Windows
Analysis Report
https://its.piquedigital.com.br/maryland.gov/&adfs/ls/client-request-id=7c724&wa=wsignin10.html
Overview
General Information
Detection
Score: | 60 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 4268 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 1460 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2424 --fi eld-trial- handle=198 8,i,551655 9856107857 386,173527 4653147485 0616,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6552 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://its.p iquedigita l.com.br/m aryland.go v/&adfs/ls /client-re quest-id=7 c724&wa=ws ignin10.ht ml" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | SlashNext: |
Phishing |
---|
Source: | Joe Sandbox AI: |
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Obfuscated Files or Information | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
100% | SlashNext | Credential Stealing type: Phishing & Social Engineering |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
d3pg5ikktvrv74.cloudfront.net | 18.165.220.86 | true | false | unknown | |
www.google.com | 172.217.21.36 | true | false | high | |
its.piquedigital.com.br | 108.179.253.82 | true | true | unknown | |
ok10static.oktacdn.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
false |
| unknown | |
false |
| unknown | |
true | unknown | ||
false | high | ||
false |
| unknown | |
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
18.165.220.103 | unknown | United States | 3 | MIT-GATEWAYSUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.217.21.36 | www.google.com | United States | 15169 | GOOGLEUS | false | |
108.179.253.82 | its.piquedigital.com.br | United States | 46606 | UNIFIEDLAYER-AS-1US | true | |
18.165.220.86 | d3pg5ikktvrv74.cloudfront.net | United States | 3 | MIT-GATEWAYSUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1581761 |
Start date and time: | 2024-12-28 22:43:10 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 9s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://its.piquedigital.com.br/maryland.gov/&adfs/ls/client-request-id=7c724&wa=wsignin10.html |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal60.phis.win@16/18@10/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.19.227, 172.217.19.238, 173.194.220.84, 172.217.17.46, 172.217.21.42, 172.217.17.42, 142.250.181.10, 142.250.181.42, 172.217.19.234, 142.250.181.138, 172.217.19.170, 142.250.181.106, 172.217.17.74, 142.250.181.74, 172.217.19.202, 217.20.58.100, 192.229.221.95, 172.217.17.35, 23.218.208.109, 172.202.163.200, 13.107.246.63
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, slscr.update.microsoft.com, otelrules.azureedge.net, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: https://its.piquedigital.com.br/maryland.gov/&adfs/ls/client-request-id=7c724&wa=wsignin10.html
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 12606 |
Entropy (8bit): | 7.973713563052843 |
Encrypted: | false |
SSDEEP: | 384:/cA7B6FHgBwmLP4qq6qDIy5xIJ+rqrnaAd6LhL/SN7:/pB2HewmD4nDOJtT07SV |
MD5: | 69B2B77410B6C16E64FC1E3E2C822104 |
SHA1: | 5323411841882497F282DBD1D6A540B8DD6D651D |
SHA-256: | 647C8A860492E8DDCEBBC6E2CAEA59D87545F2C149F0DA508D65210DD22EBDC5 |
SHA-512: | FEF9909E29A329A9A8B2D2D11CC0CB55672D6AF47F38F472ABC7F37C0CC3E2460950F4A3721B89033F173887F1328E4728F52E7BB02FC14FCA4E81FDCBE5736D |
Malicious: | false |
Reputation: | low |
URL: | https://ok10static.oktacdn.com/fs/bco/1/fs04kpaldi4mjPjZO4h7 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 12027 |
Entropy (8bit): | 5.217450755746051 |
Encrypted: | false |
SSDEEP: | 192:/Qu8kXtm4p2sIJgkgC6hL5CSPoXn1i+ZMvjSqlUz/UimJfgBO8mTDSh:ou8wt3p9IJxx6hNCSP+1icGjSfZMgBF |
MD5: | C5E3B0594DD1370AB257AC8FDF82F29B |
SHA1: | 4EBAA41CCBB1B00C94586AAC25572AFADF48D85E |
SHA-256: | 1145BD86ADAF64986564E458E4C8A734EFE16A8192D1AF30E895FFD84181C699 |
SHA-512: | 8F4EDEEA29BD11299074A25929CF6EBE35489314BA4CDDCCAA056218A19A45A0A88F90A7D16AA47150B91BECDCEFA67E63B3FADC60D1D22E16BC3787B22EDAD7 |
Malicious: | false |
Reputation: | low |
URL: | https://its.piquedigital.com.br/maryland.gov/&adfs/ls/sms_verify.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 28 |
Entropy (8bit): | 4.137537511266052 |
Encrypted: | false |
SSDEEP: | 3:fXFi/nYn:fFiwn |
MD5: | C63BBD329146AA451DFCD7D4CD572DF5 |
SHA1: | 6DEFC8FED9CD924EF3946AB5A64C472C0D998E8D |
SHA-256: | 22993D2C8488DBF170D5C18CD16A5F40539C17AADBF97BA58360EFB296539335 |
SHA-512: | 6761D9A9D727820775BE3647BFB5BBC4A61D0E631E2D8C7CB7D4DC39B1BBB9585C7B570A9EB1BD62D4BC8E5EF64AE1DA233C342B83A9A116E0309A10C67AD64B |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwlfnuwrhdM2ehIFDQGlaXISBQ1lIZnq?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 116699 |
Entropy (8bit): | 7.940033999677915 |
Encrypted: | false |
SSDEEP: | 3072:FyYkyuBTksBEGcd6O+twuZuu5phU2mOzvtCYN:FyYkyuBTkshcOwTudU2lzljN |
MD5: | 1AEE2235CC822DC6527BB377A4B363DB |
SHA1: | E36089F29546687061F2EF30E2498A1E9744416D |
SHA-256: | 183128A3C941EDE3D9199FA37D6AA90E0A7DFE101B37D10B4FEDA0CF35E11AFD |
SHA-512: | F611CD052D977BAB9D26653EB3D90891CA7EEB27F165DB997469233CDA1353831583E237E603DA2D8085DDC55E4AD7B83E60B7E4C4517DE8B7B1D747DAED20A7 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 12157 |
Entropy (8bit): | 5.213436058898529 |
Encrypted: | false |
SSDEEP: | 192:/Qu8kXtm4p2sIJgkgC6hL5CSPoXn1i+ZCHIqlUz/UimJfgBO8mTDSh:ou8wt3p9IJxx6hNCSP+1ic4IfZMgBF |
MD5: | 22A281C8D80699482C63E2A232F67DC5 |
SHA1: | 2D5168844F728349723A45FB31EF59423DBDCA6B |
SHA-256: | CADA39E5B083CBF85C44D068604B665CCE10A7ECE1D23876399A73E804518478 |
SHA-512: | 50FCC67B541AE14F269CF7E747D8A2EFEEBB3D2F813445A4885233E4BAE983E2631878E370B31B9C2A1E28F27BDDDB7E25EAB052CE7BB90B3A855D3F08BD6EBE |
Malicious: | false |
Reputation: | low |
URL: | https://its.piquedigital.com.br/maryland.gov/&adfs/ls/client-request-id=7c724&wa=wsignin10.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7425 |
Entropy (8bit): | 4.963078447098384 |
Encrypted: | false |
SSDEEP: | 192:p3Fxl5BxCfBr3fVEeGXmKlgMTKtWC/vgrH6SW:/xArtUkWTi |
MD5: | 547F2C11D337470EC466403E29117853 |
SHA1: | 16FE4562FB7FE5E2B3A04C1E39561B644F463216 |
SHA-256: | 694B38C762564D1292AB27D4A32AAA6166299B28D20DF601438C35B186C061E8 |
SHA-512: | AC7DE55883EDDE319965257410138272099FCBFA2DCD3D9DB1D345D5029C2B49F0AC6CD54D26C0117EAD2393AB25DFC6059D473E73B90416306B8ACEA07113C3 |
Malicious: | false |
Reputation: | low |
URL: | https://its.piquedigital.com.br/maryland.gov/&adfs/ls/style.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2361 |
Entropy (8bit): | 4.991940218545207 |
Encrypted: | false |
SSDEEP: | 24:hPsUhMjWBjoTfM8EPsQ345gG0A9ZG0QgG03QVuEEFHpken/ChpZqC6mLp:t2MGPEED/amQVuEa9KEC6mV |
MD5: | 11A0BBC52834CF74DA795D5815B7DC63 |
SHA1: | 5D401CF953DF570210427A92D27E00DDF403F4B7 |
SHA-256: | C989A169A129121F006C8FCBF90AB305D9005D516CE72CC44B4949167EED39D5 |
SHA-512: | BDC773E24231DCC13DB01881C1977C091F565D1505AB8FB8AAF7F6565DDCBC36B1943126D51E43E701A49C6C024E9D335B50CA546E8058029844255F2796A62C |
Malicious: | false |
Reputation: | low |
URL: | https://its.piquedigital.com.br/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.75 |
Encrypted: | false |
SSDEEP: | 3:HVsY:P |
MD5: | EF228FFE2BFA5916A26B91BE0165C47D |
SHA1: | F29F91981A209C852CDCF6FF9BC98499083AC957 |
SHA-256: | 73D1261F59C8238C930676B2C6A00C1CDF03B76DBD19E42E308465276CF67967 |
SHA-512: | 41CAFD59959FEA2652290BF5B1E0C2C54719EFAAA643F89DD2300DC430A3A1D29BDEE1E22603D4F10DB084C7C557FE91C3D14EF6CDF1ADE2C875C7076A4AF5E8 |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAkZqMY8xUu07hIFDTgsrqU=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 116699 |
Entropy (8bit): | 7.940033999677915 |
Encrypted: | false |
SSDEEP: | 3072:FyYkyuBTksBEGcd6O+twuZuu5phU2mOzvtCYN:FyYkyuBTkshcOwTudU2lzljN |
MD5: | 1AEE2235CC822DC6527BB377A4B363DB |
SHA1: | E36089F29546687061F2EF30E2498A1E9744416D |
SHA-256: | 183128A3C941EDE3D9199FA37D6AA90E0A7DFE101B37D10B4FEDA0CF35E11AFD |
SHA-512: | F611CD052D977BAB9D26653EB3D90891CA7EEB27F165DB997469233CDA1353831583E237E603DA2D8085DDC55E4AD7B83E60B7E4C4517DE8B7B1D747DAED20A7 |
Malicious: | false |
Reputation: | low |
URL: | https://its.piquedigital.com.br/maryland.gov/&adfs/ls/illustration.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 12606 |
Entropy (8bit): | 7.973713563052843 |
Encrypted: | false |
SSDEEP: | 384:/cA7B6FHgBwmLP4qq6qDIy5xIJ+rqrnaAd6LhL/SN7:/pB2HewmD4nDOJtT07SV |
MD5: | 69B2B77410B6C16E64FC1E3E2C822104 |
SHA1: | 5323411841882497F282DBD1D6A540B8DD6D651D |
SHA-256: | 647C8A860492E8DDCEBBC6E2CAEA59D87545F2C149F0DA508D65210DD22EBDC5 |
SHA-512: | FEF9909E29A329A9A8B2D2D11CC0CB55672D6AF47F38F472ABC7F37C0CC3E2460950F4A3721B89033F173887F1328E4728F52E7BB02FC14FCA4E81FDCBE5736D |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 28, 2024 22:43:55.404274940 CET | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Dec 28, 2024 22:44:05.005357027 CET | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Dec 28, 2024 22:44:09.074752092 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:09.074811935 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:09.074881077 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:09.075117111 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:09.075134993 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.820164919 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.820455074 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:10.820482969 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.821474075 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.821727037 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:10.822470903 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:10.822535038 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.872601986 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:10.872617006 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:10.919779062 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:11.753962040 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.753998995 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:11.754069090 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.754312992 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.754364014 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:11.754513979 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.754528999 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:11.754532099 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.754686117 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:11.754698992 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.052910089 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.052973032 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.053210020 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.053237915 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.053442955 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.053459883 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.054145098 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.054306030 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.054364920 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.054419041 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.055557013 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.055613995 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.055857897 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.055869102 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.058578014 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.058645010 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.110111952 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.110114098 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.110120058 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.157480955 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.639111042 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.639137983 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.639147043 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.639174938 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.639337063 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.639337063 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.639355898 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.653245926 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.653332949 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.653460979 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.653460979 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.653610945 CET | 49741 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.653630972 CET | 443 | 49741 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:13.700862885 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:13.743344069 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056502104 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056528091 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056535006 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056571007 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056606054 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.056631088 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.056761980 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.057579994 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.057630062 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.057969093 CET | 49740 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.057981968 CET | 443 | 49740 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.066274881 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.066307068 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.066401005 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.066628933 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:14.066644907 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:14.401916027 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:14.401947021 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:14.402013063 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:14.402215004 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:14.402230978 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:15.363018990 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:15.363256931 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:15.363271952 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:15.363580942 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:15.363854885 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:15.363914013 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:15.363959074 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:15.407330036 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:15.409532070 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.033653975 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.033674955 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.033682108 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.033760071 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.033770084 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.079446077 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.109581947 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.109591007 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.109657049 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.230957985 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.230972052 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.231043100 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.252307892 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:16.252557993 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:16.252584934 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:16.253458023 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:16.253518105 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:16.253796101 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.253803015 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.253859043 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.254379034 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:16.254436016 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:16.254560947 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:16.254566908 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:16.277596951 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.277621984 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.277683020 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.295588017 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.295597076 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.295660973 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.296822071 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:16.419219971 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.419236898 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.419332981 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.434454918 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.434530020 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.446708918 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.446780920 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.455810070 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.455893040 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.467649937 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.467745066 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.476644039 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.476717949 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.485754013 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.485850096 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.516803980 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.516890049 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.593202114 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.593261957 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.593276024 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.593293905 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.593334913 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.593610048 CET | 49744 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.593621016 CET | 443 | 49744 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.766381025 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.766439915 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:16.766491890 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.766964912 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:16.766978025 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972345114 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972371101 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972378969 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972409964 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972440004 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:17.972454071 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.972465992 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:17.972492933 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:17.974733114 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:17.974771023 CET | 443 | 49746 | 18.165.220.86 | 192.168.2.4 |
Dec 28, 2024 22:44:17.974817991 CET | 49746 | 443 | 192.168.2.4 | 18.165.220.86 |
Dec 28, 2024 22:44:17.980870962 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:17.980906963 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:17.980983019 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:17.981595039 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:17.981610060 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.059058905 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.059247971 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.059277058 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.060168028 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.060236931 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.060573101 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.060638905 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.060682058 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.107335091 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.107996941 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.108002901 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.133946896 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:18.133970976 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:18.134176016 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:18.134397984 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:18.134412050 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:18.154738903 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.534053087 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.534073114 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.534079075 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.534118891 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.534149885 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.534167051 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.534406900 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.645770073 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.645780087 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.645852089 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.645915031 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.739486933 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.739496946 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.739622116 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.764590025 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.764597893 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.764678955 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.795177937 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.795186996 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.795351028 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.812114000 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.812169075 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.930166006 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.930294037 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.946089029 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.946259022 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.959635973 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.959986925 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.973051071 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.973184109 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.986217022 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.986454010 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:18.995196104 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:18.995341063 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.004277945 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.004578114 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.050152063 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.050434113 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.129086971 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.129160881 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.129178047 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.129252911 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.129844904 CET | 49747 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.129861116 CET | 443 | 49747 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.230931044 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.231254101 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.231271029 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.231581926 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.235784054 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.235842943 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.235955000 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.283339024 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.689858913 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.689879894 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.689930916 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.689934969 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.689980984 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.690612078 CET | 49749 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:19.690625906 CET | 443 | 49749 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:19.979408979 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:19.979639053 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:19.979652882 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:19.980664015 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:19.980719090 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:19.981019974 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:19.981081963 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:19.981215000 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:19.981223106 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.028198004 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.529148102 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:20.529202938 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:20.530858040 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:20.733063936 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.733086109 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.733092070 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.733174086 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.733198881 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.733234882 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.734762907 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.741347075 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.741417885 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:20.741450071 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.741597891 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.741597891 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:20.744280100 CET | 49737 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:44:20.744321108 CET | 443 | 49737 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:44:21.047231913 CET | 49750 | 443 | 192.168.2.4 | 18.165.220.103 |
Dec 28, 2024 22:44:21.047255993 CET | 443 | 49750 | 18.165.220.103 | 192.168.2.4 |
Dec 28, 2024 22:44:23.704020023 CET | 49723 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 28, 2024 22:44:23.824093103 CET | 80 | 49723 | 199.232.214.172 | 192.168.2.4 |
Dec 28, 2024 22:44:23.824158907 CET | 49723 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 28, 2024 22:44:25.152556896 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.152595043 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:25.152674913 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.154344082 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.154359102 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:25.154737949 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.154784918 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:25.154844046 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.155389071 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:25.155401945 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.453422070 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.453685999 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:26.453706980 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.454027891 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.454330921 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:26.454390049 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.454478979 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:26.492860079 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.493094921 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:26.493151903 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.493501902 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.493793964 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:26.493877888 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.499321938 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:26.542787075 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.521574974 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.521861076 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.521914005 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.521970987 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.521981955 CET | 443 | 49755 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.521995068 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.522030115 CET | 49755 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.524183989 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.571342945 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.888595104 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.888622999 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.888629913 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.888709068 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.888765097 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.905167103 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.905241966 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:44:27.905246019 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.905297041 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.905961990 CET | 49756 | 443 | 192.168.2.4 | 108.179.253.82 |
Dec 28, 2024 22:44:27.905997038 CET | 443 | 49756 | 108.179.253.82 | 192.168.2.4 |
Dec 28, 2024 22:45:08.998246908 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:08.998281956 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:08.998358965 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:08.998606920 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:08.998621941 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:10.736519098 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:10.736845016 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:10.736870050 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:10.737204075 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:10.737509012 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:10.737571955 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:10.778321981 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:11.403318882 CET | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 28, 2024 22:45:11.523370028 CET | 80 | 49724 | 199.232.214.172 | 192.168.2.4 |
Dec 28, 2024 22:45:11.523441076 CET | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Dec 28, 2024 22:45:20.432190895 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:20.432241917 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Dec 28, 2024 22:45:20.432293892 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:21.217752934 CET | 49778 | 443 | 192.168.2.4 | 172.217.21.36 |
Dec 28, 2024 22:45:21.217772961 CET | 443 | 49778 | 172.217.21.36 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 28, 2024 22:44:05.030567884 CET | 53 | 50966 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:05.041738987 CET | 53 | 50630 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:07.941930056 CET | 53 | 63947 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:08.936624050 CET | 64070 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:08.936747074 CET | 63089 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:09.073817015 CET | 53 | 64070 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:09.073853016 CET | 53 | 63089 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:10.791716099 CET | 61150 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:10.791716099 CET | 63753 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:11.748538971 CET | 53 | 63753 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:11.749412060 CET | 53 | 61150 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:13.701246023 CET | 59243 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:13.701389074 CET | 60377 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:14.236027956 CET | 53 | 61874 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:14.345411062 CET | 53 | 60377 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:14.348026037 CET | 53 | 59243 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:16.627103090 CET | 49410 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:16.627334118 CET | 54324 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:16.765060902 CET | 53 | 49410 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:16.765847921 CET | 53 | 54324 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:17.990624905 CET | 64822 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:17.990916967 CET | 60010 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 28, 2024 22:44:18.133235931 CET | 53 | 60010 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:18.133534908 CET | 53 | 64822 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:23.000322104 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Dec 28, 2024 22:44:24.931797981 CET | 53 | 61128 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:44:43.776846886 CET | 53 | 50872 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:45:04.623255014 CET | 53 | 50024 | 1.1.1.1 | 192.168.2.4 |
Dec 28, 2024 22:45:06.089737892 CET | 53 | 62180 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 28, 2024 22:44:08.936624050 CET | 192.168.2.4 | 1.1.1.1 | 0x62d0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 28, 2024 22:44:08.936747074 CET | 192.168.2.4 | 1.1.1.1 | 0xa1cc | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 28, 2024 22:44:10.791716099 CET | 192.168.2.4 | 1.1.1.1 | 0x855b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 28, 2024 22:44:10.791716099 CET | 192.168.2.4 | 1.1.1.1 | 0xb353 | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 28, 2024 22:44:13.701246023 CET | 192.168.2.4 | 1.1.1.1 | 0xc2ca | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 28, 2024 22:44:13.701389074 CET | 192.168.2.4 | 1.1.1.1 | 0xcbec | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 28, 2024 22:44:16.627103090 CET | 192.168.2.4 | 1.1.1.1 | 0xb202 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 28, 2024 22:44:16.627334118 CET | 192.168.2.4 | 1.1.1.1 | 0xe3ca | Standard query (0) | 65 | IN (0x0001) | false | |
Dec 28, 2024 22:44:17.990624905 CET | 192.168.2.4 | 1.1.1.1 | 0x561b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 28, 2024 22:44:17.990916967 CET | 192.168.2.4 | 1.1.1.1 | 0xe510 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 28, 2024 22:44:09.073817015 CET | 1.1.1.1 | 192.168.2.4 | 0x62d0 | No error (0) | 172.217.21.36 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:09.073853016 CET | 1.1.1.1 | 192.168.2.4 | 0xa1cc | No error (0) | 65 | IN (0x0001) | false | |||
Dec 28, 2024 22:44:11.749412060 CET | 1.1.1.1 | 192.168.2.4 | 0x855b | No error (0) | 108.179.253.82 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.345411062 CET | 1.1.1.1 | 192.168.2.4 | 0xcbec | No error (0) | d3pg5ikktvrv74.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.348026037 CET | 1.1.1.1 | 192.168.2.4 | 0xc2ca | No error (0) | d3pg5ikktvrv74.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.348026037 CET | 1.1.1.1 | 192.168.2.4 | 0xc2ca | No error (0) | 18.165.220.86 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.348026037 CET | 1.1.1.1 | 192.168.2.4 | 0xc2ca | No error (0) | 18.165.220.57 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.348026037 CET | 1.1.1.1 | 192.168.2.4 | 0xc2ca | No error (0) | 18.165.220.13 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:14.348026037 CET | 1.1.1.1 | 192.168.2.4 | 0xc2ca | No error (0) | 18.165.220.103 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:16.765060902 CET | 1.1.1.1 | 192.168.2.4 | 0xb202 | No error (0) | 108.179.253.82 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133235931 CET | 1.1.1.1 | 192.168.2.4 | 0xe510 | No error (0) | d3pg5ikktvrv74.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133534908 CET | 1.1.1.1 | 192.168.2.4 | 0x561b | No error (0) | d3pg5ikktvrv74.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133534908 CET | 1.1.1.1 | 192.168.2.4 | 0x561b | No error (0) | 18.165.220.103 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133534908 CET | 1.1.1.1 | 192.168.2.4 | 0x561b | No error (0) | 18.165.220.57 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133534908 CET | 1.1.1.1 | 192.168.2.4 | 0x561b | No error (0) | 18.165.220.86 | A (IP address) | IN (0x0001) | false | ||
Dec 28, 2024 22:44:18.133534908 CET | 1.1.1.1 | 192.168.2.4 | 0x561b | No error (0) | 18.165.220.13 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49741 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:13 UTC | 729 | OUT | |
2024-12-28 21:44:13 UTC | 256 | IN | |
2024-12-28 21:44:13 UTC | 7936 | IN | |
2024-12-28 21:44:13 UTC | 4221 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49740 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:13 UTC | 639 | OUT | |
2024-12-28 21:44:14 UTC | 254 | IN | |
2024-12-28 21:44:14 UTC | 7425 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49744 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:15 UTC | 692 | OUT | |
2024-12-28 21:44:16 UTC | 234 | IN | |
2024-12-28 21:44:16 UTC | 7958 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN | |
2024-12-28 21:44:16 UTC | 8000 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49746 | 18.165.220.86 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:16 UTC | 618 | OUT | |
2024-12-28 21:44:17 UTC | 672 | IN | |
2024-12-28 21:44:17 UTC | 12606 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49747 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:18 UTC | 385 | OUT | |
2024-12-28 21:44:18 UTC | 234 | IN | |
2024-12-28 21:44:18 UTC | 7958 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN | |
2024-12-28 21:44:18 UTC | 8000 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49749 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:19 UTC | 665 | OUT | |
2024-12-28 21:44:19 UTC | 262 | IN | |
2024-12-28 21:44:19 UTC | 2361 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49750 | 18.165.220.103 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:19 UTC | 375 | OUT | |
2024-12-28 21:44:20 UTC | 679 | IN | |
2024-12-28 21:44:20 UTC | 9594 | IN | |
2024-12-28 21:44:20 UTC | 3012 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49755 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:26 UTC | 948 | OUT | |
2024-12-28 21:44:26 UTC | 102 | OUT | |
2024-12-28 21:44:27 UTC | 218 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49756 | 108.179.253.82 | 443 | 1460 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-28 21:44:27 UTC | 842 | OUT | |
2024-12-28 21:44:27 UTC | 256 | IN | |
2024-12-28 21:44:27 UTC | 7936 | IN | |
2024-12-28 21:44:27 UTC | 4091 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 16:43:58 |
Start date: | 28/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 16:44:02 |
Start date: | 28/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 16:44:09 |
Start date: | 28/12/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |