Windows
Analysis Report
http://beowu-fye.com
Overview
Detection
Score: | 48 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
chrome.exe (PID: 2760 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) chrome.exe (PID: 6720 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2168 --fi eld-trial- handle=197 2,i,140313 0641818705 2657,14546 2253858117 8170,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
chrome.exe (PID: 6424 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://beowu- fye.com" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
- • AV Detection
- • Networking
- • System Summary
- • Boot Survival
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
google.com | 216.58.206.46 | true | false | high | |
www.google.com | 172.217.18.4 | true | false | high | |
beowu-fye.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.217.18.4 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1616901 |
Start date and time: | 2025-02-17 10:31:28 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 25s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | http://beowu-fye.com |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.win@34/10@55/3 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, d llhost.exe, SIHClient.exe, Sgr mBroker.exe, conhost.exe, svch ost.exe - Excluded IPs from analysis (wh
itelisted): 216.58.206.35, 142 .250.184.206, 66.102.1.84, 142 .250.184.238, 199.232.214.172, 142.250.186.46, 142.250.185.1 42, 142.250.186.142, 142.250.1 86.174, 172.217.18.110, 142.25 0.184.195, 142.250.185.110, 21 6.58.212.142, 2.19.106.160, 13 .107.246.40, 4.175.87.197, 4.2 45.163.56 - Excluded domains from analysis
(whitelisted): clients1.googl e.com, fs.microsoft.com, accou nts.google.com, otelrules.azur eedge.net, slscr.update.micros oft.com, ctldl.windowsupdate.c om, clientservices.googleapis. com, fe3cr.delivery.mp.microso ft.com, clients2.google.com, e dgedl.me.gvt1.com, redirector. gvt1.com, update.googleapis.co m, clients.l.google.com - Not all processes where analyz
ed, report is missing behavior information - VT rate limit hit for: http:/
/beowu-fye.com
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.9838043277605437 |
Encrypted: | false |
SSDEEP: | 48:8X97dKT22/uHGidAKZdA1FehwiZUklqehoxy+3:8t07/jzy |
MD5: | C9F1A3E2AAE77C161184E06E9A754595 |
SHA1: | AF816D2B25C13DBB9A725A20FA0AEF6A373127A9 |
SHA-256: | 230E49EB97DEF81F924EBDDB37FAF28C60D30B7A2AFE833E8162B72A7819E2C9 |
SHA-512: | 7DC37E1E9CC7E7DB48792AED1063555EAA7B796BCDEC93734C74043AFB8F963A8922F311CE891A6C03F8DA4C959A6217AB32DCA362DE46F9C4E52A8FBC5F96E6 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.998133799173138 |
Encrypted: | false |
SSDEEP: | 48:8FcdKT22/uHGidAKZdA1seh/iZUkAQkqehZxy+2:8F97/t9QCy |
MD5: | 69B472E6C83C0C6B7E7090017E7305E3 |
SHA1: | D3EF6F8DD95B9DC6D32F7C237961B2E8ECC0BB02 |
SHA-256: | 1EE87A5E21C47B1D972163479F74DFB9F49D3D5044C86D88F16310A6BC7642B7 |
SHA-512: | 8FCAAC35508D58577B9C4EF58CDF89187FC2E45EE5E85E34EAEDEBCDD3125A0ED3ABAC3AA2FA615AE796D3CCA8B80BA3CB959C2FEDD6F9C684FFEE558284CB63 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.003414241795084 |
Encrypted: | false |
SSDEEP: | 48:8odKT22AHGidAKZdA14meh7sFiZUkmgqeh7sXxy+BX:8B7Xn3y |
MD5: | DBB103226C067E0BAB538E40587189E5 |
SHA1: | 5A541464B2765CCAE8FC152495FF65756AFDC688 |
SHA-256: | 7880E338BE3F062E6ED10937EB2AD57207E7A7558E33DAC2DD054D487254C42F |
SHA-512: | B7B91284B433E8660B5DC7B2EA780164D92BADC58A4E2121F4A4EB33F907FEA83D0F853F061AEC4F8BB83D753E0BBC7E08ADB868BCD700331A9A6CCA77D24284 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9993671696276616 |
Encrypted: | false |
SSDEEP: | 48:8vdKT22/uHGidAKZdA1TehDiZUkwqehdxy+R:8A7/epy |
MD5: | BA704B9E2CB3C3A27FE8EC0DD1B39C21 |
SHA1: | 2214543BDBF580F5D83BF9F29E8F044A649CC3C5 |
SHA-256: | 55BA90101BB28A5D14BF86D062E4470C7701CD595DEAA75C71349C1564D61C40 |
SHA-512: | F28D2444D0579EFD06C6DF76D6EE8975097DCF4317853519FB33B541D23A3EB5221CE5253EABC96CC52D3105E91F30887C22A48DA962835A9EBED78EC938929A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9865280449265614 |
Encrypted: | false |
SSDEEP: | 48:8fdKT22/uHGidAKZdA1dehBiZUk1W1qehTxy+C:8w7/O9ly |
MD5: | 574DA1FB4DB1D4680B9FE392E4637E70 |
SHA1: | 1A03D5EEA4961AAE5CA06F67A31F672CF91753A3 |
SHA-256: | F055B1793C92B1A2226DC0ECA68379DEDFB0C16760C38FE8FA0EDFBADCFAB2C9 |
SHA-512: | 61B0EB7C40F8BE9427F7F5680C7C52C125D9CD87B8BDDBFD06E3194D26386DD4588C9EA4B1B730E4650D6D988DDD57FBC997DFC03F7806368A8314B4A45AE2A3 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9951131779270876 |
Encrypted: | false |
SSDEEP: | 48:8YdKT22/uHGidAKZdA1duTeehOuTbbiZUk5OjqehOuTblxy+yT+:8x7/kTfTbxWOvTb3y7T |
MD5: | 39F894580A729457266CB95BDC94D623 |
SHA1: | 77F4F8D365F09466204EEA2A29603F41CD02137E |
SHA-256: | AB15BEA8FC19CB76E5429A8BDD8AC24B71BA60DC801460C6EB032415E5679F3D |
SHA-512: | 06DA669AE9F76EE371B6BC34DE9D05B1ECA80EAB2739600E8E1F647620475D9DBD0D3D70CB40428305A180F5DB9D884608F16A0E3B728D60000B7322EA869AE2 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3936 |
Entropy (8bit): | 5.839417614863625 |
Encrypted: | false |
SSDEEP: | 96:6D+4liKIN6666W+Fq1V3/h4JXdYBbBEnJHp9z58qgUQffffo:e+uIN6666WUiREoQ9R |
MD5: | F02F3D4D2F08880EB4AC4FB26465A03D |
SHA1: | 789484E4791D3373145243758E165B954E5D8CAB |
SHA-256: | EF9A4D7529C5EBCF576925FF6A5DB8A364E5463F64AE7D6DEFFEFB843B42C583 |
SHA-512: | 2157FCBA524109A6D3ACD722C13101ED9EE7BED789F6983C730221521161AE1EF491B0DCCB401F9DF36517751BFD4B1DE1D38E97D8D22BF3993AB13707FEAEA8 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 242 |
Entropy (8bit): | 4.879683162800275 |
Encrypted: | false |
SSDEEP: | 6:VwgJdAvAwcvSqW4YNnBHsLrYriFGHLLCwGRVfJJZwGdGD7wWeXFEL13:ucaOvenBHsgriFu3CwuRJZw4m7wzC3 |
MD5: | A90F5C8EC2EABB39FC3CE5A19F666146 |
SHA1: | D1C27941FF2FD6DC549892A1B795853F8F60027B |
SHA-256: | 9EA8CCD467E1020979E6A0837D76E7608E29E87BCDA1B5AFB0455FAAED18F542 |
SHA-512: | B6BA95FCFDEED3BF6F9084C1116F95DEED0BBF3B3CE293E38F678BAD31BA620F244DC42321BF933554687A1E43C1D06307537CD4FDB034B95E443A43D4F23788 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=beowu-fye.com&oit=3&cp=13&pgcl=4&gs_rn=42&psi=M2dVphHf0bJh_egF&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 134
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 17, 2025 10:31:59.869324923 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:00.171982050 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:00.778965950 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:01.984092951 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:03.229052067 CET | 49690 | 80 | 192.168.2.16 | 2.23.77.188 |
Feb 17, 2025 10:32:03.229159117 CET | 49689 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:04.387902975 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:05.741389036 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:05.741491079 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:05.741626024 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:05.741833925 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:05.741868973 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.393188953 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.393517971 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.393583059 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.394670963 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.394747019 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.395791054 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.395868063 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.396008015 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.439330101 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.447015047 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.447078943 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.494000912 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.691704988 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.691744089 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.691775084 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.691791058 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.691847086 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.691921949 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.691987991 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.693747044 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:06.693922997 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.693995953 CET | 49709 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:06.694030046 CET | 443 | 49709 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:08.039437056 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:08.342267036 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:08.947058916 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:09.201877117 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:09.428186893 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:09.428245068 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:09.428328037 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:09.428661108 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:09.428694963 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.056608915 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.056929111 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.056994915 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.057356119 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.057687998 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.057780981 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.057816982 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.099366903 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.112544060 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.159871101 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:10.364692926 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.368238926 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:10.368314028 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.369424105 CET | 49712 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:10.369463921 CET | 443 | 49712 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:11.950586081 CET | 56184 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.956048965 CET | 53 | 56184 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:11.956134081 CET | 56184 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.962018013 CET | 53 | 56184 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:12.402676105 CET | 56184 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:12.407885075 CET | 53 | 56184 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:12.407949924 CET | 56184 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:12.505078077 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:12.568913937 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:12.808901072 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:13.415930986 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:14.602190971 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:14.602229118 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:14.602355003 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:14.602550983 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:14.602555990 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:14.627922058 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:15.230936050 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.231210947 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.231226921 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.231529951 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.231847048 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.231909037 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.231982946 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.275336981 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.527267933 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.527338982 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.527391911 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.527447939 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.527462006 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.527519941 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.527529001 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.529484987 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:15.529563904 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.529618025 CET | 56197 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:15.529630899 CET | 443 | 56197 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:17.035893917 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:17.371879101 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:18.808923960 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Feb 17, 2025 10:32:19.448879957 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:19.448939085 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:19.454461098 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:19.454571962 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:19.454581976 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.083336115 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.083600998 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.083653927 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.084137917 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.084594965 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.084594965 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.084635973 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.084703922 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.131875992 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.396317005 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.396379948 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.396416903 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.396449089 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.396466970 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.396512032 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.397490025 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.397593975 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.397609949 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.397624016 CET | 443 | 56228 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:20.397655964 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:20.397682905 CET | 56228 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:21.651535034 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:21.651582956 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:21.651659966 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:21.651907921 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:21.651922941 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:21.840873003 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:32:22.340348959 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.340656996 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:22.340673923 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.341131926 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.341490030 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:22.341564894 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.341619968 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:22.383336067 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.673255920 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.673410892 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:22.673573017 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:22.674608946 CET | 56242 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:32:22.674632072 CET | 443 | 56242 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:32:26.979868889 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Feb 17, 2025 10:32:31.442884922 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Feb 17, 2025 10:33:06.203814983 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:06.203866959 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.203974009 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:06.204185963 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:06.204201937 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.839355946 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.839651108 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:06.839682102 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.840472937 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.840789080 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:06.840867043 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:06.890906096 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:16.738998890 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:16.739070892 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Feb 17, 2025 10:33:16.739120960 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:17.562258959 CET | 56456 | 443 | 192.168.2.16 | 172.217.18.4 |
Feb 17, 2025 10:33:17.562289000 CET | 443 | 56456 | 172.217.18.4 | 192.168.2.16 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 17, 2025 10:32:01.289757013 CET | 53 | 50410 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:01.308950901 CET | 53 | 49535 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.250000000 CET | 58145 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:02.250134945 CET | 57713 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:02.257205963 CET | 53 | 58145 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.257661104 CET | 53 | 57713 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.258263111 CET | 58313 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:02.265285015 CET | 53 | 58313 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.304754972 CET | 53 | 65065 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.330696106 CET | 58785 | 53 | 192.168.2.16 | 8.8.8.8 |
Feb 17, 2025 10:32:02.331466913 CET | 60782 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:02.338291883 CET | 53 | 60782 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:02.339685917 CET | 53 | 58785 | 8.8.8.8 | 192.168.2.16 |
Feb 17, 2025 10:32:03.341833115 CET | 57868 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:03.341986895 CET | 57330 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:03.350718975 CET | 53 | 57868 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:03.351192951 CET | 53 | 57330 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:05.733546972 CET | 49524 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:05.733897924 CET | 64605 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:05.740359068 CET | 53 | 49524 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:05.740729094 CET | 53 | 64605 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:07.862629890 CET | 60078 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:07.862972021 CET | 49309 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:07.870193005 CET | 53 | 49309 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:07.870222092 CET | 53 | 60078 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:07.870953083 CET | 50743 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:07.878459930 CET | 53 | 50743 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:07.888360977 CET | 55710 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:07.888751030 CET | 56045 | 53 | 192.168.2.16 | 8.8.8.8 |
Feb 17, 2025 10:32:07.896687031 CET | 53 | 55710 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:07.896702051 CET | 53 | 56045 | 8.8.8.8 | 192.168.2.16 |
Feb 17, 2025 10:32:11.801816940 CET | 57424 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.802068949 CET | 50912 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.809462070 CET | 53 | 57424 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:11.809499979 CET | 53 | 50912 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:11.819371939 CET | 51896 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.819566011 CET | 61868 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:11.826474905 CET | 53 | 51896 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:11.827225924 CET | 53 | 61868 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:11.950196981 CET | 53 | 64863 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:12.846013069 CET | 55215 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:12.846283913 CET | 62685 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:12.853538990 CET | 53 | 62685 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:12.854017019 CET | 53 | 55215 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:12.854871035 CET | 62953 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:12.862123013 CET | 53 | 62953 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.879192114 CET | 64471 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.879654884 CET | 58069 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.884769917 CET | 57094 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.885045052 CET | 58810 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.886411905 CET | 53 | 64471 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.887092113 CET | 53 | 58069 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.887754917 CET | 58287 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.891813040 CET | 53 | 57094 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.892919064 CET | 53 | 58810 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.895713091 CET | 53 | 58287 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.904936075 CET | 61934 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.905075073 CET | 50779 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.911861897 CET | 53 | 61934 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.912394047 CET | 53 | 50779 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.922029972 CET | 52724 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:17.922640085 CET | 65371 | 53 | 192.168.2.16 | 8.8.8.8 |
Feb 17, 2025 10:32:17.929141998 CET | 53 | 52724 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:17.929594040 CET | 53 | 65371 | 8.8.8.8 | 192.168.2.16 |
Feb 17, 2025 10:32:18.941736937 CET | 59565 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:18.941736937 CET | 58132 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:18.948785067 CET | 53 | 58132 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:18.949177027 CET | 53 | 59565 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:19.199111938 CET | 53 | 64048 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:23.968303919 CET | 62771 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:23.968430042 CET | 65349 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:23.975555897 CET | 53 | 65349 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:23.976241112 CET | 53 | 62771 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:23.976748943 CET | 64443 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:23.984366894 CET | 53 | 64443 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:38.270242929 CET | 53 | 58596 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:54.005048037 CET | 57731 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:54.005260944 CET | 61682 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:54.012897968 CET | 53 | 61682 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:54.013144970 CET | 53 | 57731 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:32:54.013669968 CET | 51918 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:32:54.021089077 CET | 53 | 51918 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:01.165530920 CET | 53 | 63036 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:01.276417017 CET | 53 | 63668 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:04.214052916 CET | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Feb 17, 2025 10:33:14.370408058 CET | 63255 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.378083944 CET | 53 | 63255 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.938445091 CET | 51258 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.938550949 CET | 54960 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.945485115 CET | 53 | 51258 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.945566893 CET | 53 | 54960 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.946217060 CET | 53742 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.953918934 CET | 53 | 53742 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.963490963 CET | 56768 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.963598013 CET | 54815 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.971224070 CET | 53 | 56768 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.971295118 CET | 53 | 54815 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.979595900 CET | 51992 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:14.979939938 CET | 55815 | 53 | 192.168.2.16 | 8.8.8.8 |
Feb 17, 2025 10:33:14.986752987 CET | 53 | 51992 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:14.986782074 CET | 53 | 55815 | 8.8.8.8 | 192.168.2.16 |
Feb 17, 2025 10:33:15.999429941 CET | 63667 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:15.999584913 CET | 52660 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:16.006550074 CET | 53 | 52660 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:16.006653070 CET | 53 | 63667 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:21.018713951 CET | 49806 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:21.018888950 CET | 54783 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:21.028481007 CET | 53 | 54783 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:21.028925896 CET | 53 | 49806 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:21.029555082 CET | 64598 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:21.039366961 CET | 53 | 64598 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:30.966094017 CET | 53 | 52554 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:46.053415060 CET | 52527 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:46.061613083 CET | 53 | 52527 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:51.048289061 CET | 52093 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:51.048409939 CET | 49983 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:51.055974960 CET | 53 | 52093 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:51.055991888 CET | 53 | 49983 | 1.1.1.1 | 192.168.2.16 |
Feb 17, 2025 10:33:51.056617022 CET | 53031 | 53 | 192.168.2.16 | 1.1.1.1 |
Feb 17, 2025 10:33:51.063909054 CET | 53 | 53031 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Feb 17, 2025 10:32:02.250000000 CET | 192.168.2.16 | 1.1.1.1 | 0xdda0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:02.250134945 CET | 192.168.2.16 | 1.1.1.1 | 0x3a70 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:02.258263111 CET | 192.168.2.16 | 1.1.1.1 | 0xdc81 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:02.330696106 CET | 192.168.2.16 | 8.8.8.8 | 0xf2f8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:02.331466913 CET | 192.168.2.16 | 1.1.1.1 | 0x21d5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:03.341833115 CET | 192.168.2.16 | 1.1.1.1 | 0x21e3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:03.341986895 CET | 192.168.2.16 | 1.1.1.1 | 0xcdca | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:05.733546972 CET | 192.168.2.16 | 1.1.1.1 | 0x36ab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:05.733897924 CET | 192.168.2.16 | 1.1.1.1 | 0x93ac | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:07.862629890 CET | 192.168.2.16 | 1.1.1.1 | 0xd4e1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:07.862972021 CET | 192.168.2.16 | 1.1.1.1 | 0x2398 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:07.870953083 CET | 192.168.2.16 | 1.1.1.1 | 0xcbd3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:07.888360977 CET | 192.168.2.16 | 1.1.1.1 | 0x442b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:07.888751030 CET | 192.168.2.16 | 8.8.8.8 | 0x1bae | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:11.801816940 CET | 192.168.2.16 | 1.1.1.1 | 0xd058 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:11.802068949 CET | 192.168.2.16 | 1.1.1.1 | 0xedef | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:11.819371939 CET | 192.168.2.16 | 1.1.1.1 | 0x19c9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:11.819566011 CET | 192.168.2.16 | 1.1.1.1 | 0xf001 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:12.846013069 CET | 192.168.2.16 | 1.1.1.1 | 0x794c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:12.846283913 CET | 192.168.2.16 | 1.1.1.1 | 0x1a02 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:12.854871035 CET | 192.168.2.16 | 1.1.1.1 | 0xe274 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.879192114 CET | 192.168.2.16 | 1.1.1.1 | 0x29a3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.879654884 CET | 192.168.2.16 | 1.1.1.1 | 0xda12 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.884769917 CET | 192.168.2.16 | 1.1.1.1 | 0x345c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.885045052 CET | 192.168.2.16 | 1.1.1.1 | 0x5887 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.887754917 CET | 192.168.2.16 | 1.1.1.1 | 0xe5a1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.904936075 CET | 192.168.2.16 | 1.1.1.1 | 0x77dd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.905075073 CET | 192.168.2.16 | 1.1.1.1 | 0x3f08 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.922029972 CET | 192.168.2.16 | 1.1.1.1 | 0x5a03 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:17.922640085 CET | 192.168.2.16 | 8.8.8.8 | 0x6119 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:18.941736937 CET | 192.168.2.16 | 1.1.1.1 | 0x93db | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:18.941736937 CET | 192.168.2.16 | 1.1.1.1 | 0x17ec | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:23.968303919 CET | 192.168.2.16 | 1.1.1.1 | 0x7c52 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:23.968430042 CET | 192.168.2.16 | 1.1.1.1 | 0x72e5 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:23.976748943 CET | 192.168.2.16 | 1.1.1.1 | 0x2d7f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:54.005048037 CET | 192.168.2.16 | 1.1.1.1 | 0x9036 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:32:54.005260944 CET | 192.168.2.16 | 1.1.1.1 | 0x632c | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:32:54.013669968 CET | 192.168.2.16 | 1.1.1.1 | 0x4235 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.370408058 CET | 192.168.2.16 | 1.1.1.1 | 0xa4a7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.938445091 CET | 192.168.2.16 | 1.1.1.1 | 0x7e5c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.938550949 CET | 192.168.2.16 | 1.1.1.1 | 0x5a70 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.946217060 CET | 192.168.2.16 | 1.1.1.1 | 0xf76 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.963490963 CET | 192.168.2.16 | 1.1.1.1 | 0xb2d7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.963598013 CET | 192.168.2.16 | 1.1.1.1 | 0xa032 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.979595900 CET | 192.168.2.16 | 1.1.1.1 | 0xccc2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:14.979939938 CET | 192.168.2.16 | 8.8.8.8 | 0xb0b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:15.999429941 CET | 192.168.2.16 | 1.1.1.1 | 0xdadc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:15.999584913 CET | 192.168.2.16 | 1.1.1.1 | 0x2b73 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:33:21.018713951 CET | 192.168.2.16 | 1.1.1.1 | 0xf41b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:21.018888950 CET | 192.168.2.16 | 1.1.1.1 | 0xafba | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:33:21.029555082 CET | 192.168.2.16 | 1.1.1.1 | 0x2174 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:46.053415060 CET | 192.168.2.16 | 1.1.1.1 | 0xdf8c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:51.048289061 CET | 192.168.2.16 | 1.1.1.1 | 0x7d47 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 17, 2025 10:33:51.048409939 CET | 192.168.2.16 | 1.1.1.1 | 0x7c37 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 17, 2025 10:33:51.056617022 CET | 192.168.2.16 | 1.1.1.1 | 0xe60 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Feb 17, 2025 10:32:02.338291883 CET | 1.1.1.1 | 192.168.2.16 | 0x21d5 | No error (0) | 216.58.206.46 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:02.339685917 CET | 8.8.8.8 | 192.168.2.16 | 0xf2f8 | No error (0) | 142.251.37.14 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:05.740359068 CET | 1.1.1.1 | 192.168.2.16 | 0x36ab | No error (0) | 172.217.18.4 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:05.740729094 CET | 1.1.1.1 | 192.168.2.16 | 0x93ac | No error (0) | 65 | IN (0x0001) | false | |||
Feb 17, 2025 10:32:07.896687031 CET | 1.1.1.1 | 192.168.2.16 | 0x442b | No error (0) | 142.250.185.142 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:07.896702051 CET | 8.8.8.8 | 192.168.2.16 | 0x1bae | No error (0) | 142.251.37.14 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:17.929141998 CET | 1.1.1.1 | 192.168.2.16 | 0x5a03 | No error (0) | 142.250.186.174 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:32:17.929594040 CET | 8.8.8.8 | 192.168.2.16 | 0x6119 | No error (0) | 142.251.37.14 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:33:14.986752987 CET | 1.1.1.1 | 192.168.2.16 | 0xccc2 | No error (0) | 142.250.181.238 | A (IP address) | IN (0x0001) | false | ||
Feb 17, 2025 10:33:14.986782074 CET | 8.8.8.8 | 192.168.2.16 | 0xb0b | No error (0) | 142.251.37.14 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49709 | 172.217.18.4 | 443 | 6720 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-17 09:32:06 UTC | 609 | OUT | |
2025-02-17 09:32:06 UTC | 1303 | IN | |
2025-02-17 09:32:06 UTC | 87 | IN | |
2025-02-17 09:32:06 UTC | 1390 | IN | |
2025-02-17 09:32:06 UTC | 1390 | IN | |
2025-02-17 09:32:06 UTC | 1205 | IN | |
2025-02-17 09:32:06 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49712 | 172.217.18.4 | 443 | 6720 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-17 09:32:10 UTC | 609 | OUT | |
2025-02-17 09:32:10 UTC | 1303 | IN | |
2025-02-17 09:32:10 UTC | 87 | IN | |
2025-02-17 09:32:10 UTC | 734 | IN | |
2025-02-17 09:32:10 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 56197 | 172.217.18.4 | 443 | 6720 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-17 09:32:15 UTC | 609 | OUT | |
2025-02-17 09:32:15 UTC | 1303 | IN | |
2025-02-17 09:32:15 UTC | 87 | IN | |
2025-02-17 09:32:15 UTC | 1390 | IN | |
2025-02-17 09:32:15 UTC | 1390 | IN | |
2025-02-17 09:32:15 UTC | 934 | IN | |
2025-02-17 09:32:15 UTC | 91 | IN | |
2025-02-17 09:32:15 UTC | 367 | IN | |
2025-02-17 09:32:15 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 56228 | 172.217.18.4 | 443 | 6720 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-17 09:32:20 UTC | 609 | OUT | |
2025-02-17 09:32:20 UTC | 1303 | IN | |
2025-02-17 09:32:20 UTC | 87 | IN | |
2025-02-17 09:32:20 UTC | 1390 | IN | |
2025-02-17 09:32:20 UTC | 1390 | IN | |
2025-02-17 09:32:20 UTC | 1076 | IN | |
2025-02-17 09:32:20 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 56242 | 172.217.18.4 | 443 | 6720 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-17 09:32:22 UTC | 656 | OUT | |
2025-02-17 09:32:22 UTC | 1303 | IN | |
2025-02-17 09:32:22 UTC | 87 | IN | |
2025-02-17 09:32:22 UTC | 161 | IN | |
2025-02-17 09:32:22 UTC | 5 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 04:31:59 |
Start date: | 17/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 04:31:59 |
Start date: | 17/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 04:32:00 |
Start date: | 17/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |