Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php

Overview

General Information

Sample URL:https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
Analysis ID:1407151
Infos:

Detection

Score:48
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Antivirus / Scanner detection for submitted sample
Uses insecure TLS / SSL version for HTTPS connection

Classification

  • System is w10x64
  • chrome.exe (PID: 6184 cmdline: C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
    • chrome.exe (PID: 5884 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2460,i,11020235682910188731,17304490713941405481,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
  • chrome.exe (PID: 2656 cmdline: C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phpAvira URL Cloud: detection malicious, Label: phishing
Source: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phpHTTP Parser: No favicon
Source: unknownHTTPS traffic detected: 173.222.162.64:443 -> 192.168.2.6:49725 version: TLS 1.0
Source: unknownHTTPS traffic detected: 104.91.61.188:443 -> 192.168.2.6:49716 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.91.61.188:443 -> 192.168.2.6:49717 version: TLS 1.2
Source: unknownHTTPS traffic detected: 173.222.162.64:443 -> 192.168.2.6:49725 version: TLS 1.0
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 104.91.61.188
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.64
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET /captcha/calcul_captcha.php HTTP/1.1Host: www.lieferung-dhl-tracking.deConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /img/logo.svg HTTP/1.1Host: www.lieferung-dhl-tracking.deConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phpAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /captcha/js/index.js HTTP/1.1Host: www.lieferung-dhl-tracking.deConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phpAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /jquery-3.6.4.min.js HTTP/1.1Host: code.jquery.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: */*Sec-Fetch-Site: cross-siteSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.lieferung-dhl-tracking.de/Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /img/logo.svg HTTP/1.1Host: www.lieferung-dhl-tracking.deConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.lieferung-dhl-tracking.deConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phpAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: unknownDNS traffic detected: queries for: www.lieferung-dhl-tracking.de
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundServer: nginxDate: Tue, 12 Mar 2024 00:36:17 GMTContent-Type: text/htmlContent-Length: 808Connection: closeLast-Modified: Mon, 11 Mar 2024 17:24:26 GMTETag: "328-61365d043486e"Accept-Ranges: bytes
Source: chromecache_45.2.drString found in binary or memory: https://code.jquery.com/jquery-3.6.4.min.js
Source: chromecache_45.2.drString found in binary or memory: https://fonts.googleapis.com/css?family=Yesteryear
Source: chromecache_43.2.drString found in binary or memory: https://fonts.gstatic.com/s/yesteryear/v18/dg4g_p78rroaKl8kRKo1n7sNTg.woff2)
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 49698 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49698
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownHTTPS traffic detected: 104.91.61.188:443 -> 192.168.2.6:49716 version: TLS 1.2
Source: unknownHTTPS traffic detected: 104.91.61.188:443 -> 192.168.2.6:49717 version: TLS 1.2
Source: classification engineClassification label: mal48.win@16/15@8/5
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2460,i,11020235682910188731,17304490713941405481,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2460,i,11020235682910188731,17304490713941405481,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Process Injection
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture3
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php100%Avira URL Cloudphishing
https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php1%VirustotalBrowse
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
fp2e7a.wpc.phicdn.net0%VirustotalBrowse
windowsupdatebg.s.llnwi.net0%VirustotalBrowse
SourceDetectionScannerLabelLink
https://www.lieferung-dhl-tracking.de/favicon.ico0%Avira URL Cloudsafe
https://www.lieferung-dhl-tracking.de/img/logo.svg0%Avira URL Cloudsafe
https://www.lieferung-dhl-tracking.de/captcha/js/index.js0%Avira URL Cloudsafe
NameIPActiveMaliciousAntivirus DetectionReputation
code.jquery.com
151.101.66.137
truefalse
    high
    intra.thormighty.com
    193.143.1.54
    truefalse
      unknown
      www.google.com
      142.251.40.196
      truefalse
        high
        fp2e7a.wpc.phicdn.net
        192.229.211.108
        truefalseunknown
        windowsupdatebg.s.llnwi.net
        69.164.46.0
        truefalseunknown
        www.lieferung-dhl-tracking.de
        unknown
        unknownfalse
          unknown
          NameMaliciousAntivirus DetectionReputation
          https://www.lieferung-dhl-tracking.de/captcha/js/index.jsfalse
          • Avira URL Cloud: safe
          unknown
          https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.phptrue
            unknown
            https://code.jquery.com/jquery-3.6.4.min.jsfalse
              high
              https://www.lieferung-dhl-tracking.de/favicon.icofalse
              • Avira URL Cloud: safe
              unknown
              https://www.lieferung-dhl-tracking.de/img/logo.svgfalse
              • Avira URL Cloud: safe
              unknown
              • No. of IPs < 25%
              • 25% < No. of IPs < 50%
              • 50% < No. of IPs < 75%
              • 75% < No. of IPs
              IPDomainCountryFlagASNASN NameMalicious
              193.143.1.54
              intra.thormighty.comunknown
              57271BITWEB-ASRUfalse
              239.255.255.250
              unknownReserved
              unknownunknownfalse
              142.251.40.196
              www.google.comUnited States
              15169GOOGLEUSfalse
              151.101.66.137
              code.jquery.comUnited States
              54113FASTLYUSfalse
              IP
              192.168.2.6
              Joe Sandbox version:40.0.0 Tourmaline
              Analysis ID:1407151
              Start date and time:2024-03-12 01:35:25 +01:00
              Joe Sandbox product:CloudBasic
              Overall analysis duration:0h 3m 1s
              Hypervisor based Inspection enabled:false
              Report type:full
              Cookbook file name:browseurl.jbs
              Sample URL:https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
              Number of analysed new started processes analysed:8
              Number of new started drivers analysed:0
              Number of existing processes analysed:0
              Number of existing drivers analysed:0
              Number of injected processes analysed:0
              Technologies:
              • HCA enabled
              • EGA enabled
              • AMSI enabled
              Analysis Mode:default
              Analysis stop reason:Timeout
              Detection:MAL
              Classification:mal48.win@16/15@8/5
              EGA Information:Failed
              HCA Information:
              • Successful, ratio: 100%
              • Number of executed functions: 0
              • Number of non-executed functions: 0
              • Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
              • Excluded IPs from analysis (whitelisted): 142.250.72.99, 172.253.122.84, 142.250.80.110, 34.104.35.123, 142.250.81.234, 142.251.40.195, 142.251.41.10, 142.250.80.42, 142.250.80.10, 142.250.72.106, 142.250.65.234, 142.251.40.138, 142.251.32.106, 142.251.35.170, 142.250.65.170, 142.250.65.202, 172.217.165.138, 142.251.40.106, 142.251.40.170, 142.250.80.74, 142.251.40.234, 20.114.59.183, 69.164.46.0, 192.229.211.108, 52.165.164.15, 20.242.39.171, 142.250.176.195, 72.21.81.240
              • Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, clientservices.googleapis.com, wu.azureedge.net, clients2.google.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, sls.update.microsoft.com, update.googleapis.com, hlb.apr-52dd2-0.edgecastdns.net, glb.sls.prod.dcat.dsp.trafficmanager.net, fonts.googleapis.com, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, fonts.gstatic.com, wu.ec.azureedge.net, ctldl.windowsupdate.com, wu-bg-shim.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, clients.l.google.com
              • Not all processes where analyzed, report is missing behavior information
              • Report size getting too big, too many NtSetInformationFile calls found.
              No simulations
              No context
              No context
              No context
              No context
              No context
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:ASCII text
              Category:downloaded
              Size (bytes):400
              Entropy (8bit):5.253663785090519
              Encrypted:false
              SSDEEP:12:UNAFZ1MO6ZRoT6pSmot2D9KayVVey90H1BGuL/6f7:RvMOYs0oQcwy96DGSSf7
              MD5:B5D032BF6896E4AEE8F7044DE6962E40
              SHA1:994DD15A1AC66DC7469DB36E21902C0C8591743A
              SHA-256:B55F729E8F65ED8CD50504C23FFCB66104C71D9FDA2FD890A7005FBD10CA850D
              SHA-512:DD60CCC00A917D44334E9E4A574F3ECD0863CCD75F2B27A8296F0B526C9071C43D83A60760B9D9B684FAFEF2C10BC6E69C1FCFD2D68C8D5C791F5BB3E9416838
              Malicious:false
              Reputation:low
              URL:https://fonts.googleapis.com/css?family=Yesteryear
              Preview:/* latin */.@font-face {. font-family: 'Yesteryear';. font-style: normal;. font-weight: 400;. src: url(https://fonts.gstatic.com/s/yesteryear/v18/dg4g_p78rroaKl8kRKo1n7sNTg.woff2) format('woff2');. unicode-range: U+0000-00FF, U+0131, U+0152-0153, U+02BB-02BC, U+02C6, U+02DA, U+02DC, U+0304, U+0308, U+0329, U+2000-206F, U+2074, U+20AC, U+2122, U+2191, U+2193, U+2212, U+2215, U+FEFF, U+FFFD;.}.
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:ASCII text, with very long lines (65447)
              Category:downloaded
              Size (bytes):89795
              Entropy (8bit):5.290870198529059
              Encrypted:false
              SSDEEP:1536:IjjxXUHunxDjoXEZxkMV4PYDt0zxxf6gP3f8cApoEGOzZTBqUsuy8WnKdXwhLQvg:IeeIygP3fulzhsz8jlvaDioQ47GKH
              MD5:641DD14370106E992D352166F5A07E99
              SHA1:EDA46747C71D38A880BEE44F9A439C3858BB8F99
              SHA-256:A0FE8723DCF55DA64D06B25446D0A8513E52527C45AFCB37073465F9C6F352AF
              SHA-512:A6E981B23351186AA43F32879DD64C6801BE6E2AF7EF8B0E472CCCDEEBA52D5D7894DE4BCB292A364F1E11E525524077534338140A72687ADA4FAE62849843A5
              Malicious:false
              Reputation:low
              URL:https://code.jquery.com/jquery-3.6.4.min.js
              Preview:/*! jQuery v3.6.4 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,y=n.hasOwnProperty,a=y.toString,l=a.call(Object),v={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:HTML document, ASCII text
              Category:downloaded
              Size (bytes):7506
              Entropy (8bit):4.398773520649309
              Encrypted:false
              SSDEEP:192:lTHneuEKT7rk5TX3eFrD9PA0cEfrqYHdh6m2H2+T:lTX7zFrD0C6mAT
              MD5:B5FDA04ACE943E26B21CC94119862C42
              SHA1:F2EAE6DD76BADDB49D44F34ED2BB2A6D8B62EE11
              SHA-256:F8DC20E8A74614E2AC01F526A174582DF885D2994722DB4BEA8561A2D6B868D5
              SHA-512:6C65BB0ECF7389AA9A2DDA3598997590F84F864093348FD7462BEA9D1A52AA40781077BBAD9B8158AF36E071B2DB1045FBEFA428CFD2FEC4430B0EFE2DF5C989
              Malicious:false
              Reputation:low
              URL:https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Preview:<!doctype html>.<html lang="en">.<head>. <title>Are you human?</title>. <meta charset="utf-8">. <meta name="viewport" content="width=device-width,initial-scale=1">. <link href="https://fonts.googleapis.com/css?family=Yesteryear" rel="stylesheet">.</head>..<script src="https://code.jquery.com/jquery-3.6.4.min.js"></script>...<style>.. *{. box-sizing: border-box;. font-family: system-ui;. }.. body{. background: #f2f1ef;. display: flex;. align-items: center;. justify-content: center;. height: calc(100vh - 200px);. }.. main {. width: 490px;. margin-top: -100px;. display: flex;. align-items: center;. flex-direction: column;. }.. .form {. margin-top: 30px;. position: relative;. }.. .jCaptchaCanvas {. position: absolute;. top: -28px;. }.. .jCaptcha {. padding: 20px 25px 20px 20px;. font-size: 15px;. width: 320px;.
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:ASCII text, with no line terminators
              Category:downloaded
              Size (bytes):16
              Entropy (8bit):3.875
              Encrypted:false
              SSDEEP:3:H+uZYn:euZYn
              MD5:46DF3E5E2D15256CA16616EBFDA5427F
              SHA1:BE8F9B307E458075DA0D43585A05F1D451469182
              SHA-256:AF3248D0B278571EFF9A22F8ED1CEB54B70D202B44FD70ECA4CA13A5771CECC3
              SHA-512:88FBCC0A92317A0BADE7D4B72C023A16792F3728443075BF4B1767C8A55258836B54D56B24EABE36AE4EF240F796B58B8F1EA10C7E3C146BDE89882FC9ADE302
              Malicious:false
              Reputation:low
              URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzQSEAnCSAYRjqFwsBIFDZFhlU4=?alt=proto
              Preview:CgkKBw2RYZVOGgA=
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:ASCII text
              Category:downloaded
              Size (bytes):3252
              Entropy (8bit):4.898147744926352
              Encrypted:false
              SSDEEP:96:TcVzl1/HccTK3Gc0Gh2/JQOuRpqjww5azlYRpN:TcVz30d10H/JQpWww5azl8H
              MD5:EBD56DDCEF92D8BCDF6CA881A3A93C47
              SHA1:2DDBFB9ABCD89A1D1AB4E1CDB7575880C8A69EF0
              SHA-256:3DA575F9C89B6EA72E8A1DB112996EC6A41F65CFED8C476B19C21682E9A0CEC1
              SHA-512:BC10A7D4D823735509C8FEF85CCEBBEFFF2399526B4B276E9AF878281EAA35D25F3FC9673382B97D336A225D85815F8525576C45C1E0F2795F36F40FD62D911F
              Malicious:false
              Reputation:low
              URL:https://www.lieferung-dhl-tracking.de/captcha/js/index.js
              Preview:(function (root, factory) {. if (root === undefined && window !== undefined) root = window;. if (typeof define === 'function' && define.amd) {. // AMD. Register as an anonymous module unless amdModuleId is set. define([], function () {. return (root['jCaptcha'] = factory());. });. } else if (typeof module === 'object' && module.exports) {. // Node. Does not work with strict CommonJS, but. // only CommonJS-like environments that support module.exports,. // like Node.. module.exports = factory();. } else {. root['jCaptcha'] = factory();. }.}(this, function () {.."use strict";..{. var generateRandomNum = function generateRandomNum() {. num1 = Math.round(Math.random() * 8) + 1;. num2 = Math.round(Math.random() * 8) + 1;. sumNum = num1 + num2;. };. /**. * @param {Object}. * @param {Object}. * @param {Boolean}. */... var setCaptcha = function setCaptcha($el, options, shouldReset) {. if (!shouldReset) {. $el.insertAdjacentHTML('bef
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:SVG Scalable Vector Graphics image
              Category:dropped
              Size (bytes):1603
              Entropy (8bit):5.183926440483353
              Encrypted:false
              SSDEEP:24:2dzAxLfam1lgE2m/X0TbKErfnfSjOunOQzUtD1OsT5:czA5fv4EB/EiErHCOQois1
              MD5:3FECC9DB35D5D2A9E6E71AB4B02D22E5
              SHA1:628BA2F505B480097445AAF08649A08242BD6847
              SHA-256:362BCAA42090E36611031BEC6BDAA0600375EF847092CCA195C58D3BAE9B4419
              SHA-512:C0D70D0F914D3D9F29366C9886F174580675334EC79BA77158C4CF184075540DD7D25B3F35F7129C1FAE764527574DAEC29F5FB8434817CCBEF6951B332CDD5E
              Malicious:false
              Reputation:low
              Preview:<?xml version="1.0" encoding="utf-8"?>. Generator: Adobe Illustrator 19.2.1, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Ebene_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. width="143.5px" height="20px" viewBox="0 0 143.5 20" style="enable-background:new 0 0 143.5 20;" xml:space="preserve">.<style type="text/css">...st0{fill:#D40511;}.</style>.<g>..<path class="st0" d="M0,18.5h17.4l-1,1.4H0V18.5z"/>..<path class="st0" d="M143.5,19.9h-21.3l1.1-1.4h20.3V19.9z"/>..<path class="st0" d="M0,15.9h19.4l-1.1,1.4H0V15.9z"/>..<path class="st0" d="M0,13.3h21.4l-1.1,1.4H0L0,13.3z"/>..<path class="st0" d="M143.5,17.3h-19.3l1.1-1.4h18.3V17.3z"/>..<path class="st0" d="M127.2,13.3h16.3v1.4h-17.4L127.2,13.3z"/>..<path class="st0" d="M18.8,19.9L28,7.6c0,0,10.2,0,11.4,0c1.3,0,1.3,0.5,0.6,1.3c-0.6,0.8-1.7,2.3-2.3,3.1c-0.3,0.5-0.9,1.2,1,1.2...c2.1,0,15.3,0,15.3,0C52.8,15,48.6,20,41.2,20C35.2,19.9,18.8,19.9,18.8,19.9z"/>
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:SVG Scalable Vector Graphics image
              Category:downloaded
              Size (bytes):1603
              Entropy (8bit):5.183926440483353
              Encrypted:false
              SSDEEP:24:2dzAxLfam1lgE2m/X0TbKErfnfSjOunOQzUtD1OsT5:czA5fv4EB/EiErHCOQois1
              MD5:3FECC9DB35D5D2A9E6E71AB4B02D22E5
              SHA1:628BA2F505B480097445AAF08649A08242BD6847
              SHA-256:362BCAA42090E36611031BEC6BDAA0600375EF847092CCA195C58D3BAE9B4419
              SHA-512:C0D70D0F914D3D9F29366C9886F174580675334EC79BA77158C4CF184075540DD7D25B3F35F7129C1FAE764527574DAEC29F5FB8434817CCBEF6951B332CDD5E
              Malicious:false
              Reputation:low
              URL:https://www.lieferung-dhl-tracking.de/img/logo.svg
              Preview:<?xml version="1.0" encoding="utf-8"?>. Generator: Adobe Illustrator 19.2.1, SVG Export Plug-In . SVG Version: 6.00 Build 0) -->.<svg version="1.1" id="Ebene_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="0px".. width="143.5px" height="20px" viewBox="0 0 143.5 20" style="enable-background:new 0 0 143.5 20;" xml:space="preserve">.<style type="text/css">...st0{fill:#D40511;}.</style>.<g>..<path class="st0" d="M0,18.5h17.4l-1,1.4H0V18.5z"/>..<path class="st0" d="M143.5,19.9h-21.3l1.1-1.4h20.3V19.9z"/>..<path class="st0" d="M0,15.9h19.4l-1.1,1.4H0V15.9z"/>..<path class="st0" d="M0,13.3h21.4l-1.1,1.4H0L0,13.3z"/>..<path class="st0" d="M143.5,17.3h-19.3l1.1-1.4h18.3V17.3z"/>..<path class="st0" d="M127.2,13.3h16.3v1.4h-17.4L127.2,13.3z"/>..<path class="st0" d="M18.8,19.9L28,7.6c0,0,10.2,0,11.4,0c1.3,0,1.3,0.5,0.6,1.3c-0.6,0.8-1.7,2.3-2.3,3.1c-0.3,0.5-0.9,1.2,1,1.2...c2.1,0,15.3,0,15.3,0C52.8,15,48.6,20,41.2,20C35.2,19.9,18.8,19.9,18.8,19.9z"/>
              Process:C:\Program Files\Google\Chrome\Application\chrome.exe
              File Type:HTML document, ASCII text
              Category:downloaded
              Size (bytes):808
              Entropy (8bit):4.9078093738349065
              Encrypted:false
              SSDEEP:24:hYj0XJU5DgGeRpbufLUwDdVJUSdEj7RtiKAo1Mc:PS5gGe/uTUwhVJJEjCKN1h
              MD5:A943672A32297727BAB01C3E76977550
              SHA1:3A667C4B7A457EF6C586CC581D533C128737BF53
              SHA-256:B9347F234DC3C8D56E015E86D88A1400415DB8F7A5AD91F02B6A2323C10A4187
              SHA-512:0965D415F3A0CEF31953702FDAE345D46FEFD72CE3C4C7A0255AEDE74A76E10B856892700529A444453A622793E0257248C5C99FAE17D5B0B9FD4118E208068C
              Malicious:false
              Reputation:low
              URL:https://www.lieferung-dhl-tracking.de/favicon.ico
              Preview:<!DOCTYPE html>.<html lang="en">.<head>. <meta charset="utf-8">. <meta http-equiv="x-ua-compatible" content="ie=edge">. <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no">. <title>404 Not Found</title>. <link rel="stylesheet" href="/error_docs/styles.css">.</head>.<body>.<div class="page">. <div class="main">. <h1>Server Error</h1>. <div class="error-code">404</div>. <h2>Page Not Found</h2>. <p class="lead">This page either doesn't exist, or it moved somewhere else.</p>. <hr/>. <p>That's what you can do</p>. <div class="help-actions">. <a href="javascript:location.reload();">Reload Page</a>. <a href="javascript:history.back();">Back to Previous Page</a>. <a href="/">Home Page</a>. </div>. </div>.</div>.</body>.</html>
              No static file info
              TimestampSource PortDest PortSource IPDest IP
              Mar 12, 2024 01:36:07.923579931 CET49674443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:07.923604012 CET49673443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:08.189191103 CET49672443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:14.279418945 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.279453993 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.279655933 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.280107021 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.280157089 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.280289888 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.280471087 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.280481100 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.280810118 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.280828953 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.807421923 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.807998896 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.808012009 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.809099913 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.809175968 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.809768915 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.826935053 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.827086926 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.827260017 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.827281952 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.828969002 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.829035997 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.829704046 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.829718113 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.831777096 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.831887960 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.874824047 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.874825001 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:14.874842882 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:14.923748970 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.757870913 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.757904053 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.757911921 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.757966995 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.757987022 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.758007050 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.758044004 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.760314941 CET49704443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.760349989 CET44349704193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.816904068 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.816936016 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.817055941 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.817491055 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.818286896 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:15.818300009 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.864228964 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:15.909483910 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:15.909497023 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:15.909543037 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:15.910170078 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:15.910182953 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.070810080 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.070841074 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.070893049 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.070919991 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.070935965 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.070987940 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.071904898 CET49705443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.071918011 CET44349705193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.118180037 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.118400097 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.118407011 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.119874001 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.119934082 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.338110924 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.338408947 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.338418961 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.338763952 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.339092970 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.339159966 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.339277983 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.380263090 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.382277966 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.382421970 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.382431984 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.422982931 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.422991037 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.468373060 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.476921082 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492662907 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492674112 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492702007 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492714882 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492721081 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.492726088 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492760897 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.492765903 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492779970 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.492789030 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.492827892 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.510853052 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.510874987 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.510919094 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.510926962 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.510960102 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.562064886 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.578872919 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.578883886 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.578915119 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.578923941 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.578943968 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.578994989 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.579001904 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.579041958 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.594532013 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.594541073 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.594569921 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.594599962 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.594607115 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.594651937 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.594670057 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.607387066 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.607408047 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.607453108 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.607459068 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.607491970 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.607511044 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.611867905 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.611928940 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.611936092 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.611955881 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.612000942 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.612968922 CET49710443192.168.2.6151.101.66.137
              Mar 12, 2024 01:36:16.612981081 CET44349710151.101.66.137192.168.2.6
              Mar 12, 2024 01:36:16.727730036 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.727787018 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.727936029 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.728653908 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.728707075 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.772191048 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:16.772214890 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:16.772315979 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:16.773078918 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:16.773089886 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:16.808572054 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.808605909 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.808689117 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.808718920 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.811466932 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.811947107 CET49708443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.811969995 CET44349708193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.860666990 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.860697985 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:16.862617970 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.862947941 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:16.862965107 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.053754091 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:17.054024935 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:17.054034948 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:17.055500984 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:17.055612087 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:17.057080984 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:17.057252884 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:17.101922035 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:17.101944923 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:17.143182993 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:17.236927032 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.244227886 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.244256973 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.245392084 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.245578051 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.246015072 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.246088982 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.246400118 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.246417046 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.297061920 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.384537935 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.384891033 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.384908915 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.386034966 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.388122082 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.388354063 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.388360977 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.388957024 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.440327883 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.441009998 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.441056967 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:17.441132069 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.446471930 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.446490049 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:17.529642105 CET49674443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:17.529643059 CET49673443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:17.701240063 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.701270103 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.701318979 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.701335907 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.701351881 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.701399088 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.703154087 CET49712443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.703171968 CET44349712193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.778512001 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:17.778583050 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.782933950 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.782943964 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:17.783289909 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:17.796919107 CET49672443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:17.828460932 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.847749949 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.847839117 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.847881079 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.849093914 CET49714443192.168.2.6193.143.1.54
              Mar 12, 2024 01:36:17.849112988 CET44349714193.143.1.54192.168.2.6
              Mar 12, 2024 01:36:17.863163948 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:17.904241085 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:18.091896057 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:18.091958046 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:18.092001915 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:18.257605076 CET49716443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:18.257621050 CET44349716104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.202322006 CET44349698173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:19.202563047 CET49698443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:19.472071886 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.472095966 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.472178936 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.474519014 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.474531889 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.810308933 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.810383081 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.811984062 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.812000990 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.812395096 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:19.814613104 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:19.860255957 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:20.128319025 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:20.128446102 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:20.128495932 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:20.130705118 CET49717443192.168.2.6104.91.61.188
              Mar 12, 2024 01:36:20.130712986 CET44349717104.91.61.188192.168.2.6
              Mar 12, 2024 01:36:27.084734917 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:27.084851027 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:27.084920883 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:28.696574926 CET49713443192.168.2.6142.251.40.196
              Mar 12, 2024 01:36:28.696588039 CET44349713142.251.40.196192.168.2.6
              Mar 12, 2024 01:36:31.187609911 CET49698443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:31.188615084 CET49698443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:31.189013958 CET49725443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:31.189040899 CET44349725173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:31.189177990 CET49725443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:31.189671993 CET49725443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:31.189687967 CET44349725173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:31.351452112 CET44349698173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:31.352381945 CET44349698173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:31.538511992 CET44349725173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:31.538600922 CET49725443192.168.2.6173.222.162.64
              Mar 12, 2024 01:36:50.691051960 CET44349725173.222.162.64192.168.2.6
              Mar 12, 2024 01:36:50.691147089 CET49725443192.168.2.6173.222.162.64
              Mar 12, 2024 01:37:16.842305899 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:16.842351913 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:16.842484951 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:16.844928980 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:16.844959974 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:17.117393017 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:17.120035887 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:17.120071888 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:17.120524883 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:17.122024059 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:17.122102022 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:17.162050962 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:27.146641016 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:27.146713018 CET44349728142.251.40.196192.168.2.6
              Mar 12, 2024 01:37:27.146781921 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:28.634249926 CET49728443192.168.2.6142.251.40.196
              Mar 12, 2024 01:37:28.634291887 CET44349728142.251.40.196192.168.2.6
              TimestampSource PortDest PortSource IPDest IP
              Mar 12, 2024 01:36:12.354394913 CET53640111.1.1.1192.168.2.6
              Mar 12, 2024 01:36:12.453639030 CET53600031.1.1.1192.168.2.6
              Mar 12, 2024 01:36:13.017966986 CET53600251.1.1.1192.168.2.6
              Mar 12, 2024 01:36:13.918543100 CET6204953192.168.2.61.1.1.1
              Mar 12, 2024 01:36:13.918744087 CET6506553192.168.2.61.1.1.1
              Mar 12, 2024 01:36:14.258739948 CET53620491.1.1.1192.168.2.6
              Mar 12, 2024 01:36:14.278706074 CET53650651.1.1.1192.168.2.6
              Mar 12, 2024 01:36:15.813205004 CET5565553192.168.2.61.1.1.1
              Mar 12, 2024 01:36:15.814126968 CET5330253192.168.2.61.1.1.1
              Mar 12, 2024 01:36:15.905215025 CET53517731.1.1.1192.168.2.6
              Mar 12, 2024 01:36:15.908030033 CET53533021.1.1.1192.168.2.6
              Mar 12, 2024 01:36:15.908802986 CET53556551.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.392227888 CET5557353192.168.2.61.1.1.1
              Mar 12, 2024 01:36:16.393656969 CET5340453192.168.2.61.1.1.1
              Mar 12, 2024 01:36:16.590879917 CET53577411.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.675774097 CET4955453192.168.2.61.1.1.1
              Mar 12, 2024 01:36:16.676597118 CET5502753192.168.2.61.1.1.1
              Mar 12, 2024 01:36:16.714097977 CET53534041.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.725250006 CET53555731.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.768716097 CET53495541.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.770458937 CET53550271.1.1.1192.168.2.6
              Mar 12, 2024 01:36:16.953440905 CET53566321.1.1.1192.168.2.6
              Mar 12, 2024 01:36:30.802866936 CET53626781.1.1.1192.168.2.6
              Mar 12, 2024 01:36:49.896464109 CET53513711.1.1.1192.168.2.6
              Mar 12, 2024 01:37:12.132581949 CET53523741.1.1.1192.168.2.6
              Mar 12, 2024 01:37:12.265860081 CET53531681.1.1.1192.168.2.6
              TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
              Mar 12, 2024 01:36:13.918543100 CET192.168.2.61.1.1.10xff7aStandard query (0)www.lieferung-dhl-tracking.deA (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:13.918744087 CET192.168.2.61.1.1.10x8673Standard query (0)www.lieferung-dhl-tracking.de65IN (0x0001)false
              Mar 12, 2024 01:36:15.813205004 CET192.168.2.61.1.1.10xa45cStandard query (0)code.jquery.comA (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:15.814126968 CET192.168.2.61.1.1.10x3bb7Standard query (0)code.jquery.com65IN (0x0001)false
              Mar 12, 2024 01:36:16.392227888 CET192.168.2.61.1.1.10x2c65Standard query (0)www.lieferung-dhl-tracking.deA (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:16.393656969 CET192.168.2.61.1.1.10x7356Standard query (0)www.lieferung-dhl-tracking.de65IN (0x0001)false
              Mar 12, 2024 01:36:16.675774097 CET192.168.2.61.1.1.10xec3fStandard query (0)www.google.comA (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:16.676597118 CET192.168.2.61.1.1.10xbd2Standard query (0)www.google.com65IN (0x0001)false
              TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
              Mar 12, 2024 01:36:14.258739948 CET1.1.1.1192.168.2.60xff7aNo error (0)www.lieferung-dhl-tracking.deintra.thormighty.comCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:14.258739948 CET1.1.1.1192.168.2.60xff7aNo error (0)intra.thormighty.com193.143.1.54A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:14.278706074 CET1.1.1.1192.168.2.60x8673No error (0)www.lieferung-dhl-tracking.deintra.thormighty.comCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:15.908802986 CET1.1.1.1192.168.2.60xa45cNo error (0)code.jquery.com151.101.66.137A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:15.908802986 CET1.1.1.1192.168.2.60xa45cNo error (0)code.jquery.com151.101.194.137A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:15.908802986 CET1.1.1.1192.168.2.60xa45cNo error (0)code.jquery.com151.101.2.137A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:15.908802986 CET1.1.1.1192.168.2.60xa45cNo error (0)code.jquery.com151.101.130.137A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:16.714097977 CET1.1.1.1192.168.2.60x7356No error (0)www.lieferung-dhl-tracking.deintra.thormighty.comCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:16.725250006 CET1.1.1.1192.168.2.60x2c65No error (0)www.lieferung-dhl-tracking.deintra.thormighty.comCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:16.725250006 CET1.1.1.1192.168.2.60x2c65No error (0)intra.thormighty.com193.143.1.54A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:16.768716097 CET1.1.1.1192.168.2.60xec3fNo error (0)www.google.com142.251.40.196A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:16.770458937 CET1.1.1.1192.168.2.60xbd2No error (0)www.google.com65IN (0x0001)false
              Mar 12, 2024 01:36:29.072189093 CET1.1.1.1192.168.2.60xf778No error (0)windowsupdatebg.s.llnwi.net69.164.46.0A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:29.072189093 CET1.1.1.1192.168.2.60xf778No error (0)windowsupdatebg.s.llnwi.net69.164.46.128A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:29.633785009 CET1.1.1.1192.168.2.60xf443No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:29.633785009 CET1.1.1.1192.168.2.60xf443No error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
              Mar 12, 2024 01:36:43.178046942 CET1.1.1.1192.168.2.60xa9e1No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:36:43.178046942 CET1.1.1.1192.168.2.60xa9e1No error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
              Mar 12, 2024 01:37:04.988739014 CET1.1.1.1192.168.2.60x4941No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:37:04.988739014 CET1.1.1.1192.168.2.60x4941No error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
              Mar 12, 2024 01:37:24.943609953 CET1.1.1.1192.168.2.60xd20eNo error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
              Mar 12, 2024 01:37:24.943609953 CET1.1.1.1192.168.2.60xd20eNo error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
              • www.lieferung-dhl-tracking.de
              • https:
                • code.jquery.com
              • fs.microsoft.com
              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              0192.168.2.649704193.143.1.544435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:14 UTC698OUTGET /captcha/calcul_captcha.php HTTP/1.1
              Host: www.lieferung-dhl-tracking.de
              Connection: keep-alive
              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
              sec-ch-ua-mobile: ?0
              sec-ch-ua-platform: "Windows"
              Upgrade-Insecure-Requests: 1
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
              Sec-Fetch-Site: none
              Sec-Fetch-Mode: navigate
              Sec-Fetch-User: ?1
              Sec-Fetch-Dest: document
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:15 UTC231INHTTP/1.1 200 OK
              Server: nginx
              Date: Tue, 12 Mar 2024 00:36:15 GMT
              Content-Type: text/html; charset=UTF-8
              Transfer-Encoding: chunked
              Connection: close
              X-Powered-By: PHP/8.2.16
              Vary: Accept-Encoding
              X-Powered-By: PleskLin
              2024-03-12 00:36:15 UTC7525INData Raw: 66 34 63 0d 0a 3c 21 64 6f 63 74 79 70 65 20 68 74 6d 6c 3e 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0a 3c 68 65 61 64 3e 0a 20 20 20 20 3c 74 69 74 6c 65 3e 41 72 65 20 79 6f 75 20 68 75 6d 61 6e 3f 3c 2f 74 69 74 6c 65 3e 0a 20 20 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 75 74 66 2d 38 22 3e 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 2c 69 6e 69 74 69 61 6c 2d 73 63 61 6c 65 3d 31 22 3e 0a 20 20 20 20 3c 6c 69 6e 6b 20 68 72 65 66 3d 22 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 73 2e 67 6f 6f 67 6c 65 61 70 69 73 2e 63 6f 6d 2f 63 73 73 3f 66 61 6d 69 6c 79 3d 59 65 73 74 65 72 79 65 61 72 22 20 72 65 6c 3d 22 73 74 79 6c
              Data Ascii: f4c<!doctype html><html lang="en"><head> <title>Are you human?</title> <meta charset="utf-8"> <meta name="viewport" content="width=device-width,initial-scale=1"> <link href="https://fonts.googleapis.com/css?family=Yesteryear" rel="styl


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              1192.168.2.649705193.143.1.544435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:15 UTC641OUTGET /img/logo.svg HTTP/1.1
              Host: www.lieferung-dhl-tracking.de
              Connection: keep-alive
              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
              sec-ch-ua-mobile: ?0
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              sec-ch-ua-platform: "Windows"
              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
              Sec-Fetch-Site: same-origin
              Sec-Fetch-Mode: no-cors
              Sec-Fetch-Dest: image
              Referer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:16 UTC255INHTTP/1.1 200 OK
              Server: nginx
              Date: Tue, 12 Mar 2024 00:36:15 GMT
              Content-Type: image/svg+xml
              Content-Length: 1603
              Last-Modified: Mon, 25 Dec 2023 10:08:22 GMT
              Connection: close
              ETag: "65895496-643"
              X-Powered-By: PleskLin
              Accept-Ranges: bytes
              2024-03-12 00:36:16 UTC1603INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0a 3c 21 2d 2d 20 47 65 6e 65 72 61 74 6f 72 3a 20 41 64 6f 62 65 20 49 6c 6c 75 73 74 72 61 74 6f 72 20 31 39 2e 32 2e 31 2c 20 53 56 47 20 45 78 70 6f 72 74 20 50 6c 75 67 2d 49 6e 20 2e 20 53 56 47 20 56 65 72 73 69 6f 6e 3a 20 36 2e 30 30 20 42 75 69 6c 64 20 30 29 20 20 2d 2d 3e 0a 3c 73 76 67 20 76 65 72 73 69 6f 6e 3d 22 31 2e 31 22 20 69 64 3d 22 45 62 65 6e 65 5f 31 22 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 30 2f 73 76 67 22 20 78 6d 6c 6e 73 3a 78 6c 69 6e 6b 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 31 39 39 39 2f 78 6c 69 6e 6b 22 20 78 3d 22 30 70 78 22 20 79 3d 22
              Data Ascii: <?xml version="1.0" encoding="utf-8"?>... Generator: Adobe Illustrator 19.2.1, SVG Export Plug-In . SVG Version: 6.00 Build 0) --><svg version="1.1" id="Ebene_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              2192.168.2.649708193.143.1.544435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:16 UTC588OUTGET /captcha/js/index.js HTTP/1.1
              Host: www.lieferung-dhl-tracking.de
              Connection: keep-alive
              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
              sec-ch-ua-mobile: ?0
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              sec-ch-ua-platform: "Windows"
              Accept: */*
              Sec-Fetch-Site: same-origin
              Sec-Fetch-Mode: no-cors
              Sec-Fetch-Dest: script
              Referer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:16 UTC257INHTTP/1.1 200 OK
              Server: nginx
              Date: Tue, 12 Mar 2024 00:36:16 GMT
              Content-Type: text/javascript
              Content-Length: 3252
              Last-Modified: Wed, 07 Feb 2024 13:11:32 GMT
              Connection: close
              ETag: "65c38184-cb4"
              X-Powered-By: PleskLin
              Accept-Ranges: bytes
              2024-03-12 00:36:16 UTC3252INData Raw: 28 66 75 6e 63 74 69 6f 6e 20 28 72 6f 6f 74 2c 20 66 61 63 74 6f 72 79 29 20 7b 0a 20 20 69 66 20 28 72 6f 6f 74 20 3d 3d 3d 20 75 6e 64 65 66 69 6e 65 64 20 26 26 20 77 69 6e 64 6f 77 20 21 3d 3d 20 75 6e 64 65 66 69 6e 65 64 29 20 72 6f 6f 74 20 3d 20 77 69 6e 64 6f 77 3b 0a 20 20 69 66 20 28 74 79 70 65 6f 66 20 64 65 66 69 6e 65 20 3d 3d 3d 20 27 66 75 6e 63 74 69 6f 6e 27 20 26 26 20 64 65 66 69 6e 65 2e 61 6d 64 29 20 7b 0a 20 20 20 20 2f 2f 20 41 4d 44 2e 20 52 65 67 69 73 74 65 72 20 61 73 20 61 6e 20 61 6e 6f 6e 79 6d 6f 75 73 20 6d 6f 64 75 6c 65 20 75 6e 6c 65 73 73 20 61 6d 64 4d 6f 64 75 6c 65 49 64 20 69 73 20 73 65 74 0a 20 20 20 20 64 65 66 69 6e 65 28 5b 5d 2c 20 66 75 6e 63 74 69 6f 6e 20 28 29 20 7b 0a 20 20 20 20 20 20 72 65 74 75 72
              Data Ascii: (function (root, factory) { if (root === undefined && window !== undefined) root = window; if (typeof define === 'function' && define.amd) { // AMD. Register as an anonymous module unless amdModuleId is set define([], function () { retur


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              3192.168.2.649710151.101.66.1374435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:16 UTC547OUTGET /jquery-3.6.4.min.js HTTP/1.1
              Host: code.jquery.com
              Connection: keep-alive
              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
              sec-ch-ua-mobile: ?0
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              sec-ch-ua-platform: "Windows"
              Accept: */*
              Sec-Fetch-Site: cross-site
              Sec-Fetch-Mode: no-cors
              Sec-Fetch-Dest: script
              Referer: https://www.lieferung-dhl-tracking.de/
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:16 UTC564INHTTP/1.1 200 OK
              Connection: close
              Content-Length: 89795
              Server: nginx
              Content-Type: application/javascript; charset=utf-8
              Last-Modified: Fri, 18 Oct 1991 12:00:00 GMT
              ETag: "28feccc0-15ec3"
              Cache-Control: public, max-age=31536000, stale-while-revalidate=604800
              Access-Control-Allow-Origin: *
              Via: 1.1 varnish, 1.1 varnish
              Accept-Ranges: bytes
              Date: Tue, 12 Mar 2024 00:36:16 GMT
              Age: 11472298
              X-Served-By: cache-lga21953-LGA, cache-ewr18123-EWR
              X-Cache: HIT, HIT
              X-Cache-Hits: 11100, 1
              X-Timer: S1710203776.429958,VS0,VE2
              Vary: Accept-Encoding
              2024-03-12 00:36:16 UTC16384INData Raw: 2f 2a 21 20 6a 51 75 65 72 79 20 76 33 2e 36 2e 34 20 7c 20 28 63 29 20 4f 70 65 6e 4a 53 20 46 6f 75 6e 64 61 74 69 6f 6e 20 61 6e 64 20 6f 74 68 65 72 20 63 6f 6e 74 72 69 62 75 74 6f 72 73 20 7c 20 6a 71 75 65 72 79 2e 6f 72 67 2f 6c 69 63 65 6e 73 65 20 2a 2f 0a 21 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 22 75 73 65 20 73 74 72 69 63 74 22 3b 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 26 26 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3f 6d 6f 64 75 6c 65 2e 65 78 70 6f 72 74 73 3d 65 2e 64 6f 63 75 6d 65 6e 74 3f 74 28 65 2c 21 30 29 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 69 66 28 21 65 2e 64 6f 63 75 6d 65 6e 74 29 74 68 72 6f 77 20 6e 65 77 20 45 72 72 6f 72 28 22 6a 51 75
              Data Ascii: /*! jQuery v3.6.4 | (c) OpenJS Foundation and other contributors | jquery.org/license */!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQu
              2024-03-12 00:36:16 UTC16384INData Raw: 30 5d 3d 3d 3d 6b 26 26 72 5b 31 5d 29 26 26 72 5b 32 5d 2c 61 3d 73 26 26 63 2e 63 68 69 6c 64 4e 6f 64 65 73 5b 73 5d 3b 77 68 69 6c 65 28 61 3d 2b 2b 73 26 26 61 26 26 61 5b 6c 5d 7c 7c 28 64 3d 73 3d 30 29 7c 7c 75 2e 70 6f 70 28 29 29 69 66 28 31 3d 3d 3d 61 2e 6e 6f 64 65 54 79 70 65 26 26 2b 2b 64 26 26 61 3d 3d 3d 65 29 7b 69 5b 68 5d 3d 5b 6b 2c 73 2c 64 5d 3b 62 72 65 61 6b 7d 7d 65 6c 73 65 20 69 66 28 70 26 26 28 64 3d 73 3d 28 72 3d 28 69 3d 28 6f 3d 28 61 3d 65 29 5b 53 5d 7c 7c 28 61 5b 53 5d 3d 7b 7d 29 29 5b 61 2e 75 6e 69 71 75 65 49 44 5d 7c 7c 28 6f 5b 61 2e 75 6e 69 71 75 65 49 44 5d 3d 7b 7d 29 29 5b 68 5d 7c 7c 5b 5d 29 5b 30 5d 3d 3d 3d 6b 26 26 72 5b 31 5d 29 2c 21 31 3d 3d 3d 64 29 77 68 69 6c 65 28 61 3d 2b 2b 73 26 26 61 26 26
              Data Ascii: 0]===k&&r[1])&&r[2],a=s&&c.childNodes[s];while(a=++s&&a&&a[l]||(d=s=0)||u.pop())if(1===a.nodeType&&++d&&a===e){i[h]=[k,s,d];break}}else if(p&&(d=s=(r=(i=(o=(a=e)[S]||(a[S]={}))[a.uniqueID]||(o[a.uniqueID]={}))[h]||[])[0]===k&&r[1]),!1===d)while(a=++s&&a&&
              2024-03-12 00:36:16 UTC16384INData Raw: 2e 63 61 6c 6c 28 65 29 3a 75 3f 74 28 65 5b 30 5d 2c 6e 29 3a 6f 7d 2c 5f 3d 2f 5e 2d 6d 73 2d 2f 2c 7a 3d 2f 2d 28 5b 61 2d 7a 5d 29 2f 67 3b 66 75 6e 63 74 69 6f 6e 20 55 28 65 2c 74 29 7b 72 65 74 75 72 6e 20 74 2e 74 6f 55 70 70 65 72 43 61 73 65 28 29 7d 66 75 6e 63 74 69 6f 6e 20 58 28 65 29 7b 72 65 74 75 72 6e 20 65 2e 72 65 70 6c 61 63 65 28 5f 2c 22 6d 73 2d 22 29 2e 72 65 70 6c 61 63 65 28 7a 2c 55 29 7d 76 61 72 20 56 3d 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 31 3d 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 7c 7c 39 3d 3d 3d 65 2e 6e 6f 64 65 54 79 70 65 7c 7c 21 2b 65 2e 6e 6f 64 65 54 79 70 65 7d 3b 66 75 6e 63 74 69 6f 6e 20 47 28 29 7b 74 68 69 73 2e 65 78 70 61 6e 64 6f 3d 53 2e 65 78 70 61 6e 64 6f 2b 47 2e 75 69 64 2b 2b 7d
              Data Ascii: .call(e):u?t(e[0],n):o},_=/^-ms-/,z=/-([a-z])/g;function U(e,t){return t.toUpperCase()}function X(e){return e.replace(_,"ms-").replace(z,U)}var V=function(e){return 1===e.nodeType||9===e.nodeType||!+e.nodeType};function G(){this.expando=S.expando+G.uid++}
              2024-03-12 00:36:16 UTC16384INData Raw: 21 3d 3d 6c 26 26 22 74 65 78 74 61 72 65 61 22 21 3d 3d 6c 7c 7c 28 75 2e 64 65 66 61 75 6c 74 56 61 6c 75 65 3d 73 2e 64 65 66 61 75 6c 74 56 61 6c 75 65 29 3b 69 66 28 74 29 69 66 28 6e 29 66 6f 72 28 6f 3d 6f 7c 7c 79 65 28 65 29 2c 61 3d 61 7c 7c 79 65 28 63 29 2c 72 3d 30 2c 69 3d 6f 2e 6c 65 6e 67 74 68 3b 72 3c 69 3b 72 2b 2b 29 4c 65 28 6f 5b 72 5d 2c 61 5b 72 5d 29 3b 65 6c 73 65 20 4c 65 28 65 2c 63 29 3b 72 65 74 75 72 6e 20 30 3c 28 61 3d 79 65 28 63 2c 22 73 63 72 69 70 74 22 29 29 2e 6c 65 6e 67 74 68 26 26 76 65 28 61 2c 21 66 26 26 79 65 28 65 2c 22 73 63 72 69 70 74 22 29 29 2c 63 7d 2c 63 6c 65 61 6e 44 61 74 61 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 66 6f 72 28 76 61 72 20 74 2c 6e 2c 72 2c 69 3d 53 2e 65 76 65 6e 74 2e 73 70 65 63 69
              Data Ascii: !==l&&"textarea"!==l||(u.defaultValue=s.defaultValue);if(t)if(n)for(o=o||ye(e),a=a||ye(c),r=0,i=o.length;r<i;r++)Le(o[r],a[r]);else Le(e,c);return 0<(a=ye(c,"script")).length&&ve(a,!f&&ye(e,"script")),c},cleanData:function(e){for(var t,n,r,i=S.event.speci
              2024-03-12 00:36:16 UTC16384INData Raw: 2e 63 72 65 61 74 65 45 6c 65 6d 65 6e 74 28 22 69 6e 70 75 74 22 29 29 2e 76 61 6c 75 65 3d 22 74 22 2c 72 74 2e 74 79 70 65 3d 22 72 61 64 69 6f 22 2c 76 2e 72 61 64 69 6f 56 61 6c 75 65 3d 22 74 22 3d 3d 3d 72 74 2e 76 61 6c 75 65 3b 76 61 72 20 70 74 2c 64 74 3d 53 2e 65 78 70 72 2e 61 74 74 72 48 61 6e 64 6c 65 3b 53 2e 66 6e 2e 65 78 74 65 6e 64 28 7b 61 74 74 72 3a 66 75 6e 63 74 69 6f 6e 28 65 2c 74 29 7b 72 65 74 75 72 6e 20 42 28 74 68 69 73 2c 53 2e 61 74 74 72 2c 65 2c 74 2c 31 3c 61 72 67 75 6d 65 6e 74 73 2e 6c 65 6e 67 74 68 29 7d 2c 72 65 6d 6f 76 65 41 74 74 72 3a 66 75 6e 63 74 69 6f 6e 28 65 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 66 75 6e 63 74 69 6f 6e 28 29 7b 53 2e 72 65 6d 6f 76 65 41 74 74 72 28 74 68 69 73 2c 65
              Data Ascii: .createElement("input")).value="t",rt.type="radio",v.radioValue="t"===rt.value;var pt,dt=S.expr.attrHandle;S.fn.extend({attr:function(e,t){return B(this,S.attr,e,t,1<arguments.length)},removeAttr:function(e){return this.each(function(){S.removeAttr(this,e
              2024-03-12 00:36:16 UTC7875INData Raw: 65 74 43 6c 69 65 6e 74 52 65 63 74 73 28 29 2e 6c 65 6e 67 74 68 29 7d 2c 53 2e 61 6a 61 78 53 65 74 74 69 6e 67 73 2e 78 68 72 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 74 72 79 7b 72 65 74 75 72 6e 20 6e 65 77 20 43 2e 58 4d 4c 48 74 74 70 52 65 71 75 65 73 74 7d 63 61 74 63 68 28 65 29 7b 7d 7d 3b 76 61 72 20 5f 74 3d 7b 30 3a 32 30 30 2c 31 32 32 33 3a 32 30 34 7d 2c 7a 74 3d 53 2e 61 6a 61 78 53 65 74 74 69 6e 67 73 2e 78 68 72 28 29 3b 76 2e 63 6f 72 73 3d 21 21 7a 74 26 26 22 77 69 74 68 43 72 65 64 65 6e 74 69 61 6c 73 22 69 6e 20 7a 74 2c 76 2e 61 6a 61 78 3d 7a 74 3d 21 21 7a 74 2c 53 2e 61 6a 61 78 54 72 61 6e 73 70 6f 72 74 28 66 75 6e 63 74 69 6f 6e 28 69 29 7b 76 61 72 20 6f 2c 61 3b 69 66 28 76 2e 63 6f 72 73 7c 7c 7a 74 26 26 21 69 2e 63 72 6f
              Data Ascii: etClientRects().length)},S.ajaxSettings.xhr=function(){try{return new C.XMLHttpRequest}catch(e){}};var _t={0:200,1223:204},zt=S.ajaxSettings.xhr();v.cors=!!zt&&"withCredentials"in zt,v.ajax=zt=!!zt,S.ajaxTransport(function(i){var o,a;if(v.cors||zt&&!i.cro


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              4192.168.2.649712193.143.1.544435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:17 UTC365OUTGET /img/logo.svg HTTP/1.1
              Host: www.lieferung-dhl-tracking.de
              Connection: keep-alive
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              Accept: */*
              Sec-Fetch-Site: none
              Sec-Fetch-Mode: cors
              Sec-Fetch-Dest: empty
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:17 UTC255INHTTP/1.1 200 OK
              Server: nginx
              Date: Tue, 12 Mar 2024 00:36:17 GMT
              Content-Type: image/svg+xml
              Content-Length: 1603
              Last-Modified: Mon, 25 Dec 2023 10:08:22 GMT
              Connection: close
              ETag: "65895496-643"
              X-Powered-By: PleskLin
              Accept-Ranges: bytes
              2024-03-12 00:36:17 UTC1603INData Raw: 3c 3f 78 6d 6c 20 76 65 72 73 69 6f 6e 3d 22 31 2e 30 22 20 65 6e 63 6f 64 69 6e 67 3d 22 75 74 66 2d 38 22 3f 3e 0a 3c 21 2d 2d 20 47 65 6e 65 72 61 74 6f 72 3a 20 41 64 6f 62 65 20 49 6c 6c 75 73 74 72 61 74 6f 72 20 31 39 2e 32 2e 31 2c 20 53 56 47 20 45 78 70 6f 72 74 20 50 6c 75 67 2d 49 6e 20 2e 20 53 56 47 20 56 65 72 73 69 6f 6e 3a 20 36 2e 30 30 20 42 75 69 6c 64 20 30 29 20 20 2d 2d 3e 0a 3c 73 76 67 20 76 65 72 73 69 6f 6e 3d 22 31 2e 31 22 20 69 64 3d 22 45 62 65 6e 65 5f 31 22 20 78 6d 6c 6e 73 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 32 30 30 30 2f 73 76 67 22 20 78 6d 6c 6e 73 3a 78 6c 69 6e 6b 3d 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 31 39 39 39 2f 78 6c 69 6e 6b 22 20 78 3d 22 30 70 78 22 20 79 3d 22
              Data Ascii: <?xml version="1.0" encoding="utf-8"?>... Generator: Adobe Illustrator 19.2.1, SVG Export Plug-In . SVG Version: 6.00 Build 0) --><svg version="1.1" id="Ebene_1" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" x="0px" y="


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              5192.168.2.649714193.143.1.544435884C:\Program Files\Google\Chrome\Application\chrome.exe
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:17 UTC640OUTGET /favicon.ico HTTP/1.1
              Host: www.lieferung-dhl-tracking.de
              Connection: keep-alive
              sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
              sec-ch-ua-mobile: ?0
              User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
              sec-ch-ua-platform: "Windows"
              Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
              Sec-Fetch-Site: same-origin
              Sec-Fetch-Mode: no-cors
              Sec-Fetch-Dest: image
              Referer: https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Accept-Encoding: gzip, deflate, br
              Accept-Language: en-US,en;q=0.9
              2024-03-12 00:36:17 UTC238INHTTP/1.1 404 Not Found
              Server: nginx
              Date: Tue, 12 Mar 2024 00:36:17 GMT
              Content-Type: text/html
              Content-Length: 808
              Connection: close
              Last-Modified: Mon, 11 Mar 2024 17:24:26 GMT
              ETag: "328-61365d043486e"
              Accept-Ranges: bytes
              2024-03-12 00:36:17 UTC808INData Raw: 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0a 3c 68 74 6d 6c 20 6c 61 6e 67 3d 22 65 6e 22 3e 0a 3c 68 65 61 64 3e 0a 20 20 3c 6d 65 74 61 20 63 68 61 72 73 65 74 3d 22 75 74 66 2d 38 22 3e 0a 20 20 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 78 2d 75 61 2d 63 6f 6d 70 61 74 69 62 6c 65 22 20 63 6f 6e 74 65 6e 74 3d 22 69 65 3d 65 64 67 65 22 3e 0a 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 2c 20 69 6e 69 74 69 61 6c 2d 73 63 61 6c 65 3d 31 2c 20 73 68 72 69 6e 6b 2d 74 6f 2d 66 69 74 3d 6e 6f 22 3e 0a 20 20 3c 74 69 74 6c 65 3e 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 3c 2f 74 69 74 6c 65 3e 0a 20 20 3c 6c 69 6e 6b 20 72 65 6c 3d 22 73
              Data Ascii: <!DOCTYPE html><html lang="en"><head> <meta charset="utf-8"> <meta http-equiv="x-ua-compatible" content="ie=edge"> <meta name="viewport" content="width=device-width, initial-scale=1, shrink-to-fit=no"> <title>404 Not Found</title> <link rel="s


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              6192.168.2.649716104.91.61.188443
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:17 UTC161OUTHEAD /fs/windows/config.json HTTP/1.1
              Connection: Keep-Alive
              Accept: */*
              Accept-Encoding: identity
              User-Agent: Microsoft BITS/7.8
              Host: fs.microsoft.com
              2024-03-12 00:36:18 UTC467INHTTP/1.1 200 OK
              Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
              Content-Type: application/octet-stream
              ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
              Last-Modified: Tue, 16 May 2017 22:58:00 GMT
              Server: ECAcc (chd/0790)
              X-CID: 11
              X-Ms-ApiVersion: Distribute 1.2
              X-Ms-Region: prod-eus-z1
              Cache-Control: public, max-age=228610
              Date: Tue, 12 Mar 2024 00:36:18 GMT
              Connection: close
              X-CID: 2


              Session IDSource IPSource PortDestination IPDestination PortPIDProcess
              7192.168.2.649717104.91.61.188443
              TimestampBytes transferredDirectionData
              2024-03-12 00:36:19 UTC239OUTGET /fs/windows/config.json HTTP/1.1
              Connection: Keep-Alive
              Accept: */*
              Accept-Encoding: identity
              If-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMT
              Range: bytes=0-2147483646
              User-Agent: Microsoft BITS/7.8
              Host: fs.microsoft.com
              2024-03-12 00:36:20 UTC531INHTTP/1.1 200 OK
              Content-Type: application/octet-stream
              Last-Modified: Tue, 16 May 2017 22:58:00 GMT
              ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
              ApiVersion: Distribute 1.1
              Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
              X-Azure-Ref: 0rcGnYgAAAAANOnx9vccHTr21ROgX9ESTU0pDRURHRTAzMDkAY2VmYzI1ODMtYTliMi00NGE3LTk3NTUtYjc2ZDE3ZTA1Zjdm
              Cache-Control: public, max-age=228635
              Date: Tue, 12 Mar 2024 00:36:20 GMT
              Content-Length: 55
              Connection: close
              X-CID: 2
              2024-03-12 00:36:20 UTC55INData Raw: 7b 22 66 6f 6e 74 53 65 74 55 72 69 22 3a 22 66 6f 6e 74 73 65 74 2d 32 30 31 37 2d 30 34 2e 6a 73 6f 6e 22 2c 22 62 61 73 65 55 72 69 22 3a 22 66 6f 6e 74 73 22 7d
              Data Ascii: {"fontSetUri":"fontset-2017-04.json","baseUri":"fonts"}


              Click to jump to process

              Click to jump to process

              Click to jump to process

              Target ID:0
              Start time:01:36:08
              Start date:12/03/2024
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank
              Imagebase:0x7ff684c40000
              File size:3'242'272 bytes
              MD5 hash:5BBFA6CBDF4C254EB368D534F9E23C92
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:false

              Target ID:2
              Start time:01:36:11
              Start date:12/03/2024
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2516 --field-trial-handle=2460,i,11020235682910188731,17304490713941405481,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
              Imagebase:0x7ff684c40000
              File size:3'242'272 bytes
              MD5 hash:5BBFA6CBDF4C254EB368D534F9E23C92
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:false

              Target ID:3
              Start time:01:36:13
              Start date:12/03/2024
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.lieferung-dhl-tracking.de/captcha/calcul_captcha.php
              Imagebase:0x7ff684c40000
              File size:3'242'272 bytes
              MD5 hash:5BBFA6CBDF4C254EB368D534F9E23C92
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:true

              No disassembly