Windows
Analysis Report
http://www.preferredfederalretirement.com/lists/lt.php?tid=cU9XVlEFBVFdBx4CVFNVFAEFB1UeAwsPUhgLBABTU1YJAlICUAdJVlFTVVUGBFcUUAdUVB5VX1pVGABXUQ4cUwpQUwZdUQcHUgZXSgIEAlhWAVIDHlVYC1UYDFUFBRxaD1dUGlMGDAdSVAoCBgIFXw
Overview
General Information
Detection
Score: | 0 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 4080 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 1668 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2372 --fi eld-trial- handle=228 8,i,181756 3019245934 4383,18995 4944580095 6136,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6428 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://www.pr eferredfed eralretire ment.com/l ists/lt.ph p?tid=cU9X VlEFBVFdBx 4CVFNVFAEF B1UeAwsPUh gLBABTU1YJ AlICUAdJVl FTVVUGBFcU UAdUVB5VX1 pVGABXUQ4c UwpQUwZdUQ cHUgZXSgIE AlhWAVIDHl VYC1UYDFUF BRxaD1dUGl MGDAdSVAoC BgIFXw" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
www.preferredfederalretirement.com | 3.232.182.1 | true | false | unknown | |
federalfinancialnewsnetwork.net | 74.208.236.15 | true | false | unknown | |
www.google.com | 142.250.184.196 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false | unknown | ||
false |
| unknown | |
false |
| unknown | |
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.184.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
3.232.182.1 | www.preferredfederalretirement.com | United States | 14618 | AMAZON-AESUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
74.208.236.15 | federalfinancialnewsnetwork.net | United States | 8560 | ONEANDONE-ASBrauerstrasse48DE | false |
IP |
---|
192.168.2.16 |
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1465762 |
Start date and time: | 2024-07-02 01:48:20 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 2m 59s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://www.preferredfederalretirement.com/lists/lt.php?tid=cU9XVlEFBVFdBx4CVFNVFAEFB1UeAwsPUhgLBABTU1YJAlICUAdJVlFTVVUGBFcUUAdUVB5VX1pVGABXUQ4cUwpQUwZdUQcHUgZXSgIEAlhWAVIDHlVYC1UYDFUFBRxaD1dUGlMGDAdSVAoCBgIFXw |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean0.win@23/20@10/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.23.99, 142.250.186.46, 74.125.133.84, 34.104.35.123, 142.250.181.234, 142.250.186.74, 216.58.206.42, 216.58.212.170, 142.250.186.42, 216.58.212.138, 142.250.185.202, 142.250.186.170, 142.250.186.138, 172.217.23.106, 142.250.185.138, 216.58.206.74, 142.250.185.234, 142.250.185.106, 142.250.185.170, 142.250.185.74, 20.12.23.50, 93.184.221.240, 192.229.221.95, 13.85.23.206, 13.95.31.18, 142.250.185.67
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, wu.ec.azureedge.net, clientservices.googleapis.com, ctldl.windowsupdate.com, wu.azureedge.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: http://www.preferredfederalretirement.com/lists/lt.php?tid=cU9XVlEFBVFdBx4CVFNVFAEFB1UeAwsPUhgLBABTU1YJAlICUAdJVlFTVVUGBFcUUAdUVB5VX1pVGABXUQ4cUwpQUwZdUQcHUgZXSgIEAlhWAVIDHlVYC1UYDFUFBRxaD1dUGlMGDAdSVAoCBgIFXw
Input | Output |
---|---|
URL: https://federalfinancialnewsnetwork.net/machform/view.php?id=14648 Model: Perplexity: mixtral-8x7b-instruct | {"loginform": false,"urgency": false,"captcha": false,"reasons": ["The webpage does not contain a login form, as there are no explicit requests for sensitive information such as passwords, email addresses, usernames, phone numbers or credit card numbers.","The text does not create a sense of urgency, as there are no phrases that suggest immediate action is required or that there are limited time offers.","The webpage does not contain a CAPTCHA or any other anti-robot detection mechanism."]} |
Title: Federal Employee eBook Request Form OCR: MachForm Federal Employee eBook Request Form Please complete the form below and we will email you our eBook First Name * Last Name * State * Email * Phone * Extension if any Age * Cell Phone (optional) Submit |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 8950 |
Entropy (8bit): | 5.141392948422684 |
Encrypted: | false |
SSDEEP: | 192:k1O/B1wfKl1nivxFW4TtoEeXXT5x5Df53lWsSJbRTzESIzLGdxgecrV9jzyiGDsZ:5HozYYF2v |
MD5: | 430EFBA4D0274A2CA17CDF87E81B3B54 |
SHA1: | 623B0EE401201078D2B78A6031004EB2035F9364 |
SHA-256: | F033C5ABEF82C0843B366B9FB1482167F6809C51ADFE4BEB610671BBC5E65C57 |
SHA-512: | 04D0F45D47499F93BA2C2807F50294B2965BE576D163DB0E4234B2634CBECCD7932E8F49D78E169A0853EF416D9178EF12F6B6FCABC15D3B209836D4FB2FB0B4 |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/view.mobile.css?bdffc4 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 40997 |
Entropy (8bit): | 5.113153571834635 |
Encrypted: | false |
SSDEEP: | 768:8gehqEvSQHB99OyKwMQ4i72mH5guT5JbijkrDASg7y8DQemHFgymTpHl:An7KwMYjHJ5Jbijkrkz78emHFgymTFl |
MD5: | 9D3AC0A26061CB0D6979FF7B27FEB281 |
SHA1: | 6AB8A3A530E3E81C0C1CBF83F66ECDE277B4A202 |
SHA-256: | 01A98D8F1C110708E03C959CAB5ED0BFAE07CB4C6FBDE366DDDDAC1CA71EEE4B |
SHA-512: | 16D3C54974AAA00E4622F02581A5D1180986597E2A5933437246E988E5B260FBE5FCF2B831A6CF0FA388E7BF0D2131CEFB4AD9341B8F2DB4E80B5AFEF3D4305A |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/js/jquery-ui-1.12/effect.js?bdffc4 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1999 |
Entropy (8bit): | 7.375558516016921 |
Encrypted: | false |
SSDEEP: | 48:yiwitNn2cuKaJ3ClYnrE2jURpFe2+kDW6z1+kZmdVV:yU2DK1lYnrE2KpL+kDWLkcdVV |
MD5: | 8F217500ED775DBAE67E47A74ABB7DD4 |
SHA1: | EF741E4385F28460D99F9EF8AF3F1C42DCF8C794 |
SHA-256: | C93D16C41461795EB205A1C08BD089AC97842F4AA8924E7E7B699274B52957FC |
SHA-512: | 9409B8AD74B48AD8CED340444A6BCA5A16BD010105D6D0BFFA78542A15F734BF6B29ED40D994A5460806F9C2A4C923D1C6788208611CB7DC1923FA672A863C25 |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/images/machform.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2994 |
Entropy (8bit): | 7.932735144101721 |
Encrypted: | false |
SSDEEP: | 48:ksGSSX+aW7kN55XwzBhbzaTU6kOFTKVYdM/M1cGW19/n60vJpyTMVJAKzyu:ksBy+TkNPAXbeTUUBYYdl1qvfyYQKz |
MD5: | C956A6B9EE268D052C6D24FE7C9F2FD5 |
SHA1: | 53CF394849D41652C135A7BDD0D73DAA3D2FEDF2 |
SHA-256: | 5D15C34BCAB3EC651017CADE9933E95C42C71BA23E7385444AFDF102123A19D4 |
SHA-512: | 2A2621E641B9DA2DD91A78D2CFD4600E023C73E512FFE6F3AA5A59CBC6A297E5C3AC217B483E7E3D13A42AF2C6671E7AE2937B66D1A7F536A14045BED762828D |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/images/form_resources/grey-mild.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 52658 |
Entropy (8bit): | 5.405929440830425 |
Encrypted: | false |
SSDEEP: | 768:XDFvwm4SMAFDaAw/XkZLxuvuAKOZndtMT3zTwZbCOBf:V5K/XkZLxuvuAKOZndtMT3zTwCO5 |
MD5: | F4F92AD193314E83D409EDD386F47AFB |
SHA1: | 19E66850D04681731C150A1B44074304BFA30397 |
SHA-256: | C17C8D456B4C1B087D55DF661E8E2080C41D895A8992B3AB5A82388CDEC66A72 |
SHA-512: | 24AED520D2A95F6EFD4B65EA29853B248263B673026F3E5E978D8230A1CCD5FE1CC8E075813E74553FDB3CA6E931EC2B1FECFD01465C1BE6CB5E21EC413AED9E |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/data/form_14648/css/view.css?bdffc4 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 220 |
Entropy (8bit): | 5.104339282284394 |
Encrypted: | false |
SSDEEP: | 6:r4jHE3d0aoN06TyaWop1fzLzKWuYb3NG2upROtGn:rUE3YfeyzLzKWVNG2ootGn |
MD5: | B83B37B477E3F4F87859968CFD7DBC1D |
SHA1: | D7562F6AED1C7EBE63996E66E9B342203DB68D75 |
SHA-256: | 532EB46F1142E3CB14EA6AE00364CE5795153D470D1A118EB91452CF16D33B02 |
SHA-512: | F0DE3EEC0BC04BC35911BAFCB2D4B5727446E660FDD1BC32D190F9963B976938875C380510F2D6E1F2253AF5047DEA8AA2E2ACC42A22A73171B81A2BB8C79C6A |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISawn--zopGQyQWhIFDSIFcZUSBQ062hxcEgUNDdEfTRIFDaRs3FoSBQ0dSf29EgUN8JCGbBIFDagfjQgSBQ1zUvZBEgUN4Q8jbxIFDWTjXNYSBQ2JWnQAEgUN7lysCBIFDV-WWEsSBQ36w4if?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2994 |
Entropy (8bit): | 7.932735144101721 |
Encrypted: | false |
SSDEEP: | 48:ksGSSX+aW7kN55XwzBhbzaTU6kOFTKVYdM/M1cGW19/n60vJpyTMVJAKzyu:ksBy+TkNPAXbeTUUBYYdl1qvfyYQKz |
MD5: | C956A6B9EE268D052C6D24FE7C9F2FD5 |
SHA1: | 53CF394849D41652C135A7BDD0D73DAA3D2FEDF2 |
SHA-256: | 5D15C34BCAB3EC651017CADE9933E95C42C71BA23E7385444AFDF102123A19D4 |
SHA-512: | 2A2621E641B9DA2DD91A78D2CFD4600E023C73E512FFE6F3AA5A59CBC6A297E5C3AC217B483E7E3D13A42AF2C6671E7AE2937B66D1A7F536A14045BED762828D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 23523 |
Entropy (8bit): | 5.071969940951042 |
Encrypted: | false |
SSDEEP: | 384:v5dTLX6EZ/NcPwZ3sitQViUi/sycGuU4/gOIz5YcJc3JyDsY2q:vvLKEDawZ3sitQViUi/sycNUn3KcJ7X |
MD5: | 4DAC285DDACB0E7C8EFE38DB9CADA4DA |
SHA1: | 093C915F23CB0435CB883C1C986ACF32C08FE069 |
SHA-256: | BC4852F6A3956AFBD3EE6B8EECB9E3C4A81BBB1BF493AF5F2D69ABC57D36B68E |
SHA-512: | 8E12296FE6BE4143E410854E9933480867A714E9143B0F7945891527BC4BABD55753A20777645418996FA57991457FBCF87E07AC3EDF43CFD846E110CFB142F1 |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/view.js?bdffc4 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1271 |
Entropy (8bit): | 4.374523692836198 |
Encrypted: | false |
SSDEEP: | 24:hYUYjMjIONtU3c2N8v5K+Riff0R/womM7xtE/bN2Oc8:uM8/sO8v4+kiwtmE/b1 |
MD5: | 29811A4928BFC805CB6BA88E3D030540 |
SHA1: | E9B28C51AD902A7C7F23B9B5AB189CA8647D9B3D |
SHA-256: | AB5FC6E036DD1743C60B18D7627BA59AF68B36D6E98BE3C973718234983A2A3E |
SHA-512: | F4F713D3110DBCC41317022CDC88391270170441DEB3BD9AC41480F815829D1E9CDB69D9B216C8857901D7DDC290FC21E6384B97A52E8F07D576F521093D5246 |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 81678 |
Entropy (8bit): | 5.2918747029661475 |
Encrypted: | false |
SSDEEP: | 1536:DjExXUqJnxDjoXEZxkMV4QYSt0zvDL6gP3h8cApwEIOzVTB/UjPazMdLiX4mF:DIh8GgP3hujzwbhd3k |
MD5: | A64E7780F05A830761EC3E36F0C90D21 |
SHA1: | 81E04530ED24F31F1432FB0A72ADB29BF9E944AF |
SHA-256: | 9FA16BF43ADAB83925068CFE9B80E9B3EF6C3F264791429FA10E3D32C2D51E14 |
SHA-512: | 7653D88C3D10093AEB7DBAC693835EF6F6BBFD2813204A959CAFB4F430A50F81B4D938836C2708E7C3A9EC9851BF236C6AB033F737453BACE708F03CB6BA26D8 |
Malicious: | false |
Reputation: | low |
URL: | https://federalfinancialnewsnetwork.net/machform/js/jquery.min.js?bdffc4 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1999 |
Entropy (8bit): | 7.375558516016921 |
Encrypted: | false |
SSDEEP: | 48:yiwitNn2cuKaJ3ClYnrE2jURpFe2+kDW6z1+kZmdVV:yU2DK1lYnrE2KpL+kDWLkcdVV |
MD5: | 8F217500ED775DBAE67E47A74ABB7DD4 |
SHA1: | EF741E4385F28460D99F9EF8AF3F1C42DCF8C794 |
SHA-256: | C93D16C41461795EB205A1C08BD089AC97842F4AA8924E7E7B699274B52957FC |
SHA-512: | 9409B8AD74B48AD8CED340444A6BCA5A16BD010105D6D0BFFA78542A15F734BF6B29ED40D994A5460806F9C2A4C923D1C6788208611CB7DC1923FA672A863C25 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 2, 2024 01:49:03.094284058 CEST | 49678 | 443 | 192.168.2.4 | 104.46.162.224 |
Jul 2, 2024 01:49:04.469172955 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:49:13.650310040 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:13.650767088 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:13.655102968 CEST | 80 | 49735 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:13.655528069 CEST | 80 | 49736 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:13.655631065 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:13.655631065 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:13.658394098 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:13.663145065 CEST | 80 | 49736 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.070146084 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:49:14.135552883 CEST | 80 | 49736 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.177566051 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.193355083 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.193392992 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.193451881 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.194185972 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.194200993 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.808696985 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.809209108 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.809243917 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.810293913 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.810364962 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.811734915 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.811803102 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.812319994 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:14.812328100 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.858364105 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:15.151716948 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:15.151799917 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:15.151856899 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:15.154328108 CEST | 49738 | 443 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:15.154350042 CEST | 443 | 49738 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:15.354427099 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:15.354468107 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:15.354533911 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:15.355088949 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:15.355103016 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.048818111 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.076311111 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.076327085 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.078022003 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.078088999 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.084598064 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.084686041 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.085485935 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.085494041 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.139100075 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.307003975 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:16.307043076 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:16.307219028 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:16.311650038 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:16.311666965 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:16.513401031 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:16.513437986 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:16.513535023 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:16.515764952 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:16.515779018 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527520895 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527556896 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527575970 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527652979 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.527664900 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527797937 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.527803898 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.527848005 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.529329062 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.529336929 CEST | 443 | 49740 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.529365063 CEST | 49740 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.577956915 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.577971935 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.578126907 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.579679966 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.579765081 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.579840899 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.579862118 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.579900026 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.580161095 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.580739021 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.580749035 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.580852032 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.581990957 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.581994057 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.582004070 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.582017899 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.582340956 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.582379103 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.582413912 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.582658052 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.582679033 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.583000898 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.583009958 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:16.583013058 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.583038092 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:16.967709064 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:16.971656084 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:16.971673012 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:16.973459959 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:16.973619938 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:17.169161081 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.169244051 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:17.171838045 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:17.171847105 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.172080040 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.220331907 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:17.251568079 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.252177954 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.252192974 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.252676010 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.253349066 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.253431082 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.253684044 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.255110025 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.255462885 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.255491972 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.255671978 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.255856991 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.255902052 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.256381989 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.256521940 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.256577015 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.256939888 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.257035017 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.257725954 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.257786036 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.258213997 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.258255959 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.258265972 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.258280993 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.258658886 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.258667946 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.259670973 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.259723902 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.260288000 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.260349035 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.260440111 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.260447979 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.264498949 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.290333986 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.290585995 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.290622950 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.292068005 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.292133093 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.292684078 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.292768955 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.292962074 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.292979002 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.300497055 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.300509930 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.306265116 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.306265116 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.343872070 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.390073061 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:17.390307903 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:17.396281958 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.396311998 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.396332026 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.396364927 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.396378040 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.396400928 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.396426916 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.399311066 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.399338961 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.399362087 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.399395943 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.399420977 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.399442911 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.399471045 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.399516106 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.407298088 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407320023 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407327890 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407341003 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407366991 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.407370090 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407393932 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.407414913 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.407414913 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.407433987 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.410352945 CEST | 49744 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.410382032 CEST | 443 | 49744 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413439989 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413458109 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413465977 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413475037 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413496017 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413513899 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.413522959 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.413542986 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.413563013 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.432461977 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:17.432476997 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:17.473938942 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:17.652144909 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652220011 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652270079 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:17.652637959 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652652025 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652683973 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652695894 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.652750969 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.652755976 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.652796984 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.652890921 CEST | 49742 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:17.652904987 CEST | 443 | 49742 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653105974 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653116941 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653155088 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653171062 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653208017 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653223991 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653249025 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653620005 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653624058 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653634071 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653636932 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653673887 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653712988 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653712988 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653712988 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653722048 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653733969 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.653752089 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653786898 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.653860092 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.654381037 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.654414892 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.654441118 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.654448986 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.654448986 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.654501915 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.654509068 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.654511929 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.654565096 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656008959 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656037092 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656047106 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656074047 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656083107 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656091928 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656085014 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656151056 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656151056 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656196117 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656219959 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656250954 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656265020 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656289101 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656299114 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656337976 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656924009 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656965017 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.656970978 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.656991959 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.657011986 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.657042980 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.658588886 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.658605099 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.658641100 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.658651114 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.658685923 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.658698082 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.661351919 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.661381006 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.661407948 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.661416054 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.661454916 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.662131071 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.662175894 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.662216902 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.688668966 CEST | 49745 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.688709974 CEST | 443 | 49745 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.700548887 CEST | 49743 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.700561047 CEST | 443 | 49743 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.715050936 CEST | 49746 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.715071917 CEST | 443 | 49746 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.739475965 CEST | 49747 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.739523888 CEST | 443 | 49747 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.976814032 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.976866007 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.976923943 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.977763891 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.977818966 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.977889061 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.980562925 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.980578899 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:17.981247902 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:17.981281996 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.073539972 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.073568106 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.073627949 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.074681997 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.074695110 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.649322033 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.649610043 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.649633884 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.650103092 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.650513887 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.650513887 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.650530100 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.650608063 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.665077925 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.665291071 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.665323973 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.665663004 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.666111946 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.666111946 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.666165113 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.666220903 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.705883980 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.705889940 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.719201088 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.719269991 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.720532894 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.720542908 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.720748901 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.721865892 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.768496037 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.788103104 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.788127899 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.788233042 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.788249969 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.788472891 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.788532972 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.788614988 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.789046049 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.789057016 CEST | 443 | 49748 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.789084911 CEST | 49748 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.809230089 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.809252024 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.809322119 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.809349060 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.809834957 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.809883118 CEST | 443 | 49749 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:18.809951067 CEST | 49749 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:18.997719049 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.997767925 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:18.998583078 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.998583078 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.998608112 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:49:18.998625040 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:49:19.109196901 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.109239101 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.109535933 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.111654997 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.111670017 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.138315916 CEST | 80 | 49736 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:19.138367891 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:19.202406883 CEST | 49736 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:19.207094908 CEST | 80 | 49736 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:49:19.276813984 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.276871920 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.276921988 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.276951075 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.276973963 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.277024984 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.277333021 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.277365923 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.277506113 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.277530909 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.854459047 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.855329037 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.855355978 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.856838942 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.856892109 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.857939959 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.858033895 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.858130932 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.858139038 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.908315897 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:19.954092979 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:19.997251987 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.000436068 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.000478983 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.000632048 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.000650883 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.001784086 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.001856089 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.002515078 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.002594948 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.002644062 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.003087997 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.003163099 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.004026890 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.004045010 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.004731894 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.004865885 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.008294106 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.008469105 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.008477926 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.009583950 CEST | 49752 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.009604931 CEST | 443 | 49752 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.048954010 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.048954010 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.048999071 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.095818043 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.178352118 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.178375006 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.178438902 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.178462029 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.178481102 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.178527117 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.178559065 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.178965092 CEST | 49753 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.178996086 CEST | 443 | 49753 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.184660912 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.184708118 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.184856892 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:20.184916973 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.185529947 CEST | 49754 | 443 | 192.168.2.4 | 74.208.236.15 |
Jul 2, 2024 01:49:20.185550928 CEST | 443 | 49754 | 74.208.236.15 | 192.168.2.4 |
Jul 2, 2024 01:49:25.194492102 CEST | 49672 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:49:25.194529057 CEST | 443 | 49672 | 173.222.162.32 | 192.168.2.4 |
Jul 2, 2024 01:49:25.195664883 CEST | 49672 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:49:25.195676088 CEST | 443 | 49672 | 173.222.162.32 | 192.168.2.4 |
Jul 2, 2024 01:49:27.022962093 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:27.023032904 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:27.023080111 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:28.158607960 CEST | 49741 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:49:28.158631086 CEST | 443 | 49741 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:49:35.182300091 CEST | 57291 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:35.187191963 CEST | 53 | 57291 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:35.187253952 CEST | 57291 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:35.187338114 CEST | 57291 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:35.192181110 CEST | 53 | 57291 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:35.674848080 CEST | 53 | 57291 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:35.695805073 CEST | 57291 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:35.703424931 CEST | 53 | 57291 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:35.703483105 CEST | 57291 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:58.655909061 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:49:58.660778046 CEST | 80 | 49735 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:50:14.158844948 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:50:14.469786882 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:50:14.659475088 CEST | 80 | 49735 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:50:14.659574032 CEST | 49735 | 80 | 192.168.2.4 | 3.232.182.1 |
Jul 2, 2024 01:50:14.660455942 CEST | 80 | 49735 | 3.232.182.1 | 192.168.2.4 |
Jul 2, 2024 01:50:16.302474022 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:16.302525043 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:16.305931091 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:16.306498051 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:16.306524992 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:16.949738979 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:16.953741074 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:16.953779936 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:16.954118013 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:16.959727049 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:16.959795952 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:17.014982939 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:22.030844927 CEST | 49723 | 80 | 192.168.2.4 | 2.16.164.97 |
Jul 2, 2024 01:50:22.035878897 CEST | 80 | 49723 | 2.16.164.97 | 192.168.2.4 |
Jul 2, 2024 01:50:22.035940886 CEST | 49723 | 80 | 192.168.2.4 | 2.16.164.97 |
Jul 2, 2024 01:50:26.873363018 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:26.873428106 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Jul 2, 2024 01:50:26.873893023 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:28.162863970 CEST | 57295 | 443 | 192.168.2.4 | 142.250.184.196 |
Jul 2, 2024 01:50:28.162872076 CEST | 443 | 57295 | 142.250.184.196 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 2, 2024 01:49:11.846658945 CEST | 53 | 62926 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:11.847990036 CEST | 53 | 65300 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:12.932938099 CEST | 53 | 55048 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:13.598752975 CEST | 50408 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:13.598892927 CEST | 63085 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:13.645967007 CEST | 53 | 50408 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:13.648850918 CEST | 53 | 63085 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.138432980 CEST | 55178 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:14.138562918 CEST | 65178 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:14.192823887 CEST | 53 | 65178 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:14.192924976 CEST | 53 | 55178 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:15.159252882 CEST | 56467 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:15.159864902 CEST | 62467 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:15.336738110 CEST | 53 | 62467 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:15.353770018 CEST | 53 | 56467 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:16.254327059 CEST | 58610 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:16.254920959 CEST | 54661 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:16.304627895 CEST | 53 | 58610 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:16.304727077 CEST | 53 | 54661 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:17.986221075 CEST | 53 | 58351 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:19.222151995 CEST | 61509 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:19.222487926 CEST | 52452 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:49:19.236243010 CEST | 53 | 61509 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:19.279301882 CEST | 53 | 52452 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:30.117383003 CEST | 53 | 53857 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:49:33.615220070 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Jul 2, 2024 01:49:35.181770086 CEST | 53 | 51207 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:50:11.801306009 CEST | 53 | 51630 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Jul 2, 2024 01:49:19.279366970 CEST | 192.168.2.4 | 1.1.1.1 | c23e | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jul 2, 2024 01:49:13.598752975 CEST | 192.168.2.4 | 1.1.1.1 | 0x6959 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:49:13.598892927 CEST | 192.168.2.4 | 1.1.1.1 | 0x38f1 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:49:14.138432980 CEST | 192.168.2.4 | 1.1.1.1 | 0xc907 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:49:14.138562918 CEST | 192.168.2.4 | 1.1.1.1 | 0x2d79 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:49:15.159252882 CEST | 192.168.2.4 | 1.1.1.1 | 0x484b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:49:15.159864902 CEST | 192.168.2.4 | 1.1.1.1 | 0x2927 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:49:16.254327059 CEST | 192.168.2.4 | 1.1.1.1 | 0xb98a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:49:16.254920959 CEST | 192.168.2.4 | 1.1.1.1 | 0xd871 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:49:19.222151995 CEST | 192.168.2.4 | 1.1.1.1 | 0xb90c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:49:19.222487926 CEST | 192.168.2.4 | 1.1.1.1 | 0xab98 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jul 2, 2024 01:49:13.645967007 CEST | 1.1.1.1 | 192.168.2.4 | 0x6959 | No error (0) | 3.232.182.1 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:14.192924976 CEST | 1.1.1.1 | 192.168.2.4 | 0xc907 | No error (0) | 3.232.182.1 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:15.353770018 CEST | 1.1.1.1 | 192.168.2.4 | 0x484b | No error (0) | 74.208.236.15 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:16.304627895 CEST | 1.1.1.1 | 192.168.2.4 | 0xb98a | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:16.304727077 CEST | 1.1.1.1 | 192.168.2.4 | 0xd871 | No error (0) | 65 | IN (0x0001) | false | |||
Jul 2, 2024 01:49:19.236243010 CEST | 1.1.1.1 | 192.168.2.4 | 0xb90c | No error (0) | 74.208.236.15 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:27.919962883 CEST | 1.1.1.1 | 192.168.2.4 | 0x1117 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 2, 2024 01:49:27.919962883 CEST | 1.1.1.1 | 192.168.2.4 | 0x1117 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49736 | 3.232.182.1 | 80 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jul 2, 2024 01:49:13.658394098 CEST | 616 | OUT | |
Jul 2, 2024 01:49:14.135552883 CEST | 879 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49735 | 3.232.182.1 | 80 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jul 2, 2024 01:49:58.655909061 CEST | 6 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49738 | 3.232.182.1 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:14 UTC | 844 | OUT | |
2024-07-01 23:49:15 UTC | 512 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49740 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:16 UTC | 700 | OUT | |
2024-07-01 23:49:16 UTC | 470 | IN | |
2024-07-01 23:49:16 UTC | 6003 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49742 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 161 | OUT | |
2024-07-01 23:49:17 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49743 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 700 | OUT | |
2024-07-01 23:49:17 UTC | 234 | IN | |
2024-07-01 23:49:17 UTC | 16150 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 3740 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49744 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 687 | OUT | |
2024-07-01 23:49:17 UTC | 233 | IN | |
2024-07-01 23:49:17 UTC | 8950 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49746 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 674 | OUT | |
2024-07-01 23:49:17 UTC | 242 | IN | |
2024-07-01 23:49:17 UTC | 16142 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49745 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 685 | OUT | |
2024-07-01 23:49:17 UTC | 241 | IN | |
2024-07-01 23:49:17 UTC | 16143 | IN | |
2024-07-01 23:49:17 UTC | 16384 | IN | |
2024-07-01 23:49:17 UTC | 8470 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49747 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:17 UTC | 665 | OUT | |
2024-07-01 23:49:17 UTC | 241 | IN | |
2024-07-01 23:49:17 UTC | 16143 | IN | |
2024-07-01 23:49:17 UTC | 7380 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49748 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:18 UTC | 764 | OUT | |
2024-07-01 23:49:18 UTC | 233 | IN | |
2024-07-01 23:49:18 UTC | 2994 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49749 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:18 UTC | 748 | OUT | |
2024-07-01 23:49:18 UTC | 233 | IN | |
2024-07-01 23:49:18 UTC | 1999 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49751 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:18 UTC | 239 | OUT | |
2024-07-01 23:49:18 UTC | 515 | IN | |
2024-07-01 23:49:18 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49752 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:19 UTC | 713 | OUT | |
2024-07-01 23:49:19 UTC | 168 | IN | |
2024-07-01 23:49:19 UTC | 1271 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49753 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:19 UTC | 468 | OUT | |
2024-07-01 23:49:20 UTC | 233 | IN | |
2024-07-01 23:49:20 UTC | 2994 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49754 | 74.208.236.15 | 443 | 1668 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:49:20 UTC | 452 | OUT | |
2024-07-01 23:49:20 UTC | 233 | IN | |
2024-07-01 23:49:20 UTC | 1999 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 19:49:06 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 19:49:10 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 19:49:12 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |