Edit tour

Windows Analysis Report
http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/

Overview

General Information

Sample URL:http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/
Analysis ID:1637961
Infos:

Detection

Score:48
Range:0 - 100
Confidence:100%

Signatures

Antivirus / Scanner detection for submitted sample
Creates files inside the system directory
Deletes files inside the Windows folder

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64
  • chrome.exe (PID: 5972 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: E81F54E6C1129887AEA47E7D092680BF)
    • chrome.exe (PID: 5264 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=1992,i,1180673031274230005,6436712644403840046,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2068 /prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
  • chrome.exe (PID: 6744 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/" MD5: E81F54E6C1129887AEA47E7D092680BF)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/Avira URL Cloud: detection malicious, Label: phishing
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 23.199.214.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 4.175.87.197
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 142.250.185.163
Source: unknownTCP traffic detected without corresponding DNS query: 199.232.214.172
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: svt-aletaharropact6825.pages.dev
Source: global trafficDNS traffic detected: DNS query: beacons.gcp.gvt2.com
Source: global trafficDNS traffic detected: DNS query: beacons.gvt2.com
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49746 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49686 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49763 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49777 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 49681 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49712 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49681
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49760 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49716
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49713
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49712
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49705
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49779 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49713 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49779
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 49705 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49761 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Windows\SystemTemp\scoped_dir5972_1131717926Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile deleted: C:\Windows\SystemTemp\scoped_dir5972_1131717926Jump to behavior
Source: classification engineClassification label: mal48.win@29/0@20/6
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=1992,i,1180673031274230005,6436712644403840046,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2068 /prefetch:3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=1992,i,1180673031274230005,6436712644403840046,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2068 /prefetch:3Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 dnsIp2 2 Behavior Graph ID: 1637961 URL: http://svt-aletaharropact68... Startdate: 14/03/2025 Architecture: WINDOWS Score: 48 15 beacons.gvt2.com 2->15 17 beacons.gcp.gvt2.com 2->17 19 beacons-handoff.gcp.gvt2.com 2->19 33 Antivirus / Scanner detection for submitted sample 2->33 7 chrome.exe 2 2->7         started        10 chrome.exe 2->10         started        signatures3 process4 dnsIp5 21 192.168.2.14 unknown unknown 7->21 23 192.168.2.23 unknown unknown 7->23 25 2 other IPs or domains 7->25 12 chrome.exe 7->12         started        process6 dnsIp7 27 www.google.com 142.250.186.100, 443, 49705, 49706 GOOGLEUS United States 12->27 29 svt-aletaharropact6825.pages.dev 188.114.96.3, 443, 49709, 49710 CLOUDFLARENETUS European Union 12->29 31 4 other IPs or domains 12->31

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/100%Avira URL Cloudphishing
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
svt-aletaharropact6825.pages.dev
188.114.96.3
truefalse
    unknown
    beacons-handoff.gcp.gvt2.com
    142.251.143.35
    truefalse
      high
      www.google.com
      142.250.186.100
      truefalse
        high
        beacons.gvt2.com
        142.250.180.99
        truefalse
          high
          beacons6.gvt2.com
          142.250.185.227
          truefalse
            high
            beacons.gcp.gvt2.com
            unknown
            unknownfalse
              high
              • No. of IPs < 25%
              • 25% < No. of IPs < 50%
              • 50% < No. of IPs < 75%
              • 75% < No. of IPs
              IPDomainCountryFlagASNASN NameMalicious
              188.114.96.3
              svt-aletaharropact6825.pages.devEuropean Union
              13335CLOUDFLARENETUSfalse
              142.250.186.100
              www.google.comUnited States
              15169GOOGLEUSfalse
              IP
              192.168.2.4
              192.168.2.6
              192.168.2.23
              192.168.2.14
              Joe Sandbox version:42.0.0 Malachite
              Analysis ID:1637961
              Start date and time:2025-03-14 01:36:56 +01:00
              Joe Sandbox product:CloudBasic
              Overall analysis duration:0h 2m 56s
              Hypervisor based Inspection enabled:false
              Report type:full
              Cookbook file name:browseurl.jbs
              Sample URL:http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/
              Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
              Number of analysed new started processes analysed:15
              Number of new started drivers analysed:0
              Number of existing processes analysed:0
              Number of existing drivers analysed:0
              Number of injected processes analysed:0
              Technologies:
              • HCA enabled
              • EGA enabled
              • AMSI enabled
              Analysis Mode:default
              Analysis stop reason:Timeout
              Detection:MAL
              Classification:mal48.win@29/0@20/6
              EGA Information:Failed
              HCA Information:
              • Successful, ratio: 100%
              • Number of executed functions: 0
              • Number of non-executed functions: 0
              • Exclude process from analysis (whitelisted): MpCmdRun.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, svchost.exe
              • Excluded IPs from analysis (whitelisted): 142.250.185.238, 142.250.185.67, 142.250.185.206, 108.177.15.84, 2.19.11.178, 216.58.206.67, 142.250.186.131, 142.251.173.84
              • Excluded domains from analysis (whitelisted): fs.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, accounts.google.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
              • Not all processes where analyzed, report is missing behavior information
              • Report size getting too big, too many NtCreateFile calls found.
              • Report size getting too big, too many NtOpenFile calls found.
              • VT rate limit hit for: http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/
              No simulations
              No context
              No context
              No context
              No context
              No context
              No created / dropped files found
              No static file info

              Download Network PCAP: filteredfull

              • Total Packets: 203
              • 443 (HTTPS)
              • 80 (HTTP)
              • 53 (DNS)
              TimestampSource PortDest PortSource IPDest IP
              Mar 14, 2025 01:37:48.500929117 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:48.807960033 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:49.417352915 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:50.620505095 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:53.027466059 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:54.286530972 CET49705443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.286582947 CET44349705142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:54.286674976 CET49705443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.287029028 CET49705443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.287039995 CET44349705142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:54.485821962 CET44349705142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:54.486531973 CET49706443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.486566067 CET44349706142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:54.486664057 CET49706443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.487054110 CET49706443192.168.2.6142.250.186.100
              Mar 14, 2025 01:37:54.487067938 CET44349706142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:54.685852051 CET44349706142.250.186.100192.168.2.6
              Mar 14, 2025 01:37:55.949311972 CET49709443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.949366093 CET44349709188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.949418068 CET49709443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.949796915 CET49709443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.949814081 CET44349709188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.951766968 CET49710443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.951803923 CET44349710188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.951854944 CET49710443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.951921940 CET49711443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.951950073 CET44349711188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.951996088 CET49711443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.952529907 CET49710443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.952552080 CET44349710188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.952893972 CET49711443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:55.952904940 CET44349711188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:55.999174118 CET49712443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:55.999197006 CET4434971223.199.214.10192.168.2.6
              Mar 14, 2025 01:37:55.999244928 CET49712443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.005079031 CET49712443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.005090952 CET4434971223.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.005754948 CET4434971223.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.006597042 CET49713443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.006625891 CET4434971323.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.006680012 CET49713443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.007149935 CET49713443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.007162094 CET4434971323.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.007525921 CET4434971323.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.007827997 CET49714443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.007865906 CET4434971423.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.007947922 CET49714443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.008631945 CET49714443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.008655071 CET4434971423.199.214.10192.168.2.6
              Mar 14, 2025 01:37:56.008698940 CET49714443192.168.2.623.199.214.10
              Mar 14, 2025 01:37:56.149382114 CET44349709188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.149986982 CET49715443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.150052071 CET44349715188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.150113106 CET49715443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.150485039 CET49715443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.150504112 CET44349715188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.153315067 CET44349711188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.153562069 CET44349710188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.153975010 CET49716443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.154009104 CET44349716188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.154062986 CET49716443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.154470921 CET49716443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.154484034 CET44349716188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.154884100 CET49717443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.154917002 CET44349717188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.154967070 CET49717443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.155495882 CET49717443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:56.155517101 CET44349717188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.349325895 CET44349715188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.353112936 CET44349716188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:56.353136063 CET44349717188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.074426889 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:37:57.385020971 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:37:57.397382975 CET49720443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.397413969 CET44349720188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.397475958 CET49720443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.397694111 CET49721443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.397735119 CET44349721188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.397774935 CET49721443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.398320913 CET49720443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.398334026 CET44349720188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.398893118 CET49721443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.398905039 CET44349721188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.597120047 CET44349721188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.597630024 CET44349720188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.617280960 CET49723443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.617333889 CET44349723188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.617384911 CET49724443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.617403030 CET49723443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.617422104 CET44349724188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.617475986 CET49724443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.617969990 CET49723443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.617993116 CET44349723188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.618197918 CET49724443192.168.2.6188.114.96.3
              Mar 14, 2025 01:37:57.618216991 CET44349724188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.817100048 CET44349723188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.817111969 CET44349724188.114.96.3192.168.2.6
              Mar 14, 2025 01:37:57.833014011 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:37:57.986933947 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:37:59.190253019 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:38:01.590162992 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:38:02.834139109 CET49725443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.834199905 CET44349725188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:02.834270000 CET49725443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.834363937 CET49726443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.834429026 CET44349726188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:02.835148096 CET49725443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.835163116 CET44349725188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:02.835177898 CET49726443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.835483074 CET49726443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:02.835494041 CET44349726188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.033133984 CET44349726188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.033618927 CET44349725188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.033782959 CET49727443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.033822060 CET44349727188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.033932924 CET49727443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.034044981 CET49728443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.034070969 CET44349728188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.034116030 CET49728443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.036333084 CET49727443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.036351919 CET44349727188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.036657095 CET49728443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.036668062 CET44349728188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.237890005 CET44349727188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.238127947 CET44349728188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.825499058 CET49729443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.825556993 CET44349729188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.825634956 CET49729443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.825727940 CET49730443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.825779915 CET44349730188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.825835943 CET49730443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.828891039 CET49729443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.828910112 CET44349729188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:03.829883099 CET49730443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:03.829899073 CET44349730188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.029150963 CET44349730188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.029817104 CET49732443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.029822111 CET44349729188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.029867887 CET44349732188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.029942036 CET49732443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.030328035 CET49733443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.030349016 CET44349733188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.030419111 CET49733443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.030719042 CET49732443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.030738115 CET44349732188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.030993938 CET49733443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:04.031002045 CET44349733188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.229418993 CET44349733188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:04.229654074 CET44349732188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:05.681966066 CET49736443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.682017088 CET443497364.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.682116985 CET49736443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.683213949 CET49736443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.683227062 CET443497364.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.683815956 CET443497364.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.698793888 CET49738443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.698832989 CET443497384.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.698899031 CET49738443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.699220896 CET49738443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.699235916 CET443497384.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.699794054 CET443497384.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.732253075 CET49739443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.732301950 CET443497394.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.732382059 CET49739443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.732726097 CET49739443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.732738018 CET443497394.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.733362913 CET443497394.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.745686054 CET49740443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.745745897 CET443497404.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.745826960 CET49740443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.746138096 CET49740443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.746151924 CET443497404.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.746620893 CET443497404.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.805296898 CET49741443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.805350065 CET443497414.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.805423975 CET49741443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.805731058 CET49741443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.805751085 CET443497414.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.806288004 CET443497414.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.829371929 CET49742443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.829421043 CET443497424.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.829488039 CET49742443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.830432892 CET49742443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.830457926 CET443497424.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.831046104 CET443497424.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.860493898 CET49743443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.860524893 CET443497434.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.860599041 CET49743443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.861066103 CET49743443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.861073971 CET443497434.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.861485958 CET443497434.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.932795048 CET49744443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.932848930 CET443497444.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.932914972 CET49744443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.933233976 CET49744443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:05.933255911 CET443497444.175.87.197192.168.2.6
              Mar 14, 2025 01:38:05.933892965 CET443497444.175.87.197192.168.2.6
              Mar 14, 2025 01:38:06.401823997 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:38:07.448692083 CET49672443192.168.2.6204.79.197.203
              Mar 14, 2025 01:38:12.681906939 CET49745443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.681952000 CET44349745188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.682013035 CET49745443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.682203054 CET49746443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.682244062 CET44349746188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.682295084 CET49746443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.682610035 CET49745443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.682630062 CET44349745188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.682967901 CET49746443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.682985067 CET44349746188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.881014109 CET44349745188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.881310940 CET44349746188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.881676912 CET49747443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.881724119 CET44349747188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.881782055 CET49748443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.881803989 CET49747443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.881827116 CET44349748188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.881880045 CET49748443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.882097006 CET49747443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.882112026 CET44349747188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:12.882304907 CET49748443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:12.882325888 CET44349748188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:13.081592083 CET44349748188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:13.081634045 CET44349747188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:16.011455059 CET49678443192.168.2.620.42.65.91
              Mar 14, 2025 01:38:40.949117899 CET4968580192.168.2.6142.250.185.163
              Mar 14, 2025 01:38:40.949170113 CET4968780192.168.2.6199.232.214.172
              Mar 14, 2025 01:38:40.954018116 CET8049685142.250.185.163192.168.2.6
              Mar 14, 2025 01:38:40.954098940 CET4968580192.168.2.6142.250.185.163
              Mar 14, 2025 01:38:40.954345942 CET8049687199.232.214.172192.168.2.6
              Mar 14, 2025 01:38:40.954394102 CET4968780192.168.2.6199.232.214.172
              Mar 14, 2025 01:38:42.172758102 CET49686443192.168.2.623.15.178.147
              Mar 14, 2025 01:38:42.172969103 CET4968880192.168.2.6199.232.214.172
              Mar 14, 2025 01:38:42.173003912 CET4968980192.168.2.6184.30.131.245
              Mar 14, 2025 01:38:42.177223921 CET49754443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.177246094 CET443497544.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.177309990 CET49754443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.177728891 CET49754443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.177742958 CET443497544.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.178414106 CET443497544.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.212248087 CET49755443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.212287903 CET443497554.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.212346077 CET49755443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.212730885 CET49755443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.212754011 CET443497554.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.213623047 CET443497554.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.263139009 CET49756443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.263171911 CET443497564.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.263242006 CET49756443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.263803959 CET49756443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.263819933 CET443497564.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.264513969 CET443497564.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.318785906 CET49757443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.318842888 CET443497574.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.318909883 CET49757443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.319278002 CET49757443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.319295883 CET443497574.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.319849968 CET443497574.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.371192932 CET49758443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.371217966 CET443497584.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.371273041 CET49758443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.371707916 CET49758443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.371716022 CET443497584.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.372179031 CET443497584.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.404793978 CET49759443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.404834032 CET443497594.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.404896021 CET49759443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.405169964 CET49759443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.405188084 CET443497594.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.405663967 CET443497594.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.441509008 CET49760443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.441530943 CET443497604.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.441607952 CET49760443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.441895962 CET49760443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.441910982 CET443497604.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.442352057 CET443497604.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.445326090 CET49761443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.445342064 CET443497614.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.445395947 CET49761443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.445683956 CET49761443192.168.2.64.175.87.197
              Mar 14, 2025 01:38:42.445689917 CET443497614.175.87.197192.168.2.6
              Mar 14, 2025 01:38:42.446060896 CET443497614.175.87.197192.168.2.6
              Mar 14, 2025 01:38:43.141483068 CET49762443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.141570091 CET44349762188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.141664028 CET49762443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.142072916 CET49762443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.142091036 CET44349762188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.173290014 CET49763443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.173322916 CET44349763188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.173414946 CET49763443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.173765898 CET49763443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.173777103 CET44349763188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.341087103 CET44349762188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.343736887 CET49764443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.343786001 CET44349764188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.343902111 CET49764443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.344228029 CET49764443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.344247103 CET44349764188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.373333931 CET44349763188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.373826981 CET49765443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.373850107 CET44349765188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.373950005 CET49765443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.374198914 CET49765443192.168.2.6188.114.96.3
              Mar 14, 2025 01:38:43.374213934 CET44349765188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.541578054 CET44349764188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:43.573740005 CET44349765188.114.96.3192.168.2.6
              Mar 14, 2025 01:38:54.343929052 CET49775443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.343950987 CET44349775142.250.186.100192.168.2.6
              Mar 14, 2025 01:38:54.344018936 CET49775443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.344429016 CET49775443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.344440937 CET44349775142.250.186.100192.168.2.6
              Mar 14, 2025 01:38:54.545819998 CET44349775142.250.186.100192.168.2.6
              Mar 14, 2025 01:38:54.546406031 CET49776443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.546430111 CET44349776142.250.186.100192.168.2.6
              Mar 14, 2025 01:38:54.546494961 CET49776443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.546802998 CET49776443192.168.2.6142.250.186.100
              Mar 14, 2025 01:38:54.546818972 CET44349776142.250.186.100192.168.2.6
              Mar 14, 2025 01:38:54.744869947 CET44349776142.250.186.100192.168.2.6
              Mar 14, 2025 01:39:04.952735901 CET49777443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.952786922 CET44349777188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:04.952879906 CET49777443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.953063965 CET49778443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.953113079 CET44349778188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:04.953190088 CET49778443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.953566074 CET49777443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.953584909 CET44349777188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:04.954188108 CET49778443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:04.954200983 CET44349778188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.153193951 CET44349778188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.153316021 CET44349777188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.154700994 CET49779443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.154756069 CET44349779188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.154910088 CET49779443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.154957056 CET49780443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.154993057 CET44349780188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.155060053 CET49780443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.155271053 CET49779443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.155287027 CET44349779188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.155550003 CET49780443192.168.2.6188.114.96.3
              Mar 14, 2025 01:39:05.155565977 CET44349780188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.353241920 CET44349780188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:05.354049921 CET44349779188.114.96.3192.168.2.6
              Mar 14, 2025 01:39:07.683032990 CET443496812.23.227.215192.168.2.6
              Mar 14, 2025 01:39:07.683160067 CET443496812.23.227.215192.168.2.6
              Mar 14, 2025 01:39:07.683275938 CET49681443192.168.2.62.23.227.215
              Mar 14, 2025 01:39:07.683350086 CET49681443192.168.2.62.23.227.215
              TimestampSource PortDest PortSource IPDest IP
              Mar 14, 2025 01:37:50.750044107 CET53540601.1.1.1192.168.2.6
              Mar 14, 2025 01:37:50.780436993 CET53539941.1.1.1192.168.2.6
              Mar 14, 2025 01:37:54.278559923 CET5188453192.168.2.61.1.1.1
              Mar 14, 2025 01:37:54.278723955 CET5003253192.168.2.61.1.1.1
              Mar 14, 2025 01:37:54.285520077 CET53500321.1.1.1192.168.2.6
              Mar 14, 2025 01:37:54.285679102 CET53518841.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.919270992 CET4918953192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.919567108 CET5717353192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.927818060 CET6442953192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.927973986 CET5728753192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.931467056 CET53491891.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.938282013 CET53571731.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.938957930 CET5030053192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.939104080 CET5903353192.168.2.61.1.1.1
              Mar 14, 2025 01:37:55.940339088 CET53644291.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.949487925 CET53503001.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.951345921 CET53590331.1.1.1192.168.2.6
              Mar 14, 2025 01:37:55.980536938 CET53572871.1.1.1192.168.2.6
              Mar 14, 2025 01:38:49.962161064 CET53502841.1.1.1192.168.2.6
              Mar 14, 2025 01:38:50.369780064 CET53610431.1.1.1192.168.2.6
              Mar 14, 2025 01:38:51.585109949 CET53578561.1.1.1192.168.2.6
              Mar 14, 2025 01:38:53.566098928 CET5227053192.168.2.61.1.1.1
              Mar 14, 2025 01:38:53.566337109 CET5763153192.168.2.61.1.1.1
              Mar 14, 2025 01:38:53.572649002 CET53522701.1.1.1192.168.2.6
              Mar 14, 2025 01:38:53.573019981 CET53576311.1.1.1192.168.2.6
              Mar 14, 2025 01:38:54.577394009 CET6190753192.168.2.61.1.1.1
              Mar 14, 2025 01:38:54.577543974 CET5951653192.168.2.61.1.1.1
              Mar 14, 2025 01:38:54.584064960 CET53595161.1.1.1192.168.2.6
              Mar 14, 2025 01:38:54.584357023 CET53619071.1.1.1192.168.2.6
              Mar 14, 2025 01:38:55.158920050 CET138138192.168.2.6192.168.2.255
              Mar 14, 2025 01:38:56.606097937 CET5695253192.168.2.61.1.1.1
              Mar 14, 2025 01:38:56.612631083 CET53569521.1.1.1192.168.2.6
              Mar 14, 2025 01:38:57.621073961 CET5695253192.168.2.61.1.1.1
              Mar 14, 2025 01:38:57.627886057 CET53569521.1.1.1192.168.2.6
              Mar 14, 2025 01:38:58.621927023 CET5695253192.168.2.61.1.1.1
              Mar 14, 2025 01:38:58.628720999 CET53569521.1.1.1192.168.2.6
              Mar 14, 2025 01:39:00.621917009 CET5695253192.168.2.61.1.1.1
              Mar 14, 2025 01:39:00.628469944 CET53569521.1.1.1192.168.2.6
              Mar 14, 2025 01:39:04.624068975 CET5695253192.168.2.61.1.1.1
              Mar 14, 2025 01:39:04.631019115 CET53569521.1.1.1192.168.2.6
              Mar 14, 2025 01:39:09.579076052 CET5991053192.168.2.61.1.1.1
              Mar 14, 2025 01:39:09.579524040 CET4957553192.168.2.61.1.1.1
              Mar 14, 2025 01:39:09.586091042 CET53599101.1.1.1192.168.2.6
              Mar 14, 2025 01:39:09.586111069 CET53495751.1.1.1192.168.2.6
              Mar 14, 2025 01:39:10.590322971 CET5981453192.168.2.61.1.1.1
              Mar 14, 2025 01:39:10.596952915 CET53598141.1.1.1192.168.2.6
              TimestampSource IPDest IPChecksumCodeType
              Mar 14, 2025 01:37:55.980588913 CET192.168.2.61.1.1.1c28c(Port unreachable)Destination Unreachable
              TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
              Mar 14, 2025 01:37:54.278559923 CET192.168.2.61.1.1.10x6c6cStandard query (0)www.google.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:54.278723955 CET192.168.2.61.1.1.10xc595Standard query (0)www.google.com65IN (0x0001)false
              Mar 14, 2025 01:37:55.919270992 CET192.168.2.61.1.1.10x35aaStandard query (0)svt-aletaharropact6825.pages.devA (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.919567108 CET192.168.2.61.1.1.10x88a6Standard query (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:37:55.927818060 CET192.168.2.61.1.1.10xe02eStandard query (0)svt-aletaharropact6825.pages.devA (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.927973986 CET192.168.2.61.1.1.10xc95aStandard query (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:37:55.938957930 CET192.168.2.61.1.1.10x780Standard query (0)svt-aletaharropact6825.pages.devA (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.939104080 CET192.168.2.61.1.1.10x4a4eStandard query (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:38:53.566098928 CET192.168.2.61.1.1.10x5fefStandard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:53.566337109 CET192.168.2.61.1.1.10x98a2Standard query (0)beacons.gcp.gvt2.com65IN (0x0001)false
              Mar 14, 2025 01:38:54.577394009 CET192.168.2.61.1.1.10x80abStandard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:54.577543974 CET192.168.2.61.1.1.10xa56Standard query (0)beacons.gcp.gvt2.com65IN (0x0001)false
              Mar 14, 2025 01:38:56.606097937 CET192.168.2.61.1.1.10x8842Standard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:57.621073961 CET192.168.2.61.1.1.10x8842Standard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:58.621927023 CET192.168.2.61.1.1.10x8842Standard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:00.621917009 CET192.168.2.61.1.1.10x8842Standard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:04.624068975 CET192.168.2.61.1.1.10x8842Standard query (0)beacons.gcp.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:09.579076052 CET192.168.2.61.1.1.10x37e2Standard query (0)beacons.gvt2.comA (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:09.579524040 CET192.168.2.61.1.1.10xe2d7Standard query (0)beacons.gvt2.com65IN (0x0001)false
              Mar 14, 2025 01:39:10.590322971 CET192.168.2.61.1.1.10xc764Standard query (0)beacons.gvt2.comA (IP address)IN (0x0001)false
              TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
              Mar 14, 2025 01:37:54.285520077 CET1.1.1.1192.168.2.60xc595No error (0)www.google.com65IN (0x0001)false
              Mar 14, 2025 01:37:54.285679102 CET1.1.1.1192.168.2.60x6c6cNo error (0)www.google.com142.250.186.100A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.931467056 CET1.1.1.1192.168.2.60x35aaNo error (0)svt-aletaharropact6825.pages.dev188.114.96.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.931467056 CET1.1.1.1192.168.2.60x35aaNo error (0)svt-aletaharropact6825.pages.dev188.114.97.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.938282013 CET1.1.1.1192.168.2.60x88a6No error (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:37:55.940339088 CET1.1.1.1192.168.2.60xe02eNo error (0)svt-aletaharropact6825.pages.dev188.114.96.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.940339088 CET1.1.1.1192.168.2.60xe02eNo error (0)svt-aletaharropact6825.pages.dev188.114.97.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.949487925 CET1.1.1.1192.168.2.60x780No error (0)svt-aletaharropact6825.pages.dev188.114.96.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.949487925 CET1.1.1.1192.168.2.60x780No error (0)svt-aletaharropact6825.pages.dev188.114.97.3A (IP address)IN (0x0001)false
              Mar 14, 2025 01:37:55.951345921 CET1.1.1.1192.168.2.60x4a4eNo error (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:37:55.980536938 CET1.1.1.1192.168.2.60xc95aNo error (0)svt-aletaharropact6825.pages.dev65IN (0x0001)false
              Mar 14, 2025 01:38:53.572649002 CET1.1.1.1192.168.2.60x5fefNo error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:53.572649002 CET1.1.1.1192.168.2.60x5fefNo error (0)beacons-handoff.gcp.gvt2.com142.251.143.35A (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:53.573019981 CET1.1.1.1192.168.2.60x98a2No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:54.584064960 CET1.1.1.1192.168.2.60xa56No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:54.584357023 CET1.1.1.1192.168.2.60x80abNo error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:54.584357023 CET1.1.1.1192.168.2.60x80abNo error (0)beacons-handoff.gcp.gvt2.com142.250.180.67A (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:56.612631083 CET1.1.1.1192.168.2.60x8842No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:56.612631083 CET1.1.1.1192.168.2.60x8842No error (0)beacons-handoff.gcp.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:57.627886057 CET1.1.1.1192.168.2.60x8842No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:57.627886057 CET1.1.1.1192.168.2.60x8842No error (0)beacons-handoff.gcp.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              Mar 14, 2025 01:38:58.628720999 CET1.1.1.1192.168.2.60x8842No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:38:58.628720999 CET1.1.1.1192.168.2.60x8842No error (0)beacons-handoff.gcp.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:00.628469944 CET1.1.1.1192.168.2.60x8842No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:39:00.628469944 CET1.1.1.1192.168.2.60x8842No error (0)beacons-handoff.gcp.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:04.631019115 CET1.1.1.1192.168.2.60x8842No error (0)beacons.gcp.gvt2.combeacons-handoff.gcp.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:39:04.631019115 CET1.1.1.1192.168.2.60x8842No error (0)beacons-handoff.gcp.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:09.586091042 CET1.1.1.1192.168.2.60x37e2No error (0)beacons.gvt2.combeacons6.gvt2.comCNAME (Canonical name)IN (0x0001)false
              Mar 14, 2025 01:39:09.586091042 CET1.1.1.1192.168.2.60x37e2No error (0)beacons6.gvt2.com142.250.185.227A (IP address)IN (0x0001)false
              Mar 14, 2025 01:39:10.596952915 CET1.1.1.1192.168.2.60xc764No error (0)beacons.gvt2.com142.250.180.99A (IP address)IN (0x0001)false
              020406080s020406080100

              Click to jump to process

              020406080s0.0050100MB

              Click to jump to process

              Target ID:1
              Start time:20:37:47
              Start date:13/03/2025
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
              Imagebase:0x7ff63b000000
              File size:3'388'000 bytes
              MD5 hash:E81F54E6C1129887AEA47E7D092680BF
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:false

              Target ID:2
              Start time:20:37:48
              Start date:13/03/2025
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=1992,i,1180673031274230005,6436712644403840046,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2068 /prefetch:3
              Imagebase:0x7ff63b000000
              File size:3'388'000 bytes
              MD5 hash:E81F54E6C1129887AEA47E7D092680BF
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:false

              Target ID:6
              Start time:20:37:55
              Start date:13/03/2025
              Path:C:\Program Files\Google\Chrome\Application\chrome.exe
              Wow64 process (32bit):false
              Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://svt-aletaharropact6825.pages.dev/help/contact/200748660570057/"
              Imagebase:0x7ff63b000000
              File size:3'388'000 bytes
              MD5 hash:E81F54E6C1129887AEA47E7D092680BF
              Has elevated privileges:true
              Has administrator privileges:true
              Programmed in:C, C++ or other language
              Reputation:low
              Has exited:true
              There is hidden Windows Behavior. Click on Show Windows Behavior to show it.
              There is hidden Windows Behavior. Click on Show Windows Behavior to show it.

              No disassembly