Windows
Analysis Report
http://safety-profiles-fb-ads-156388685.vercel.app/
Overview
General Information
Detection
Score: | 48 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 5956 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 6948 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2040,i ,874876223 5944217247 ,686749038 6744010562 ,262144 -- disable-fe atures=Opt imizationG uideModelD ownloading ,Optimizat ionHints,O ptimizatio nHintsFetc hing,Optim izationTar getPredict ion --vari ations-see d-version= 20250306-1 83004.4290 00 --mojo- platform-c hannel-han dle=2072 / prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 7316 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= printing.m ojom.Unsan dboxedPrin tBackendHo st --lang= en-US --se rvice-sand box-type=n one --no-p re-read-ma in-dll --f ield-trial -handle=20 40,i,87487 6223594421 7247,68674 9038674401 0562,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction -- variations -seed-vers ion=202503 06-183004. 429000 --m ojo-platfo rm-channel -handle=49 52 /prefet ch:8 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 7524 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://safety -profiles- fb-ads-156 388685.ver cel.app/" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • AV Detection
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 2 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
safety-profiles-fb-ads-156388685.vercel.app | 64.29.17.65 | true | false | unknown | |
beacons-handoff.gcp.gvt2.com | 142.250.180.99 | true | false | high | |
www.google.com | 142.250.185.132 | true | false | high | |
beacons.gvt2.com | 142.251.143.67 | true | false | high | |
beacons6.gvt2.com | 216.58.206.35 | true | false | high | |
beacons.gcp.gvt2.com | unknown | unknown | false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.185.132 | www.google.com | United States | 15169 | GOOGLEUS | false | |
64.29.17.65 | safety-profiles-fb-ads-156388685.vercel.app | Canada | 13768 | COGECO-PEER1CA | false | |
216.198.79.129 | unknown | United States | 11696 | NBS11696US | false |
IP |
---|
192.168.2.6 |
192.168.2.5 |
192.168.2.14 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1637969 |
Start date and time: | 2025-03-14 01:40:58 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 2m 56s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://safety-profiles-fb-ads-156388685.vercel.app/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.win@27/0@23/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, sppsvc.exe, Backgr oundTransferHost.exe, SIHClien t.exe, SgrmBroker.exe, backgro undTaskHost.exe, conhost.exe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.250.185.206, 1 42.250.186.163, 216.58.206.78, 142.251.5.84, 142.250.186.131 , 142.250.184.238 - Excluded domains from analysis
(whitelisted): fs.microsoft.c om, clients2.google.com, edged l.me.gvt1.com, accounts.google .com, slscr.update.microsoft.c om, update.googleapis.com, cli entservices.googleapis.com, g. bing.com, clients.l.google.com , fe3cr.delivery.mp.microsoft. com - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - VT rate limit hit for: http:/
/safety-profiles-fb-ads-156388 685.vercel.app/
Download Network PCAP: filtered – full
- Total Packets: 221
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 14, 2025 01:41:42.019402027 CET | 80 | 49707 | 184.30.131.245 | 192.168.2.5 |
Mar 14, 2025 01:41:42.023627996 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.023696899 CET | 49706 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.023935080 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.023976088 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.024017096 CET | 49706 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.024039984 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.028321981 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.028333902 CET | 443 | 49706 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.028605938 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.028615952 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.028786898 CET | 443 | 49706 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.028796911 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.064698935 CET | 49707 | 80 | 192.168.2.5 | 184.30.131.245 |
Mar 14, 2025 01:41:42.142839909 CET | 49672 | 443 | 192.168.2.5 | 204.79.197.203 |
Mar 14, 2025 01:41:42.208621025 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.208688021 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.211169958 CET | 443 | 49706 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.211229086 CET | 49706 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.215503931 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.215517044 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.215528011 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.215538979 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.215549946 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.215564966 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.215605974 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.215675116 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.220376968 CET | 443 | 49705 | 2.19.96.120 | 192.168.2.5 |
Mar 14, 2025 01:41:42.333453894 CET | 49705 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.333492994 CET | 49706 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:41:42.333658934 CET | 49707 | 80 | 192.168.2.5 | 184.30.131.245 |
Mar 14, 2025 01:41:44.549102068 CET | 49672 | 443 | 192.168.2.5 | 204.79.197.203 |
Mar 14, 2025 01:41:46.887368917 CET | 49711 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.887404919 CET | 443 | 49711 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.887471914 CET | 49711 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.889254093 CET | 49711 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.889266968 CET | 443 | 49711 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.890841007 CET | 443 | 49711 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.897964001 CET | 49712 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.897996902 CET | 443 | 49712 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.898061991 CET | 49712 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.899019003 CET | 49712 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.899034023 CET | 443 | 49712 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.899508953 CET | 443 | 49712 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.899772882 CET | 49713 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.899806976 CET | 443 | 49713 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.899861097 CET | 49713 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.902015924 CET | 49713 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:46.902049065 CET | 443 | 49713 | 23.60.203.209 | 192.168.2.5 |
Mar 14, 2025 01:41:46.902097940 CET | 49713 | 443 | 192.168.2.5 | 23.60.203.209 |
Mar 14, 2025 01:41:48.445233107 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:48.752253056 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:49.361684084 CET | 49672 | 443 | 192.168.2.5 | 204.79.197.203 |
Mar 14, 2025 01:41:49.373331070 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:50.580363035 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:53.080348015 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:57.657942057 CET | 49727 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.657979012 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:57.658072948 CET | 49727 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.658380985 CET | 49727 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.658396006 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:57.857249022 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:57.857933044 CET | 49728 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.857966900 CET | 443 | 49728 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:57.858033895 CET | 49728 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.858391047 CET | 49728 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:41:57.858405113 CET | 443 | 49728 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:57.893217087 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:41:58.057504892 CET | 443 | 49728 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:41:58.937032938 CET | 49731 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:58.937087059 CET | 443 | 49731 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:58.937268972 CET | 49731 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:58.937701941 CET | 49731 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:58.937722921 CET | 443 | 49731 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:58.963171959 CET | 49732 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.963207960 CET | 443 | 49732 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:58.963506937 CET | 49733 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.963535070 CET | 443 | 49733 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:58.963597059 CET | 49732 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.963598013 CET | 49733 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.963895082 CET | 49733 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.963911057 CET | 443 | 49733 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:58.964143991 CET | 49732 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:58.964158058 CET | 443 | 49732 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:58.971581936 CET | 49672 | 443 | 192.168.2.5 | 204.79.197.203 |
Mar 14, 2025 01:41:59.136938095 CET | 443 | 49731 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:59.137520075 CET | 49734 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:59.137554884 CET | 443 | 49734 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:59.137687922 CET | 49734 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:59.138046026 CET | 49734 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:41:59.138057947 CET | 443 | 49734 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:59.161886930 CET | 443 | 49732 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.161923885 CET | 443 | 49733 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.162492990 CET | 49735 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.162514925 CET | 443 | 49735 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.162676096 CET | 49735 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.162961960 CET | 49736 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.163002014 CET | 443 | 49736 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.163084030 CET | 49736 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.163574934 CET | 49735 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.163575888 CET | 49736 | 443 | 192.168.2.5 | 216.198.79.129 |
Mar 14, 2025 01:41:59.163589954 CET | 443 | 49735 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.163594961 CET | 443 | 49736 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.337395906 CET | 443 | 49734 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:41:59.361023903 CET | 443 | 49735 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:41:59.361296892 CET | 443 | 49736 | 216.198.79.129 | 192.168.2.5 |
Mar 14, 2025 01:42:00.387646914 CET | 49741 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.387698889 CET | 443 | 49741 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.387813091 CET | 49741 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.388426065 CET | 49742 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.388432026 CET | 49741 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.388448954 CET | 443 | 49741 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.388463020 CET | 443 | 49742 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.388642073 CET | 49742 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.389260054 CET | 49742 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.389286041 CET | 443 | 49742 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.589051962 CET | 443 | 49741 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.589243889 CET | 443 | 49742 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.589704037 CET | 49743 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.589728117 CET | 443 | 49743 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.590182066 CET | 49744 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.590214968 CET | 443 | 49744 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.590245962 CET | 49743 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.590368032 CET | 49744 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.590804100 CET | 49744 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.590805054 CET | 49743 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:00.590814114 CET | 443 | 49743 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.590818882 CET | 443 | 49744 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.789024115 CET | 443 | 49743 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:00.789187908 CET | 443 | 49744 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:04.336484909 CET | 49745 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.336532116 CET | 443 | 49745 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.337455034 CET | 49745 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.348673105 CET | 49745 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.348690987 CET | 443 | 49745 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.349457026 CET | 443 | 49745 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.366908073 CET | 49746 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.366941929 CET | 443 | 49746 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.367008924 CET | 49746 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.367399931 CET | 49746 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.367415905 CET | 443 | 49746 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.367965937 CET | 443 | 49746 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.397039890 CET | 49747 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.397069931 CET | 443 | 49747 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.397339106 CET | 49747 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.397933960 CET | 49747 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.397948980 CET | 443 | 49747 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.398571968 CET | 443 | 49747 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.410621881 CET | 49748 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.410650015 CET | 443 | 49748 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.410837889 CET | 49748 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.411211014 CET | 49748 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.411221027 CET | 443 | 49748 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.411798954 CET | 443 | 49748 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.467546940 CET | 49749 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.467586040 CET | 443 | 49749 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.467689991 CET | 49749 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.468130112 CET | 49749 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.468144894 CET | 443 | 49749 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.468849897 CET | 443 | 49749 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.510971069 CET | 49750 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.511015892 CET | 443 | 49750 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.511079073 CET | 49750 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.511482954 CET | 49750 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.511499882 CET | 443 | 49750 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.512227058 CET | 443 | 49750 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.559820890 CET | 49751 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.559863091 CET | 443 | 49751 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.559931993 CET | 49751 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.560513020 CET | 49751 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.560524940 CET | 443 | 49751 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.561351061 CET | 443 | 49751 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.584682941 CET | 49752 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.584723949 CET | 443 | 49752 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.584791899 CET | 49752 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.585367918 CET | 49752 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:04.585383892 CET | 443 | 49752 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:04.585855961 CET | 443 | 49752 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:05.814201117 CET | 49753 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.814245939 CET | 443 | 49753 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:05.814316988 CET | 49753 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.814870119 CET | 49753 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.814883947 CET | 443 | 49753 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:05.834110022 CET | 49754 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.834141016 CET | 443 | 49754 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:05.834209919 CET | 49754 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.836082935 CET | 49754 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:05.836096048 CET | 443 | 49754 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.013394117 CET | 443 | 49753 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.014043093 CET | 49755 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.014084101 CET | 443 | 49755 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.014169931 CET | 49755 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.014511108 CET | 49755 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.014524937 CET | 443 | 49755 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.033829927 CET | 443 | 49754 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.035959959 CET | 49756 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.036001921 CET | 443 | 49756 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.036077976 CET | 49756 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.036468029 CET | 49756 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:06.036484003 CET | 443 | 49756 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.084765911 CET | 49757 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.084808111 CET | 443 | 49757 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.084891081 CET | 49757 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.087516069 CET | 49757 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.087528944 CET | 443 | 49757 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.088073969 CET | 443 | 49757 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.088510990 CET | 49758 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.088536978 CET | 443 | 49758 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.088630915 CET | 49758 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.089037895 CET | 49758 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.089050055 CET | 443 | 49758 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.089452028 CET | 443 | 49758 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.089890003 CET | 49759 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.089910030 CET | 443 | 49759 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.090044022 CET | 49759 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.090069056 CET | 49759 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.090106964 CET | 443 | 49759 | 150.171.27.10 | 192.168.2.5 |
Mar 14, 2025 01:42:06.090184927 CET | 49759 | 443 | 192.168.2.5 | 150.171.27.10 |
Mar 14, 2025 01:42:06.213179111 CET | 443 | 49755 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:06.237193108 CET | 443 | 49756 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:07.501956940 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 14, 2025 01:42:35.400712967 CET | 80 | 49688 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.400896072 CET | 49688 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.401071072 CET | 49688 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.405663967 CET | 80 | 49688 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.571890116 CET | 80 | 49690 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.572117090 CET | 49690 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.572117090 CET | 49690 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.576781034 CET | 80 | 49690 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.588913918 CET | 80 | 49689 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.589365005 CET | 49689 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.589670897 CET | 49689 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.595002890 CET | 80 | 49689 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.740787029 CET | 80 | 49691 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:35.741004944 CET | 49691 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.741041899 CET | 49691 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:35.745693922 CET | 80 | 49691 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:36.254698992 CET | 49768 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.254759073 CET | 443 | 49768 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.254882097 CET | 49769 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.254894018 CET | 49768 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.254935026 CET | 443 | 49769 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.254998922 CET | 49769 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.255372047 CET | 49768 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.255390882 CET | 443 | 49768 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.256688118 CET | 49769 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.256711960 CET | 443 | 49769 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.453470945 CET | 443 | 49768 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.454267979 CET | 49770 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.454315901 CET | 443 | 49770 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.454407930 CET | 49770 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.454727888 CET | 49770 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.454744101 CET | 443 | 49770 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.457617044 CET | 443 | 49769 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.458389044 CET | 49771 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.458446026 CET | 443 | 49771 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.458514929 CET | 49771 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.458949089 CET | 49771 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:42:36.458962917 CET | 443 | 49771 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.653676987 CET | 443 | 49770 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:36.658004999 CET | 443 | 49771 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:42:37.974483967 CET | 80 | 49696 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:37.974581003 CET | 49696 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:37.974623919 CET | 49696 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:37.979330063 CET | 80 | 49696 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:39.596836090 CET | 49703 | 80 | 192.168.2.5 | 172.217.18.3 |
Mar 14, 2025 01:42:39.596982956 CET | 49701 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:39.602626085 CET | 80 | 49703 | 172.217.18.3 | 192.168.2.5 |
Mar 14, 2025 01:42:39.602744102 CET | 49703 | 80 | 192.168.2.5 | 172.217.18.3 |
Mar 14, 2025 01:42:39.602853060 CET | 80 | 49701 | 217.20.57.20 | 192.168.2.5 |
Mar 14, 2025 01:42:39.603087902 CET | 49701 | 80 | 192.168.2.5 | 217.20.57.20 |
Mar 14, 2025 01:42:40.444502115 CET | 49697 | 443 | 192.168.2.5 | 2.19.96.120 |
Mar 14, 2025 01:42:40.444880009 CET | 49704 | 80 | 192.168.2.5 | 184.30.131.245 |
Mar 14, 2025 01:42:40.754551888 CET | 49772 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.754591942 CET | 443 | 49772 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.754662991 CET | 49772 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.755145073 CET | 49772 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.755156040 CET | 443 | 49772 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.755803108 CET | 443 | 49772 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.758301020 CET | 49773 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.758346081 CET | 443 | 49773 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.758413076 CET | 49773 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.758748055 CET | 49773 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.758773088 CET | 443 | 49773 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.759264946 CET | 443 | 49773 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.784806013 CET | 49774 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.784842968 CET | 443 | 49774 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.784908056 CET | 49774 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.785481930 CET | 49774 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.785494089 CET | 443 | 49774 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.786016941 CET | 443 | 49774 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.801245928 CET | 49775 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.801301956 CET | 443 | 49775 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.801379919 CET | 49775 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.801682949 CET | 49775 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.801693916 CET | 443 | 49775 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.802217960 CET | 443 | 49775 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.820389986 CET | 49776 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.820444107 CET | 443 | 49776 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.820519924 CET | 49776 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.820775986 CET | 49776 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.820786953 CET | 443 | 49776 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.821304083 CET | 443 | 49776 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.833333015 CET | 49777 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.833373070 CET | 443 | 49777 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.833462954 CET | 49777 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.833703995 CET | 49777 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.833718061 CET | 443 | 49777 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.834110022 CET | 443 | 49777 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.849862099 CET | 49778 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.849900007 CET | 443 | 49778 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.850101948 CET | 49778 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.850492001 CET | 49778 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.850506067 CET | 443 | 49778 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.850866079 CET | 443 | 49778 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.872454882 CET | 49779 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.872508049 CET | 443 | 49779 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.872581005 CET | 49779 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.873059988 CET | 49779 | 443 | 192.168.2.5 | 4.245.163.56 |
Mar 14, 2025 01:42:40.873074055 CET | 443 | 49779 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:40.873424053 CET | 443 | 49779 | 4.245.163.56 | 192.168.2.5 |
Mar 14, 2025 01:42:57.707415104 CET | 49789 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.707477093 CET | 443 | 49789 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:42:57.707566023 CET | 49789 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.707956076 CET | 49789 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.707974911 CET | 443 | 49789 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:42:57.905143023 CET | 443 | 49789 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:42:57.906100035 CET | 49790 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.906152010 CET | 443 | 49790 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:42:57.906223059 CET | 49790 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.906544924 CET | 49790 | 443 | 192.168.2.5 | 142.250.185.132 |
Mar 14, 2025 01:42:57.906558990 CET | 443 | 49790 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:42:58.105746031 CET | 443 | 49790 | 142.250.185.132 | 192.168.2.5 |
Mar 14, 2025 01:43:07.436156988 CET | 49791 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.436212063 CET | 443 | 49791 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.436295033 CET | 49791 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.436548948 CET | 49792 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.436580896 CET | 443 | 49792 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.436638117 CET | 49792 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.439001083 CET | 49792 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.439019918 CET | 443 | 49792 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.439810991 CET | 49791 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.439832926 CET | 443 | 49791 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.637161970 CET | 443 | 49792 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.637495995 CET | 443 | 49791 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.638032913 CET | 49793 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.638099909 CET | 443 | 49793 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.638180971 CET | 49793 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.638514042 CET | 49794 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.638576031 CET | 443 | 49794 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.638649940 CET | 49794 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.638906002 CET | 49793 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.638921976 CET | 443 | 49793 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.639163971 CET | 49794 | 443 | 192.168.2.5 | 64.29.17.65 |
Mar 14, 2025 01:43:07.639177084 CET | 443 | 49794 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.837593079 CET | 443 | 49794 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:07.837666988 CET | 443 | 49793 | 64.29.17.65 | 192.168.2.5 |
Mar 14, 2025 01:43:15.712764978 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:15.717519999 CET | 53 | 55421 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:15.717609882 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:15.717658043 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:15.722444057 CET | 53 | 55421 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:16.451082945 CET | 53 | 55421 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:16.459755898 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:16.464955091 CET | 53 | 55421 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:16.468424082 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:16.468758106 CET | 55422 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.468791962 CET | 443 | 55422 | 142.250.114.94 | 192.168.2.5 |
Mar 14, 2025 01:43:16.468873978 CET | 55422 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.469372034 CET | 55422 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.469379902 CET | 443 | 55422 | 142.250.114.94 | 192.168.2.5 |
Mar 14, 2025 01:43:16.681350946 CET | 443 | 55422 | 142.250.114.94 | 192.168.2.5 |
Mar 14, 2025 01:43:16.685323000 CET | 55423 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.685358047 CET | 443 | 55423 | 142.250.114.94 | 192.168.2.5 |
Mar 14, 2025 01:43:16.685421944 CET | 55423 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.685697079 CET | 55423 | 443 | 192.168.2.5 | 142.250.114.94 |
Mar 14, 2025 01:43:16.685709000 CET | 443 | 55423 | 142.250.114.94 | 192.168.2.5 |
Mar 14, 2025 01:43:16.885868073 CET | 443 | 55423 | 142.250.114.94 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 14, 2025 01:41:53.293092966 CET | 53 | 62886 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:53.484899998 CET | 53 | 59744 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:57.646930933 CET | 55320 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:57.647294044 CET | 50455 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:57.656872034 CET | 53 | 55320 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:57.657160997 CET | 53 | 50455 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.903003931 CET | 58399 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.903350115 CET | 49700 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.919239044 CET | 53 | 49700 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.921829939 CET | 49708 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.921829939 CET | 63785 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.930473089 CET | 53 | 49708 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.930854082 CET | 53 | 63785 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.952013016 CET | 53 | 58399 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.953036070 CET | 50489 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.953265905 CET | 56289 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:41:58.961893082 CET | 53 | 56289 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:41:58.962554932 CET | 53 | 50489 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:51.667536974 CET | 138 | 138 | 192.168.2.5 | 192.168.2.255 |
Mar 14, 2025 01:42:53.063723087 CET | 53 | 52057 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:53.481158972 CET | 53 | 59943 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:53.985635996 CET | 53 | 60214 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:55.648721933 CET | 49339 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:55.648972988 CET | 51314 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:55.655702114 CET | 53 | 51314 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:55.655756950 CET | 53 | 49339 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:56.675159931 CET | 52004 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:56.675159931 CET | 56052 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:56.681991100 CET | 53 | 56052 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:56.682009935 CET | 53 | 52004 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:58.707072020 CET | 63902 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:58.714755058 CET | 53 | 63902 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:42:59.721832037 CET | 63902 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:42:59.728622913 CET | 53 | 63902 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:00.737433910 CET | 63902 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:00.744118929 CET | 53 | 63902 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:02.753038883 CET | 63902 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:02.764188051 CET | 53 | 63902 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:06.753706932 CET | 63902 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:06.760695934 CET | 53 | 63902 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:11.651900053 CET | 55364 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:11.652177095 CET | 53400 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:11.661595106 CET | 53 | 55364 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:11.662781000 CET | 53 | 53400 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:12.674782038 CET | 50275 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:12.681735992 CET | 53 | 50275 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:14.706231117 CET | 57255 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:14.713545084 CET | 53 | 57255 | 1.1.1.1 | 192.168.2.5 |
Mar 14, 2025 01:43:15.705565929 CET | 57255 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 14, 2025 01:43:15.712224007 CET | 53 | 57255 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 14, 2025 01:41:57.646930933 CET | 192.168.2.5 | 1.1.1.1 | 0x1669 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:41:57.647294044 CET | 192.168.2.5 | 1.1.1.1 | 0x7bc5 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.903003931 CET | 192.168.2.5 | 1.1.1.1 | 0xbdf4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.903350115 CET | 192.168.2.5 | 1.1.1.1 | 0x56e0 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.921829939 CET | 192.168.2.5 | 1.1.1.1 | 0xdcfa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.921829939 CET | 192.168.2.5 | 1.1.1.1 | 0x2341 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.953036070 CET | 192.168.2.5 | 1.1.1.1 | 0x5201 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:41:58.953265905 CET | 192.168.2.5 | 1.1.1.1 | 0xe186 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:42:55.648721933 CET | 192.168.2.5 | 1.1.1.1 | 0x7b17 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:42:55.648972988 CET | 192.168.2.5 | 1.1.1.1 | 0x34b0 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:42:56.675159931 CET | 192.168.2.5 | 1.1.1.1 | 0x5909 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:42:56.675159931 CET | 192.168.2.5 | 1.1.1.1 | 0x4782 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:42:58.707072020 CET | 192.168.2.5 | 1.1.1.1 | 0x303 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:42:59.721832037 CET | 192.168.2.5 | 1.1.1.1 | 0x303 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:00.737433910 CET | 192.168.2.5 | 1.1.1.1 | 0x303 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:02.753038883 CET | 192.168.2.5 | 1.1.1.1 | 0x303 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:06.753706932 CET | 192.168.2.5 | 1.1.1.1 | 0x303 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:11.651900053 CET | 192.168.2.5 | 1.1.1.1 | 0x162a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:11.652177095 CET | 192.168.2.5 | 1.1.1.1 | 0xa8b2 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 14, 2025 01:43:12.674782038 CET | 192.168.2.5 | 1.1.1.1 | 0x16f1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:14.706231117 CET | 192.168.2.5 | 1.1.1.1 | 0xe7a1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:15.705565929 CET | 192.168.2.5 | 1.1.1.1 | 0xe7a1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 14, 2025 01:43:15.717658043 CET | 192.168.2.5 | 1.1.1.1 | 0x1 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 14, 2025 01:41:57.656872034 CET | 1.1.1.1 | 192.168.2.5 | 0x1669 | No error (0) | 142.250.185.132 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:57.657160997 CET | 1.1.1.1 | 192.168.2.5 | 0x7bc5 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 14, 2025 01:41:58.930473089 CET | 1.1.1.1 | 192.168.2.5 | 0xdcfa | No error (0) | 64.29.17.65 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:58.930473089 CET | 1.1.1.1 | 192.168.2.5 | 0xdcfa | No error (0) | 216.198.79.65 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:58.952013016 CET | 1.1.1.1 | 192.168.2.5 | 0xbdf4 | No error (0) | 216.198.79.129 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:58.952013016 CET | 1.1.1.1 | 192.168.2.5 | 0xbdf4 | No error (0) | 64.29.17.129 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:58.962554932 CET | 1.1.1.1 | 192.168.2.5 | 0x5201 | No error (0) | 216.198.79.129 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:41:58.962554932 CET | 1.1.1.1 | 192.168.2.5 | 0x5201 | No error (0) | 64.29.17.129 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:55.655702114 CET | 1.1.1.1 | 192.168.2.5 | 0x34b0 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:55.655756950 CET | 1.1.1.1 | 192.168.2.5 | 0x7b17 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:55.655756950 CET | 1.1.1.1 | 192.168.2.5 | 0x7b17 | No error (0) | 142.250.180.99 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:56.681991100 CET | 1.1.1.1 | 192.168.2.5 | 0x4782 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:56.682009935 CET | 1.1.1.1 | 192.168.2.5 | 0x5909 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:56.682009935 CET | 1.1.1.1 | 192.168.2.5 | 0x5909 | No error (0) | 142.251.143.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:58.714755058 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:58.714755058 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | 142.250.180.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:59.728622913 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:42:59.728622913 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | 142.250.180.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:00.744118929 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:00.744118929 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | 142.250.180.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:02.764188051 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:02.764188051 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | 142.250.180.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:06.760695934 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:06.760695934 CET | 1.1.1.1 | 192.168.2.5 | 0x303 | No error (0) | 142.250.180.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:11.661595106 CET | 1.1.1.1 | 192.168.2.5 | 0x162a | No error (0) | 142.251.143.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:12.681735992 CET | 1.1.1.1 | 192.168.2.5 | 0x16f1 | No error (0) | beacons6.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:12.681735992 CET | 1.1.1.1 | 192.168.2.5 | 0x16f1 | No error (0) | 216.58.206.35 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:14.713545084 CET | 1.1.1.1 | 192.168.2.5 | 0xe7a1 | No error (0) | beacons6.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:14.713545084 CET | 1.1.1.1 | 192.168.2.5 | 0xe7a1 | No error (0) | 216.58.206.67 | A (IP address) | IN (0x0001) | false | ||
Mar 14, 2025 01:43:16.451082945 CET | 1.1.1.1 | 192.168.2.5 | 0x1 | No error (0) | 142.250.114.94 | A (IP address) | IN (0x0001) | false |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.5 | 49707 | 184.30.131.245 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Mar 14, 2025 01:41:42.019402027 CET | 717 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 20:41:45 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff68aaa0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 4 |
Start time: | 20:41:51 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff68aaa0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 9 |
Start time: | 20:41:54 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff68aaa0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 12 |
Start time: | 20:41:57 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff68aaa0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |