Windows
Analysis Report
https://www.asda.com@hnvs.xyz/asda-christmas-prizes
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 4148 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 3664 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2068 --fi eld-trial- handle=197 2,i,585258 9805163091 655,146947 3871905885 0363,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 1988 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://www.a sda.com@hn vs.xyz/asd a-christma s-prizes" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | Joe Sandbox AI: |
Source: | Sample URL: |
Networking |
---|
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 1 Registry Run Keys / Startup Folder | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
hnvs.xyz | 198.12.239.74 | true | true | unknown | |
google.com | 142.250.181.110 | true | false | high | |
bit.ly | 67.199.248.11 | true | false | high | |
www.google.com | 142.250.181.132 | true | false | high | |
od-img.pages.dev | 172.66.47.201 | true | false | high | |
reln.xyz | 198.12.239.74 | true | true | unknown | |
ipv4.imgur.map.fastly.net | 199.232.196.193 | true | false | high | |
i.imgur.com | unknown | unknown | false | high | |
tescko.pages.dev | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
false | unknown | ||
false | high | ||
false |
| unknown | |
false | high | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false |
| unknown | ||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
199.232.192.193 | unknown | United States | 54113 | FASTLYUS | false | |
172.66.44.55 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
198.12.239.74 | hnvs.xyz | United States | 26496 | AS-26496-GO-DADDY-COM-LLCUS | true | |
199.232.196.193 | ipv4.imgur.map.fastly.net | United States | 54113 | FASTLYUS | false | |
142.250.181.132 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.66.47.201 | od-img.pages.dev | United States | 13335 | CLOUDFLARENETUS | false | |
67.199.248.11 | bit.ly | United States | 396982 | GOOGLE-PRIVATE-CLOUDUS | false |
IP |
---|
192.168.2.5 |
192.168.2.23 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1577916 |
Start date and time: | 2024-12-18 21:15:43 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 12s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://www.asda.com@hnvs.xyz/asda-christmas-prizes |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.troj.win@24/18@42/10 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 216.58.208.227, 172.217.19.206, 64.233.164.84, 172.217.17.46, 199.232.210.172, 192.229.221.95, 172.217.17.42, 172.217.17.35, 2.22.157.166, 13.107.246.63, 52.149.20.212
- Excluded domains from analysis (whitelisted): fonts.googleapis.com, fs.microsoft.com, accounts.google.com, otelrules.azureedge.net, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: https://www.asda.com@hnvs.xyz/asda-christmas-prizes
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9800704147415575 |
Encrypted: | false |
SSDEEP: | 48:8jdpTxBrEHqidAKZdA19ehwiZUklqehBy+3:8f7Buy |
MD5: | D55B09A58725A89A680BA9E7CE6E8D94 |
SHA1: | 111753CF6C91089B326A670EF64AB6D2775B0ADD |
SHA-256: | 47C06CE79ABA5684BE0DD599D396D026B70A1BEAA33BCB01ECEBD5BC795D8EEA |
SHA-512: | 9ADB5DCD74CD02368E467302CF46D899D439511C677DE144C9ECB72AB9C9E43CEE7E5DBAD561C4E9E4D2530F72CF1F8462EA3B30D1C1F44A516D9E7A49CB099E |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9993309821940253 |
Encrypted: | false |
SSDEEP: | 48:8odpTxBrEHqidAKZdA1weh/iZUkAQkqehey+2:8m7z9QHy |
MD5: | 46022AD1E40E4BFFC4CFC10E20F453E3 |
SHA1: | 4F161C8EA7B52B553E42FF4CCEFA4153B7FD6F75 |
SHA-256: | EF3F278FFFE5610C4B0A7343AB93C7DB9629AE427919EF7363CB5D69BA8BB423 |
SHA-512: | B385CC728CA2DF537693385370337BF6A18829E632AB89D56DEA75709053ECB212BE2879CB7870C668B2B9B7A5C69DB12ABA03015430648CD9E46443B77B6A77 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.005979183220273 |
Encrypted: | false |
SSDEEP: | 48:8xidpTxBsHqidAKZdA14tseh7sFiZUkmgqeh7sEy+BX:8xI7nnCy |
MD5: | C201AB2A1DE3A8D6AD0D7EACC5716864 |
SHA1: | 497C5BD5AC1165BEE96EAB607BA76DE9DA779FD0 |
SHA-256: | 9EC3A2DC2864042E877629E6C3CC3F4945BAA7E1CA23391BBDAA330EED549AD2 |
SHA-512: | 19A32F0782CC0C8B90964E53FCD88A424BCAA079598DAC1332544096CC71E002BFFCAF660B58C1CF92BF856A9F53288CF76FAE94E1B428556100C5CAA7485333 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9982564202155775 |
Encrypted: | false |
SSDEEP: | 48:8JdpTxBrEHqidAKZdA1vehDiZUkwqeh6y+R:8t7wcy |
MD5: | D37B7386556D11411D5706858EE3C25A |
SHA1: | CE82B0C6996770BFECD7B6D2F6A476F6C93068D2 |
SHA-256: | BBB156CF1B0A56B53A75942C559A7CD8B687165E8842F62220A633454775EA4D |
SHA-512: | FA5A4994CC6B2F55F6FE91D02536A084CC3851CB36795495D1A3D5ADAB696BBEC9844F2A7DA8A65A62D0DC7B69B1CE7D5BFD7FAF74D32AC5A7B8B5333B623B0B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9869719390865623 |
Encrypted: | false |
SSDEEP: | 48:8xdpTxBrEHqidAKZdA1hehBiZUk1W1qehYy+C:817w94y |
MD5: | D14B778B51F3E2909E301755617FBD8E |
SHA1: | 3990686081481672D949E23F0DB19DF25A2D6897 |
SHA-256: | 8898B8790B556D9C00F4072B2C58F4BCE8CB60D0F81DCC5B46BFC549199F58B5 |
SHA-512: | C807E858E35F3ADA2FB36585FB28E741B43569381B5AF391209DD522640A4C6FAA31504EB33240AA976193551561E70CEC4F36A332B43A75753446E459BB1339 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.9960642720975867 |
Encrypted: | false |
SSDEEP: | 48:8ndpTxBrEHqidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbCy+yT+:8r7+T/TbxWOvTbCy7T |
MD5: | 92BDB6C8DFE3584A42965D955CC387ED |
SHA1: | 0C2D424F3589CC2E8D4BAB9834B15FF8A8261B8E |
SHA-256: | A464D00895A3B4CE6AFF1CE23AE7CFFD4D2563B7EADD55A08FDC0F9BE4C8E35C |
SHA-512: | 64C0CDC53FA9C5449121F6197147DB4852DB54F71EEFBD3F6BFEAC96D4F747D6D1D4C16454AB4DE044208A5FED65A36EF6170B9DB6326F2309C622968D79E4E6 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 73 |
Entropy (8bit): | 4.522037697473431 |
Encrypted: | false |
SSDEEP: | 3:yionv//thPlE9tn/pGIxtqQAuVt1p:6v/lhPcwIVVfp |
MD5: | 3174AC632667F3C26DAE3AF447893B82 |
SHA1: | 28B175A656447C4C663090A30247C8213F0CC97C |
SHA-256: | 1F67E1B33E44F077ECE60FA2A0918050D19BA61CA75B999B52ECD059383D8B94 |
SHA-512: | 7D7391102CB89251D634D977C16A4CFD0A35E7BBDB80B6214C77DDAA7A0CB804EB5E17BED16B494CBA0A9D9A65904A5E70A979308F565CBADE3E7F986F392583 |
Malicious: | false |
Reputation: | low |
URL: | https://od-img.pages.dev/ic.png?ASDA |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 33 |
Entropy (8bit): | 4.369707376737534 |
Encrypted: | false |
SSDEEP: | 3:IO4Dv+:IO0+ |
MD5: | C588C17324F2BE0E0EC90A18F39E7D7C |
SHA1: | 69D360EDDD15F527AAC7F7E610346517732B7770 |
SHA-256: | B83E8830B6B2F1253A78F90191CF1087E8FD7638831FD4C1376A7A6029297240 |
SHA-512: | A31B191830ED5216CCA982E5483AE0E39466D27B097601623A199E7A111126679E9349E1A540DD1FDBC14E7BF13581B02BCDDA0FB67C3FBC8AACAB2A46F01DA5 |
Malicious: | false |
Reputation: | low |
URL: | https://reln.xyz/asdachristmas/css/app1.css?id=2fbe2d9a9a40ca9b2489 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 25814 |
Entropy (8bit): | 7.60362822120246 |
Encrypted: | false |
SSDEEP: | 384:D7PltC66wZS079/xnMEy4ZkYJisOTPJed8E0DuC4cfPQ8i+oj4z5wkYJ:XPrC63D7TnMEyWhODYd/D4uJkYJ |
MD5: | F4EFA9260E7C528B8196B9F5CF9D8976 |
SHA1: | E0CA9D3FEC242CF7CFADD2D05D2182E0A9B1434D |
SHA-256: | 03A6F7387B1DEF3E0DF10FC187B9774E4B52532837767D664C583F824D9410A4 |
SHA-512: | FE47515B9ADB4F2E48CAE9DC263198322DEEE552F681E6D14855A5575AA6FCC6ED5E7F0E70DDF11EEF951E50B78AC05034D658B96DBA26F5F6A4608A03B75B63 |
Malicious: | false |
Reputation: | low |
URL: | https://i.imgur.com/ZXLlDMU.jpeg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 9110 |
Entropy (8bit): | 5.275414220552559 |
Encrypted: | false |
SSDEEP: | 192:lEGBlCLC4oCzAs+sbdyx1WCctFKiWlR4V9Nag4e7C8:bBYLushJGWC0j9Nag4O |
MD5: | F2528A5BBEF0EAE9E1DE9F14A32751D7 |
SHA1: | EF390F71D8B87F019530EE821A4FC428AF99C468 |
SHA-256: | D1304FB3332F56BA9A7EE4303714345523CA06C10FC39B8D8C258F5A61E49C62 |
SHA-512: | 0FE0AE148C34078CD5ABC5CF7C27BF1DA0ADE54CC23E327816580C6683EB1FCCD71501D9344E01CAD41BDDC7F844B8D1FBB6933C80BCB34623D42A0BA4E0C979 |
Malicious: | false |
Reputation: | low |
URL: | https://reln.xyz/asdachristmas/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 73 |
Entropy (8bit): | 4.522037697473431 |
Encrypted: | false |
SSDEEP: | 3:yionv//thPlE9tn/pGIxtqQAuVt1p:6v/lhPcwIVVfp |
MD5: | 3174AC632667F3C26DAE3AF447893B82 |
SHA1: | 28B175A656447C4C663090A30247C8213F0CC97C |
SHA-256: | 1F67E1B33E44F077ECE60FA2A0918050D19BA61CA75B999B52ECD059383D8B94 |
SHA-512: | 7D7391102CB89251D634D977C16A4CFD0A35E7BBDB80B6214C77DDAA7A0CB804EB5E17BED16B494CBA0A9D9A65904A5E70A979308F565CBADE3E7F986F392583 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 915 |
Entropy (8bit): | 5.247756485805853 |
Encrypted: | false |
SSDEEP: | 24:Uof0FS9UA5M7em3KdV6Am37emUWAemJemvxAmmMxm+TD:ZgGP5MLKdVyoW+Zxm+TD |
MD5: | 709C4F7FE7452D724A28DFD9F1352AAF |
SHA1: | 097C6E2717EFADAF2092432F68AB773C958B2A24 |
SHA-256: | 1FA0A450C3028BF910D92A8A74E61F84CC9059DE3E197F5DC58AA237E0E9FF35 |
SHA-512: | 9511B5FF8A1755A962121B3A438EBDB864989D75C1D326C1B08BB7B7324E3E3E9DE8377B4191D04B4CD1F6827E75FEF18FC04A0D6F660E5C6E3DA20EBD22BA67 |
Malicious: | false |
Reputation: | low |
URL: | https://hnvs.xyz/asda-christmas-prizes/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 25814 |
Entropy (8bit): | 7.60362822120246 |
Encrypted: | false |
SSDEEP: | 384:D7PltC66wZS079/xnMEy4ZkYJisOTPJed8E0DuC4cfPQ8i+oj4z5wkYJ:XPrC63D7TnMEyWhODYd/D4uJkYJ |
MD5: | F4EFA9260E7C528B8196B9F5CF9D8976 |
SHA1: | E0CA9D3FEC242CF7CFADD2D05D2182E0A9B1434D |
SHA-256: | 03A6F7387B1DEF3E0DF10FC187B9774E4B52532837767D664C583F824D9410A4 |
SHA-512: | FE47515B9ADB4F2E48CAE9DC263198322DEEE552F681E6D14855A5575AA6FCC6ED5E7F0E70DDF11EEF951E50B78AC05034D658B96DBA26F5F6A4608A03B75B63 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 18, 2024 21:16:38.645828009 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:38.648907900 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:38.739613056 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:48.250214100 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:48.250791073 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:48.344044924 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:48.470803022 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:48.470868111 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:48.470953941 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:48.471338034 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:48.471359968 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.167093992 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.167426109 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:50.167460918 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.168544054 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.168628931 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:50.170130014 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:50.170207024 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.218527079 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:50.218564987 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:50.265232086 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:50.680728912 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.680769920 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:50.681009054 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.681252956 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.681303978 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:50.681436062 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.681477070 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.681490898 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:50.681729078 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:50.681742907 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:50.746206999 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Dec 18, 2024 21:16:50.746304035 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Dec 18, 2024 21:16:52.388164997 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.388557911 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.388588905 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.389714956 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.389792919 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.392535925 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.414191008 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.414205074 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.418170929 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.418363094 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.475682020 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.475882053 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.477880955 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.478094101 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.478282928 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.478308916 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.518394947 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.518409967 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.518424988 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.564215899 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.860372066 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.860475063 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.860626936 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.861151934 CET | 49714 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.861172915 CET | 443 | 49714 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:52.864697933 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:52.911324024 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:53.246043921 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:53.254453897 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:53.254574060 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:53.262319088 CET | 49713 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:53.262335062 CET | 443 | 49713 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:53.410238981 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:53.410293102 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:53.410388947 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:53.410645008 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:53.410659075 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.627019882 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.627334118 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:54.627356052 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.628456116 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.628529072 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:54.629601955 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:54.629673958 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.629817963 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:54.629827976 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:54.672374964 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:55.076570034 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:55.076654911 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:55.076795101 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:55.119333982 CET | 49718 | 443 | 192.168.2.5 | 67.199.248.11 |
Dec 18, 2024 21:16:55.119364977 CET | 443 | 49718 | 67.199.248.11 | 192.168.2.5 |
Dec 18, 2024 21:16:55.270654917 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:55.270705938 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:55.271115065 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:55.271115065 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:55.271157980 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.495980978 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.496387005 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.496407986 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.497478008 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.497565985 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.498752117 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.498792887 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.498825073 CET | 443 | 49719 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.498855114 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.498930931 CET | 49719 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.499306917 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.499355078 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:56.499460936 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.499696016 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:56.499711990 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.754654884 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.754933119 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:57.754964113 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.756074905 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.756143093 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:57.757364988 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:57.757440090 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.757590055 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:57.757601976 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:57.798059940 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:58.219552994 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:58.219641924 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:58.219772100 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:58.221033096 CET | 49725 | 443 | 192.168.2.5 | 172.66.47.201 |
Dec 18, 2024 21:16:58.221065044 CET | 443 | 49725 | 172.66.47.201 | 192.168.2.5 |
Dec 18, 2024 21:16:58.369678020 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:58.369721889 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:58.369878054 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:58.370109081 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:58.370125055 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:58.371946096 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:58.371997118 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:58.372085094 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:58.372330904 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:58.372344017 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:58.933178902 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.933233023 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:58.933312893 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.933625937 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.933676004 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:58.933738947 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.934041977 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.934057951 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:58.934214115 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:16:58.934242964 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:16:59.582006931 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.606661081 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.606692076 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.608048916 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.608120918 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.609038115 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.609051943 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.609148026 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.609272003 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.609283924 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.609359980 CET | 443 | 49733 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.609376907 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.609417915 CET | 49733 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.613284111 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.613331079 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.613487005 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.613729000 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:16:59.613750935 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:16:59.873331070 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:59.873413086 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:16:59.873469114 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:16:59.897900105 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:59.898474932 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:59.898497105 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:59.899559021 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:59.899629116 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:59.902164936 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:59.902281046 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:59.902637005 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:16:59.902645111 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:16:59.954898119 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.217698097 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.217986107 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.218033075 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.218058109 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.226097107 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.226274967 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.226293087 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.234697104 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.234749079 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.234777927 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.242904902 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.242980957 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.242996931 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.259550095 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.259604931 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.259617090 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.259632111 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.259699106 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.268012047 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.315140009 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.338233948 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.391555071 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.410305977 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.421705008 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.421765089 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.421778917 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.429157972 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.429219961 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.429239988 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.429253101 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.429296970 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.429315090 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.429363012 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.479310036 CET | 49732 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:00.479336023 CET | 443 | 49732 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.510222912 CET | 49712 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:00.510241985 CET | 443 | 49712 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:00.649915934 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:00.649960995 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.650038958 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:00.650338888 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:00.650348902 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:00.828237057 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:00.828682899 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:00.828700066 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:00.829761982 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:00.829927921 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:00.830919981 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:00.830987930 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:00.831557035 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:00.831566095 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:00.841378927 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.841469049 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.841914892 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.841917038 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.841936111 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.841943026 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.843029976 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.843085051 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.843118906 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.843322039 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.845897913 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.846034050 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.846165895 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.846282959 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.848150015 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.848176003 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.876909018 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:00.892401934 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.892402887 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:00.892431021 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:00.938781977 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.233438015 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.233474016 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.233481884 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.233632088 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.233650923 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.241316080 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.241676092 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.262517929 CET | 49735 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.262541056 CET | 443 | 49735 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.263360977 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.263400078 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.263633013 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.265785933 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.266824961 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.266843081 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.306205988 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:01.306284904 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:01.307537079 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:01.310743093 CET | 49738 | 443 | 192.168.2.5 | 172.66.44.55 |
Dec 18, 2024 21:17:01.310765028 CET | 443 | 49738 | 172.66.44.55 | 192.168.2.5 |
Dec 18, 2024 21:17:01.311332941 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.407329082 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.407335997 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.407385111 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:01.407397032 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:01.407510996 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.407526016 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.407856941 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.407871008 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:01.408175945 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:01.408190012 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:01.641280890 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.641532898 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:01.641820908 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.645277023 CET | 49734 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:01.645299911 CET | 443 | 49734 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:02.190474033 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.228404045 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.228431940 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.229634047 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.229729891 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.234275103 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.234359026 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.234486103 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.234493971 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.281913042 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.591583014 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.591866016 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.591963053 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.591990948 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.608247042 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.608341932 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.608460903 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.608489990 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.608609915 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.615294933 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.623640060 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.623735905 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.623747110 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.632256031 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.632369995 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.632380009 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.640474081 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.640512943 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.640600920 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.640609980 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.640765905 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.645365953 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:02.647670984 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:02.647685051 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:02.648190975 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:02.649391890 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:02.649491072 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:02.689579964 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:02.701633930 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.701942921 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.702008963 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.702033997 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.702419043 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.702435970 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.703118086 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.703222990 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.703511000 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.703593016 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.703820944 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.703887939 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.704242945 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.704313993 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.751202106 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.751228094 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.751240969 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.751260996 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.783788919 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.787286997 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.787404060 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.787436008 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.793272972 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.793708086 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.793728113 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.798090935 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.798113108 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:02.800704002 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.800795078 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:02.800817966 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.800863981 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.802165031 CET | 49744 | 443 | 192.168.2.5 | 199.232.192.193 |
Dec 18, 2024 21:17:02.802186012 CET | 443 | 49744 | 199.232.192.193 | 192.168.2.5 |
Dec 18, 2024 21:17:33.047487974 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:33.047560930 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:33.047640085 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:33.206285000 CET | 49747 | 443 | 192.168.2.5 | 198.12.239.74 |
Dec 18, 2024 21:17:33.206317902 CET | 443 | 49747 | 198.12.239.74 | 192.168.2.5 |
Dec 18, 2024 21:17:47.766458988 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:47.766463041 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:17:47.766474962 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:47.766482115 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:17:48.393275023 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:48.393327951 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:48.393402100 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:48.393671036 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:48.393681049 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:50.107831955 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:50.108324051 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:50.108352900 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:50.108736992 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:50.109082937 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:50.109149933 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:50.156866074 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:17:59.803235054 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:59.803307056 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:17:59.803489923 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:18:01.205856085 CET | 49861 | 443 | 192.168.2.5 | 142.250.181.132 |
Dec 18, 2024 21:18:01.205883026 CET | 443 | 49861 | 142.250.181.132 | 192.168.2.5 |
Dec 18, 2024 21:18:03.204869986 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:18:03.204916000 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:18:03.204962015 CET | 443 | 49749 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:18:03.204994917 CET | 443 | 49748 | 199.232.196.193 | 192.168.2.5 |
Dec 18, 2024 21:18:03.205035925 CET | 49749 | 443 | 192.168.2.5 | 199.232.196.193 |
Dec 18, 2024 21:18:03.205065966 CET | 49748 | 443 | 192.168.2.5 | 199.232.196.193 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 18, 2024 21:16:44.812871933 CET | 53 | 53720 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:45.126223087 CET | 53 | 60655 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:47.846410036 CET | 53 | 64379 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:48.329714060 CET | 54516 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:48.329830885 CET | 49167 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:48.469464064 CET | 53 | 49167 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:48.469506025 CET | 53 | 54516 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:50.298408031 CET | 54359 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:50.298723936 CET | 59152 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:50.679125071 CET | 53 | 54359 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:50.680063963 CET | 53 | 59152 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:53.271876097 CET | 57606 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:53.272145987 CET | 50697 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:53.409230947 CET | 53 | 57606 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:53.409738064 CET | 53 | 50697 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:55.123450994 CET | 65333 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:55.123637915 CET | 59480 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:55.265157938 CET | 53 | 59480 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:55.266623974 CET | 53 | 65333 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.228885889 CET | 63718 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.229176998 CET | 63580 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.231334925 CET | 58516 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.231504917 CET | 59194 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.368709087 CET | 53 | 63718 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.369035959 CET | 53 | 63580 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.370913029 CET | 53 | 58516 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.371452093 CET | 53 | 59194 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.445729971 CET | 57020 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.445939064 CET | 55066 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:16:58.932293892 CET | 53 | 57020 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:16:58.932462931 CET | 53 | 55066 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:00.510946035 CET | 57636 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:00.511989117 CET | 50343 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:00.648499012 CET | 53 | 57636 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:00.649243116 CET | 53 | 50343 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.264647961 CET | 65216 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.264816999 CET | 58840 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.283425093 CET | 53859 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.283786058 CET | 58116 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.405611038 CET | 53 | 58840 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.406234980 CET | 53 | 65216 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.448184967 CET | 53 | 53859 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.448637009 CET | 53 | 58116 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.452647924 CET | 57933 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.589945078 CET | 53 | 57933 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.630556107 CET | 51362 | 53 | 192.168.2.5 | 8.8.8.8 |
Dec 18, 2024 21:17:01.630554914 CET | 52266 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:01.768429995 CET | 53 | 51362 | 8.8.8.8 | 192.168.2.5 |
Dec 18, 2024 21:17:01.772452116 CET | 53 | 52266 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:01.814342976 CET | 53 | 54322 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:02.632484913 CET | 59972 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:02.632900000 CET | 61826 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:02.770488977 CET | 53 | 61826 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:02.771415949 CET | 53 | 59972 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:04.949278116 CET | 53 | 65165 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:07.792052031 CET | 60657 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:07.792366982 CET | 52636 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:07.933159113 CET | 53 | 60657 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:07.933516026 CET | 53 | 52636 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:07.934149027 CET | 54870 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:08.073745966 CET | 53 | 54870 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:09.383039951 CET | 60861 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:09.383196115 CET | 58435 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:09.520365953 CET | 53 | 58435 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:09.520503044 CET | 53 | 60861 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:09.531862020 CET | 54685 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:09.532073975 CET | 58140 | 53 | 192.168.2.5 | 8.8.8.8 |
Dec 18, 2024 21:17:09.667953968 CET | 53 | 58140 | 8.8.8.8 | 192.168.2.5 |
Dec 18, 2024 21:17:09.670519114 CET | 53 | 54685 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:23.718071938 CET | 53 | 63951 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:38.688906908 CET | 64527 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:38.826385975 CET | 53 | 64527 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:39.540091991 CET | 64927 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:39.540460110 CET | 64218 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:39.677040100 CET | 53 | 64927 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:39.677998066 CET | 53 | 64218 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:39.681802988 CET | 55909 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:39.818583012 CET | 53 | 55909 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:44.566235065 CET | 53 | 51544 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:46.360987902 CET | 53 | 65006 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:17:59.267525911 CET | 65163 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:17:59.405661106 CET | 53 | 65163 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:18:04.774874926 CET | 64847 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:18:04.775002956 CET | 49717 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:18:04.914249897 CET | 53 | 64847 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:18:04.914910078 CET | 53 | 49717 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:18:04.915587902 CET | 61209 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:18:05.054903030 CET | 53 | 61209 | 1.1.1.1 | 192.168.2.5 |
Dec 18, 2024 21:18:05.067116976 CET | 62656 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 18, 2024 21:18:05.067284107 CET | 56581 | 53 | 192.168.2.5 | 8.8.8.8 |
Dec 18, 2024 21:18:05.201587915 CET | 53 | 56581 | 8.8.8.8 | 192.168.2.5 |
Dec 18, 2024 21:18:05.204152107 CET | 53 | 62656 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 18, 2024 21:16:48.329714060 CET | 192.168.2.5 | 1.1.1.1 | 0x2db8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:48.329830885 CET | 192.168.2.5 | 1.1.1.1 | 0x92ea | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:50.298408031 CET | 192.168.2.5 | 1.1.1.1 | 0xf17 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:50.298723936 CET | 192.168.2.5 | 1.1.1.1 | 0x832f | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:53.271876097 CET | 192.168.2.5 | 1.1.1.1 | 0x6a45 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:53.272145987 CET | 192.168.2.5 | 1.1.1.1 | 0x487d | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:55.123450994 CET | 192.168.2.5 | 1.1.1.1 | 0x3aa7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:55.123637915 CET | 192.168.2.5 | 1.1.1.1 | 0x329c | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.228885889 CET | 192.168.2.5 | 1.1.1.1 | 0xfe20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.229176998 CET | 192.168.2.5 | 1.1.1.1 | 0x9397 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.231334925 CET | 192.168.2.5 | 1.1.1.1 | 0x2501 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.231504917 CET | 192.168.2.5 | 1.1.1.1 | 0x33a4 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.445729971 CET | 192.168.2.5 | 1.1.1.1 | 0x5b95 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:16:58.445939064 CET | 192.168.2.5 | 1.1.1.1 | 0x9ecf | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:00.510946035 CET | 192.168.2.5 | 1.1.1.1 | 0x14bb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:00.511989117 CET | 192.168.2.5 | 1.1.1.1 | 0x4da8 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.264647961 CET | 192.168.2.5 | 1.1.1.1 | 0xceb1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.264816999 CET | 192.168.2.5 | 1.1.1.1 | 0x647 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.283425093 CET | 192.168.2.5 | 1.1.1.1 | 0x70ec | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.283786058 CET | 192.168.2.5 | 1.1.1.1 | 0x6cd6 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.452647924 CET | 192.168.2.5 | 1.1.1.1 | 0xd9cd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.630556107 CET | 192.168.2.5 | 8.8.8.8 | 0xa251 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.630554914 CET | 192.168.2.5 | 1.1.1.1 | 0xfc43 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:02.632484913 CET | 192.168.2.5 | 1.1.1.1 | 0xf8b7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:02.632900000 CET | 192.168.2.5 | 1.1.1.1 | 0x4d94 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:07.792052031 CET | 192.168.2.5 | 1.1.1.1 | 0x8956 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:07.792366982 CET | 192.168.2.5 | 1.1.1.1 | 0xbb78 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:07.934149027 CET | 192.168.2.5 | 1.1.1.1 | 0x5f54 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.383039951 CET | 192.168.2.5 | 1.1.1.1 | 0xabf3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.383196115 CET | 192.168.2.5 | 1.1.1.1 | 0xb39d | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.531862020 CET | 192.168.2.5 | 1.1.1.1 | 0xc201 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.532073975 CET | 192.168.2.5 | 8.8.8.8 | 0x86a7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:38.688906908 CET | 192.168.2.5 | 1.1.1.1 | 0x585b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.540091991 CET | 192.168.2.5 | 1.1.1.1 | 0xf179 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.540460110 CET | 192.168.2.5 | 1.1.1.1 | 0xbc42 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.681802988 CET | 192.168.2.5 | 1.1.1.1 | 0x4da5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:59.267525911 CET | 192.168.2.5 | 1.1.1.1 | 0xafad | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:04.774874926 CET | 192.168.2.5 | 1.1.1.1 | 0x435b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:04.775002956 CET | 192.168.2.5 | 1.1.1.1 | 0x7bf1 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:18:04.915587902 CET | 192.168.2.5 | 1.1.1.1 | 0xec73 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:05.067116976 CET | 192.168.2.5 | 1.1.1.1 | 0x7936 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:05.067284107 CET | 192.168.2.5 | 8.8.8.8 | 0xad68 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 18, 2024 21:16:48.469464064 CET | 1.1.1.1 | 192.168.2.5 | 0x92ea | No error (0) | 65 | IN (0x0001) | false | |||
Dec 18, 2024 21:16:48.469506025 CET | 1.1.1.1 | 192.168.2.5 | 0x2db8 | No error (0) | 142.250.181.132 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:50.679125071 CET | 1.1.1.1 | 192.168.2.5 | 0xf17 | No error (0) | 198.12.239.74 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:53.409230947 CET | 1.1.1.1 | 192.168.2.5 | 0x6a45 | No error (0) | 67.199.248.11 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:53.409230947 CET | 1.1.1.1 | 192.168.2.5 | 0x6a45 | No error (0) | 67.199.248.10 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:55.265157938 CET | 1.1.1.1 | 192.168.2.5 | 0x329c | No error (0) | 65 | IN (0x0001) | false | |||
Dec 18, 2024 21:16:55.266623974 CET | 1.1.1.1 | 192.168.2.5 | 0x3aa7 | No error (0) | 172.66.47.201 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:55.266623974 CET | 1.1.1.1 | 192.168.2.5 | 0x3aa7 | No error (0) | 172.66.44.55 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.368709087 CET | 1.1.1.1 | 192.168.2.5 | 0xfe20 | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.368709087 CET | 1.1.1.1 | 192.168.2.5 | 0xfe20 | No error (0) | 199.232.196.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.368709087 CET | 1.1.1.1 | 192.168.2.5 | 0xfe20 | No error (0) | 199.232.192.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.369035959 CET | 1.1.1.1 | 192.168.2.5 | 0x9397 | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.370913029 CET | 1.1.1.1 | 192.168.2.5 | 0x2501 | No error (0) | 172.66.44.55 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.370913029 CET | 1.1.1.1 | 192.168.2.5 | 0x2501 | No error (0) | 172.66.47.201 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:16:58.371452093 CET | 1.1.1.1 | 192.168.2.5 | 0x33a4 | No error (0) | 65 | IN (0x0001) | false | |||
Dec 18, 2024 21:16:58.932293892 CET | 1.1.1.1 | 192.168.2.5 | 0x5b95 | No error (0) | 198.12.239.74 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:00.648499012 CET | 1.1.1.1 | 192.168.2.5 | 0x14bb | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:00.648499012 CET | 1.1.1.1 | 192.168.2.5 | 0x14bb | No error (0) | 199.232.192.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:00.648499012 CET | 1.1.1.1 | 192.168.2.5 | 0x14bb | No error (0) | 199.232.196.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:00.649243116 CET | 1.1.1.1 | 192.168.2.5 | 0x4da8 | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.405611038 CET | 1.1.1.1 | 192.168.2.5 | 0x647 | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.406234980 CET | 1.1.1.1 | 192.168.2.5 | 0xceb1 | No error (0) | ipv4.imgur.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.406234980 CET | 1.1.1.1 | 192.168.2.5 | 0xceb1 | No error (0) | 199.232.196.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.406234980 CET | 1.1.1.1 | 192.168.2.5 | 0xceb1 | No error (0) | 199.232.192.193 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.448184967 CET | 1.1.1.1 | 192.168.2.5 | 0x70ec | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.448637009 CET | 1.1.1.1 | 192.168.2.5 | 0x6cd6 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.589945078 CET | 1.1.1.1 | 192.168.2.5 | 0xd9cd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:01.768429995 CET | 8.8.8.8 | 192.168.2.5 | 0xa251 | No error (0) | 142.250.181.110 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:01.772452116 CET | 1.1.1.1 | 192.168.2.5 | 0xfc43 | No error (0) | 172.217.17.78 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:02.770488977 CET | 1.1.1.1 | 192.168.2.5 | 0x4d94 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:02.771415949 CET | 1.1.1.1 | 192.168.2.5 | 0xf8b7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:07.933159113 CET | 1.1.1.1 | 192.168.2.5 | 0x8956 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:07.933516026 CET | 1.1.1.1 | 192.168.2.5 | 0xbb78 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:08.073745966 CET | 1.1.1.1 | 192.168.2.5 | 0x5f54 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.520365953 CET | 1.1.1.1 | 192.168.2.5 | 0xb39d | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.520503044 CET | 1.1.1.1 | 192.168.2.5 | 0xabf3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:09.667953968 CET | 8.8.8.8 | 192.168.2.5 | 0x86a7 | No error (0) | 142.250.181.110 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:09.670519114 CET | 1.1.1.1 | 192.168.2.5 | 0xc201 | No error (0) | 172.217.17.46 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:17:38.826385975 CET | 1.1.1.1 | 192.168.2.5 | 0x585b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.677040100 CET | 1.1.1.1 | 192.168.2.5 | 0xf179 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.677998066 CET | 1.1.1.1 | 192.168.2.5 | 0xbc42 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:17:39.818583012 CET | 1.1.1.1 | 192.168.2.5 | 0x4da5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:17:59.405661106 CET | 1.1.1.1 | 192.168.2.5 | 0xafad | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:04.914249897 CET | 1.1.1.1 | 192.168.2.5 | 0x435b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:04.914910078 CET | 1.1.1.1 | 192.168.2.5 | 0x7bf1 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Dec 18, 2024 21:18:05.054903030 CET | 1.1.1.1 | 192.168.2.5 | 0xec73 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 18, 2024 21:18:05.201587915 CET | 8.8.8.8 | 192.168.2.5 | 0xad68 | No error (0) | 142.250.181.110 | A (IP address) | IN (0x0001) | false | ||
Dec 18, 2024 21:18:05.204152107 CET | 1.1.1.1 | 192.168.2.5 | 0x7936 | No error (0) | 172.217.17.46 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49714 | 198.12.239.74 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:16:52 UTC | 672 | OUT | |
2024-12-18 20:16:52 UTC | 223 | IN | |
2024-12-18 20:16:52 UTC | 247 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49713 | 198.12.239.74 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:16:52 UTC | 673 | OUT | |
2024-12-18 20:16:53 UTC | 296 | IN | |
2024-12-18 20:16:53 UTC | 927 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49718 | 67.199.248.11 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:16:54 UTC | 565 | OUT | |
2024-12-18 20:16:55 UTC | 497 | IN | |
2024-12-18 20:16:55 UTC | 89 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49725 | 172.66.47.201 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:16:57 UTC | 579 | OUT | |
2024-12-18 20:16:58 UTC | 946 | IN | |
2024-12-18 20:16:58 UTC | 73 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49732 | 199.232.196.193 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:16:59 UTC | 575 | OUT | |
2024-12-18 20:17:00 UTC | 762 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN | |
2024-12-18 20:17:00 UTC | 1371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49738 | 172.66.44.55 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:17:00 UTC | 351 | OUT | |
2024-12-18 20:17:01 UTC | 954 | IN | |
2024-12-18 20:17:01 UTC | 73 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49735 | 198.12.239.74 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:17:00 UTC | 699 | OUT | |
2024-12-18 20:17:01 UTC | 297 | IN | |
2024-12-18 20:17:01 UTC | 7895 | IN | |
2024-12-18 20:17:01 UTC | 82 | IN | |
2024-12-18 20:17:01 UTC | 1 | IN | |
2024-12-18 20:17:01 UTC | 8 | IN | |
2024-12-18 20:17:01 UTC | 461 | IN | |
2024-12-18 20:17:01 UTC | 1 | IN | |
2024-12-18 20:17:01 UTC | 1 | IN | |
2024-12-18 20:17:01 UTC | 1 | IN | |
2024-12-18 20:17:01 UTC | 2 | IN | |
2024-12-18 20:17:01 UTC | 684 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49734 | 198.12.239.74 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:17:01 UTC | 579 | OUT | |
2024-12-18 20:17:01 UTC | 286 | IN | |
2024-12-18 20:17:01 UTC | 33 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49744 | 199.232.192.193 | 443 | 3664 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-18 20:17:02 UTC | 347 | OUT | |
2024-12-18 20:17:02 UTC | 762 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN | |
2024-12-18 20:17:02 UTC | 1371 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 15:16:40 |
Start date: | 18/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 15:16:42 |
Start date: | 18/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 15:16:49 |
Start date: | 18/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |