Windows
Analysis Report
https://sso-robinhood-logi-cdn--auth.webflow.io/
Overview
General Information
Detection
Score: | 60 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 2440 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 3776 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=1860,i ,141428960 1822196181 6,52674438 7855035110 5,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion --var iations-se ed-version =20250306- 183004.429 000 --mojo -platform- channel-ha ndle=2204 /prefetch: 3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 6720 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://sso-r obinhood-l ogi-cdn--a uth.webflo w.io/" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_64 | Yara detected HtmlPhish_64 | Joe Security |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-03-19T11:21:45.210428+0100 | 2018316 | 1 | A Network Trojan was detected | 1.1.1.1 | 53 | 192.168.2.4 | 52963 | UDP |
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | File source: |
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | Suricata IDS: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
sso-robinhood-logi-cdn--auth.webflow.io | 172.64.151.8 | true | true | unknown | |
d3e54v103j8qbb.cloudfront.net | 52.222.232.39 | true | false | high | |
bg.microsoft.map.fastly.net | 199.232.214.172 | true | false | high | |
google.com | 172.217.16.206 | true | false | high | |
cdn.prod.website-files.com | 104.18.160.117 | true | false | high | |
www.google.com | 142.250.184.196 | true | false | high | |
robenboodlogi.info | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
false | high | ||
false | high | ||
true | unknown | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.184.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
52.222.232.39 | d3e54v103j8qbb.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
104.18.160.117 | cdn.prod.website-files.com | United States | 13335 | CLOUDFLARENETUS | false | |
104.18.161.117 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
172.64.151.8 | sso-robinhood-logi-cdn--auth.webflow.io | United States | 13335 | CLOUDFLARENETUS | true |
IP |
---|
192.168.2.4 |
192.168.2.23 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1642798 |
Start date and time: | 2025-03-19 11:19:39 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 47s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://sso-robinhood-logi-cdn--auth.webflow.io/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 17 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal60.phis.win@27/14@34/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, sppsvc.exe, Runtim eBroker.exe, ShellExperienceHo st.exe, SgrmBroker.exe, backgr oundTaskHost.exe, conhost.exe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 199.232.214.172, 1 42.250.186.163, 142.250.185.17 4, 64.233.184.84, 142.250.185. 238, 142.250.186.78, 172.217.1 8.14, 142.250.186.110, 142.250 .185.110, 216.58.212.174, 172. 217.133.233, 142.250.186.99, 1 42.250.185.163, 23.60.203.209, 4.245.163.56 - Excluded domains from analysis
(whitelisted): r4---sn-4g5edn dr.gvt1.com, fs.microsoft.com, accounts.google.com, slscr.up date.microsoft.com, ctldl.wind owsupdate.com.delivery.microso ft.com, ctldl.windowsupdate.co m, clientservices.googleapis.c om, fe3cr.delivery.mp.microsof t.com, clients2.google.com, ed gedl.me.gvt1.com, redirector.g vt1.com, update.googleapis.com , r4.sn-4g5edndr.gvt1.com, cli ents.l.google.com, c.pki.goog, wu-b-net.trafficmanager.net - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//sso-robinhood-logi-cdn--auth .webflow.io/
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 803 |
Entropy (8bit): | 7.582551628276611 |
Encrypted: | false |
SSDEEP: | 12:6v/7iQ/6mUO77GjYE1NfSxipER2CJUsWIZGj8fWWHIZ90C6IhHeBs9c+8DVDnb8d:PmUOXkYcpfpc2C6HgJe9l+Bs++8Jajn |
MD5: | C8F0CEF2D937562902DAA9C3C0B67CA3 |
SHA1: | 99D0D6C68F2C00ACF5CB853A402AF4D18690C0F6 |
SHA-256: | 73862EF843D3D50565F0495EC3C08ACB45E0DA61968DBC54D431232E86B44278 |
SHA-512: | 44E35CD1909D50DEF4A518EF818E1D751F15F1475BFA781209D76CBC6D4E69537034FFED48D95F921821DCE77E9F847F0BD27D5CA00C901E90D75405CADC1A77 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 37349 |
Entropy (8bit): | 5.44100455597547 |
Encrypted: | false |
SSDEEP: | 768:G5p9WeNujJ4zgTyxOv5GAUdxKzPQfsJe184wEWpqvyqL/q:G5p9WeNul4zC5jMkOyqO |
MD5: | FC7EF472A2BCA6FBDB8AB8235DEC64E0 |
SHA1: | 39637DA0AC71621757C5CEE728307E30A9D7FE61 |
SHA-256: | D148CEDE7C0523EBC7C9FBBA7F4EB5AD8D2C7A449814A9177190F20708D31AAB |
SHA-512: | 72CCEBC092F1D2A32AD8A29E312207870FADD08178862B2132E3A0CCC6316B3C9FBFD83DCECECA96E23FB86F1B378CA611B79E4790B602CDDE235F16E7D31210 |
Malicious: | false |
Reputation: | low |
URL: | https://cdn.prod.website-files.com/678a1c6b3d6c8c5f3973532c/js/webflow.77ac24386eb2a8dacabbd68092c045ec.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 803 |
Entropy (8bit): | 7.582551628276611 |
Encrypted: | false |
SSDEEP: | 12:6v/7iQ/6mUO77GjYE1NfSxipER2CJUsWIZGj8fWWHIZ90C6IhHeBs9c+8DVDnb8d:PmUOXkYcpfpc2C6HgJe9l+Bs++8Jajn |
MD5: | C8F0CEF2D937562902DAA9C3C0B67CA3 |
SHA1: | 99D0D6C68F2C00ACF5CB853A402AF4D18690C0F6 |
SHA-256: | 73862EF843D3D50565F0495EC3C08ACB45E0DA61968DBC54D431232E86B44278 |
SHA-512: | 44E35CD1909D50DEF4A518EF818E1D751F15F1475BFA781209D76CBC6D4E69537034FFED48D95F921821DCE77E9F847F0BD27D5CA00C901E90D75405CADC1A77 |
Malicious: | false |
Reputation: | low |
URL: | https://cdn.prod.website-files.com/678a1c6b3d6c8c5f3973532c/678a1c9789cf4b92fee74873_dgdgdg.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 81369 |
Entropy (8bit): | 5.291887605773591 |
Encrypted: | false |
SSDEEP: | 1536:AjExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0Q/:AYh8eip3huuf6Iidl2 |
MD5: | 37A252F53522A0993CE5A0C1A0A79DE1 |
SHA1: | BA57881A444FA0A98D477CE65C3B1B41845520AF |
SHA-256: | EE8C8EE6BBB69AE67388DEECFC7C43DEF7380B84A41C3036890A84B6BFEC27EC |
SHA-512: | A4808423220C3B964B7ECD1C60A9052BAF56CE51C8158CF5933ECEBB75C70123A69F50C6A16FFAB2DF60A333901148708DD1D67252C1610A244CF190E09448BD |
Malicious: | false |
Reputation: | low |
URL: | https://d3e54v103j8qbb.cloudfront.net/js/jquery-3.5.1.min.dc5e7f18c8.js?site=678a1c6b3d6c8c5f3973532c |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 544845 |
Entropy (8bit): | 7.994826952111587 |
Encrypted: | true |
SSDEEP: | 12288:5iMxt4uS0ktCT9BHI6vr1RUunodhs0aY5ZbcnVSYtFCC3l:57xnX8CRB7vr1uuodhXbcnVFT3l |
MD5: | 35BAA4C2960F7ADAA6F26CC982435555 |
SHA1: | CD19A546FAFFE2EE076AE098BD7B4E1020BB3CEA |
SHA-256: | EA591836E01D6D30A24617BD80F40E8C69EEE2716A193D9ADBE835DD91354146 |
SHA-512: | CFBA6922813605BCDB264E812B0811167E98A7FD8462D1C6CB6390C98A3828669485C55731EF441054F78E560703A2F17513142F70FBFA2E6A59BB892EF9AAC7 |
Malicious: | false |
Reputation: | low |
URL: | https://cdn.prod.website-files.com/678a1c6b3d6c8c5f3973532c/678a1c865e04dbafb5ba09ae_Screenshot%202025-01-08%20at%2013-39-14%20Commission-free%20Stock%20Trading%20%26%20Investing%20App%20Robinhood.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 544845 |
Entropy (8bit): | 7.994826952111587 |
Encrypted: | true |
SSDEEP: | 12288:5iMxt4uS0ktCT9BHI6vr1RUunodhs0aY5ZbcnVSYtFCC3l:57xnX8CRB7vr1uuodhXbcnVFT3l |
MD5: | 35BAA4C2960F7ADAA6F26CC982435555 |
SHA1: | CD19A546FAFFE2EE076AE098BD7B4E1020BB3CEA |
SHA-256: | EA591836E01D6D30A24617BD80F40E8C69EEE2716A193D9ADBE835DD91354146 |
SHA-512: | CFBA6922813605BCDB264E812B0811167E98A7FD8462D1C6CB6390C98A3828669485C55731EF441054F78E560703A2F17513142F70FBFA2E6A59BB892EF9AAC7 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 36230 |
Entropy (8bit): | 5.229407486730831 |
Encrypted: | false |
SSDEEP: | 768:AyNf7A1RE/GqyFVF54mkxWaIi1aUuF9Zl0F6FhF8FPqkowKji/JVx1:Aye1REeqyP0XcPyjowKjK |
MD5: | CE67EEE42C89568CEA3E40F6459BEBDB |
SHA1: | 2893E67BA934122231F741F77F24BB2F0DFEAED6 |
SHA-256: | C219BD77B1A92CCD8E6A3EE098A0BC34A65F56C666660FF934B4638D4AD681F3 |
SHA-512: | 50F0AE74E0FA09ADA3CE88D6518F02835D77665FC0817724EFE068806C3F2C89BFE3035C65EC55020A22F0E69B61C8977948A4E0D631BE2D193464F7F8922FB5 |
Malicious: | false |
Reputation: | low |
URL: | https://cdn.prod.website-files.com/678a1c6b3d6c8c5f3973532c/css/sso-robinhood-logi-cdn--auth.webflow.ce67eee42.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3236 |
Entropy (8bit): | 5.3995323558245465 |
Encrypted: | false |
SSDEEP: | 96:NOymPu6f/O4jb0LTZbpxifLxiNtxijxi/xilQO:g3WN4v03JpgjgNtgjg/glQO |
MD5: | 92B1F80C63A4D501754D60D7932AC3CC |
SHA1: | 37308D970D4561FF8388A0C59D95AC44D032E469 |
SHA-256: | B7F99B526271E06B68D68E9CC5232717A62778F2C151C9027840328FA9CAE0CE |
SHA-512: | 35B7CD3FA042FB7793E5A21BE723F1AC72CE1BE444DF7A0E2FC1AB30E90DC266EE72EE9CA38510971E276F5B7EDE42C0E880D5D322FCF26A2F8C9812C83D8421 |
Malicious: | false |
Reputation: | low |
URL: | https://sso-robinhood-logi-cdn--auth.webflow.io/ |
Preview: |
Download Network PCAP: filtered – full
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-03-19T11:21:45.210428+0100 | 2018316 | ET MALWARE Possible Zeus GameOver/FluBot Related DGA NXDOMAIN Responses | 1 | 1.1.1.1 | 53 | 192.168.2.4 | 52963 | UDP |
- Total Packets: 235
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 19, 2025 11:21:04.091566086 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:21:04.096333981 CET | 80 | 49719 | 142.250.185.67 | 192.168.2.4 |
Mar 19, 2025 11:21:04.096441031 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:21:04.096519947 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:21:04.101121902 CET | 80 | 49719 | 142.250.185.67 | 192.168.2.4 |
Mar 19, 2025 11:21:04.111881018 CET | 80 | 49719 | 142.250.185.67 | 192.168.2.4 |
Mar 19, 2025 11:21:04.115513086 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:21:04.122809887 CET | 80 | 49719 | 142.250.185.67 | 192.168.2.4 |
Mar 19, 2025 11:21:04.170109034 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:21:06.000271082 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 19, 2025 11:21:16.381493092 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:16.381557941 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:16.381635904 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:16.381804943 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:16.381839991 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:16.417382002 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:16.417529106 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:16.418672085 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:16.420571089 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:16.466727972 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:19.448616028 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.448664904 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.449016094 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.449075937 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.451812983 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.451919079 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.452064037 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.452086926 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.452132940 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.452177048 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.486768961 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.487711906 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.488857985 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.489110947 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.489490986 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.490257978 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.490324974 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.491159916 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.491169930 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.492621899 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.536324978 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.546792030 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.587896109 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.587934971 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.587981939 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.588006973 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.588021994 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.588079929 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.588233948 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.608445883 CET | 49733 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:19.608467102 CET | 443 | 49733 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:19.670300961 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.670356989 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.670455933 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.670525074 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.670948982 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.671046972 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.671205997 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.671228886 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.671292067 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.671304941 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.682133913 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.682163000 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.682271004 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.682455063 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.682468891 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.701935053 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.702027082 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.704073906 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.704325914 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.704670906 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.748327971 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.895534039 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.895706892 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.896135092 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.896153927 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.896409988 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.896667957 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.904058933 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.904149055 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.905347109 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.905363083 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.905854940 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.906214952 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.916254997 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.916284084 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.916304111 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.916688919 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.916702986 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.917812109 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.920802116 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.920849085 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.920922041 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.920931101 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.921031952 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.923261881 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923307896 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923430920 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.923439026 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923578024 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923625946 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923629045 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.923659086 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923693895 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923707008 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.923726082 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923758984 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923789978 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923834085 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.923942089 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.923950911 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.925035000 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.926747084 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.926760912 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.926863909 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.926883936 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.926956892 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.926976919 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.926990032 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.927032948 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.927314043 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.927970886 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.928237915 CET | 49736 | 443 | 192.168.2.4 | 52.222.232.39 |
Mar 19, 2025 11:21:19.928255081 CET | 443 | 49736 | 52.222.232.39 | 192.168.2.4 |
Mar 19, 2025 11:21:19.928706884 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.928775072 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.928805113 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929111004 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929423094 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929534912 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929873943 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929919958 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929949999 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.929979086 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.931509018 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.932317972 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.932337046 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.932621002 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.933326960 CET | 49734 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.933339119 CET | 443 | 49734 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.940335035 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.946033001 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.946064949 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.946480036 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.946480036 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.946510077 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.970992088 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.971350908 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.971540928 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.971550941 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.978945017 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.978991985 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979021072 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979053020 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979085922 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979119062 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979124069 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.979147911 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979161024 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979209900 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979249954 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.979278088 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.979336023 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.980493069 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.983659029 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.983689070 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.983700037 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.983712912 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.983771086 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.983779907 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.984409094 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.984441996 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.984469891 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.984477997 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.984488964 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.984579086 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.984589100 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985017061 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985049009 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.985059977 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985341072 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.985372066 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985419989 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985455036 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985486031 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.985780954 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.985791922 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.986278057 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.986332893 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:19.987654924 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.988059044 CET | 49735 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:19.988082886 CET | 443 | 49735 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.040915012 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.040971994 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.044131041 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.046555996 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046607971 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046643972 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046674013 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046828985 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046864033 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.046888113 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.048008919 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.049936056 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.049954891 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.052324057 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.057090044 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.057118893 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.057137966 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.062318087 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.062330008 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.063711882 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.076320887 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.077847004 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.077876091 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.080907106 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.088211060 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.088222980 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.088232994 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.100380898 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.100394964 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.100414038 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.100450993 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.100955009 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.100965023 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.100975990 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.101016998 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.102731943 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.102746964 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.102761030 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.102909088 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.103207111 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.103224039 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.103458881 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.103466988 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.103481054 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.104146004 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.104160070 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.104167938 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.104664087 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.104669094 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.104706049 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.104720116 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109406948 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109420061 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109468937 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109473944 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109484911 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109528065 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109533072 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109827042 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109833002 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109841108 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109935045 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109935045 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.109941959 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.109954119 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.110982895 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.110982895 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.110996008 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111010075 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111036062 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111785889 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.111794949 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111803055 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111820936 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.111824989 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.111876011 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.111881971 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112155914 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112160921 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112178087 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112181902 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112201929 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112219095 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112225056 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112242937 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112247944 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112736940 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112736940 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.112744093 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.112756968 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.113666058 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.113671064 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.113678932 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.113708973 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.113713026 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.114005089 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.114366055 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.114366055 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.114387989 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.114618063 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.114891052 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.115115881 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.117722034 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.118179083 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.118179083 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.118505955 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.118546963 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.119302988 CET | 49738 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.119323969 CET | 443 | 49738 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.157094955 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.157346010 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.157540083 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.158283949 CET | 49741 | 443 | 192.168.2.4 | 104.18.160.117 |
Mar 19, 2025 11:21:20.158308983 CET | 443 | 49741 | 104.18.160.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.193674088 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.193726063 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.193820953 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.193861961 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.200258970 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.200263023 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.200442076 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.200457096 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.200582027 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.200608969 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.228034019 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.228122950 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.228573084 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.228806973 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.228878021 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.228904009 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.228951931 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.229285955 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.229444027 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.229661942 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.229923964 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.272350073 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.276335955 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.293344975 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.293560982 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.293669939 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.294154882 CET | 49744 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.294182062 CET | 443 | 49744 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313527107 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313579082 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313613892 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313656092 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313688993 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313720942 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.313752890 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.314093113 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.314126015 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.314166069 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.316654921 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.316673994 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.319298029 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.319977999 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.320142984 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.320230961 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.320355892 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.321008921 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.321089029 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.321170092 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.321651936 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.321729898 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.322247982 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.322338104 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.322426081 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.322515965 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.322619915 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.323174953 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.326076984 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.329929113 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.329945087 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.330013037 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.330049992 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.330100060 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.330132961 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.331769943 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.345089912 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.345108032 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.345124006 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.360065937 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.360075951 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.360090971 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.373016119 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.373023987 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.373034000 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374146938 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374152899 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374165058 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374202013 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374233961 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374238968 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374248028 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374250889 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374311924 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374311924 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374317884 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374325037 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374334097 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374349117 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374401093 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374407053 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374416113 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374420881 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374430895 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374454975 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374468088 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374506950 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374900103 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374906063 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374959946 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.374960899 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374969959 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.374996901 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375027895 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.375036955 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.375039101 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375080109 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375128031 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375163078 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375196934 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375235081 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375268936 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375308037 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375339985 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375375986 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375405073 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375437975 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375472069 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.375504971 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.376214981 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.376219988 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.376338959 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.376343012 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.376358986 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.376386881 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.376425028 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:20.378752947 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.378911972 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.378971100 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379007101 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379028082 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379056931 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379102945 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379195929 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379235029 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379276037 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379573107 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.379618883 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.380610943 CET | 49745 | 443 | 192.168.2.4 | 104.18.161.117 |
Mar 19, 2025 11:21:20.380620956 CET | 443 | 49745 | 104.18.161.117 | 192.168.2.4 |
Mar 19, 2025 11:21:26.407442093 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:26.407505035 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:26.407612085 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:27.982479095 CET | 49730 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:21:27.982512951 CET | 443 | 49730 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:21:34.474442959 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:34.474519014 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:34.474575996 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:35.984759092 CET | 49732 | 443 | 192.168.2.4 | 172.64.151.8 |
Mar 19, 2025 11:21:35.984796047 CET | 443 | 49732 | 172.64.151.8 | 192.168.2.4 |
Mar 19, 2025 11:21:36.239702940 CET | 50934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:36.244427919 CET | 53 | 50934 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:36.244611979 CET | 50934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:36.244656086 CET | 50934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:36.249345064 CET | 53 | 50934 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:36.260772943 CET | 53 | 50934 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:36.261732101 CET | 50934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:36.266597986 CET | 53 | 50934 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:36.266649961 CET | 50934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:04.217170954 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:22:04.222065926 CET | 80 | 49719 | 142.250.185.67 | 192.168.2.4 |
Mar 19, 2025 11:22:04.222274065 CET | 49719 | 80 | 192.168.2.4 | 142.250.185.67 |
Mar 19, 2025 11:22:16.359194994 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:16.359272957 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:16.359339952 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:16.359533072 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:16.359556913 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:16.416524887 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:16.416894913 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:16.416935921 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:26.423134089 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:26.423201084 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Mar 19, 2025 11:22:26.423516035 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:27.984275103 CET | 50940 | 443 | 192.168.2.4 | 142.250.184.196 |
Mar 19, 2025 11:22:27.984303951 CET | 443 | 50940 | 142.250.184.196 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 19, 2025 11:21:14.051297903 CET | 53 | 53779 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:14.136457920 CET | 53 | 63539 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:14.251801968 CET | 53 | 51716 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:16.369220018 CET | 61697 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:16.372626066 CET | 63686 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:16.376174927 CET | 53 | 61697 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:16.379252911 CET | 53 | 63686 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.419373035 CET | 51941 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.419528008 CET | 51752 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.433288097 CET | 53 | 51752 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.440092087 CET | 53 | 51941 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.658732891 CET | 51238 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.658894062 CET | 58689 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.661279917 CET | 60057 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.661458015 CET | 58549 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:19.667135000 CET | 53 | 51238 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.667454958 CET | 53 | 58689 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.671857119 CET | 53 | 60057 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:19.892584085 CET | 53 | 58549 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:20.182360888 CET | 61636 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:20.182550907 CET | 59905 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:20.191755056 CET | 53 | 61636 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:20.193198919 CET | 53 | 59905 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:31.181750059 CET | 53 | 50071 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:33.024017096 CET | 62921 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:33.024502039 CET | 58503 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:33.032494068 CET | 53 | 58503 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:33.038391113 CET | 53 | 62921 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:33.047692060 CET | 62070 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:33.062885046 CET | 53 | 62070 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:33.160880089 CET | 50089 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 19, 2025 11:21:33.161232948 CET | 51056 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:33.168262959 CET | 53 | 51056 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:33.170072079 CET | 53 | 50089 | 8.8.8.8 | 192.168.2.4 |
Mar 19, 2025 11:21:34.172296047 CET | 49268 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:34.172673941 CET | 65351 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:34.179903030 CET | 53 | 65351 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:34.185209990 CET | 53 | 49268 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:36.239161968 CET | 53 | 64148 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:39.224303961 CET | 63210 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:39.224689960 CET | 56005 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:39.231616020 CET | 53 | 63210 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:39.239377975 CET | 53 | 56005 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:39.263385057 CET | 56287 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:39.271013975 CET | 53 | 56287 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:45.176747084 CET | 57477 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:45.176979065 CET | 60351 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:45.192106009 CET | 53 | 60351 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:45.192610025 CET | 53 | 57477 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:45.195241928 CET | 52963 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:45.210427999 CET | 53 | 52963 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:45.239820957 CET | 54169 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:21:45.240242004 CET | 59918 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 19, 2025 11:21:45.246651888 CET | 53 | 59918 | 8.8.8.8 | 192.168.2.4 |
Mar 19, 2025 11:21:45.246750116 CET | 53 | 54169 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:21:46.803443909 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Mar 19, 2025 11:22:06.531954050 CET | 62344 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:06.532473087 CET | 49649 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:06.548042059 CET | 53 | 62344 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:06.548434019 CET | 53 | 49649 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:06.552027941 CET | 51472 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:06.561264992 CET | 53 | 51472 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:06.589979887 CET | 51934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:06.590300083 CET | 59143 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 19, 2025 11:22:06.596893072 CET | 53 | 59143 | 8.8.8.8 | 192.168.2.4 |
Mar 19, 2025 11:22:06.596909046 CET | 53 | 51934 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:12.934185982 CET | 53 | 55809 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:14.241512060 CET | 53 | 51793 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:25.139702082 CET | 56544 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:25.155077934 CET | 53 | 56544 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:36.593580008 CET | 56324 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:36.593991041 CET | 50457 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:36.601150036 CET | 53 | 50457 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:36.608791113 CET | 53 | 56324 | 1.1.1.1 | 192.168.2.4 |
Mar 19, 2025 11:22:36.611534119 CET | 59459 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 19, 2025 11:22:36.620023966 CET | 53 | 59459 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Mar 19, 2025 11:21:19.892661095 CET | 192.168.2.4 | 1.1.1.1 | c24a | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 19, 2025 11:21:16.369220018 CET | 192.168.2.4 | 1.1.1.1 | 0x4507 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:16.372626066 CET | 192.168.2.4 | 1.1.1.1 | 0xd3a6 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.419373035 CET | 192.168.2.4 | 1.1.1.1 | 0x302c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.419528008 CET | 192.168.2.4 | 1.1.1.1 | 0x9379 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.658732891 CET | 192.168.2.4 | 1.1.1.1 | 0x637a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.658894062 CET | 192.168.2.4 | 1.1.1.1 | 0xcc3a | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.661279917 CET | 192.168.2.4 | 1.1.1.1 | 0xe7da | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:19.661458015 CET | 192.168.2.4 | 1.1.1.1 | 0x8e48 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:20.182360888 CET | 192.168.2.4 | 1.1.1.1 | 0x7f94 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:20.182550907 CET | 192.168.2.4 | 1.1.1.1 | 0x33c | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.024017096 CET | 192.168.2.4 | 1.1.1.1 | 0xf441 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.024502039 CET | 192.168.2.4 | 1.1.1.1 | 0xd940 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.047692060 CET | 192.168.2.4 | 1.1.1.1 | 0x6a3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.160880089 CET | 192.168.2.4 | 8.8.8.8 | 0x9247 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.161232948 CET | 192.168.2.4 | 1.1.1.1 | 0xbce6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:34.172296047 CET | 192.168.2.4 | 1.1.1.1 | 0xb002 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:34.172673941 CET | 192.168.2.4 | 1.1.1.1 | 0xaf8e | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.224303961 CET | 192.168.2.4 | 1.1.1.1 | 0x63a8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.224689960 CET | 192.168.2.4 | 1.1.1.1 | 0x8ad2 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.263385057 CET | 192.168.2.4 | 1.1.1.1 | 0x6c83 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.176747084 CET | 192.168.2.4 | 1.1.1.1 | 0xe2bf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.176979065 CET | 192.168.2.4 | 1.1.1.1 | 0xbd6f | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.195241928 CET | 192.168.2.4 | 1.1.1.1 | 0x6eab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.239820957 CET | 192.168.2.4 | 1.1.1.1 | 0xe4c3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.240242004 CET | 192.168.2.4 | 8.8.8.8 | 0x718d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.531954050 CET | 192.168.2.4 | 1.1.1.1 | 0x842b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.532473087 CET | 192.168.2.4 | 1.1.1.1 | 0x72e4 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.552027941 CET | 192.168.2.4 | 1.1.1.1 | 0x4e89 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.589979887 CET | 192.168.2.4 | 1.1.1.1 | 0x39f2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.590300083 CET | 192.168.2.4 | 8.8.8.8 | 0x131c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:25.139702082 CET | 192.168.2.4 | 1.1.1.1 | 0x7d35 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.593580008 CET | 192.168.2.4 | 1.1.1.1 | 0x376d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.593991041 CET | 192.168.2.4 | 1.1.1.1 | 0x11a7 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.611534119 CET | 192.168.2.4 | 1.1.1.1 | 0xeea0 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 19, 2025 11:21:03.936352968 CET | 1.1.1.1 | 192.168.2.4 | 0x9e4 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:03.936352968 CET | 1.1.1.1 | 192.168.2.4 | 0x9e4 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:16.376174927 CET | 1.1.1.1 | 192.168.2.4 | 0x4507 | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:16.379252911 CET | 1.1.1.1 | 192.168.2.4 | 0xd3a6 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 19, 2025 11:21:19.433288097 CET | 1.1.1.1 | 192.168.2.4 | 0x9379 | No error (0) | 65 | IN (0x0001) | false | |||
Mar 19, 2025 11:21:19.440092087 CET | 1.1.1.1 | 192.168.2.4 | 0x302c | No error (0) | 172.64.151.8 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.440092087 CET | 1.1.1.1 | 192.168.2.4 | 0x302c | No error (0) | 104.18.36.248 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.667135000 CET | 1.1.1.1 | 192.168.2.4 | 0x637a | No error (0) | 104.18.160.117 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.667135000 CET | 1.1.1.1 | 192.168.2.4 | 0x637a | No error (0) | 104.18.161.117 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.667454958 CET | 1.1.1.1 | 192.168.2.4 | 0xcc3a | No error (0) | 65 | IN (0x0001) | false | |||
Mar 19, 2025 11:21:19.671857119 CET | 1.1.1.1 | 192.168.2.4 | 0xe7da | No error (0) | 52.222.232.39 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.671857119 CET | 1.1.1.1 | 192.168.2.4 | 0xe7da | No error (0) | 52.222.232.144 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.671857119 CET | 1.1.1.1 | 192.168.2.4 | 0xe7da | No error (0) | 52.222.232.99 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:19.671857119 CET | 1.1.1.1 | 192.168.2.4 | 0xe7da | No error (0) | 52.222.232.47 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:20.191755056 CET | 1.1.1.1 | 192.168.2.4 | 0x7f94 | No error (0) | 104.18.161.117 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:20.191755056 CET | 1.1.1.1 | 192.168.2.4 | 0x7f94 | No error (0) | 104.18.160.117 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:20.193198919 CET | 1.1.1.1 | 192.168.2.4 | 0x33c | No error (0) | 65 | IN (0x0001) | false | |||
Mar 19, 2025 11:21:33.032494068 CET | 1.1.1.1 | 192.168.2.4 | 0xd940 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.038391113 CET | 1.1.1.1 | 192.168.2.4 | 0xf441 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.062885046 CET | 1.1.1.1 | 192.168.2.4 | 0x6a3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:33.168262959 CET | 1.1.1.1 | 192.168.2.4 | 0xbce6 | No error (0) | 172.217.16.206 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:33.170072079 CET | 8.8.8.8 | 192.168.2.4 | 0x9247 | No error (0) | 142.251.37.110 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:34.179903030 CET | 1.1.1.1 | 192.168.2.4 | 0xaf8e | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:34.185209990 CET | 1.1.1.1 | 192.168.2.4 | 0xb002 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.231616020 CET | 1.1.1.1 | 192.168.2.4 | 0x63a8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.239377975 CET | 1.1.1.1 | 192.168.2.4 | 0x8ad2 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:39.271013975 CET | 1.1.1.1 | 192.168.2.4 | 0x6c83 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.192106009 CET | 1.1.1.1 | 192.168.2.4 | 0xbd6f | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.192610025 CET | 1.1.1.1 | 192.168.2.4 | 0xe2bf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.210427999 CET | 1.1.1.1 | 192.168.2.4 | 0x6eab | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:21:45.246651888 CET | 8.8.8.8 | 192.168.2.4 | 0x718d | No error (0) | 142.251.37.110 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:21:45.246750116 CET | 1.1.1.1 | 192.168.2.4 | 0xe4c3 | No error (0) | 142.250.184.206 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:22:06.548042059 CET | 1.1.1.1 | 192.168.2.4 | 0x842b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.548434019 CET | 1.1.1.1 | 192.168.2.4 | 0x72e4 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.561264992 CET | 1.1.1.1 | 192.168.2.4 | 0x4e89 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:06.596893072 CET | 8.8.8.8 | 192.168.2.4 | 0x131c | No error (0) | 142.251.37.110 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:22:06.596909046 CET | 1.1.1.1 | 192.168.2.4 | 0x39f2 | No error (0) | 142.250.185.78 | A (IP address) | IN (0x0001) | false | ||
Mar 19, 2025 11:22:25.155077934 CET | 1.1.1.1 | 192.168.2.4 | 0x7d35 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.601150036 CET | 1.1.1.1 | 192.168.2.4 | 0x11a7 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.608791113 CET | 1.1.1.1 | 192.168.2.4 | 0x376d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 19, 2025 11:22:36.620023966 CET | 1.1.1.1 | 192.168.2.4 | 0xeea0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.4 | 49719 | 142.250.185.67 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Mar 19, 2025 11:21:04.096519947 CET | 202 | OUT | |
Mar 19, 2025 11:21:04.111881018 CET | 222 | IN | |
Mar 19, 2025 11:21:04.115513086 CET | 200 | OUT | |
Mar 19, 2025 11:21:04.122809887 CET | 223 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49733 | 172.64.151.8 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:19 UTC | 689 | OUT | |
2025-03-19 10:21:19 UTC | 824 | IN | |
2025-03-19 10:21:19 UTC | 545 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1329 | IN | |
2025-03-19 10:21:19 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49734 | 104.18.160.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:19 UTC | 683 | OUT | |
2025-03-19 10:21:19 UTC | 632 | IN | |
2025-03-19 10:21:19 UTC | 737 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49735 | 104.18.160.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:19 UTC | 661 | OUT | |
2025-03-19 10:21:19 UTC | 654 | IN | |
2025-03-19 10:21:19 UTC | 715 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN | |
2025-03-19 10:21:19 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49736 | 52.222.232.39 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:19 UTC | 676 | OUT | |
2025-03-19 10:21:19 UTC | 551 | IN | |
2025-03-19 10:21:19 UTC | 15833 | IN | |
2025-03-19 10:21:19 UTC | 16384 | IN | |
2025-03-19 10:21:19 UTC | 16384 | IN | |
2025-03-19 10:21:19 UTC | 16384 | IN | |
2025-03-19 10:21:19 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49738 | 104.18.160.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:19 UTC | 815 | OUT | |
2025-03-19 10:21:20 UTC | 689 | IN | |
2025-03-19 10:21:20 UTC | 680 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49741 | 104.18.160.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:20 UTC | 710 | OUT | |
2025-03-19 10:21:20 UTC | 644 | IN | |
2025-03-19 10:21:20 UTC | 725 | IN | |
2025-03-19 10:21:20 UTC | 78 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49745 | 104.18.161.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:20 UTC | 555 | OUT | |
2025-03-19 10:21:20 UTC | 689 | IN | |
2025-03-19 10:21:20 UTC | 680 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN | |
2025-03-19 10:21:20 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49744 | 104.18.161.117 | 443 | 3776 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-19 10:21:20 UTC | 450 | OUT | |
2025-03-19 10:21:20 UTC | 644 | IN | |
2025-03-19 10:21:20 UTC | 725 | IN | |
2025-03-19 10:21:20 UTC | 78 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 06:21:06 |
Start date: | 19/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 06:21:11 |
Start date: | 19/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 14 |
Start time: | 06:21:18 |
Start date: | 19/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |