wu-bg-shim.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, download.windowsupdate.com.edgesuite.net, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://0xl45.ateros1.com/OpLz16A1v5Gc/
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6560 |
Entropy (8bit): | 5.899784601572728 |
Encrypted: | false |
SSDEEP: | 96:dNjc4d9QOzzrVgMsrn+SxWA3jklvo8zpQUo6dK20OdvvtP53iaD6fd6RtrInuRIK:dNI4dH5Tc9tz4vogpo6LdvvJDSd+5Jn |
MD5: | 8F35836A7CE754ED44784DFDD6D26BF3 |
SHA1: | 1771A67E66A29E686D874BBF4928DFC0F8675775 |
SHA-256: | BA9BD1BBC448D19489806C8A3A11AEB834AB94AB7E6240965177AA3E76848B08 |
SHA-512: | F10D8A0FD0A1B3B2597C1E09D320090EDFE1444EFDD9F1D70D71C357616DFFAE4F4FF6C7812C228F2AFD6857F20619DC82690E89F9CF6EA258B4CA936961A6F2 |
Malicious: | false |
Reputation: | low |
URL: | https://0xl45.ateros1.com/OpLz16A1v5Gc/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:U:U |
MD5: | C4CA4238A0B923820DCC509A6F75849B |
SHA1: | 356A192B7913B04C54574D18C28D46E6395428AB |
SHA-256: | 6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B |
SHA-512: | 4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A |
Malicious: | false |
Reputation: | low |
URL: | https://g461z.scharb9.com/zwcmghIEDEMrVvEVCJRSwZpKippePZEFBSPSZKDURQYGFVWTJPKMPXOYZGITHOQVPIZCCTZRZHKGWGZWJSYLSXO |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:U:U |
MD5: | C4CA4238A0B923820DCC509A6F75849B |
SHA1: | 356A192B7913B04C54574D18C28D46E6395428AB |
SHA-256: | 6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B |
SHA-512: | 4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 7, 2024 19:13:07.278533936 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:07.281656981 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:07.606652975 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:13.376813889 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:13.376859903 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:13.376914978 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:13.378091097 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:13.378102064 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.054224968 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.054342031 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.062289953 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.062319040 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.062674999 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.064238071 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.064317942 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.064328909 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.064466953 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.108238935 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.284296036 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.284389019 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.284452915 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.293052912 CET | 49716 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:14.293076992 CET | 443 | 49716 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:14.877994061 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.878037930 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:14.878104925 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.878853083 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.878866911 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:14.879637003 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.879657984 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:14.879713058 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.879959106 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:14.879968882 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.215755939 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.216078997 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.216460943 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.216473103 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.216726065 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.216751099 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.217498064 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.217561960 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.217884064 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.217932940 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.219166994 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.219244957 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.219358921 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.221874952 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.221940994 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.260248899 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.270757914 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.270777941 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.270807981 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.270818949 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.278052092 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.278075933 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.278165102 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.278995991 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.279006958 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.311320066 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.311328888 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.645467043 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.645765066 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.645776033 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.646965981 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.647032022 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.648125887 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.648186922 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.701237917 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.701248884 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:15.747186899 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:15.874116898 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874444008 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874489069 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874526024 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874536991 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.874552965 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874572039 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.874641895 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874675989 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.874682903 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874875069 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.874969006 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.876974106 CET | 49719 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.876995087 CET | 443 | 49719 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:15.918519020 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:15.960231066 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:16.071851015 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.071886063 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.071973085 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.072513103 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.072529078 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.397277117 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.409550905 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.409571886 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.410664082 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.410739899 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.472476006 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.472589016 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.473583937 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.473598957 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:16.525479078 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:16.598130941 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:16.598203897 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:16.598268032 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:16.610194921 CET | 49720 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:16.610213041 CET | 443 | 49720 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:16.763942957 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:16.763967991 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:16.764245987 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:16.764848948 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:16.764858961 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:16.886087894 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:16.886126041 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:17.118469000 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.118789911 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.118808031 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.119864941 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.119929075 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.121381998 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.121480942 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.122045994 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.122055054 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.167682886 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.214585066 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:17.256191969 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.256314993 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.256378889 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.276643991 CET | 49724 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.276659966 CET | 443 | 49724 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.296080112 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.296109915 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.296165943 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.296895027 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.296910048 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.296953917 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.297430992 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.297442913 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.301902056 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.301913023 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.501056910 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.501089096 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.501153946 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.502079010 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.502091885 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.506496906 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.506680012 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.506732941 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.507103920 CET | 49725 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.507116079 CET | 443 | 49725 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.507761002 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.507786989 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.507865906 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.508208036 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:17.508230925 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.614741087 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.615031004 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.615042925 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.615408897 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.615715981 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.615786076 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.615921974 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.615936041 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.625803947 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.626049995 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.626061916 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.626396894 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.626861095 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.626925945 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:17.673552990 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:17.822463036 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.823158979 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.823174000 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.824935913 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.825012922 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.825403929 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.825475931 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.825745106 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.825754881 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:17.877501965 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:17.938795090 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:17.938818932 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:17.938997984 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:17.942274094 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:17.942285061 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.003778934 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.004100084 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:18.004111052 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.004677057 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.005151987 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:18.005222082 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.005683899 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:18.048237085 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.286058903 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.286123037 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.291800022 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.291807890 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.292187929 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.340121984 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.426378965 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.426588058 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.426656961 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:18.456456900 CET | 49729 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:13:18.456475019 CET | 443 | 49729 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:13:18.479191065 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.520229101 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.593337059 CET | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Mar 7, 2024 19:13:18.593415022 CET | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Mar 7, 2024 19:13:18.645632029 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:18.648143053 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:18.648214102 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:18.648416996 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.648479939 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.648725986 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.648896933 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.648896933 CET | 49730 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.648910046 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.648920059 CET | 443 | 49730 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.649637938 CET | 49728 | 443 | 192.168.2.6 | 104.21.14.17 |
Mar 7, 2024 19:13:18.649651051 CET | 443 | 49728 | 104.21.14.17 | 192.168.2.6 |
Mar 7, 2024 19:13:18.737005949 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.737030983 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:18.737148046 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.738475084 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:18.738486052 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.085402012 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.085486889 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.087347984 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.087354898 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.087651014 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.090944052 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.132246971 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.413153887 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.413367987 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.413436890 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.414720058 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.414741993 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:19.414757013 CET | 49731 | 443 | 192.168.2.6 | 23.202.57.177 |
Mar 7, 2024 19:13:19.414762974 CET | 443 | 49731 | 23.202.57.177 | 192.168.2.6 |
Mar 7, 2024 19:13:20.266520977 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:20.266627073 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:20.266872883 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:20.267894983 CET | 49726 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:20.267905951 CET | 443 | 49726 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:21.905615091 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:21.905637980 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:21.905705929 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:21.911092997 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:21.911106110 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.579274893 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.579371929 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.618119001 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.618149996 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.618468046 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.650090933 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.650156975 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.650166035 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.650382996 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.696233988 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.869915962 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.870033979 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:22.870120049 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.870753050 CET | 49732 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:22.870764971 CET | 443 | 49732 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:25.670120955 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:25.670200109 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:25.670284986 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:27.455415010 CET | 49721 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:13:27.455440044 CET | 443 | 49721 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:13:32.613867044 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:32.613930941 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:32.613992929 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:33.477272987 CET | 49727 | 443 | 192.168.2.6 | 104.21.24.112 |
Mar 7, 2024 19:13:33.477299929 CET | 443 | 49727 | 104.21.24.112 | 192.168.2.6 |
Mar 7, 2024 19:13:35.908898115 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:35.908938885 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:35.908989906 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:35.911806107 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:35.911829948 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.580636978 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.580713987 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.582751989 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.582761049 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.583024025 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.584878922 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.584991932 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.584996939 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.585113049 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.628232002 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.805422068 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.805500031 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:36.805691957 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.805974007 CET | 49735 | 443 | 192.168.2.6 | 20.10.31.115 |
Mar 7, 2024 19:13:36.805986881 CET | 443 | 49735 | 20.10.31.115 | 192.168.2.6 |
Mar 7, 2024 19:13:59.555179119 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:13:59.555219889 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:13:59.555299997 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:13:59.556485891 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:13:59.556502104 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.228007078 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.228087902 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.232712984 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.232726097 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.233055115 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.234960079 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.235148907 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.235163927 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.235327959 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.276274920 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.460284948 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.460398912 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:00.460503101 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.460740089 CET | 49736 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:00.460757017 CET | 443 | 49736 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:15.174048901 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:15.174113035 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.174205065 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:15.175287962 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:15.175318956 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.535749912 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.536150932 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:15.536185026 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.536560059 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.538009882 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:15.538110971 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:15.589950085 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:16.607331991 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:16.607374907 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:16.607456923 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:16.608670950 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:16.608684063 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:16.956439972 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:16.996212959 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.040110111 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.040127039 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.040749073 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.041470051 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.041546106 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.041624069 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.088238955 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.350311995 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.350420952 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.350526094 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.350653887 CET | 49741 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.350670099 CET | 443 | 49741 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.351528883 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.351557970 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.351707935 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.351943970 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.351957083 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.700814009 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.701297998 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.701313972 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.701678038 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.702106953 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.702167988 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:17.702342033 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:17.744232893 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:18.094188929 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:18.094273090 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:18.094327927 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:18.094594955 CET | 49742 | 443 | 192.168.2.6 | 35.190.80.1 |
Mar 7, 2024 19:14:18.094619989 CET | 443 | 49742 | 35.190.80.1 | 192.168.2.6 |
Mar 7, 2024 19:14:25.556962013 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:25.557027102 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Mar 7, 2024 19:14:25.557097912 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:26.091092110 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.091125965 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.091213942 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.092725992 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.092737913 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.761837006 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.762007952 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.763854027 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.763863087 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.764642000 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.766516924 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.766578913 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.766585112 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.766794920 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.812237024 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.987351894 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.987445116 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:26.988245964 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.988603115 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.988603115 CET | 49743 | 443 | 192.168.2.6 | 20.7.2.167 |
Mar 7, 2024 19:14:26.988617897 CET | 443 | 49743 | 20.7.2.167 | 192.168.2.6 |
Mar 7, 2024 19:14:27.452384949 CET | 49740 | 443 | 192.168.2.6 | 142.250.101.104 |
Mar 7, 2024 19:14:27.452425003 CET | 443 | 49740 | 142.250.101.104 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 7, 2024 19:13:13.109596014 CET | 53 | 61432 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:13.271527052 CET | 53 | 55272 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:14.265122890 CET | 53 | 64376 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:14.680135012 CET | 59213 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:14.680135012 CET | 60040 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:14.876873016 CET | 53 | 59213 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:14.877279043 CET | 53 | 60040 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:15.122173071 CET | 53538 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:15.122636080 CET | 55434 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:15.276751995 CET | 53 | 53538 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:15.277049065 CET | 53 | 55434 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:15.896359921 CET | 64559 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:15.896617889 CET | 65475 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:16.070696115 CET | 53 | 64559 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:16.070884943 CET | 53 | 65475 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:16.605505943 CET | 64944 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:16.606245041 CET | 56794 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:16.760727882 CET | 53 | 64944 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:16.761890888 CET | 53 | 56794 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.340693951 CET | 56390 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:17.342118025 CET | 51588 | 53 | 192.168.2.6 | 1.1.1.1 |
Mar 7, 2024 19:13:17.497559071 CET | 53 | 56390 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:17.497946978 CET | 53 | 51588 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:31.263179064 CET | 53 | 53048 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:13:50.294261932 CET | 53 | 50056 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:14:12.511075020 CET | 53 | 53848 | 1.1.1.1 | 192.168.2.6 |
Mar 7, 2024 19:14:13.271436930 CET | 53 | 60351 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 7, 2024 19:13:14.680135012 CET | 192.168.2.6 | 1.1.1.1 | 0xc1aa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 7, 2024 19:13:14.680135012 CET | 192.168.2.6 | 1.1.1.1 | 0x3f4 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 7, 2024 19:13:15.122173071 CET | 192.168.2.6 | 1.1.1.1 | 0x50bd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 7, 2024 19:13:15.122636080 CET | 192.168.2.6 | 1.1.1.1 | 0xd8ee | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 7, 2024 19:13:15.896359921 CET | 192.168.2.6 | 1.1.1.1 | 0xf09 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 7, 2024 19:13:15.896617889 CET | 192.168.2.6 | 1.1.1.1 | 0x3104 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 7, 2024 19:13:16.605505943 CET | 192.168.2.6 | 1.1.1.1 | 0x8dc3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 7, 2024 19:13:16.606245041 CET | 192.168.2.6 | 1.1.1.1 | 0x8f21 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 7, 2024 19:13:17.340693951 CET | 192.168.2.6 | 1.1.1.1 | 0x709f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 7, 2024 19:13:17.342118025 CET | 192.168.2.6 | 1.1.1.1 | 0xd212 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 7, 2024 19:13:14.876873016 CET | 1.1.1.1 | 192.168.2.6 | 0xc1aa | No error (0) | 104.21.24.112 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:14.876873016 CET | 1.1.1.1 | 192.168.2.6 | 0xc1aa | No error (0) | 172.67.218.90 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:14.877279043 CET | 1.1.1.1 | 192.168.2.6 | 0x3f4 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.104 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.147 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.99 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.106 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.103 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.276751995 CET | 1.1.1.1 | 192.168.2.6 | 0x50bd | No error (0) | 142.250.101.105 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:15.277049065 CET | 1.1.1.1 | 192.168.2.6 | 0xd8ee | No error (0) | 65 | IN (0x0001) | false | |||
Mar 7, 2024 19:13:16.070696115 CET | 1.1.1.1 | 192.168.2.6 | 0xf09 | No error (0) | 104.21.14.17 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:16.070696115 CET | 1.1.1.1 | 192.168.2.6 | 0xf09 | No error (0) | 172.67.133.193 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:16.070884943 CET | 1.1.1.1 | 192.168.2.6 | 0x3104 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 7, 2024 19:13:16.760727882 CET | 1.1.1.1 | 192.168.2.6 | 0x8dc3 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:17.497559071 CET | 1.1.1.1 | 192.168.2.6 | 0x709f | No error (0) | 104.21.14.17 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:17.497559071 CET | 1.1.1.1 | 192.168.2.6 | 0x709f | No error (0) | 172.67.133.193 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:17.497946978 CET | 1.1.1.1 | 192.168.2.6 | 0xd212 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 7, 2024 19:13:28.339660883 CET | 1.1.1.1 | 192.168.2.6 | 0x8039 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:28.339660883 CET | 1.1.1.1 | 192.168.2.6 | 0x8039 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:41.855375051 CET | 1.1.1.1 | 192.168.2.6 | 0x8a21 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 7, 2024 19:13:41.855375051 CET | 1.1.1.1 | 192.168.2.6 | 0x8a21 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49716 | 20.10.31.115 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:14 UTC | 71 | OUT | |
2024-03-07 18:13:14 UTC | 249 | OUT | |
2024-03-07 18:13:14 UTC | 1064 | OUT | |
2024-03-07 18:13:14 UTC | 218 | OUT | |
2024-03-07 18:13:14 UTC | 14 | IN | |
2024-03-07 18:13:14 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49719 | 104.21.24.112 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:15 UTC | 673 | OUT | |
2024-03-07 18:13:15 UTC | 1118 | IN | |
2024-03-07 18:13:15 UTC | 518 | IN | |
2024-03-07 18:13:15 UTC | 1369 | IN | |
2024-03-07 18:13:15 UTC | 1369 | IN | |
2024-03-07 18:13:15 UTC | 1369 | IN | |
2024-03-07 18:13:15 UTC | 1369 | IN | |
2024-03-07 18:13:15 UTC | 1092 | IN | |
2024-03-07 18:13:15 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.6 | 49720 | 104.21.24.112 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:15 UTC | 1326 | OUT | |
2024-03-07 18:13:16 UTC | 719 | IN | |
2024-03-07 18:13:16 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 49724 | 104.21.14.17 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:16 UTC | 636 | OUT | |
2024-03-07 18:13:17 UTC | 610 | IN | |
2024-03-07 18:13:17 UTC | 6 | IN | |
2024-03-07 18:13:17 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.6 | 49725 | 35.190.80.1 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:17 UTC | 528 | OUT | |
2024-03-07 18:13:17 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 49726 | 104.21.24.112 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:17 UTC | 1538 | OUT | |
2024-03-07 18:13:20 UTC | 669 | IN | |
2024-03-07 18:13:20 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49728 | 104.21.14.17 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:17 UTC | 428 | OUT | |
2024-03-07 18:13:18 UTC | 614 | IN | |
2024-03-07 18:13:18 UTC | 6 | IN | |
2024-03-07 18:13:18 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49729 | 35.190.80.1 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:18 UTC | 468 | OUT | |
2024-03-07 18:13:18 UTC | 437 | OUT | |
2024-03-07 18:13:18 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.6 | 49730 | 23.202.57.177 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:18 UTC | 161 | OUT | |
2024-03-07 18:13:18 UTC | 466 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.6 | 49731 | 23.202.57.177 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:19 UTC | 239 | OUT | |
2024-03-07 18:13:19 UTC | 520 | IN | |
2024-03-07 18:13:19 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
10 | 192.168.2.6 | 49732 | 20.10.31.115 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:22 UTC | 71 | OUT | |
2024-03-07 18:13:22 UTC | 249 | OUT | |
2024-03-07 18:13:22 UTC | 1064 | OUT | |
2024-03-07 18:13:22 UTC | 218 | OUT | |
2024-03-07 18:13:22 UTC | 14 | IN | |
2024-03-07 18:13:22 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
11 | 192.168.2.6 | 49735 | 20.10.31.115 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:13:36 UTC | 71 | OUT | |
2024-03-07 18:13:36 UTC | 249 | OUT | |
2024-03-07 18:13:36 UTC | 1064 | OUT | |
2024-03-07 18:13:36 UTC | 218 | OUT | |
2024-03-07 18:13:36 UTC | 14 | IN | |
2024-03-07 18:13:36 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
12 | 192.168.2.6 | 49736 | 20.7.2.167 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:14:00 UTC | 71 | OUT | |
2024-03-07 18:14:00 UTC | 249 | OUT | |
2024-03-07 18:14:00 UTC | 1064 | OUT | |
2024-03-07 18:14:00 UTC | 218 | OUT | |
2024-03-07 18:14:00 UTC | 14 | IN | |
2024-03-07 18:14:00 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.6 | 49741 | 35.190.80.1 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:14:17 UTC | 528 | OUT | |
2024-03-07 18:14:17 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.6 | 49742 | 35.190.80.1 | 443 | 4176 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:14:17 UTC | 468 | OUT | |
2024-03-07 18:14:17 UTC | 549 | OUT | |
2024-03-07 18:14:18 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
15 | 192.168.2.6 | 49743 | 20.7.2.167 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-07 18:14:26 UTC | 71 | OUT | |
2024-03-07 18:14:26 UTC | 249 | OUT | |
2024-03-07 18:14:26 UTC | 1064 | OUT | |
2024-03-07 18:14:26 UTC | 218 | OUT | |
2024-03-07 18:14:26 UTC | 14 | IN | |
2024-03-07 18:14:26 UTC | 58 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 19:13:08 |
Start date: | 07/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 19:13:09 |
Start date: | 07/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 19:13:13 |
Start date: | 07/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |