Edit tour

Windows Analysis Report
http://www.bankmenia.fr

Overview

General Information

Sample URL:http://www.bankmenia.fr
Analysis ID:1654691
Infos:

Detection

Score:56
Range:0 - 100
Confidence:100%

Signatures

Antivirus / Scanner detection for submitted sample
Antivirus detection for URL or domain
Creates files inside the system directory
Deletes files inside the Windows folder

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64
  • chrome.exe (PID: 5660 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: E81F54E6C1129887AEA47E7D092680BF)
    • chrome.exe (PID: 5304 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2268,i,9184926467893170132,2237659281389485492,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2308 /prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
  • chrome.exe (PID: 7012 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.bankmenia.fr" MD5: E81F54E6C1129887AEA47E7D092680BF)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: http://www.bankmenia.frAvira URL Cloud: detection malicious, Label: phishing
Source: https://www.bankmenia.fr/Content/bootstrap.min.jsAvira URL Cloud: Label: phishing
Source: https://www.bankmenia.fr/Content/Sign_In_files/style.cssAvira URL Cloud: Label: phishing
Source: https://www.bankmenia.fr/favicon.icoAvira URL Cloud: Label: phishing
Source: https://www.bankmenia.fr/HTTP Parser: No favicon
Source: unknownHTTPS traffic detected: 142.251.40.228:443 -> 192.168.2.4:49732 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.40:443 -> 192.168.2.4:49736 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.40:443 -> 192.168.2.4:49741 version: TLS 1.2
Source: unknownHTTPS traffic detected: 204.79.197.222:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 131.253.33.254
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.27
Source: unknownTCP traffic detected without corresponding DNS query: 2.17.190.73
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.222
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: unknownTCP traffic detected without corresponding DNS query: 208.89.73.21
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: www.bankmenia.frConnection: keep-aliveUpgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /Content/Sign_In_files/style.css HTTP/1.1Host: www.bankmenia.frConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: text/css,*/*;q=0.1Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: styleReferer: https://www.bankmenia.fr/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /Content/bootstrap.min.js HTTP/1.1Host: www.bankmenia.frConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: */*Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: scriptReferer: https://www.bankmenia.fr/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: www.bankmenia.frConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://www.bankmenia.fr/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: www.bankmenia.fr
Source: chromecache_53.2.drString found in binary or memory: https://getbootstrap.com/)
Source: chromecache_53.2.drString found in binary or memory: https://github.com/twbs/bootstrap/blob/master/LICENSE)
Source: chromecache_53.2.drString found in binary or memory: https://github.com/twbs/bootstrap/graphs/contributors)
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49671 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 49716 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 49680 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownHTTPS traffic detected: 142.251.40.228:443 -> 192.168.2.4:49732 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.40:443 -> 192.168.2.4:49736 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.107.246.40:443 -> 192.168.2.4:49741 version: TLS 1.2
Source: unknownHTTPS traffic detected: 204.79.197.222:443 -> 192.168.2.4:49747 version: TLS 1.2
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Windows\SystemTemp\scoped_dir5660_1017388210Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile deleted: C:\Windows\SystemTemp\scoped_dir5660_1017388210Jump to behavior
Source: classification engineClassification label: mal56.win@22/8@6/3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2268,i,9184926467893170132,2237659281389485492,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2308 /prefetch:3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.bankmenia.fr"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2268,i,9184926467893170132,2237659281389485492,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2308 /prefetch:3Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media2
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive3
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 signatures2 2 Behavior Graph ID: 1654691 URL: http://www.bankmenia.fr Startdate: 02/04/2025 Architecture: WINDOWS Score: 56 22 Antivirus detection for URL or domain 2->22 24 Antivirus / Scanner detection for submitted sample 2->24 6 chrome.exe 2 2->6         started        9 chrome.exe 2->9         started        process3 dnsIp4 14 192.168.2.4, 138, 443, 49709 unknown unknown 6->14 11 chrome.exe 6->11         started        process5 dnsIp6 16 s-part-0012.t-0009.t-msedge.net 13.107.246.40, 443, 49734, 49735 MICROSOFT-CORP-MSN-AS-BLOCKUS United States 11->16 18 www.google.com 142.251.40.228, 443, 49732, 49753 GOOGLEUS United States 11->18 20 4 other IPs or domains 11->20

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
http://www.bankmenia.fr100%Avira URL Cloudphishing
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
https://www.bankmenia.fr/Content/bootstrap.min.js100%Avira URL Cloudphishing
https://www.bankmenia.fr/Content/Sign_In_files/style.css100%Avira URL Cloudphishing
https://www.bankmenia.fr/favicon.ico100%Avira URL Cloudphishing

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
s-part-0012.t-0009.t-msedge.net
13.107.246.40
truefalse
    high
    www.google.com
    142.251.40.228
    truefalse
      high
      www.bankmenia.fr
      unknown
      unknownfalse
        unknown
        NameMaliciousAntivirus DetectionReputation
        https://www.bankmenia.fr/favicon.icofalse
        • Avira URL Cloud: phishing
        unknown
        https://www.bankmenia.fr/Content/Sign_In_files/style.cssfalse
        • Avira URL Cloud: phishing
        unknown
        https://www.bankmenia.fr/Content/bootstrap.min.jsfalse
        • Avira URL Cloud: phishing
        unknown
        https://www.bankmenia.fr/false
          unknown
          NameSourceMaliciousAntivirus DetectionReputation
          https://github.com/twbs/bootstrap/blob/master/LICENSE)chromecache_53.2.drfalse
            high
            https://github.com/twbs/bootstrap/graphs/contributors)chromecache_53.2.drfalse
              high
              https://getbootstrap.com/)chromecache_53.2.drfalse
                high
                • No. of IPs < 25%
                • 25% < No. of IPs < 50%
                • 50% < No. of IPs < 75%
                • 75% < No. of IPs
                IPDomainCountryFlagASNASN NameMalicious
                13.107.246.40
                s-part-0012.t-0009.t-msedge.netUnited States
                8068MICROSOFT-CORP-MSN-AS-BLOCKUSfalse
                142.251.40.228
                www.google.comUnited States
                15169GOOGLEUSfalse
                IP
                192.168.2.4
                Joe Sandbox version:42.0.0 Malachite
                Analysis ID:1654691
                Start date and time:2025-04-02 14:51:59 +02:00
                Joe Sandbox product:CloudBasic
                Overall analysis duration:0h 3m 0s
                Hypervisor based Inspection enabled:false
                Report type:full
                Cookbook file name:browseurl.jbs
                Sample URL:http://www.bankmenia.fr
                Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                Number of analysed new started processes analysed:21
                Number of new started drivers analysed:0
                Number of existing processes analysed:0
                Number of existing drivers analysed:0
                Number of injected processes analysed:0
                Technologies:
                • EGA enabled
                • AMSI enabled
                Analysis Mode:default
                Analysis stop reason:Timeout
                Detection:MAL
                Classification:mal56.win@22/8@6/3
                • Exclude process from analysis (whitelisted): MpCmdRun.exe, audiodg.exe, sppsvc.exe, RuntimeBroker.exe, ShellExperienceHost.exe, SIHClient.exe, SgrmBroker.exe, backgroundTaskHost.exe, conhost.exe, svchost.exe
                • Excluded IPs from analysis (whitelisted): 142.250.80.46, 142.251.32.99, 142.250.80.110, 142.251.167.84, 142.250.65.174, 142.250.65.206, 142.250.64.110, 142.251.41.14, 23.203.176.221, 142.251.40.206, 172.217.165.142, 142.250.80.78, 142.250.81.238, 142.250.65.227, 142.250.80.67, 184.31.69.3, 172.202.163.200
                • Excluded domains from analysis (whitelisted): fs.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, accounts.google.com, redirector.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
                • Not all processes where analyzed, report is missing behavior information
                • Report size getting too big, too many NtOpenFile calls found.
                • VT rate limit hit for: http://www.bankmenia.fr
                No simulations
                No context
                No context
                No context
                No context
                No context
                Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                File Type:HTML document, ASCII text, with CRLF line terminators
                Category:downloaded
                Size (bytes):4270
                Entropy (8bit):5.001473490621857
                Encrypted:false
                SSDEEP:96:CAzIHyDqF00VIDt1YaPXEfSxNSS05ppmScuWzpRHdM:FmLSnEfuNSn5XmSclk
                MD5:87306133C167AE6AF4FCBC9FE0876B2B
                SHA1:4612A396F54161FBEFB3A375BD8B640A302D03E8
                SHA-256:C14468CDC2213365958A15B100E91D5B1722EFED31F0EB898D838EB7114316FE
                SHA-512:71817738BFA7489837C7377DAD717BA26574305B882C054FBE032608924AC479686FEA19AF443288146BC79CE7D82628FA9CC13FB62B8D340BFA729C587FF687
                Malicious:false
                Reputation:low
                URL:https://www.bankmenia.fr/favicon.ico
                Preview:..<!DOCTYPE html>..<html>..<head>.. <meta name="viewport" content="width=device-width">.. <title>Microsoft page</title>.. <style>.. body {.. padding: 100px 0;.. }.... .column2 {.. padding: 0px 0px 0px 50px.. }.. .. .center {.. display: flex;.. justify-content: center;.. padding: 40px;.. height: 40px.. }.. </style>..</head>..<body>.. <div class="row center">.. <img class="logo" role="presentation" pngsrc="~/Content/newSignInFiles/microsoft_logo.png" svgsrc="~/Content/newSignInFiles/microsoft_logo.png" data-bind="imgSrc" src="/Content/newSignInFiles/microsoft_logo.svg">.. </div>.. <div class="row center"> .. <div class="column1">.. <h3>This page is owned by Microsoft Corporation</h3>.. <p>It is used in simulations to drive end user security awareness.</p><br>.. <p>For a complete list of Microsoft owned URL'
                Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                File Type:ASCII text, with very long lines (50758), with CRLF line terminators
                Category:downloaded
                Size (bytes):51045
                Entropy (8bit):5.248340698798764
                Encrypted:false
                SSDEEP:768:swYw7GuJM+HV0cen/7Kh5rM7V4RxCKg8FW/xsXQUd+FiID65r48Hgp5HRlDV:swX7PMIM7V4R5LFAxTWyuHHgp5HRlR
                MD5:E47A9D976663A4CE4DB5961AF909EB58
                SHA1:12CA7264086B9E543605395947C6671EDDE9AC80
                SHA-256:4F3FAEEC469294B610F6CA82AA1CC2B3368FD56611B31C551C2EE224FEADB411
                SHA-512:BFAF1DBB52F6B55BA44C63E8353F1DE6F25E7A8BD24A366E202F5E78F64A9404C25B31E5A560CE9C61049F3D38B7853CE5091E6E86C0F53AAD491A9C06948A80
                Malicious:false
                Reputation:low
                URL:https://www.bankmenia.fr/Content/bootstrap.min.js
                Preview:/*!.. * Bootstrap v4.1.3 (https://getbootstrap.com/).. * Copyright 2011-2018 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors).. * Licensed under MIT (https://github.com/twbs/bootstrap/blob/master/LICENSE).. */..!function(t,e){"object"==typeof exports&&"undefined"!=typeof module?e(exports,require("jquery"),require("popper.js")):"function"==typeof define&&define.amd?define(["exports","jquery","popper.js"],e):e(t.bootstrap={},t.jQuery,t.Popper)}(this,function(t,e,h){"use strict";function i(t,e){for(var n=0;n<e.length;n++){var i=e[n];i.enumerable=i.enumerable||!1,i.configurable=!0,"value"in i&&(i.writable=!0),Object.defineProperty(t,i.key,i)}}function s(t,e,n){return e&&i(t.prototype,e),n&&i(t,n),t}function l(r){for(var t=1;t<arguments.length;t++){var o=null!=arguments[t]?arguments[t]:{},e=Object.keys(o);"function"==typeof Object.getOwnPropertySymbols&&(e=e.concat(Object.getOwnPropertySymbols(o).filter(function(t){return Object.getOwnPropertyDescriptor(o,t)
                Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                File Type:Unicode text, UTF-8 text, with CRLF line terminators
                Category:downloaded
                Size (bytes):7868
                Entropy (8bit):5.004251051031321
                Encrypted:false
                SSDEEP:96:xmJ0WZhHPQiPuYKJLkjlBiBiP2n9dg3F+vkShbKXiEy60f3359wAs1/ubSjIfXgh:x+0WZhH4lFsjs0/SheXiEy6aAxdubbtm
                MD5:BAD3E4D73AB8638EF18D6B46780111A9
                SHA1:4C253CF88BE490DD7E435BC3ABFBBD18D2011227
                SHA-256:F116760BD4B44C1A29B36DD4D59729BAD9091A9B0E89C2B470BFF0086982A822
                SHA-512:A2B414C322CEAFCFE446C1ED116F2E9D2C8517A71C02B67D0856DA02B3ED3E3C10ABEC101D8D0C60DDF66782FEBD74FAE31BC9AF28A75FDEAEB46B743F8A2BEC
                Malicious:false
                Reputation:low
                URL:https://www.bankmenia.fr/Content/Sign_In_files/style.css
                Preview:* {...margin:0px;...padding:0px;..}..html, body..{.. height:100%;.. width:100%;.. background-color:#ffffff;.. color:#000000;.. font-weight:normal;.. font-family:"Segoe UI" , "Segoe" , "SegoeUI-Regular-final", Tahoma, Helvetica, Arial, sans-serif;.. min-width:500px;.. -ms-overflow-style:-ms-autohiding-scrollbar;..}....body..{.. font-size:0.9em;..}....#noScript { margin:16px; color:Black; }....:lang(en-GB){quotes:'\2018' '\2019' '\201C' '\201D';}..:lang(zh){font-family:....;}....@-ms-viewport { width: device-width; }../*@-moz-viewport { width: device-width; }..@-o-viewport { width: device-width; }../*@-webkit-viewport { width: device-width; }*/..@viewport { width: device-width; }..../* Theme layout styles */....#fullPage, #brandingWrapper..{.. width:100%;.. height:100%;.. background-color:inherit;..}..#brandingWrapper..{.. background-color:#4488dd;..}..#branding..{ .. /* A background image will be added to the #branding element at
                Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                File Type:HTML document, ASCII text, with CRLF line terminators
                Category:downloaded
                Size (bytes):882
                Entropy (8bit):5.074204997279445
                Encrypted:false
                SSDEEP:24:hPzasl+qOupIdMtvcNpPJ5NlYHK8gNVMf:tzBEhupO1NFZl3Gf
                MD5:A83F436E65766588D79942D9D387E905
                SHA1:3BF4D058F47D4917CAFF59B1D670609B8949C744
                SHA-256:E391E27DF01F2F9F9D6D15C8AAB59BAED31299E810C1628C995ED26DFD6D0B57
                SHA-512:3DB54225E4F1275597F12792CF184AF3B914C57427B3653D3E7F85483EF3439B18C34B3F00020AAD5D3B0C0E7471DB965C2DEF5360B3238BC360FFE1146E7672
                Malicious:false
                Reputation:low
                URL:https://www.bankmenia.fr/
                Preview:<!DOCTYPE html>..<html>..<head>.. <title>Ping Successful</title>.. <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">.. <meta http-equiv="X-UA-Compatible" content="IE=10.000">.. <meta name="viewport" content="width=device-width, initial-scale=1.0, maximum-scale=1.0, user-scalable=no">.. <meta http-equiv="cache-control" content="no-cache,no-store">.. <meta http-equiv="pragma" content="no-cache">.. <meta http-equiv="expires" content="-1">.. <link href="/Content/Sign_In_files/style.css" rel="stylesheet" type="text/css" />..</head>..<body>......<!DOCTYPE html>..<html>...<head>....<meta name="viewport" content="width=device-width" />....<title>Ping</title>...</head>..<body style="margin:2em">...<hgroup>....<h1>Ping Successful</h1>...</hgroup>...</body>..</html>....<script src="/Content/bootstrap.min.js"></script>..</body>..</html>
                No static file info

                Download Network PCAP: filteredfull

                • Total Packets: 131
                • 443 (HTTPS)
                • 80 (HTTP)
                • 53 (DNS)
                TimestampSource PortDest PortSource IPDest IP
                Apr 2, 2025 14:52:57.712848902 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:52:58.017043114 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:52:58.673418045 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:52:59.899136066 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:53:02.238327980 CEST8049711208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:02.238475084 CEST4971180192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:02.313715935 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:53:04.225383043 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:04.225496054 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:04.225615025 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:04.226033926 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:04.226073027 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:04.419294119 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:04.419382095 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:04.420638084 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:04.420669079 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:04.420953035 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:04.469835043 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:05.245032072 CEST4973480192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.245255947 CEST4973580192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.299345970 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.299458981 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.299722910 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.299722910 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.299810886 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.336560965 CEST804973413.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.336694002 CEST4973480192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.336760998 CEST804973513.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.336971998 CEST4973580192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.596970081 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.597060919 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.597615004 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.597670078 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.601253986 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.601290941 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.601623058 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:05.601862907 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:05.644268036 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.380379915 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:06.689330101 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:06.693926096 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.694876909 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.694943905 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.695602894 CEST49736443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.695638895 CEST4434973613.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.753453016 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.753566980 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.753640890 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.753977060 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.754035950 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.754203081 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.754235029 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.754254103 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:06.754264116 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:06.754271030 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.049901962 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.069123983 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:07.069181919 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.069222927 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:07.069230080 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.079401016 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.081010103 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:07.081095934 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.081193924 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:07.081211090 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:07.117424011 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:53:07.304713964 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:08.152854919 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.152923107 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.153084993 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.153110027 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.153258085 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.153799057 CEST49739443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.153821945 CEST4434973913.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273570061 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273650885 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273694038 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273730993 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.273821115 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273869038 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.273893118 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.273905993 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.273947001 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.420311928 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.420375109 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.420496941 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.420579910 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.420670986 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.494381905 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.494443893 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.494496107 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.494573116 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.494613886 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.494637012 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.512609959 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:08.625107050 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.625185013 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.625596046 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.625720978 CEST4434973813.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.625792027 CEST49738443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.654923916 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.655019999 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:08.655107021 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.655236959 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:08.655261993 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:09.035737991 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:09.035830975 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:09.038428068 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:09.038497925 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:09.038912058 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:09.038938999 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:09.039959908 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:09.040290117 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:09.084295988 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.256166935 CEST4971180192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:10.264882088 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:10.360377073 CEST8049711208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:10.434072018 CEST804973513.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.434854031 CEST4973580192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.441188097 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.441248894 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.441309929 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.441366911 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.441431046 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.443944931 CEST4973580192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.451612949 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.451765060 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.451845884 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.451875925 CEST4434974113.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.451901913 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.452038050 CEST49741443192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.454437971 CEST804973413.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.454504967 CEST4973480192.168.2.413.107.246.40
                Apr 2, 2025 14:53:10.541551113 CEST804973513.107.246.40192.168.2.4
                Apr 2, 2025 14:53:10.564030886 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:10.575545073 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.576020002 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.576067924 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.678019047 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.679106951 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.679117918 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.679127932 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.679137945 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.679179907 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.679280043 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.680443048 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.680948973 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.681018114 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.681510925 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.681581020 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.700108051 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.779866934 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.797527075 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.800082922 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.800096035 CEST44349709131.253.33.254192.168.2.4
                Apr 2, 2025 14:53:10.800184011 CEST49709443192.168.2.4131.253.33.254
                Apr 2, 2025 14:53:10.850969076 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:10.851294041 CEST49747443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:10.851340055 CEST44349747204.79.197.222192.168.2.4
                Apr 2, 2025 14:53:10.851450920 CEST49747443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:10.851634979 CEST49747443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:10.851639986 CEST44349747204.79.197.222192.168.2.4
                Apr 2, 2025 14:53:10.923227072 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:11.149503946 CEST44349747204.79.197.222192.168.2.4
                Apr 2, 2025 14:53:11.149571896 CEST49747443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:11.157387972 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:11.172985077 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:11.766737938 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:12.128315926 CEST4973480192.168.2.413.107.246.40
                Apr 2, 2025 14:53:12.243041992 CEST804973413.107.246.40192.168.2.4
                Apr 2, 2025 14:53:12.377403021 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:12.969960928 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:14.428845882 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:14.428896904 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:14.428965092 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:14.781738043 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:15.376799107 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:15.735411882 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:16.098216057 CEST49732443192.168.2.4142.251.40.228
                Apr 2, 2025 14:53:16.098280907 CEST44349732142.251.40.228192.168.2.4
                Apr 2, 2025 14:53:16.725706100 CEST49671443192.168.2.4204.79.197.203
                Apr 2, 2025 14:53:19.594341040 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:20.180442095 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:25.347201109 CEST49678443192.168.2.420.189.173.27
                Apr 2, 2025 14:53:29.205996990 CEST4968180192.168.2.42.17.190.73
                Apr 2, 2025 14:53:29.784117937 CEST49680443192.168.2.4204.79.197.222
                Apr 2, 2025 14:53:42.506237030 CEST8049712208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:42.506421089 CEST4971280192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:42.506525040 CEST4971280192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:42.813869953 CEST4971280192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:42.908951998 CEST8049712208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:43.430319071 CEST8049715208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:43.430613995 CEST4971580192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.430614948 CEST4971580192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.726622105 CEST8049718208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:43.726752996 CEST4971880192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.729744911 CEST8049717208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:43.729844093 CEST4971780192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.729926109 CEST4971780192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.735826969 CEST4971580192.168.2.4208.89.73.21
                Apr 2, 2025 14:53:43.735925913 CEST4971480192.168.2.4142.251.35.163
                Apr 2, 2025 14:53:43.826272964 CEST8049717208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:43.829958916 CEST8049714142.251.35.163192.168.2.4
                Apr 2, 2025 14:53:43.830014944 CEST4971480192.168.2.4142.251.35.163
                Apr 2, 2025 14:53:43.831552029 CEST8049715208.89.73.21192.168.2.4
                Apr 2, 2025 14:53:44.130743027 CEST49716443192.168.2.423.44.203.176
                Apr 2, 2025 14:53:44.131042004 CEST4971880192.168.2.4208.89.73.21
                Apr 2, 2025 14:54:04.192570925 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:04.192624092 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:04.192704916 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:04.197484970 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:04.197500944 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:04.394774914 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:04.395124912 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:04.395167112 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:14.382332087 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:14.382478952 CEST44349753142.251.40.228192.168.2.4
                Apr 2, 2025 14:54:14.382575035 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:16.096357107 CEST49753443192.168.2.4142.251.40.228
                Apr 2, 2025 14:54:16.096431017 CEST44349753142.251.40.228192.168.2.4
                TimestampSource PortDest PortSource IPDest IP
                Apr 2, 2025 14:53:00.096453905 CEST53639881.1.1.1192.168.2.4
                Apr 2, 2025 14:53:00.157397985 CEST53522351.1.1.1192.168.2.4
                Apr 2, 2025 14:53:00.858725071 CEST53574761.1.1.1192.168.2.4
                Apr 2, 2025 14:53:00.999289036 CEST53646601.1.1.1192.168.2.4
                Apr 2, 2025 14:53:04.126729012 CEST5775953192.168.2.41.1.1.1
                Apr 2, 2025 14:53:04.126955032 CEST5708953192.168.2.41.1.1.1
                Apr 2, 2025 14:53:04.223897934 CEST53570891.1.1.1192.168.2.4
                Apr 2, 2025 14:53:04.224292994 CEST53577591.1.1.1192.168.2.4
                Apr 2, 2025 14:53:05.101942062 CEST6176253192.168.2.41.1.1.1
                Apr 2, 2025 14:53:05.102221966 CEST5667553192.168.2.41.1.1.1
                Apr 2, 2025 14:53:05.118309021 CEST6247053192.168.2.41.1.1.1
                Apr 2, 2025 14:53:05.118532896 CEST5461953192.168.2.41.1.1.1
                Apr 2, 2025 14:53:05.240283966 CEST53566751.1.1.1192.168.2.4
                Apr 2, 2025 14:53:05.244297981 CEST53617621.1.1.1192.168.2.4
                Apr 2, 2025 14:53:05.265208960 CEST53624701.1.1.1192.168.2.4
                Apr 2, 2025 14:53:05.298021078 CEST53546191.1.1.1192.168.2.4
                Apr 2, 2025 14:53:18.007711887 CEST53612441.1.1.1192.168.2.4
                Apr 2, 2025 14:53:36.806869984 CEST53524181.1.1.1192.168.2.4
                Apr 2, 2025 14:53:59.291941881 CEST53507561.1.1.1192.168.2.4
                Apr 2, 2025 14:53:59.587512970 CEST53647231.1.1.1192.168.2.4
                Apr 2, 2025 14:54:02.603986025 CEST53543501.1.1.1192.168.2.4
                Apr 2, 2025 14:54:05.882499933 CEST138138192.168.2.4192.168.2.255
                TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                Apr 2, 2025 14:53:04.126729012 CEST192.168.2.41.1.1.10x4313Standard query (0)www.google.comA (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:04.126955032 CEST192.168.2.41.1.1.10x398aStandard query (0)www.google.com65IN (0x0001)false
                Apr 2, 2025 14:53:05.101942062 CEST192.168.2.41.1.1.10x7305Standard query (0)www.bankmenia.frA (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:05.102221966 CEST192.168.2.41.1.1.10xae76Standard query (0)www.bankmenia.fr65IN (0x0001)false
                Apr 2, 2025 14:53:05.118309021 CEST192.168.2.41.1.1.10xd6bdStandard query (0)www.bankmenia.frA (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:05.118532896 CEST192.168.2.41.1.1.10xe7feStandard query (0)www.bankmenia.fr65IN (0x0001)false
                TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                Apr 2, 2025 14:53:04.223897934 CEST1.1.1.1192.168.2.40x398aNo error (0)www.google.com65IN (0x0001)false
                Apr 2, 2025 14:53:04.224292994 CEST1.1.1.1192.168.2.40x4313No error (0)www.google.com142.251.40.228A (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:05.240283966 CEST1.1.1.1192.168.2.40xae76No error (0)www.bankmenia.frastprod02.azurefd.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.240283966 CEST1.1.1.1192.168.2.40xae76No error (0)astprod02.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.240283966 CEST1.1.1.1192.168.2.40xae76No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0010.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.244297981 CEST1.1.1.1192.168.2.40x7305No error (0)www.bankmenia.frastprod02.azurefd.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.244297981 CEST1.1.1.1192.168.2.40x7305No error (0)astprod02.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.244297981 CEST1.1.1.1192.168.2.40x7305No error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.244297981 CEST1.1.1.1192.168.2.40x7305No error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.244297981 CEST1.1.1.1192.168.2.40x7305No error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:05.265208960 CEST1.1.1.1192.168.2.40xd6bdNo error (0)www.bankmenia.frastprod02.azurefd.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.265208960 CEST1.1.1.1192.168.2.40xd6bdNo error (0)astprod02.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.265208960 CEST1.1.1.1192.168.2.40xd6bdNo error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.265208960 CEST1.1.1.1192.168.2.40xd6bdNo error (0)shed.dual-low.s-part-0012.t-0009.t-msedge.nets-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.265208960 CEST1.1.1.1192.168.2.40xd6bdNo error (0)s-part-0012.t-0009.t-msedge.net13.107.246.40A (IP address)IN (0x0001)false
                Apr 2, 2025 14:53:05.298021078 CEST1.1.1.1192.168.2.40xe7feNo error (0)www.bankmenia.frastprod02.azurefd.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.298021078 CEST1.1.1.1192.168.2.40xe7feNo error (0)astprod02.azurefd.netazurefd-t-prod.trafficmanager.netCNAME (Canonical name)IN (0x0001)false
                Apr 2, 2025 14:53:05.298021078 CEST1.1.1.1192.168.2.40xe7feNo error (0)azurefd-t-prod.trafficmanager.netshed.dual-low.s-part-0012.t-0009.t-msedge.netCNAME (Canonical name)IN (0x0001)false
                • www.bankmenia.fr
                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                0192.168.2.44973613.107.246.404435304C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2025-04-02 12:53:05 UTC666OUTGET / HTTP/1.1
                Host: www.bankmenia.fr
                Connection: keep-alive
                Upgrade-Insecure-Requests: 1
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                sec-ch-ua-mobile: ?0
                sec-ch-ua-platform: "Windows"
                Sec-Fetch-Site: none
                Sec-Fetch-Mode: navigate
                Sec-Fetch-User: ?1
                Sec-Fetch-Dest: document
                Accept-Encoding: gzip, deflate, br, zstd
                Accept-Language: en-US,en;q=0.9
                2025-04-02 12:53:06 UTC292INHTTP/1.1 200 OK
                Date: Wed, 02 Apr 2025 12:53:06 GMT
                Content-Type: text/html; charset=utf-8
                Transfer-Encoding: chunked
                Connection: close
                Strict-Transport-Security: max-age=2592000
                x-azure-ref: 20250402T125305Z-17cccd5449b6sxz8hC1EWRrtxw00000015u0000000001v06
                X-Cache: CONFIG_NOCACHE
                2025-04-02 12:53:06 UTC889INData Raw: 33 37 32 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0d 0a 3c 68 74 6d 6c 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 74 69 74 6c 65 3e 50 69 6e 67 20 53 75 63 63 65 73 73 66 75 6c 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 43 6f 6e 74 65 6e 74 2d 54 79 70 65 22 20 63 6f 6e 74 65 6e 74 3d 22 74 65 78 74 2f 68 74 6d 6c 3b 20 63 68 61 72 73 65 74 3d 55 54 46 2d 38 22 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 68 74 74 70 2d 65 71 75 69 76 3d 22 58 2d 55 41 2d 43 6f 6d 70 61 74 69 62 6c 65 22 20 63 6f 6e 74 65 6e 74 3d 22 49 45 3d 31 30 2e 30 30 30 22 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65
                Data Ascii: 372<!DOCTYPE html><html><head> <title>Ping Successful</title> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8"> <meta http-equiv="X-UA-Compatible" content="IE=10.000"> <meta name="viewport" content="width=device
                2025-04-02 12:53:06 UTC5INData Raw: 30 0d 0a 0d 0a
                Data Ascii: 0


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                1192.168.2.44973913.107.246.404435304C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2025-04-02 12:53:07 UTC569OUTGET /Content/Sign_In_files/style.css HTTP/1.1
                Host: www.bankmenia.fr
                Connection: keep-alive
                sec-ch-ua-platform: "Windows"
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                sec-ch-ua-mobile: ?0
                Accept: text/css,*/*;q=0.1
                Sec-Fetch-Site: same-origin
                Sec-Fetch-Mode: no-cors
                Sec-Fetch-Dest: style
                Referer: https://www.bankmenia.fr/
                Accept-Encoding: gzip, deflate, br, zstd
                Accept-Language: en-US,en;q=0.9
                2025-04-02 12:53:08 UTC363INHTTP/1.1 200 OK
                Date: Wed, 02 Apr 2025 12:53:08 GMT
                Content-Type: text/css
                Content-Length: 7868
                Connection: close
                ETag: "1db9e2eaca8e8bc"
                Last-Modified: Wed, 26 Mar 2025 09:08:44 GMT
                Strict-Transport-Security: max-age=2592000
                x-azure-ref: 20250402T125307Z-17cccd5449bkk7bshC1EWR4rww00000015sg000000005w91
                X-Cache: CONFIG_NOCACHE
                Accept-Ranges: bytes
                2025-04-02 12:53:08 UTC7868INData Raw: 2a 20 7b 0d 0a 09 6d 61 72 67 69 6e 3a 30 70 78 3b 0d 0a 09 70 61 64 64 69 6e 67 3a 30 70 78 3b 0d 0a 7d 0d 0a 68 74 6d 6c 2c 20 62 6f 64 79 0d 0a 7b 0d 0a 20 20 20 20 68 65 69 67 68 74 3a 31 30 30 25 3b 0d 0a 20 20 20 20 77 69 64 74 68 3a 31 30 30 25 3b 0d 0a 20 20 20 20 62 61 63 6b 67 72 6f 75 6e 64 2d 63 6f 6c 6f 72 3a 23 66 66 66 66 66 66 3b 0d 0a 20 20 20 20 63 6f 6c 6f 72 3a 23 30 30 30 30 30 30 3b 0d 0a 20 20 20 20 66 6f 6e 74 2d 77 65 69 67 68 74 3a 6e 6f 72 6d 61 6c 3b 0d 0a 20 20 20 20 66 6f 6e 74 2d 66 61 6d 69 6c 79 3a 22 53 65 67 6f 65 20 55 49 22 20 2c 20 22 53 65 67 6f 65 22 20 2c 20 22 53 65 67 6f 65 55 49 2d 52 65 67 75 6c 61 72 2d 66 69 6e 61 6c 22 2c 20 54 61 68 6f 6d 61 2c 20 48 65 6c 76 65 74 69 63 61 2c 20 41 72 69 61 6c 2c 20 73 61
                Data Ascii: * {margin:0px;padding:0px;}html, body{ height:100%; width:100%; background-color:#ffffff; color:#000000; font-weight:normal; font-family:"Segoe UI" , "Segoe" , "SegoeUI-Regular-final", Tahoma, Helvetica, Arial, sa


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                2192.168.2.44973813.107.246.404435304C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2025-04-02 12:53:07 UTC548OUTGET /Content/bootstrap.min.js HTTP/1.1
                Host: www.bankmenia.fr
                Connection: keep-alive
                sec-ch-ua-platform: "Windows"
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                sec-ch-ua-mobile: ?0
                Accept: */*
                Sec-Fetch-Site: same-origin
                Sec-Fetch-Mode: no-cors
                Sec-Fetch-Dest: script
                Referer: https://www.bankmenia.fr/
                Accept-Encoding: gzip, deflate, br, zstd
                Accept-Language: en-US,en;q=0.9
                2025-04-02 12:53:08 UTC371INHTTP/1.1 200 OK
                Date: Wed, 02 Apr 2025 12:53:08 GMT
                Content-Type: text/javascript
                Content-Length: 51045
                Connection: close
                ETag: "1db9e332a6fc7e5"
                Last-Modified: Wed, 26 Mar 2025 09:40:53 GMT
                Strict-Transport-Security: max-age=2592000
                x-azure-ref: 20250402T125307Z-17cccd5449blprb2hC1EWRvwmn00000015ng00000000e8fd
                X-Cache: CONFIG_NOCACHE
                Accept-Ranges: bytes
                2025-04-02 12:53:08 UTC16013INData Raw: 2f 2a 21 0d 0a 20 20 2a 20 42 6f 6f 74 73 74 72 61 70 20 76 34 2e 31 2e 33 20 28 68 74 74 70 73 3a 2f 2f 67 65 74 62 6f 6f 74 73 74 72 61 70 2e 63 6f 6d 2f 29 0d 0a 20 20 2a 20 43 6f 70 79 72 69 67 68 74 20 32 30 31 31 2d 32 30 31 38 20 54 68 65 20 42 6f 6f 74 73 74 72 61 70 20 41 75 74 68 6f 72 73 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 67 72 61 70 68 73 2f 63 6f 6e 74 72 69 62 75 74 6f 72 73 29 0d 0a 20 20 2a 20 4c 69 63 65 6e 73 65 64 20 75 6e 64 65 72 20 4d 49 54 20 28 68 74 74 70 73 3a 2f 2f 67 69 74 68 75 62 2e 63 6f 6d 2f 74 77 62 73 2f 62 6f 6f 74 73 74 72 61 70 2f 62 6c 6f 62 2f 6d 61 73 74 65 72 2f 4c 49 43 45 4e 53 45 29 0d 0a 20 20 2a 2f 0d 0a 21 66 75 6e 63 74 69 6f 6e 28 74
                Data Ascii: /*! * Bootstrap v4.1.3 (https://getbootstrap.com/) * Copyright 2011-2018 The Bootstrap Authors (https://github.com/twbs/bootstrap/graphs/contributors) * Licensed under MIT (https://github.com/twbs/bootstrap/blob/master/LICENSE) */!function(t
                2025-04-02 12:53:08 UTC371INData Raw: 61 70 73 65 22 5d 5b 64 61 74 61 2d 70 61 72 65 6e 74 3d 22 27 2b 74 68 69 73 2e 5f 63 6f 6e 66 69 67 2e 70 61 72 65 6e 74 2b 27 22 5d 27 2c 69 3d 5b 5d 2e 73 6c 69 63 65 2e 63 61 6c 6c 28 74 2e 71 75 65 72 79 53 65 6c 65 63 74 6f 72 41 6c 6c 28 65 29 29 3b 72 65 74 75 72 6e 20 73 74 28 69 29 2e 65 61 63 68 28 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 6e 2e 5f 61 64 64 41 72 69 61 41 6e 64 43 6f 6c 6c 61 70 73 65 64 43 6c 61 73 73 28 61 2e 5f 67 65 74 54 61 72 67 65 74 46 72 6f 6d 45 6c 65 6d 65 6e 74 28 65 29 2c 5b 65 5d 29 7d 29 2c 74 7d 2c 74 2e 5f 61 64 64 41 72 69 61 41 6e 64 43 6f 6c 6c 61 70 73 65 64 43 6c 61 73 73 3d 66 75 6e 63 74 69 6f 6e 28 74 2c 65 29 7b 69 66 28 74 29 7b 76 61 72 20 6e 3d 73 74 28 74 29 2e 68 61 73 43 6c 61 73 73 28 67 74 29
                Data Ascii: apse"][data-parent="'+this._config.parent+'"]',i=[].slice.call(t.querySelectorAll(e));return st(i).each(function(t,e){n._addAriaAndCollapsedClass(a._getTargetFromElement(e),[e])}),t},t._addAriaAndCollapsedClass=function(t,e){if(t){var n=st(t).hasClass(gt)
                2025-04-02 12:53:08 UTC16384INData Raw: 6f 72 46 72 6f 6d 45 6c 65 6d 65 6e 74 28 74 29 3b 72 65 74 75 72 6e 20 65 3f 64 6f 63 75 6d 65 6e 74 2e 71 75 65 72 79 53 65 6c 65 63 74 6f 72 28 65 29 3a 6e 75 6c 6c 7d 2c 61 2e 5f 6a 51 75 65 72 79 49 6e 74 65 72 66 61 63 65 3d 66 75 6e 63 74 69 6f 6e 28 69 29 7b 72 65 74 75 72 6e 20 74 68 69 73 2e 65 61 63 68 28 66 75 6e 63 74 69 6f 6e 28 29 7b 76 61 72 20 74 3d 73 74 28 74 68 69 73 29 2c 65 3d 74 2e 64 61 74 61 28 6c 74 29 2c 6e 3d 6c 28 7b 7d 2c 75 74 2c 74 2e 64 61 74 61 28 29 2c 22 6f 62 6a 65 63 74 22 3d 3d 74 79 70 65 6f 66 20 69 26 26 69 3f 69 3a 7b 7d 29 3b 69 66 28 21 65 26 26 6e 2e 74 6f 67 67 6c 65 26 26 2f 73 68 6f 77 7c 68 69 64 65 2f 2e 74 65 73 74 28 69 29 26 26 28 6e 2e 74 6f 67 67 6c 65 3d 21 31 29 2c 65 7c 7c 28 65 3d 6e 65 77 20 61
                Data Ascii: orFromElement(t);return e?document.querySelector(e):null},a._jQueryInterface=function(i){return this.each(function(){var t=st(this),e=t.data(lt),n=l({},ut,t.data(),"object"==typeof i&&i?i:{});if(!e&&n.toggle&&/show|hide/.test(i)&&(n.toggle=!1),e||(e=new a
                2025-04-02 12:53:08 UTC16384INData Raw: 74 68 72 6f 77 20 6e 65 77 20 54 79 70 65 45 72 72 6f 72 28 22 42 6f 6f 74 73 74 72 61 70 20 74 6f 6f 6c 74 69 70 73 20 72 65 71 75 69 72 65 20 50 6f 70 70 65 72 2e 6a 73 20 28 68 74 74 70 73 3a 2f 2f 70 6f 70 70 65 72 2e 6a 73 2e 6f 72 67 29 22 29 3b 74 68 69 73 2e 5f 69 73 45 6e 61 62 6c 65 64 3d 21 30 2c 74 68 69 73 2e 5f 74 69 6d 65 6f 75 74 3d 30 2c 74 68 69 73 2e 5f 68 6f 76 65 72 53 74 61 74 65 3d 22 22 2c 74 68 69 73 2e 5f 61 63 74 69 76 65 54 72 69 67 67 65 72 3d 7b 7d 2c 74 68 69 73 2e 5f 70 6f 70 70 65 72 3d 6e 75 6c 6c 2c 74 68 69 73 2e 65 6c 65 6d 65 6e 74 3d 74 2c 74 68 69 73 2e 63 6f 6e 66 69 67 3d 74 68 69 73 2e 5f 67 65 74 43 6f 6e 66 69 67 28 65 29 2c 74 68 69 73 2e 74 69 70 3d 6e 75 6c 6c 2c 74 68 69 73 2e 5f 73 65 74 4c 69 73 74 65 6e
                Data Ascii: throw new TypeError("Bootstrap tooltips require Popper.js (https://popper.js.org)");this._isEnabled=!0,this._timeout=0,this._hoverState="",this._activeTrigger={},this._popper=null,this.element=t,this.config=this._getConfig(e),this.tip=null,this._setListen
                2025-04-02 12:53:08 UTC1893INData Raw: 2c 6e 29 7b 76 61 72 20 69 3d 74 68 69 73 2c 72 3d 28 22 55 4c 22 3d 3d 3d 65 2e 6e 6f 64 65 4e 61 6d 65 3f 62 6e 28 65 29 2e 66 69 6e 64 28 52 6e 29 3a 62 6e 28 65 29 2e 63 68 69 6c 64 72 65 6e 28 4c 6e 29 29 5b 30 5d 2c 6f 3d 6e 26 26 72 26 26 62 6e 28 72 29 2e 68 61 73 43 6c 61 73 73 28 6b 6e 29 2c 73 3d 66 75 6e 63 74 69 6f 6e 28 29 7b 72 65 74 75 72 6e 20 69 2e 5f 74 72 61 6e 73 69 74 69 6f 6e 43 6f 6d 70 6c 65 74 65 28 74 2c 72 2c 6e 29 7d 3b 69 66 28 72 26 26 6f 29 7b 76 61 72 20 61 3d 46 6e 2e 67 65 74 54 72 61 6e 73 69 74 69 6f 6e 44 75 72 61 74 69 6f 6e 46 72 6f 6d 45 6c 65 6d 65 6e 74 28 72 29 3b 62 6e 28 72 29 2e 6f 6e 65 28 46 6e 2e 54 52 41 4e 53 49 54 49 4f 4e 5f 45 4e 44 2c 73 29 2e 65 6d 75 6c 61 74 65 54 72 61 6e 73 69 74 69 6f 6e 45 6e
                Data Ascii: ,n){var i=this,r=("UL"===e.nodeName?bn(e).find(Rn):bn(e).children(Ln))[0],o=n&&r&&bn(r).hasClass(kn),s=function(){return i._transitionComplete(t,r,n)};if(r&&o){var a=Fn.getTransitionDurationFromElement(r);bn(r).one(Fn.TRANSITION_END,s).emulateTransitionEn


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                3192.168.2.44974113.107.246.404435304C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2025-04-02 12:53:09 UTC595OUTGET /favicon.ico HTTP/1.1
                Host: www.bankmenia.fr
                Connection: keep-alive
                sec-ch-ua-platform: "Windows"
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
                sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
                sec-ch-ua-mobile: ?0
                Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                Sec-Fetch-Site: same-origin
                Sec-Fetch-Mode: no-cors
                Sec-Fetch-Dest: image
                Referer: https://www.bankmenia.fr/
                Accept-Encoding: gzip, deflate, br, zstd
                Accept-Language: en-US,en;q=0.9
                2025-04-02 12:53:10 UTC311INHTTP/1.1 500 Internal Server Error
                Date: Wed, 02 Apr 2025 12:53:10 GMT
                Content-Type: text/html; charset=utf-8
                Transfer-Encoding: chunked
                Connection: close
                Strict-Transport-Security: max-age=2592000
                x-azure-ref: 20250402T125309Z-17cccd5449bj2v8mhC1EWR5asn0000000g90000000000m8k
                X-Cache: CONFIG_NOCACHE
                2025-04-02 12:53:10 UTC4278INData Raw: 31 30 61 65 0d 0a 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 3e 0d 0a 3c 68 74 6d 6c 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 20 20 20 20 3c 6d 65 74 61 20 6e 61 6d 65 3d 22 76 69 65 77 70 6f 72 74 22 20 63 6f 6e 74 65 6e 74 3d 22 77 69 64 74 68 3d 64 65 76 69 63 65 2d 77 69 64 74 68 22 3e 0d 0a 20 20 20 20 3c 74 69 74 6c 65 3e 4d 69 63 72 6f 73 6f 66 74 20 70 61 67 65 3c 2f 74 69 74 6c 65 3e 0d 0a 20 20 20 20 3c 73 74 79 6c 65 3e 0d 0a 20 20 20 20 20 20 20 20 62 6f 64 79 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 70 61 64 64 69 6e 67 3a 20 31 30 30 70 78 20 30 3b 0d 0a 20 20 20 20 20 20 20 20 7d 0d 0a 0d 0a 20 20 20 20 20 20 20 20 2e 63 6f 6c 75 6d 6e 32 20 7b 0d 0a 20 20 20 20 20 20 20 20 20 20 20 20 70 61 64 64 69 6e 67 3a 20 30 70 78 20 30 70 78 20
                Data Ascii: 10ae<!DOCTYPE html><html><head> <meta name="viewport" content="width=device-width"> <title>Microsoft page</title> <style> body { padding: 100px 0; } .column2 { padding: 0px 0px
                2025-04-02 12:53:10 UTC5INData Raw: 30 0d 0a 0d 0a
                Data Ascii: 0


                020406080s020406080100

                Click to jump to process

                020406080s0.0050100MB

                Click to jump to process

                Target ID:1
                Start time:08:52:54
                Start date:02/04/2025
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
                Imagebase:0x7ff786830000
                File size:3'388'000 bytes
                MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:false

                Target ID:2
                Start time:08:52:58
                Start date:02/04/2025
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2268,i,9184926467893170132,2237659281389485492,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=2308 /prefetch:3
                Imagebase:0x7ff786830000
                File size:3'388'000 bytes
                MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:false

                Target ID:4
                Start time:08:53:04
                Start date:02/04/2025
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "http://www.bankmenia.fr"
                Imagebase:0x7ff786830000
                File size:3'388'000 bytes
                MD5 hash:E81F54E6C1129887AEA47E7D092680BF
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:true
                There is hidden Windows Behavior. Click on Show Windows Behavior to show it.
                There is hidden Windows Behavior. Click on Show Windows Behavior to show it.

                No disassembly