Windows
Analysis Report
Scan_03774843.pdf
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- Acrobat.exe (PID: 4396 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\Acrobat .exe" "C:\ Users\user \Desktop\S can_037748 43.pdf" MD5: 24EAD1C46A47022347DC0F05F6EFBB8C) - AcroCEF.exe (PID: 1788 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\acrocef _1\AcroCEF .exe" --ba ckgroundco lor=167772 15 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE) - AcroCEF.exe (PID: 7208 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\acrocef _1\AcroCEF .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --log-seve rity=disab le --user- agent-prod uct="Reade rServices/ 23.6.20320 Chrome/10 5.0.0.0" - -lang=en-U S --user-d ata-dir="C :\Users\us er\AppData \Local\CEF \User Data " --log-fi le="C:\Pro gram Files \Adobe\Acr obat DC\Ac robat\acro cef_1\debu g.log" --m ojo-platfo rm-channel -handle=21 04 --field -trial-han dle=1656,i ,113402875 4786419098 0,13859108 7798436209 39,131072 --disable- features=B ackForward Cache,Calc ulateNativ eWinOcclus ion,WinUse BrowserSpe llChecker /prefetch: 8 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE)
- chrome.exe (PID: 8092 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "https ://synbion .com.my/12 902x/" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 6436 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2120 --fi eld-trial- handle=187 6,i,809476 7685831595 573,148247 7118747582 2948,26214 4 /prefetc h:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
Phishing |
---|
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: |
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: |
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | Initial sample: |
Source: | File created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | Initial sample: | ||
Source: | Initial sample: |
Source: | Initial sample: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | 1 Spearphishing Link | Windows Management Instrumentation | 2 Browser Extensions | 1 Process Injection | 1 Masquerading | OS Credential Dumping | 1 System Information Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 1 Registry Run Keys / Startup Folder | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
6% | ReversingLabs | |||
2% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bg.microsoft.map.fastly.net | 199.232.210.172 | true | false | high | |
synbion.com.my | 101.99.77.51 | true | true |
| unknown |
code.jquery.com | 151.101.2.137 | true | false | high | |
www.google.com | 142.250.181.100 | true | false | high | |
x1.i.lencr.org | unknown | unknown | false | high | |
cdn.jsdelivr.net | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false | high | ||
false |
| unknown | |
true |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
true | unknown | ||
false |
| unknown | |
true | unknown | ||
false |
| unknown | |
true | unknown | ||
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
true |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
23.56.162.204 | unknown | United States | 16625 | AKAMAI-ASUS | false | |
142.250.181.100 | www.google.com | United States | 15169 | GOOGLEUS | false | |
151.101.130.137 | unknown | United States | 54113 | FASTLYUS | false | |
151.101.2.137 | code.jquery.com | United States | 54113 | FASTLYUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
101.99.77.51 | synbion.com.my | Malaysia | 45839 | SHINJIRU-MY-AS-APShinjiruTechnologySdnBhdMY | true |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1569697 |
Start date and time: | 2024-12-06 07:03:10 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 26s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowspdfcookbook.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | Scan_03774843.pdf |
Detection: | MAL |
Classification: | mal56.phis.winPDF@38/95@15/7 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, WmiPrvSE.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 23.218.208.137, 52.6.155.20, 3.219.243.226, 3.233.129.217, 52.22.41.97, 172.64.41.3, 162.159.61.3, 23.195.39.65, 199.232.210.172, 2.19.198.56, 23.32.238.161, 23.32.238.88, 2.19.198.74, 23.32.238.155, 23.32.238.113, 23.32.238.107, 23.32.238.160, 2.19.198.50, 2.19.198.48, 23.32.238.115, 2.19.198.64, 23.32.238.98, 23.32.238.146, 2.19.198.75, 172.217.19.227, 172.217.19.238, 64.233.162.84, 172.217.17.46, 172.217.19.234, 142.250.181.106, 142.250.181.10, 172.217.17.74, 142.250.181.138, 172.217.17.42, 216.58.208.234, 142.250.181.74, 172.217.19.202, 172.217.21.42, 172.217.19.170, 172.217.17.35, 172.217.17.78, 104.18.187.31, 104.18.186.31
- Excluded domains from analysis (whitelisted): e4578.dscg.akamaiedge.net, chrome.cloudflare-dns.com, cdn.jsdelivr.net.cdn.cloudflare.net, e8652.dscx.akamaiedge.net, slscr.update.microsoft.com, clientservices.googleapis.com, acroipm2.adobe.com, clients2.google.com, ocsp.digicert.com, redirector.gvt1.com, ssl-delivery.adobe.com.edgekey.net, a122.dscd.akamai.net, update.googleapis.com, wu-b-net.trafficmanager.net, crl.root-x1.letsencrypt.org.edgekey.net, optimizationguide-pa.googleapis.com, clients1.google.com, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, otelrules.azureedge.net, ctldl.windowsupdate.com.delivery.microsoft.com, acroipm2.adobe.com.edgesuite.net, ctldl.windowsupdate.com, p13n.adobe.io, fe3cr.delivery.mp.microsoft.com, edgedl.me.gvt1.com, clients.l.google.com, geo2.adobe.com
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
Time | Type | Description |
---|---|---|
01:04:08 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
151.101.2.137 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
23.56.162.204 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
151.101.130.137 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
code.jquery.com | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
bg.microsoft.map.fastly.net | Get hash | malicious | Amadey, Credential Flusher, LummaC Stealer, Nymaim, Stealc, Vidar | Browse |
| |
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | CobaltStrike | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AsyncRAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | ScreenConnect Tool | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
FASTLYUS | Get hash | malicious | Credential Flusher | Browse |
| |
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | KnowBe4 | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
FASTLYUS | Get hash | malicious | Credential Flusher | Browse |
| |
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | KnowBe4 | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
AKAMAI-ASUS | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
|
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.245421594756614 |
Encrypted: | false |
SSDEEP: | 6:FDfYSIq2P92nKuAl9OmbnIFUt8cDfUZmw+cDfUkwO92nKuAl9OmbjLJ:FDfQv4HAahFUt8cDfU/+cDfU5LHAaSJ |
MD5: | 7BBC11F807CAC7A87E538DAC049248CC |
SHA1: | B77FDB7FBC1BA515637681EB91D79989A24B8CC0 |
SHA-256: | FE194A139059923A6E8213F30EB2736B54BB69DF4C758EC559E1BED6D2351F4A |
SHA-512: | 94B5D6CE39029A386C473AD5BFEA659DCE79BFF7925B38F2C2375E91660845A10882953307AAA7CCB18B2C7AA3AF0384FCC5F0070FF7D1E4D8EF41F1A80BCE99 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.245421594756614 |
Encrypted: | false |
SSDEEP: | 6:FDfYSIq2P92nKuAl9OmbnIFUt8cDfUZmw+cDfUkwO92nKuAl9OmbjLJ:FDfQv4HAahFUt8cDfU/+cDfU5LHAaSJ |
MD5: | 7BBC11F807CAC7A87E538DAC049248CC |
SHA1: | B77FDB7FBC1BA515637681EB91D79989A24B8CC0 |
SHA-256: | FE194A139059923A6E8213F30EB2736B54BB69DF4C758EC559E1BED6D2351F4A |
SHA-512: | 94B5D6CE39029A386C473AD5BFEA659DCE79BFF7925B38F2C2375E91660845A10882953307AAA7CCB18B2C7AA3AF0384FCC5F0070FF7D1E4D8EF41F1A80BCE99 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 338 |
Entropy (8bit): | 5.199056203381649 |
Encrypted: | false |
SSDEEP: | 6:FDfKEcM+q2P92nKuAl9Ombzo2jMGIFUt8cDfbvNJZmw+cDfbvNcMVkwO92nKuAlx:FDfKpM+v4HAa8uFUt8cDfzX/+cDfzqM8 |
MD5: | 25E736F2246F1A9368656EBE37CAD56A |
SHA1: | 498F617175FFDFC36E1FFB4C1ABCFB3E597AE6FA |
SHA-256: | FB7EA39405D3841C7B75998D41A01006F20739BC32365FFBFD8881181177A203 |
SHA-512: | 900410C3445CA5F09141F4065CE257DBA8F7E31B229EBE27680C48B77455E854E5F7CB2F87624D47ECDE1BF1A0CB136561958924B3C4CD39CF4D1A3A020D0EE3 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 338 |
Entropy (8bit): | 5.199056203381649 |
Encrypted: | false |
SSDEEP: | 6:FDfKEcM+q2P92nKuAl9Ombzo2jMGIFUt8cDfbvNJZmw+cDfbvNcMVkwO92nKuAlx:FDfKpM+v4HAa8uFUt8cDfzX/+cDfzqM8 |
MD5: | 25E736F2246F1A9368656EBE37CAD56A |
SHA1: | 498F617175FFDFC36E1FFB4C1ABCFB3E597AE6FA |
SHA-256: | FB7EA39405D3841C7B75998D41A01006F20739BC32365FFBFD8881181177A203 |
SHA-512: | 900410C3445CA5F09141F4065CE257DBA8F7E31B229EBE27680C48B77455E854E5F7CB2F87624D47ECDE1BF1A0CB136561958924B3C4CD39CF4D1A3A020D0EE3 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\2080eed3-8f52-4d16-9220-bb89666d52da.tmp
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 508 |
Entropy (8bit): | 5.047195090775108 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sqnT/sBdOg2HXcaq3QYiubxnP7E4TfF+:Y2sRdsgTAdMHW3QYhbxP7np+ |
MD5: | 70321A46A77A3C2465E2F031754B3E06 |
SHA1: | 5E7E713285D36F12ACFC68A34D8A34FD33C96B34 |
SHA-256: | 344DA48DA0F9A5CC258E10D6C28086B7718CBE596CDC3D7A2A61C8F5FD781248 |
SHA-512: | E885342B270FE3D538F17F8F80B9ED061B30EE55624177BD81F5C65C033160D71559D60872BC0F99C0C93FAE29F9D09FD5042B68D83CD538154D1335BAC8205D |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 508 |
Entropy (8bit): | 5.047195090775108 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sqnT/sBdOg2HXcaq3QYiubxnP7E4TfF+:Y2sRdsgTAdMHW3QYhbxP7np+ |
MD5: | 70321A46A77A3C2465E2F031754B3E06 |
SHA1: | 5E7E713285D36F12ACFC68A34D8A34FD33C96B34 |
SHA-256: | 344DA48DA0F9A5CC258E10D6C28086B7718CBE596CDC3D7A2A61C8F5FD781248 |
SHA-512: | E885342B270FE3D538F17F8F80B9ED061B30EE55624177BD81F5C65C033160D71559D60872BC0F99C0C93FAE29F9D09FD5042B68D83CD538154D1335BAC8205D |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State~RF5d00c6.TMP (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 508 |
Entropy (8bit): | 5.047195090775108 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sqnT/sBdOg2HXcaq3QYiubxnP7E4TfF+:Y2sRdsgTAdMHW3QYhbxP7np+ |
MD5: | 70321A46A77A3C2465E2F031754B3E06 |
SHA1: | 5E7E713285D36F12ACFC68A34D8A34FD33C96B34 |
SHA-256: | 344DA48DA0F9A5CC258E10D6C28086B7718CBE596CDC3D7A2A61C8F5FD781248 |
SHA-512: | E885342B270FE3D538F17F8F80B9ED061B30EE55624177BD81F5C65C033160D71559D60872BC0F99C0C93FAE29F9D09FD5042B68D83CD538154D1335BAC8205D |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\a9603b76-3d2a-43c0-8ca2-712a7762915c.tmp
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | modified |
Size (bytes): | 508 |
Entropy (8bit): | 5.057469265871315 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sqysBdOg2Hjdcaq3QYiubxnP7E4TfF+:Y2sRdsidMHjs3QYhbxP7np+ |
MD5: | 8C6FD646F01052324EBD5EFC90971330 |
SHA1: | A59F97D8CACE2D5BB4D0C9A20BD36F3630FB3607 |
SHA-256: | 8A8B752386209B366D79762C3D2ED3C593C285E2F2BFB575289387837D9EECFF |
SHA-512: | D2267823BFA6C44ED5DF061DD9AD27C4594469FDEA948679562A3490D0037D56BCD6A896F12A38738E280C07CFE5C446F387E80FC87BE3003133F4E41ED27486 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4509 |
Entropy (8bit): | 5.231332749612903 |
Encrypted: | false |
SSDEEP: | 96:QqBpCqGp3Al+NehBmkID2w6bNMhugoKTNY+No/KTNcygLPGLLU4cSBMPZ:rBpJGp3AoqBmki25ZEVoKTNY+NoCTNLG |
MD5: | 56B9D5B257494EFE5866B414BB0213B1 |
SHA1: | 2D42055DD3A7E132AEE920A4DE7FD70749274602 |
SHA-256: | 201143640151BFA77E29B88A2FFF9DDDDB87ED7391898CE6D8E69CD23013BD22 |
SHA-512: | CC67589AE437C0757067A297418D4DF89707F7520D05AF88DE236CF39BB6A70D9F0B1798E5A1773DFC60BD7EBC05DB80965BD03CB87DDED19C43CACA64208FB0 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 326 |
Entropy (8bit): | 5.154213750737061 |
Encrypted: | false |
SSDEEP: | 6:FDfJLNJocM+q2P92nKuAl9OmbzNMxIFUt8cDfJL7vUEEJZmw+cDfJL7vUEEcMVko:FDfJ5JlM+v4HAa8jFUt8cDfJ6/+cDfJI |
MD5: | 43423A5404219CCCC983032615D01884 |
SHA1: | F1516B460440282B157E6F20B8DF86A53D81A938 |
SHA-256: | 4F71228AFDD4EB4034136EA6DF3D6C9FAFAFF8938282486D4F02E82244FF66DD |
SHA-512: | 20AD1E253379BF22E60136C8F628F7AC58849A6B5AFAA3E21B7C4457078DADB19F2313B312F25E32C07B22D83594BD4FE79DD24EB3C4D330C3F50113BEC0C537 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 326 |
Entropy (8bit): | 5.154213750737061 |
Encrypted: | false |
SSDEEP: | 6:FDfJLNJocM+q2P92nKuAl9OmbzNMxIFUt8cDfJL7vUEEJZmw+cDfJL7vUEEcMVko:FDfJ5JlM+v4HAa8jFUt8cDfJ6/+cDfJI |
MD5: | 43423A5404219CCCC983032615D01884 |
SHA1: | F1516B460440282B157E6F20B8DF86A53D81A938 |
SHA-256: | 4F71228AFDD4EB4034136EA6DF3D6C9FAFAFF8938282486D4F02E82244FF66DD |
SHA-512: | 20AD1E253379BF22E60136C8F628F7AC58849A6B5AFAA3E21B7C4457078DADB19F2313B312F25E32C07B22D83594BD4FE79DD24EB3C4D330C3F50113BEC0C537 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-241206060403Z-153.bmp
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 71190 |
Entropy (8bit): | 3.054729049176655 |
Encrypted: | false |
SSDEEP: | 192:5edX6piHiihiiiiiigiiiiiiiiiiiiiiiiiiiiiiiiiiii0qHTmQpBNEgQob4+PD:5ZS4meXPEQWeR0v4AXwFsy |
MD5: | EB9CCB392F137E1463D36AFC4212A62B |
SHA1: | 485ECDEFDFDDE32631CEA759943A9F78431D2018 |
SHA-256: | EBFE2E21DEE886270546E57C28DF61DF0EF0A02C2AC7E911EBEFB8DE1D98B225 |
SHA-512: | 54B7ABD441B9D1219EC6465B3BF2D5BAC4D72FE0E7A88B64285C2B5E8D1B9D8AE856648DEF0DC086FD9D2C359A2837E3FBE8D894E3BB7087AC0F87A045F621AD |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1391 |
Entropy (8bit): | 7.705940075877404 |
Encrypted: | false |
SSDEEP: | 24:ooVdTH2NMU+I3E0Ulcrgdaf3sWrATrnkC4EmCUkmGMkfQo1fSZotWzD1:ooVguI3Kcx8WIzNeCUkJMmSuMX1 |
MD5: | 0CD2F9E0DA1773E9ED864DA5E370E74E |
SHA1: | CABD2A79A1076A31F21D253635CB039D4329A5E8 |
SHA-256: | 96BCEC06264976F37460779ACF28C5A7CFE8A3C0AAE11A8FFCEE05C0BDDF08C6 |
SHA-512: | 3B40F27E828323F5B91F8909883A78A21C86551761F27B38029FAAEC14AF5B7AA96FB9F9CC93EE201B5EB1D0FEF17B290747E8B839D2E49A8F36C5EBF3C7C910 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 71954 |
Entropy (8bit): | 7.996617769952133 |
Encrypted: | true |
SSDEEP: | 1536:gc257bHnClJ3v5mnAQEBP+bfnW8Ctl8G1G4eu76NWDdB34w18R5cBWcJAm68+Q:gp2ld5jPqW8LgeulxB3fgcEfDQ |
MD5: | 49AEBF8CBD62D92AC215B2923FB1B9F5 |
SHA1: | 1723BE06719828DDA65AD804298D0431F6AFF976 |
SHA-256: | B33EFCB95235B98B48508E019AFA4B7655E80CF071DEFABD8B2123FC8B29307F |
SHA-512: | BF86116B015FB56709516D686E168E7C9C68365136231CC51D0B6542AE95323A71D2C7ACEC84AAD7DCECC2E410843F6D82A0A6D51B9ACFC721A9C84FDD877B5B |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 192 |
Entropy (8bit): | 2.7529698674325394 |
Encrypted: | false |
SSDEEP: | 3:kkFklcSklfllXlE/HT8kXJtNNX8RolJuRdxLlGB9lQRYwpDdt:kKFS9T8QRNMa8RdWBwRd |
MD5: | B3A5093A77ECEC65E3F39C83CB5E1128 |
SHA1: | 7970DC40E388DD46BFA198591F769FD800FCF921 |
SHA-256: | 8290AB9AAF1DD39A26855E5023EFAA3D05E8C77E0E0446185EDE1B5610A1CBB7 |
SHA-512: | 49D215D46C5968614908D70AF707859D37A5EFF921A883DB27ACB5DDF264594F2C44FA08652729F266AAE73C801EAB39046582CD8173E890539553FE92D527A1 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | modified |
Size (bytes): | 328 |
Entropy (8bit): | 3.238004231589766 |
Encrypted: | false |
SSDEEP: | 6:kKb9UswD8HGsL+N+SkQlPlEGYRMY9z+4KlDA3RUebT3:aDImsLNkPlE99SNxAhUe/3 |
MD5: | 99EC745E91DA9943BC090B9B2B92C7D6 |
SHA1: | 41FB4B68B334828D6B86B9CF26BDE6479B61877A |
SHA-256: | D9B090F3E776DC4895E83D562ABD6579ACC0617279ECDC88518A6DC9A4A66250 |
SHA-512: | 593D1426309B783A3AB2C439C61994858AB940491A9179CBFC28B86B228F0E46B31BADDCB62640AFDCA0EDFB7E930A23C96B27826339EDEFD7436BA39D70A023 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1233 |
Entropy (8bit): | 5.233980037532449 |
Encrypted: | false |
SSDEEP: | 24:kk8id8HxPsMTtrid8OPgx4sMDHFidZxDWksMwEidMKRxCsMWaOtidMLgxT2sMW0l:pkxPhtgNgx4pyZxakazxCIK2gxap |
MD5: | 8BA9D8BEBA42C23A5DB405994B54903F |
SHA1: | FC1B1646EC8A7015F492AA17ADF9712B54858361 |
SHA-256: | 862DE2165B9D44422E84E25FFE267A5E1ADE23F46F04FC6F584C4943F76EB75C |
SHA-512: | 26AD41BB89AF6198515674F21B4F0F561DC9BDC91D5300C154065C57D49CCA61B4BA60E5F93FD17869BDA1123617F26CDA0EF39935A9C2805F930A3DB1956D5A |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1233 |
Entropy (8bit): | 5.233980037532449 |
Encrypted: | false |
SSDEEP: | 24:kk8id8HxPsMTtrid8OPgx4sMDHFidZxDWksMwEidMKRxCsMWaOtidMLgxT2sMW0l:pkxPhtgNgx4pyZxakazxCIK2gxap |
MD5: | 8BA9D8BEBA42C23A5DB405994B54903F |
SHA1: | FC1B1646EC8A7015F492AA17ADF9712B54858361 |
SHA-256: | 862DE2165B9D44422E84E25FFE267A5E1ADE23F46F04FC6F584C4943F76EB75C |
SHA-512: | 26AD41BB89AF6198515674F21B4F0F561DC9BDC91D5300C154065C57D49CCA61B4BA60E5F93FD17869BDA1123617F26CDA0EF39935A9C2805F930A3DB1956D5A |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1233 |
Entropy (8bit): | 5.233980037532449 |
Encrypted: | false |
SSDEEP: | 24:kk8id8HxPsMTtrid8OPgx4sMDHFidZxDWksMwEidMKRxCsMWaOtidMLgxT2sMW0l:pkxPhtgNgx4pyZxakazxCIK2gxap |
MD5: | 8BA9D8BEBA42C23A5DB405994B54903F |
SHA1: | FC1B1646EC8A7015F492AA17ADF9712B54858361 |
SHA-256: | 862DE2165B9D44422E84E25FFE267A5E1ADE23F46F04FC6F584C4943F76EB75C |
SHA-512: | 26AD41BB89AF6198515674F21B4F0F561DC9BDC91D5300C154065C57D49CCA61B4BA60E5F93FD17869BDA1123617F26CDA0EF39935A9C2805F930A3DB1956D5A |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 10880 |
Entropy (8bit): | 5.214360287289079 |
Encrypted: | false |
SSDEEP: | 192:SgAYm4DAv6oq6oCf6ocL6oz6o46ok6o16ok6oKls6oVtfZ6ojtou6o2ti16oGwX/:SV548vvqvSvivzv4vkv1vkvKlsvVtfZp |
MD5: | B60EE534029885BD6DECA42D1263BDC0 |
SHA1: | 4E801BA6CA503BDAE7E54B7DB65BE641F7C23375 |
SHA-256: | B5F094EFF25215E6C35C46253BA4BB375BC29D055A3E90E08F66A6FDA1C35856 |
SHA-512: | 52221F919AEA648B57E567947806F71922B604F90AC6C8805E5889AECB131343D905D94703EA2B4CEC9B0C1813DDA6EAE2677403F58D3B340099461BBCD355AE |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 10880 |
Entropy (8bit): | 5.214360287289079 |
Encrypted: | false |
SSDEEP: | 192:SgAYm4DAv6oq6oCf6ocL6oz6o46ok6o16ok6oKls6oVtfZ6ojtou6o2ti16oGwX/:SV548vvqvSvivzv4vkv1vkvKlsvVtfZp |
MD5: | B60EE534029885BD6DECA42D1263BDC0 |
SHA1: | 4E801BA6CA503BDAE7E54B7DB65BE641F7C23375 |
SHA-256: | B5F094EFF25215E6C35C46253BA4BB375BC29D055A3E90E08F66A6FDA1C35856 |
SHA-512: | 52221F919AEA648B57E567947806F71922B604F90AC6C8805E5889AECB131343D905D94703EA2B4CEC9B0C1813DDA6EAE2677403F58D3B340099461BBCD355AE |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 227002 |
Entropy (8bit): | 3.392780893644728 |
Encrypted: | false |
SSDEEP: | 1536:WKPC4iyzDtrh1cK3XEivK7VK/3AYvYwgF/rRoL+sn:DPCaJ/3AYvYwglFoL+sn |
MD5: | 87EDBEE38F56C20298F25D5D3D4D1B5C |
SHA1: | 7F904E9615AC3186A87472EF366DD8202855B0B7 |
SHA-256: | A46B56D3ABCC137D1872DDF20EED4BCD7D04518282282ADB32DDCCF70D7FFBA6 |
SHA-512: | BBEBC1FCD5BC9AE042DD5782425BA8C47BF3EAC283B2487FC4E3FF6BF8101306DAB081E5135594165D4DC1AC120FF125AADBC5B3FFE7C646183C04DF77865E0D |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 295 |
Entropy (8bit): | 5.3482429956425666 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJM3g98kUwPeUkwRe9:YvXKXItYpW7oGMbLUkee9 |
MD5: | 555423BB0AE0DCBBB84AB6FF034D124F |
SHA1: | 57367918063F3D72C429EB2A05D3247608EA0B12 |
SHA-256: | 899093AB6F4842EAA80C207FA0E3F3BFD0B520838BAB6D34E0E347ABB63D5301 |
SHA-512: | 6BD67AAD123359B0D8CC4DC4AF7090C0573997D14226F03BFEB2FF904319AADF64909129F99BBEEB90BE39E8AE4C77CBD4E5380CFA35712B44BA0C6F129E3A25 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.286026752357782 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfBoTfXpnrPeUkwRe9:YvXKXItYpW7oGWTfXcUkee9 |
MD5: | 1D0335735D765DCAF1980C066BF0DF93 |
SHA1: | 3F84778A84E5DE6121E324FAD3FFB10EA718365D |
SHA-256: | CB4D19C6504BBCD56F00EE1189CCC791FFF9724B0B48401BEF70E2A069037761 |
SHA-512: | EC73879316662A6390C2EE3BBC5666F071C710D1E98389D21C3F522C8788BD5A63DCFB937324ACDAD1E5F9958600F897F8B3897466116AAF62E4C9D87EC1AC9A |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.26484782740338 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfBD2G6UpnrPeUkwRe9:YvXKXItYpW7oGR22cUkee9 |
MD5: | E61FD5D8700DCF69FA61B36FE8814FAA |
SHA1: | 5C5225B26E11C1B69239FB8C00F788AAADE369E5 |
SHA-256: | DDE852943423BD4B234B75474D04921B7A4C75F013D060303521D476096A901E |
SHA-512: | 9257DFA0DFB38EAF48BFE30FB84C898BB0C37EA5D98876321DDB63765826177536D5DC60CC0D2D790CED2F1F63695A09857332651CAC8EF266D1C50A807CEA44 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 285 |
Entropy (8bit): | 5.326605333272831 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfPmwrPeUkwRe9:YvXKXItYpW7oGH56Ukee9 |
MD5: | 0D3A9848C2F06B7F43E215CEA01FA38C |
SHA1: | DA730DB58079DF640C363247313B9FC9FE156E9A |
SHA-256: | 041E44349E7709E21656C9EA91EE2DF15437E0631A14CDD0F567DF80AE2E477F |
SHA-512: | 95F64982AE5D4252908567D36944F1741394248021D747ED386DA7CAA58A03C58635181E0EFC507F8A937C4B6CDA52B1914C105E71123396B486ABDD6368489D |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1123 |
Entropy (8bit): | 5.687806146492814 |
Encrypted: | false |
SSDEEP: | 24:Yv6XImilpLgE9cQx8LennAvzBvkn0RCmK8czOCCSl3:YvHRlhgy6SAFv5Ah8cv/l3 |
MD5: | 14701FDC189FA2E7CBFDA892D772788F |
SHA1: | FA53F208BB34CC96179B5DE6804C0DFA0C586724 |
SHA-256: | 9EB5AC2AFFE1F9F22D8F0D6A377D58BD307EFDC377C80C355187F64FA18CE55A |
SHA-512: | 3BB205E017157C293C8B6588212ADFB868EFF29A698B83B20E7DE9FE7D38906CE7ADA147786434EFF10B208BC8BAE3774E4347295212355B7AD1EF6E1584A688 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1122 |
Entropy (8bit): | 5.679528235863503 |
Encrypted: | false |
SSDEEP: | 24:Yv6XImipVLgEwcp06ybnAvz7xHn0RCmK8czOCYHfl8zdBc3:YvHRpFgSNycJUAh8cvYHj3 |
MD5: | 73B14FB038B4E0D7ACCCA03178203DE8 |
SHA1: | 98BFDA8CCA978A45172E79559A150B83436CFA3D |
SHA-256: | 3B7ADA7ED2CC182A2FB77BFE6FDB3FF37782A5211F17ADCA80E71AFBBA3FC947 |
SHA-512: | 45229C9055DD82FD173E9F66BCB88ECE58618CFF3B19C068C85FC3C6981D8426D5F22499DA2914A4591960A0BBE56C74193B9AC9C0260A2BECB82DD860154553 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 292 |
Entropy (8bit): | 5.274135040117793 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfQ1rPeUkwRe9:YvXKXItYpW7oGY16Ukee9 |
MD5: | 38E8D50E98B0F938C5C29A380534AE17 |
SHA1: | 4F45457C9A39F4DDBA57450C9C90487A9905BFB8 |
SHA-256: | 665AF775E96148A049E5100E3480F8946D0C22167CB072F86A846EB2C85CBF27 |
SHA-512: | AE90A024F6686E5C2E50AA81889EB22B6509E5271D0DC0DD1637743402F950BA09D2F1AE53EEFC08B6925813525395BEA49DA25028BB39CE3ED69F74E1E30BCD |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1102 |
Entropy (8bit): | 5.6718742039302015 |
Encrypted: | false |
SSDEEP: | 24:Yv6XImiY2LgErcXWl7y0nAvzIBcSJCBViVc3:YvHRYogH47yfkB5kVl3 |
MD5: | FB3B967894562C01728D379D0246F7F2 |
SHA1: | 3CD1606FCAAB29F75E204EB9994F85CE80DFC27E |
SHA-256: | 8755F7E7712B98131590ADA416E060B31F22A38712896FD828AA17FDD8863183 |
SHA-512: | DE843451875B3885A6D46325752DCBCBB2B92923E34AD1C5D48F2F54E8DF3FE8BDF4340BD935D0CB652F3C532B858F01642A1683D9E091B8D5E16F4E3F2F2D9A |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1164 |
Entropy (8bit): | 5.700484467436556 |
Encrypted: | false |
SSDEEP: | 24:Yv6XImiQKLgEfIcZVSkpsn264rS514ZjBrwloJTmcVIsrSK5c3:YvHRQEgqprtrS5OZjSlwTmAfSKC3 |
MD5: | 58EC261D50ACEE7429189744BE98B444 |
SHA1: | 661499925B620D7A34245EDF26E582714317C208 |
SHA-256: | 6183A5D1B0A01E994CEF2D307FD1737C63353744463C09C269ECDC3C445493B1 |
SHA-512: | 3BD9E27D50B383CB1D140A65D702B5B0715E1BDB5893DB68B1C7593A7F4D346FA413813C563AF18891B28BAF21983479F70E5EB203DE917CAA59CE4EAC8A8677 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 289 |
Entropy (8bit): | 5.2811674200790115 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfYdPeUkwRe9:YvXKXItYpW7oGg8Ukee9 |
MD5: | FB3274FB7EEBA39F57DF69BF4E5CCDF4 |
SHA1: | 70664AC4E17D057BF499E6D7C32DF12780DA93DC |
SHA-256: | 2647B43BAB4001F23D1AF0A6D3F8908DB1A347C0E3FDAAAF910E4CDA4ADCA79D |
SHA-512: | 6E6D807E08BC3ABA76579FDF71EEAB0D91023ED3407627E1A165E9B3895ED4F68AE75F0AB96C4F1096BB72266B4F7E584096A83CF3A5B8AEB03C9E20A1E7F821 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 284 |
Entropy (8bit): | 5.267467587016694 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJf+dPeUkwRe9:YvXKXItYpW7oG28Ukee9 |
MD5: | F6FE821066B2E031CB361CF7A3C2C2B1 |
SHA1: | FE4BA5FA85165736260E4F6E0A263FCD0A65EEF2 |
SHA-256: | 275D5D83DA28A20150D647DBE0BC4FF0119B98D144F28DCDDB99A69E8C111D64 |
SHA-512: | F534EAC61C9EACB61164C46509F665CDB02DA4A7E0464474E17EE92557B05B3CB6DF7942FDB856CB167174FC0D0AF20F11A3770AFAA9B4DD44276F55CB1389F2 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 291 |
Entropy (8bit): | 5.2648439512918515 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfbPtdPeUkwRe9:YvXKXItYpW7oGDV8Ukee9 |
MD5: | B22352636BD2C331BC8B4247DBBDEAD4 |
SHA1: | 7E7025FE3E2264ECB105169D6A0D89B193CF1CC4 |
SHA-256: | 50634063BDF4654AB8F6A04D08DD793A0E4284E5DD09CA5696F3E15237690160 |
SHA-512: | 5971265B1D1333DA7A5C157B6617852C42B2D6821340475A7645782E7C656D2954D4CA5387DCB4B145632425FCCBA5BD5DB0A0297E268D354C0AF80399C0A000 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 287 |
Entropy (8bit): | 5.2659421189344 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJf21rPeUkwRe9:YvXKXItYpW7oG+16Ukee9 |
MD5: | 393DA621E8EC90ADE272BAC272812551 |
SHA1: | 5E096883E1F0A134CCDAC3134E515185D275DDC7 |
SHA-256: | 01091D89B136943D8B7EE1E90F43DF4784A342E01C2A2B897E795E191C74BA82 |
SHA-512: | 42418E44185E5A4A8D9FFA7B629B50953881DAFFA92EC902333584F786F32537E19A91364C9ED39516E6B01D38BB3AA5A5BBD9E62397A1FF62950CCF329084A1 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1090 |
Entropy (8bit): | 5.6608910843886475 |
Encrypted: | false |
SSDEEP: | 24:Yv6XImi9amXayLgE+cNDxeNaqnAvz7xHn0RCmK8czOC/BSl3:YvHRRBgkDMUJUAh8cvMl3 |
MD5: | 8A685E771DCB8B30D9B3D1F554775997 |
SHA1: | F1F8E7086A0BA556D5E2E74D84F61E78B17D8CC9 |
SHA-256: | 3F194ED935E9C4DC3AF3216888E8BA32FC51D406E1530854F2CA74CB1B54E231 |
SHA-512: | AE51F04C17CBD8F713620F3A56ABEC94E982576B5590FA08F928E37C08447CF0EBC8A068E2F732161E86DF2FBDF0C32CE1E4E46BE0C16152D0060289697D8C43 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 286 |
Entropy (8bit): | 5.2433760865420895 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJfshHHrPeUkwRe9:YvXKXItYpW7oGUUUkee9 |
MD5: | 5CBB3F4ACDD2FF49CF9814F1DC78A693 |
SHA1: | 15196B246D3CB3B5D5C6D36E6592472DE172CBDA |
SHA-256: | 0409D72361F138C5DC1AAF6E0599C6D82874AF15194E6EABA3C1BE1A86EAC38B |
SHA-512: | D171DCBD4999CB764CA92D04998026DD9E054A4EA2F66982D1587EE6307843216C1906E3E5ECC2B006162F1CDCB1C43A9F2F6E5F50F203C8FA07D172DC01BA4F |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 282 |
Entropy (8bit): | 5.251763028122428 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXVmH0q4+FIbRI6XVW7+0YjSoAvJTqgFCrPeUkwRe9:YvXKXItYpW7oGTq16Ukee9 |
MD5: | A75CDA724FCA333CEF177FE6CCD7544A |
SHA1: | 8D5D8F09EE110049E804DD23CD37A7728F2BA8D7 |
SHA-256: | C30EC65C5E5E41DFEDC45277A3447457AEE308AC3AA27116103629CBD56587A3 |
SHA-512: | 602DEF6AF35E5B1A20861DF168D9E77D35168FAAF01D0684FFBC38908D58C17B79D07BA8725F94B55AAA31265074A531CA4274DF1B3D8F3EF43E965B75EB859A |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4 |
Entropy (8bit): | 0.8112781244591328 |
Encrypted: | false |
SSDEEP: | 3:e:e |
MD5: | DC84B0D741E5BEAE8070013ADDCC8C28 |
SHA1: | 802F4A6A20CBF157AAF6C4E07E4301578D5936A2 |
SHA-256: | 81FF65EFC4487853BDB4625559E69AB44F19E0F5EFBD6D5B2AF5E3AB267C8E06 |
SHA-512: | 65D5F2A173A43ED2089E3934EB48EA02DD9CCE160D539A47D33A616F29554DBD7AF5D62672DA1637E0466333A78AAA023CBD95846A50AC994947DC888AB6AB71 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2817 |
Entropy (8bit): | 5.1476651283794155 |
Encrypted: | false |
SSDEEP: | 48:YPMeTc6gPmsSfhO9SeR92zI6q3zPKU3cQxfFn/UF7kF2r9MFkHFjMt:wMeTc6gPmsSfhO9DR92zItjCacQFn/UU |
MD5: | 8653BACE931E2BC61FC3A6F174F3A442 |
SHA1: | A3D4ED862F6B3BE1F9BEC7569F9F013DC55BC706 |
SHA-256: | 535EFD7778F2B91E0546BE053A68932CDE4441A1421CD2A35FA2EE3D06EA13AA |
SHA-512: | 8DCAC5F75667B7CA635E459701144D990781D92C1232D4EB8E88E02CE2DDF0BD63703436C6D91CBCF18DAD014078DE95667674E89E64684A8C879BB5E9A24BD1 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 12288 |
Entropy (8bit): | 0.9838767856194975 |
Encrypted: | false |
SSDEEP: | 24:TLHRx/XYKQvGJF7urs6I1RZKHs/Ds/SpRlE4zJwtNBwtNbRZ6bRZ4IlEF:TVl2GL7ms6ggOVpRlvzutYtp6PzlI |
MD5: | 6E5A6EC2075CB942625C294B3A5153E3 |
SHA1: | 58F7A1A6299AE65F3EE8C49E68B340878F8AFFE5 |
SHA-256: | 76006AAD6A3DC38951685EEDE165DEF55DB2796D88EB152F0EBAD0514ADDACB2 |
SHA-512: | E8D8A3113212DD1FC172461F7862EB8BE131AAF91A811B880F3C8D98BD9F9BF17DF34324FA59E8BA0D4C6179408A8C42A56DA4E0383244FD353E76F8A9840289 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8720 |
Entropy (8bit): | 1.337927165141921 |
Encrypted: | false |
SSDEEP: | 48:7MyGgOVpRlYzutYtp6PM9qnqll2GL7ms6E:7BOVpRlPa+qVmsz |
MD5: | 275B58F0A8BB98B8045C73BCD4E07256 |
SHA1: | 69FEDFA0349715EA2571EF14320AB634808AF2B4 |
SHA-256: | 967B9C06783ABF73367FC1C13AA05E3F912DE7D20ACBEC3686101A216FF343CE |
SHA-512: | 08E098A4E50708C65522695559A9489C6073D6ADF0BA1F95EE5A3FD9C15E789A01413654A374D286135039064AFF4F2A137979BC9508036E93B5863903967E02 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 66726 |
Entropy (8bit): | 5.392739213842091 |
Encrypted: | false |
SSDEEP: | 768:RNOpblrU6TBH44ADKZEgBoqAw0vFiJJYFGjPWbTOwUSQJYyu:6a6TZ44ADEBoE0vFiJaMjPS0K |
MD5: | 2DEC43B4B340F4AF34EA594029FA850A |
SHA1: | EAEABDA09C1214542E9153530F4EF7662B382551 |
SHA-256: | E5EB436AE8E3EE040362580079839DC2CD56C76B507D3C22A5171B2EF317FC4C |
SHA-512: | 764B2D17DC623C6B8FEBCE9ADE2D114C9AD13F376F1C87BD63BB4E82F00BC2DF35C73AEA9C19449AEFCDCE4C37293EE1A86712C26F0DFDEBC6ACCEE8A16B1A90 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 246 |
Entropy (8bit): | 3.5030768995714583 |
Encrypted: | false |
SSDEEP: | 6:Qgl946caEbiQLxuZUQu+lEbYnuoblv2K8V6i4le:Qw946cPbiOxDlbYnuRKkV |
MD5: | 1C4E766E664255B5D594FAD0F6C3E22D |
SHA1: | 75EC9AB717D8DCA17CD9AA2FAB2C55FD342B6ED0 |
SHA-256: | BC3D86944E02E15E39DE8A17DCC1E152AB7C1B02A12DB1C49F0647A3D00C8FC3 |
SHA-512: | A87A04C887F1A89450B05245DDFAB772A9BEDAA5F10CF79DC0B91B99E838D22D867B56C64EB20300F5D75D7BF5A2322DBCBEF85D794609B17C6913E21E017203 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-12-06 01-04-01-068.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 16525 |
Entropy (8bit): | 5.376360055978702 |
Encrypted: | false |
SSDEEP: | 384:6b1sdmfenwop+WP21h2RPjRNg7JjO2on6oU6CyuJw1oaNIIu9EMuJuF6MKK9g9JQ:vIn |
MD5: | 1336667A75083BF81E2632FABAA88B67 |
SHA1: | 46E40800B27D95DAED0DBB830E0D0BA85C031D40 |
SHA-256: | F81B7C83E0B979F04D3763B4F88CD05BC8FBB2F441EBFAB75826793B869F75D1 |
SHA-512: | D039D8650CF7B149799D42C7415CBF94D4A0A4BF389B615EF7D1B427BC51727D3441AA37D8C178E7E7E89D69C95666EB14C31B56CDFBD3937E4581A31A69081A |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 16603 |
Entropy (8bit): | 5.314941453892024 |
Encrypted: | false |
SSDEEP: | 384:TwsUVfVPVzYZP0KjwnZUJNGbppAQnowRzTBWd9HBJXQF/UfhN1V8vl5uVuvKQaZ0:ctR2+ZN |
MD5: | 642B1B40E8DEBB5E5CE91D7E38AEE31D |
SHA1: | 47A765688FFA0372C395BBD62C2D4E8D251A23D9 |
SHA-256: | 00E2A303EA3983CF5DBA655099F235216D71C82EB8EC418E762C8900C310442C |
SHA-512: | CB77BC28C90135D57E62BC063DB7202206013516BBCE26AC09C1C8C2EA4A39C04FC8714DA96DA522BF6CE2044A63AE8F804C72D9FEEDC4A4B3035EB2FFEDA8F2 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 29752 |
Entropy (8bit): | 5.391797793704486 |
Encrypted: | false |
SSDEEP: | 768:GLxxlyVUFcAzWL8VWL1ANSFld5YjMWLvJ8Uy++NSXl3WLd5WLrbhhVClkVMwDGbM:r0 |
MD5: | 04C3818B8C0A24DBC74DA610AAA48117 |
SHA1: | C99D985B1A49669123F3BF3FB1BA076870414A41 |
SHA-256: | 75B18E921E1DD18B96A68516380448D6CC839A260C5D958A176D14BD7E31FFD8 |
SHA-512: | 0758ED2231437FB338704FE37BF53D7D50D29167D1A04C807C03556B5C04E00BB62CB0616A9026076518A9205E06F091E02D703E4714E9D41209A01A825554CC |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1407294 |
Entropy (8bit): | 7.97605879016224 |
Encrypted: | false |
SSDEEP: | 24576:GqA7o5dpy6mlind9j2kvhsfFXpAXDgrFBU2/R07/WLaGZDwYIGNPJe:5VB3mlind9i4ufFXpAXkrfUs0jWLaGZo |
MD5: | A9C99A0DD153B23D2C4DC943CC1567B4 |
SHA1: | B7B59DEEA23EDB8F8868D28D6BD67B20B21AFC58 |
SHA-256: | 2BAC328B0024285F5D0CC1407253D2C82EF65770FE5538FDB5863E05837D96D9 |
SHA-512: | 27873463B8DEB439C9550A0BD0FF2E4E46B2B3B485839BA25FFB17825A13D43C35C8BDD93A3239D9FAC408FB69EC15CA7D458A4A3D9DAFB29E7622BEBFC8CDA0 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1419751 |
Entropy (8bit): | 7.976496077007677 |
Encrypted: | false |
SSDEEP: | 24576:/xA7owWLaGZDwYIGNPJodpy6mlind9j2kvhsfFXpAXDgrFBU2/R07D:JVwWLaGZDwZGk3mlind9i4ufFXpAXkru |
MD5: | 18E3D04537AF72FDBEB3760B2D10C80E |
SHA1: | B313CD0B25E41E5CF0DFB83B33AB3E3C7678D5CC |
SHA-256: | BBEF113A2057EE7EAC911DC960D36D4A62C262DAE5B1379257908228243BD6F4 |
SHA-512: | 2A5B9B0A5DC98151AD2346055DF2F7BFDE62F6069A4A6A9AB3377B644D61AE31609B9FC73BEE4A0E929F84BF30DA4C1CDE628915AC37C7542FD170D12DE41298 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 758601 |
Entropy (8bit): | 7.98639316555857 |
Encrypted: | false |
SSDEEP: | 12288:ONh3P65+Tegs6121YSWBlkipdjuv1ybxrr/IxkB1mabFhOXZ/fEa+vTJJJJv+9U0:O3Pjegf121YS8lkipdjMMNB1DofjgJJg |
MD5: | 3A49135134665364308390AC398006F1 |
SHA1: | 28EF4CE5690BF8A9E048AF7D30688120DAC6F126 |
SHA-256: | D1858851B2DC86BA23C0710FE8526292F0F69E100CEBFA7F260890BD41F5F42B |
SHA-512: | BE2C3C39CA57425B28DC36E669DA33B5FF6C7184509756B62832B5E2BFBCE46C9E62EAA88274187F7EE45474DCA98CD8084257EA2EBE6AB36932E28B857743E5 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 386528 |
Entropy (8bit): | 7.9736851559892425 |
Encrypted: | false |
SSDEEP: | 6144:8OSTJJJJEQ6T9UkRm1lBgI81ReWQ53+sQ36X/FLYVbxrr/IxktOQZ1mau4yBwsOo:sTJJJJv+9UZX+Tegs661ybxrr/IxkB1m |
MD5: | 5C48B0AD2FEF800949466AE872E1F1E2 |
SHA1: | 337D617AE142815EDDACB48484628C1F16692A2F |
SHA-256: | F40E3C96D4ED2F7A299027B37B2C0C03EAEEE22CF79C6B300E5F23ACB1EB31FE |
SHA-512: | 44210CE41F6365298BFBB14F6D850E59841FF555EBA00B51C6B024A12F458E91E43FDA3FA1A10AAC857D4BA7CA6992CCD891C02678DCA33FA1F409DE08859324 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9773123250110434 |
Encrypted: | false |
SSDEEP: | 48:85odUTYooHqidAKZdA19ehwiZUklqehKy+3:8Z39Fy |
MD5: | DEDED9124BA17A09F974CE3EBB9A28CD |
SHA1: | 47C5DACCBD4055CB680F7BE45BCD1ADF6D74BAD9 |
SHA-256: | EE8400A3BA49E9F408D0673B76545E2B98DF541303F2A70F50E611B1735DE8DE |
SHA-512: | 502A6A83DE87EC62A1B8101EE81F5D544E36F42D8F734FA83FBDCE0E1BF4390EE1C77E2DF9DFA5A49373B253784C690958BA5384BB9E9556B5221655A8336835 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.994565923374845 |
Encrypted: | false |
SSDEEP: | 48:8codUTYooHqidAKZdA1weh/iZUkAQkqeh1y+2:8i339Qoy |
MD5: | 372F494D947496A02E1704AFB9FC4EDF |
SHA1: | 0271D9AE5FF989457BC337F73A0163250412B880 |
SHA-256: | 59BF55CA0DEE7055977262E094B0803A39C8E1172E61D16BCEF1FBD6C79A0F45 |
SHA-512: | E2C1B19795F722BA9802BF6B17B64850F39D8375893826C94E88055A00A3D7CA383A8B9C18B84CA12C608EA9F2347BD2017631A089FA973CB5086008535B430E |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.007075952133955 |
Encrypted: | false |
SSDEEP: | 48:8xnodUTYosHqidAKZdA14tseh7sFiZUkmgqeh7sby+BX:8x73Tn5y |
MD5: | A80DECD2D601102562AE058E7B20D006 |
SHA1: | B6782B740B4D1055C50148C5F59B53A7DBCCE9EE |
SHA-256: | 7FF24A6DA1E45420AC1E78A6D317C36117D69702ED9D0726C86E1705666C6D12 |
SHA-512: | 84C2FE66E47FC36FBE00D8A2602D3EDF28B69ED39F4340CD06EA0D1340F56A623F64EB7385549A4589E4104AB58BAC99EC6C8DE8BBF23F2A35B5E9C579824A96 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9924542348753445 |
Encrypted: | false |
SSDEEP: | 48:8ModUTYooHqidAKZdA1vehDiZUkwqehxy+R:8y30zy |
MD5: | 62BB260CD91D00B7CCA6D43ECCCBCCDA |
SHA1: | 8626A4D9ECB4F6DD7404BE99BDFE02C644DF3076 |
SHA-256: | 0D4FF78D568C4DC6A37B12896B7AEDD4D9D19A50DB2327A2355A513E639C75B4 |
SHA-512: | 168D511CE12C8C25A05DE43F5D0A5C7DC76DD4663A023799B70E75A6FB4F53DE2811401AD4A66BBDD667128A38F55F98943FB59E3953F4B8F4C46B7E07F76FF1 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9851566441548227 |
Encrypted: | false |
SSDEEP: | 48:8AodUTYooHqidAKZdA1hehBiZUk1W1qehPy+C:8O3U9vy |
MD5: | 97910AF2DE4734B6BCF418565303CA05 |
SHA1: | F33F6C8A48DD7C59DCD582154483C579EF661D59 |
SHA-256: | 3757FA82BA449348508380343726A510E0AC18D200B2B0642F4A145F3C10A8B6 |
SHA-512: | B39838081F84A6A93E848BC795657D06C10103CF68412CD965419329446E39AE0D4C86D697FA34E83C485B971AD5D47B7AB708EA3C263A58BB0C63DECBE88F92 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.9921938375335144 |
Encrypted: | false |
SSDEEP: | 48:8todUTYooHqidAKZdA1duT+ehOuTbbiZUk5OjqehOuTb5y+yT+:8V36T/TbxWOvTb5y7T |
MD5: | 51189558881A771650FDEB5B111B414D |
SHA1: | 256107B4E4864E5CD771B30AC6AF137E166DF7CC |
SHA-256: | 924680BCBAF39E0352B98701B49F87FD93BBF84A40C1982DDA12387E8D972B5E |
SHA-512: | 83D779E70760992E9ADA6884B27C9451A61CB6395C338E82E9E2FC67C777CABF187B46CE7534AABA66114B212DDB9CF5F9DC9C7EE8676740062D256AF2787761 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1229 |
Entropy (8bit): | 7.795282114082737 |
Encrypted: | false |
SSDEEP: | 24:vgEq3r36F6CRRtOD5R+wQmZQqdxfNxUsVadACg0aG:vgEq3DcRRu7QfmUsVadAl0aG |
MD5: | E198D3D3F75FF270E4DE1C36E0BF4A8A |
SHA1: | C9B68D5472B2B32B46CB0922CEC0FEA76ABB1DC3 |
SHA-256: | 029B50BBBC9BCE1593AE21671033736AE44111EE275E346B6316AE508DD61685 |
SHA-512: | 24A9385BB7AA23B8656843591B34200EDFBB13AE77062780892897C77005F299D31CD29325D62D48F2230DF016C98643D8BD0CB02CBEEDA08E7AF78A4EFC67F6 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4022 |
Entropy (8bit): | 7.933685664446488 |
Encrypted: | false |
SSDEEP: | 96:UMwbd5diYRViGbbv5XxAHc0+c1dXciRWpbV6WSNYl:U3di1GpBSpsiRWvX |
MD5: | EF984B9CE53801ADAE1FAE29B5A5792F |
SHA1: | 653DE3EACDAA9B38634892A021FF63CC46D84C2E |
SHA-256: | C2B2CA401F18B83BB197CED34FB80BAE4A3E3E2259F86CE4946EFE36BB7ACADF |
SHA-512: | 1D447C32A79198B4EAAAB54A6A7483D9E107A41721CDB2DE88EE282F57ED97ADEB9CAFD6AA77C30CF36D7A886FC48960FE317B225FE1CF1035DCD9F10631334D |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/verify.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4082 |
Entropy (8bit): | 7.932033069392358 |
Encrypted: | false |
SSDEEP: | 96:/11FsF7PC9PVG4ARxiLWMAm2ysYsBCxdWjjjHu41:t1KKST35DmTmCx8bB |
MD5: | F69BD1A8C5D18C08C140445DC8DBC7E2 |
SHA1: | ED7CBF47983BD9B39D188A531C350C3B3D05DB0E |
SHA-256: | C6E325A690B4378B2C1E25F604A4E1F197910F75B55218A495FACFF076ADF97B |
SHA-512: | F411945CF6124CA7FC7547F647A47180E87FA5670B7F1EAA85865122B12C07F0E97F708223B5371D056AA648563F79268E17EA2D8B313A51479E4E05C19407A6 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/verify_app.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.625 |
Encrypted: | false |
SSDEEP: | 3:HYOvinY:4OD |
MD5: | 2824F3BA5F591CD0F71B7F459AD29AE5 |
SHA1: | 65369608C6BD54AC4C703B6904D17D7D759878BE |
SHA-256: | 0C0A807545A0344B360C0F692D284799A2447310C7A9AACF3CB92C22D13E906A |
SHA-512: | C1C3FFD34A4E9131B0F68CF6A2A35B62994D55332D18BA06E3464C213D4245B6C89DD55E797317078A3705E265D65AC232E042C8BB9531F65871659EE4DA50DD |
Malicious: | false |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAkT_M06vdF-cBIFDXCu2Qk=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 89501 |
Entropy (8bit): | 5.289893677458563 |
Encrypted: | false |
SSDEEP: | 1536:DjExXUqJnxDjoXEZxkMV4QYSt0zvDL6gP3h8cApwEIOzVTB/UjPazMdLiX4mQ1v9:DIh8GgP3hujzwbhd3XvSiDQ47GKn |
MD5: | 8FB8FEE4FCC3CC86FF6C724154C49C42 |
SHA1: | B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4 |
SHA-256: | FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E |
SHA-512: | F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5096 |
Entropy (8bit): | 7.803339345841521 |
Encrypted: | false |
SSDEEP: | 96:NIfVT/yFUlLCyPp+9k0fRLQbWiwO6WSksCabRy7DoicRSFocjdqPo2Ua9xyo:NoT/yaFok0ibwO6asMIJPo2jKo |
MD5: | 804F72421862425A01D9697F9F36C9A2 |
SHA1: | B73DF25467E364FB229E7715E5393B5931491977 |
SHA-256: | 112D2EAC21572A13C7DC55466DDD3091E28829611716C911714C05D183CFC56C |
SHA-512: | 0F4D8A9BF24D190311D5DE9FD9F8A08E2BC9848230DE53570A264DB00711080292785CD59231D4B8BCBE9D7BBEDF470EFEBE832AE7212BA04524B4C00552DCDA |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/appnotif2.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4082 |
Entropy (8bit): | 7.932033069392358 |
Encrypted: | false |
SSDEEP: | 96:/11FsF7PC9PVG4ARxiLWMAm2ysYsBCxdWjjjHu41:t1KKST35DmTmCx8bB |
MD5: | F69BD1A8C5D18C08C140445DC8DBC7E2 |
SHA1: | ED7CBF47983BD9B39D188A531C350C3B3D05DB0E |
SHA-256: | C6E325A690B4378B2C1E25F604A4E1F197910F75B55218A495FACFF076ADF97B |
SHA-512: | F411945CF6124CA7FC7547F647A47180E87FA5670B7F1EAA85865122B12C07F0E97F708223B5371D056AA648563F79268E17EA2D8B313A51479E4E05C19407A6 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2805 |
Entropy (8bit): | 5.420340244119878 |
Encrypted: | false |
SSDEEP: | 48:vnuDl1H1Qjy1TSIBf3oJDLNP4I0F0fx4l0XtAmNPtMlSyi+huuyH6IcHwI2s4KHD:vnuDl1H1Qjy1TSkwJDLNMF0fxJamNuSW |
MD5: | 0CB699A5581C3F985C95D7622A448B27 |
SHA1: | 22E6428F3893AB5F272C4A4D7C694CC0F9C67E20 |
SHA-256: | D156C15C56A07666D0DE4E518C4960DA11648012D8B0ADB6AD0D549A45594E30 |
SHA-512: | 48D31F0AAF970B87041039924F4EB357D4F56CE7524FAA829D62ED5E8BD22449F11B33AF91EB4125DEAE965FC99241184764A9D256932DB1BC31F0FA7785F7BA |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1400 |
Entropy (8bit): | 7.808470583085035 |
Encrypted: | false |
SSDEEP: | 24:rIcdIg4GFKiUqLRfqX5Cbg2tRSpGHM0RMrB6nzU9Jd28VVdYfWZG0rrZgqhpT:rHUZGRNEoSpGHMTrB6zUXdNVSi1b |
MD5: | 333EE830E5AB72C41DD9126A27B4D878 |
SHA1: | 12D8D66EBB3076F3D6069E133C3212F97C8774E1 |
SHA-256: | 8702292CBC365E9F0488143E2B309B85EFE09C61FD2E0A2E21C53735A309313C |
SHA-512: | 3413ED624241877C1D44FEE23FD37745CB214C12AE73FACFAFA07B47FA1CB9E5DAA3CB7F542564E04075FFE8BA744C962FBDD78F08A643A90C0EC1118C05BBF8 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/logo.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 6626 |
Entropy (8bit): | 7.863868068132476 |
Encrypted: | false |
SSDEEP: | 96:UIfVT/yFUlLCyPp+9k0fRLQbWiwO6WSksCabRy7DoxPgRSFocjdwsiuGH6+Nsyy3:UoT/yaFok0ibwO6asM4gdhu4DuG9tNTG |
MD5: | 3AFF8064BB4CA017473290B5E3B9F949 |
SHA1: | D3F110D0C60CD21D3F7A2725157FC419F5B9DD99 |
SHA-256: | 153A445447F6DC712D29916BE3B172055729D7E132B5E75041C34BCF4AF19951 |
SHA-512: | D785FDF9B9E7345A23803E2047ED2F749390E92CB9E2167B3B8F1D05562B4A1D9DF46027B390D5BD90E9D78FAF244E85E13FE2237C91888662E30A56C4AFD885 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2612 |
Entropy (8bit): | 7.893325741442987 |
Encrypted: | false |
SSDEEP: | 48:JaJUWubrnA4Xcyhd30hiCxexgGY5peuasS24P2lp:TWgrnA4XdzKjNxaXi |
MD5: | 8244AF7FE59CC67A3B69CD98F19862C6 |
SHA1: | C0D505C27802EBC71C5D551A55D56A78138EA3A7 |
SHA-256: | F8917DA114B5593AFD3C934A2A588DB7191D6E645833B6809D81DE64722CD21A |
SHA-512: | 2E4E8B28E6627DA6D7576A74566826DD54A7A2CC0FA95E576DEEC38E887262F24BCEC488C9AEC30295E8015220F427169112FA3547407718E76A5D08D839AAA7 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/verify_code.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2612 |
Entropy (8bit): | 7.893325741442987 |
Encrypted: | false |
SSDEEP: | 48:JaJUWubrnA4Xcyhd30hiCxexgGY5peuasS24P2lp:TWgrnA4XdzKjNxaXi |
MD5: | 8244AF7FE59CC67A3B69CD98F19862C6 |
SHA1: | C0D505C27802EBC71C5D551A55D56A78138EA3A7 |
SHA-256: | F8917DA114B5593AFD3C934A2A588DB7191D6E645833B6809D81DE64722CD21A |
SHA-512: | 2E4E8B28E6627DA6D7576A74566826DD54A7A2CC0FA95E576DEEC38E887262F24BCEC488C9AEC30295E8015220F427169112FA3547407718E76A5D08D839AAA7 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 8390 |
Entropy (8bit): | 4.859481128380926 |
Encrypted: | false |
SSDEEP: | 192:k3S5sLPFbCuze5upKYLe6ZN/dGNUsv7u+myfFgmn/FBgC4XloqPZ9GF0VnwlJrwb:fAFbZLhZN1yfFdF+e4nQ0 |
MD5: | CDF90F3517EE6CA9B704681368DAF1CB |
SHA1: | BECB98AE7A483339F6ACF03201A4B089CF4673F0 |
SHA-256: | 9C812D66179E70116FF42E7F6191883B0F0797EF797831C75B294F4684383248 |
SHA-512: | AF4E05A67DB3966D7C883A34C74D8C74EA963D317EC04A387AE7950B2CF02B0B5AFEEEDE6C228CDF57804BE49534079A31D5C5A12D10A3D7232C45B64BD461BE |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/styles/app.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 231 |
Entropy (8bit): | 6.725074433303473 |
Encrypted: | false |
SSDEEP: | 6:6v/lhPZsRtsa9hC0bKDHv5Ef30XY4qMa3IE6Aleup:6v/76eAhbSHusYX4E3 |
MD5: | 547988BAC5584B4608466D761E16F370 |
SHA1: | C11BB71049702528402A31027F200184910A7E23 |
SHA-256: | 70E32B2DB3F079BB0295A85A0DB15ED9E5926294DD947938D6CFA595F5AB18B4 |
SHA-512: | C4A76F6E94982D1CC02C2B67523A334E76BFDE525C1014D32DB9E7ECA0FA39A06F291ECFA94C8C6A49D488EA3ACF9C10DDF3CAD9515562010440863D0F08FBA3 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/back.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4022 |
Entropy (8bit): | 7.933685664446488 |
Encrypted: | false |
SSDEEP: | 96:UMwbd5diYRViGbbv5XxAHc0+c1dXciRWpbV6WSNYl:U3di1GpBSpsiRWvX |
MD5: | EF984B9CE53801ADAE1FAE29B5A5792F |
SHA1: | 653DE3EACDAA9B38634892A021FF63CC46D84C2E |
SHA-256: | C2B2CA401F18B83BB197CED34FB80BAE4A3E3E2259F86CE4946EFE36BB7ACADF |
SHA-512: | 1D447C32A79198B4EAAAB54A6A7483D9E107A41721CDB2DE88EE282F57ED97ADEB9CAFD6AA77C30CF36D7A886FC48960FE317B225FE1CF1035DCD9F10631334D |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1229 |
Entropy (8bit): | 7.795282114082737 |
Encrypted: | false |
SSDEEP: | 24:vgEq3r36F6CRRtOD5R+wQmZQqdxfNxUsVadACg0aG:vgEq3DcRRu7QfmUsVadAl0aG |
MD5: | E198D3D3F75FF270E4DE1C36E0BF4A8A |
SHA1: | C9B68D5472B2B32B46CB0922CEC0FEA76ABB1DC3 |
SHA-256: | 029B50BBBC9BCE1593AE21671033736AE44111EE275E346B6316AE508DD61685 |
SHA-512: | 24A9385BB7AA23B8656843591B34200EDFBB13AE77062780892897C77005F299D31CD29325D62D48F2230DF016C98643D8BD0CB02CBEEDA08E7AF78A4EFC67F6 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/verify_sms.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1400 |
Entropy (8bit): | 7.808470583085035 |
Encrypted: | false |
SSDEEP: | 24:rIcdIg4GFKiUqLRfqX5Cbg2tRSpGHM0RMrB6nzU9Jd28VVdYfWZG0rrZgqhpT:rHUZGRNEoSpGHMTrB6zUXdNVSi1b |
MD5: | 333EE830E5AB72C41DD9126A27B4D878 |
SHA1: | 12D8D66EBB3076F3D6069E133C3212F97C8774E1 |
SHA-256: | 8702292CBC365E9F0488143E2B309B85EFE09C61FD2E0A2E21C53735A309313C |
SHA-512: | 3413ED624241877C1D44FEE23FD37745CB214C12AE73FACFAFA07B47FA1CB9E5DAA3CB7F542564E04075FFE8BA744C962FBDD78F08A643A90C0EC1118C05BBF8 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6293 |
Entropy (8bit): | 4.342522594806701 |
Encrypted: | false |
SSDEEP: | 48:tpAp+kF2UtD9cifxU1KkTwLevDRexH5d3JG5cxUXGmU1mAw9kx9rax6K4AshZtBm:op+kFbeUUPwLc9exHjoGwSO4ApKk |
MD5: | 8C545DCD749E49C8DF83CB8EBD8DE2DD |
SHA1: | 18E5488BDE304B05E7895C9DEA495F02B9F79FF8 |
SHA-256: | B115C7ECE112EB8CCDDDC484E4992F48B865F6A28887ACD58D413DCAF0B90941 |
SHA-512: | 99E4E8A9DA3871F2315250619F98F3A437A81262031F7DB8977D7092383C93D6DC3A2B584BEFB2D9790F58078CA2D279207C6AD161139468B08D93F6BC2B57CA |
Malicious: | false |
URL: | https://synbion.com.my/12902x/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 231 |
Entropy (8bit): | 6.725074433303473 |
Encrypted: | false |
SSDEEP: | 6:6v/lhPZsRtsa9hC0bKDHv5Ef30XY4qMa3IE6Aleup:6v/76eAhbSHusYX4E3 |
MD5: | 547988BAC5584B4608466D761E16F370 |
SHA1: | C11BB71049702528402A31027F200184910A7E23 |
SHA-256: | 70E32B2DB3F079BB0295A85A0DB15ED9E5926294DD947938D6CFA595F5AB18B4 |
SHA-512: | C4A76F6E94982D1CC02C2B67523A334E76BFDE525C1014D32DB9E7ECA0FA39A06F291ECFA94C8C6A49D488EA3ACF9C10DDF3CAD9515562010440863D0F08FBA3 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 89501 |
Entropy (8bit): | 5.289893677458563 |
Encrypted: | false |
SSDEEP: | 1536:DjExXUqJnxDjoXEZxkMV4QYSt0zvDL6gP3h8cApwEIOzVTB/UjPazMdLiX4mQ1v9:DIh8GgP3hujzwbhd3XvSiDQ47GKn |
MD5: | 8FB8FEE4FCC3CC86FF6C724154C49C42 |
SHA1: | B82D238D4E31FDF618BAE8AC11A6C812C03DD0D4 |
SHA-256: | FF1523FB7389539C84C65ABA19260648793BB4F5E29329D2EE8804BC37A3FE6E |
SHA-512: | F3DE1813A4160F9239F4781938645E1589B876759CD50B7936DBD849A35C38FFAED53F6A61DBDD8A1CF43CF4A28AA9FFFBFDDEEC9A3811A1BB4EE6DF58652B31 |
Malicious: | false |
URL: | https://code.jquery.com/jquery-3.6.0.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2805 |
Entropy (8bit): | 5.420340244119878 |
Encrypted: | false |
SSDEEP: | 48:vnuDl1H1Qjy1TSIBf3oJDLNP4I0F0fx4l0XtAmNPtMlSyi+huuyH6IcHwI2s4KHD:vnuDl1H1Qjy1TSkwJDLNMF0fxJamNuSW |
MD5: | 0CB699A5581C3F985C95D7622A448B27 |
SHA1: | 22E6428F3893AB5F272C4A4D7C694CC0F9C67E20 |
SHA-256: | D156C15C56A07666D0DE4E518C4960DA11648012D8B0ADB6AD0D549A45594E30 |
SHA-512: | 48D31F0AAF970B87041039924F4EB357D4F56CE7524FAA829D62ED5E8BD22449F11B33AF91EB4125DEAE965FC99241184764A9D256932DB1BC31F0FA7785F7BA |
Malicious: | false |
URL: | https://cdn.jsdelivr.net/gh/syntaxerror019/HTML-STO/ld.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 60 |
Entropy (8bit): | 4.842749405075779 |
Encrypted: | false |
SSDEEP: | 3:HvHBthlx9Ekz1GwM8nsYn:jn3EkzMP2sYn |
MD5: | 3E3A9DBE5828D868CF824DB636665521 |
SHA1: | 96E9874716E098DDAEAFE1A30A3AD201085B1A28 |
SHA-256: | F9A7BA5B9CEFD0301A4367E653D5EFBE8F6913977C6CB137811D554CE936E941 |
SHA-512: | C4C3A4A94F2CAB65AA70BB5A99D63F0DF55A26A814BB4B753C9886D9C48CAC96F57BF7E06027E18450830287CF975B0783B47E2A9F065F976EAEB4494056D60F |
Malicious: | false |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAldIsNGRTPSshIFDc8jKv8SEAke224G97_I7hIFDcWTxCQSEAkqV3qz0bTH0xIFDXVfuUESEAlpkpLkHKPaNBIFDXVfuUE=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5096 |
Entropy (8bit): | 7.803339345841521 |
Encrypted: | false |
SSDEEP: | 96:NIfVT/yFUlLCyPp+9k0fRLQbWiwO6WSksCabRy7DoicRSFocjdqPo2Ua9xyo:NoT/yaFok0ibwO6asMIJPo2jKo |
MD5: | 804F72421862425A01D9697F9F36C9A2 |
SHA1: | B73DF25467E364FB229E7715E5393B5931491977 |
SHA-256: | 112D2EAC21572A13C7DC55466DDD3091E28829611716C911714C05D183CFC56C |
SHA-512: | 0F4D8A9BF24D190311D5DE9FD9F8A08E2BC9848230DE53570A264DB00711080292785CD59231D4B8BCBE9D7BBEDF470EFEBE832AE7212BA04524B4C00552DCDA |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6626 |
Entropy (8bit): | 7.863868068132476 |
Encrypted: | false |
SSDEEP: | 96:UIfVT/yFUlLCyPp+9k0fRLQbWiwO6WSksCabRy7DoxPgRSFocjdwsiuGH6+Nsyy3:UoT/yaFok0ibwO6asM4gdhu4DuG9tNTG |
MD5: | 3AFF8064BB4CA017473290B5E3B9F949 |
SHA1: | D3F110D0C60CD21D3F7A2725157FC419F5B9DD99 |
SHA-256: | 153A445447F6DC712D29916BE3B172055729D7E132B5E75041C34BCF4AF19951 |
SHA-512: | D785FDF9B9E7345A23803E2047ED2F749390E92CB9E2167B3B8F1D05562B4A1D9DF46027B390D5BD90E9D78FAF244E85E13FE2237C91888662E30A56C4AFD885 |
Malicious: | false |
URL: | https://synbion.com.my/88x9l/page/images/info.png |
Preview: |
File type: | |
Entropy (8bit): | 7.602498767641155 |
TrID: |
|
File name: | Scan_03774843.pdf |
File size: | 39'904 bytes |
MD5: | 23cd3cf42ddbddd512c4580a0c57147d |
SHA1: | 727c281d97c9af128d216463872404c1c04baa5a |
SHA256: | 8b1d0c645659186848fd2d9cae70676c8d2ce2f03cde24907fa1ba78691ed096 |
SHA512: | 6e0bc204f024534f10fb93b15424d522b3ab02fab6ce5b642a39e72e4ddddea1cc389d64b3acff586d802bb9d972ef80dd54d21903c903c9732081c8b85ab827 |
SSDEEP: | 768:yGIljT0r70OTJ7RQC6CCQEOnMbgs0aWLUr+xXdIVlrwCB:aqNQC6CCmM8s0aWLUrwXd2OU |
TLSH: | 79033C83CF0819DFD02597A97EC76C2FDB687A2CF4D263EE346C0DC56B805165E9A01A |
File Content Preview: | %PDF-1.7..%......1 0 obj..<</Type/Catalog/Pages 2 0 R/Lang(en) /Metadata 15 0 R/ViewerPreferences 16 0 R>>..endobj..2 0 obj..<</Type/Pages/Count 1/Kids[ 3 0 R] >>..endobj..3 0 obj..<</Type/Page/Parent 2 0 R/Resources<</Font<</F1 5 0 R>>/ExtGState<</GS7 7 |
Icon Hash: | 62cc8caeb29e8ae0 |
General | |
---|---|
Header: | %PDF-1.7 |
Total Entropy: | 7.602499 |
Total Bytes: | 39904 |
Stream Entropy: | 7.608242 |
Stream Bytes: | 36926 |
Entropy outside Streams: | 5.421112 |
Bytes outside Streams: | 2978 |
Number of EOF found: | 2 |
Bytes after EOF: |
Name | Count |
---|---|
obj | 17 |
endobj | 17 |
stream | 6 |
endstream | 6 |
xref | 2 |
trailer | 2 |
startxref | 2 |
/Page | 1 |
/Encrypt | 0 |
/ObjStm | 0 |
/URI | 2 |
/JS | 0 |
/JavaScript | 0 |
/AA | 0 |
/OpenAction | 0 |
/AcroForm | 0 |
/JBIG2Decode | 0 |
/RichMedia | 0 |
/Launch | 0 |
/EmbeddedFile | 0 |
Image Streams |
---|
ID | DHASH | MD5 | Preview |
---|---|---|---|
11 | ccd4b4b4c8c8c8c8 | 1e22964ca3809e3c64602f8ac4dd5adf |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 6, 2024 07:04:12.491334915 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:12.491357088 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:12.491441011 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:12.491687059 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:12.491703033 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.709629059 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.710407972 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:13.710419893 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.711445093 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.711514950 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:13.755513906 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:13.755594969 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.755605936 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:13.803319931 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.810954094 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:13.810965061 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:13.857817888 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:14.144963980 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:14.145042896 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:14.145179987 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:14.145500898 CET | 49719 | 443 | 192.168.2.5 | 23.56.162.204 |
Dec 6, 2024 07:04:14.145512104 CET | 443 | 49719 | 23.56.162.204 | 192.168.2.5 |
Dec 6, 2024 07:04:26.274333954 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.274374008 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:26.274435997 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.274827957 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.274838924 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:26.275342941 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.275382042 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:26.275449038 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.275646925 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:26.275660038 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.954360962 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.954438925 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.993642092 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.993657112 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.993818045 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.993835926 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.994911909 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.994982958 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.995018959 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.995064974 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.997909069 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.998002052 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.999342918 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.999412060 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:27.999821901 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:27.999828100 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.040910006 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.040920019 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.040976048 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.086725950 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.771014929 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.771192074 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.771199942 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.771296978 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.771323919 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.771368980 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.771447897 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.771490097 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.797154903 CET | 49746 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.797172070 CET | 443 | 49746 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:28.811966896 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:28.859329939 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:29.357460022 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:29.357639074 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:29.357711077 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:29.358392000 CET | 49747 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:29.358412027 CET | 443 | 49747 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:29.365747929 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:29.365791082 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:29.365860939 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:29.366333961 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:29.366344929 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:30.237555981 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:30.237596989 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:30.237659931 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:30.237920046 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:30.237932920 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:31.066411018 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.070422888 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.070446014 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.070796967 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.071176052 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.071239948 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.071326971 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.119342089 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.123583078 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.908905983 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.909053087 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.910190105 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.910376072 CET | 49754 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:04:31.910388947 CET | 443 | 49754 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:04:31.931977987 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:31.932195902 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:31.932208061 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:31.933154106 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:31.933309078 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:31.934175968 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:31.934236050 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:31.983050108 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:31.983062983 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:32.029923916 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:41.648154020 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:41.648206949 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:04:41.648267031 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:41.968276024 CET | 49760 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:04:41.968296051 CET | 443 | 49760 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:30.156879902 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:30.156909943 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:30.156991959 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:30.157388926 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:30.157402039 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:31.850034952 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:31.850375891 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:31.850394011 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:31.850724936 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:31.851111889 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:31.851228952 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:31.904158115 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:41.546852112 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:41.546930075 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:05:41.547009945 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:41.969453096 CET | 49902 | 443 | 192.168.2.5 | 142.250.181.100 |
Dec 6, 2024 07:05:41.969479084 CET | 443 | 49902 | 142.250.181.100 | 192.168.2.5 |
Dec 6, 2024 07:06:45.044301987 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.044333935 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:45.044430017 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.046288013 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.046350002 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:45.046438932 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.047348022 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.047369003 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:45.047642946 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:45.047656059 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.721386909 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.721899986 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:46.721916914 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.722271919 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.722568035 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:46.722620964 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.722719908 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:46.767328978 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.910049915 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:46.960062027 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:47.020256996 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:47.020277023 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:47.020668030 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:47.024493933 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:47.024559021 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:47.069854975 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.546818018 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.546858072 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.547024965 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.547043085 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.547091007 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.547730923 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.547791004 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.547833920 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.547842026 CET | 443 | 49980 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.547873974 CET | 49980 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.574062109 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.574098110 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.574171066 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.574702978 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.574713945 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:48.574973106 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:48.615339994 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.507249117 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530524969 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530555964 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530606031 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530618906 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530685902 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.530800104 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.530800104 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.559256077 CET | 49981 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.559287071 CET | 443 | 49981 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.599881887 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.599915981 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:49.599984884 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.600445032 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:49.600460052 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.033478975 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.033802032 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.033818960 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.034183979 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.034534931 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.034607887 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.034674883 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.075339079 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.283217907 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.285154104 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.285196066 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.285497904 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.285968065 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.286024094 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.341051102 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.886215925 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.886253119 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.886425018 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.886442900 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.886535883 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:51.886560917 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:51.891387939 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.083385944 CET | 49982 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.083406925 CET | 443 | 49982 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:52.116780043 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.116789103 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.116799116 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:52.119308949 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.119688988 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:52.119699955 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:52.163337946 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.556534052 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.606245041 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.606281996 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.647574902 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.795353889 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795366049 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795412064 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795427084 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795443058 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795460939 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.795520067 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.795542002 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.802727938 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.802972078 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.802983999 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.803349018 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.803625107 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.803680897 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.803764105 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.842098951 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.844023943 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.844029903 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850161076 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850169897 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850202084 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850212097 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850227118 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850234032 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:53.850250959 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:53.850297928 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.039589882 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.039602041 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.039643049 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.039653063 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.039814949 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.039814949 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.039848089 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.039907932 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.075709105 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.075717926 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.075746059 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.075921059 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.075921059 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.075949907 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.076001883 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.118551970 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.118570089 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.118666887 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.118684053 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.118832111 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.160557985 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.160579920 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.160686970 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.160696030 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.160849094 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.280188084 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.280213118 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.280298948 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.280313969 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.280359983 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.301132917 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.301151991 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.301332951 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.301341057 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.301389933 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.309624910 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.309700966 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.309708118 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.319648981 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.319685936 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.319720984 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.319729090 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.319778919 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.319791079 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.321666002 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.321682930 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.321751118 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.321957111 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.321969986 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.328078985 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.328114986 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.328171015 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.328177929 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.328213930 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.332211971 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.332253933 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.332315922 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.332524061 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.332535982 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.342331886 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.342377901 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.342421055 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.342430115 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.342483997 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.387089014 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.387115955 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.387238026 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.387248993 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.433073997 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.460258961 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.460270882 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.460309029 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.460324049 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.460498095 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.460499048 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.460511923 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.460565090 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.464982033 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:54.465009928 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:54.465080023 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:54.465306997 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:54.465317965 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:54.497518063 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.497525930 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.497561932 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.497713089 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.497713089 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.497725964 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.497767925 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.506079912 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.506127119 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.506201029 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.506215096 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.506258965 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.513144970 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.513168097 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.513232946 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.513245106 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.513279915 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.513297081 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.521063089 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.521079063 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.521146059 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.521152973 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.521194935 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.528965950 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.528985023 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.529048920 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.529057026 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.529098034 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.535876989 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.535896063 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.535959959 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.535968065 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.536019087 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.544316053 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.544332981 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.544408083 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.544414043 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.544456005 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.575295925 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.634972095 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644706964 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644715071 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644745111 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644757986 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.644776106 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644789934 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.644798040 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.644843102 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.648374081 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.648379087 CET | 49985 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.648391962 CET | 443 | 49985 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.648395061 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.648469925 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.648480892 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.648528099 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.648539066 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.687784910 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.687804937 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.687871933 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.687879086 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.687921047 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.689735889 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.689796925 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.690345049 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:54.690395117 CET | 443 | 49983 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:54.690454006 CET | 49983 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:55.677905083 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:55.678188086 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:55.678209066 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:55.679495096 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:55.679559946 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:55.680551052 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:55.680612087 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:55.680804968 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:55.680813074 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:55.734472036 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.108225107 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.108292103 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.108319044 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.108342886 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.108344078 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.108362913 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.108505011 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.116353035 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.116415977 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.116427898 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.124840975 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.124903917 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.124914885 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.133270025 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.133322001 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.133332014 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.172686100 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.172698021 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.219748974 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.228085995 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.282687902 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.343233109 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343242884 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343272924 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343333006 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.343501091 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.343556881 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343564034 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343578100 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.343602896 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.343620062 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.384799957 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384809971 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384836912 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384862900 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384870052 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384886026 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.384955883 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.385117054 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.385122061 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.385164976 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.510829926 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.510839939 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.510865927 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.510925055 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.510931969 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.510973930 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.539617062 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.539644957 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.539690971 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.539702892 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.539738894 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.539757013 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.551285028 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.551363945 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.551373005 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.551387072 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.551445961 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.552366972 CET | 49988 | 443 | 192.168.2.5 | 151.101.2.137 |
Dec 6, 2024 07:06:56.552380085 CET | 443 | 49988 | 151.101.2.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.566418886 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.566456079 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.566510916 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.566771030 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.566782951 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.571686029 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.571733952 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.571819067 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.572030067 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.572043896 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.572678089 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.572689056 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.572741985 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.572973967 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.572983027 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.574172020 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.574209929 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.574270010 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.574526072 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:56.574539900 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:56.738929987 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:56.738970995 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:56.739037991 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:56.739574909 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:56.739590883 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:57.947743893 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:57.948069096 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:57.948101044 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:57.948978901 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:57.949035883 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:57.949486017 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:57.949548006 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:57.949655056 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:57.949661970 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.000053883 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.252657890 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.253134966 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.253148079 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.255739927 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.255908966 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.256159067 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.256324053 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.256330967 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.256340981 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.302613974 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.302620888 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.349306107 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.381917953 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.436109066 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.443902969 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.444217920 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.444227934 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.445213079 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.445297956 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.445976019 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.446029902 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.446702003 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.446708918 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.500262022 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.501674891 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501691103 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501728058 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501740932 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501745939 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.501766920 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501775026 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.501780987 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.501820087 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.614641905 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.614692926 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.614737988 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.614795923 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.614825964 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.614845037 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.614850998 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.614913940 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.654961109 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.654983044 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.655071020 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.655096054 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.655159950 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.781886101 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.781907082 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.781990051 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.782006025 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.782052994 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.782083035 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.783224106 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.783529997 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.783539057 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.784624100 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.784693003 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.785012007 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.785074949 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.785177946 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.785183907 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.795384884 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.795805931 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.795845985 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.796852112 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.796911955 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.797228098 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.797276974 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.797427893 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.797435999 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.809741020 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.809758902 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.809837103 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.809849024 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.809907913 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.821319103 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.821379900 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.821408033 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.821449995 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.821728945 CET | 49993 | 443 | 192.168.2.5 | 151.101.130.137 |
Dec 6, 2024 07:06:58.821743965 CET | 443 | 49993 | 151.101.130.137 | 192.168.2.5 |
Dec 6, 2024 07:06:58.825395107 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.840454102 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.991538048 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.991894960 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.991925955 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.992240906 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.992543936 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:58.992592096 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:58.992722988 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.001306057 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.001518011 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.001533031 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.001843929 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.002108097 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.002162933 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.002229929 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.035355091 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.043318987 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.085433006 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.086021900 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.087439060 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.088057041 CET | 49989 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.088074923 CET | 443 | 49989 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.090686083 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.090737104 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.091425896 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.092278004 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.092292070 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.533596039 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.533670902 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.533792019 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.613025904 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.613081932 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.613208055 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.643722057 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643758059 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.643784046 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643846035 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643877029 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643882036 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.643903971 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643908024 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.643910885 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.643960953 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.645778894 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.646152020 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.646208048 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.646224022 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.646250010 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.821337938 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.821715117 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.821768045 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.821841002 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.821897984 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.831871986 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.831916094 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.831969023 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.831984043 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.832032919 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.832041979 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.832067013 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.832099915 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.892097950 CET | 49990 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.892131090 CET | 443 | 49990 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.900698900 CET | 49992 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.900717020 CET | 443 | 49992 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.902160883 CET | 49991 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.902184963 CET | 443 | 49991 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.903439999 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.903482914 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.903549910 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.904016018 CET | 49987 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.904031992 CET | 443 | 49987 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:06:59.906024933 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:06:59.906039000 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.092931986 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.092986107 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.093045950 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.093250990 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.093264103 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.098913908 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.098934889 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.098989964 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.099206924 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.099214077 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.101118088 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.101136923 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.101188898 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.101418018 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.101430893 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.102207899 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.102256060 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.102324009 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.102468967 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.102480888 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.376019001 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.376121044 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.376173019 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.376195908 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.376243114 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.377119064 CET | 49986 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.377137899 CET | 443 | 49986 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.778114080 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.778424978 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.778453112 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.778785944 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.779056072 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.779118061 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:00.779220104 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:00.823323011 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.333528042 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.333822012 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.333852053 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.334748030 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.334815979 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.335079908 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.335136890 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.335231066 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.335238934 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.389184952 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.523396969 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.526626110 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.526653051 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.527889013 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.527951002 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.528270960 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.528337002 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.528450012 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.571333885 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.578010082 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.578017950 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.611377954 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.611656904 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.611716986 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.611779928 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.612147093 CET | 49997 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.612164974 CET | 443 | 49997 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.625730991 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.776792049 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.783401966 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.783710957 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.784904957 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.784949064 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.785052061 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.785079002 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.785166025 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.785196066 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.785969019 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.786036015 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.786089897 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.786144972 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.786161900 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.786212921 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.786384106 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.786447048 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.786665916 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.786724091 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.786938906 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.787000895 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.787132978 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.787141085 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.787189007 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.787195921 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.787242889 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.787250996 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.827879906 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.827884912 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.843888998 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.974735975 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.991075993 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.991090059 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.992109060 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.992178917 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.993592024 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.993658066 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:01.993844032 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:01.993855000 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.035263062 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.136167049 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.137900114 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.137917995 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.138228893 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.138662100 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.138712883 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.138819933 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.159326077 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.159615040 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.159673929 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.179339886 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.336229086 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.336389065 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.336397886 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.336447001 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.336467028 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.336519003 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.361802101 CET | 49999 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.361823082 CET | 443 | 49999 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.362097025 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.362128019 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.362185955 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.363027096 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.363040924 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.400420904 CET | 49998 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.400434017 CET | 443 | 49998 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.597716093 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.597835064 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.597888947 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.597909927 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.597934961 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.606652975 CET | 50001 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.606672049 CET | 443 | 50001 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.611691952 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.611840010 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.611897945 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.611901999 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.611942053 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.613368988 CET | 50004 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.613384962 CET | 443 | 50004 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.615340948 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.629900932 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.629947901 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.629966974 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.629990101 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.630042076 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.630229950 CET | 50002 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.630245924 CET | 443 | 50002 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.804831982 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.804873943 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.804933071 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.804955959 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.805013895 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.805067062 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.805116892 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.805161953 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.806102991 CET | 50003 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.806117058 CET | 443 | 50003 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.957627058 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.958302975 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.958348989 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.958700895 CET | 50000 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.958715916 CET | 443 | 50000 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.965604067 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.965650082 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:02.965709925 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.966161013 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:02.966177940 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.035033941 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.035284996 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.035322905 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.035620928 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.035958052 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.036019087 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.036103964 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.083337069 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.655180931 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.656001091 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.656028986 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.656405926 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.656735897 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.656801939 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.656910896 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.699342966 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.874295950 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.874332905 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.874474049 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.874511003 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.874583960 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:04.874634981 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.880201101 CET | 50005 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:04.880213022 CET | 443 | 50005 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:06.061352015 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:06.061496019 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Dec 6, 2024 07:07:06.061626911 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:06.062743902 CET | 50006 | 443 | 192.168.2.5 | 101.99.77.51 |
Dec 6, 2024 07:07:06.062768936 CET | 443 | 50006 | 101.99.77.51 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 6, 2024 07:04:08.290831089 CET | 64648 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:04:25.453777075 CET | 62331 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:04:25.453929901 CET | 60121 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:04:25.578135014 CET | 53 | 62473 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:25.592303038 CET | 53 | 60702 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:26.273181915 CET | 53 | 60121 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:26.273732901 CET | 53 | 62331 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:28.494641066 CET | 53 | 54975 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:28.983308077 CET | 53 | 50739 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:30.099075079 CET | 51875 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:04:30.099518061 CET | 56479 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:04:30.236131907 CET | 53 | 51875 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:30.236783981 CET | 53 | 56479 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:30.357249022 CET | 53 | 56087 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:04:45.449229002 CET | 53 | 54765 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:05:04.418057919 CET | 53 | 61545 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:05:25.499984026 CET | 53 | 51734 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:05:27.233006001 CET | 53 | 53609 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:05:56.936518908 CET | 53 | 62624 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:42.667140007 CET | 53 | 60804 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:54.315526009 CET | 50555 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:54.315704107 CET | 58104 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:54.453265905 CET | 53 | 58104 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:54.453290939 CET | 53 | 50555 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:56.570663929 CET | 56840 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:56.570956945 CET | 54820 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:56.585653067 CET | 51507 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:56.585809946 CET | 64188 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:56.708362103 CET | 53 | 54820 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:56.724960089 CET | 53 | 64188 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:56.725028992 CET | 53 | 51507 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:58.496180058 CET | 54654 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:58.496377945 CET | 54864 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:58.599493980 CET | 53 | 50629 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:58.633385897 CET | 53 | 54864 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:59.092916012 CET | 61239 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:59.093044996 CET | 59363 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 6, 2024 07:06:59.479027987 CET | 53 | 61239 | 1.1.1.1 | 192.168.2.5 |
Dec 6, 2024 07:06:59.484174967 CET | 53 | 59363 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 6, 2024 07:04:08.290831089 CET | 192.168.2.5 | 1.1.1.1 | 0x60ca | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:04:25.453777075 CET | 192.168.2.5 | 1.1.1.1 | 0x1990 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:04:25.453929901 CET | 192.168.2.5 | 1.1.1.1 | 0x81ea | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:04:30.099075079 CET | 192.168.2.5 | 1.1.1.1 | 0x731c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:04:30.099518061 CET | 192.168.2.5 | 1.1.1.1 | 0x10f7 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:06:54.315526009 CET | 192.168.2.5 | 1.1.1.1 | 0xd837 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:06:54.315704107 CET | 192.168.2.5 | 1.1.1.1 | 0x9159 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:06:56.570663929 CET | 192.168.2.5 | 1.1.1.1 | 0xaace | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:06:56.570956945 CET | 192.168.2.5 | 1.1.1.1 | 0x68fd | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:06:56.585653067 CET | 192.168.2.5 | 1.1.1.1 | 0xebfc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:06:56.585809946 CET | 192.168.2.5 | 1.1.1.1 | 0x2be7 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:06:58.496180058 CET | 192.168.2.5 | 1.1.1.1 | 0xdfe2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:06:58.496377945 CET | 192.168.2.5 | 1.1.1.1 | 0x7820 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 6, 2024 07:06:59.092916012 CET | 192.168.2.5 | 1.1.1.1 | 0xf38e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 6, 2024 07:06:59.093044996 CET | 192.168.2.5 | 1.1.1.1 | 0x5d8e | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 6, 2024 07:04:08.430444956 CET | 1.1.1.1 | 192.168.2.5 | 0x60ca | No error (0) | crl.root-x1.letsencrypt.org.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 6, 2024 07:04:10.216731071 CET | 1.1.1.1 | 192.168.2.5 | 0x7515 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:04:10.216731071 CET | 1.1.1.1 | 192.168.2.5 | 0x7515 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:04:26.273732901 CET | 1.1.1.1 | 192.168.2.5 | 0x1990 | No error (0) | 101.99.77.51 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:04:30.236131907 CET | 1.1.1.1 | 192.168.2.5 | 0x731c | No error (0) | 142.250.181.100 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:04:30.236783981 CET | 1.1.1.1 | 192.168.2.5 | 0x10f7 | No error (0) | 65 | IN (0x0001) | false | |||
Dec 6, 2024 07:06:54.453290939 CET | 1.1.1.1 | 192.168.2.5 | 0xd837 | No error (0) | 151.101.2.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:54.453290939 CET | 1.1.1.1 | 192.168.2.5 | 0xd837 | No error (0) | 151.101.130.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:54.453290939 CET | 1.1.1.1 | 192.168.2.5 | 0xd837 | No error (0) | 151.101.194.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:54.453290939 CET | 1.1.1.1 | 192.168.2.5 | 0xd837 | No error (0) | 151.101.66.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.708272934 CET | 1.1.1.1 | 192.168.2.5 | 0xaace | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.708362103 CET | 1.1.1.1 | 192.168.2.5 | 0x68fd | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.725028992 CET | 1.1.1.1 | 192.168.2.5 | 0xebfc | No error (0) | 151.101.130.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.725028992 CET | 1.1.1.1 | 192.168.2.5 | 0xebfc | No error (0) | 151.101.66.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.725028992 CET | 1.1.1.1 | 192.168.2.5 | 0xebfc | No error (0) | 151.101.194.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:56.725028992 CET | 1.1.1.1 | 192.168.2.5 | 0xebfc | No error (0) | 151.101.2.137 | A (IP address) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:58.633335114 CET | 1.1.1.1 | 192.168.2.5 | 0xdfe2 | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:58.633385897 CET | 1.1.1.1 | 192.168.2.5 | 0x7820 | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 6, 2024 07:06:59.479027987 CET | 1.1.1.1 | 192.168.2.5 | 0xf38e | No error (0) | 101.99.77.51 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49719 | 23.56.162.204 | 443 | 7208 | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:04:13 UTC | 475 | OUT | |
2024-12-06 06:04:14 UTC | 198 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49746 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:04:27 UTC | 664 | OUT | |
2024-12-06 06:04:28 UTC | 387 | IN | |
2024-12-06 06:04:28 UTC | 981 | IN | |
2024-12-06 06:04:28 UTC | 5312 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49747 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:04:28 UTC | 589 | OUT | |
2024-12-06 06:04:29 UTC | 416 | IN | |
2024-12-06 06:04:29 UTC | 952 | IN | |
2024-12-06 06:04:29 UTC | 299 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49754 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:04:31 UTC | 591 | OUT | |
2024-12-06 06:04:31 UTC | 416 | IN | |
2024-12-06 06:04:31 UTC | 952 | IN | |
2024-12-06 06:04:31 UTC | 299 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49980 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:46 UTC | 711 | OUT | |
2024-12-06 06:06:48 UTC | 668 | IN | |
2024-12-06 06:06:48 UTC | 700 | IN | |
2024-12-06 06:06:48 UTC | 3301 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49981 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:48 UTC | 768 | OUT | |
2024-12-06 06:06:49 UTC | 602 | IN | |
2024-12-06 06:06:49 UTC | 766 | IN | |
2024-12-06 06:06:49 UTC | 9453 | IN | |
2024-12-06 06:06:49 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49982 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:51 UTC | 898 | OUT | |
2024-12-06 06:06:51 UTC | 596 | IN | |
2024-12-06 06:06:51 UTC | 772 | IN | |
2024-12-06 06:06:51 UTC | 3298 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49983 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:52 UTC | 1055 | OUT | |
2024-12-06 06:06:53 UTC | 602 | IN | |
2024-12-06 06:06:53 UTC | 766 | IN | |
2024-12-06 06:06:53 UTC | 14994 | IN | |
2024-12-06 06:06:53 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 16384 | IN | |
2024-12-06 06:06:54 UTC | 9475 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49985 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:53 UTC | 767 | OUT | |
2024-12-06 06:06:54 UTC | 591 | IN | |
2024-12-06 06:06:54 UTC | 777 | IN | |
2024-12-06 06:06:54 UTC | 7613 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49988 | 151.101.2.137 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:55 UTC | 532 | OUT | |
2024-12-06 06:06:56 UTC | 613 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN | |
2024-12-06 06:06:56 UTC | 1378 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49993 | 151.101.130.137 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:57 UTC | 358 | OUT | |
2024-12-06 06:06:58 UTC | 613 | IN | |
2024-12-06 06:06:58 UTC | 16384 | IN | |
2024-12-06 06:06:58 UTC | 16384 | IN | |
2024-12-06 06:06:58 UTC | 16384 | IN | |
2024-12-06 06:06:58 UTC | 16384 | IN | |
2024-12-06 06:06:58 UTC | 16384 | IN | |
2024-12-06 06:06:58 UTC | 7581 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 49989 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 814 | OUT | |
2024-12-06 06:06:59 UTC | 591 | IN | |
2024-12-06 06:06:59 UTC | 231 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 49992 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 814 | OUT | |
2024-12-06 06:06:59 UTC | 592 | IN | |
2024-12-06 06:06:59 UTC | 776 | IN | |
2024-12-06 06:06:59 UTC | 624 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.5 | 49991 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 814 | OUT | |
2024-12-06 06:06:59 UTC | 592 | IN | |
2024-12-06 06:06:59 UTC | 776 | IN | |
2024-12-06 06:06:59 UTC | 5850 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.5 | 49990 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 819 | OUT | |
2024-12-06 06:06:59 UTC | 592 | IN | |
2024-12-06 06:06:59 UTC | 776 | IN | |
2024-12-06 06:06:59 UTC | 4320 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.5 | 49986 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 816 | OUT | |
2024-12-06 06:07:00 UTC | 592 | IN | |
2024-12-06 06:07:00 UTC | 776 | IN | |
2024-12-06 06:07:00 UTC | 3246 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.5 | 49987 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:06:58 UTC | 820 | OUT | |
2024-12-06 06:06:59 UTC | 592 | IN | |
2024-12-06 06:06:59 UTC | 776 | IN | |
2024-12-06 06:06:59 UTC | 3306 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.5 | 49997 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:00 UTC | 821 | OUT | |
2024-12-06 06:07:01 UTC | 592 | IN | |
2024-12-06 06:07:01 UTC | 776 | IN | |
2024-12-06 06:07:01 UTC | 1836 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.5 | 49999 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 416 | OUT | |
2024-12-06 06:07:02 UTC | 591 | IN | |
2024-12-06 06:07:02 UTC | 231 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.5 | 49998 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 421 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 4320 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.5 | 50001 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 416 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 624 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
21 | 192.168.2.5 | 50002 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 416 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 5850 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
22 | 192.168.2.5 | 50004 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 422 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 3306 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
23 | 192.168.2.5 | 50003 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:01 UTC | 418 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 3246 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
24 | 192.168.2.5 | 50000 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:02 UTC | 820 | OUT | |
2024-12-06 06:07:02 UTC | 592 | IN | |
2024-12-06 06:07:02 UTC | 776 | IN | |
2024-12-06 06:07:02 UTC | 453 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
25 | 192.168.2.5 | 50005 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:04 UTC | 423 | OUT | |
2024-12-06 06:07:04 UTC | 592 | IN | |
2024-12-06 06:07:04 UTC | 776 | IN | |
2024-12-06 06:07:04 UTC | 1836 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
26 | 192.168.2.5 | 50006 | 101.99.77.51 | 443 | 6436 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-06 06:07:04 UTC | 422 | OUT | |
2024-12-06 06:07:06 UTC | 592 | IN | |
2024-12-06 06:07:06 UTC | 776 | IN | |
2024-12-06 06:07:06 UTC | 453 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 01:03:57 |
Start date: | 06/12/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff686a00000 |
File size: | 5'641'176 bytes |
MD5 hash: | 24EAD1C46A47022347DC0F05F6EFBB8C |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 2 |
Start time: | 01:03:58 |
Start date: | 06/12/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6413e0000 |
File size: | 3'581'912 bytes |
MD5 hash: | 9B38E8E8B6DD9622D24B53E095C5D9BE |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 4 |
Start time: | 01:03:58 |
Start date: | 06/12/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6413e0000 |
File size: | 3'581'912 bytes |
MD5 hash: | 9B38E8E8B6DD9622D24B53E095C5D9BE |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 8 |
Start time: | 01:04:23 |
Start date: | 06/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 9 |
Start time: | 01:04:23 |
Start date: | 06/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |