Windows
Analysis Report
http://18ofcontents.shop
Overview
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 1372 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 5944 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2072 --fi eld-trial- handle=203 2,i,142083 1232491225 7909,16020 9405123747 05699,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 4956 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://18ofco ntents.sho p" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
18ofcontents.shop | 104.21.112.1 | true | false | unknown | |
www.google.com | 142.250.185.164 | true | false | high | |
via.placeholder.com | 34.196.58.29 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | unknown | ||
false | high | ||
true |
| unknown | |
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
142.250.185.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
104.21.96.1 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false | |
34.196.58.29 | via.placeholder.com | United States | 14618 | AMAZON-AESUS | false |
IP |
---|
192.168.2.5 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1587361 |
Start date and time: | 2025-01-10 09:20:02 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 11s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://18ofcontents.shop |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@17/23@12/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.186.163, 142.250.186.46, 64.233.184.84, 142.250.186.174, 142.250.186.78, 142.250.181.238, 199.232.210.172, 192.229.221.95, 172.217.18.14, 216.58.206.78, 142.250.184.206, 142.250.185.227, 2.23.242.162, 13.107.246.45, 172.202.163.200, 4.245.163.56
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, otelrules.azureedge.net, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- VT rate limit hit for: http://18ofcontents.shop
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.984253446147946 |
Encrypted: | false |
SSDEEP: | 48:8UduTKWsmAHpidAKZdA19ehwiZUklqehSy+3:8lDm1y |
MD5: | B8D64B3D604FEB017307BF655A0E4FBB |
SHA1: | EA96A95EEFEFD97BCFF97B385CF609B9D8F03D94 |
SHA-256: | 0AF5761CA1E2E5EE6231CD444EBC5F3D0674A2407E3B1945A3AE92F61E4CC6FA |
SHA-512: | 036FF52794C281B4A5400260D662FD7A51ADB9E94837F872575319B000B9FC74774DBC2834413EC5C4E8FA85797103C5DE58888B7FF354918ECE4A5E5037A8E0 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 4.000032374949094 |
Encrypted: | false |
SSDEEP: | 48:8BduTKWsmAHpidAKZdA1weh/iZUkAQkqehly+2:86Dk9Q4y |
MD5: | ADF724307DC686ED4F8AD3BCA73CBB10 |
SHA1: | 5F944191189F31482EBF9BB42A52308A17387FA1 |
SHA-256: | 8A3F8DF4786E57DB3E9DDAC8239F0B30CF2722779F66347906CC77A5297BE764 |
SHA-512: | CC1E003513C0172CB20FC55FD678035F97F8EE9DCB61B260D714094AA636B29B0A5F2234949C1A7CFCC8AA036707D78103F377A1568E8A0B53F0C1F65E33F851 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.00992098899833 |
Encrypted: | false |
SSDEEP: | 48:8xnduTKWsHpidAKZdA14tseh7sFiZUkmgqeh7sry+BX:8x0D0npy |
MD5: | 54A107C7E6147F46CCAD815BA9BB2C47 |
SHA1: | 42860CFD6C9C0F516485DB0085C51B78AA923369 |
SHA-256: | 165CBA2284052A83D8D26D7D44C276C23E9F40B03BE49E121D76C79E9A6B4F0D |
SHA-512: | C6C72845FEEE86B6EDE4EB5ECCF38EBE9F90EFD42F5B56AB782423631B47DF4A804B130C8DEBD8441D27BDE3490E5B2FCD8BDB39E52E9D4EB14DA912AD20FA36 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9986690639268025 |
Encrypted: | false |
SSDEEP: | 48:8VduTKWsmAHpidAKZdA1vehDiZUkwqehRy+R:82DvTy |
MD5: | 6968B8BB30682EE1797FD07316354553 |
SHA1: | D768F691019BA16BC0092EB943CC0D66FD681429 |
SHA-256: | C26214C6201A97A0081CDDD08B4A10680B4D337FEAB1EAA7FB7A04BCBB9F2A59 |
SHA-512: | 35BC0D2897D07B5B849E670DF2BA728B45D258EDC23CEC6EB0572114B0994355F8B78A628DB00C987D529FC1C50DBB91BB89D760EE5E40E6ED8379B33D97786B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.984310169045138 |
Encrypted: | false |
SSDEEP: | 48:8LvduTKWsmAHpidAKZdA1hehBiZUk1W1qehfy+C:8QDP9/y |
MD5: | 35BB87FFD462FD36F03CFF2128CB58DB |
SHA1: | 6BF0640D7644072EE3856AC379FFC3176B4FC0CA |
SHA-256: | 1CDC1B19F7BBE3F193F833AF78B5D5768F1603FE1C782D901049132C6CFE9A8C |
SHA-512: | 2F21E354CECEFB702427C3B0F29236BC83CEABDF5DBCFDE937AC9E9C410087415ABFC711C3981A565A4476EC995FD584FD4CC9913E36E2CBE23915B5EB05D4D1 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.9979813025884945 |
Encrypted: | false |
SSDEEP: | 48:8vduTKWsmAHpidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbpy+yT+:88DHT/TbxWOvTbpy7T |
MD5: | C25248E50A14B0C305BE64FDA2AE752D |
SHA1: | C253C1BA79410BDFBC7A27E37A1202F2400CC95F |
SHA-256: | 7D791450B83D1345C5777464F5F8304E4AA020EE27393077AEB20B6D57EB6FC6 |
SHA-512: | F287FF8AAAF859A80A3F62CB19D2999205E0710D745C2432AF8A3D5DB3F19E13FF49FDC867D50C8D28DEAFF71938D71BFE75598D63C2E0513B8AC4E1489CF71E |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1017 |
Entropy (8bit): | 7.6246823125262635 |
Encrypted: | false |
SSDEEP: | 24:Wd+UGs9Y9Y9Y9KOss990QDtpTI93yDVZsxOf26yCUG3iS+YfCb9Y9Y9ul1:4+Y9Y9Y9Y9Ks990ktdMMVZrd9UGSS1fZ |
MD5: | CF6D266B377A82924710B21F812D3DD6 |
SHA1: | C92FD7CBB23D7A08638B3D4847B54B3EE2958BA3 |
SHA-256: | 3B34A665D4415D678F99D255453A128F0C0A4AC06B4A69B701B35C66898B56CB |
SHA-512: | D061BE6D489272366406DFCAB6212DD3280D5361DC38350A0E142396ADC5DFCB480A9465E6C8BF86EAFA18C3F0FD6C6A1474F7CEF8D970E72D56F6EF997F54C5 |
Malicious: | false |
Reputation: | low |
URL: | https://via.placeholder.com/100/00FF00/FFFFFF?text=2 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 913 |
Entropy (8bit): | 7.567247944170954 |
Encrypted: | false |
SSDEEP: | 24:JoPK4FVipFYCYHX0T4ZxUlAHj/bNDfkCrus:JoLVfCYHeYx2+/ZDfZrV |
MD5: | EC324D2294823E79D74948243F0A8326 |
SHA1: | 3F28E415EFC6F49FB5039FEA3041BAD92D07C286 |
SHA-256: | C14EF4ED519B60DBE47AA2B2B92CE0A28F3D7194D2F34C66D8FC0874D02C4014 |
SHA-512: | 7CDFB425CCA935A2E45E024AB177291C55FFF645146FAAD772B270304D017B4308A0E1FBCA6D38E2F77A9FEFF52BBA8F0DE9182340EF53A9FC1D9176859D9023 |
Malicious: | false |
Reputation: | low |
URL: | https://via.placeholder.com/100/FF00FF/FFFFFF?text=5 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 547 |
Entropy (8bit): | 6.988416630023441 |
Encrypted: | false |
SSDEEP: | 12:6v/7WRVYjEEEBiXx4VwagHdVVO7jWZ+p/bEoqEEZ:5RkGOBKA4ts |
MD5: | 51ADD8BC224E1321526AC48C333A904F |
SHA1: | 53688EAAEBE567FC35F6CC773E625FBEDDA31A86 |
SHA-256: | BC2FEE26E4C00459E52C499F84443942443D3C59E2E1CD9C28060BD080F136D5 |
SHA-512: | 4F7615BE46F574B10C22DE5C9E29E4A443E62C90F073F446A7FA6D3CC155A15A6E5677D4EE23357D22E15E456E9A9676EE84F1CEB2B0D75E5EE6804DCDC2CD22 |
Malicious: | false |
Reputation: | low |
URL: | https://via.placeholder.com/100/FF0000/FFFFFF?text=1 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 548 |
Entropy (8bit): | 4.688532577858027 |
Encrypted: | false |
SSDEEP: | 12:TjeRHVIdtklI5r8INGlTF5TF5TF5TF5TF5TFK:neRH68DTPTPTPTPTPTc |
MD5: | 370E16C3B7DBA286CFF055F93B9A94D8 |
SHA1: | 65F3537C3C798F7DA146C55AEF536F7B5D0CB943 |
SHA-256: | D465172175D35D493FB1633E237700022BD849FA123164790B168B8318ACB090 |
SHA-512: | 75CD6A0AC7D6081D35140ABBEA018D1A2608DD936E2E21F61BF69E063F6FA16DD31C62392F5703D7A7C828EE3D4ECC838E73BFF029A98CED8986ACB5C8364966 |
Malicious: | false |
Reputation: | low |
URL: | https://18ofcontents.shop/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1127 |
Entropy (8bit): | 7.636024006021738 |
Encrypted: | false |
SSDEEP: | 24:5PDcdbtfCcBJgSsGYSvIcsqqyknIJqRnFjQ2/msE8AcQX8tXVZt7:dDcdZC6euKq4lpOsEA9 |
MD5: | D28CB41613F25ED1A94B3ABB96EDE4C3 |
SHA1: | E32177D3EF5164E9501D711124D5DCA56ECDFE59 |
SHA-256: | 29933AC3DF0DC8FCB91B429A9C3E8E47EB3EF0CEBE0C3BB0B248584375F8400D |
SHA-512: | B58F987BE27B3B1A783ED74BFBEDD1665C6F75AA5D1728D2CBA04C4A278E45D0B5755E73E37F96D6BE7BFB18AB54E17D20596F786D39B439BA85F51B0705E97B |
Malicious: | false |
Reputation: | low |
URL: | https://via.placeholder.com/100/00FFFF/FFFFFF?text=6 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 534 |
Entropy (8bit): | 4.6940603465853235 |
Encrypted: | false |
SSDEEP: | 12:TA3VVIE43ilINGlTF5TF5TF5TF5TF5TFK:MFH487TPTPTPTPTPTc |
MD5: | 8D1D051E58C7E7FCB6DA50F32355E121 |
SHA1: | E84DADFEB1F88DBB5E9856BED73CB7D2DAE68697 |
SHA-256: | 013D6BB198A9ECD19E2B74F7B8994FE802CB49DE27B46F731D827B344D4B9DB9 |
SHA-512: | 7C23E13B1296D001FA13703F3136AA33633E83E45CCDCFAD76098ADA5B4DA2F1FBF6AE93CA69E87F8B8F81D0ED19D75E8A9EA376322BF2CCACF9BF5E947823F9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1143 |
Entropy (8bit): | 7.721214671048242 |
Encrypted: | false |
SSDEEP: | 24:snJKys5bPG/gPwoGC03sehe/Uk3C8pxXX8XpiV1dFAlz:s14bPG/eHGXj0rBMX2dFAz |
MD5: | F1C482BF92834BF8596614E406D29A9D |
SHA1: | 1D152A07097E6DFD61C7D339D10D94C6840819E4 |
SHA-256: | FD736D956CF252B2686BCA72CB46901D6714980D04A78B27D890B08EAADD455D |
SHA-512: | A59CD328B419F47C678EA8B4AA5D49110FB49E271D5C06A897812DC6AF9B243E641E131D573694D476974D43D26F345F44B61F3805950D93B85917E48E5FD084 |
Malicious: | false |
Reputation: | low |
URL: | https://via.placeholder.com/100/0000FF/FFFFFF?text=3 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1143 |
Entropy (8bit): | 7.721214671048242 |
Encrypted: | false |
SSDEEP: | 24:snJKys5bPG/gPwoGC03sehe/Uk3C8pxXX8XpiV1dFAlz:s14bPG/eHGXj0rBMX2dFAz |
MD5: | F1C482BF92834BF8596614E406D29A9D |
SHA1: | 1D152A07097E6DFD61C7D339D10D94C6840819E4 |
SHA-256: | FD736D956CF252B2686BCA72CB46901D6714980D04A78B27D890B08EAADD455D |
SHA-512: | A59CD328B419F47C678EA8B4AA5D49110FB49E271D5C06A897812DC6AF9B243E641E131D573694D476974D43D26F345F44B61F3805950D93B85917E48E5FD084 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1127 |
Entropy (8bit): | 7.636024006021738 |
Encrypted: | false |
SSDEEP: | 24:5PDcdbtfCcBJgSsGYSvIcsqqyknIJqRnFjQ2/msE8AcQX8tXVZt7:dDcdZC6euKq4lpOsEA9 |
MD5: | D28CB41613F25ED1A94B3ABB96EDE4C3 |
SHA1: | E32177D3EF5164E9501D711124D5DCA56ECDFE59 |
SHA-256: | 29933AC3DF0DC8FCB91B429A9C3E8E47EB3EF0CEBE0C3BB0B248584375F8400D |
SHA-512: | B58F987BE27B3B1A783ED74BFBEDD1665C6F75AA5D1728D2CBA04C4A278E45D0B5755E73E37F96D6BE7BFB18AB54E17D20596F786D39B439BA85F51B0705E97B |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 534 |
Entropy (8bit): | 4.6940603465853235 |
Encrypted: | false |
SSDEEP: | 12:TA3VVIE43ilINGlTF5TF5TF5TF5TF5TFK:MFH487TPTPTPTPTPTc |
MD5: | 8D1D051E58C7E7FCB6DA50F32355E121 |
SHA1: | E84DADFEB1F88DBB5E9856BED73CB7D2DAE68697 |
SHA-256: | 013D6BB198A9ECD19E2B74F7B8994FE802CB49DE27B46F731D827B344D4B9DB9 |
SHA-512: | 7C23E13B1296D001FA13703F3136AA33633E83E45CCDCFAD76098ADA5B4DA2F1FBF6AE93CA69E87F8B8F81D0ED19D75E8A9EA376322BF2CCACF9BF5E947823F9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 547 |
Entropy (8bit): | 6.988416630023441 |
Encrypted: | false |
SSDEEP: | 12:6v/7WRVYjEEEBiXx4VwagHdVVO7jWZ+p/bEoqEEZ:5RkGOBKA4ts |
MD5: | 51ADD8BC224E1321526AC48C333A904F |
SHA1: | 53688EAAEBE567FC35F6CC773E625FBEDDA31A86 |
SHA-256: | BC2FEE26E4C00459E52C499F84443942443D3C59E2E1CD9C28060BD080F136D5 |
SHA-512: | 4F7615BE46F574B10C22DE5C9E29E4A443E62C90F073F446A7FA6D3CC155A15A6E5677D4EE23357D22E15E456E9A9676EE84F1CEB2B0D75E5EE6804DCDC2CD22 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 10, 2025 09:20:55.435132980 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:20:55.435157061 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:20:55.560554981 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:04.274322987 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.274341106 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.274425983 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.274657965 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.274672985 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.924766064 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.925189972 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.925208092 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.926266909 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.926322937 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.927479029 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.927545071 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:04.969082117 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:04.969093084 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:05.015790939 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:05.047040939 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:05.047112942 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:05.172040939 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:05.987622976 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:05.987725019 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:05.987809896 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:05.988074064 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:05.988110065 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.473162889 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.473402977 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.473433018 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.474314928 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.474381924 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478557110 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478636026 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478677034 CET | 443 | 49714 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.478681087 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478835106 CET | 49714 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478957891 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.478985071 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.479039907 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.479218960 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.479229927 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.802062988 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:06.802207947 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:06.945003033 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.945274115 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.945288897 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.946275949 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.946346998 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.947381973 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.947436094 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.947639942 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:06.947645903 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:06.996160984 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:07.517904043 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.517940998 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.517966986 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.518007040 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:07.518018961 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.518048048 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.518055916 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:07.518110037 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:07.519458055 CET | 49715 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:21:07.519469976 CET | 443 | 49715 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.616282940 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616305113 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.616298914 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616398096 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.616470098 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616522074 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616663933 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616687059 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.616756916 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616764069 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.616786003 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.616802931 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617013931 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617048025 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.617100954 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617214918 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617244959 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.617292881 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617701054 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617711067 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.617852926 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.617867947 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.617995977 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.618011951 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.618275881 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.618323088 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.618442059 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.618463039 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:07.618606091 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:07.618614912 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.276439905 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.276768923 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.276782036 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.277607918 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.277642965 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.277831078 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.278682947 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.278738976 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.278881073 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.278889894 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.279287100 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.279292107 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.279800892 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.280016899 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.280077934 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.280211926 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.280224085 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.280391932 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.280456066 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.280739069 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.280745983 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.281255960 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.281344891 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.282361031 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.282361031 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.282382011 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.282430887 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.285902023 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.286063910 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.286086082 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.287257910 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.287333965 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.288964987 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.289032936 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.292104006 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.292113066 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.293884993 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.294059992 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.294085026 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.295031071 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.295088053 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.295329094 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.295387983 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.295461893 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.300666094 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.300848007 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.300857067 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.302306890 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.302372932 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.302802086 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.302881956 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.303117990 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.303126097 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.334557056 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.334557056 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.334618092 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.334990025 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.334995985 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.339325905 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.350630999 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.350630999 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.350640059 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:08.380897999 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:08.396939039 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.760051966 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:10.760234118 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:10.760293961 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.761842966 CET | 49721 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.761873960 CET | 443 | 49721 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:10.785599947 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.785634995 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:10.785963058 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.785963058 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:10.785996914 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.254451990 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.254693031 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.254703999 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.258280993 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.258369923 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.258992910 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.259027004 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.259156942 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.313563108 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.313575983 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.366889954 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.670836926 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.670959949 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.671137094 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.672393084 CET | 49718 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.672441959 CET | 443 | 49718 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.679702044 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.679748058 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:11.679852009 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.679991961 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:11.680003881 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.020360947 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.020509958 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.020560026 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.021483898 CET | 49719 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.021502018 CET | 443 | 49719 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.024939060 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.024979115 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.025038958 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.025218964 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.025233984 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.149544001 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.149852991 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.149866104 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.150201082 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.150543928 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.150600910 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.150676012 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.191340923 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.487035036 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.488791943 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.488811970 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.489183903 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.492446899 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.492536068 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.492772102 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.535339117 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.578906059 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.579121113 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.579179049 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.579498053 CET | 49720 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.579510927 CET | 443 | 49720 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.582439899 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.582480907 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:12.582544088 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.582741976 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:12.582756042 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:13.060004950 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:13.060353041 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:13.060369015 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:13.060717106 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:13.061139107 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:13.061196089 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:13.061259031 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:13.107335091 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:14.731735945 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:14.731857061 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:14.731905937 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:14.732690096 CET | 49730 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:14.732707024 CET | 443 | 49730 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:14.824580908 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:14.824666023 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:14.824744940 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:15.233551025 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:15.233922005 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:15.233983994 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:15.236295938 CET | 49736 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:15.236318111 CET | 443 | 49736 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:15.241676092 CET | 49711 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:21:15.241683960 CET | 443 | 49711 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:21:16.796097040 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:16.796212912 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:16.801054955 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:16.801094055 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:17.028239012 CET | 49772 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:17.028271914 CET | 443 | 49772 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:17.028366089 CET | 49772 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:17.028574944 CET | 49772 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:17.028589964 CET | 443 | 49772 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:17.612555981 CET | 443 | 49772 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:17.612632990 CET | 49772 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:18.170269966 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:18.170355082 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:18.170413971 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:18.170980930 CET | 49737 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:18.171011925 CET | 443 | 49737 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:18.397281885 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:18.397373915 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:18.397444963 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:18.398299932 CET | 49716 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:18.398319006 CET | 443 | 49716 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:21.359677076 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:21.359802008 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:21.359894037 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:21.360752106 CET | 49724 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:21.360778093 CET | 443 | 49724 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:21:36.764323950 CET | 443 | 49772 | 23.1.237.91 | 192.168.2.5 |
Jan 10, 2025 09:21:36.764386892 CET | 49772 | 443 | 192.168.2.5 | 23.1.237.91 |
Jan 10, 2025 09:21:53.284631968 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:21:53.284646988 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.467147112 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.467250109 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.467353106 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.468144894 CET | 49717 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.468158007 CET | 443 | 49717 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.473900080 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.473946095 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.474034071 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.474312067 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.474320889 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.474375010 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.474664927 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.474679947 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.475114107 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.475126028 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.946413994 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.946739912 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.946765900 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.947797060 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.947861910 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948415041 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948430061 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948487043 CET | 443 | 50001 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.948498011 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948548079 CET | 50001 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948939085 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.948997021 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.949071884 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.949326038 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:03.949343920 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:03.959661007 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.966464043 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.966485023 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.967715979 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:03.968301058 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.968483925 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:03.968485117 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:04.011343956 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:04.014574051 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:04.356404066 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:04.356520891 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.356614113 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:04.356844902 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:04.356884003 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.416121960 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.432873964 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:04.432894945 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.434019089 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.435951948 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:04.436129093 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.436378002 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:04.479335070 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.988060951 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.988459110 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:04.988528967 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.988847017 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.989149094 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:04.989222050 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:04.998500109 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.998807907 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:04.998877048 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:05.000569105 CET | 50002 | 443 | 192.168.2.5 | 104.21.96.1 |
Jan 10, 2025 09:22:05.000587940 CET | 443 | 50002 | 104.21.96.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.007761955 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.007797956 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.007872105 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.008048058 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.008061886 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.030541897 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:05.466394901 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.466826916 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.466846943 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.467854023 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.467959881 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.469072104 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.469135046 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.469221115 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.469228983 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.514884949 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.591703892 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.591789961 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.591846943 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.592027903 CET | 50004 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.592042923 CET | 443 | 50004 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.592588902 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.592634916 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.592714071 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.592914104 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:05.592936039 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.064173937 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.064445972 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:06.064479113 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.064788103 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.065066099 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:06.065124035 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.065181017 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:06.107336044 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.194808006 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.194874048 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:06.194941998 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:06.195400953 CET | 50005 | 443 | 192.168.2.5 | 35.190.80.1 |
Jan 10, 2025 09:22:06.195415974 CET | 443 | 50005 | 35.190.80.1 | 192.168.2.5 |
Jan 10, 2025 09:22:14.071897030 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:14.071985006 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:14.072207928 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:14.104358912 CET | 50000 | 443 | 192.168.2.5 | 34.196.58.29 |
Jan 10, 2025 09:22:14.104386091 CET | 443 | 50000 | 34.196.58.29 | 192.168.2.5 |
Jan 10, 2025 09:22:14.903729916 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:14.903876066 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Jan 10, 2025 09:22:14.904133081 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:16.209506035 CET | 50003 | 443 | 192.168.2.5 | 142.250.185.164 |
Jan 10, 2025 09:22:16.209551096 CET | 443 | 50003 | 142.250.185.164 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 10, 2025 09:21:00.025578976 CET | 53 | 53833 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:00.046230078 CET | 53 | 58182 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:01.047135115 CET | 53 | 51490 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:04.266562939 CET | 63409 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:04.266757011 CET | 53959 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:04.273183107 CET | 53 | 63409 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:04.273660898 CET | 53 | 53959 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:05.958846092 CET | 64751 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:05.960633039 CET | 64456 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:05.972507000 CET | 53 | 64751 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:05.973093033 CET | 53 | 64456 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:05.976191044 CET | 50993 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:05.976980925 CET | 52446 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:05.984697104 CET | 53 | 52446 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:05.987258911 CET | 53 | 50993 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.600929976 CET | 52126 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:07.601310968 CET | 55782 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:07.608642101 CET | 53 | 55782 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:07.615648985 CET | 53 | 52126 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:10.766242027 CET | 63805 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:10.766371012 CET | 50952 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:21:10.774705887 CET | 53 | 50952 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:10.784672976 CET | 53 | 63805 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:17.998814106 CET | 53 | 49160 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:36.867930889 CET | 53 | 63739 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:59.414519072 CET | 53 | 52841 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:21:59.577419996 CET | 53 | 49981 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.000282049 CET | 61099 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:22:05.000421047 CET | 49609 | 53 | 192.168.2.5 | 1.1.1.1 |
Jan 10, 2025 09:22:05.007271051 CET | 53 | 49609 | 1.1.1.1 | 192.168.2.5 |
Jan 10, 2025 09:22:05.007347107 CET | 53 | 61099 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jan 10, 2025 09:21:04.266562939 CET | 192.168.2.5 | 1.1.1.1 | 0xaaac | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:21:04.266757011 CET | 192.168.2.5 | 1.1.1.1 | 0xf539 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 10, 2025 09:21:05.958846092 CET | 192.168.2.5 | 1.1.1.1 | 0xb69f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:21:05.960633039 CET | 192.168.2.5 | 1.1.1.1 | 0xa66f | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 10, 2025 09:21:05.976191044 CET | 192.168.2.5 | 1.1.1.1 | 0x709f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:21:05.976980925 CET | 192.168.2.5 | 1.1.1.1 | 0x43f2 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 10, 2025 09:21:07.600929976 CET | 192.168.2.5 | 1.1.1.1 | 0x52cb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:21:07.601310968 CET | 192.168.2.5 | 1.1.1.1 | 0x986b | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 10, 2025 09:21:10.766242027 CET | 192.168.2.5 | 1.1.1.1 | 0x4168 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:21:10.766371012 CET | 192.168.2.5 | 1.1.1.1 | 0xf2b6 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 10, 2025 09:22:05.000282049 CET | 192.168.2.5 | 1.1.1.1 | 0xb2a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 10, 2025 09:22:05.000421047 CET | 192.168.2.5 | 1.1.1.1 | 0x4837 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jan 10, 2025 09:21:04.273183107 CET | 1.1.1.1 | 192.168.2.5 | 0xaaac | No error (0) | 142.250.185.164 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:04.273660898 CET | 1.1.1.1 | 192.168.2.5 | 0xf539 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.112.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.16.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.48.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.32.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.64.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.96.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.972507000 CET | 1.1.1.1 | 192.168.2.5 | 0xb69f | No error (0) | 104.21.80.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.973093033 CET | 1.1.1.1 | 192.168.2.5 | 0xa66f | No error (0) | 65 | IN (0x0001) | false | |||
Jan 10, 2025 09:21:05.984697104 CET | 1.1.1.1 | 192.168.2.5 | 0x43f2 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.96.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.80.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.16.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.48.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.32.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.64.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:05.987258911 CET | 1.1.1.1 | 192.168.2.5 | 0x709f | No error (0) | 104.21.112.1 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:07.615648985 CET | 1.1.1.1 | 192.168.2.5 | 0x52cb | No error (0) | 34.196.58.29 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:07.615648985 CET | 1.1.1.1 | 192.168.2.5 | 0x52cb | No error (0) | 35.170.236.221 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:10.784672976 CET | 1.1.1.1 | 192.168.2.5 | 0x4168 | No error (0) | 34.196.58.29 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:21:10.784672976 CET | 1.1.1.1 | 192.168.2.5 | 0x4168 | No error (0) | 35.170.236.221 | A (IP address) | IN (0x0001) | false | ||
Jan 10, 2025 09:22:05.007347107 CET | 1.1.1.1 | 192.168.2.5 | 0xb2a | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49715 | 104.21.96.1 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:06 UTC | 660 | OUT | |
2025-01-10 08:21:07 UTC | 1283 | IN | |
2025-01-10 08:21:07 UTC | 86 | IN | |
2025-01-10 08:21:07 UTC | 1369 | IN | |
2025-01-10 08:21:07 UTC | 1369 | IN | |
2025-01-10 08:21:07 UTC | 674 | IN | |
2025-01-10 08:21:07 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49717 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:22:03 UTC | 201 | IN | |
2025-01-10 08:22:03 UTC | 1017 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49719 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:21:12 UTC | 200 | IN | |
2025-01-10 08:21:12 UTC | 547 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49721 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:21:10 UTC | 200 | IN | |
2025-01-10 08:21:10 UTC | 913 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49720 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:21:12 UTC | 201 | IN | |
2025-01-10 08:21:12 UTC | 1127 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49716 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:21:18 UTC | 155 | IN | |
2025-01-10 08:21:18 UTC | 534 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49718 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:08 UTC | 604 | OUT | |
2025-01-10 08:21:11 UTC | 201 | IN | |
2025-01-10 08:21:11 UTC | 1143 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49724 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:11 UTC | 367 | OUT | |
2025-01-10 08:21:21 UTC | 155 | IN | |
2025-01-10 08:21:21 UTC | 534 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49730 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:12 UTC | 367 | OUT | |
2025-01-10 08:21:14 UTC | 201 | IN | |
2025-01-10 08:21:14 UTC | 1143 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49736 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:12 UTC | 367 | OUT | |
2025-01-10 08:21:15 UTC | 200 | IN | |
2025-01-10 08:21:15 UTC | 547 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49737 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:21:13 UTC | 367 | OUT | |
2025-01-10 08:21:18 UTC | 201 | IN | |
2025-01-10 08:21:18 UTC | 1127 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 50000 | 34.196.58.29 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:22:03 UTC | 367 | OUT | |
2025-01-10 08:22:14 UTC | 155 | IN | |
2025-01-10 08:22:14 UTC | 534 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 50002 | 104.21.96.1 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:22:04 UTC | 839 | OUT | |
2025-01-10 08:22:04 UTC | 820 | IN | |
2025-01-10 08:22:04 UTC | 549 | IN | |
2025-01-10 08:22:04 UTC | 6 | IN | |
2025-01-10 08:22:04 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.5 | 50004 | 35.190.80.1 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:22:05 UTC | 548 | OUT | |
2025-01-10 08:22:05 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.5 | 50005 | 35.190.80.1 | 443 | 5944 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-10 08:22:06 UTC | 488 | OUT | |
2025-01-10 08:22:06 UTC | 423 | OUT | |
2025-01-10 08:22:06 UTC | 168 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 03:20:55 |
Start date: | 10/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 03:20:58 |
Start date: | 10/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 03:21:05 |
Start date: | 10/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |