Windows
Analysis Report
Timesheet ACH-Tbconsulting.November 16, 2024.html
Overview
General Information
Detection
Score: | 52 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5784 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "C:\Us ers\user\D esktop\Tim esheet ACH -Tbconsult ing.Novemb er 16, 202 4.html" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 5912 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2412 --fi eld-trial- handle=232 0,i,664608 0088605768 551,988357 5881723638 348,262144 /prefetch :8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Click to jump to signature section
Phishing |
---|
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
tiny-hat-eab8.pagenew.workers.dev | 104.21.51.134 | true | false | high | |
code.jquery.com | 151.101.130.137 | true | false | high | |
proposal-5ye.pages.dev | 172.66.47.118 | true | true | unknown | |
www.google.com | 172.217.19.164 | true | false | high | |
natrium100gram.site | 194.163.42.36 | true | false | unknown | |
cdn.jsdelivr.net | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
true | unknown | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | unknown | |||
false | high | |||
false | unknown | |||
true | unknown | |||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
194.163.42.36 | natrium100gram.site | Germany | 6659 | NEXINTO-DE | false | |
172.217.19.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
104.21.51.134 | tiny-hat-eab8.pagenew.workers.dev | United States | 13335 | CLOUDFLARENETUS | false | |
151.101.130.137 | code.jquery.com | United States | 54113 | FASTLYUS | false | |
151.101.2.137 | unknown | United States | 54113 | FASTLYUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.66.47.118 | proposal-5ye.pages.dev | United States | 13335 | CLOUDFLARENETUS | true |
IP |
---|
192.168.2.7 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1578424 |
Start date and time: | 2024-12-19 17:16:01 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 13s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowshtmlcookbook.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 15 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | Timesheet ACH-Tbconsulting.November 16, 2024.html |
Detection: | MAL |
Classification: | mal52.phis.winHTML@27/14@20/8 |
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, WMIADAP.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, backgroundTaskHost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.181.99, 172.217.19.206, 64.233.164.84, 104.18.187.31, 104.18.186.31, 172.217.17.46, 142.250.181.138, 216.58.208.234, 172.217.19.202, 172.217.17.42, 142.250.181.106, 172.217.19.234, 172.217.17.74, 172.217.19.170, 142.250.181.42, 142.250.181.74, 23.193.114.26, 217.20.58.99, 172.217.17.35, 142.250.181.142, 13.107.246.63, 23.218.208.109, 20.12.23.50
- Excluded domains from analysis (whitelisted): clients1.google.com, cdn.jsdelivr.net.cdn.cloudflare.net, fs.microsoft.com, accounts.google.com, otelrules.azureedge.net, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, time.windows.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com, optimizationguide-pa.googleapis.com
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: Timesheet ACH-Tbconsulting.November 16, 2024.html
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
151.101.2.137 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
194.163.42.36 | Get hash | malicious | HTMLPhisher | Browse | ||
239.255.255.250 | Get hash | malicious | Stealc, Vidar | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | KnowBe4 | Browse | |||
Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse | |||
Get hash | malicious | ScreenConnect Tool, LummaC, Amadey, Cryptbot, LummaC Stealer, Vidar | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | PDFPhish | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | LummaC, Amadey, Cryptbot, LummaC Stealer, RHADAMANTHYS, Stealc, Vidar | Browse | |||
104.21.51.134 | Get hash | malicious | HTMLPhisher | Browse | ||
151.101.130.137 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
code.jquery.com | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
natrium100gram.site | Get hash | malicious | HTMLPhisher | Browse |
| |
tiny-hat-eab8.pagenew.workers.dev | Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
FASTLYUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | KnowBe4 | Browse |
| ||
Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse |
| ||
Get hash | malicious | ScreenConnect Tool, LummaC, Amadey, Cryptbot, LummaC Stealer, Vidar | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | AteraAgent | Browse |
| ||
Get hash | malicious | LummaC, Amadey, Cryptbot, LummaC Stealer, RHADAMANTHYS, Stealc, Vidar | Browse |
| ||
NEXINTO-DE | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Njrat | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Gafgyt, Mirai, Moobot, Okiru | Browse |
| ||
Get hash | malicious | Orcus, Xmrig | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | KnowBe4 | Browse |
| ||
Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse |
| ||
Get hash | malicious | ScreenConnect Tool, LummaC, Amadey, Cryptbot, LummaC Stealer, Vidar | Browse |
| ||
Get hash | malicious | BruteRatel, Latrodectus | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | GuLoader, MassLogger RAT | Browse |
|
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 74 |
Entropy (8bit): | 4.367312685743807 |
Encrypted: | false |
SSDEEP: | 3:YWR4buWsItRRV4KVnJarAWL2HAQz:YWybuORH6AWKgQz |
MD5: | E65347F2769D459683BFD2B3CE54038A |
SHA1: | 93461EB5FE7F0E4263B119812FE0953F310AC2F1 |
SHA-256: | 30D5DBD145F1ADB6D7AC57F800C818CD53AFE2BBC665905DD4E06C16317BD753 |
SHA-512: | 294895C9BEB616D4F3B24E80918ED006534FFA79548CEBB5AC23426DAF318CCB6ACCC6A9754B555677321AE93E3D3712A6059C79ECE2C31367F5885AFBAD4924 |
Malicious: | false |
Reputation: | low |
URL: | https://tiny-hat-eab8.pagenew.workers.dev/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 87533 |
Entropy (8bit): | 5.262536918435756 |
Encrypted: | false |
SSDEEP: | 1536:0RUX9uDgwxcy2KVBNwchN6SLaHEk2BSrBESp+a/IEk4aAocVi8SMBQ47GKr:sHNwcv9VBQpLl88SMBQ47GKr |
MD5: | 2C872DBE60F4BA70FB85356113D8B35E |
SHA1: | EE48592D1FFF952FCF06CE0B666ED4785493AFDC |
SHA-256: | FC9A93DD241F6B045CBFF0481CF4E1901BECD0E12FB45166A8F17F95823F0B1A |
SHA-512: | BF6089ED4698CB8270A8B0C8AD9508FF886A7A842278E98064D5C1790CA3A36D5D69D9F047EF196882554FC104DA2C88EB5395F1EE8CF0F3F6FF8869408350FE |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3530 |
Entropy (8bit): | 5.183989097603964 |
Encrypted: | false |
SSDEEP: | 48:x9313e2Z+59Uhl679Smbbc7mdOV3ny2WWAIhBJqmQAY18SFvLv:/yR9Sm8Y03JoICAYL1D |
MD5: | D22721B5C0396AFAB367F24463AC6542 |
SHA1: | C28D2F7D3AF5D7BBBDF9FCFBC6D0C9D21D86064D |
SHA-256: | 71F4179F271340B7801D10F4DDFA5266657DA63628D2689E89E389C8CA39283D |
SHA-512: | AE0E9DE1EB360839409095EECD09D27C9285116CCEC4B4ACFEFD412A67F0BCAC97626B0A82A9B1DB9F5B6D70535D4B3992157CFCD9985C6FF87F8906DAC8CDFB |
Malicious: | false |
Reputation: | low |
URL: | https://proposal-5ye.pages.dev/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1996 |
Entropy (8bit): | 3.766841562840628 |
Encrypted: | false |
SSDEEP: | 24:qmcnnVh6H563NLeWVipUBec+Zd3e9cMZjdzY0Ne9cMZjd8a6KM:+nViO3VipzRZd3e9TpNe9TYa6X |
MD5: | 85E2CD0257A5EEBDB72981163B60E641 |
SHA1: | F6A02A3127BFDCDD17BA3496B97DE3A89F715A5C |
SHA-256: | 2A268A628720851D06981F71BBECAB7FE7521A336E26F015EEA61600E531A1DD |
SHA-512: | 45B4EF064141730CD963311BB64BAE8ABD7263426103D84D43F7B51F85248B2D820D394CBE8558EA350CB26E3874CD78C9A8EEB5663A487A4AB646FF7FA34D52 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3530 |
Entropy (8bit): | 5.183989097603964 |
Encrypted: | false |
SSDEEP: | 48:x9313e2Z+59Uhl679Smbbc7mdOV3ny2WWAIhBJqmQAY18SFvLv:/yR9Sm8Y03JoICAYL1D |
MD5: | D22721B5C0396AFAB367F24463AC6542 |
SHA1: | C28D2F7D3AF5D7BBBDF9FCFBC6D0C9D21D86064D |
SHA-256: | 71F4179F271340B7801D10F4DDFA5266657DA63628D2689E89E389C8CA39283D |
SHA-512: | AE0E9DE1EB360839409095EECD09D27C9285116CCEC4B4ACFEFD412A67F0BCAC97626B0A82A9B1DB9F5B6D70535D4B3992157CFCD9985C6FF87F8906DAC8CDFB |
Malicious: | false |
URL: | https://proposal-5ye.pages.dev/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 87533 |
Entropy (8bit): | 5.262536918435756 |
Encrypted: | false |
SSDEEP: | 1536:0RUX9uDgwxcy2KVBNwchN6SLaHEk2BSrBESp+a/IEk4aAocVi8SMBQ47GKr:sHNwcv9VBQpLl88SMBQ47GKr |
MD5: | 2C872DBE60F4BA70FB85356113D8B35E |
SHA1: | EE48592D1FFF952FCF06CE0B666ED4785493AFDC |
SHA-256: | FC9A93DD241F6B045CBFF0481CF4E1901BECD0E12FB45166A8F17F95823F0B1A |
SHA-512: | BF6089ED4698CB8270A8B0C8AD9508FF886A7A842278E98064D5C1790CA3A36D5D69D9F047EF196882554FC104DA2C88EB5395F1EE8CF0F3F6FF8869408350FE |
Malicious: | false |
URL: | https://code.jquery.com/jquery-3.7.1.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 74 |
Entropy (8bit): | 4.367312685743807 |
Encrypted: | false |
SSDEEP: | 3:YWR4buWsItRRV4KVnJarAWL2HAQz:YWybuORH6AWKgQz |
MD5: | E65347F2769D459683BFD2B3CE54038A |
SHA1: | 93461EB5FE7F0E4263B119812FE0953F310AC2F1 |
SHA-256: | 30D5DBD145F1ADB6D7AC57F800C818CD53AFE2BBC665905DD4E06C16317BD753 |
SHA-512: | 294895C9BEB616D4F3B24E80918ED006534FFA79548CEBB5AC23426DAF318CCB6ACCC6A9754B555677321AE93E3D3712A6059C79ECE2C31367F5885AFBAD4924 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 3530 |
Entropy (8bit): | 5.183989097603964 |
Encrypted: | false |
SSDEEP: | 48:x9313e2Z+59Uhl679Smbbc7mdOV3ny2WWAIhBJqmQAY18SFvLv:/yR9Sm8Y03JoICAYL1D |
MD5: | D22721B5C0396AFAB367F24463AC6542 |
SHA1: | C28D2F7D3AF5D7BBBDF9FCFBC6D0C9D21D86064D |
SHA-256: | 71F4179F271340B7801D10F4DDFA5266657DA63628D2689E89E389C8CA39283D |
SHA-512: | AE0E9DE1EB360839409095EECD09D27C9285116CCEC4B4ACFEFD412A67F0BCAC97626B0A82A9B1DB9F5B6D70535D4B3992157CFCD9985C6FF87F8906DAC8CDFB |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1996 |
Entropy (8bit): | 3.766841562840628 |
Encrypted: | false |
SSDEEP: | 24:qmcnnVh6H563NLeWVipUBec+Zd3e9cMZjdzY0Ne9cMZjd8a6KM:+nViO3VipzRZd3e9TpNe9TYa6X |
MD5: | 85E2CD0257A5EEBDB72981163B60E641 |
SHA1: | F6A02A3127BFDCDD17BA3496B97DE3A89F715A5C |
SHA-256: | 2A268A628720851D06981F71BBECAB7FE7521A336E26F015EEA61600E531A1DD |
SHA-512: | 45B4EF064141730CD963311BB64BAE8ABD7263426103D84D43F7B51F85248B2D820D394CBE8558EA350CB26E3874CD78C9A8EEB5663A487A4AB646FF7FA34D52 |
Malicious: | false |
URL: | https://cdn.jsdelivr.net/npm/rudije@6.7.7/manislife.js |
Preview: |
File type: | |
Entropy (8bit): | 4.874638616028856 |
TrID: | |
File name: | Timesheet ACH-Tbconsulting.November 16, 2024.html |
File size: | 1'098 bytes |
MD5: | fdc286ce98189404a993230167e65fbb |
SHA1: | 1bca6d04f245b9416afc3ec1848ed5ff7b9f5d84 |
SHA256: | be9ffc5395a651eee7b4a08fd63ba750402845ac20a9b75deacc8a298358608e |
SHA512: | 5176822ebc530b95118bc470a1647051a4f5992f701c28bffbfd68bffc2a6acef32d521126922a0b8371edf6ba3133cb350977416dacd0c25b647143241413ee |
SSDEEP: | 24:L642e3KEY4ZoTKo3qNGCufkCsCXriEYUZHGJuwbQ1SMq:L7bN5mkbgq |
TLSH: | D0115EC4D3A9D21B5BAC4A43EE0899CC90B6812B10C17307B798F58C1BF9355CEAC498 |
File Content Preview: | .. .. <script accesskey="r1" part="2" adidas="bWtudWRzZW5AdGJjb25zdWx0aW5nLmNvbQ==" nike-Strykerr="yike" aria-activedescendant="PP">.... let stringaway = "MEMBERSHIPhttps://www.zoom.com/en/about/,\x76\x61\x72\x20\x6b\x20\x3d\x20\x64\x6f\x63\x75\x6d\x6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 19, 2024 17:16:50.501362085 CET | 49671 | 443 | 192.168.2.7 | 204.79.197.203 |
Dec 19, 2024 17:16:52.907566071 CET | 49671 | 443 | 192.168.2.7 | 204.79.197.203 |
Dec 19, 2024 17:16:54.141933918 CET | 49674 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:16:54.142198086 CET | 49675 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:16:54.266921997 CET | 49672 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:16:57.260478973 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:16:57.782572985 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:16:57.798343897 CET | 49671 | 443 | 192.168.2.7 | 204.79.197.203 |
Dec 19, 2024 17:16:58.579438925 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:17:00.079687119 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:17:02.079216957 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:02.079253912 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:02.079328060 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:02.080070972 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:02.080091953 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.079293966 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:17:03.311680079 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.311966896 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.311988115 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.313533068 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.313591003 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315234900 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315234900 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315316916 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315339088 CET | 443 | 49709 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.315459967 CET | 49709 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315664053 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315696955 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.315754890 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315972090 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:03.315979958 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:03.751204967 CET | 49674 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:17:03.751235008 CET | 49675 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:17:03.876200914 CET | 49672 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:17:04.283277988 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:04.283368111 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:04.283457041 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:04.283675909 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:04.283699036 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:04.551574945 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:04.551799059 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:04.551815987 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:04.553447008 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:04.553575039 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:04.554490089 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:04.554574966 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:04.554737091 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:04.554743052 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:04.594738960 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:05.990853071 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:05.991202116 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:05.991235018 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:05.992115021 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:05.992194891 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:05.995896101 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:05.995964050 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:06.050143003 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:06.050167084 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:06.083858013 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:06.084005117 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:06.085665941 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:06.086011887 CET | 49711 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:06.086025953 CET | 443 | 49711 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:06.094598055 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:06.247340918 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:06.247378111 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:06.247525930 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:06.247786999 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:06.247802973 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:06.260305882 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260308981 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260334969 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:06.260358095 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:06.260512114 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260513067 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260911942 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260915041 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:06.260922909 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:06.260934114 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:06.960643053 CET | 443 | 49698 | 104.98.116.138 | 192.168.2.7 |
Dec 19, 2024 17:17:06.960915089 CET | 49698 | 443 | 192.168.2.7 | 104.98.116.138 |
Dec 19, 2024 17:17:07.408405066 CET | 49671 | 443 | 192.168.2.7 | 204.79.197.203 |
Dec 19, 2024 17:17:07.464081049 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.464365959 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.464380980 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.465465069 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.465531111 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.465930939 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.465941906 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.465986967 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.466006041 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466146946 CET | 443 | 49715 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.466204882 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466229916 CET | 49715 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466279984 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466315985 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.466486931 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466682911 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:07.466696978 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:07.473156929 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.473352909 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.473377943 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.473448038 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.473607063 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.473632097 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.474807024 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.474869967 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475064993 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.475121021 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475137949 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475137949 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475162983 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475219965 CET | 443 | 49717 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.475379944 CET | 49717 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475478888 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475521088 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.475609064 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475694895 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475723982 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475763083 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.475776911 CET | 443 | 49716 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.475824118 CET | 49716 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.476073980 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.476116896 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.476176023 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.476216078 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.476233959 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:07.476330042 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:07.476347923 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.695749044 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:08.696029902 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:08.696048021 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:08.697149038 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:08.697206974 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:08.697505951 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:08.697563887 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:08.697654963 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:08.697660923 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:08.697767019 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.697967052 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.697999001 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.699654102 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.699806929 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.699956894 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.700566053 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.700584888 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.700809002 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.700906038 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.700954914 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.702009916 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.702083111 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.703090906 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.703186989 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.739275932 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:08.743343115 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.754792929 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.754793882 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.754806995 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.754821062 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:08.802093029 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:08.802093029 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:09.037846088 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:17:09.171696901 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.171783924 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.171878099 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:09.171907902 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.172327042 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.172394037 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:09.172405005 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.172456026 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.172538042 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:09.173254967 CET | 49726 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:09.173271894 CET | 443 | 49726 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:09.327558994 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:09.327655077 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:09.327754974 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:09.328021049 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:09.328052998 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.540252924 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:10.540330887 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:10.540510893 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:10.545736074 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.563697100 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.563731909 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.567516088 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.567622900 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.619656086 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.620194912 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.620213032 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.620291948 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.632484913 CET | 49724 | 443 | 192.168.2.7 | 104.21.51.134 |
Dec 19, 2024 17:17:10.632517099 CET | 443 | 49724 | 104.21.51.134 | 192.168.2.7 |
Dec 19, 2024 17:17:10.661454916 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.661489010 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.707674026 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.977266073 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.977452993 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.977497101 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.977546930 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.977596998 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.977649927 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.977838993 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.985965014 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:10.986110926 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:10.986135006 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.000315905 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.000369072 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.000399113 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.008811951 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.008871078 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.008900881 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.051249027 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.096904039 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.143637896 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.143671989 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.190330029 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.192178965 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.195992947 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.196038961 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.196064949 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.204087973 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.204144955 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.204176903 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.211993933 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.212052107 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.212068081 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.219566107 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.219686985 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.219698906 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.227173090 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.227236032 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.227245092 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.267734051 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.267754078 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275434017 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275445938 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275469065 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275480032 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275486946 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275509119 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.275542974 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275574923 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.275583029 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.275608063 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.316996098 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.401304007 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401320934 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401345015 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401355028 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401376009 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401379108 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.401387930 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.401438951 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.431710958 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.431723118 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.431752920 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.431785107 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.431808949 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.431822062 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.431878090 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.439758062 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.439830065 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.439845085 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.439868927 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.439918041 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.440424919 CET | 49732 | 443 | 192.168.2.7 | 151.101.130.137 |
Dec 19, 2024 17:17:11.440443993 CET | 443 | 49732 | 151.101.130.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.474056005 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.519342899 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.584602118 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:11.584640026 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.584728956 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:11.584944010 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:11.584959030 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855133057 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855211973 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855246067 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855295897 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.855326891 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855365038 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.855381012 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.855411053 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.856873989 CET | 49725 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.856885910 CET | 443 | 49725 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.998986959 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.999037027 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:11.999099016 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.999411106 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:11.999428988 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:12.792476892 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:12.801508904 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:12.801595926 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:12.803056002 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:12.803169012 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:12.803637028 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:12.803740978 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:12.804007053 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:12.804019928 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:12.844923019 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.212208033 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.212452888 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.212486982 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.213910103 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.213973045 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214369059 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214404106 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214446068 CET | 443 | 49739 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.214458942 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214497089 CET | 49739 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214801073 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.214844942 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.214920998 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.215137959 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:13.215142965 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:13.226694107 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.226811886 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.226860046 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.226932049 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.227005005 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.227063894 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.227104902 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.227835894 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:13.227873087 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:13.227974892 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:13.228285074 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:13.228302956 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:13.243617058 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.243660927 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.243695021 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.243721008 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.243791103 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.251971960 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.260493994 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.260550976 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.260569096 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.310481071 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.310503006 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.360574007 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.360610962 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.407442093 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.466082096 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466099977 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466123104 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466131926 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466154099 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466156960 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.466180086 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.466222048 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.466222048 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.466274977 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.509011030 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.509021044 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.509049892 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.509059906 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.509073019 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.509082079 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.509109020 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.509123087 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.633023024 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.633035898 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.633060932 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.633101940 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.633124113 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.633157969 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.633181095 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.662214994 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.662231922 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.662282944 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.662306070 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.662336111 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.662447929 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.670555115 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.670624971 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:13.670629025 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.670681953 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.671180010 CET | 49738 | 443 | 192.168.2.7 | 151.101.2.137 |
Dec 19, 2024 17:17:13.671195030 CET | 443 | 49738 | 151.101.2.137 | 192.168.2.7 |
Dec 19, 2024 17:17:14.431282997 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.431500912 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.431535959 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.432976961 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.433046103 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.433310032 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.433389902 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.433479071 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.433487892 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.486190081 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.910620928 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.910731077 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.910772085 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.910800934 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.910837889 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.910907984 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.910909891 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.910964012 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.912146091 CET | 49742 | 443 | 192.168.2.7 | 172.66.47.118 |
Dec 19, 2024 17:17:14.912164927 CET | 443 | 49742 | 172.66.47.118 | 192.168.2.7 |
Dec 19, 2024 17:17:14.944900990 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:14.945110083 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:14.945137978 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:14.946587086 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:14.946649075 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:14.947546959 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:14.947629929 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:14.947730064 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:14.947737932 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:14.999615908 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:15.673191071 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:15.673273087 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:15.673402071 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:15.910440922 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:15.911832094 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:15.912018061 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:15.912297010 CET | 49743 | 443 | 192.168.2.7 | 194.163.42.36 |
Dec 19, 2024 17:17:15.912317038 CET | 443 | 49743 | 194.163.42.36 | 192.168.2.7 |
Dec 19, 2024 17:17:16.410201073 CET | 49713 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:17:16.410278082 CET | 443 | 49713 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:17:20.954787970 CET | 49677 | 443 | 192.168.2.7 | 20.50.201.200 |
Dec 19, 2024 17:18:04.205369949 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:04.205459118 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:04.205552101 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:04.205758095 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:04.205785990 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:05.908327103 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:05.916088104 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:05.916157961 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:05.917382002 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:05.920970917 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:05.921159029 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:05.970172882 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:15.598625898 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:15.598789930 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:18:15.598848104 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:16.410481930 CET | 49873 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:18:16.410541058 CET | 443 | 49873 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:04.268404961 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:04.268501997 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:04.268610001 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:04.268840075 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:04.268853903 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:05.965038061 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:05.966536999 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:05.966562033 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:05.967022896 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:05.967530012 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:05.967607021 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:06.017234087 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:15.661206007 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:15.661271095 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Dec 19, 2024 17:19:15.661330938 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:16.409950018 CET | 50006 | 443 | 192.168.2.7 | 172.217.19.164 |
Dec 19, 2024 17:19:16.409985065 CET | 443 | 50006 | 172.217.19.164 | 192.168.2.7 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 19, 2024 17:17:00.062762976 CET | 53 | 58939 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:00.071623087 CET | 52891 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:00.071842909 CET | 50212 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:00.201952934 CET | 53 | 58213 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:00.210016966 CET | 53 | 50212 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:01.911922932 CET | 49985 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:01.912116051 CET | 65050 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:01.917202950 CET | 64195 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:01.917368889 CET | 62115 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:02.055423975 CET | 53 | 62115 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:02.071948051 CET | 53 | 65050 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:02.078742027 CET | 53 | 49985 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:02.891566038 CET | 53 | 57990 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:03.302624941 CET | 123 | 123 | 192.168.2.7 | 40.81.94.65 |
Dec 19, 2024 17:17:04.142496109 CET | 59953 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:04.142601013 CET | 50575 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:04.282064915 CET | 53 | 50575 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:04.282361031 CET | 53 | 59953 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:04.628398895 CET | 123 | 123 | 40.81.94.65 | 192.168.2.7 |
Dec 19, 2024 17:17:06.098124027 CET | 54999 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:06.098124027 CET | 51696 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:06.108020067 CET | 51587 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:06.108211040 CET | 54439 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:06.246227980 CET | 53 | 51587 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:06.246756077 CET | 53 | 54439 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:06.259272099 CET | 53 | 51696 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:06.259289026 CET | 53 | 54999 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:09.189302921 CET | 51317 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:09.189625025 CET | 62739 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:09.326513052 CET | 53 | 51317 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:09.326674938 CET | 53 | 62739 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:11.446988106 CET | 53840 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:11.447166920 CET | 49568 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:11.583909988 CET | 53 | 53840 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:11.584151983 CET | 53 | 49568 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:11.860121965 CET | 54230 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:11.860264063 CET | 56916 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:11.998238087 CET | 53 | 54230 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:11.998279095 CET | 53 | 56916 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:12.458825111 CET | 64866 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:12.458981991 CET | 55349 | 53 | 192.168.2.7 | 1.1.1.1 |
Dec 19, 2024 17:17:12.624989033 CET | 53 | 58731 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:13.226433992 CET | 53 | 55349 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:13.227402925 CET | 53 | 64866 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:19.858500004 CET | 53 | 50646 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:38.780858040 CET | 53 | 58926 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:17:57.412837982 CET | 138 | 138 | 192.168.2.7 | 192.168.2.255 |
Dec 19, 2024 17:17:59.687477112 CET | 53 | 50654 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:18:01.608769894 CET | 53 | 50529 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:18:31.968214989 CET | 53 | 49203 | 1.1.1.1 | 192.168.2.7 |
Dec 19, 2024 17:19:17.487701893 CET | 53 | 57534 | 1.1.1.1 | 192.168.2.7 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 19, 2024 17:17:00.071623087 CET | 192.168.2.7 | 1.1.1.1 | 0xc267 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:00.071842909 CET | 192.168.2.7 | 1.1.1.1 | 0xd381 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:01.911922932 CET | 192.168.2.7 | 1.1.1.1 | 0x6095 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:01.912116051 CET | 192.168.2.7 | 1.1.1.1 | 0xac50 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:01.917202950 CET | 192.168.2.7 | 1.1.1.1 | 0x3e0f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:01.917368889 CET | 192.168.2.7 | 1.1.1.1 | 0x5cbd | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:04.142496109 CET | 192.168.2.7 | 1.1.1.1 | 0xc529 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:04.142601013 CET | 192.168.2.7 | 1.1.1.1 | 0x6f9b | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:06.098124027 CET | 192.168.2.7 | 1.1.1.1 | 0x40a9 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:06.098124027 CET | 192.168.2.7 | 1.1.1.1 | 0x6d50 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:06.108020067 CET | 192.168.2.7 | 1.1.1.1 | 0x316e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:06.108211040 CET | 192.168.2.7 | 1.1.1.1 | 0xa1ec | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:09.189302921 CET | 192.168.2.7 | 1.1.1.1 | 0x137b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:09.189625025 CET | 192.168.2.7 | 1.1.1.1 | 0x8d2f | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:11.446988106 CET | 192.168.2.7 | 1.1.1.1 | 0x451 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:11.447166920 CET | 192.168.2.7 | 1.1.1.1 | 0x4c80 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:11.860121965 CET | 192.168.2.7 | 1.1.1.1 | 0x2e69 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:11.860264063 CET | 192.168.2.7 | 1.1.1.1 | 0x3dea | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 19, 2024 17:17:12.458825111 CET | 192.168.2.7 | 1.1.1.1 | 0x36aa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 17:17:12.458981991 CET | 192.168.2.7 | 1.1.1.1 | 0x629e | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 19, 2024 17:17:00.209750891 CET | 1.1.1.1 | 192.168.2.7 | 0xc267 | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:00.210016966 CET | 1.1.1.1 | 192.168.2.7 | 0xd381 | No error (0) | jsdelivr.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:02.055423975 CET | 1.1.1.1 | 192.168.2.7 | 0x5cbd | No error (0) | jsdelivr.map.fastly.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:02.056531906 CET | 1.1.1.1 | 192.168.2.7 | 0x3e0f | No error (0) | cdn.jsdelivr.net.cdn.cloudflare.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:02.071948051 CET | 1.1.1.1 | 192.168.2.7 | 0xac50 | No error (0) | 65 | IN (0x0001) | false | |||
Dec 19, 2024 17:17:02.078742027 CET | 1.1.1.1 | 192.168.2.7 | 0x6095 | No error (0) | 104.21.51.134 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:02.078742027 CET | 1.1.1.1 | 192.168.2.7 | 0x6095 | No error (0) | 172.67.181.35 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:04.282064915 CET | 1.1.1.1 | 192.168.2.7 | 0x6f9b | No error (0) | 65 | IN (0x0001) | false | |||
Dec 19, 2024 17:17:04.282361031 CET | 1.1.1.1 | 192.168.2.7 | 0xc529 | No error (0) | 172.217.19.164 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:06.246227980 CET | 1.1.1.1 | 192.168.2.7 | 0x316e | No error (0) | 104.21.51.134 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:06.246227980 CET | 1.1.1.1 | 192.168.2.7 | 0x316e | No error (0) | 172.67.181.35 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:06.246756077 CET | 1.1.1.1 | 192.168.2.7 | 0xa1ec | No error (0) | 65 | IN (0x0001) | false | |||
Dec 19, 2024 17:17:06.259272099 CET | 1.1.1.1 | 192.168.2.7 | 0x6d50 | No error (0) | 172.66.47.118 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:06.259272099 CET | 1.1.1.1 | 192.168.2.7 | 0x6d50 | No error (0) | 172.66.44.138 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:06.259289026 CET | 1.1.1.1 | 192.168.2.7 | 0x40a9 | No error (0) | 65 | IN (0x0001) | false | |||
Dec 19, 2024 17:17:09.326513052 CET | 1.1.1.1 | 192.168.2.7 | 0x137b | No error (0) | 151.101.130.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:09.326513052 CET | 1.1.1.1 | 192.168.2.7 | 0x137b | No error (0) | 151.101.194.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:09.326513052 CET | 1.1.1.1 | 192.168.2.7 | 0x137b | No error (0) | 151.101.66.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:09.326513052 CET | 1.1.1.1 | 192.168.2.7 | 0x137b | No error (0) | 151.101.2.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.583909988 CET | 1.1.1.1 | 192.168.2.7 | 0x451 | No error (0) | 151.101.2.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.583909988 CET | 1.1.1.1 | 192.168.2.7 | 0x451 | No error (0) | 151.101.130.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.583909988 CET | 1.1.1.1 | 192.168.2.7 | 0x451 | No error (0) | 151.101.194.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.583909988 CET | 1.1.1.1 | 192.168.2.7 | 0x451 | No error (0) | 151.101.66.137 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.998238087 CET | 1.1.1.1 | 192.168.2.7 | 0x2e69 | No error (0) | 172.66.47.118 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.998238087 CET | 1.1.1.1 | 192.168.2.7 | 0x2e69 | No error (0) | 172.66.44.138 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 17:17:11.998279095 CET | 1.1.1.1 | 192.168.2.7 | 0x3dea | No error (0) | 65 | IN (0x0001) | false | |||
Dec 19, 2024 17:17:13.227402925 CET | 1.1.1.1 | 192.168.2.7 | 0x36aa | No error (0) | 194.163.42.36 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.7 | 49711 | 104.21.51.134 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:04 UTC | 507 | OUT | |
2024-12-19 16:17:06 UTC | 898 | IN | |
2024-12-19 16:17:06 UTC | 74 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.7 | 49724 | 104.21.51.134 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:08 UTC | 357 | OUT | |
2024-12-19 16:17:10 UTC | 890 | IN | |
2024-12-19 16:17:10 UTC | 74 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.7 | 49726 | 172.66.47.118 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:08 UTC | 651 | OUT | |
2024-12-19 16:17:09 UTC | 942 | IN | |
2024-12-19 16:17:09 UTC | 427 | IN | |
2024-12-19 16:17:09 UTC | 1369 | IN | |
2024-12-19 16:17:09 UTC | 1369 | IN | |
2024-12-19 16:17:09 UTC | 372 | IN | |
2024-12-19 16:17:09 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.7 | 49732 | 151.101.130.137 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:10 UTC | 577 | OUT | |
2024-12-19 16:17:10 UTC | 613 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:10 UTC | 1378 | IN | |
2024-12-19 16:17:11 UTC | 1378 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.7 | 49725 | 172.66.47.118 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:11 UTC | 600 | OUT | |
2024-12-19 16:17:11 UTC | 943 | IN | |
2024-12-19 16:17:11 UTC | 1369 | IN | |
2024-12-19 16:17:11 UTC | 1369 | IN | |
2024-12-19 16:17:11 UTC | 799 | IN | |
2024-12-19 16:17:11 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.7 | 49738 | 151.101.2.137 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:12 UTC | 358 | OUT | |
2024-12-19 16:17:13 UTC | 613 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN | |
2024-12-19 16:17:13 UTC | 1378 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.7 | 49742 | 172.66.47.118 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:14 UTC | 357 | OUT | |
2024-12-19 16:17:14 UTC | 929 | IN | |
2024-12-19 16:17:14 UTC | 1369 | IN | |
2024-12-19 16:17:14 UTC | 1369 | IN | |
2024-12-19 16:17:14 UTC | 799 | IN | |
2024-12-19 16:17:14 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.7 | 49743 | 194.163.42.36 | 443 | 5912 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 16:17:14 UTC | 593 | OUT | |
2024-12-19 16:17:15 UTC | 838 | IN | |
2024-12-19 16:17:15 UTC | 20 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 11:16:53 |
Start date: | 19/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6c4390000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 4 |
Start time: | 11:16:58 |
Start date: | 19/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6c4390000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |