Windows
Analysis Report
http://fu-nu-ra.com
Overview
Detection
Score: | 0 |
Range: | 0 - 100 |
Confidence: | 60% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 2888 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) chrome.exe (PID: 6412 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =1972 --fi eld-trial- handle=183 6,i,125000 4671330618 9719,12847 2948479993 747,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
chrome.exe (PID: 3784 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://fu-nu- ra.com" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 2 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
www.google.com | 142.250.184.196 | true | false | high | |
fu-nu-ra.com | 52.222.214.37 | true | false | high | |
15.164.165.52.in-addr.arpa | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.184.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
142.250.181.228 | unknown | United States | 15169 | GOOGLEUS | false | |
52.222.214.9 | unknown | United States | 16509 | AMAZON-02US | false | |
52.222.214.37 | fu-nu-ra.com | United States | 16509 | AMAZON-02US | false |
IP |
---|
192.168.2.6 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1622679 |
Start date and time: | 2025-02-24 12:33:05 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 2m 52s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://fu-nu-ra.com |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 9 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean0.win@16/2@8/6 |
- Exclude process from analysis
(whitelisted): dllhost.exe, WM IADAP.exe, SIHClient.exe, svch ost.exe - Excluded IPs from analysis (wh
itelisted): 172.217.16.131, 14 2.250.186.174, 64.233.167.84, 142.250.186.46, 142.250.74.206 , 2.23.77.188, 199.232.214.172 , 172.217.18.14, 142.250.185.1 42, 172.217.23.110, 172.217.16 .142, 142.250.186.163, 217.20. 57.18, 13.107.246.60, 2.19.106 .160, 20.109.210.53, 52.165.16 4.15, 172.202.163.200 - Excluded domains from analysis
(whitelisted): client.wns.win dows.com, fs.microsoft.com, ac counts.google.com, otelrules.a zureedge.net, slscr.update.mic rosoft.com, ctldl.windowsupdat e.com, clientservices.googleap is.com, fe3cr.delivery.mp.micr osoft.com, clients2.google.com , ocsp.digicert.com, edgedl.me .gvt1.com, redirector.gvt1.com , update.googleapis.com, clien ts.l.google.com - Not all processes where analyz
ed, report is missing behavior information - VT rate limit hit for: http:/
/fu-nu-ra.com
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 9 |
Entropy (8bit): | 2.94770277922009 |
Encrypted: | false |
SSDEEP: | 3:OFB:OFB |
MD5: | 9E076F5885F5CC16A4B5AEB8DE4ADFF5 |
SHA1: | 475C848673A3F79FA778F01C2BD5A721D4C41707 |
SHA-256: | E3EBAA16DD9D9B9FC107C42183FB6CF9D22927E1AF03DBBDFA0CCC38E4E4AC31 |
SHA-512: | 4D384838C78C74F56DE20DE3FE125B9FE4D40B7C9FB5D767B647F05AEDE6BF63431F4F08AC464E188E77B227BECC3AB4BA86272F30B53D91B15003D814E06D2E |
Malicious: | false |
Reputation: | low |
URL: | http://fu-nu-ra.com/ |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 106
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 24, 2025 12:33:53.407869101 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:33:53.423474073 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:33:53.704663038 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:34:00.100322008 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.100405931 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.100605965 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.101252079 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.101267099 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.914444923 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.914556026 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.919953108 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.919969082 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.920361996 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.923226118 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.923355103 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.923360109 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:00.923523903 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:00.967329025 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:01.100733995 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:01.100905895 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:01.101407051 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:01.122251034 CET | 49712 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:01.122266054 CET | 443 | 49712 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:03.015418053 CET | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:34:03.031063080 CET | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:34:03.312299013 CET | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:34:04.103434086 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.103451014 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.103595972 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.103841066 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.103853941 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.739620924 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.739940882 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.739950895 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.740988970 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.741050005 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.745316982 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.745387077 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.796274900 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.796284914 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:04.843173981 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:04.971129894 CET | 443 | 49705 | 173.222.162.64 | 192.168.2.6 |
Feb 24, 2025 12:34:04.971276045 CET | 49705 | 443 | 192.168.2.6 | 173.222.162.64 |
Feb 24, 2025 12:34:05.796664953 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:05.796901941 CET | 49727 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:05.801731110 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:05.801826000 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:05.802011967 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:05.802047014 CET | 80 | 49727 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:05.802248955 CET | 49727 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:05.807086945 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:06.512811899 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:06.555994987 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:06.729758978 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:06.735467911 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:06.915399075 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:06.957228899 CET | 49738 | 80 | 192.168.2.6 | 52.222.214.9 |
Feb 24, 2025 12:34:06.962133884 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:06.962294102 CET | 80 | 49738 | 52.222.214.9 | 192.168.2.6 |
Feb 24, 2025 12:34:06.962409019 CET | 49738 | 80 | 192.168.2.6 | 52.222.214.9 |
Feb 24, 2025 12:34:06.962574005 CET | 49738 | 80 | 192.168.2.6 | 52.222.214.9 |
Feb 24, 2025 12:34:06.967573881 CET | 80 | 49738 | 52.222.214.9 | 192.168.2.6 |
Feb 24, 2025 12:34:07.584913015 CET | 80 | 49738 | 52.222.214.9 | 192.168.2.6 |
Feb 24, 2025 12:34:07.640465021 CET | 49738 | 80 | 192.168.2.6 | 52.222.214.9 |
Feb 24, 2025 12:34:08.306380033 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:08.306428909 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:08.306533098 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:08.307270050 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:08.307282925 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.131398916 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.131517887 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.134627104 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.134634972 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.135420084 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.137768984 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.137926102 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.137931108 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.138309002 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.179367065 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.320777893 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.320935965 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.321126938 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.322046041 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:09.322057962 CET | 443 | 49745 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:09.322114944 CET | 49745 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:14.654053926 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:14.654119968 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:14.654170990 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:16.268752098 CET | 49718 | 443 | 192.168.2.6 | 142.250.184.196 |
Feb 24, 2025 12:34:16.268785954 CET | 443 | 49718 | 142.250.184.196 | 192.168.2.6 |
Feb 24, 2025 12:34:21.306463957 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:21.306524038 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:21.306610107 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:21.307427883 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:21.307449102 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.158499002 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.158593893 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.165446043 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.165494919 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.166233063 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.168663979 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.168726921 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.168849945 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.168884993 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.211350918 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.348748922 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.348994970 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.349098921 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.349337101 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:22.349364042 CET | 443 | 49831 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:22.349376917 CET | 49831 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:28.869124889 CET | 57135 | 53 | 192.168.2.6 | 162.159.36.2 |
Feb 24, 2025 12:34:28.874242067 CET | 53 | 57135 | 162.159.36.2 | 192.168.2.6 |
Feb 24, 2025 12:34:28.874335051 CET | 57135 | 53 | 192.168.2.6 | 162.159.36.2 |
Feb 24, 2025 12:34:28.879435062 CET | 53 | 57135 | 162.159.36.2 | 192.168.2.6 |
Feb 24, 2025 12:34:29.480439901 CET | 57135 | 53 | 192.168.2.6 | 162.159.36.2 |
Feb 24, 2025 12:34:29.485831976 CET | 53 | 57135 | 162.159.36.2 | 192.168.2.6 |
Feb 24, 2025 12:34:29.485886097 CET | 57135 | 53 | 192.168.2.6 | 162.159.36.2 |
Feb 24, 2025 12:34:36.418497086 CET | 80 | 49727 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:36.418587923 CET | 49727 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:38.268712044 CET | 49727 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:38.273806095 CET | 80 | 49727 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:42.176866055 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.176898956 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.176964045 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.177531004 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.177545071 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.980495930 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.980597973 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.982340097 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.982348919 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.983145952 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.987633944 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.987715006 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:42.987721920 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:42.987894058 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:43.035331964 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:43.160322905 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:43.160511971 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:43.160809994 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:43.160835028 CET | 443 | 57225 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:34:43.160846949 CET | 57225 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:34:51.921297073 CET | 49726 | 80 | 192.168.2.6 | 52.222.214.37 |
Feb 24, 2025 12:34:51.926671028 CET | 80 | 49726 | 52.222.214.37 | 192.168.2.6 |
Feb 24, 2025 12:34:52.593091965 CET | 49738 | 80 | 192.168.2.6 | 52.222.214.9 |
Feb 24, 2025 12:34:52.598287106 CET | 80 | 49738 | 52.222.214.9 | 192.168.2.6 |
Feb 24, 2025 12:35:04.165509939 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:04.165564060 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.165653944 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:04.165945053 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:04.165956020 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.803309917 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.803735971 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:04.803752899 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.804068089 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.804380894 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:04.804439068 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:04.859249115 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:11.635600090 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:11.635651112 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:11.635859966 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:11.636627913 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:11.636642933 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.516077042 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.516197920 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.518949986 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.518959999 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.519460917 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.522703886 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.523111105 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.523117065 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.523332119 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.571332932 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.719240904 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.719671011 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.719692945 CET | 443 | 57266 | 40.113.103.199 | 192.168.2.6 |
Feb 24, 2025 12:35:12.719710112 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:12.719760895 CET | 57266 | 443 | 192.168.2.6 | 40.113.103.199 |
Feb 24, 2025 12:35:14.715017080 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:14.715095043 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Feb 24, 2025 12:35:14.715145111 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:16.267580986 CET | 57265 | 443 | 192.168.2.6 | 142.250.181.228 |
Feb 24, 2025 12:35:16.267631054 CET | 443 | 57265 | 142.250.181.228 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Feb 24, 2025 12:34:00.044858932 CET | 53 | 53878 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:00.053493977 CET | 53 | 61668 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:01.284189939 CET | 53 | 58476 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:04.094603062 CET | 58672 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:04.094764948 CET | 60282 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:04.102101088 CET | 53 | 58672 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:04.102535963 CET | 53 | 60282 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:05.754852057 CET | 49578 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:05.755228996 CET | 49420 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:05.785407066 CET | 53 | 49420 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:05.795794964 CET | 53 | 49578 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:06.919928074 CET | 50076 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:06.920164108 CET | 54676 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:06.943417072 CET | 53 | 54676 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:06.956538916 CET | 53 | 50076 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:18.215275049 CET | 53 | 53801 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:34:28.867223024 CET | 53 | 59809 | 162.159.36.2 | 192.168.2.6 |
Feb 24, 2025 12:34:29.492398977 CET | 56883 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:34:29.523610115 CET | 53 | 56883 | 1.1.1.1 | 192.168.2.6 |
Feb 24, 2025 12:35:04.157097101 CET | 61795 | 53 | 192.168.2.6 | 1.1.1.1 |
Feb 24, 2025 12:35:04.164447069 CET | 53 | 61795 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Feb 24, 2025 12:34:04.094603062 CET | 192.168.2.6 | 1.1.1.1 | 0x10ab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 24, 2025 12:34:04.094764948 CET | 192.168.2.6 | 1.1.1.1 | 0x49ac | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 24, 2025 12:34:05.754852057 CET | 192.168.2.6 | 1.1.1.1 | 0x5e8a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 24, 2025 12:34:05.755228996 CET | 192.168.2.6 | 1.1.1.1 | 0x88fe | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 24, 2025 12:34:06.919928074 CET | 192.168.2.6 | 1.1.1.1 | 0x4656 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Feb 24, 2025 12:34:06.920164108 CET | 192.168.2.6 | 1.1.1.1 | 0xd4a8 | Standard query (0) | 65 | IN (0x0001) | false | |
Feb 24, 2025 12:34:29.492398977 CET | 192.168.2.6 | 1.1.1.1 | 0x12a2 | Standard query (0) | PTR (Pointer record) | IN (0x0001) | false | |
Feb 24, 2025 12:35:04.157097101 CET | 192.168.2.6 | 1.1.1.1 | 0xdaa2 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Feb 24, 2025 12:34:04.102101088 CET | 1.1.1.1 | 192.168.2.6 | 0x10ab | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:04.102535963 CET | 1.1.1.1 | 192.168.2.6 | 0x49ac | No error (0) | 65 | IN (0x0001) | false | |||
Feb 24, 2025 12:34:05.795794964 CET | 1.1.1.1 | 192.168.2.6 | 0x5e8a | No error (0) | 52.222.214.37 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:05.795794964 CET | 1.1.1.1 | 192.168.2.6 | 0x5e8a | No error (0) | 52.222.214.30 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:05.795794964 CET | 1.1.1.1 | 192.168.2.6 | 0x5e8a | No error (0) | 52.222.214.9 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:05.795794964 CET | 1.1.1.1 | 192.168.2.6 | 0x5e8a | No error (0) | 52.222.214.78 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:06.956538916 CET | 1.1.1.1 | 192.168.2.6 | 0x4656 | No error (0) | 52.222.214.9 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:06.956538916 CET | 1.1.1.1 | 192.168.2.6 | 0x4656 | No error (0) | 52.222.214.78 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:06.956538916 CET | 1.1.1.1 | 192.168.2.6 | 0x4656 | No error (0) | 52.222.214.30 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:06.956538916 CET | 1.1.1.1 | 192.168.2.6 | 0x4656 | No error (0) | 52.222.214.37 | A (IP address) | IN (0x0001) | false | ||
Feb 24, 2025 12:34:29.523610115 CET | 1.1.1.1 | 192.168.2.6 | 0x12a2 | Name error (3) | none | none | PTR (Pointer record) | IN (0x0001) | false | |
Feb 24, 2025 12:35:04.164447069 CET | 1.1.1.1 | 192.168.2.6 | 0xdaa2 | No error (0) | 142.250.181.228 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 49726 | 52.222.214.37 | 80 | 6412 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Feb 24, 2025 12:34:05.802011967 CET | 427 | OUT | |
Feb 24, 2025 12:34:06.512811899 CET | 801 | IN | |
Feb 24, 2025 12:34:06.729758978 CET | 368 | OUT | |
Feb 24, 2025 12:34:06.915399075 CET | 369 | IN | |
Feb 24, 2025 12:34:51.921297073 CET | 6 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49738 | 52.222.214.9 | 80 | 6412 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Feb 24, 2025 12:34:06.962574005 CET | 276 | OUT | |
Feb 24, 2025 12:34:07.584913015 CET | 369 | IN | |
Feb 24, 2025 12:34:52.593091965 CET | 6 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49712 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-24 11:34:00 UTC | 70 | OUT | |
2025-02-24 11:34:00 UTC | 249 | OUT | |
2025-02-24 11:34:00 UTC | 1363 | OUT | |
2025-02-24 11:34:00 UTC | 217 | OUT | |
2025-02-24 11:34:01 UTC | 14 | IN | |
2025-02-24 11:34:01 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
1 | 192.168.2.6 | 49745 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-24 11:34:09 UTC | 71 | OUT | |
2025-02-24 11:34:09 UTC | 249 | OUT | |
2025-02-24 11:34:09 UTC | 1364 | OUT | |
2025-02-24 11:34:09 UTC | 218 | OUT | |
2025-02-24 11:34:09 UTC | 14 | IN | |
2025-02-24 11:34:09 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
2 | 192.168.2.6 | 49831 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-24 11:34:22 UTC | 71 | OUT | |
2025-02-24 11:34:22 UTC | 249 | OUT | |
2025-02-24 11:34:22 UTC | 1364 | OUT | |
2025-02-24 11:34:22 UTC | 218 | OUT | |
2025-02-24 11:34:22 UTC | 14 | IN | |
2025-02-24 11:34:22 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
3 | 192.168.2.6 | 57225 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-24 11:34:42 UTC | 70 | OUT | |
2025-02-24 11:34:42 UTC | 249 | OUT | |
2025-02-24 11:34:42 UTC | 1363 | OUT | |
2025-02-24 11:34:42 UTC | 217 | OUT | |
2025-02-24 11:34:43 UTC | 14 | IN | |
2025-02-24 11:34:43 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
4 | 192.168.2.6 | 57266 | 40.113.103.199 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-02-24 11:35:12 UTC | 71 | OUT | |
2025-02-24 11:35:12 UTC | 249 | OUT | |
2025-02-24 11:35:12 UTC | 1364 | OUT | |
2025-02-24 11:35:12 UTC | 218 | OUT | |
2025-02-24 11:35:12 UTC | 14 | IN | |
2025-02-24 11:35:12 UTC | 58 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 06:33:54 |
Start date: | 24/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 06:33:57 |
Start date: | 24/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 4 |
Start time: | 06:34:04 |
Start date: | 24/02/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |