Windows
Analysis Report
http://www.cajamar-soporte.com
Overview
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 1268 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) chrome.exe (PID: 3816 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2036 --fi eld-trial- handle=196 8,i,416802 8207707315 712,128341 2509247639 1758,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
chrome.exe (PID: 4420 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://www.ca jamar-sopo rte.com" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | unknown | |
www.google.com | 142.250.186.164 | true | false | unknown | |
www.cajamar-soporte.com | 188.114.96.3 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
188.114.96.3 | www.cajamar-soporte.com | European Union | 13335 | CLOUDFLARENETUS | false | |
142.250.186.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.8 |
192.168.2.9 |
192.168.2.6 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1466880 |
Start date and time: | 2024-07-03 14:33:57 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 0s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://www.cajamar-soporte.com |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.win@19/5@8/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.184.227, 142.250.186.110, 64.233.184.84, 34.104.35.123, 52.165.165.26, 192.229.221.95, 13.85.23.206, 93.184.221.240, 52.165.164.15, 2.16.100.168, 88.221.110.91, 142.250.186.163
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, clientservices.googleapis.com, a767.dspw65.akamai.net, wu.azureedge.net, clients2.google.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, sls.update.microsoft.com, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net, client.wns.windows.com, fs.microsoft.com, accounts.google.com, ctldl.windowsupdate.com.delivery.microsoft.com, wu.ec.azureedge.net, ctldl.windowsupdate.com, 6.d.a.8.b.e.f.b.0.0.0.0.0.0.0.0.4.0.0.a.0.0.1.f.1.1.1.0.1.0.a.2.ip6.arpa, fe3cr.delivery.mp.microsoft.com, download.windowsupdate.com.edgesuite.net, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: http://www.cajamar-soporte.com
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping1268_433936625\LICENSE
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1558 |
Entropy (8bit): | 5.11458514637545 |
Encrypted: | false |
SSDEEP: | 48:OBOCrYJ4rYJVwUCLHDy43HV713XEyMmZ3teTHn:LCrYJ4rYJVwUCHZ3Z13XtdUTH |
MD5: | EE002CB9E51BB8DFA89640A406A1090A |
SHA1: | 49EE3AD535947D8821FFDEB67FFC9BC37D1EBBB2 |
SHA-256: | 3DBD2C90050B652D63656481C3E5871C52261575292DB77D4EA63419F187A55B |
SHA-512: | D1FDCC436B8CA8C68D4DC7077F84F803A535BF2CE31D9EB5D0C466B62D6567B2C59974995060403ED757E92245DB07E70C6BDDBF1C3519FED300CC5B9BF9177C |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping1268_433936625\_metadata\verified_contents.json
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1864 |
Entropy (8bit): | 6.0157277397082884 |
Encrypted: | false |
SSDEEP: | 48:p/hUI15ul1AdIj7ak+wsdrtra1cuUX0eYDAA98gkXhVdEXeXF:RnQQIj7aL11ayjgDzUSXYF |
MD5: | 4CBD807685B88243CC9EA3E4B60FE8FD |
SHA1: | B02FB2A85ECBEA61424F9F14A32590FA2041C068 |
SHA-256: | 8E9B53C9DCD85F58E64164CEAF4E327B52B88C98946EF1067B112B3C9BDC5FEE |
SHA-512: | 61B4E345BB2AE6BD8907C1D23582709D21089504B23497EC0906D489C096CE981F31CE0D2A2FB5B97E3E5B8D71B36ECC1B0393F55AE9007D36D790FA0B7C4161 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping1268_433936625\manifest.fingerprint
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 66 |
Entropy (8bit): | 3.760377931718998 |
Encrypted: | false |
SSDEEP: | 3:SURcG3XcDLSHH33BU9DcWTNnn:SUj2SHHBCcWpnn |
MD5: | C18D2397B5F0CFF55132B016467CA189 |
SHA1: | B60B8ADF7CABF73855BB17212831736FB0CB9F74 |
SHA-256: | 5C3233CF05E64742B923685C31E5347CABA89B198FD4A1BBA59A9500C3C16082 |
SHA-512: | 5EF20571951238C960107E0F16ABC3C5FDEAFC6CED038220835B5341C18CEB7C144FB2B2CCA1094C98C5900A15A1B1B1FA3357E011C492805567AE56DE57A1B6 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping1268_433936625\manifest.json
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 85 |
Entropy (8bit): | 4.424014792499492 |
Encrypted: | false |
SSDEEP: | 3:rR6TAulhFphifFCmMARWHJqS1jvhg:F6VlM8aRWpqS16 |
MD5: | 2C221BDCF91C9C07551499EE4CD15A6F |
SHA1: | CBC3CE0947A3D61A7673A7729CA25DB7DB023336 |
SHA-256: | C5140A38877C53D83A68CDD8BF26F266B416D11B68DEB572CE98ADEC5D316858 |
SHA-512: | B77656D3D8598FB946F988906FBE4399B30C4B1DB284FA187C617ECAADA0C98EB913572D4361E43058A68D175E95451B05F875372669ACF98DD1BAAE59F8D9BE |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Windows\SystemTemp\chrome_PuffinComponentUnpacker_BeginUnzipping1268_433936625\sets.json
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 9068 |
Entropy (8bit): | 4.624080015119112 |
Encrypted: | false |
SSDEEP: | 96:Mon4mvCSqX1gs9/BNKLcxbdmf56MFJtRTGXvcxNnuP+8qJq:v5CSqlTBkIVmtRTGXvcx0sq |
MD5: | 1D67EF4C7F90E1C8A620ADF17C6B6B13 |
SHA1: | E90E51A4A2305BCBD5016A3CA02CD14F77FDCBBA |
SHA-256: | 578DF0513FF5FA4080BDFC0B7094DCB444E09CD3AB3DCBC60165D1369681E2C1 |
SHA-512: | 59B80B6A767EA95254CC64A5CDC17DF3ACC2F0B0E52416D86477109A1EDAB7479E0B1AEAB1FF793F8DC1807AAFAB38915A8267D4F31F618E99DF1AB07C095EE9 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 3, 2024 14:34:39.273895979 CEST | 443 | 49709 | 40.115.3.253 | 192.168.2.6 |
Jul 3, 2024 14:34:39.274677992 CEST | 443 | 49709 | 40.115.3.253 | 192.168.2.6 |
Jul 3, 2024 14:34:39.274739027 CEST | 49709 | 443 | 192.168.2.6 | 40.115.3.253 |
Jul 3, 2024 14:34:39.275130033 CEST | 49709 | 443 | 192.168.2.6 | 40.115.3.253 |
Jul 3, 2024 14:34:39.275146961 CEST | 443 | 49709 | 40.115.3.253 | 192.168.2.6 |
Jul 3, 2024 14:34:39.275163889 CEST | 49709 | 443 | 192.168.2.6 | 40.115.3.253 |
Jul 3, 2024 14:34:42.787651062 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:42.787683964 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:42.787781954 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:42.788866997 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:42.788877010 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.381578922 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:43.381742954 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:43.572477102 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.572619915 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.631352901 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.631364107 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.631678104 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.678510904 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.680382967 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.680444956 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.680453062 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.680886984 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.709687948 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:43.728507996 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.870326996 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.871517897 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:43.871526003 CEST | 443 | 49710 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:43.871606112 CEST | 49710 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:50.596090078 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:50.596127987 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:50.596194983 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:50.596436977 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:50.596446991 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.069082975 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.069370031 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.069386005 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.070254087 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.070319891 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.071384907 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.071455956 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.071595907 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.071600914 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.112067938 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.468801975 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.468868017 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.468926907 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.469808102 CEST | 49716 | 443 | 192.168.2.6 | 188.114.96.3 |
Jul 3, 2024 14:34:51.469825029 CEST | 443 | 49716 | 188.114.96.3 | 192.168.2.6 |
Jul 3, 2024 14:34:51.482283115 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.482315063 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.482372046 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.482585907 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.482594013 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.633677006 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:51.633717060 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:51.633784056 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:51.634502888 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:51.634515047 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:51.961798906 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.973145008 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.973160982 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.974138975 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.974200964 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.975672960 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.975723028 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.975905895 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:51.975910902 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.020087004 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.145253897 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.145962954 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.145987034 CEST | 443 | 49718 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.146038055 CEST | 49718 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.147341967 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.147362947 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.147428036 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.147928953 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.147936106 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.461287975 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.461381912 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.466038942 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.466048002 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.466414928 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.471050978 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.471236944 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.471242905 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.471631050 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.516530991 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.605010033 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.605501890 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.605516911 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.607584953 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.607641935 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.608855963 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.609086037 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.609093904 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.609126091 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.645100117 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.645217896 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.645324945 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.660698891 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.660715103 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.667834997 CEST | 49720 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:52.667856932 CEST | 443 | 49720 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:52.707576036 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.733313084 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.733382940 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.733428001 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.733834028 CEST | 49721 | 443 | 192.168.2.6 | 35.190.80.1 |
Jul 3, 2024 14:34:52.733846903 CEST | 443 | 49721 | 35.190.80.1 | 192.168.2.6 |
Jul 3, 2024 14:34:52.988826990 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:52.988826990 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:53.316961050 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:53.423821926 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:53.423871040 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:53.424236059 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:53.424638987 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:53.424655914 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:53.762526035 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:53.762567997 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:53.762700081 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:53.765863895 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:53.765877962 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.058985949 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:54.059406042 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:54.059418917 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:54.060378075 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:54.060497046 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:54.061783075 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:54.061832905 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:54.114228010 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:54.114243031 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:34:54.161029100 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:34:54.429883957 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.429951906 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.432216883 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.432231903 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.432554960 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.473542929 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.480170012 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.520509005 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.703166962 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.703233004 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.703305960 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.703418016 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.703418016 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.703433990 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.703444958 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.743844986 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.743899107 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.744025946 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.744385958 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:54.744401932 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:54.951169014 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:54.951203108 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:54.951354027 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:54.952888966 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:54.952899933 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:54.964551926 CEST | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Jul 3, 2024 14:34:54.964642048 CEST | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Jul 3, 2024 14:34:55.380026102 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.380088091 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:55.405092001 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:55.405119896 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.405482054 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.408401966 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:55.452502966 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.655921936 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.656006098 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.656246901 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:55.657679081 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Jul 3, 2024 14:34:55.657696009 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Jul 3, 2024 14:34:55.777184010 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.777273893 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.780987024 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.780992985 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.781754017 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.784635067 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.784908056 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.784912109 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.785115004 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.828545094 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.965903997 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.966258049 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.966325045 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.966377020 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:55.966392994 CEST | 443 | 49725 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:55.966415882 CEST | 49725 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:59.531886101 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:59.531932116 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:34:59.532017946 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:59.532596111 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:34:59.532608986 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.347877026 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.347946882 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.350020885 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.350028992 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.350337029 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.352251053 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.352302074 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.352307081 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.352442026 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.396502018 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.527951002 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.528106928 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.528366089 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.528366089 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:00.528403044 CEST | 443 | 49726 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:00.528450966 CEST | 49726 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:03.964068890 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:03.964126110 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:03.964165926 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:05.476531982 CEST | 49722 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:05.476573944 CEST | 443 | 49722 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:11.620343924 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:11.620393038 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:11.624463081 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:11.625670910 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:11.625689983 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.415724993 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.415896893 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.421550989 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.421570063 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.421912909 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.426697969 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.426923990 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.426923990 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.426934004 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.472511053 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.601349115 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.601821899 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:12.601885080 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.602389097 CEST | 49731 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:12.602408886 CEST | 443 | 49731 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:16.691335917 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:16.691375017 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:16.691503048 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:16.692082882 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:16.692096949 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.559844017 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.559911966 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.562231064 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.562244892 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.562499046 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.563822031 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.563903093 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.563910961 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.564030886 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.608501911 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.736449003 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.736546040 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:17.736653090 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.736819029 CEST | 49732 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:17.736840963 CEST | 443 | 49732 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.051420927 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.051474094 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.051537991 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.053369045 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.053383112 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.609049082 CEST | 63098 | 53 | 192.168.2.6 | 162.159.36.2 |
Jul 3, 2024 14:35:30.615333080 CEST | 53 | 63098 | 162.159.36.2 | 192.168.2.6 |
Jul 3, 2024 14:35:30.615780115 CEST | 63098 | 53 | 192.168.2.6 | 162.159.36.2 |
Jul 3, 2024 14:35:30.615780115 CEST | 63098 | 53 | 192.168.2.6 | 162.159.36.2 |
Jul 3, 2024 14:35:30.620719910 CEST | 53 | 63098 | 162.159.36.2 | 192.168.2.6 |
Jul 3, 2024 14:35:30.859437943 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.859508038 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.864089966 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.864100933 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.864305019 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.866077900 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.866187096 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.866192102 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:30.866348982 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:30.908502102 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:31.047923088 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:31.048121929 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:31.048196077 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:31.048455954 CEST | 49733 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:31.048475027 CEST | 443 | 49733 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:31.064167976 CEST | 53 | 63098 | 162.159.36.2 | 192.168.2.6 |
Jul 3, 2024 14:35:31.064899921 CEST | 63098 | 53 | 192.168.2.6 | 162.159.36.2 |
Jul 3, 2024 14:35:31.070903063 CEST | 53 | 63098 | 162.159.36.2 | 192.168.2.6 |
Jul 3, 2024 14:35:31.070961952 CEST | 63098 | 53 | 192.168.2.6 | 162.159.36.2 |
Jul 3, 2024 14:35:34.483674049 CEST | 80 | 49704 | 217.20.57.34 | 192.168.2.6 |
Jul 3, 2024 14:35:34.483814955 CEST | 49704 | 80 | 192.168.2.6 | 217.20.57.34 |
Jul 3, 2024 14:35:34.483895063 CEST | 49704 | 80 | 192.168.2.6 | 217.20.57.34 |
Jul 3, 2024 14:35:34.490355968 CEST | 80 | 49704 | 217.20.57.34 | 192.168.2.6 |
Jul 3, 2024 14:35:39.899890900 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:39.899935007 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:39.900170088 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:39.900645971 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:39.900656939 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.690068960 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.690152884 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.692715883 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.692739010 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.693006039 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.694946051 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.695004940 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.695014000 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.695204020 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.736512899 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.866451025 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.866667986 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.866725922 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.866964102 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:40.866986990 CEST | 443 | 63101 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:40.867027998 CEST | 63101 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:50.873146057 CEST | 55224 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:35:50.878124952 CEST | 53 | 55224 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:50.878222942 CEST | 55224 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:35:50.878222942 CEST | 55224 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:35:50.883241892 CEST | 53 | 55224 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:51.329349041 CEST | 53 | 55224 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:51.330240011 CEST | 55224 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:35:51.336349010 CEST | 53 | 55224 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:51.336550951 CEST | 55224 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:35:53.194277048 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.194348097 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.194422960 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.195537090 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.195550919 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.465841055 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:53.465882063 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:53.465950966 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:53.466392994 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:53.466407061 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:53.983916998 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.984046936 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.985869884 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.985889912 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.986138105 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.987874985 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.987935066 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:53.987946987 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:53.988071918 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:54.032501936 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:54.127389908 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:54.127690077 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:54.127722979 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:54.128063917 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:54.128396034 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:35:54.128460884 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:35:54.158113003 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:54.158209085 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:54.158274889 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:54.158418894 CEST | 55226 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:35:54.158441067 CEST | 443 | 55226 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:35:54.177434921 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:36:04.021330118 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:36:04.021413088 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:36:04.021466970 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:36:05.826262951 CEST | 55227 | 443 | 192.168.2.6 | 142.250.186.164 |
Jul 3, 2024 14:36:05.826299906 CEST | 443 | 55227 | 142.250.186.164 | 192.168.2.6 |
Jul 3, 2024 14:36:07.591106892 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:07.591145039 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:07.591234922 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:07.592683077 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:07.592705965 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.470338106 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.470464945 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.472453117 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.472466946 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.472733974 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.474198103 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.474198103 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.474220037 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.474400043 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.520493984 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.645261049 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.645354986 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Jul 3, 2024 14:36:08.645412922 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.645673037 CEST | 55229 | 443 | 192.168.2.6 | 40.113.103.199 |
Jul 3, 2024 14:36:08.645694971 CEST | 443 | 55229 | 40.113.103.199 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jul 3, 2024 14:34:48.895920038 CEST | 53 | 49983 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:48.910232067 CEST | 53 | 64452 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:49.997984886 CEST | 53 | 52572 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:50.529367924 CEST | 57992 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:50.529542923 CEST | 51273 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:50.572201014 CEST | 53 | 57992 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:50.572962999 CEST | 53 | 51273 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:50.575534105 CEST | 60170 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:50.575678110 CEST | 58846 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:50.588932037 CEST | 53 | 60170 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:50.593432903 CEST | 53 | 58846 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.473149061 CEST | 65458 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:51.473315001 CEST | 64018 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:51.481008053 CEST | 53 | 65458 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:51.481950998 CEST | 53 | 64018 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:53.411717892 CEST | 51623 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:53.412302971 CEST | 59951 | 53 | 192.168.2.6 | 1.1.1.1 |
Jul 3, 2024 14:34:53.419444084 CEST | 53 | 51623 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:34:53.421374083 CEST | 53 | 59951 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:07.321564913 CEST | 53 | 51682 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:26.529257059 CEST | 53 | 55674 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:30.607511997 CEST | 53 | 51010 | 162.159.36.2 | 192.168.2.6 |
Jul 3, 2024 14:35:31.089832067 CEST | 53 | 49358 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:48.811536074 CEST | 53 | 63552 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:49.117007017 CEST | 53 | 63346 | 1.1.1.1 | 192.168.2.6 |
Jul 3, 2024 14:35:50.872699022 CEST | 53 | 57016 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jul 3, 2024 14:34:50.529367924 CEST | 192.168.2.6 | 1.1.1.1 | 0x3d0b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 3, 2024 14:34:50.529542923 CEST | 192.168.2.6 | 1.1.1.1 | 0x780e | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 3, 2024 14:34:50.575534105 CEST | 192.168.2.6 | 1.1.1.1 | 0x8b1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 3, 2024 14:34:50.575678110 CEST | 192.168.2.6 | 1.1.1.1 | 0x7f43 | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 3, 2024 14:34:51.473149061 CEST | 192.168.2.6 | 1.1.1.1 | 0xd74c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 3, 2024 14:34:51.473315001 CEST | 192.168.2.6 | 1.1.1.1 | 0x5c1d | Standard query (0) | 65 | IN (0x0001) | false | |
Jul 3, 2024 14:34:53.411717892 CEST | 192.168.2.6 | 1.1.1.1 | 0x2a0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jul 3, 2024 14:34:53.412302971 CEST | 192.168.2.6 | 1.1.1.1 | 0x8b7a | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jul 3, 2024 14:34:50.572201014 CEST | 1.1.1.1 | 192.168.2.6 | 0x3d0b | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:50.572201014 CEST | 1.1.1.1 | 192.168.2.6 | 0x3d0b | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:50.572962999 CEST | 1.1.1.1 | 192.168.2.6 | 0x780e | No error (0) | 65 | IN (0x0001) | false | |||
Jul 3, 2024 14:34:50.588932037 CEST | 1.1.1.1 | 192.168.2.6 | 0x8b1 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:50.588932037 CEST | 1.1.1.1 | 192.168.2.6 | 0x8b1 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:50.593432903 CEST | 1.1.1.1 | 192.168.2.6 | 0x7f43 | No error (0) | 65 | IN (0x0001) | false | |||
Jul 3, 2024 14:34:51.481008053 CEST | 1.1.1.1 | 192.168.2.6 | 0xd74c | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:53.419444084 CEST | 1.1.1.1 | 192.168.2.6 | 0x2a0 | No error (0) | 142.250.186.164 | A (IP address) | IN (0x0001) | false | ||
Jul 3, 2024 14:34:53.421374083 CEST | 1.1.1.1 | 192.168.2.6 | 0x8b7a | No error (0) | 65 | IN (0x0001) | false | |||
Jul 3, 2024 14:35:04.293545008 CEST | 1.1.1.1 | 192.168.2.6 | 0x7637 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jul 3, 2024 14:35:04.293545008 CEST | 1.1.1.1 | 192.168.2.6 | 0x7637 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49709 | 40.115.3.253 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:39 UTC | 71 | OUT | |
2024-07-03 12:34:39 UTC | 249 | OUT | |
2024-07-03 12:34:39 UTC | 1064 | OUT | |
2024-07-03 12:34:39 UTC | 74 | OUT | |
2024-07-03 12:34:39 UTC | 14 | IN | |
2024-07-03 12:34:39 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
1 | 192.168.2.6 | 49710 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:43 UTC | 71 | OUT | |
2024-07-03 12:34:43 UTC | 249 | OUT | |
2024-07-03 12:34:43 UTC | 1064 | OUT | |
2024-07-03 12:34:43 UTC | 74 | OUT | |
2024-07-03 12:34:43 UTC | 14 | IN | |
2024-07-03 12:34:43 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.6 | 49716 | 188.114.96.3 | 443 | 3816 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:51 UTC | 666 | OUT | |
2024-07-03 12:34:51 UTC | 605 | IN | |
2024-07-03 12:34:51 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 49718 | 35.190.80.1 | 443 | 3816 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:51 UTC | 568 | OUT | |
2024-07-03 12:34:52 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
4 | 192.168.2.6 | 49720 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:52 UTC | 71 | OUT | |
2024-07-03 12:34:52 UTC | 249 | OUT | |
2024-07-03 12:34:52 UTC | 1064 | OUT | |
2024-07-03 12:34:52 UTC | 218 | OUT | |
2024-07-03 12:34:52 UTC | 14 | IN | |
2024-07-03 12:34:52 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 49721 | 35.190.80.1 | 443 | 3816 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:52 UTC | 502 | OUT | |
2024-07-03 12:34:52 UTC | 392 | OUT | |
2024-07-03 12:34:52 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49723 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:54 UTC | 161 | OUT | |
2024-07-03 12:34:54 UTC | 466 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49724 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:55 UTC | 239 | OUT | |
2024-07-03 12:34:55 UTC | 514 | IN | |
2024-07-03 12:34:55 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
8 | 192.168.2.6 | 49725 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:34:55 UTC | 71 | OUT | |
2024-07-03 12:34:55 UTC | 249 | OUT | |
2024-07-03 12:34:55 UTC | 1064 | OUT | |
2024-07-03 12:34:55 UTC | 74 | OUT | |
2024-07-03 12:34:55 UTC | 14 | IN | |
2024-07-03 12:34:55 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
9 | 192.168.2.6 | 49726 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:00 UTC | 71 | OUT | |
2024-07-03 12:35:00 UTC | 249 | OUT | |
2024-07-03 12:35:00 UTC | 1064 | OUT | |
2024-07-03 12:35:00 UTC | 218 | OUT | |
2024-07-03 12:35:00 UTC | 14 | IN | |
2024-07-03 12:35:00 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
10 | 192.168.2.6 | 49731 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:12 UTC | 71 | OUT | |
2024-07-03 12:35:12 UTC | 249 | OUT | |
2024-07-03 12:35:12 UTC | 1064 | OUT | |
2024-07-03 12:35:12 UTC | 218 | OUT | |
2024-07-03 12:35:12 UTC | 14 | IN | |
2024-07-03 12:35:12 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
11 | 192.168.2.6 | 49732 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:17 UTC | 71 | OUT | |
2024-07-03 12:35:17 UTC | 249 | OUT | |
2024-07-03 12:35:17 UTC | 1064 | OUT | |
2024-07-03 12:35:17 UTC | 74 | OUT | |
2024-07-03 12:35:17 UTC | 14 | IN | |
2024-07-03 12:35:17 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
12 | 192.168.2.6 | 49733 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:30 UTC | 71 | OUT | |
2024-07-03 12:35:30 UTC | 249 | OUT | |
2024-07-03 12:35:30 UTC | 1064 | OUT | |
2024-07-03 12:35:30 UTC | 218 | OUT | |
2024-07-03 12:35:31 UTC | 14 | IN | |
2024-07-03 12:35:31 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
13 | 192.168.2.6 | 63101 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:40 UTC | 71 | OUT | |
2024-07-03 12:35:40 UTC | 249 | OUT | |
2024-07-03 12:35:40 UTC | 1064 | OUT | |
2024-07-03 12:35:40 UTC | 74 | OUT | |
2024-07-03 12:35:40 UTC | 14 | IN | |
2024-07-03 12:35:40 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
14 | 192.168.2.6 | 55226 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:35:53 UTC | 71 | OUT | |
2024-07-03 12:35:53 UTC | 249 | OUT | |
2024-07-03 12:35:53 UTC | 1064 | OUT | |
2024-07-03 12:35:53 UTC | 218 | OUT | |
2024-07-03 12:35:54 UTC | 14 | IN | |
2024-07-03 12:35:54 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
15 | 192.168.2.6 | 55229 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-07-03 12:36:08 UTC | 71 | OUT | |
2024-07-03 12:36:08 UTC | 249 | OUT | |
2024-07-03 12:36:08 UTC | 1064 | OUT | |
2024-07-03 12:36:08 UTC | 74 | OUT | |
2024-07-03 12:36:08 UTC | 14 | IN | |
2024-07-03 12:36:08 UTC | 58 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 08:34:42 |
Start date: | 03/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 08:34:47 |
Start date: | 03/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 08:34:49 |
Start date: | 03/07/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |