Windows
Analysis Report
http://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link/
Overview
General Information
Detection
Score: | 92 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 1372 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) chrome.exe (PID: 4152 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2900 --fi eld-trial- handle=286 4,i,159055 7878112046 8769,36797 2675909422 7061,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
chrome.exe (PID: 6404 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://bafybe igmbqvsi23 62chr7eftt r2cjlhylkz 7vdem23cnw sl4zsmabui s4u.ipfs.d web.link/" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_OutlookPhishing | Yara detected Outlook Phishing page | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_OutlookPhishing | Yara detected Outlook Phishing page | Joe Security |
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: | ||
Source: | SlashNext: |
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | LLM: |
Source: | Matcher: | ||
Source: | Matcher: |
Source: | File source: | ||
Source: | File source: |
Source: | Matcher: |
Source: | Matcher: |
Source: | File source: | ||
Source: | File source: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing | ||
100% | SlashNext | Credential Stealing type: Phishing & Social usering |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link | 209.94.90.2 | true | true | unknown | |
stackpath.bootstrapcdn.com | 104.18.11.207 | true | false | unknown | |
www.google.com | 216.58.206.68 | true | false | unknown | |
FRA-efz.ms-acdc.office.com | 52.98.178.210 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown | |
outlook.live.com | unknown | unknown | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
true |
| unknown | |
false |
| unknown | |
true | unknown | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
216.58.206.68 | www.google.com | United States | 15169 | GOOGLEUS | false | |
104.18.11.207 | stackpath.bootstrapcdn.com | United States | 13335 | CLOUDFLARENETUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
52.98.178.210 | FRA-efz.ms-acdc.office.com | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
209.94.90.2 | bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link | United States | 40680 | PROTOCOLUS | true |
IP |
---|
192.168.2.6 |
192.168.2.5 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1456949 |
Start date and time: | 2024-06-14 00:26:20 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 8s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 9 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal92.phis.win@17/13@12/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): dllhost.exe, WM IADAP.exe, SIHClient.exe, svch ost.exe - Excluded IPs from analysis (wh
itelisted): 192.229.221.95, 93 .184.221.240, 216.58.206.67, 1 42.250.186.46, 64.233.184.84, 34.104.35.123, 142.250.185.170 , 216.58.206.74, 172.217.23.10 6, 142.250.74.202, 216.58.212. 170, 216.58.206.42, 142.250.18 4.202, 142.250.186.42, 142.250 .186.74, 216.58.212.138, 142.2 50.185.106, 142.250.181.234, 1 72.217.18.10, 142.250.185.234, 142.250.185.202, 142.250.186. 138, 52.165.165.26, 13.95.31.1 8, 20.3.187.198, 142.250.186.1 31 - Excluded domains from analysis
(whitelisted): slscr.update.m icrosoft.com, clientservices.g oogleapis.com, wu.azureedge.ne t, clients2.google.com, ocsp.d igicert.com, bg.apr-52dd2-0503 .edgecastdns.net, cs11.wpc.v0c dn.net, ocsp.edge.digicert.com , glb.cws.prod.dcat.dsp.traffi cmanager.net, hlb.apr-52dd2-0. edgecastdns.net, sls.update.mi crosoft.com, update.googleapis .com, wu-b-net.trafficmanager. net, glb.sls.prod.dcat.dsp.tra fficmanager.net, client.wns.wi ndows.com, fs.microsoft.com, a ccounts.google.com, content-au tofill.googleapis.com, ctldl.w indowsupdate.com.delivery.micr osoft.com, ajax.googleapis.com , wu.ec.azureedge.net, ctldl.w indowsupdate.com, fe3cr.delive ry.mp.microsoft.com, fe3.deliv ery.mp.microsoft.com, edgedl.m e.gvt1.com, clients.l.google.c om - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtSetInformationFile c alls found. - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: http:/
/bafybeigmbqvsi2362chr7efttr2c jlhylkz7vdem23cnwsl4zsmabuis4u .ipfs.dweb.link/
Input | Output |
---|---|
URL: https://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link Model: gpt-4o | ```json { "phishing_score": 9, "brands": "Outlook", "phishing": true, "suspicious_domain": true, "has_loginform": true, "has_captcha": false, "setechniques": true, "has_suspicious_link": true, "legitmate_domain": "outlook.com", "reasons": "The URL 'https://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link' is highly suspicious. It does not match the legitimate domain name 'outlook.com' associated with the Outlook brand. The use of a decentralized web link (dweb.link) is unusual for a legitimate service like Outlook. The page contains a login form, which is a common feature in phishing sites to capture user credentials. The image resembles the legitimate Outlook login page, which is a social usering technique to mislead users. Therefore, this site is highly likely to be a phishing site." } |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 85578 |
Entropy (8bit): | 5.366055229017455 |
Encrypted: | false |
SSDEEP: | 1536:EYE1JVoiB9JqZdXXe2pD3PgoIiulrUndZ6a4tfOR7WpfWBZ2BJda4w9W3qG9a986:v4J+OlfOhWppCW6G9a98Hr2 |
MD5: | 2F6B11A7E914718E0290410E85366FE9 |
SHA1: | 69BB69E25CA7D5EF0935317584E6153F3FD9A88C |
SHA-256: | 05B85D96F41FFF14D8F608DAD03AB71E2C1017C2DA0914D7C59291BAD7A54F8E |
SHA-512: | 0D40BCCAA59FEDECF7243D63B33C42592541D0330FEFC78EC81A4C6B9689922D5B211011CA4BE23AE22621CCE4C658F52A1552C92D7AC3615241EB640F8514DB |
Malicious: | false |
Reputation: | low |
URL: | https://ajax.googleapis.com/ajax/libs/jquery/2.2.4/jquery.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 38457 |
Entropy (8bit): | 6.209596455512543 |
Encrypted: | false |
SSDEEP: | 768:Lx0tkGdKV7aQblzoJmgK4e2Fuz3zFbcN9c8ReNa1Us:F0t/kF5D4nFuhcvLeNaz |
MD5: | 54C7974D4251A047ECA4FE0271CAFE12 |
SHA1: | D236B4A8DFBA25AD1B89EC520DEB4FDE2ECA25F2 |
SHA-256: | E99D7A157219E1FA431FADE24A2BE84FBADF1EB13B2D862750944A67DF02CDDF |
SHA-512: | BE8E405E367B5C8E6C65B3C2CC88204112E5DB8FF923EB5F956738CB4EA970A57B10B68A4A77559F2A90CB832B8DD884D9E3864B6C2CA271C19D98DEFA2D3F45 |
Malicious: | false |
Reputation: | low |
URL: | https://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 40 |
Entropy (8bit): | 4.439822782008755 |
Encrypted: | false |
SSDEEP: | 3:mSLinPbSsvVXyY:mSWPbScVXL |
MD5: | 43E3F24D620D17E27253CC707F21F8A5 |
SHA1: | 65056BA10A4907DEA1D5B0C601ACF71AC23D7BFC |
SHA-256: | BB35BE02979B6BADD6DB473B6C54FAF85DB79FCE1BC727379F60E9C7CF9E0E58 |
SHA-512: | EAB19F91F08B8BBEE6F42F6E68641FB1B1C863CAD15B0AF405FBBA41A7113BDD872A7B56C27E10BDBF5AACC4FBB7FAB23CCD9F7022720B75AC79518CBBA63EEE |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzQSHgn83opA_cVqIhIFDXhvEhkSBQ3OQUx6EgUNTx8adg==?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 51039 |
Entropy (8bit): | 5.247253437401007 |
Encrypted: | false |
SSDEEP: | 768:E9Yw7GuJM+HV0cen/7Kh5rM7V4RxCKg8FW/xsXQUd+FiID65r48Hgp5HRl+:E9X7PMIM7V4R5LFAxTWyuHHgp5HRl+ |
MD5: | 67176C242E1BDC20603C878DEE836DF3 |
SHA1: | 27A71B00383D61EF3C489326B3564D698FC1227C |
SHA-256: | 56C12A125B021D21A69E61D7190CEFA168D6C28CE715265CEA1B3B0112D169C4 |
SHA-512: | 9FA75814E1B9F7DB38FE61A503A13E60B82D83DB8F4CE30351BD08A6B48C0D854BAF472D891AF23C443C8293380C2325C7B3361B708AF9971AA0EA09A25CDD0A |
Malicious: | false |
Reputation: | low |
URL: | https://stackpath.bootstrapcdn.com/bootstrap/4.1.3/js/bootstrap.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7886 |
Entropy (8bit): | 4.14434000076088 |
Encrypted: | false |
SSDEEP: | 48:gFLLLLLLBWj2P+W3DS4E4U4R7454y4aR+BddHOlFgWSsjfQeiFzm22lhCa1I/CPP:tjQDdNKevXOl/amZP |
MD5: | AC16FA7FC862073B02ACD1187FC6DEF4 |
SHA1: | F2B9A6255F6293000F30EEE272ABDD372A14E9D3 |
SHA-256: | E35D94B76894D6ECA96FF5B1A12D94DFE73485EF3C52CB5B4395BE8FFAC1CB45 |
SHA-512: | FF0884F9F3DED38191C7D1F214545509E80DE614BC824395F3C9412AED8D81DB95BA7E761939AC1F1798C1D39A7969A3DBF373D03A88404345714EDD8165F19D |
Malicious: | false |
Reputation: | low |
URL: | https://outlook.live.com/mail/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 7886 |
Entropy (8bit): | 4.14434000076088 |
Encrypted: | false |
SSDEEP: | 48:gFLLLLLLBWj2P+W3DS4E4U4R7454y4aR+BddHOlFgWSsjfQeiFzm22lhCa1I/CPP:tjQDdNKevXOl/amZP |
MD5: | AC16FA7FC862073B02ACD1187FC6DEF4 |
SHA1: | F2B9A6255F6293000F30EEE272ABDD372A14E9D3 |
SHA-256: | E35D94B76894D6ECA96FF5B1A12D94DFE73485EF3C52CB5B4395BE8FFAC1CB45 |
SHA-512: | FF0884F9F3DED38191C7D1F214545509E80DE614BC824395F3C9412AED8D81DB95BA7E761939AC1F1798C1D39A7969A3DBF373D03A88404345714EDD8165F19D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 227 |
Entropy (8bit): | 4.995054839523766 |
Encrypted: | false |
SSDEEP: | 6:fIdsRnNiNXfGcklJ0dbWzcIVKQ1IiNXfGcA:fX6XWJ0VEcId/Xk |
MD5: | 25BC1C27D70CF7C1694A3D82EC02E946 |
SHA1: | 2324FE278F054441B5A7F86BBF34399ABF869D3B |
SHA-256: | 9AE26D0F29FA22CB7F96E701D69FDF9CD8BBFBC14C19944D8D161F3225D9696E |
SHA-512: | F19E70AAA1DF8FA6DAED33B6C4508D07BC3D9E14A0B4A8F0254B5DA67558F5E16FFA0A3DB5D97695BFFDEF36CC5CDA58A96B8689326D4418554827F24998BDAB |
Malicious: | false |
Reputation: | low |
URL: | https://bafybeigmbqvsi2362chr7efttr2cjlhylkz7vdem23cnwsl4zsmabuis4u.ipfs.dweb.link/owa/auth/15.2.1258/themes/resources/segoeui-regular.ttf |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 273
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jun 14, 2024 00:27:04.905402899 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:04.905479908 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:04.908068895 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:04.908081055 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:04.908359051 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:04.909535885 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:04.909614086 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:04.909619093 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:04.909739971 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:04.952510118 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:05.152807951 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:05.153223991 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:05.153250933 CEST | 443 | 49711 | 40.113.103.199 | 192.168.2.6 |
Jun 14, 2024 00:27:05.153274059 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:05.153306007 CEST | 49711 | 443 | 192.168.2.6 | 40.113.103.199 |
Jun 14, 2024 00:27:07.107122898 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:07.107340097 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:07.450869083 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:11.255882025 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:11.255918980 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:11.255975962 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:11.256597042 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:11.256611109 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.347805977 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.347887039 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.566447020 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.566488028 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.567410946 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.569139004 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.569204092 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.569210052 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.569425106 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.616497040 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.813647985 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.842792988 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.842822075 CEST | 443 | 49713 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:12.842839003 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:12.842883110 CEST | 49713 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:14.978075027 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:14.978112936 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:14.978262901 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:14.979012966 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:14.979031086 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:15.568432093 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:15.568521976 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:15.568587065 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:15.568804026 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:15.568834066 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.064618111 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.064711094 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.067060947 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.067080021 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.067867041 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.069860935 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.069955111 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.069964886 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.070105076 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.116508961 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.187715054 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.188082933 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.188134909 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.189399004 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.189480066 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.190707922 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.190782070 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.190947056 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.190962076 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.230370045 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.312128067 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.312634945 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.312653065 CEST | 443 | 49719 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:16.312794924 CEST | 49719 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:16.333606005 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.333739996 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.333823919 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.333830118 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.333858013 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.333914042 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.333971024 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.334124088 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.334197044 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.334249020 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.334264994 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.334678888 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.334691048 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.385587931 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.385636091 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.437405109 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.449981928 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450186968 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450211048 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450254917 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.450298071 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450510979 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.450726986 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450777054 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.450819016 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.450836897 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.451528072 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.451575041 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.451606035 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.452235937 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.452279091 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.452334881 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.452358961 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.452512980 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.453021049 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.453166962 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.453219891 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.453249931 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.453896999 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.453952074 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.453972101 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.454689980 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.454772949 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.454799891 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.454819918 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.454932928 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.454941988 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.455008984 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.455055952 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.455830097 CEST | 49720 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.455862045 CEST | 443 | 49720 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.475323915 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:16.475368977 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:16.475429058 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:16.475784063 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:16.475805044 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:16.501477957 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.501528025 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.501673937 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.502299070 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:16.502341032 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:16.716010094 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:16.716248035 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:17.065684080 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:17.078140974 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.078649998 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.078708887 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.079730034 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.079799891 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.081892014 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.081955910 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.082531929 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.082542896 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.118598938 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:17.122425079 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.123816013 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:17.123905897 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:17.125288010 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:17.126071930 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:17.126271009 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:17.126636028 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:27:17.168519974 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222661972 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222695112 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222719908 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222743034 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222765923 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.222769976 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222780943 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.222800970 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.222815037 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.222826004 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.223654985 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.223683119 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.223701954 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.223723888 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.223732948 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.223776102 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.263283014 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.337512016 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.337657928 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.337682009 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.337713957 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.337738991 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.337781906 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.338200092 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.338236094 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.338254929 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.338283062 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.338293076 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.338342905 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.339121103 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342463017 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342489958 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342530966 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342567921 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342554092 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.342583895 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342596054 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.342637062 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.342638969 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342673063 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.342711926 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.343240976 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.343278885 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.343301058 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.343342066 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.343352079 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.343399048 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.452301025 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452344894 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452378988 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452495098 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.452536106 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452591896 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.452603102 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452810049 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452831984 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452852964 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.452862024 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452908039 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.452915907 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.452981949 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.453035116 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.454344988 CEST | 49724 | 443 | 192.168.2.6 | 104.18.11.207 |
Jun 14, 2024 00:27:17.454375982 CEST | 443 | 49724 | 104.18.11.207 | 192.168.2.6 |
Jun 14, 2024 00:27:17.926291943 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:17.926382065 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:17.926461935 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:17.927387953 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:17.927424908 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.494708061 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:18.494736910 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:18.494822025 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:18.496512890 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:18.496526957 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:18.797439098 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.797904968 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:18.797971964 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.799607038 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.799695969 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:18.801208019 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:18.801316023 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.842308998 CEST | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:18.842425108 CEST | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:18.856636047 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:18.856702089 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:18.902534008 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:19.340600967 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.340720892 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.345283985 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.345289946 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.345541954 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.385380030 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.445636034 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.492501020 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.689290047 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.689445019 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.689474106 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.689496994 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.689533949 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.689539909 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.689707041 CEST | 49728 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.689709902 CEST | 443 | 49728 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.723995924 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.724041939 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:19.724138975 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.724428892 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:19.724443913 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.567625046 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.567697048 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.587440968 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.587460995 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.587667942 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.594381094 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.636509895 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.839023113 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.839092016 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.839174986 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.841943026 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.841963053 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:20.841974020 CEST | 49729 | 443 | 192.168.2.6 | 23.211.8.90 |
Jun 14, 2024 00:27:20.841979980 CEST | 443 | 49729 | 23.211.8.90 | 192.168.2.6 |
Jun 14, 2024 00:27:23.109949112 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.110003948 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:23.110097885 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.111100912 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.111140966 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:23.116965055 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.117065907 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:23.117172003 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.117777109 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:23.117815971 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.256912947 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.257016897 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.260101080 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.260134935 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.260586023 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.261277914 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.261509895 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.268516064 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.268584967 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.269260883 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.269340038 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.269354105 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.269352913 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.269578934 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.270509958 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.270559072 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.270579100 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.270665884 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.312515020 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.312521935 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.508686066 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.509350061 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.509350061 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.509426117 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.509505987 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.510226011 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.510612965 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.510689020 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.510751963 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.511099100 CEST | 443 | 49730 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:24.511177063 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:24.511177063 CEST | 49730 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:28.785273075 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:28.785356998 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:28.785654068 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:29.743953943 CEST | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:29.744046926 CEST | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:29.758631945 CEST | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:29.758696079 CEST | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:29.773583889 CEST | 49734 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:29.773683071 CEST | 443 | 49734 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:29.773796082 CEST | 49734 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:29.774616957 CEST | 49734 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:29.774652004 CEST | 443 | 49734 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:30.382787943 CEST | 49726 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:27:30.382863998 CEST | 443 | 49726 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:27:30.449557066 CEST | 443 | 49734 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:30.449664116 CEST | 49734 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:36.616172075 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:36.616295099 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:36.616389990 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:36.617966890 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:36.617980003 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.717674017 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.717747927 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.719999075 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.720011950 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.720237017 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.722104073 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.722178936 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.722184896 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.722333908 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.768491030 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.965554953 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.966831923 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.966857910 CEST | 443 | 49735 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:37.966876030 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:37.966907024 CEST | 49735 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:39.126925945 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:39.127022028 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:39.127149105 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:39.127789974 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:39.127824068 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.181857109 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.181937933 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.184462070 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.184473038 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.185256004 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.186572075 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.186630964 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.186635971 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.186774015 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.228549004 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.428462029 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.429084063 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.429155111 CEST | 443 | 49736 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:41.429203033 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:41.429233074 CEST | 49736 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:49.596441984 CEST | 443 | 49734 | 173.222.162.64 | 192.168.2.6 |
Jun 14, 2024 00:27:49.596508026 CEST | 49734 | 443 | 192.168.2.6 | 173.222.162.64 |
Jun 14, 2024 00:27:57.865894079 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.865955114 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:57.866029024 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.866970062 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.866988897 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:57.873452902 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.873462915 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:57.873528004 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.874438047 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:57.874453068 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.945563078 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.945864916 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.947853088 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.947869062 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.948087931 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.949341059 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.949410915 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.949415922 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.949532986 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.957684040 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.957813025 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.959047079 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.959053040 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.959243059 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.960606098 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.960606098 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.960623980 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:58.960719109 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:58.996496916 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.008492947 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.189070940 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.191648006 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.191677094 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.191713095 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.191894054 CEST | 443 | 49737 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.191920996 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.192162991 CEST | 49737 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.201550961 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.201967001 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.201976061 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.202100992 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.202121973 CEST | 443 | 49738 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:27:59.202152967 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:27:59.202239037 CEST | 49738 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:02.170531034 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:28:02.170557022 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:28:17.400557995 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:28:17.400814056 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:28:17.400881052 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:28:17.404892921 CEST | 49725 | 443 | 192.168.2.6 | 209.94.90.2 |
Jun 14, 2024 00:28:17.404915094 CEST | 443 | 49725 | 209.94.90.2 | 192.168.2.6 |
Jun 14, 2024 00:28:17.424880981 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:17.424921036 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:17.425038099 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:17.425273895 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:17.425286055 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:17.794822931 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:17.794874907 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:17.795101881 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:17.795557022 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:17.795569897 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:18.541479111 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.541882038 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.541899920 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.542912006 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.542990923 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.542998075 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.543035030 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.544677019 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.544734955 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.545454979 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.545460939 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.590354919 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.654386997 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:18.655154943 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:18.655195951 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:18.655648947 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:18.657015085 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:18.657103062 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:18.699775934 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:18.804158926 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.804228067 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.804250002 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.804292917 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.804311991 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.804342985 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.807905912 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.807984114 CEST | 443 | 49741 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.808043003 CEST | 49741 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.832499981 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.832525015 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:18.832582951 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.833034992 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:18.833051920 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.968132973 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.968506098 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:19.968519926 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.970066071 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.970136881 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:19.970144987 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.970186949 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:19.970572948 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:19.970660925 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:19.970789909 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:19.970797062 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.017929077 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:20.247829914 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.247874975 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.247912884 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.247925043 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.247941971 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:20.247981071 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.248001099 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:20.282402039 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:20.282536983 CEST | 443 | 49743 | 52.98.178.210 | 192.168.2.6 |
Jun 14, 2024 00:28:20.282597065 CEST | 49743 | 443 | 192.168.2.6 | 52.98.178.210 |
Jun 14, 2024 00:28:25.209276915 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:25.209302902 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:25.209774017 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:25.210047960 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:25.210062981 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.287314892 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.287389994 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.289285898 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.289297104 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.289534092 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.291095972 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.291157961 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.291162968 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.291311026 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.332499981 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.529892921 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.530586004 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.530595064 CEST | 443 | 49744 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:26.530615091 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:26.530646086 CEST | 49744 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:28.639751911 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:28.639825106 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:28.639898062 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:29.227921009 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:29.227976084 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:29.228091002 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:29.229540110 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:29.229566097 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.126118898 CEST | 49742 | 443 | 192.168.2.6 | 216.58.206.68 |
Jun 14, 2024 00:28:30.126137972 CEST | 443 | 49742 | 216.58.206.68 | 192.168.2.6 |
Jun 14, 2024 00:28:30.303843975 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.303925991 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.306586027 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.306602001 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.306848049 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.309994936 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.310503960 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.310516119 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.310782909 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.352514029 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.550204039 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.553555965 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Jun 14, 2024 00:28:30.553572893 CEST | 443 | 49745 | 40.113.110.67 | 192.168.2.6 |
Jun 14, 2024 00:28:30.553715944 CEST | 49745 | 443 | 192.168.2.6 | 40.113.110.67 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jun 14, 2024 00:27:13.927247047 CEST | 53 | 51749 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:13.972233057 CEST | 53 | 49367 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:15.218354940 CEST | 53 | 57068 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:15.482664108 CEST | 50926 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:15.482923031 CEST | 61840 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:15.496555090 CEST | 53 | 50926 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:15.496572971 CEST | 53 | 61840 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:15.553901911 CEST | 54564 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:15.554073095 CEST | 50538 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:15.564491034 CEST | 53 | 50538 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:15.567939997 CEST | 53 | 54564 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:16.464114904 CEST | 62222 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:16.464359999 CEST | 51160 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:16.472727060 CEST | 53 | 51052 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:16.473623037 CEST | 53 | 51160 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:16.474831104 CEST | 53 | 62222 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:17.912776947 CEST | 60303 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:17.913975954 CEST | 54139 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:27:17.922352076 CEST | 53 | 60303 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:17.923868895 CEST | 53 | 54139 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:18.051440001 CEST | 53 | 51396 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:32.287029028 CEST | 53 | 53415 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:27:51.259910107 CEST | 53 | 51971 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:13.460402012 CEST | 53 | 64802 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:14.210370064 CEST | 53 | 63289 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:17.413368940 CEST | 65386 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:28:17.413734913 CEST | 63475 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:28:17.422818899 CEST | 53 | 65386 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:17.424151897 CEST | 53 | 63475 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:18.821743011 CEST | 59944 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:28:18.821996927 CEST | 51259 | 53 | 192.168.2.6 | 1.1.1.1 |
Jun 14, 2024 00:28:18.830059052 CEST | 53 | 51259 | 1.1.1.1 | 192.168.2.6 |
Jun 14, 2024 00:28:18.831263065 CEST | 53 | 59944 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jun 14, 2024 00:27:15.482664108 CEST | 192.168.2.6 | 1.1.1.1 | 0x7815 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:27:15.482923031 CEST | 192.168.2.6 | 1.1.1.1 | 0x1b36 | Standard query (0) | 65 | IN (0x0001) | false | |
Jun 14, 2024 00:27:15.553901911 CEST | 192.168.2.6 | 1.1.1.1 | 0x40dd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:27:15.554073095 CEST | 192.168.2.6 | 1.1.1.1 | 0x5d2d | Standard query (0) | 65 | IN (0x0001) | false | |
Jun 14, 2024 00:27:16.464114904 CEST | 192.168.2.6 | 1.1.1.1 | 0xc5ac | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:27:16.464359999 CEST | 192.168.2.6 | 1.1.1.1 | 0x350d | Standard query (0) | 65 | IN (0x0001) | false | |
Jun 14, 2024 00:27:17.912776947 CEST | 192.168.2.6 | 1.1.1.1 | 0x5f53 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:27:17.913975954 CEST | 192.168.2.6 | 1.1.1.1 | 0x47c7 | Standard query (0) | 65 | IN (0x0001) | false | |
Jun 14, 2024 00:28:17.413368940 CEST | 192.168.2.6 | 1.1.1.1 | 0x3379 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:28:17.413734913 CEST | 192.168.2.6 | 1.1.1.1 | 0x4e0c | Standard query (0) | 65 | IN (0x0001) | false | |
Jun 14, 2024 00:28:18.821743011 CEST | 192.168.2.6 | 1.1.1.1 | 0x2267 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jun 14, 2024 00:28:18.821996927 CEST | 192.168.2.6 | 1.1.1.1 | 0x50dd | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jun 14, 2024 00:27:15.496555090 CEST | 1.1.1.1 | 192.168.2.6 | 0x7815 | No error (0) | 209.94.90.2 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:15.496555090 CEST | 1.1.1.1 | 192.168.2.6 | 0x7815 | No error (0) | 209.94.90.3 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:15.496572971 CEST | 1.1.1.1 | 192.168.2.6 | 0x1b36 | No error (0) | 65 | IN (0x0001) | false | |||
Jun 14, 2024 00:27:15.564491034 CEST | 1.1.1.1 | 192.168.2.6 | 0x5d2d | No error (0) | 65 | IN (0x0001) | false | |||
Jun 14, 2024 00:27:15.567939997 CEST | 1.1.1.1 | 192.168.2.6 | 0x40dd | No error (0) | 209.94.90.2 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:15.567939997 CEST | 1.1.1.1 | 192.168.2.6 | 0x40dd | No error (0) | 209.94.90.3 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:16.473623037 CEST | 1.1.1.1 | 192.168.2.6 | 0x350d | No error (0) | 65 | IN (0x0001) | false | |||
Jun 14, 2024 00:27:16.474831104 CEST | 1.1.1.1 | 192.168.2.6 | 0xc5ac | No error (0) | 104.18.11.207 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:16.474831104 CEST | 1.1.1.1 | 192.168.2.6 | 0xc5ac | No error (0) | 104.18.10.207 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:17.922352076 CEST | 1.1.1.1 | 192.168.2.6 | 0x5f53 | No error (0) | 216.58.206.68 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:17.923868895 CEST | 1.1.1.1 | 192.168.2.6 | 0x47c7 | No error (0) | 65 | IN (0x0001) | false | |||
Jun 14, 2024 00:27:27.924444914 CEST | 1.1.1.1 | 192.168.2.6 | 0xe1d0 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:27.924444914 CEST | 1.1.1.1 | 192.168.2.6 | 0xe1d0 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:40.960319042 CEST | 1.1.1.1 | 192.168.2.6 | 0xd707 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:27:40.960319042 CEST | 1.1.1.1 | 192.168.2.6 | 0xd707 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:06.357613087 CEST | 1.1.1.1 | 192.168.2.6 | 0x9bbf | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:06.357613087 CEST | 1.1.1.1 | 192.168.2.6 | 0x9bbf | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | olc-g2.tm-4.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | outlook.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | FRA-efz.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | 52.98.178.210 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | 40.99.155.226 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.422818899 CEST | 1.1.1.1 | 192.168.2.6 | 0x3379 | No error (0) | 52.98.253.66 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.424151897 CEST | 1.1.1.1 | 192.168.2.6 | 0x4e0c | No error (0) | olc-g2.tm-4.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.424151897 CEST | 1.1.1.1 | 192.168.2.6 | 0x4e0c | No error (0) | outlook.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:17.424151897 CEST | 1.1.1.1 | 192.168.2.6 | 0x4e0c | No error (0) | FRA-efz.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.830059052 CEST | 1.1.1.1 | 192.168.2.6 | 0x50dd | No error (0) | olc-g2.tm-4.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | olc-g2.tm-4.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | outlook.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | FRA-efz.ms-acdc.office.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | 52.98.178.210 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | 52.98.253.162 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:18.831263065 CEST | 1.1.1.1 | 192.168.2.6 | 0x2267 | No error (0) | 52.98.253.146 | A (IP address) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:26.825165033 CEST | 1.1.1.1 | 192.168.2.6 | 0x38ad | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jun 14, 2024 00:28:26.825165033 CEST | 1.1.1.1 | 192.168.2.6 | 0x38ad | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49708 | 20.190.159.23 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:03 UTC | 422 | OUT | |
2024-06-13 22:27:03 UTC | 4775 | OUT | |
2024-06-13 22:27:03 UTC | 569 | IN | |
2024-06-13 22:27:03 UTC | 11373 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
1 | 192.168.2.6 | 49707 | 20.190.160.17 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:03 UTC | 422 | OUT | |
2024-06-13 22:27:03 UTC | 4694 | OUT | |
2024-06-13 22:27:03 UTC | 569 | IN | |
2024-06-13 22:27:03 UTC | 10857 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
2 | 192.168.2.6 | 49709 | 34.117.186.192 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:03 UTC | 59 | OUT | |
2024-06-13 22:27:03 UTC | 513 | IN | |
2024-06-13 22:27:03 UTC | 314 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
3 | 192.168.2.6 | 49711 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:04 UTC | 71 | OUT | |
2024-06-13 22:27:04 UTC | 249 | OUT | |
2024-06-13 22:27:04 UTC | 1064 | OUT | |
2024-06-13 22:27:04 UTC | 74 | OUT | |
2024-06-13 22:27:05 UTC | 14 | IN | |
2024-06-13 22:27:05 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
4 | 192.168.2.6 | 49713 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:12 UTC | 71 | OUT | |
2024-06-13 22:27:12 UTC | 249 | OUT | |
2024-06-13 22:27:12 UTC | 1064 | OUT | |
2024-06-13 22:27:12 UTC | 74 | OUT | |
2024-06-13 22:27:12 UTC | 14 | IN | |
2024-06-13 22:27:12 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
5 | 192.168.2.6 | 49719 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:16 UTC | 71 | OUT | |
2024-06-13 22:27:16 UTC | 249 | OUT | |
2024-06-13 22:27:16 UTC | 1064 | OUT | |
2024-06-13 22:27:16 UTC | 218 | OUT | |
2024-06-13 22:27:16 UTC | 14 | IN | |
2024-06-13 22:27:16 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49720 | 209.94.90.2 | 443 | 4152 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:16 UTC | 717 | OUT | |
2024-06-13 22:27:16 UTC | 1071 | IN | |
2024-06-13 22:27:16 UTC | 298 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN | |
2024-06-13 22:27:16 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49724 | 104.18.11.207 | 443 | 4152 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:17 UTC | 619 | OUT | |
2024-06-13 22:27:17 UTC | 946 | IN | |
2024-06-13 22:27:17 UTC | 423 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN | |
2024-06-13 22:27:17 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.6 | 49725 | 209.94.90.2 | 443 | 4152 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:17 UTC | 775 | OUT | |
2024-06-13 22:28:17 UTC | 1215 | IN | |
2024-06-13 22:28:17 UTC | 154 | IN | |
2024-06-13 22:28:17 UTC | 73 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.6 | 49728 | 23.211.8.90 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:19 UTC | 161 | OUT | |
2024-06-13 22:27:19 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.6 | 49729 | 23.211.8.90 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:20 UTC | 239 | OUT | |
2024-06-13 22:27:20 UTC | 535 | IN | |
2024-06-13 22:27:20 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
11 | 192.168.2.6 | 49731 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:24 UTC | 71 | OUT | |
2024-06-13 22:27:24 UTC | 249 | OUT | |
2024-06-13 22:27:24 UTC | 1064 | OUT | |
2024-06-13 22:27:24 UTC | 218 | OUT | |
2024-06-13 22:27:24 UTC | 14 | IN | |
2024-06-13 22:27:24 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
12 | 192.168.2.6 | 49730 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:24 UTC | 71 | OUT | |
2024-06-13 22:27:24 UTC | 249 | OUT | |
2024-06-13 22:27:24 UTC | 1064 | OUT | |
2024-06-13 22:27:24 UTC | 74 | OUT | |
2024-06-13 22:27:24 UTC | 14 | IN | |
2024-06-13 22:27:24 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
13 | 192.168.2.6 | 49735 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:37 UTC | 71 | OUT | |
2024-06-13 22:27:37 UTC | 249 | OUT | |
2024-06-13 22:27:37 UTC | 1064 | OUT | |
2024-06-13 22:27:37 UTC | 218 | OUT | |
2024-06-13 22:27:37 UTC | 14 | IN | |
2024-06-13 22:27:37 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
14 | 192.168.2.6 | 49736 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:41 UTC | 71 | OUT | |
2024-06-13 22:27:41 UTC | 249 | OUT | |
2024-06-13 22:27:41 UTC | 1064 | OUT | |
2024-06-13 22:27:41 UTC | 74 | OUT | |
2024-06-13 22:27:41 UTC | 14 | IN | |
2024-06-13 22:27:41 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
15 | 192.168.2.6 | 49737 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:58 UTC | 71 | OUT | |
2024-06-13 22:27:58 UTC | 249 | OUT | |
2024-06-13 22:27:58 UTC | 1064 | OUT | |
2024-06-13 22:27:58 UTC | 74 | OUT | |
2024-06-13 22:27:59 UTC | 14 | IN | |
2024-06-13 22:27:59 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
16 | 192.168.2.6 | 49738 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:27:58 UTC | 71 | OUT | |
2024-06-13 22:27:58 UTC | 249 | OUT | |
2024-06-13 22:27:58 UTC | 1064 | OUT | |
2024-06-13 22:27:58 UTC | 218 | OUT | |
2024-06-13 22:27:59 UTC | 14 | IN | |
2024-06-13 22:27:59 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.6 | 49741 | 52.98.178.210 | 443 | 4152 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:28:18 UTC | 650 | OUT | |
2024-06-13 22:28:18 UTC | 850 | IN | |
2024-06-13 22:28:18 UTC | 7886 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.6 | 49743 | 52.98.178.210 | 443 | 4152 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:28:19 UTC | 356 | OUT | |
2024-06-13 22:28:20 UTC | 995 | IN | |
2024-06-13 22:28:20 UTC | 7886 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
19 | 192.168.2.6 | 49744 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:28:26 UTC | 71 | OUT | |
2024-06-13 22:28:26 UTC | 249 | OUT | |
2024-06-13 22:28:26 UTC | 1064 | OUT | |
2024-06-13 22:28:26 UTC | 74 | OUT | |
2024-06-13 22:28:26 UTC | 14 | IN | |
2024-06-13 22:28:26 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
20 | 192.168.2.6 | 49745 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-06-13 22:28:30 UTC | 70 | OUT | |
2024-06-13 22:28:30 UTC | 249 | OUT | |
2024-06-13 22:28:30 UTC | 1063 | OUT | |
2024-06-13 22:28:30 UTC | 217 | OUT | |
2024-06-13 22:28:30 UTC | 14 | IN | |
2024-06-13 22:28:30 UTC | 58 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 18:27:07 |
Start date: | 13/06/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 18:27:12 |
Start date: | 13/06/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 18:27:14 |
Start date: | 13/06/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |