Windows
Analysis Report
https://punchbowl-sc.info/in/&d=DwMFAw
Overview
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 4284 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 332 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2096 --fi eld-trial- handle=204 0,i,181791 5720455959 8168,15964 9142065276 04190,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6552 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://punch bowl-sc.in fo/in/&d=D wMFAw" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing | ||
100% | Avira URL Cloud | phishing |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | unknown | |
punchbowl-sc.info | 188.114.96.3 | true | false | unknown | |
www.google.com | 142.250.185.164 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
true | unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
188.114.97.3 | unknown | European Union | 13335 | CLOUDFLARENETUS | false | |
142.250.185.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
188.114.96.3 | punchbowl-sc.info | European Union | 13335 | CLOUDFLARENETUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1465765 |
Start date and time: | 2024-07-02 01:57:10 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 28s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://punchbowl-sc.info/in/&d=DwMFAw |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@16/6@10/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.185.131, 142.251.168.84, 142.250.185.110, 34.104.35.123, 13.85.23.86, 93.184.221.240, 192.229.221.95, 20.242.39.171, 20.3.187.198, 142.250.185.67
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, wu.ec.azureedge.net, clientservices.googleapis.com, ctldl.windowsupdate.com, wu.azureedge.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://punchbowl-sc.info/in/&d=DwMFAw
Input | Output |
---|---|
URL: https://punchbowl-sc.info/in/&d=DwMFAw Model: Perplexity: mixtral-8x7b-instruct | {"loginform": false,"urgency": false,"captcha": false,"reasons": ["The title and text of the webpage do not contain a login form.","The text of the webpage does not create a sense of urgency.","The webpage does not contain a CAPTCHA or any other anti-robot detection mechanism."]} |
Title: 404 Not Found OCR: Not Found The requested URL was not found on this server. Additionally: a 404 Not Found error was encountered while trying to use an ErrorDument to handle the request. |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7916 |
Entropy (8bit): | 5.757199540889538 |
Encrypted: | false |
SSDEEP: | 96:hFaF/0GNejelhRJxI67BBh+PAwer98zeD7pjY6WXdZxR/XHmgMq4RoakqFYv:Xe0HCXJ7Bf+Plermzg9jfqZPo38v |
MD5: | BBBE29F81FB622C932CDBA068D10841A |
SHA1: | 9D9E82D23F7391985760F42D6F6A0D6FF7153449 |
SHA-256: | 93F96657842C6392B3A971EB9B983DAA2AF62C84AAB4D7F4C3293B46DB47271D |
SHA-512: | 0BF04A0100862F05504F6BFA10DB96BEA14B4EEEADDCAD595DBCE9CA07AEB77A65C81DC522F1AA219DBA5612B62A2B3FB63E3FFFB6F1DD72632C67C486CC3828 |
Malicious: | false |
Reputation: | low |
URL: | https://punchbowl-sc.info/cdn-cgi/challenge-platform/h/g/scripts/jsd/d2a97f6b6ec9/main.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 315 |
Entropy (8bit): | 5.0572271090563765 |
Encrypted: | false |
SSDEEP: | 6:pn0+Dy9xwGObRmEr6VnetdzRx3G0CezoFEHcLgabzjsKtgsg93wzRbKqD:J0+oxBeRmR9etdzRxGezZfCzjsKtgizR |
MD5: | A34AC19F4AFAE63ADC5D2F7BC970C07F |
SHA1: | A82190FC530C265AA40A045C21770D967F4767B8 |
SHA-256: | D5A89E26BEAE0BC03AD18A0B0D1D3D75F87C32047879D25DA11970CB5C4662A3 |
SHA-512: | 42E53D96E5961E95B7A984D9C9778A1D3BD8EE0C87B8B3B515FA31F67C2D073C8565AFC2F4B962C43668C4EFA1E478DA9BB0ECFFA79479C7E880731BC4C55765 |
Malicious: | false |
Reputation: | low |
URL: | https://punchbowl-sc.info/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1253 |
Entropy (8bit): | 5.339857169416013 |
Encrypted: | false |
SSDEEP: | 24:yjeRmfe9xvVCzjsuRpFGLnxbFGWt0u1JJSa7oRW7aRWXCunouOvTMOKFId6J39S:8eLX4/DGLrGWtpSTw2wptI8Id6a |
MD5: | DC95F64AB31A2E3554F8F06AA738C95F |
SHA1: | 2C0EB5155113148E0099447B11438D776A218798 |
SHA-256: | 9947C6057D31D7417385877ABE523655495E4E34B7F5AA8FEB2B9113D50193A1 |
SHA-512: | 97D7D57871503B20902933B6E57E53F37356F19E6281A01B1ED6689500E88D95A8016AF3F134C98AE529C3D3357B36BA2387DBD531FC37575EA84CE43F70128F |
Malicious: | false |
Reputation: | low |
URL: | https://punchbowl-sc.info/in/&d=DwMFAw |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 2, 2024 01:57:54.913321972 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:58:03.612612963 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.612683058 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:03.612771034 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.612920046 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.612941027 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:03.613015890 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.613115072 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.613152027 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:03.613318920 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:03.613344908 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.107214928 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.107541084 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.107574940 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.107765913 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.107913971 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.107933044 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.108479023 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.108556986 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.108843088 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.108921051 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.109488964 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.109566927 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.109884024 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.109970093 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.110109091 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.110125065 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.154444933 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.154444933 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.154465914 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.201396942 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.387845993 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.387942076 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.387970924 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.387998104 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.388012886 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.388031960 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.388063908 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.388098955 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.388123989 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.388353109 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.388452053 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.388537884 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.408354998 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.408401012 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.408461094 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.408828020 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.408840895 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.518759966 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Jul 2, 2024 01:58:04.523911953 CEST | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.523953915 CEST | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.549196005 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.561146975 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.561197042 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.561271906 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.561602116 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.561647892 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.561713934 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.562079906 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.562094927 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.562321901 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.562351942 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.596506119 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.886435986 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.886842012 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.886857033 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.888062000 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.888123989 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.889621019 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.889683008 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.890211105 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:04.890218019 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.909852982 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.909908056 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.909970045 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.910469055 CEST | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.910491943 CEST | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.921910048 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.921950102 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.922038078 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.922194004 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:04.922223091 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:04.943120003 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.015467882 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.015542984 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.015600920 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.016041040 CEST | 49739 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.016056061 CEST | 443 | 49739 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.016971111 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.017005920 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.017071009 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.017242908 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.017258883 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.066602945 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.066960096 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.066982985 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.067281961 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.067785978 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.067853928 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.069472075 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.071404934 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.071882963 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.071903944 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.073065042 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.073510885 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.073697090 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.073715925 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.112514973 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.116527081 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.118587017 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.208444118 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.208720922 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.208782911 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.239716053 CEST | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.239737034 CEST | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.419625044 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.420007944 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.420036077 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.421061039 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.421129942 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.421442032 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.421513081 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.421710968 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.421729088 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.427484989 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:05.427515984 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:05.427576065 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:05.428220034 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:05.428236008 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:05.475064039 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.509605885 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.510448933 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.510515928 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.510891914 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.511641026 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.511724949 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.512132883 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.548233032 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.548299074 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.548351049 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.556509018 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.559175014 CEST | 49742 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.559196949 CEST | 443 | 49742 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.564631939 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.564670086 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.564734936 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.565054893 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:05.565073013 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:05.648237944 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.649991035 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.650053978 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.662451029 CEST | 49743 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:58:05.662466049 CEST | 443 | 49743 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:58:06.038311958 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.038635969 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.038657904 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.038985968 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.039407969 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.039473057 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.039736032 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.080502987 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.083174944 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:06.083451986 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:06.083471060 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:06.085674047 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:06.085736990 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:06.178864956 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.178961992 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.179088116 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.180238008 CEST | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.180252075 CEST | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.187830925 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.187874079 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.187930107 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.187952995 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.190671921 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.190713882 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.190725088 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.196676970 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.196710110 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.196760893 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.196804047 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.196842909 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.197173119 CEST | 49746 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.197186947 CEST | 443 | 49746 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.197446108 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:06.197489977 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:06.197784901 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:06.199104071 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:06.199134111 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:06.338576078 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:06.338922024 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:06.393465996 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:06.393481970 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:06.433959961 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:06.636835098 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.636858940 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.636919975 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.637300014 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:06.637311935 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:06.879295111 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:06.879389048 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:06.887593985 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:06.887644053 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:06.887847900 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:06.943171024 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.000530005 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.044526100 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.108268976 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.148686886 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.160626888 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.160636902 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.161288023 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.177359104 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.177434921 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.177700043 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.177916050 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.177947044 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.177992105 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.193357944 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.193418980 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.193481922 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.193859100 CEST | 49747 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.193892956 CEST | 443 | 49747 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.224503994 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.265500069 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.265547037 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.265739918 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.266869068 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.266900063 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.360896111 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.360953093 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.361063004 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.365442038 CEST | 49748 | 443 | 192.168.2.4 | 188.114.96.3 |
Jul 2, 2024 01:58:07.365453005 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.414046049 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.414092064 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.414160967 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.414628029 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.414640903 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.880069971 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.880315065 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.880331993 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.881257057 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.881318092 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.882136106 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.882193089 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.882313013 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.911222935 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.911313057 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.912976980 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.913012028 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.913229942 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.914304018 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:07.927347898 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:07.927355051 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:07.960495949 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:07.974211931 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:08.014230967 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:08.014333963 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:08.014394999 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:08.033844948 CEST | 49750 | 443 | 192.168.2.4 | 188.114.97.3 |
Jul 2, 2024 01:58:08.033859015 CEST | 443 | 49750 | 188.114.97.3 | 192.168.2.4 |
Jul 2, 2024 01:58:08.190251112 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:08.190316916 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:08.190479994 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:08.191620111 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:08.191663027 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:08.191709042 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Jul 2, 2024 01:58:08.191725016 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Jul 2, 2024 01:58:15.982230902 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:15.982414007 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:58:15.982575893 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:17.936170101 CEST | 49745 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:58:17.936209917 CEST | 443 | 49745 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:04.657031059 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.657071114 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:04.657129049 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.657447100 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.657459021 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:04.664446115 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.664465904 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:04.664530039 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.664932966 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:04.664954901 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.125550032 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.125967979 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.125987053 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.126451015 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.127547026 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.127639055 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.127965927 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.129061937 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.129455090 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.129482985 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.130925894 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.130992889 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.131711960 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.131788015 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.132277966 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.132283926 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.168507099 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.178328037 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.256548882 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.256767035 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.256829023 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.257097006 CEST | 49759 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.257112026 CEST | 443 | 49759 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.258474112 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.258573055 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.258698940 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.259198904 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.259237051 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.260576963 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.260689974 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.260729074 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.260943890 CEST | 49760 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.260958910 CEST | 443 | 49760 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.261524916 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.261548042 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.261605978 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.262269020 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.262295961 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.448986053 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:05.449003935 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:05.449105024 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:05.450028896 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:05.450038910 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:05.721544981 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.722043037 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.722085953 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.722387075 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.723767996 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.723838091 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.724283934 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.725615025 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.726167917 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.726186991 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.726675987 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.727344036 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.727432966 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.727518082 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.764517069 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.768529892 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.772092104 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.851123095 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.851409912 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.851438999 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.851473093 CEST | 443 | 49761 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.851496935 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.851568937 CEST | 49761 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.854373932 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.854449987 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.854531050 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.854649067 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.854676962 CEST | 443 | 49762 | 35.190.80.1 | 192.168.2.4 |
Jul 2, 2024 01:59:05.854700089 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:05.854722977 CEST | 49762 | 443 | 192.168.2.4 | 35.190.80.1 |
Jul 2, 2024 01:59:06.097522974 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:06.097887993 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:06.097901106 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:06.098233938 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:06.098675013 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:06.098735094 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:06.147094011 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:11.959661007 CEST | 49724 | 80 | 192.168.2.4 | 199.232.210.172 |
Jul 2, 2024 01:59:11.959665060 CEST | 49723 | 80 | 192.168.2.4 | 199.232.210.172 |
Jul 2, 2024 01:59:11.964744091 CEST | 80 | 49724 | 199.232.210.172 | 192.168.2.4 |
Jul 2, 2024 01:59:11.964870930 CEST | 49724 | 80 | 192.168.2.4 | 199.232.210.172 |
Jul 2, 2024 01:59:11.965095043 CEST | 80 | 49723 | 199.232.210.172 | 192.168.2.4 |
Jul 2, 2024 01:59:11.965223074 CEST | 49723 | 80 | 192.168.2.4 | 199.232.210.172 |
Jul 2, 2024 01:59:16.030108929 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:16.030172110 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Jul 2, 2024 01:59:16.030224085 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:17.931637049 CEST | 49763 | 443 | 192.168.2.4 | 142.250.185.164 |
Jul 2, 2024 01:59:17.931667089 CEST | 443 | 49763 | 142.250.185.164 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 2, 2024 01:58:01.772555113 CEST | 53 | 60124 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:01.773078918 CEST | 53 | 63711 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:02.830538034 CEST | 53 | 52927 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:03.592087030 CEST | 53697 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:03.592402935 CEST | 49484 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:03.603871107 CEST | 53 | 53697 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:03.610450029 CEST | 53 | 49484 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.389457941 CEST | 59630 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:04.389585972 CEST | 63444 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:04.396200895 CEST | 53 | 59630 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:04.396588087 CEST | 53 | 63444 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.414947987 CEST | 56532 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:05.419379950 CEST | 58980 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:05.421714067 CEST | 53 | 56532 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:05.425968885 CEST | 53 | 58980 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:07.391602993 CEST | 53674 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:07.392189026 CEST | 53124 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:58:07.412781000 CEST | 53 | 53674 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:07.412863970 CEST | 53 | 53124 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:19.905786991 CEST | 53 | 60019 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:58:23.568286896 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Jul 2, 2024 01:58:39.058248043 CEST | 53 | 62828 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:59:00.798294067 CEST | 53 | 52441 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:59:02.014183998 CEST | 53 | 50286 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:59:04.656074047 CEST | 58595 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:59:04.656585932 CEST | 59238 | 53 | 192.168.2.4 | 1.1.1.1 |
Jul 2, 2024 01:59:04.662754059 CEST | 53 | 58595 | 1.1.1.1 | 192.168.2.4 |
Jul 2, 2024 01:59:04.662997007 CEST | 53 | 59238 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jul 2, 2024 01:58:03.592087030 CEST | 192.168.2.4 | 1.1.1.1 | 0x2496 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:58:03.592402935 CEST | 192.168.2.4 | 1.1.1.1 | 0xe595 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:58:04.389457941 CEST | 192.168.2.4 | 1.1.1.1 | 0x1c45 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:58:04.389585972 CEST | 192.168.2.4 | 1.1.1.1 | 0xf27d | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:58:05.414947987 CEST | 192.168.2.4 | 1.1.1.1 | 0xe29e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:58:05.419379950 CEST | 192.168.2.4 | 1.1.1.1 | 0x11ad | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:58:07.391602993 CEST | 192.168.2.4 | 1.1.1.1 | 0x5c35 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:58:07.392189026 CEST | 192.168.2.4 | 1.1.1.1 | 0x4552 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 2, 2024 01:59:04.656074047 CEST | 192.168.2.4 | 1.1.1.1 | 0x5f61 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 2, 2024 01:59:04.656585932 CEST | 192.168.2.4 | 1.1.1.1 | 0xb39a | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jul 2, 2024 01:58:03.603871107 CEST | 1.1.1.1 | 192.168.2.4 | 0x2496 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:03.603871107 CEST | 1.1.1.1 | 192.168.2.4 | 0x2496 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:03.610450029 CEST | 1.1.1.1 | 192.168.2.4 | 0xe595 | No error (0) | 65 | IN (0x0001) | false | |||
Jul 2, 2024 01:58:04.396200895 CEST | 1.1.1.1 | 192.168.2.4 | 0x1c45 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:05.421714067 CEST | 1.1.1.1 | 192.168.2.4 | 0xe29e | No error (0) | 142.250.185.164 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:05.425968885 CEST | 1.1.1.1 | 192.168.2.4 | 0x11ad | No error (0) | 65 | IN (0x0001) | false | |||
Jul 2, 2024 01:58:07.412781000 CEST | 1.1.1.1 | 192.168.2.4 | 0x5c35 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:07.412781000 CEST | 1.1.1.1 | 192.168.2.4 | 0x5c35 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:07.412863970 CEST | 1.1.1.1 | 192.168.2.4 | 0x4552 | No error (0) | 65 | IN (0x0001) | false | |||
Jul 2, 2024 01:58:18.970470905 CEST | 1.1.1.1 | 192.168.2.4 | 0xcf20 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:18.970470905 CEST | 1.1.1.1 | 192.168.2.4 | 0xcf20 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:32.125874043 CEST | 1.1.1.1 | 192.168.2.4 | 0xf6f0 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:32.125874043 CEST | 1.1.1.1 | 192.168.2.4 | 0xf6f0 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:54.128988981 CEST | 1.1.1.1 | 192.168.2.4 | 0xe15b | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 2, 2024 01:58:54.128988981 CEST | 1.1.1.1 | 192.168.2.4 | 0xe15b | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:59:04.662754059 CEST | 1.1.1.1 | 192.168.2.4 | 0x5f61 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Jul 2, 2024 01:59:13.968008995 CEST | 1.1.1.1 | 192.168.2.4 | 0x775e | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 2, 2024 01:59:13.968008995 CEST | 1.1.1.1 | 192.168.2.4 | 0x775e | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49736 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:04 UTC | 672 | OUT | |
2024-07-01 23:58:04 UTC | 1355 | IN | |
2024-07-01 23:58:04 UTC | 32 | IN | |
2024-07-01 23:58:04 UTC | 1369 | IN | |
2024-07-01 23:58:04 UTC | 1369 | IN | |
2024-07-01 23:58:04 UTC | 1369 | IN | |
2024-07-01 23:58:04 UTC | 1369 | IN | |
2024-07-01 23:58:04 UTC | 1369 | IN | |
2024-07-01 23:58:04 UTC | 1002 | IN | |
2024-07-01 23:58:04 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49735 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:04 UTC | 1128 | OUT | |
2024-07-01 23:58:04 UTC | 22 | OUT | |
2024-07-01 23:58:04 UTC | 1296 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49739 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:04 UTC | 548 | OUT | |
2024-07-01 23:58:05 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49740 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:05 UTC | 1104 | OUT | |
2024-07-01 23:58:06 UTC | 749 | IN | |
2024-07-01 23:58:06 UTC | 620 | IN | |
2024-07-01 23:58:06 UTC | 640 | IN | |
2024-07-01 23:58:06 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49741 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:05 UTC | 861 | OUT | |
2024-07-01 23:58:05 UTC | 887 | IN | |
2024-07-01 23:58:05 UTC | 322 | IN | |
2024-07-01 23:58:05 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49742 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:05 UTC | 787 | OUT | |
2024-07-01 23:58:05 UTC | 654 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49743 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:05 UTC | 488 | OUT | |
2024-07-01 23:58:05 UTC | 398 | OUT | |
2024-07-01 23:58:05 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49746 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:06 UTC | 941 | OUT | |
2024-07-01 23:58:06 UTC | 632 | IN | |
2024-07-01 23:58:06 UTC | 737 | IN | |
2024-07-01 23:58:06 UTC | 1369 | IN | |
2024-07-01 23:58:06 UTC | 1369 | IN | |
2024-07-01 23:58:06 UTC | 1369 | IN | |
2024-07-01 23:58:06 UTC | 1369 | IN | |
2024-07-01 23:58:06 UTC | 1369 | IN | |
2024-07-01 23:58:06 UTC | 334 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49747 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:06 UTC | 161 | OUT | |
2024-07-01 23:58:07 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49748 | 188.114.96.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:07 UTC | 1018 | OUT | |
2024-07-01 23:58:07 UTC | 15814 | OUT | |
2024-07-01 23:58:07 UTC | 976 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49750 | 188.114.97.3 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:07 UTC | 790 | OUT | |
2024-07-01 23:58:08 UTC | 710 | IN | |
2024-07-01 23:58:08 UTC | 7 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49749 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:58:07 UTC | 239 | OUT | |
2024-07-01 23:58:08 UTC | 515 | IN | |
2024-07-01 23:58:08 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49759 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:59:05 UTC | 548 | OUT | |
2024-07-01 23:59:05 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49760 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:59:05 UTC | 548 | OUT | |
2024-07-01 23:59:05 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49761 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:59:05 UTC | 488 | OUT | |
2024-07-01 23:59:05 UTC | 879 | OUT | |
2024-07-01 23:59:05 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.4 | 49762 | 35.190.80.1 | 443 | 332 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-01 23:59:05 UTC | 488 | OUT | |
2024-07-01 23:59:05 UTC | 443 | OUT | |
2024-07-01 23:59:05 UTC | 168 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 19:57:57 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 19:57:59 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 19:58:03 |
Start date: | 01/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |