Windows
Analysis Report
4360908095_.svg
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 1408 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 652 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=1940,i ,129647324 4699859742 7,44052774 7479085301 4,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion --var iations-se ed-version =20250306- 183004.429 000 --mojo -platform- channel-ha ndle=2144 /prefetch: 3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 7820 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "C:\ Users\user \Desktop\4 360908095_ .svg" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_JavaScriptembeddedinSVG | Yara detected JavaScript embedded in SVG | Joe Security | ||
JoeSecurity_HtmlPhish_80 | Yara detected HtmlPhish_80 | Joe Security |
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
Phishing |
---|
Source: | File source: |
Source: | Joe Sandbox AI: |
Source: | File source: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
r9akkdfecu.moydovv.com | 104.21.96.1 | true | false | unknown | |
www.google.com | 172.217.16.196 | true | false | high | |
connect_team-con_portalid_armin.daubmann_557857_2606_recovery_.kvtwzs.ru | 188.114.96.3 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
104.21.48.1 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
142.250.185.132 | unknown | United States | 15169 | GOOGLEUS | false | |
104.21.96.1 | r9akkdfecu.moydovv.com | United States | 13335 | CLOUDFLARENETUS | false | |
188.114.96.3 | connect_team-con_portalid_armin.daubmann_557857_2606_recovery_.kvtwzs.ru | European Union | 13335 | CLOUDFLARENETUS | false | |
142.250.186.100 | unknown | United States | 15169 | GOOGLEUS | false | |
172.217.16.196 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1640660 |
Start date and time: | 2025-03-17 14:44:11 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 14s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | 4360908095_.svg |
Detection: | MAL |
Classification: | mal56.phis.winSVG@30/2@12/7 |
Cookbook Comments: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, RuntimeBroker.exe, ShellExperienceHost.exe, WMIA DAP.exe, SIHClient.exe, SgrmBr oker.exe, backgroundTaskHost.e xe, conhost.exe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.250.186.99, 14 2.250.181.238, 142.250.185.206 , 74.125.133.84, 142.250.185.7 8, 142.250.186.174, 142.250.18 6.142, 142.250.185.142, 199.23 2.214.172, 142.250.186.46, 142 .250.185.110, 142.250.185.174, 216.58.206.46, 142.250.186.11 0, 172.217.18.99, 172.217.16.2 06, 64.233.167.84, 142.250.181 .227, 142.250.184.206, 74.125. 206.84, 216.58.206.78, 172.217 .18.14, 23.60.203.209, 52.149. 20.212, 20.109.210.53 - Excluded domains from analysis
(whitelisted): clients1.googl e.com, fs.microsoft.com, accou nts.google.com, slscr.update.m icrosoft.com, ctldl.windowsupd ate.com, clientservices.google apis.com, fe3cr.delivery.mp.mi crosoft.com, clients2.google.c om, ocsp.digicert.com, edgedl. me.gvt1.com, redirector.gvt1.c om, update.googleapis.com, cli ents.l.google.com, c.pki.goog - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data.
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
104.21.48.1 | Get hash | malicious | DBatLoader, FormBook | Browse |
| |
Get hash | malicious | FormBook, GuLoader | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
104.21.96.1 | Get hash | malicious | Lokibot | Browse |
| |
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Azorult | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Azorult | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
188.114.96.3 | Get hash | malicious | FormBook | Browse |
| |
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher, Invisible JS, Tycoon2FA | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | CAPTCHA Scam ClickFix | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | RHADAMANTHYS | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher, Invisible JS, Tycoon2FA | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | CAPTCHA Scam ClickFix | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | RHADAMANTHYS | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher, Invisible JS, Tycoon2FA | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | CAPTCHA Scam ClickFix | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | RHADAMANTHYS | Browse |
|
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 18633 |
Entropy (8bit): | 4.578954023736971 |
Encrypted: | false |
SSDEEP: | 384:FAItYwDBTZvBzLdn4VygTjEDr7o4iyjr8H068n:FAItY2DXdnH8w7p68n |
MD5: | 5875F7B344E438D3833FEE8CC1A34B41 |
SHA1: | 785573F9FD3304B8E28BB815346C772335034A7E |
SHA-256: | 6D6198488A73BE0A56C5814748FADECF517AC662919CA1CA20B629FB62E0A126 |
SHA-512: | BD6B25B8A4112920CEC080311CF7B15BB025610EF96452924F4A595F3413393A66EF82A75D5836879A25B8F698446FFC41F911B916F5D6CBD9B078CB64F5FD4C |
Malicious: | false |
Reputation: | low |
URL: | https://r9akkdfecu.moydovv.com/RKQm9tS9eTHzjW6Pu9vluwQQ2LQad7WpYcOcrhvKXXHka3QYoXYlRUYO4QS1CcknGuHlCRo8IKWjjXZ66ltcyuN53nCt8xg6TnmzJiDObB1MgJOd71sdXvgoLfjQOFiQzPDHwBEaE7NMQsjYUHWcQCxgDXS1KOHbLU3Q6GFCek73EZdXFKj8nGDn5JWF3UCcbN4kqebD/bVSFgXOQNfoL357yTBhnRVk4yeyoQ3gYDb1NNt0XFnz7Jpdhfv77tUGaujqY736KWo0D0mo1l0yPR8eZNsULxxfJ2ihqNnY7lgHIMYSEtD2vdOvRel8NP7no8x0tKpQe0uMu4H3GXEYHkGgd06Xcidza8W2HmqnyMpaoU9bVYUD7tPRPrnYejcAbSx71Br3Mi1zKj4ZS/armin.daubmann@team-con.de |
Preview: |
File type: | |
Entropy (8bit): | 5.660442031617237 |
TrID: | |
File name: | 4360908095_.svg |
File size: | 4'090 bytes |
MD5: | a05eeae7e202ee7530f32c6502c9f522 |
SHA1: | 1438de0cee145fdfa01749f56191b3dc21ee2677 |
SHA256: | 28693ae9f2747fcdb637d5472300b93ac68af1f4b2da61c1ed6a2d6ad9b88c03 |
SHA512: | df851fbfd457e73cd06c59c4230d815234f0b1face166cb2557b675c67d86a8ae658e918258bba6cf8eab4f537a02e160b774441d990f63deb7c0b281f6be69b |
SSDEEP: | 96:A451Zh5qEvERmPO/KngCsgvk/sfJw50IzFxo15u:AkewERm0vC2/MCNFv |
TLSH: | 4F8144605C9F4E2C237944C7CCDD18C9CB4AE3A36A81D68CB64EE6E4975943A54CB4CA |
File Content Preview: | The explorer composed a beautiful painting in the desert. -->.<svg xmlns="http://www.w3.org/2000/svg" width="100%" height="100%">. The child painted a curious thought while sailing across the seas. -->. <foreignObject width="100%" heig |
Icon Hash: | 173149cccc490307 |
Download Network PCAP: filtered – full
- Total Packets: 192
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 17, 2025 14:45:08.816818953 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:09.129056931 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:09.738346100 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:10.718955040 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:10.719003916 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:10.719147921 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:10.719331980 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:10.719347000 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:10.943536997 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:11.395095110 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:11.395184994 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:11.396347046 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:11.396359921 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:11.396591902 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:11.443428040 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:11.586750031 CET | 49717 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:11.586891890 CET | 49718 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:11.592870951 CET | 80 | 49717 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.593666077 CET | 49717 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:11.594039917 CET | 80 | 49718 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.594312906 CET | 49718 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:11.601638079 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:11.601675034 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.601769924 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:11.601865053 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:11.601874113 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.064891100 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.064982891 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.070647001 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.070660114 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.070926905 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.071237087 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.112334967 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.389950991 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.389993906 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390032053 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390048981 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.390078068 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390150070 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.390156984 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390388966 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390438080 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.390444040 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.390961885 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.391000032 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.391005039 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.391575098 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.391613960 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.391624928 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.391629934 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.391664028 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.391670942 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.432025909 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.473551035 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.477061987 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.477094889 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.477142096 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.477174997 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.477210045 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.477221966 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.477313042 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.480056047 CET | 49719 | 443 | 192.168.2.4 | 104.21.48.1 |
Mar 17, 2025 14:45:12.480074883 CET | 443 | 49719 | 104.21.48.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.588666916 CET | 49727 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.588706017 CET | 443 | 49727 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:12.588944912 CET | 49727 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.589306116 CET | 49728 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.589348078 CET | 443 | 49728 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:12.589400053 CET | 49728 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.589517117 CET | 49727 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.589530945 CET | 443 | 49727 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:12.590087891 CET | 49728 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:12.590105057 CET | 443 | 49728 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.348053932 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:13.504302979 CET | 443 | 49728 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.504820108 CET | 443 | 49728 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.504945040 CET | 49728 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.518608093 CET | 443 | 49727 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.519337893 CET | 443 | 49727 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.519411087 CET | 49727 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.592498064 CET | 49727 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.592536926 CET | 443 | 49727 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.743217945 CET | 49729 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.743263006 CET | 443 | 49729 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.743339062 CET | 49728 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.743364096 CET | 49729 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.743376970 CET | 443 | 49728 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.743875027 CET | 49730 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.743916988 CET | 443 | 49730 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.744121075 CET | 49730 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.744316101 CET | 49729 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.744327068 CET | 443 | 49729 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:13.744532108 CET | 49730 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:13.744545937 CET | 443 | 49730 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:14.652941942 CET | 443 | 49729 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:14.653187037 CET | 49729 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:14.653300047 CET | 443 | 49729 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:14.653347969 CET | 49729 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:14.667665005 CET | 443 | 49730 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:14.668081999 CET | 443 | 49730 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:14.668137074 CET | 49730 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:14.742888927 CET | 49730 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:14.742923975 CET | 443 | 49730 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:15.722584009 CET | 49732 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.722625017 CET | 443 | 49732 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:15.722692013 CET | 49732 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.722876072 CET | 49733 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.722927094 CET | 443 | 49733 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:15.722986937 CET | 49733 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.723088026 CET | 49732 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.723102093 CET | 443 | 49732 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:15.723182917 CET | 49733 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:15.723198891 CET | 443 | 49733 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.633325100 CET | 443 | 49733 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.633759022 CET | 443 | 49733 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.633785963 CET | 49733 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.633852959 CET | 443 | 49733 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.633868933 CET | 49733 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.634259939 CET | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.634309053 CET | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.634392023 CET | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.634565115 CET | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.634576082 CET | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.636353970 CET | 443 | 49732 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.636529922 CET | 49732 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.636642933 CET | 443 | 49732 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.636709929 CET | 49732 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.636883974 CET | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.636925936 CET | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:16.637005091 CET | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.637187004 CET | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:16.637203932 CET | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:17.537363052 CET | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:17.537645102 CET | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:17.537766933 CET | 443 | 49736 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:17.537858963 CET | 49736 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:17.542954922 CET | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:17.543114901 CET | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:17.543243885 CET | 443 | 49735 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:17.543294907 CET | 49735 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:17.575709105 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:17.878798008 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:18.160095930 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:18.503812075 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:19.706948996 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:20.187169075 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:20.488176107 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:21.097549915 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:21.294063091 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:21.294127941 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:21.294176102 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:22.113148928 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:22.300642967 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:22.396179914 CET | 49716 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:45:22.396219969 CET | 443 | 49716 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:45:22.566385984 CET | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.566426039 CET | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:22.566498041 CET | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.566694021 CET | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.566728115 CET | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:22.566778898 CET | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.567522049 CET | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.567524910 CET | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:22.567534924 CET | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:22.567539930 CET | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.134155035 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:45:23.141130924 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:45:23.141333103 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:45:23.141448975 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:45:23.146219969 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:45:23.480386972 CET | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.480976105 CET | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.481065989 CET | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.505381107 CET | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.505992889 CET | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.506052017 CET | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.546200037 CET | 49740 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.546217918 CET | 443 | 49740 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.547951937 CET | 49744 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.547981024 CET | 443 | 49744 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.548058033 CET | 49744 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.548161030 CET | 49741 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.548186064 CET | 443 | 49741 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.548515081 CET | 49745 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.548566103 CET | 443 | 49745 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.548634052 CET | 49745 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.548635960 CET | 49744 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.548652887 CET | 443 | 49744 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.549035072 CET | 49745 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:23.549048901 CET | 443 | 49745 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:23.762888908 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:45:23.770982981 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:45:23.775666952 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:45:23.951725006 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:45:24.004359961 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:45:24.460632086 CET | 443 | 49745 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:24.460830927 CET | 49745 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:24.460935116 CET | 443 | 49745 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:24.461146116 CET | 49745 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:24.468790054 CET | 443 | 49744 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:24.468911886 CET | 443 | 49744 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:24.468967915 CET | 49744 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:24.469118118 CET | 49744 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:24.469130039 CET | 443 | 49744 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:24.705714941 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:26.918632984 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:26.957520962 CET | 80 | 49717 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:26.957580090 CET | 49717 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:26.958189964 CET | 80 | 49718 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:26.958245993 CET | 49718 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:27.770076990 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 17, 2025 14:45:28.437199116 CET | 49717 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:28.437211990 CET | 49718 | 80 | 192.168.2.4 | 104.21.96.1 |
Mar 17, 2025 14:45:28.445785999 CET | 80 | 49717 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:28.445800066 CET | 80 | 49718 | 104.21.96.1 | 192.168.2.4 |
Mar 17, 2025 14:45:29.519668102 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:36.536582947 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 17, 2025 14:45:39.134740114 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 17, 2025 14:45:54.487488985 CET | 49749 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.487531900 CET | 443 | 49749 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:54.487621069 CET | 49749 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.487803936 CET | 49750 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.487845898 CET | 443 | 49750 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:54.487899065 CET | 49750 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.489840984 CET | 49750 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.489856958 CET | 443 | 49750 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:54.489964962 CET | 49749 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:54.489975929 CET | 443 | 49749 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.410679102 CET | 443 | 49749 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.410888910 CET | 49749 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.410998106 CET | 443 | 49749 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.411047935 CET | 49749 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.411451101 CET | 49751 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.411500931 CET | 443 | 49751 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.411560059 CET | 49751 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.411708117 CET | 49751 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.411722898 CET | 443 | 49751 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.419503927 CET | 443 | 49750 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.419751883 CET | 49750 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.419791937 CET | 443 | 49750 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.419838905 CET | 49750 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.420181990 CET | 49752 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.420226097 CET | 443 | 49752 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:55.420283079 CET | 49752 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.420423985 CET | 49752 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:55.420439005 CET | 443 | 49752 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:56.339476109 CET | 443 | 49752 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:56.339693069 CET | 49752 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:56.339793921 CET | 443 | 49752 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:56.339858055 CET | 49752 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:56.340415001 CET | 443 | 49751 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:56.341437101 CET | 443 | 49751 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:45:56.341512918 CET | 49751 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:56.345084906 CET | 49751 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:45:56.345105886 CET | 443 | 49751 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:10.770972013 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:10.771018982 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:10.771116972 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:10.771277905 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:10.771289110 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:11.406841993 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:11.407179117 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:11.407195091 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:21.318480015 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:21.318536997 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:21.318591118 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:22.395936966 CET | 49758 | 443 | 192.168.2.4 | 172.217.16.196 |
Mar 17, 2025 14:46:22.395968914 CET | 443 | 49758 | 172.217.16.196 | 192.168.2.4 |
Mar 17, 2025 14:46:24.911348104 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:46:24.916327953 CET | 80 | 49743 | 142.250.185.99 | 192.168.2.4 |
Mar 17, 2025 14:46:24.916384935 CET | 49743 | 80 | 192.168.2.4 | 142.250.185.99 |
Mar 17, 2025 14:46:52.454838037 CET | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Mar 17, 2025 14:46:52.454929113 CET | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Mar 17, 2025 14:46:56.365096092 CET | 49770 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365159035 CET | 443 | 49770 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:56.365248919 CET | 49770 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365281105 CET | 49771 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365328074 CET | 443 | 49771 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:56.365395069 CET | 49771 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365473986 CET | 49770 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365492105 CET | 443 | 49770 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:56.365545034 CET | 49771 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:56.365573883 CET | 443 | 49771 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.279999971 CET | 443 | 49771 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280031919 CET | 443 | 49771 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280035973 CET | 443 | 49770 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280064106 CET | 443 | 49770 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280129910 CET | 49770 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.280133963 CET | 49771 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.280220985 CET | 49771 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.280239105 CET | 443 | 49771 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280639887 CET | 49772 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.280670881 CET | 443 | 49772 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280700922 CET | 49770 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.280728102 CET | 443 | 49770 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.280738115 CET | 49772 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.281056881 CET | 49773 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.281096935 CET | 443 | 49773 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.281162024 CET | 49773 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.281267881 CET | 49772 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.281282902 CET | 443 | 49772 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:58.281353951 CET | 49773 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:58.281368971 CET | 443 | 49773 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:59.191994905 CET | 443 | 49773 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:59.192362070 CET | 49773 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:59.192476034 CET | 443 | 49773 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:59.192533016 CET | 49773 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:59.202737093 CET | 443 | 49772 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:59.202970028 CET | 49772 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:46:59.203080893 CET | 443 | 49772 | 188.114.96.3 | 192.168.2.4 |
Mar 17, 2025 14:46:59.203116894 CET | 49772 | 443 | 192.168.2.4 | 188.114.96.3 |
Mar 17, 2025 14:47:10.840933084 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:10.840955019 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:10.841021061 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:10.841192961 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:10.841202974 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:11.472537994 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:11.472999096 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:11.473017931 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:21.377676010 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:21.377732992 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:47:21.377890110 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:22.397064924 CET | 49775 | 443 | 192.168.2.4 | 142.250.185.132 |
Mar 17, 2025 14:47:22.397092104 CET | 443 | 49775 | 142.250.185.132 | 192.168.2.4 |
Mar 17, 2025 14:48:10.905980110 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:10.906022072 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:10.906083107 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:10.906246901 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:10.906264067 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:11.563371897 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:11.564927101 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:11.564956903 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:21.484743118 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:21.484807014 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Mar 17, 2025 14:48:21.484858036 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:22.397998095 CET | 49776 | 443 | 192.168.2.4 | 142.250.186.100 |
Mar 17, 2025 14:48:22.398032904 CET | 443 | 49776 | 142.250.186.100 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 17, 2025 14:45:06.177525043 CET | 53 | 53077 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:06.379019022 CET | 53 | 61739 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:07.339946985 CET | 53 | 64847 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:07.486263990 CET | 53 | 64889 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:10.710360050 CET | 61486 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:10.710360050 CET | 56961 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:10.717214108 CET | 53 | 56961 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:10.718044043 CET | 53 | 61486 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.560718060 CET | 59037 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:11.560898066 CET | 61282 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:11.576879025 CET | 53 | 59037 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.577299118 CET | 58608 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:11.577454090 CET | 58794 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:11.587898016 CET | 53 | 61282 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.591749907 CET | 53 | 58608 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:11.604209900 CET | 53 | 58794 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.495096922 CET | 51600 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:12.495212078 CET | 61123 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:45:12.557395935 CET | 53 | 51600 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:12.591823101 CET | 53 | 61123 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:24.450239897 CET | 53 | 60819 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:45:43.536601067 CET | 53 | 50382 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:46:05.906640053 CET | 53 | 64228 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:46:06.544414997 CET | 53 | 54535 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:46:08.406925917 CET | 53 | 60675 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:46:09.513165951 CET | 53 | 55319 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:46:17.026326895 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Mar 17, 2025 14:46:37.153903961 CET | 53 | 60363 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:47:10.407900095 CET | 53 | 53198 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:47:10.833184004 CET | 49638 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:47:10.833344936 CET | 54508 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:47:10.840023041 CET | 53 | 54508 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:47:10.840301991 CET | 53 | 49638 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:47:23.762824059 CET | 53 | 53027 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:48:10.896550894 CET | 54015 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:48:10.896874905 CET | 49951 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 17, 2025 14:48:10.905185938 CET | 53 | 49951 | 1.1.1.1 | 192.168.2.4 |
Mar 17, 2025 14:48:10.905199051 CET | 53 | 54015 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Mar 17, 2025 14:45:11.590403080 CET | 192.168.2.4 | 1.1.1.1 | c2e4 | (Port unreachable) | Destination Unreachable |
Mar 17, 2025 14:45:12.591901064 CET | 192.168.2.4 | 1.1.1.1 | c2b2 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 17, 2025 14:45:10.710360050 CET | 192.168.2.4 | 1.1.1.1 | 0xdca4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:45:10.710360050 CET | 192.168.2.4 | 1.1.1.1 | 0xc98a | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 17, 2025 14:45:11.560718060 CET | 192.168.2.4 | 1.1.1.1 | 0xd9fc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:45:11.560898066 CET | 192.168.2.4 | 1.1.1.1 | 0x72dd | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 17, 2025 14:45:11.577299118 CET | 192.168.2.4 | 1.1.1.1 | 0x3195 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:45:11.577454090 CET | 192.168.2.4 | 1.1.1.1 | 0x53b8 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 17, 2025 14:45:12.495096922 CET | 192.168.2.4 | 1.1.1.1 | 0x7bb5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:45:12.495212078 CET | 192.168.2.4 | 1.1.1.1 | 0x59c7 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 17, 2025 14:47:10.833184004 CET | 192.168.2.4 | 1.1.1.1 | 0xf27c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:47:10.833344936 CET | 192.168.2.4 | 1.1.1.1 | 0xe1d0 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 17, 2025 14:48:10.896550894 CET | 192.168.2.4 | 1.1.1.1 | 0x12d4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 17, 2025 14:48:10.896874905 CET | 192.168.2.4 | 1.1.1.1 | 0x8fc7 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 17, 2025 14:45:10.717214108 CET | 1.1.1.1 | 192.168.2.4 | 0xc98a | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:45:10.718044043 CET | 1.1.1.1 | 192.168.2.4 | 0xdca4 | No error (0) | 172.217.16.196 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.96.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.32.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.80.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.48.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.16.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.112.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.576879025 CET | 1.1.1.1 | 192.168.2.4 | 0xd9fc | No error (0) | 104.21.64.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.587898016 CET | 1.1.1.1 | 192.168.2.4 | 0x72dd | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.48.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.112.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.96.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.16.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.64.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.32.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.591749907 CET | 1.1.1.1 | 192.168.2.4 | 0x3195 | No error (0) | 104.21.80.1 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:11.604209900 CET | 1.1.1.1 | 192.168.2.4 | 0x53b8 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:45:12.557395935 CET | 1.1.1.1 | 192.168.2.4 | 0x7bb5 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:12.557395935 CET | 1.1.1.1 | 192.168.2.4 | 0x7bb5 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:45:12.591823101 CET | 1.1.1.1 | 192.168.2.4 | 0x59c7 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:47:10.840023041 CET | 1.1.1.1 | 192.168.2.4 | 0xe1d0 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:47:10.840301991 CET | 1.1.1.1 | 192.168.2.4 | 0xf27c | No error (0) | 142.250.185.132 | A (IP address) | IN (0x0001) | false | ||
Mar 17, 2025 14:48:10.905185938 CET | 1.1.1.1 | 192.168.2.4 | 0x8fc7 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 17, 2025 14:48:10.905199051 CET | 1.1.1.1 | 192.168.2.4 | 0x12d4 | No error (0) | 142.250.186.100 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.4 | 49743 | 142.250.185.99 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Mar 17, 2025 14:45:23.141448975 CET | 202 | OUT | |
Mar 17, 2025 14:45:23.762888908 CET | 223 | IN | |
Mar 17, 2025 14:45:23.770982981 CET | 200 | OUT | |
Mar 17, 2025 14:45:23.951725006 CET | 222 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49719 | 104.21.48.1 | 443 | 652 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-17 13:45:12 UTC | 1086 | OUT | |
2025-03-17 13:45:12 UTC | 845 | IN | |
2025-03-17 13:45:12 UTC | 524 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN | |
2025-03-17 13:45:12 UTC | 1241 | IN | |
2025-03-17 13:45:12 UTC | 1369 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 09:45:05 |
Start date: | 17/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 1 |
Start time: | 09:45:05 |
Start date: | 17/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 3 |
Start time: | 09:45:11 |
Start date: | 17/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |