Windows
Analysis Report
https://protect.checkpoint.com/v2/r02/___https://lsems.gravityzone.bitdefender.com/xhfsdfMW5hMR*~*QDcqg1KugH/rhrqqgrWni2pyg1KugH/og75AgMRA37Cu37x!i2GzU2ZBRIJzQYOHZZqqYsmZW5OR00KOX83/48p8j0J8ZqF5gYq/X5p/4JhyRpOG1IqMhIh5WIqxR6iX1YmuV1mTfLuz38uCWp/KRqiVYoq5hZbCTIh/4MqE1rinfpmCiY0KZ8i*~*QYOHf1mO48i1RIOf
Overview
General Information
Detection
Score: | 2 |
Range: | 0 - 100 |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 3472 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 6168 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2348,i ,977650232 591120726, 1825482736 5428393022 ,262144 -- disable-fe atures=Opt imizationG uideModelD ownloading ,Optimizat ionHints,O ptimizatio nHintsFetc hing,Optim izationTar getPredict ion --vari ations-see d-version= 20250306-1 83004.4290 00 --mojo- platform-c hannel-han dle=2388 / prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 7092 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://prote ct.checkpo int.com/v2 /r02/___ht tps://lsem s.gravityz one.bitdef ender.com/ xhfsdfMW5h MR*~*QDcqg 1KugH/rhrq qgrWni2pyg 1KugH/og75 AgMRA37Cu3 7x!i2GzU2Z BRIJzQYOHZ ZqqYsmZW5O R00KOX83/4 8p8j0J8ZqF 5gYq/X5p/4 JhyRpOG1Iq MhIh5WIqxR 6iX1YmuV1m TfLuz38uCW p/KRqiVYoq 5hZbCTIh/4 MqE1rinfpm CiY0KZ8i*~ *QYOHf1mO4 8i1RIOfhqG CjLqKW1mPX 0SpSYKxR7Z 6YsKOg7qvg 7m2RIiAZKJ yRpO8Wpt6T 2uS4rSTX56 0TJS93ZOHY qOw0K0vZL6 x4styRpOuT IJ80ES1RJW uR0u*~*Z60 vZ5KvhL4H0 5cwip06TYS DV8p/Z1K7h D5DWo0n0rm 5ZKiLjLCyg 8GNVX5DVs4 QWLB6gImt3 5yRX1yIipS GZruqRIJyR pOQWruzf1u B0oqmZqSXX 0FyRpO*~*V pC8gKKvf84 NWYR7i2uEi 8GogsRyRpO A35u6SYipf sSZi6WpSKu J47N842V/3 sSp08uyf1q qi60Mf1/fZ rKISp/BZqW HYZytiIm3X p95fpqOX6q qYYiqh24CS YKqfLSRVpu /Y7CUY758S 2O4W1mm3rN 6hL/4T1NEY ol9iKWJWpS *~*hKSKi7O p0EOZY5yrW oNyRpNyRp4 V02G34Y4B1 Zq8QYOHXsG t1Yp6i2W9V Yi5S70901c UgLByRpOUj smEZ64nSZu O0002WJCKT 2ZCQYOLYZK q06qH40Wxi Ym8R2q34pu oXsStRI0SQ YOHfr0z07C pj2KBj0iWS IG6ZMiGZEO Y46091qmZW LcS4ZcmZom GWrStY8iz4 sqyRqSrZpm 5iMOX45B5T 0WHV7umRZN Bg2uIX8ORh pmP1Y0407u VSp/XXI4OW 2SCW8G21p/ Ki1myh0054 ESIfp6NgrO yWJyDi5ByR pO8WsGfgsK WgpKJSEW0j 00LgZBCRES PXIF8goOxj qGKg16WfoO *~*jYmXZ5u p454mXE4R2 EWBf1mNj1i TZ5NBhoqX4 qhB4IV5Y6G 3irSG4oi*~ *isGOWrmP1 04O0MmXWD5 DVq4uiYi2i 5b6hJqUX1u WgqS/3pW6Z Z*/2*XIKpf 7SMYpx5ZoN yRp43gsSfS LuUi8utV5u 4Z544gqSq4 sWtWZOfhqG Y4ZbyRpNCX Y0tRKW*~*j 1KKg805WJp 7j1SwXpyTj ZuSRrKm0oF yRp43Vn5DW n5DWrqK1Z3 5h1SyR8m8X 60f4oSvX2S JZ8NyRpOJ0 JyDW2i/h7B B0LC0SKq8g YF8X10335i Wda99K97K6 67Kc*~*7K6 aFIF/JJbJI /5b8*~*J59 I5H78FbH8b c/*~*5Ka*~ */9KHIKJ/H c77K?h=6&f ru;n=6&fru ;ithx=6___ .YzJlOmdhb mdzdGVyOmM 6bzozNzgzO DlmOGVjOWF jMDU4ODA2Y zZiNzAzODI wZWExYjo3O jE1MzU6Mzg zZDA3MjA0M GU4NmVjOTQ 5NjUyYWM1M TBkYzkzNzg 4ODQ3Mjg0Y TJlN2I1Mzh lZWM4YWU1Y zI1YWE5Y2U xNjpoOlQ6V A" MD5: E81F54E6C1129887AEA47E7D092680BF) MpCmdRun.exe (PID: 4736 cmdline:
"C:\Progra m Files\Wi ndows Defe nder\mpcmd run.exe" - wdenable MD5: B3676839B2EE96983F9ED735CD044159) conhost.exe (PID: 5064 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D)
- cleanup
- • Compliance
- • Networking
- • System Summary
- • Hooking and other Techniques for Hiding and Protection
- • Malware Analysis System Evasion
- • Lowering of HIPS / PFW / Operating System Security Settings
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTP traffic: | ||
Source: | HTTP traffic: | ||
Source: | HTTP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Mutant created: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Window detected: |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Source: | Last function: |
Source: | WMI Queries: | ||
Source: | WMI Queries: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 1 Windows Management Instrumentation | 1 DLL Side-Loading | 1 Process Injection | 1 Masquerading | OS Credential Dumping | 1 Security Software Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 DLL Side-Loading | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 DLL Side-Loading | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 1 File Deletion | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
api-bd.linkscan.io | 13.249.91.68 | true | false | high | |
google.com | 142.250.80.78 | true | false | high | |
d3rb3qlp6ej74d.cloudfront.net | 13.249.91.64 | true | false | unknown | |
d1b13yb8esv0x1.cloudfront.net | 18.173.132.30 | true | false | unknown | |
www.google.com | 142.250.81.228 | true | false | high | |
d2srg6h49ykvtq.cloudfront.net | 3.168.102.96 | true | false | unknown | |
email.friendbuy-mail.com | unknown | unknown | false | high | |
protect.checkpoint.com | unknown | unknown | false | high | |
394-kadoma.trakcid.com | unknown | unknown | false | high | |
lsems.gravityzone.bitdefender.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
13.249.91.49 | unknown | United States | 16509 | AMAZON-02US | false | |
13.249.91.19 | unknown | United States | 16509 | AMAZON-02US | false | |
13.249.91.64 | d3rb3qlp6ej74d.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
18.173.132.30 | d1b13yb8esv0x1.cloudfront.net | United States | 3 | MIT-GATEWAYSUS | false | |
13.249.91.68 | api-bd.linkscan.io | United States | 16509 | AMAZON-02US | false | |
142.250.81.228 | www.google.com | United States | 15169 | GOOGLEUS | false | |
3.168.102.96 | d2srg6h49ykvtq.cloudfront.net | United States | 16509 | AMAZON-02US | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1649540 |
Start date and time: | 2025-03-26 21:57:19 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 12s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://protect.checkpoint.com/v2/r02/___https://lsems.gravityzone.bitdefender.com/xhfsdfMW5hMR*~*QDcqg1KugH/rhrqqgrWni2pyg1KugH/og75AgMRA37Cu37x!i2GzU2ZBRIJzQYOHZZqqYsmZW5OR00KOX83/48p8j0J8ZqF5gYq/X5p/4JhyRpOG1IqMhIh5WIqxR6iX1YmuV1mTfLuz38uCWp/KRqiVYoq5hZbCTIh/4MqE1rinfpmCiY0KZ8i*~*QYOHf1mO48i1RIOfhqGCjLqKW1mPX0SpSYKxR7Z6YsKOg7qvg7m2RIiAZKJyRpO8Wpt6T2uS4rSTX560TJS93ZOHYqOw0K0vZL6x4styRpOuTIJ80ES1RJWuR0u*~*Z60vZ5KvhL4H05cwip06TYSDV8p/Z1K7hD5DWo0n0rm5ZKiLjLCyg8GNVX5DVs4QWLB6gImt35yRX1yIipSGZruqRIJyRpOQWruzf1uB0oqmZqSXX0FyRpO*~*VpC8gKKvf84NWYR7i2uEi8GogsRyRpOA35u6SYipfsSZi6WpSKuJ47N842V/3sSp08uyf1qqi60Mf1/fZrKISp/BZqWHYZytiIm3Xp95fpqOX6qqYYiqh24CSYKqfLSRVpu/Y7CUY758S2O4W1mm3rN6hL/4T1NEYol9iKWJWpS*~*hKSKi7Op0EOZY5yrWoNyRpNyRp4V02G34Y4B1Zq8QYOHXsGt1Yp6i2W9VYi5S70901cUgLByRpOUjsmEZ64nSZuO0002WJCKT2ZCQYOLYZKq06qH40WxiYm8R2q34puoXsStRI0SQYOHfr0z07Cpj2KBj0iWSIG6ZMiGZEOY46091qmZWLcS4ZcmZomGWrStY8iz4sqyRqSrZpm5iMOX45B5T0WHV7umRZNBg2uIX8ORhpmP1Y0407uVSp/XXI4OW2SCW8G21p/Ki1myh0054ESIfp6NgrOyWJyDi5ByRpO8WsGfgsKWgpKJSEW0j00LgZBCRESPXIF8goOxjqGKg16WfoO*~*jYmXZ5up454mXE4R2EWBf1mNj1iTZ5NBhoqX4qhB4IV5Y6G3irSG4oi*~*isGOWrmP104O0MmXWD5DVq4uiYi2i5b6hJqUX1uWgqS/3pW6ZZ*/2*XIKpf7SMYpx5ZoNyRp43gsSfSLuUi8utV5u4Z544gqSq4sWtWZOfhqGY4ZbyRpNCXY0tRKW*~*j1KKg805WJp7j1SwXpyTjZuSRrKm0oFyRp43Vn5DWn5DWrqK1Z35h1SyR8m8X60f4oSvX2SJZ8NyRpOJ0JyDW2i/h7BB0LC0SKq8gYF8X10335iWda99K97K667Kc*~*7K6aFIF/JJbJI/5b8*~*J59I5H78FbH8bc/*~*5Ka*~*/9KHIKJ/Hc77K?h=6&fru;n=6&fru;ithx=6___.YzJlOmdhbmdzdGVyOmM6bzozNzgzODlmOGVjOWFjMDU4ODA2YzZiNzAzODIwZWExYjo3OjE1MzU6MzgzZDA3MjA0MGU4NmVjOTQ5NjUyYWM1MTBkYzkzNzg4ODQ3Mjg0YTJlN2I1MzhlZWM4YWU1YzI1YWE5Y2UxNjpoOlQ6VA |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 21 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean2.win@34/25@69/8 |
- Exclude process from analysis
(whitelisted): audiodg.exe, sp psvc.exe, RuntimeBroker.exe, S hellExperienceHost.exe, SIHCli ent.exe, SgrmBroker.exe, backg roundTaskHost.exe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.250.81.238, 14 2.251.35.163, 172.253.63.84, 1 42.251.35.174, 142.251.40.234, 184.31.68.248, 142.251.41.3, 23.9.183.29, 4.175.87.197 - Excluded domains from analysis
(whitelisted): fonts.googleap is.com, fs.microsoft.com, acco unts.google.com, slscr.update. microsoft.com, fonts.gstatic.c om, clientservices.googleapis. com, fe3cr.delivery.mp.microso ft.com, clients2.google.com, o csp.digicert.com, edgedl.me.gv t1.com, redirector.gvt1.com, u pdate.googleapis.com, clients. l.google.com - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//protect.checkpoint.com/v2/r0 2/___https://lsems.gravityzone .bitdefender.com/xhfsdfMW5hMR* ~*QDcqg1KugH/rhrqqgrWni2pyg1Ku gH/og75AgMRA37Cu37x!i2GzU2ZBRI JzQYOHZZqqYsmZW5OR00KOX83/48p8 j0J8ZqF5gYq/X5p/4JhyRpOG1IqMhI h5WIqxR6iX1YmuV1mTfLuz38uCWp/K RqiVYoq5hZbCTIh/4MqE1rinfpmCiY 0KZ8i*~*QYOHf1mO48i1RIOfhqGCjL qKW1mPX0SpSYKxR7Z6YsKOg7qvg7m2 RIiAZKJyRpO8Wpt6T2uS4rSTX560TJ S93ZOHYqOw0K0vZL6x4styRpOuTIJ8 0ES1RJWuR0u*~*Z60vZ5KvhL4H05cw ip06TYSDV8p/Z1K7hD5DWo0n0rm5ZK iLjLCyg8GNVX5DVs4QWLB6gImt35yR X1yIipSGZruqRIJyRpOQWruzf1uB0o qmZqSXX0FyRpO*~*VpC8gKKvf84NWY R7i2uEi8GogsRyRpOA35u6SYipfsSZ i6WpSKuJ47N842V/3sSp08uyf1qqi6 0Mf1/fZrKISp/BZqWHYZytiIm3Xp95 fpqOX6qqYYiqh24CSYKqfLSRVpu/Y7 CUY758S2O4W1mm3rN6hL/4T1NEYol9 iKWJWpS*~*hKSKi7Op0EOZY5yrWoNy RpNyRp4V02G34Y4B1Zq8QYOHXsGt1Y p6i2W9VYi5S70901cUgLByRpOUjsmE Z64nSZuO0002WJCKT2ZCQYOLYZKq06 qH40WxiYm8R2q34puoXsStRI0SQYOH fr0z07Cpj2KBj0iWSIG6ZMiGZEOY46 091qmZWLcS4ZcmZomGWrStY8iz4sqy RqSrZpm5iMOX45B5T0WHV7umRZNBg2 uIX8ORhpmP1Y0407uVSp/XXI4OW2SC W8G21p/Ki1myh0054ESIfp6NgrOyWJ yDi5
Time | Type | Description |
---|---|---|
16:59:31 | API Interceptor |
Process: | C:\Program Files\Windows Defender\MpCmdRun.exe |
File Type: | |
Category: | modified |
Size (bytes): | 7388 |
Entropy (8bit): | 3.241362991504136 |
Encrypted: | false |
SSDEEP: | 96:cEi+AAsoJjykzEJ+AAsoJjykHEb+AAsoJjykh:cN+SoJbO+SoJvQ+SoJp |
MD5: | DFB4714804E9AB873CE5A9D54E90CB31 |
SHA1: | E3A661847B116A0B61E2079D48025EEF6E8539F7 |
SHA-256: | DB9232EAE4F32C5B740A6CFDE69193DB4244165EE68AF56ADE6ADDF3AFCA4326 |
SHA-512: | D1160CEDC89F2E6BF4BBD4F4FB8A3B314ECE7B8B789953866336C66BFB9809AE231A69C54CEA55F2D61823A5806FAD1E14411DA84199093CFB950F191ACD0550 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5181 |
Entropy (8bit): | 5.4308671023934885 |
Encrypted: | false |
SSDEEP: | 96:vOW/fOWBFZOGOW0xOW+Jc+uKOWVNaOL/fOLBFZOGOL0xOL+Jc+uKOLVNaOxT/fOh:3/H4+01ul//a4z00ukZ/44t0Gu2k |
MD5: | 455622883D1E301BE1EB53C2BDE3265E |
SHA1: | 66316EB506ACA70529090E179A561A30489F208B |
SHA-256: | 0B9666CBBFDF1EA9E4DD777F02FD7EAEA61B39155B3B75958468015E8582B8B7 |
SHA-512: | A505AE50D4D8ADD315AABB2185B3345253000A6CCB922B8E7628A4B387A189EB82398D02C5711512F6F5B8C1B86A47561FB9C8D44FEDFE583E0E85FDC24F8AB5 |
Malicious: | false |
Reputation: | low |
URL: | "https://fonts.googleapis.com/css?family=Raleway:400,300,600" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 290 |
Entropy (8bit): | 4.599339514022599 |
Encrypted: | false |
SSDEEP: | 6:3vZFo2FNwXLjQLMzmezk7TWKAKjgwr2GV/cgGTO:fZxWLQq/KUKV/cDTO |
MD5: | B0EFBA333D201884ACE7DA8C274C50D6 |
SHA1: | A002E049CA42CE61F0EA10BC61E1B1C5429E2FCB |
SHA-256: | D7B8C28753C9D08EEA6FAA46623E49B15ED65953F0FBDAB304A882DCE53F4738 |
SHA-512: | 904DBF0DB24CE2C27AC204E1460A465170DC13D531D77F35CABDDAF1ED6F61BC266E799690DC9C967AF742093E0ABBBF9F17AFF474A5F6303DF92BF98C084D0F |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/manifest.json |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5331 |
Entropy (8bit): | 5.427833602296715 |
Encrypted: | false |
SSDEEP: | 96:AOOS79wOOS72FZOhOOS7tOOS7qJc+udOOS7dZNtOOJ9wOOJ2FZOhOOJtOOJqJc+F:N79d7Do7k7CP7db9cDjnCqdw9HDY8CNi |
MD5: | 8021688CE829E44A641CAB854B9B2563 |
SHA1: | C42C2004293C1BE6E189929F18F12351AF659723 |
SHA-256: | C1C404F3BE794B08745D11CF51AA0D698CD1007BD1EC4728A00635EFC8E9EF89 |
SHA-512: | F964AF74432D82A1FC25BBE182E04D2972C94F400615AC3D82A63C493A5FAB86293DF8CB2DB7466F89B2691AAAAA12DE18A28741B8DD90BA1FA5E310ABD84506 |
Malicious: | false |
Reputation: | low |
URL: | "https://fonts.googleapis.com/css?family=Montserrat:100,200,300" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 266441 |
Entropy (8bit): | 5.38023171513072 |
Encrypted: | false |
SSDEEP: | 6144:DWskVvFOKfg6fvNne+Ax4eynd4F5FB0nO:KVvs96fvNne+Ax4eynd4F5TB |
MD5: | F3DC5FDA1F5ECBD5F39D4BF333D98130 |
SHA1: | AA65B906068BC68B300613BA0C72E943601242D7 |
SHA-256: | A956CA59B557C7987802906C2EBD2587D27C50EBD6F4950D2A0EF3378D1212E6 |
SHA-512: | 9E138EB9D0DD010EA9BE116D1193BB8BB1DFC9AF4E4A544C8D63D0342FC553F6BBB43553999322C08BBA1CCE6AA50341345F24D70512B30AD1E0E82D92F93C5D |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/static/js/main.d62e4927.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 74 |
Entropy (8bit): | 4.303132387509518 |
Encrypted: | false |
SSDEEP: | 3:YAJVA/HWRcMg5DD/MaCZyEgTleQfEXHf+4Y:YAbRe5dLxNEP+4Y |
MD5: | 60678DA012E87BEAE573883A0AD8CA1C |
SHA1: | 7FB5D80E28CDC13D10B1B7E70DE973C868E1DF1E |
SHA-256: | EC0EC46647A46115CFDE259220AAEC0A0CA75711556C63D5C529B5AFCE29B585 |
SHA-512: | C9FF8202FE91D9CA09189E33EDF559AC9E238B2CEE675C2AFBC984A6B9F0E36E8207117DF855359191B391E610B85173E3C5322749A84D519F818DDA29EDEEA6 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 17542 |
Entropy (8bit): | 2.022387726550296 |
Encrypted: | false |
SSDEEP: | 96:dZLXJ1/zvAjPHzSazN8JE0jzldA+GATg2OZAhBWxcB/MhseBH7p:dZJFzvAD3Kx4kxQ2Id |
MD5: | FBA58480381FEFA10F97BD44C76C87C7 |
SHA1: | 630C22B495579F0867B451D5D390287862048FF7 |
SHA-256: | 4A1D64D4748779D6600AD3033848DB32FCC84E4E870CE4E60119D54D9BA3417C |
SHA-512: | A76E0E66AD9C3A4E62941951377A7526CC44F2BC8D01F4084BE8EDA0A0089162F274AEFBFDD293824EBD31A8DB5F27EE0E27E6851E3ACD68EFC226F719EEE7EB |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 880 |
Entropy (8bit): | 4.941520006172923 |
Encrypted: | false |
SSDEEP: | 24:0E0sr6FRIPaNFfQA+Sxs+DyVqguC75j2a:0EPvCNdQ4xs+xguC7Rf |
MD5: | EBA76F3B62E097867C0B5D15CF4315AF |
SHA1: | 7A3A55B10A7FE8EA26B10598664CA3DE510C1970 |
SHA-256: | 6974F29C6091A267590F93062B2B159BE95DE6E1AC7DAE30BCE6A3F7E531D450 |
SHA-512: | 2019D04BB173912A8BE51905FABEAB22FA669408416466D80B3750D2ACB0363ACFAADE8B0A1BFB2CCAF2B7972CC0FE24CE5EDFEA68BF655C1E180FC46ACDFDFA |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/scan/aHR0cHM6Ly9lbWFpbC5mcmllbmRidXktbWFpbC5jb20vbHMvY2xpY2s!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?c=1&i=1&docs=1 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2896 |
Entropy (8bit): | 6.105085782280111 |
Encrypted: | false |
SSDEEP: | 48:YNerItNVedbD0gGuQKverItNVedbD0gGuQKZUoCn7WoM3BqOddyq:maItNVedH0gG4vaItNVedH0gG4SBHMRD |
MD5: | 08C60801F21664983B006221947E93BA |
SHA1: | EB219F19DAAC47685F059E0A741BA241BBD8E489 |
SHA-256: | 21EF6C4AAA176A316809FD2A1E84EBFE3EB6AFCE29B95CDAD4DCE3E736BAF58B |
SHA-512: | 85444D300912C2171BFD88F42B4F6C81A1FFF80D29B35F90B468236A15C85227FEBE341F8FAB7A9813C2EFC2633BBA43DEB6852A17B62D3B048B04C4ED202214 |
Malicious: | false |
Reputation: | low |
URL: | https://api-bd.linkscan.io/scan/aHR0cHM6Ly9lbWFpbC5mcmllbmRidXktbWFpbC5jb20vbHMvY2xpY2s!dXBuPXUwMDEuLTJCUUllTnhUR0JMVVFJS3Y5Z3k3eVE3UlA0bTl5S0k5ZEctMkJBWDlHcDc0RDlsM1dSWThpQWhOaGpuY3pxRk5FMldQTjl0cU8xODc5ZHlzWmdiakhxdTVFU3d6LTJCaWhJZ3dWMDJaclBxeGlFRWhKSVNkNTFsM2U1TnFJb2lqb2hXMDdvUFEtMkJ3Rko1OXpNZmNOS01VOEN4YUJCTlJrVFVqUG1sZnotMkJpODE3VzNWMERpMVp6U1VqU0FqcGZCV09rdkV1OTNyQ3k5UWF2cy0yRjViVmh0UFdGeGxtb3BIQS0yQnZLRGw1bDhoY0tMSWtDdkNBUmplMDEtMkJLRmpuaWpwVjlhUlNSSVAtMkJ6Qkx3bFFqa3ZIRTM2dXpzd3BjbnMtMkJvY0p1NTdkanNUd1RkNFpEZ2I3ZXQ5YnNkV3ptaWlld1VHaW5aUmFDNk5wUlRCTUtodDhYSk40aklJS1llTTdlcXZxNTFlaGNMQkp5T2xPT203NXJZRWhhYmI1cG5ZOWIzTjg4dFRERkN6cFNFd2JkVzJUT0tmRjItMkItMkZQVXBYZTZwWUl3LTJCSnBoWTk1dXR4QTd0N2V4VW9PbGwtMkJPenhzU1ZiNUpJVVVXRExFOXUxLTJGTUFlV1lCZVRsdTh3MXlYZkpjSnNoMDVNLTJCamVuV2xkeXFweVdRNDB1UHdBUzJTZ1V4WlhURG9NZU9hUjhBRmNoT3duZnltMlNmUkh0dHJSZ0w0OVRCQ2phMUIwbXpDS3JMckhKWTVZV2pQNk5SSDZJRXNxR3BXWk5FdWhtcVV0ZzNDak1IbmJtREtyd0wtMkJ3RnBabnFRbkFENzRVeVVGbUwxMzNKSDA3bjJselBFbW1RajJ6eThSU0pkZ0ZhSzZMXzRwaWhIeWdOU0IwcjlSZlcwZDQ0T1BYdmNBZjd6dnBJRmhKWVZJVHhSRy0yQlZpdTdXd081cElPSWpRblN5YkR1UU55SDFka2NHTks0UjItMkZYbnNaNGpPd3poQ0pZU0ZZblNlZnRoRUJaclBTZU8tMkIxSTVoMFR6eWFFb3V0REk2eWNrSktOeUpNMmFhVjAtMkZYQi0yRi0yRmlFWUY0cWNtM3h3S1VaZjNqSXNEU3ItMkJEVEtyRXd5c2wwVGxVNFl3bTA3SWVYY0dR/744F42F112F962F17ADA5EE8ED50836E04D0C23A8C389560F7654FCDFE5C922F?i=0&docs=1&s=1 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4584 |
Entropy (8bit): | 4.974616794584777 |
Encrypted: | false |
SSDEEP: | 48:gaaahdky2/rqcZ98jmVfvNOjmV68nwvPSpw0PSpwVzJkzJK15YnoV:gTIsj98WfvwWOPSPPSYCW5YnoV |
MD5: | 8FC5A2F23A27198D9E865E74ADD2673C |
SHA1: | 1AB40A13CDEC0C799C4353C2E2F337ECE6511B26 |
SHA-256: | D6BEE22B04ACB5F58B62381BB60BF8B88A8F6ACEF191418EE8B6FDDA714535F4 |
SHA-512: | 30D060728B396F53744124CA56D3F37749341D69305B92836191BF60CD100E6C8CFCB89FA092C3B611FC960B9275F8B112A85B8190F2D5769057A5B4AB61B426 |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/static/css/main.3dfe9f5e.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 32322 |
Entropy (8bit): | 5.248203574173546 |
Encrypted: | false |
SSDEEP: | 768:DFaF7FOFsFJ4FaLFxF9F/UfY2JSavtpyNSpbJfai0Ydi9+QJEaNPDz4T06JOajp0:6a12mYR |
MD5: | B77408AB912C3AA81C611213204B8F63 |
SHA1: | 038CAFEBECAD4973BC47B78F5564D7CBDAE51DF2 |
SHA-256: | BB125B35229FD1CAAEED80F61895696C448D55487E091E95513A154628D5604E |
SHA-512: | B26981BBB66F6B0E1FE13109E02EDDF582A3AB47D2BFF5351C657D2E8344DF4A4E3F52CDEA35EF4F840C4D7BB0011963BFCCDA747FAE707F5617EB79DC47B06E |
Malicious: | false |
Reputation: | low |
URL: | "https://fonts.googleapis.com/css?family=Roboto:100,300,400,500,700,900" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 37828 |
Entropy (8bit): | 7.994199601770781 |
Encrypted: | true |
SSDEEP: | 768:TLreREud92B1C5buEpioxWe6O1ESHFnLQkbknuF1dcjI5djeBX:Tu68248oxWe6O19H1zwnubdk |
MD5: | 50B140B1E97D859D6D0603414F4298EE |
SHA1: | 500E4872EE1BA9CF89F1BA626D64987B0F9AB5C9 |
SHA-256: | FDC9964050BFA24C27A3C76C6791B3674292A5F352CBC83D7A4DC49595BC3FB1 |
SHA-512: | 55EF84E956A7943E3FC61A8A349E64E9F35B7DFC63402AB52B995F43A7CD4B1D2ACD300126DCDD610D0B106AF426848F998CCF154F712034422D242D6AD9130D |
Malicious: | false |
Reputation: | low |
URL: | https://fonts.gstatic.com/s/montserrat/v29/JTUSjIg1_i6t8kCHKm459Wlhyw.woff2 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 134 |
Entropy (8bit): | 4.653926345244196 |
Encrypted: | false |
SSDEEP: | 3:UHFmGOCXLFSKPx/F8SMuHedFF5KlIYC1SnMTJstAJQMTFJAJyJQMTJTgYELvsY:Uc8hRZOSleH+o1SnftASMJA8SA0pAY |
MD5: | 6748FBBC7FB3B016E371219D605B1239 |
SHA1: | C09D3E7F554638BF5E73D84D6E766BB41165A760 |
SHA-256: | 00ECFBD7BB7685928F2A5960E1D6F12C1D06E2678A24D822633E9700667489C2 |
SHA-512: | 69F22028C2AC44EA18AFBE646947C9750E02E2FF2E4819B0F624A45080D8F943ADE6EFFE760A05AEC671C112779758FCBC4DCBA422FDBBC30328129F043CA7A4 |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/index.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 17542 |
Entropy (8bit): | 2.022387726550296 |
Encrypted: | false |
SSDEEP: | 96:dZLXJ1/zvAjPHzSazN8JE0jzldA+GATg2OZAhBWxcB/MhseBH7p:dZJFzvAD3Kx4kxQ2Id |
MD5: | FBA58480381FEFA10F97BD44C76C87C7 |
SHA1: | 630C22B495579F0867B451D5D390287862048FF7 |
SHA-256: | 4A1D64D4748779D6600AD3033848DB32FCC84E4E870CE4E60119D54D9BA3417C |
SHA-512: | A76E0E66AD9C3A4E62941951377A7526CC44F2BC8D01F4084BE8EDA0A0089162F274AEFBFDD293824EBD31A8DB5F27EE0E27E6851E3ACD68EFC226F719EEE7EB |
Malicious: | false |
Reputation: | low |
URL: | https://lsems.gravityzone.bitdefender.com/favicon.ico |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 289
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 26, 2025 21:58:14.019938946 CET | 49680 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:16.986787081 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:17.301264048 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:17.910543919 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:19.113650084 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:21.517137051 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:23.628823042 CET | 49680 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:25.739137888 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:26.050880909 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:26.332010031 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:26.660166979 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:26.670521021 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:26.670608997 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:26.670721054 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:26.670896053 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:26.670917034 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:26.861218929 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:26.861309052 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:26.862368107 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:26.862394094 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:26.862740993 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:26.910224915 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:27.863575935 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:29.318276882 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318310976 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.318366051 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318650007 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318691015 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.318747997 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318778038 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318792105 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.318847895 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.318859100 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.500777960 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.500953913 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.501837969 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.501849890 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.502196074 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.502383947 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.502446890 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.502463102 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.502499104 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.503106117 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.503112078 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.503371954 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.553426027 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.998006105 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.998070955 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.998104095 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.998121023 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:29.998164892 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.998950958 CET | 49734 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:29.998964071 CET | 443 | 49734 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:30.136279106 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.136306047 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.136363029 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.136585951 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.136606932 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.272165060 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:30.321276903 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.321664095 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.338639021 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.338654041 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.339509964 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.345877886 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.345952034 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.485583067 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.485848904 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.485995054 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.506927967 CET | 49736 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.506957054 CET | 443 | 49736 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.539005995 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.539046049 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.539150953 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.539505959 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.539589882 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.539663076 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.540069103 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.540081024 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.541156054 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.541189909 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.543800116 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.543854952 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.544151068 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.544271946 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.544291973 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.717721939 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.717753887 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718085051 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718116045 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718219995 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718405962 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718422890 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718592882 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718648911 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718655109 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718671083 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718702078 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718707085 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.718776941 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.718791962 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.885634899 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.885798931 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.885893106 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.888468027 CET | 49738 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.888508081 CET | 443 | 49738 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.888860941 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.888926029 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.889019012 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.889077902 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.890041113 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.890136957 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.891813993 CET | 49739 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.891844034 CET | 443 | 49739 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.904977083 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.905029058 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.905113935 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.905123949 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.905154943 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.905181885 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.905201912 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.972450018 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.972471952 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.972529888 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.972553015 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.972698927 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.989640951 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.989659071 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.989731073 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:30.989753962 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:30.989993095 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.008414030 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.008431911 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.008477926 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.008488894 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.008503914 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.008527994 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.058624983 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.058656931 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.058727980 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.058738947 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.058784962 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.073179960 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.073209047 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.073276043 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.073302031 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.073379040 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.086601973 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.086620092 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.086705923 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.086715937 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.086757898 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.100788116 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.100805044 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.100888014 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.100895882 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.100991964 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.113379955 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.113395929 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.113452911 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.113461971 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.113507032 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.124447107 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.124466896 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.124516964 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.124526024 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.124551058 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.124567032 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.145438910 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.145462990 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.145526886 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.145534039 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.145556927 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.145577908 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.155196905 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.155214071 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.155271053 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.155278921 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.155308008 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.155318022 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.163939953 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.163959026 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.164021015 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.164031982 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.164074898 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.172904015 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.172920942 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.172971964 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.172979116 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.173187017 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.182132959 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.182178020 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.182195902 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.182204008 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.182240009 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.182252884 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.190361023 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.190403938 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.190427065 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.190433025 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.190459013 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.190478086 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.192872047 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.192959070 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.192965984 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.193042040 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.193208933 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.193381071 CET | 49737 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.193393946 CET | 443 | 49737 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.295485973 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.295542002 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.295631886 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.295862913 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.295872927 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.295880079 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.295979977 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.296071053 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.296165943 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.296200991 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.450334072 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.450366020 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.450800896 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.455756903 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.455768108 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.472007036 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.472336054 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.472390890 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.472671032 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.472681046 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.477121115 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.477201939 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.478061914 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.478070974 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.478291035 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.478601933 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.478630066 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.637866020 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.637973070 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.638917923 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.638926983 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.639410019 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.639791965 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.639828920 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.642800093 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.642982006 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.643070936 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.643847942 CET | 49746 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.643865108 CET | 443 | 49746 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.665937901 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.665970087 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.665990114 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.666045904 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.666115999 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.666148901 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.666155100 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.666182041 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.666202068 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.667186975 CET | 49747 | 443 | 192.168.2.4 | 13.249.91.64 |
Mar 26, 2025 21:58:31.667216063 CET | 443 | 49747 | 13.249.91.64 | 192.168.2.4 |
Mar 26, 2025 21:58:31.788851976 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.788923025 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:31.788991928 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.789155006 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.789169073 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:31.966943979 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:31.967019081 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.971652031 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.971662998 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:31.971908092 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:31.976186991 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:31.977123976 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.977245092 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.977289915 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.980201006 CET | 49749 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.980221987 CET | 443 | 49749 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.983666897 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.983756065 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:31.983836889 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.984019995 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:31.984042883 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:32.020288944 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.133783102 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.147846937 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.147897959 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.147943974 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.147984028 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.147996902 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.148022890 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.150115967 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.150172949 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.150190115 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.150260925 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.150319099 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.150336981 CET | 443 | 49750 | 13.249.91.19 | 192.168.2.4 |
Mar 26, 2025 21:58:32.150343895 CET | 49750 | 443 | 192.168.2.4 | 13.249.91.19 |
Mar 26, 2025 21:58:32.164916039 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:32.165175915 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:32.165250063 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:32.165313005 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:32.165328026 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:33.311778069 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:33.578093052 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.578707933 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.578758001 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.614660025 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:33.661992073 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.662475109 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.662487984 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.663378000 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.663446903 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.663460970 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.663532019 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.665155888 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.665173054 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:33.665230036 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.665230989 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.717252016 CET | 49711 | 443 | 192.168.2.4 | 204.79.197.222 |
Mar 26, 2025 21:58:33.801073074 CET | 443 | 49711 | 204.79.197.222 | 192.168.2.4 |
Mar 26, 2025 21:58:34.223108053 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:34.695435047 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:34.695467949 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:34.695553064 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:34.695621014 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:34.695689917 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:34.696789026 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:34.696794033 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:34.696877956 CET | 443 | 49751 | 13.249.91.68 | 192.168.2.4 |
Mar 26, 2025 21:58:34.696952105 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:34.696952105 CET | 49751 | 443 | 192.168.2.4 | 13.249.91.68 |
Mar 26, 2025 21:58:34.801322937 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.801423073 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:34.801522017 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.804562092 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.804603100 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:34.823441029 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.823543072 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:34.823806047 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.823832989 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.823879004 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:34.823935986 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.824044943 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.824074030 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:34.824155092 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:34.824167967 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:34.986201048 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:34.986426115 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.986776114 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.986802101 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:34.987236023 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:34.987628937 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:34.987673044 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:35.006599903 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.006688118 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.007505894 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.007589102 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.008502007 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.008528948 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.008945942 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.009356022 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.009404898 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.011310101 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.011337042 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.011759996 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.052088022 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.082380056 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:35.241205931 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.241709948 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.241847992 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.263747931 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:35.264328003 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:35.264394045 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:35.289882898 CET | 49757 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:35.289925098 CET | 443 | 49757 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:35.294490099 CET | 49755 | 443 | 192.168.2.4 | 13.249.91.49 |
Mar 26, 2025 21:58:35.294519901 CET | 443 | 49755 | 13.249.91.49 | 192.168.2.4 |
Mar 26, 2025 21:58:35.427062035 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:35.938472033 CET | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Mar 26, 2025 21:58:36.841813087 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:36.841901064 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:36.841995955 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:37.304775953 CET | 49731 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:58:37.304811954 CET | 443 | 49731 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:58:37.831943989 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:42.633369923 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:44.689249039 CET | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Mar 26, 2025 21:58:47.818881989 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:47.818917036 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:47.821382999 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:47.821547031 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:47.829297066 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:47.829425097 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:47.829433918 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.007133961 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.007462978 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:48.007472038 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.063174009 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.063380957 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.063643932 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:48.063668966 CET | 443 | 49756 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:58:48.063694000 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:48.063745975 CET | 49756 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:58:52.241872072 CET | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Mar 26, 2025 21:58:59.490051985 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:59.490153074 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:58:59.490215063 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:59.653337955 CET | 49735 | 443 | 192.168.2.4 | 3.168.102.96 |
Mar 26, 2025 21:58:59.653371096 CET | 443 | 49735 | 3.168.102.96 | 192.168.2.4 |
Mar 26, 2025 21:59:06.573076010 CET | 49716 | 80 | 192.168.2.4 | 142.251.32.99 |
Mar 26, 2025 21:59:06.573277950 CET | 49717 | 80 | 192.168.2.4 | 23.210.73.6 |
Mar 26, 2025 21:59:06.573510885 CET | 49719 | 80 | 192.168.2.4 | 23.210.73.6 |
Mar 26, 2025 21:59:06.657195091 CET | 80 | 49716 | 142.251.32.99 | 192.168.2.4 |
Mar 26, 2025 21:59:06.657277107 CET | 49716 | 80 | 192.168.2.4 | 142.251.32.99 |
Mar 26, 2025 21:59:06.657522917 CET | 80 | 49717 | 23.210.73.6 | 192.168.2.4 |
Mar 26, 2025 21:59:06.657578945 CET | 49717 | 80 | 192.168.2.4 | 23.210.73.6 |
Mar 26, 2025 21:59:06.658572912 CET | 80 | 49719 | 23.210.73.6 | 192.168.2.4 |
Mar 26, 2025 21:59:06.658643007 CET | 49719 | 80 | 192.168.2.4 | 23.210.73.6 |
Mar 26, 2025 21:59:06.916049957 CET | 49718 | 443 | 192.168.2.4 | 23.57.90.144 |
Mar 26, 2025 21:59:06.916430950 CET | 49720 | 80 | 192.168.2.4 | 23.210.73.6 |
Mar 26, 2025 21:59:17.999362946 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:59:17.999553919 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:59:17.999603987 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:59:19.302220106 CET | 49759 | 443 | 192.168.2.4 | 18.173.132.30 |
Mar 26, 2025 21:59:19.302237988 CET | 443 | 49759 | 18.173.132.30 | 192.168.2.4 |
Mar 26, 2025 21:59:26.645759106 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:26.645818949 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:26.646034956 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:26.646075964 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:26.646085024 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:26.829672098 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:26.830132008 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:26.830173969 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:36.818805933 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:36.818948984 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Mar 26, 2025 21:59:36.819149017 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:37.304646015 CET | 49767 | 443 | 192.168.2.4 | 142.250.81.228 |
Mar 26, 2025 21:59:37.304688931 CET | 443 | 49767 | 142.250.81.228 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 26, 2025 21:58:23.302403927 CET | 53 | 53999 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:23.304807901 CET | 53 | 49228 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:24.033907890 CET | 53 | 56259 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:26.586431980 CET | 59508 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:26.586865902 CET | 57228 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:26.669481993 CET | 53 | 59508 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:26.669614077 CET | 53 | 57228 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:29.233988047 CET | 53858 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:29.234170914 CET | 60982 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:29.317455053 CET | 53 | 53858 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:29.317476034 CET | 53 | 60982 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:30.001974106 CET | 53019 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:30.002141953 CET | 65194 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:30.122808933 CET | 53 | 65194 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:30.135318995 CET | 53 | 53019 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:30.619959116 CET | 53 | 54400 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:31.290465117 CET | 57316 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:31.290951014 CET | 54917 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:31.415492058 CET | 53 | 57316 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:31.441355944 CET | 53 | 54917 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:31.671392918 CET | 49433 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:31.671545982 CET | 61671 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:31.754264116 CET | 53 | 49433 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:31.754288912 CET | 53 | 61671 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:34.714029074 CET | 59320 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:34.714029074 CET | 55492 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:34.717205048 CET | 49203 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:34.717314005 CET | 64769 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:34.800127983 CET | 53 | 49203 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:34.800167084 CET | 53 | 64769 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:34.816807032 CET | 53 | 59320 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:34.822767973 CET | 53 | 55492 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:35.295619965 CET | 63397 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:35.295902967 CET | 60232 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:36.307254076 CET | 57436 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:36.307518959 CET | 59267 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:38.334148884 CET | 58934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:39.341886044 CET | 58934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:40.357240915 CET | 58934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:41.119571924 CET | 53 | 60226 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:42.365056992 CET | 58934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:46.365581989 CET | 58934 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:50.391520977 CET | 54360 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 26, 2025 21:58:50.393701077 CET | 57324 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:50.474848032 CET | 53 | 54360 | 8.8.8.8 | 192.168.2.4 |
Mar 26, 2025 21:58:50.476507902 CET | 53 | 57324 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:58:51.406569004 CET | 65242 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:51.406569004 CET | 58620 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:52.455916882 CET | 52291 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:52.456636906 CET | 64808 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:54.491204977 CET | 50707 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:55.493294001 CET | 50707 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:56.495024920 CET | 50707 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:58.508085966 CET | 50707 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:58:59.884816885 CET | 53 | 52158 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:00.814749956 CET | 53 | 56284 | 162.159.36.2 | 192.168.2.4 |
Mar 26, 2025 21:59:02.516508102 CET | 50707 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:06.532712936 CET | 55311 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:06.532732964 CET | 50940 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 26, 2025 21:59:06.618042946 CET | 53 | 55311 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:06.618082047 CET | 53 | 50940 | 8.8.8.8 | 192.168.2.4 |
Mar 26, 2025 21:59:08.643757105 CET | 51558 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:08.643906116 CET | 52510 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:09.666956902 CET | 61638 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:09.667196035 CET | 61843 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:11.695172071 CET | 60112 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:12.706017971 CET | 60112 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:13.709100962 CET | 60112 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:15.720273972 CET | 60112 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:17.588696957 CET | 53 | 60112 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:17.588746071 CET | 53 | 60112 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:17.685348988 CET | 52320 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:17.685667992 CET | 51673 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 26, 2025 21:59:17.768918991 CET | 53 | 52320 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:17.768949032 CET | 53 | 51673 | 8.8.8.8 | 192.168.2.4 |
Mar 26, 2025 21:59:22.694813013 CET | 50077 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:22.695076942 CET | 58142 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:22.730135918 CET | 53 | 64268 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:22.778013945 CET | 53 | 50077 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:22.778075933 CET | 53 | 58142 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:22.778819084 CET | 53574 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:22.779051065 CET | 61389 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:22.862158060 CET | 53 | 53574 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:22.862221003 CET | 53 | 61389 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:22.863106012 CET | 49743 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:22.946300983 CET | 53 | 49743 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:23.001574039 CET | 53 | 50555 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:26.272953987 CET | 51467 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:26.273015976 CET | 62466 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:26.806787014 CET | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Mar 26, 2025 21:59:27.285643101 CET | 60239 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:27.285847902 CET | 56606 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:29.308043003 CET | 50582 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:30.308963060 CET | 50582 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:31.314759016 CET | 50582 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:33.328242064 CET | 50582 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:37.334227085 CET | 50582 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:41.369750977 CET | 60450 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:41.370078087 CET | 64904 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 26, 2025 21:59:41.452909946 CET | 53 | 60450 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:41.453007936 CET | 53 | 64904 | 8.8.8.8 | 192.168.2.4 |
Mar 26, 2025 21:59:43.859559059 CET | 49671 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:43.859652042 CET | 51381 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:44.878851891 CET | 59599 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:44.878851891 CET | 50772 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:46.848690033 CET | 53 | 59599 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:46.848720074 CET | 53 | 49671 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:46.849386930 CET | 53 | 50772 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:46.849400997 CET | 53 | 51381 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:46.849839926 CET | 53111 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:46.933053970 CET | 53 | 53111 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:46.946603060 CET | 54753 | 53 | 192.168.2.4 | 1.1.1.1 |
Mar 26, 2025 21:59:46.946793079 CET | 64718 | 53 | 192.168.2.4 | 8.8.8.8 |
Mar 26, 2025 21:59:47.029572010 CET | 53 | 54753 | 1.1.1.1 | 192.168.2.4 |
Mar 26, 2025 21:59:47.029685974 CET | 53 | 64718 | 8.8.8.8 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Mar 26, 2025 21:59:46.849838972 CET | 192.168.2.4 | 1.1.1.1 | c1ec | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 26, 2025 21:58:26.586431980 CET | 192.168.2.4 | 1.1.1.1 | 0xdabc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:26.586865902 CET | 192.168.2.4 | 1.1.1.1 | 0xdc7e | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:29.233988047 CET | 192.168.2.4 | 1.1.1.1 | 0xce8e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:29.234170914 CET | 192.168.2.4 | 1.1.1.1 | 0xbf65 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:30.001974106 CET | 192.168.2.4 | 1.1.1.1 | 0xeee4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:30.002141953 CET | 192.168.2.4 | 1.1.1.1 | 0x966b | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:31.290465117 CET | 192.168.2.4 | 1.1.1.1 | 0x328c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:31.290951014 CET | 192.168.2.4 | 1.1.1.1 | 0xc328 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:31.671392918 CET | 192.168.2.4 | 1.1.1.1 | 0x212a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:31.671545982 CET | 192.168.2.4 | 1.1.1.1 | 0xe0ec | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:34.714029074 CET | 192.168.2.4 | 1.1.1.1 | 0x5f57 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:34.714029074 CET | 192.168.2.4 | 1.1.1.1 | 0x167c | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:34.717205048 CET | 192.168.2.4 | 1.1.1.1 | 0xdc0f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:34.717314005 CET | 192.168.2.4 | 1.1.1.1 | 0x6548 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:35.295619965 CET | 192.168.2.4 | 1.1.1.1 | 0x6767 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:35.295902967 CET | 192.168.2.4 | 1.1.1.1 | 0x33b9 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:36.307254076 CET | 192.168.2.4 | 1.1.1.1 | 0x39a2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:36.307518959 CET | 192.168.2.4 | 1.1.1.1 | 0x9405 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:38.334148884 CET | 192.168.2.4 | 1.1.1.1 | 0x42e9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:39.341886044 CET | 192.168.2.4 | 1.1.1.1 | 0x42e9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:40.357240915 CET | 192.168.2.4 | 1.1.1.1 | 0x42e9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:42.365056992 CET | 192.168.2.4 | 1.1.1.1 | 0x42e9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:46.365581989 CET | 192.168.2.4 | 1.1.1.1 | 0x42e9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:50.391520977 CET | 192.168.2.4 | 8.8.8.8 | 0x958b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:50.393701077 CET | 192.168.2.4 | 1.1.1.1 | 0xa95f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:51.406569004 CET | 192.168.2.4 | 1.1.1.1 | 0xbc5f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:51.406569004 CET | 192.168.2.4 | 1.1.1.1 | 0xe99b | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:52.455916882 CET | 192.168.2.4 | 1.1.1.1 | 0xde01 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:52.456636906 CET | 192.168.2.4 | 1.1.1.1 | 0x4a31 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:58:54.491204977 CET | 192.168.2.4 | 1.1.1.1 | 0x7054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:55.493294001 CET | 192.168.2.4 | 1.1.1.1 | 0x7054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:56.495024920 CET | 192.168.2.4 | 1.1.1.1 | 0x7054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:58:58.508085966 CET | 192.168.2.4 | 1.1.1.1 | 0x7054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:02.516508102 CET | 192.168.2.4 | 1.1.1.1 | 0x7054 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:06.532712936 CET | 192.168.2.4 | 1.1.1.1 | 0xc31f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:06.532732964 CET | 192.168.2.4 | 8.8.8.8 | 0x181f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:08.643757105 CET | 192.168.2.4 | 1.1.1.1 | 0x5d78 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:08.643906116 CET | 192.168.2.4 | 1.1.1.1 | 0x3a0e | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:09.666956902 CET | 192.168.2.4 | 1.1.1.1 | 0x59cd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:09.667196035 CET | 192.168.2.4 | 1.1.1.1 | 0xb7d8 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:11.695172071 CET | 192.168.2.4 | 1.1.1.1 | 0x425e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:12.706017971 CET | 192.168.2.4 | 1.1.1.1 | 0x425e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:13.709100962 CET | 192.168.2.4 | 1.1.1.1 | 0x425e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:15.720273972 CET | 192.168.2.4 | 1.1.1.1 | 0x425e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:17.685348988 CET | 192.168.2.4 | 1.1.1.1 | 0xb895 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:17.685667992 CET | 192.168.2.4 | 8.8.8.8 | 0xa808 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.694813013 CET | 192.168.2.4 | 1.1.1.1 | 0xc855 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.695076942 CET | 192.168.2.4 | 1.1.1.1 | 0xc0be | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.778819084 CET | 192.168.2.4 | 1.1.1.1 | 0x99e0 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.779051065 CET | 192.168.2.4 | 1.1.1.1 | 0xb959 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.863106012 CET | 192.168.2.4 | 1.1.1.1 | 0x29d1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:26.272953987 CET | 192.168.2.4 | 1.1.1.1 | 0xfaf9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:26.273015976 CET | 192.168.2.4 | 1.1.1.1 | 0x3b38 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:27.285643101 CET | 192.168.2.4 | 1.1.1.1 | 0xb89 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:27.285847902 CET | 192.168.2.4 | 1.1.1.1 | 0xdfc9 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:29.308043003 CET | 192.168.2.4 | 1.1.1.1 | 0xf459 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:30.308963060 CET | 192.168.2.4 | 1.1.1.1 | 0xf459 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:31.314759016 CET | 192.168.2.4 | 1.1.1.1 | 0xf459 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:33.328242064 CET | 192.168.2.4 | 1.1.1.1 | 0xf459 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:37.334227085 CET | 192.168.2.4 | 1.1.1.1 | 0xf459 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:41.369750977 CET | 192.168.2.4 | 1.1.1.1 | 0xd5dd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:41.370078087 CET | 192.168.2.4 | 8.8.8.8 | 0xf54e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:43.859559059 CET | 192.168.2.4 | 1.1.1.1 | 0xf1c4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:43.859652042 CET | 192.168.2.4 | 1.1.1.1 | 0x9f41 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:44.878851891 CET | 192.168.2.4 | 1.1.1.1 | 0x668f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:44.878851891 CET | 192.168.2.4 | 1.1.1.1 | 0xbc9c | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.849839926 CET | 192.168.2.4 | 1.1.1.1 | 0xe791 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.946603060 CET | 192.168.2.4 | 1.1.1.1 | 0x9d9f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.946793079 CET | 192.168.2.4 | 8.8.8.8 | 0xd0f6 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 26, 2025 21:58:26.669481993 CET | 1.1.1.1 | 192.168.2.4 | 0xdabc | No error (0) | 142.250.81.228 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:26.669614077 CET | 1.1.1.1 | 192.168.2.4 | 0xdc7e | No error (0) | 65 | IN (0x0001) | false | |||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | cp.url-protection.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | d2srg6h49ykvtq.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | 3.168.102.96 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | 3.168.102.114 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | 3.168.102.95 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317455053 CET | 1.1.1.1 | 192.168.2.4 | 0xce8e | No error (0) | 3.168.102.38 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317476034 CET | 1.1.1.1 | 192.168.2.4 | 0xbf65 | No error (0) | cp.url-protection.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:29.317476034 CET | 1.1.1.1 | 192.168.2.4 | 0xbf65 | No error (0) | d2srg6h49ykvtq.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.122808933 CET | 1.1.1.1 | 192.168.2.4 | 0x966b | No error (0) | d3rb3qlp6ej74d.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.135318995 CET | 1.1.1.1 | 192.168.2.4 | 0xeee4 | No error (0) | d3rb3qlp6ej74d.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.135318995 CET | 1.1.1.1 | 192.168.2.4 | 0xeee4 | No error (0) | 13.249.91.64 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.135318995 CET | 1.1.1.1 | 192.168.2.4 | 0xeee4 | No error (0) | 13.249.91.40 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.135318995 CET | 1.1.1.1 | 192.168.2.4 | 0xeee4 | No error (0) | 13.249.91.12 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:30.135318995 CET | 1.1.1.1 | 192.168.2.4 | 0xeee4 | No error (0) | 13.249.91.19 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.415492058 CET | 1.1.1.1 | 192.168.2.4 | 0x328c | No error (0) | 13.249.91.68 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.415492058 CET | 1.1.1.1 | 192.168.2.4 | 0x328c | No error (0) | 13.249.91.66 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.415492058 CET | 1.1.1.1 | 192.168.2.4 | 0x328c | No error (0) | 13.249.91.49 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.415492058 CET | 1.1.1.1 | 192.168.2.4 | 0x328c | No error (0) | 13.249.91.122 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754264116 CET | 1.1.1.1 | 192.168.2.4 | 0x212a | No error (0) | d3rb3qlp6ej74d.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754264116 CET | 1.1.1.1 | 192.168.2.4 | 0x212a | No error (0) | 13.249.91.19 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754264116 CET | 1.1.1.1 | 192.168.2.4 | 0x212a | No error (0) | 13.249.91.64 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754264116 CET | 1.1.1.1 | 192.168.2.4 | 0x212a | No error (0) | 13.249.91.40 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754264116 CET | 1.1.1.1 | 192.168.2.4 | 0x212a | No error (0) | 13.249.91.12 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:31.754288912 CET | 1.1.1.1 | 192.168.2.4 | 0xe0ec | No error (0) | d3rb3qlp6ej74d.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.800127983 CET | 1.1.1.1 | 192.168.2.4 | 0xdc0f | No error (0) | 13.249.91.49 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.800127983 CET | 1.1.1.1 | 192.168.2.4 | 0xdc0f | No error (0) | 13.249.91.66 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.800127983 CET | 1.1.1.1 | 192.168.2.4 | 0xdc0f | No error (0) | 13.249.91.68 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.800127983 CET | 1.1.1.1 | 192.168.2.4 | 0xdc0f | No error (0) | 13.249.91.122 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.816807032 CET | 1.1.1.1 | 192.168.2.4 | 0x5f57 | No error (0) | d1b13yb8esv0x1.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.816807032 CET | 1.1.1.1 | 192.168.2.4 | 0x5f57 | No error (0) | 18.173.132.30 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.816807032 CET | 1.1.1.1 | 192.168.2.4 | 0x5f57 | No error (0) | 18.173.132.49 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.816807032 CET | 1.1.1.1 | 192.168.2.4 | 0x5f57 | No error (0) | 18.173.132.107 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.816807032 CET | 1.1.1.1 | 192.168.2.4 | 0x5f57 | No error (0) | 18.173.132.68 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:34.822767973 CET | 1.1.1.1 | 192.168.2.4 | 0x167c | No error (0) | d1b13yb8esv0x1.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:50.474848032 CET | 8.8.8.8 | 192.168.2.4 | 0x958b | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:58:50.476507902 CET | 1.1.1.1 | 192.168.2.4 | 0xa95f | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:06.618042946 CET | 1.1.1.1 | 192.168.2.4 | 0xc31f | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:06.618082047 CET | 8.8.8.8 | 192.168.2.4 | 0x181f | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:17.588696957 CET | 1.1.1.1 | 192.168.2.4 | 0x425e | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:17.588746071 CET | 1.1.1.1 | 192.168.2.4 | 0x425e | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:17.768918991 CET | 1.1.1.1 | 192.168.2.4 | 0xb895 | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:17.768949032 CET | 8.8.8.8 | 192.168.2.4 | 0xa808 | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:22.778013945 CET | 1.1.1.1 | 192.168.2.4 | 0xc855 | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.778075933 CET | 1.1.1.1 | 192.168.2.4 | 0xc0be | Server failure (2) | none | none | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.862158060 CET | 1.1.1.1 | 192.168.2.4 | 0x99e0 | Server failure (2) | none | none | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.862221003 CET | 1.1.1.1 | 192.168.2.4 | 0xb959 | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:22.946300983 CET | 1.1.1.1 | 192.168.2.4 | 0x29d1 | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:41.452909946 CET | 1.1.1.1 | 192.168.2.4 | 0xd5dd | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:41.453007936 CET | 8.8.8.8 | 192.168.2.4 | 0xf54e | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:46.848690033 CET | 1.1.1.1 | 192.168.2.4 | 0x668f | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.848720074 CET | 1.1.1.1 | 192.168.2.4 | 0xf1c4 | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.849386930 CET | 1.1.1.1 | 192.168.2.4 | 0xbc9c | Server failure (2) | none | none | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.849400997 CET | 1.1.1.1 | 192.168.2.4 | 0x9f41 | Server failure (2) | none | none | 65 | IN (0x0001) | false | |
Mar 26, 2025 21:59:46.933053970 CET | 1.1.1.1 | 192.168.2.4 | 0xe791 | Server failure (2) | none | none | A (IP address) | IN (0x0001) | false | |
Mar 26, 2025 21:59:47.029572010 CET | 1.1.1.1 | 192.168.2.4 | 0x9d9f | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false | ||
Mar 26, 2025 21:59:47.029685974 CET | 8.8.8.8 | 192.168.2.4 | 0xd0f6 | No error (0) | 142.250.80.78 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49734 | 3.168.102.96 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:29 UTC | 2265 | OUT | |
2025-03-26 20:58:29 UTC | 1844 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49736 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:30 UTC | 2016 | OUT | |
2025-03-26 20:58:30 UTC | 608 | IN | |
2025-03-26 20:58:30 UTC | 880 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49738 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:30 UTC | 1914 | OUT | |
2025-03-26 20:58:30 UTC | 584 | IN | |
2025-03-26 20:58:30 UTC | 134 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49739 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:30 UTC | 1933 | OUT | |
2025-03-26 20:58:30 UTC | 608 | IN | |
2025-03-26 20:58:30 UTC | 4584 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49737 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:30 UTC | 1917 | OUT | |
2025-03-26 20:58:30 UTC | 624 | IN | |
2025-03-26 20:58:30 UTC | 15760 | IN | |
2025-03-26 20:58:30 UTC | 16384 | IN | |
2025-03-26 20:58:30 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN | |
2025-03-26 20:58:31 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49747 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:31 UTC | 1962 | OUT | |
2025-03-26 20:58:31 UTC | 625 | IN | |
2025-03-26 20:58:31 UTC | 15759 | IN | |
2025-03-26 20:58:31 UTC | 1783 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49746 | 13.249.91.64 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:31 UTC | 1903 | OUT | |
2025-03-26 20:58:31 UTC | 592 | IN | |
2025-03-26 20:58:31 UTC | 290 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49749 | 13.249.91.68 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:31 UTC | 1883 | OUT | |
2025-03-26 20:58:31 UTC | 624 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49750 | 13.249.91.19 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:31 UTC | 408 | OUT | |
2025-03-26 20:58:32 UTC | 625 | IN | |
2025-03-26 20:58:32 UTC | 15990 | IN | |
2025-03-26 20:58:32 UTC | 1552 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49751 | 13.249.91.68 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:32 UTC | 1981 | OUT | |
2025-03-26 20:58:34 UTC | 562 | IN | |
2025-03-26 20:58:34 UTC | 2896 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49755 | 13.249.91.49 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:34 UTC | 1715 | OUT | |
2025-03-26 20:58:35 UTC | 560 | IN | |
2025-03-26 20:58:35 UTC | 74 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49757 | 18.173.132.30 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:35 UTC | 1616 | OUT | |
2025-03-26 20:58:35 UTC | 861 | IN | |
2025-03-26 20:58:35 UTC | 496 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49756 | 18.173.132.30 | 443 | 6168 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-26 20:58:47 UTC | 1636 | OUT | |
2025-03-26 20:58:48 UTC | 861 | IN | |
2025-03-26 20:58:48 UTC | 496 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 16:58:17 |
Start date: | 26/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 16:58:21 |
Start date: | 26/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 6 |
Start time: | 16:58:28 |
Start date: | 26/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 19 |
Start time: | 16:59:31 |
Start date: | 26/03/2025 |
Path: | C:\Program Files\Windows Defender\MpCmdRun.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff75f090000 |
File size: | 468'120 bytes |
MD5 hash: | B3676839B2EE96983F9ED735CD044159 |
Has elevated privileges: | true |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 20 |
Start time: | 16:59:31 |
Start date: | 26/03/2025 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff62fc20000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |