Windows
Analysis Report
https://spamchallenge.msftemail.com/XdEd3bDVBUzZOQUwzUmxzRWVLU3huK0JqbXFtZHA3cUlvcXhnRlhWaFBaSDJIMnMyYVN0MGpGNGN3c0Q1NE0xMUpGT3JuT2xOaVZKczlQL2VBWE9sa0pRN2VuUERVTlFWMkdmNjZoUlV4SGhDaFJQR2RQNGg2UVRmaUNIVFM2cVl4WXBaTTNCMTg4eS9XU1RyNEJ1R2VsdVdPN0JBaWZtUWRWb25EN3pIdkgyNGRYaHhjRHFWNnJ6NWFuREk4N3Q5WmdUOXI
Overview
General Information
Detection
Score: | 64 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5344 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2920 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2400 --fi eld-trial- handle=198 8,i,669988 1340216569 343,669245 8490416922 373,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6484 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://spamc hallenge.m sftemail.c om/XdEd3bD VBUzZOQUwz UmxzRWVLU3 huK0JqbXFt ZHA3cUlvcX hnRlhWaFBa SDJIMnMyYV N0MGpGNGN3 c0Q1NE0xMU pGT3JuT2xO aVZKczlQL2 VBWE9sa0pR N2VuUERVTl FWMkdmNjZo UlV4SGhDaF JQR2RQNGg2 UVRmaUNIVF M2cVl4WXBa TTNCMTg4eS 9XU1RyNEJ1 R2VsdVdPN0 JBaWZtUWRW b25EN3pIdk gyNGRYaHhj RHFWNnJ6NW FuREk4N3Q5 WmdUOXIwNF YxeDA9LS1F Q0krTzhnQn V6bDJBd2tO LS1vZDl3bz RPTTR5Nk4w andOR3dTZD d3PT0=?cid =231528158 0" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_KnowBe4 | Yara detected KnowBe4 simulated phishing | Joe Security | ||
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_KnowBe4 | Yara detected KnowBe4 simulated phishing | Joe Security |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing | ||
100% | Avira URL Cloud | malware | ||
100% | Avira URL Cloud | malware | ||
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
oops.yourgunnalovetraining.com | 54.165.133.35 | true | false | high | |
www.google.com | 216.58.208.228 | true | false | high | |
landing.training.knowbe4.com | 3.224.166.12 | true | false | high | |
use.typekit.net | unknown | unknown | false | high | |
p.typekit.net | unknown | unknown | false | high | |
img.freepik.com | unknown | unknown | false | high | |
spamchallenge.msftemail.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false | unknown | ||
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false |
| unknown | ||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
54.165.133.35 | oops.yourgunnalovetraining.com | United States | 14618 | AMAZON-AESUS | false | |
3.224.166.12 | landing.training.knowbe4.com | United States | 14618 | AMAZON-AESUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
216.58.208.228 | www.google.com | United States | 15169 | GOOGLEUS | false | |
34.195.197.181 | unknown | United States | 14618 | AMAZON-AESUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1580112 |
Start date and time: | 2024-12-24 00:20:16 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 6s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://spamchallenge.msftemail.com/XdEd3bDVBUzZOQUwzUmxzRWVLU3huK0JqbXFtZHA3cUlvcXhnRlhWaFBaSDJIMnMyYVN0MGpGNGN3c0Q1NE0xMUpGT3JuT2xOaVZKczlQL2VBWE9sa0pRN2VuUERVTlFWMkdmNjZoUlV4SGhDaFJQR2RQNGg2UVRmaUNIVFM2cVl4WXBaTTNCMTg4eS9XU1RyNEJ1R2VsdVdPN0JBaWZtUWRWb25EN3pIdkgyNGRYaHhjRHFWNnJ6NWFuREk4N3Q5WmdUOXIwNFYxeDA9LS1FQ0krTzhnQnV6bDJBd2tOLS1vZDl3bzRPTTR5Nk4wandOR3dTZDd3PT0=?cid=2315281580 |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal64.phis.win@17/22@16/6 |
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.19.238, 64.233.161.84, 172.217.19.227, 172.217.17.46, 142.250.181.142, 2.19.198.51, 2.19.198.58, 23.32.238.210, 23.32.238.192, 217.20.58.101, 23.32.238.211, 23.32.238.235, 142.250.181.106, 172.217.17.42, 172.217.17.74, 172.217.19.170, 142.250.181.138, 142.250.181.74, 172.217.21.42, 172.217.19.234, 172.217.19.202, 142.250.181.42, 192.229.221.95, 217.20.58.99, 172.217.17.35, 23.218.208.109, 20.12.23.50, 13.107.246.63
- Excluded domains from analysis (whitelisted): fs.microsoft.com, freepik.com.edgesuite.net, accounts.google.com, content-autofill.googleapis.com, slscr.update.microsoft.com, otelrules.azureedge.net, ctldl.windowsupdate.com, clientservices.googleapis.com, a1874.dscg1.akamai.net, fe3cr.delivery.mp.microsoft.com, p.typekit.net-stls-v3.edgesuite.net, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, redirector.gvt1.com, use-stls.adobe.com.edgesuite.net, update.googleapis.com, a359.dscd.akamai.net, clients.l.google.com, a1988.dscg1.akamai.net
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: https://spamchallenge.msftemail.com/XdEd3bDVBUzZOQUwzUmxzRWVLU3huK0JqbXFtZHA3cUlvcXhnRlhWaFBaSDJIMnMyYVN0MGpGNGN3c0Q1NE0xMUpGT3JuT2xOaVZKczlQL2VBWE9sa0pRN2VuUERVTlFWMkdmNjZoUlV4SGhDaFJQR2RQNGg2UVRmaUNIVFM2cVl4WXBaTTNCMTg4eS9XU1RyNEJ1R2VsdVdPN0JBaWZtUWRWb25EN3pIdkgyNGRYaHhjRHFWNnJ6NWFuREk4N3Q5WmdUOXIwNFYxeDA9LS1FQ0krTzhnQnV6bDJBd2tOLS1vZDl3bzRPTTR5Nk4wandOR3dTZDd3PT0=?cid=2315281580
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 380848 |
Entropy (8bit): | 5.202109831427653 |
Encrypted: | false |
SSDEEP: | 3072:sHNwcv9VBQpLl88SMBQ47GKYQa8ITLYI9fB8NJOD3EAjV2Uc9M1U+/uz+rSLyCAV:sHWK9VC78UBQ47GKXIvd9sOVAqtNX |
MD5: | 67A0C4DBD69561F3226243034423F1ED |
SHA1: | 88C1B5C7EBBFA24D8196290206BF544F28EEB406 |
SHA-256: | 74B9F1CFE7CAD31AE1C1901200890B76676E6D92AC817641F5EF9BFD552F2110 |
SHA-512: | D5326C46E2FC443AA0C75DB573B39957514BD025235ADB5F16797133394E1AFD0A6458B38DA8220BF7558333E8F2334532FBCC4CD9DD4DD5811AAC403B498542 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 494 |
Entropy (8bit): | 5.8943099005724 |
Encrypted: | false |
SSDEEP: | 12:3R+xC9NOkCETvXVWdurZpe4sRH0BtOHyjVbBeSe4AEdeIQL:3jq/EzIMpe3RHKMyjVb8PNEkj |
MD5: | 9CE5C4386C2ED281497D2F47F46BC8EB |
SHA1: | C0761D12E7E3F65A5F0B6E9AA9D7A367DCF20CBC |
SHA-256: | 40835A67F327D233FBEEBE744547425A9E666C2463B4E7F38F64A20177D2B429 |
SHA-512: | AAA45D7BA2EB24863D787C4BAE1CDF6F2F1D79250C1B0A3190E1F4EAA13727799830B372627AFF588168165BC7395A279F949D3ED05C903CCB0C62F2BE4551FF |
Malicious: | false |
Reputation: | low |
URL: | https://spamchallenge.msftemail.com/XdEd3bDVBUzZOQUwzUmxzRWVLU3huK0JqbXFtZHA3cUlvcXhnRlhWaFBaSDJIMnMyYVN0MGpGNGN3c0Q1NE0xMUpGT3JuT2xOaVZKczlQL2VBWE9sa0pRN2VuUERVTlFWMkdmNjZoUlV4SGhDaFJQR2RQNGg2UVRmaUNIVFM2cVl4WXBaTTNCMTg4eS9XU1RyNEJ1R2VsdVdPN0JBaWZtUWRWb25EN3pIdkgyNGRYaHhjRHFWNnJ6NWFuREk4N3Q5WmdUOXIwNFYxeDA9LS1FQ0krTzhnQnV6bDJBd2tOLS1vZDl3bzRPTTR5Nk4wandOR3dTZDd3PT0=?cid=2315281580 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 14123 |
Entropy (8bit): | 7.976920932471635 |
Encrypted: | false |
SSDEEP: | 384:r9JViSlcNiskvBWVYWjwgqbwu9Hum7yghEJJbRxD:57wmvAqMu9OLRd |
MD5: | 53CF2536C148E6CE8A94D3D12645CE85 |
SHA1: | 9700FE1C7C392E71B5099672509F583F82FCE2D1 |
SHA-256: | 4A71D66CAAE38401807025E8F49E7E17E0B389443D4ADA842A94758A6AE00FB1 |
SHA-512: | E58DA6A2AC546F8744BE2443B83FE7CB3ACC6B3A1E180E4BCF419F7DD2148D9551EE389875D0A6C7B1B38C45AD3C04CB19430D4E1121407F7CEAC2EFE8130591 |
Malicious: | false |
Reputation: | low |
URL: | https://img.freepik.com/premium-photo/business-woman-ceo-standing-office-arms-crossed-pose_146508-6505.jpg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 28 |
Entropy (8bit): | 4.378783493486175 |
Encrypted: | false |
SSDEEP: | 3:qinPt:qyPt |
MD5: | 4C42AB4890733A2B01B1B3269C4855E7 |
SHA1: | 5B68BFE664DCBC629042EA45C23954EEF1A9F698 |
SHA-256: | F69E8FC1414A82F108CFA0725E5211AF1865A9CEA342A5F01E6B2B5ABE47E010 |
SHA-512: | 0631C6EFD555699CB2273107FE5AF565FEC2234344E2D412C23E4EE43C6D721CB2B058764622E44FD544D840FF64D7C866565E280127C701CAAB0A48C35D4F5C |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwm4jh3Db7kc-BIFDYOoWz0SBQ3OQUx6?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 19528 |
Entropy (8bit): | 7.988749817997857 |
Encrypted: | false |
SSDEEP: | 384:7KYEPBGlW2Z2aUcvvYVbrEpzc0zchJ6DBaJiTVGWqa0I:F4UI23vvYVKw0z43ETg3a7 |
MD5: | A4A77ECD30A02C05F455E5D63A8D9916 |
SHA1: | 28263E31416C42052D753BE314422F808609F762 |
SHA-256: | 9D9EA9CEB3C34A236A9D39BBED407519F00880DDD310376BCC723E58A2301127 |
SHA-512: | 86B59CDB29924214383652DE9908F1CE959A3AB21D9A9573517699523B2EDB7522B18D889D86A3F00AD5EF4085FB5074D579D9EE27EEDE495187ACA552DE6496 |
Malicious: | false |
Reputation: | low |
URL: | https://use.typekit.net/af/74b049/00000000000000007735b97f/30/l?primer=7cdcb44be4a7db8877ffa5c0007b8dd865b3bbc383831fe2ea177f62257a9191&fvd=n4&v=3 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7888 |
Entropy (8bit): | 5.4625119581264725 |
Encrypted: | false |
SSDEEP: | 192:ObttrmOi+6qR+ks+G/R/Xo5HW5DR6WHKWsODu:Ovmp+6yfs+C/Xo5HW5DRhHKWsODu |
MD5: | CBFA9E32254C723FEFC5CE72279E6D67 |
SHA1: | 0692580B92D8ADB466A23B561DDCCBBC60186470 |
SHA-256: | 4E336D7D6F61D9C94C96DB59073F6FCA0A8A80F2C79E68D6E7BA8946532C69B9 |
SHA-512: | 63E3A78482F00BD97D9A63D1883A862051A21B132AAA5CEFD9C568EC7A91E34CAF73CF7381A2BB776D5B598488C704C53F2A7219B21D4F835CA049096521F785 |
Malicious: | false |
Reputation: | low |
URL: | https://oops.yourgunnalovetraining.com/pages/377bd84051ec/XdEd3bDVBUzZOQUwzUmxzRWVLU3huK0JqbXFtZHA3cUlvcXhnRlhWaFBaSDJIMnMyYVN0MGpGNGN3c0Q1NE0xMUpGT3JuT2xOaVZKczlQL2VBWE9sa0pRN2VuUERVTlFWMkdmNjZoUlV4SGhDaFJQR2RQNGg2UVRmaUNIVFM2cVl4WXBaTTNCMTg4eS9XU1RyNEJ1R2VsdVdPN0JBaWZtUWRWb25EN3pIdkgyNGRYaHhjRHFWNnJ6NWFuREk4N3Q5WmdUOXIwNFYxeDA9LS1FQ0krTzhnQnV6bDJBd2tOLS1vZDl3bzRPTTR5Nk4wandOR3dTZDd3PT0= |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 380848 |
Entropy (8bit): | 5.202109831427653 |
Encrypted: | false |
SSDEEP: | 3072:sHNwcv9VBQpLl88SMBQ47GKYQa8ITLYI9fB8NJOD3EAjV2Uc9M1U+/uz+rSLyCAV:sHWK9VC78UBQ47GKXIvd9sOVAqtNX |
MD5: | 67A0C4DBD69561F3226243034423F1ED |
SHA1: | 88C1B5C7EBBFA24D8196290206BF544F28EEB406 |
SHA-256: | 74B9F1CFE7CAD31AE1C1901200890B76676E6D92AC817641F5EF9BFD552F2110 |
SHA-512: | D5326C46E2FC443AA0C75DB573B39957514BD025235ADB5F16797133394E1AFD0A6458B38DA8220BF7558333E8F2334532FBCC4CD9DD4DD5811AAC403B498542 |
Malicious: | false |
Reputation: | low |
URL: | https://oops.yourgunnalovetraining.com/assets/application-237cb5c4f318687625f8ccf2f42de3fc20238bfe267384653491a6bba8c8f6f5.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5 |
Entropy (8bit): | 1.5219280948873621 |
Encrypted: | false |
SSDEEP: | 3:U8n:U8n |
MD5: | 83D24D4B43CC7EEF2B61E66C95F3D158 |
SHA1: | F0CAFC285EE23BB6C28C5166F305493C4331C84D |
SHA-256: | 1C0FF118A4290C99F39C90ABB38703A866E47251B23CCA20266C69C812CCAFEB |
SHA-512: | E6E84563D3A55767F8E5F36C4E217A0768120D6E15CE4D01AA63D36AF7EC8D20B600CE96DCC56DE91EC7E55E83A8267BADDD68B61447069B82ABDB2E92C6ACB6 |
Malicious: | false |
Reputation: | low |
URL: | https://p.typekit.net/p.css?s=1&k=zhs8hwa&ht=tk&f=40407.40409.40411.40415.40522.40523.40528.40529&a=103706968&app=typekit&e=css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1471 |
Entropy (8bit): | 4.754611179426391 |
Encrypted: | false |
SSDEEP: | 24:y40r8CQo40agx40mC400XLaR404hZYmx40vGk40vG/I40vGhH40VhZ40UrCmn:xdDgCFEiBZgnTOHTn |
MD5: | 15E89F9684B18EC43EE51F8D62A787C3 |
SHA1: | 9CBAAACEAE96845ECD3497F41EE3B02588ABEC11 |
SHA-256: | 16F13E16A7EF02FB6F94250AA1931DED83DBEE5D9FAD278E33DD5792D085194F |
SHA-512: | 79E0110A045F28437D192290AC9789270CB0D4E676A985564746DB439992D867BA89639D7738E2A7F7D83BBF37D9A02CAA2AE1DC4E0EE2519797E5840A47FABE |
Malicious: | false |
Reputation: | low |
URL: | https://oops.yourgunnalovetraining.com/assets/landing-watermark-8487e36eef1bec74f06631f19fea0aa171c208e2976373cda5bd0a4b9e230903.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 45652 |
Entropy (8bit): | 7.9773265636873 |
Encrypted: | false |
SSDEEP: | 768:h1C1Cz8Z/fnsFvkPeb7x5DhR7f06hV4aEKaJ7xylakDNVD2TFSNkf6UaNAUoR+gd:ho1Czm//sv1h5DD7Ro+aJ9yllXDEekC2 |
MD5: | 8708552A02FF3B31F0BC291641E5EB7D |
SHA1: | 2C275CABD85A1C73E40828CB80358560839CCB15 |
SHA-256: | 8BC4E19A9EA18ED008B99170D3F92C8207B652FCB1C4D5713B04797E0C51294D |
SHA-512: | 381D7B04B57F05E078D42AE7669DB835CBBAF1A14B0162AF5A54F6C4BFCF577A20B2E005F9501092615029F249E9E6235A3690BF8323579FA7179AED2945492D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 19404 |
Entropy (8bit): | 7.989684738207384 |
Encrypted: | false |
SSDEEP: | 384:oyVxqplqqlO9U0cHLQN+hopXEaXP8qNQCR2el+04xUp+e0dnt:oyLGHlOkHLQpUMEYRRVXKUpYt |
MD5: | 9298BF244BBB18C05A10A477073D87B0 |
SHA1: | 5CF95B591A337FCC8B94A0887C8818419444E6B6 |
SHA-256: | FF93863C00AC954D1E4925EF871CAAC849093A4BAB1F612CB7B3D39D68F7D673 |
SHA-512: | B734180FD3234B9D2B45464EDD01FEAB3642B1289A80CD0D660367BC6FDDEFDC48368B4AC98A808D384072BE3B127889EAE0E8E8D0592C5CFC7A1A78D0F4A713 |
Malicious: | false |
Reputation: | low |
URL: | https://use.typekit.net/af/dde969/00000000000000007735b995/30/l?primer=7cdcb44be4a7db8877ffa5c0007b8dd865b3bbc383831fe2ea177f62257a9191&fvd=n7&v=3 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6264 |
Entropy (8bit): | 5.211839181885143 |
Encrypted: | false |
SSDEEP: | 96:pbzQadZM9Pl6MLMTM3fWf+fBMQMyM0MZugtJ:p5ZMuMLMTM3fWf+fBMQMyM0MZueJ |
MD5: | 216F0CE7EE923D5D0736930AAE6E0683 |
SHA1: | 6964818F4192E155AD9565A25A9A9F7B5CA8D4F3 |
SHA-256: | 1AEF5FBC25BFAE6C53991092A487AC5B977F886901C30CC1999B18E9F32CEC07 |
SHA-512: | CC79FE30CB26DB62AA9EE2B039CC9EC2C94685C7FFED81E9F4C0828BDBD88D9838799E8C7CB2EBB33427C6998583618AF7F0F04CE9BE9BDF29090EEDFA737021 |
Malicious: | false |
Reputation: | low |
URL: | https://use.typekit.net/zhs8hwa.css |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 24, 2024 00:21:18.231837988 CET | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Dec 24, 2024 00:21:23.403420925 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:23.403515100 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:23.403594017 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:23.403844118 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:23.403883934 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.101926088 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.102185011 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:25.102247953 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.103255987 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.103373051 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:25.104242086 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:25.104317904 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.156363964 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:25.156399012 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:25.201325893 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:25.600944042 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.601008892 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:25.601218939 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.601402044 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.601500034 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:25.601567984 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.601747036 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.601777077 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:25.601989985 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:25.602025986 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.347527027 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.347810984 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.347847939 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.348932981 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.348997116 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.353612900 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.353688955 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.353862047 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.353878975 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.356232882 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.356405973 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.356430054 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.357666016 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.357728004 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.358623981 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.358694077 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.405097961 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.405220032 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.405229092 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.451761007 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.903855085 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.903950930 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:27.904061079 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.905046940 CET | 49740 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:21:27.905078888 CET | 443 | 49740 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:21:28.342602968 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.342648029 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:28.342706919 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.343147039 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.343257904 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:28.343336105 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.343337059 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.343348980 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:28.343560934 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:28.343596935 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.084294081 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.084602118 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.084656954 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.084923983 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.085055113 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.085119009 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.085145950 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.085194111 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.085547924 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.085611105 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.085751057 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.085798025 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.086210012 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.086257935 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.087174892 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.087246895 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.087408066 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.087474108 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.087501049 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.087518930 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.136104107 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.136107922 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:30.136125088 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:30.185337067 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:31.988693953 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:31.988724947 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:31.988732100 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:31.988812923 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:31.988857985 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:31.993298054 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:31.993298054 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.008752108 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.008757114 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.008819103 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:32.009589911 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.009959936 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.010009050 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:32.051331997 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:32.298125029 CET | 49744 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:32.298170090 CET | 443 | 49744 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.241290092 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.241786003 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.241848946 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.242275953 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.243201971 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.243299007 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.243793011 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.287355900 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.317478895 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.317507982 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.317578077 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.317641973 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.317749977 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.317806005 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.322396040 CET | 49743 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.322433949 CET | 443 | 49743 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.879496098 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.879522085 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.879537106 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.879678965 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.879729986 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.879793882 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.934216976 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.934236050 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.934334993 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:33.934370995 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:33.934426069 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.084270000 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.084294081 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.084352970 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.084386110 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.084417105 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.084456921 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.115582943 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.115598917 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.115664005 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.115690947 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.115736961 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.147805929 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.147823095 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.147896051 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.147918940 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.147979021 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.194000006 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.194036961 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.194072962 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.194087982 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.194116116 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.194135904 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.283091068 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.283109903 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.283185005 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.283211946 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.283262968 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.304770947 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.304785967 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.304842949 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.304868937 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.304913044 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.326881886 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.326896906 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.326946020 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.326967955 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.326988935 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.327008963 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.339342117 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.339355946 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.339421988 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.339442968 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.339495897 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.461437941 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.461457968 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.461512089 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.461541891 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.461570024 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.461589098 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.474234104 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.474256039 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.474304914 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.474329948 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.474359989 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.474581003 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.484920025 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.484935045 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.485003948 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.485028028 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.485095024 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.497282028 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.497298956 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.497370958 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.497385025 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.497432947 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.509532928 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.509548903 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.509610891 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.509629011 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.509674072 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.521250010 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.521287918 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.521323919 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.521344900 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.521373034 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.521392107 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.533319950 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.533337116 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.533405066 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.533421993 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.533472061 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.573282957 CET | 49723 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 24, 2024 00:21:34.648974895 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.648998022 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.649049044 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.649085045 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.649111032 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.649143934 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.657340050 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.657355070 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.657407999 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.657423019 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.657466888 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.667464972 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.667480946 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.667520046 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.667536974 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.667562008 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.667579889 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.677803040 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.677819014 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.677872896 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.677890062 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.677937984 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.685182095 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.685197115 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.685252905 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.685271025 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.685297012 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.685314894 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.694341898 CET | 80 | 49723 | 199.232.214.172 | 192.168.2.4 |
Dec 24, 2024 00:21:34.694417953 CET | 49723 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 24, 2024 00:21:34.695260048 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.695275068 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.695338011 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.695358992 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.695405006 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.696772099 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.696854115 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.696858883 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.696913958 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.697129965 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.697164059 CET | 443 | 49746 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:34.697185040 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.697220087 CET | 49746 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:34.838197947 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:34.838280916 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:34.838414907 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:34.844854116 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:34.844938040 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:34.845022917 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:34.845227003 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:34.845262051 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:35.971599102 CET | 49738 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:21:35.971628904 CET | 443 | 49738 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:21:36.600029945 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.600243092 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.600282907 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.600816965 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.600881100 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.601809025 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.601865053 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.602088928 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.602175951 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.602238894 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.602253914 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.655545950 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.979636908 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979662895 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979671955 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979688883 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979696989 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979700089 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979743004 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.979774952 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:36.979816914 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:36.979840994 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.133399963 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.133438110 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.133477926 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.133496046 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.133553982 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.184662104 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.184683084 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.184746981 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.184762955 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.184809923 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.224246025 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.224266052 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.224359035 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.224379063 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.224438906 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.336869001 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.336895943 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.336966991 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.336981058 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.337009907 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.337028980 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.359143019 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.359179020 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.359211922 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.359225035 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.359253883 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.359287977 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.362689018 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.362742901 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.387252092 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.387268066 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.387352943 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.387367010 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.387429953 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.404923916 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.404966116 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.405019045 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.405036926 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.405060053 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.405098915 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.518845081 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.518870115 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.518949986 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.518978119 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.519031048 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.534595013 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.534609079 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.534676075 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.534689903 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.534734964 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.551783085 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.551798105 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.551882982 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.551901102 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.551951885 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.568491936 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.568507910 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.568578959 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.568591118 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.568648100 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.584279060 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.584294081 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.584373951 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.584386110 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.584445000 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.601319075 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.601334095 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.601408958 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.601421118 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.601475000 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.616117954 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.616132021 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.616208076 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.616225958 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.616286039 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.699759960 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.699774981 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.699862003 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.699875116 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.699939966 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.712971926 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.712985992 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.713057041 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.713068962 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.713123083 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.723881960 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.723896027 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.723965883 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.723978043 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.724030972 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.735549927 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.735575914 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.735657930 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.735670090 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.735728979 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.746522903 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.746536016 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.746604919 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.746617079 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.746663094 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.756499052 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.756513119 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.756578922 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.756591082 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.756639957 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.767096043 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.767111063 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.767189026 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.767200947 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.767256975 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.776381969 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.776395082 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.776463985 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.776475906 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.776524067 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.889095068 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.889146090 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.889185905 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:37.889194965 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.889245987 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.889652967 CET | 49752 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:37.889683008 CET | 443 | 49752 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:39.323220015 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:39.323268890 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:39.323334932 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:39.323636055 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:39.323653936 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.540019035 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.540333986 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:40.540385962 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.540771008 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.541184902 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:40.541260958 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.541361094 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:40.587373972 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.986480951 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.986548901 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:40.986624002 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:41.009452105 CET | 49759 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:41.009474039 CET | 443 | 49759 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:41.067122936 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:41.067214966 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:41.067338943 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:41.069777012 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:41.069816113 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.287988901 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.288321018 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:42.288367987 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.288748980 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.289114952 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:42.289196968 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.289263010 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:42.335330963 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.732078075 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.732168913 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:42.732263088 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:42.732718945 CET | 49761 | 443 | 192.168.2.4 | 34.195.197.181 |
Dec 24, 2024 00:21:42.732754946 CET | 443 | 49761 | 34.195.197.181 | 192.168.2.4 |
Dec 24, 2024 00:21:48.302664995 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:48.302771091 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:48.302861929 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:48.310447931 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:48.310482979 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:49.528055906 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:49.532855988 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:49.532910109 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:49.534162045 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:49.546273947 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:21:49.546468973 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:21:49.590120077 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:22:12.419276953 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:22:12.419297934 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:22:21.631191969 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:22:21.631278992 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:22:21.631373882 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:22:21.982023001 CET | 49741 | 443 | 192.168.2.4 | 3.224.166.12 |
Dec 24, 2024 00:22:21.982047081 CET | 443 | 49741 | 3.224.166.12 | 192.168.2.4 |
Dec 24, 2024 00:22:22.308856010 CET | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 24, 2024 00:22:22.430291891 CET | 80 | 49724 | 199.232.214.172 | 192.168.2.4 |
Dec 24, 2024 00:22:22.430371046 CET | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 24, 2024 00:22:23.325764894 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:23.325786114 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:23.325860023 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:23.326102018 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:23.326111078 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:25.016429901 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:25.016746998 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:25.016761065 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:25.017081022 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:25.017489910 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:25.017540932 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:25.059174061 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:34.559274912 CET | 49762 | 443 | 192.168.2.4 | 54.165.133.35 |
Dec 24, 2024 00:22:34.559345961 CET | 443 | 49762 | 54.165.133.35 | 192.168.2.4 |
Dec 24, 2024 00:22:34.717408895 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:34.717466116 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Dec 24, 2024 00:22:34.717565060 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:35.989511967 CET | 49796 | 443 | 192.168.2.4 | 216.58.208.228 |
Dec 24, 2024 00:22:35.989550114 CET | 443 | 49796 | 216.58.208.228 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 24, 2024 00:21:19.194818974 CET | 53 | 63962 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:19.325366020 CET | 53 | 55859 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:22.033601046 CET | 53 | 56220 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:23.263333082 CET | 51456 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:23.263489008 CET | 59277 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:23.401720047 CET | 53 | 51456 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:23.402381897 CET | 53 | 59277 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:25.094115973 CET | 54130 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:25.094769001 CET | 61070 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:25.599989891 CET | 53 | 61070 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:25.600147963 CET | 53 | 54130 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:27.939649105 CET | 56927 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:27.939806938 CET | 58939 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:28.341177940 CET | 53 | 58939 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:28.341892004 CET | 53 | 56927 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:29.957789898 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Dec 24, 2024 00:21:32.009246111 CET | 60840 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:32.009246111 CET | 60101 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:32.009579897 CET | 52916 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:32.009967089 CET | 54163 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.170663118 CET | 53340 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.170811892 CET | 61525 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.703917027 CET | 60498 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.704057932 CET | 54756 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.725164890 CET | 63544 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.725301027 CET | 56926 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 24, 2024 00:21:34.843106985 CET | 53 | 60498 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:34.844398022 CET | 53 | 54756 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:37.118000031 CET | 53 | 54670 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:39.014631033 CET | 53 | 49402 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:21:57.853782892 CET | 53 | 52258 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:22:18.807944059 CET | 53 | 63006 | 1.1.1.1 | 192.168.2.4 |
Dec 24, 2024 00:22:20.402072906 CET | 53 | 54615 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Dec 24, 2024 00:21:32.250194073 CET | 192.168.2.4 | 1.1.1.1 | c268 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 24, 2024 00:21:23.263333082 CET | 192.168.2.4 | 1.1.1.1 | 0xeba5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:23.263489008 CET | 192.168.2.4 | 1.1.1.1 | 0xcc22 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:25.094115973 CET | 192.168.2.4 | 1.1.1.1 | 0x5a77 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:25.094769001 CET | 192.168.2.4 | 1.1.1.1 | 0xf544 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:27.939649105 CET | 192.168.2.4 | 1.1.1.1 | 0x6b88 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:27.939806938 CET | 192.168.2.4 | 1.1.1.1 | 0x2878 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:32.009246111 CET | 192.168.2.4 | 1.1.1.1 | 0x2bc7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:32.009246111 CET | 192.168.2.4 | 1.1.1.1 | 0xa109 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:32.009579897 CET | 192.168.2.4 | 1.1.1.1 | 0xe9b9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:32.009967089 CET | 192.168.2.4 | 1.1.1.1 | 0x10b0 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.170663118 CET | 192.168.2.4 | 1.1.1.1 | 0xa690 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.170811892 CET | 192.168.2.4 | 1.1.1.1 | 0x1feb | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.703917027 CET | 192.168.2.4 | 1.1.1.1 | 0x7389 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.704057932 CET | 192.168.2.4 | 1.1.1.1 | 0x9532 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.725164890 CET | 192.168.2.4 | 1.1.1.1 | 0xf046 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 24, 2024 00:21:34.725301027 CET | 192.168.2.4 | 1.1.1.1 | 0xd931 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 24, 2024 00:21:23.401720047 CET | 1.1.1.1 | 192.168.2.4 | 0xeba5 | No error (0) | 216.58.208.228 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:23.402381897 CET | 1.1.1.1 | 192.168.2.4 | 0xcc22 | No error (0) | 65 | IN (0x0001) | false | |||
Dec 24, 2024 00:21:25.599989891 CET | 1.1.1.1 | 192.168.2.4 | 0xf544 | No error (0) | landing.training.knowbe4.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | landing.training.knowbe4.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 3.224.166.12 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 34.195.197.181 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 34.199.69.9 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 44.205.103.65 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 52.5.40.63 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:25.600147963 CET | 1.1.1.1 | 192.168.2.4 | 0x5a77 | No error (0) | 54.165.133.35 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 54.165.133.35 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 44.205.103.65 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 3.224.166.12 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 52.5.40.63 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 34.195.197.181 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:28.341892004 CET | 1.1.1.1 | 192.168.2.4 | 0x6b88 | No error (0) | 34.199.69.9 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:32.148915052 CET | 1.1.1.1 | 192.168.2.4 | 0xe9b9 | No error (0) | freepik.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:32.154231071 CET | 1.1.1.1 | 192.168.2.4 | 0xa109 | No error (0) | use-stls.adobe.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:32.155236006 CET | 1.1.1.1 | 192.168.2.4 | 0x2bc7 | No error (0) | use-stls.adobe.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:32.250027895 CET | 1.1.1.1 | 192.168.2.4 | 0x10b0 | No error (0) | freepik.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.312345982 CET | 1.1.1.1 | 192.168.2.4 | 0x1feb | No error (0) | freepik.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.312642097 CET | 1.1.1.1 | 192.168.2.4 | 0xa690 | No error (0) | freepik.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 34.195.197.181 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 44.205.103.65 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 3.224.166.12 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 34.199.69.9 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 54.165.133.35 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.843106985 CET | 1.1.1.1 | 192.168.2.4 | 0x7389 | No error (0) | 52.5.40.63 | A (IP address) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.863497019 CET | 1.1.1.1 | 192.168.2.4 | 0xf046 | No error (0) | p.typekit.net-stls-v3.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 24, 2024 00:21:34.864562988 CET | 1.1.1.1 | 192.168.2.4 | 0xd931 | No error (0) | p.typekit.net-stls-v3.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49740 | 3.224.166.12 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:27 UTC | 1018 | OUT | |
2024-12-23 23:21:27 UTC | 574 | IN | |
2024-12-23 23:21:27 UTC | 494 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49744 | 54.165.133.35 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:30 UTC | 1406 | OUT | |
2024-12-23 23:21:31 UTC | 832 | IN | |
2024-12-23 23:21:31 UTC | 7888 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49743 | 54.165.133.35 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:32 UTC | 1004 | OUT | |
2024-12-23 23:21:33 UTC | 263 | IN | |
2024-12-23 23:21:33 UTC | 1471 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49746 | 54.165.133.35 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:33 UTC | 983 | OUT | |
2024-12-23 23:21:33 UTC | 279 | IN | |
2024-12-23 23:21:33 UTC | 16105 | IN | |
2024-12-23 23:21:33 UTC | 16384 | IN | |
2024-12-23 23:21:33 UTC | 56 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN | |
2024-12-23 23:21:34 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49752 | 34.195.197.181 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:36 UTC | 440 | OUT | |
2024-12-23 23:21:36 UTC | 279 | IN | |
2024-12-23 23:21:36 UTC | 16105 | IN | |
2024-12-23 23:21:37 UTC | 10519 | IN | |
2024-12-23 23:21:37 UTC | 16384 | IN | |
2024-12-23 23:21:37 UTC | 16384 | IN | |
2024-12-23 23:21:37 UTC | 16384 | IN | |
2024-12-23 23:21:37 UTC | 13491 | IN | |
2024-12-23 23:21:37 UTC | 2893 | IN | |
2024-12-23 23:21:37 UTC | 16384 | IN | |
2024-12-23 23:21:37 UTC | 13491 | IN | |
2024-12-23 23:21:37 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49759 | 54.165.133.35 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:40 UTC | 968 | OUT | |
2024-12-23 23:21:40 UTC | 253 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49761 | 34.195.197.181 | 443 | 2920 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-23 23:21:42 UTC | 365 | OUT | |
2024-12-23 23:21:42 UTC | 253 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 18:21:13 |
Start date: | 23/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 18:21:17 |
Start date: | 23/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 18:21:24 |
Start date: | 23/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |