Windows
Analysis Report
https://myrnao.ca/cas/login?gateway=true&service=https://lebenswelthospitality.com/legend/key.php
Overview
General Information
Detection
Score: | 52 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 4536 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 6148 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2380,i ,130370194 7271037243 4,93942867 2274455691 9,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion --var iations-se ed-version =20250306- 183004.429 000 --mojo -platform- channel-ha ndle=2408 /prefetch: 3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 4128 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://myrna o.ca/cas/l ogin?gatew ay=true&se rvice=http s://lebens welthospit ality.com/ legend/key .php" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | HTTP traffic: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTP traffic: | ||
Source: | HTTP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 1 Web Protocols | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | Software Packing | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | 1 Ingress Tool Transfer | Scheduled Transfer | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
myrnao.ca | 66.46.58.106 | true | true | unknown | |
lebenswelthospitality.com | 136.243.112.230 | true | true | unknown | |
24editor.com | 139.162.185.151 | true | false | unknown | |
1004834818.rsc.cdn77.org | 79.127.206.207 | true | false | high | |
security-us.m.mimecastprotect.com | 170.10.128.88 | true | false | high | |
www.google.com | 142.251.40.228 | true | false | high | |
img.icons8.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | high | ||
false | unknown | ||
true |
| unknown | |
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false |
| unknown | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
66.46.58.106 | myrnao.ca | Canada | 15290 | ALLST-15290CA | true | |
142.251.40.228 | www.google.com | United States | 15169 | GOOGLEUS | false | |
139.162.185.151 | 24editor.com | Netherlands | 63949 | LINODE-APLinodeLLCUS | false | |
79.127.206.207 | 1004834818.rsc.cdn77.org | Czech Republic | 9080 | GINCzechRepublicEUCZ | false | |
136.243.112.230 | lebenswelthospitality.com | Germany | 24940 | HETZNER-ASDE | true | |
170.10.132.89 | unknown | United States | 30031 | MIMECAST-US | false | |
79.127.206.235 | unknown | Czech Republic | 9080 | GINCzechRepublicEUCZ | false | |
170.10.128.88 | security-us.m.mimecastprotect.com | United States | 30031 | MIMECAST-US | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1654946 |
Start date and time: | 2025-04-02 20:14:50 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 18s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://myrnao.ca/cas/login?gateway=true&service=https://lebenswelthospitality.com/legend/key.php |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal52.phis.win@22/10@16/9 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, RuntimeBroker.exe, ShellExperienceHost.exe, SIHC lient.exe, SgrmBroker.exe, bac kgroundTaskHost.exe, conhost.e xe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.250.80.14, 142 .251.40.195, 142.250.31.84, 14 2.251.35.174, 142.250.65.238, 142.250.80.110, 142.250.65.206 , 142.251.40.170, 142.250.80.1 0, 142.251.40.138, 142.250.80. 74, 142.250.64.74, 142.250.65. 202, 142.251.41.10, 142.251.35 .170, 142.251.40.106, 142.250. 80.42, 142.250.72.106, 142.251 .40.202, 142.250.80.106, 142.2 50.176.202, 142.250.65.170, 14 2.251.40.234, 142.251.40.238, 142.250.81.238, 142.251.40.206 , 142.251.41.3, 142.250.65.195 , 184.31.69.3, 131.253.33.254, 20.109.210.53 - Excluded domains from analysis
(whitelisted): a-ring-fallbac k.msedge.net, fs.microsoft.com , clients2.google.com, edgedl. me.gvt1.com, accounts.google.c om, redirector.gvt1.com, conte nt-autofill.googleapis.com, sl scr.update.microsoft.com, upda te.googleapis.com, clientservi ces.googleapis.com, clients.l. google.com, fe3cr.delivery.mp. microsoft.com - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//myrnao.ca/cas/login?gateway= true&service=https://leben swelthospitality.com/legend/ke y.php
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1150 |
Entropy (8bit): | 3.28732561467651 |
Encrypted: | false |
SSDEEP: | 12:qmiiaZgszpGHr0Tn8D+c35COXpapjD4k1PZiwae4vPdeegbOh6mv8n:AusLGfEhB9a6mE |
MD5: | 44385673EEF386EC121603CD302FD05F |
SHA1: | C15A6D61054FFB16D8DF4DA943B545349FC82631 |
SHA-256: | 069E8A1E31ABA074CC28BC9D6D54C67495BD42A02115DC232BE7C8D9F83E40A8 |
SHA-512: | E80C43BE006B5EEB66F98192B177163E92B75A5CD0AAA880ADE24A67DB7A1F29A0CB958B158244DB47386CDC775DD025E0FC1F97E3D7ADCDDB76D347F3073DA7 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 736 |
Entropy (8bit): | 7.577039599980696 |
Encrypted: | false |
SSDEEP: | 12:6v/7o/6To9vpzjowqRmYUAwf3pJODV54WKCm+5X6/UrIILGFPV7Jsw80BUgTEPIG:p/6svpzjLqRhUfJuL4WKd+2kfLy/ttB6 |
MD5: | 24F4A960AB905EF542834509A6037210 |
SHA1: | 99A3554CC448A3CAAA0BB87D2EAA8F9DC91D4C8A |
SHA-256: | ADB6BCBC3EE624B3CCF1C15E160FE313F9EBDD117A692DF3C522A70BF873F04D |
SHA-512: | CC0BADEB7F96507EAFB45504A5DA48CBFF218B3A7B1DF50EA41EFA9DFB40D3D8BC05A02FAF78E09AD24A1481639E1EBB7C2FB0AF7C53AC3FAEF21AFF9A6DF70C |
Malicious: | false |
Reputation: | low |
URL: | https://img.icons8.com/ios-filled/50/microsoft-admin.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 736 |
Entropy (8bit): | 7.577039599980696 |
Encrypted: | false |
SSDEEP: | 12:6v/7o/6To9vpzjowqRmYUAwf3pJODV54WKCm+5X6/UrIILGFPV7Jsw80BUgTEPIG:p/6svpzjLqRhUfJuL4WKd+2kfLy/ttB6 |
MD5: | 24F4A960AB905EF542834509A6037210 |
SHA1: | 99A3554CC448A3CAAA0BB87D2EAA8F9DC91D4C8A |
SHA-256: | ADB6BCBC3EE624B3CCF1C15E160FE313F9EBDD117A692DF3C522A70BF873F04D |
SHA-512: | CC0BADEB7F96507EAFB45504A5DA48CBFF218B3A7B1DF50EA41EFA9DFB40D3D8BC05A02FAF78E09AD24A1481639E1EBB7C2FB0AF7C53AC3FAEF21AFF9A6DF70C |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.875 |
Encrypted: | false |
SSDEEP: | 3:HoUinYn:IUyY |
MD5: | 903747EA4323C522742842A52CE710C9 |
SHA1: | 9F806EA4288867A31A4AD53AC171AA4029DF182B |
SHA-256: | 4BD8B60F91849C936AE45615145A7B7BE2CF803322A30BABBAE7267A142CA5BB |
SHA-512: | EEF73DC29A38ED70FFCFC321931BCB5B5A29FAAC356E8F6D84F57C532EEF44AE75021C341CF7DAE26B8211924A1C0E0EC4735F6BFC4AF3970A48EB63BFB7895F |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTM0LjAuNjk5OC4zNhIZCUhrT7tQexqqEgUNg6hbPSHQkBwTzwrdYQ==?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1150 |
Entropy (8bit): | 3.28732561467651 |
Encrypted: | false |
SSDEEP: | 12:qmiiaZgszpGHr0Tn8D+c35COXpapjD4k1PZiwae4vPdeegbOh6mv8n:AusLGfEhB9a6mE |
MD5: | 44385673EEF386EC121603CD302FD05F |
SHA1: | C15A6D61054FFB16D8DF4DA943B545349FC82631 |
SHA-256: | 069E8A1E31ABA074CC28BC9D6D54C67495BD42A02115DC232BE7C8D9F83E40A8 |
SHA-512: | E80C43BE006B5EEB66F98192B177163E92B75A5CD0AAA880ADE24A67DB7A1F29A0CB958B158244DB47386CDC775DD025E0FC1F97E3D7ADCDDB76D347F3073DA7 |
Malicious: | false |
Reputation: | low |
URL: | https://security-us.m.mimecastprotect.com/ttpwp/resources/images/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 556775 |
Entropy (8bit): | 4.270034164450674 |
Encrypted: | false |
SSDEEP: | 12288:0chR5MLS4OdUeHbcudbeuEbUb0dhuvugpXxlZgn8jurfgCp8jb0soy:LMsoy |
MD5: | 201D85FF1964DC1892E41EBD5715EC68 |
SHA1: | 58C65CB81364C956085DF46A1A2B552E0E183BEB |
SHA-256: | 0E167ABE261C61C466BAB9050CD72D8AF55BD54F8966C8D152F785B79F500EA1 |
SHA-512: | 62C1D4A0B6695B9D331F156AAE17C44B67BD0647C7F48BBE48385797BEFD8CA94436250ED36B7DF9D08786F54524B1E0364B43F825E84868BA9E96562456D179 |
Malicious: | false |
Reputation: | low |
URL: | https://24editor.com/t/m-soft-cloud/mail/index.html |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 185
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 20:15:47.040229082 CEST | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Apr 2, 2025 20:15:48.431206942 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:48.743377924 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:49.352688074 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:50.555821896 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:52.962059975 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:56.665178061 CEST | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Apr 2, 2025 20:15:57.346551895 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:15:57.665159941 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:15:57.884210110 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:15:58.273822069 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:15:59.570708990 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:16:01.631911993 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.631978035 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:01.632066965 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.632215023 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.632240057 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:01.871342897 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:01.871534109 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.876097918 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.876148939 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:01.876584053 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:01.930895090 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:01.977655888 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:16:02.818310976 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.818396091 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:02.818762064 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.819097042 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.819138050 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:02.819250107 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.819807053 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.819827080 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:02.820041895 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:02.820122004 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.168346882 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.168438911 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.171802998 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.171830893 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.172236919 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.173135996 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.178924084 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.179008961 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.180171967 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.180185080 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.180516958 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.216367960 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.232291937 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.407875061 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.408382893 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.408459902 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:16:03.408526897 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:03.886674881 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:03.886712074 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:03.886848927 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:03.887034893 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:03.887051105 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:04.321427107 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:04.321554899 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:04.325010061 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:04.325030088 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:04.325427055 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:04.326147079 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:04.372271061 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:05.730895996 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:05.730964899 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:05.731385946 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:05.732944965 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:05.732966900 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:16:05.732981920 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:05.733021021 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:16:06.018573999 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.018610954 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.018767118 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.018937111 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.018949032 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.441569090 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.441652060 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.444668055 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.444679976 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.446348906 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.448069096 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.488305092 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.779153109 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:16:06.834475994 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.884010077 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:06.884038925 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:06.930315971 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.010616064 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.010631084 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.010652065 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.010660887 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.010689020 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.022640944 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.022676945 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.022696972 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.022731066 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.022742987 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.037611008 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.052613020 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.188493013 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.188509941 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.188535929 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.188568115 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.189399004 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.189410925 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.189436913 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.189467907 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.191015005 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.191029072 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.191061974 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.202732086 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.202765942 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.203243971 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.203243971 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.203310013 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.369410038 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.369438887 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.369642973 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.369657040 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.369812965 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.369841099 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.370157003 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.370174885 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.370577097 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.370618105 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.370786905 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.370795965 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.371103048 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.371176958 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.371211052 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.371242046 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.373106956 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.373125076 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.373785019 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.373792887 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.373866081 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.496777058 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:16:07.551913977 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.551949978 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.552004099 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.552018881 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.552054882 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.552186966 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.728985071 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729012966 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729060888 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.729074955 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729089022 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729118109 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.729127884 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729142904 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.729197979 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.729203939 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.729366064 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.730406046 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.732691050 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.732721090 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.732769966 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.732777119 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.732805014 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.732831955 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.905772924 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.905836105 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.905862093 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.905875921 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.905891895 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.905920982 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.905994892 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906141043 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906208038 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906342983 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906394958 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906495094 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906541109 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906646013 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.906653881 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.906892061 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.906941891 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.906969070 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.910588026 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.910629988 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.910664082 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.910670996 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.910705090 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.911211967 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.911261082 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.911537886 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.911576986 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.911921024 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.911928892 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.912055969 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.912096977 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.912290096 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.912334919 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.912453890 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:07.912461042 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:07.912724972 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.086139917 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.086200953 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.086241961 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.086253881 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.086509943 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.086563110 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.087420940 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.087462902 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.087944984 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.087999105 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.088072062 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088079929 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.088371992 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.088390112 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088418007 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.088524103 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088578939 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088620901 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088629961 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.088668108 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.088753939 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.264941931 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.265006065 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.265377045 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.265393019 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.265480995 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.266434908 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.266477108 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.266932011 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.266979933 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.267255068 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.267262936 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.267422915 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.267668962 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.454535961 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.454613924 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.454657078 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.454668045 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.454710960 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.454734087 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.455862045 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.455904961 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.455960989 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.455967903 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.456033945 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.456157923 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.456219912 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.456262112 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.456269979 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.456298113 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.456337929 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.456368923 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.456499100 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.457092047 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:16:08.457102060 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:16:08.621516943 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.621556044 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:08.624813080 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.625067949 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.625082970 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:08.843189955 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:08.843287945 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.844384909 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.844396114 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:08.844782114 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:08.845249891 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:08.892267942 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:09.044560909 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:09.044966936 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:09.045351982 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:09.045654058 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.207 |
Apr 2, 2025 20:16:09.045670986 CEST | 443 | 49738 | 79.127.206.207 | 192.168.2.4 |
Apr 2, 2025 20:16:09.160484076 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.160521030 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.160615921 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.160783052 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.160792112 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.183496952 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.183583021 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.183758974 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.184067011 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.184149027 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.375948906 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.380296946 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.383780956 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.392088890 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.392115116 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.393146992 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.396506071 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.440269947 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.516067028 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.517596960 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.522758007 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.522835016 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.523097038 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.540326118 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.581433058 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.584345102 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.630984068 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.631010056 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.648243904 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.648431063 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:09.649555922 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.649831057 CEST | 443 | 49740 | 79.127.206.235 | 192.168.2.4 |
Apr 2, 2025 20:16:09.651084900 CEST | 49740 | 443 | 192.168.2.4 | 79.127.206.235 |
Apr 2, 2025 20:16:09.651240110 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.653883934 CEST | 49741 | 443 | 192.168.2.4 | 170.10.128.88 |
Apr 2, 2025 20:16:09.653944969 CEST | 443 | 49741 | 170.10.128.88 | 192.168.2.4 |
Apr 2, 2025 20:16:10.042118073 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.042234898 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.042381048 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.042546034 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.042572021 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.364046097 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.366170883 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.366647959 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.366669893 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.367163897 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.367459059 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.408344984 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.476155043 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.476377964 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:10.476492882 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.476950884 CEST | 49742 | 443 | 192.168.2.4 | 170.10.132.89 |
Apr 2, 2025 20:16:10.476988077 CEST | 443 | 49742 | 170.10.132.89 | 192.168.2.4 |
Apr 2, 2025 20:16:11.845823050 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:11.845967054 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:11.846191883 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:13.488679886 CEST | 49728 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:16:13.488743067 CEST | 443 | 49728 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:16:16.379097939 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:16:18.179721117 CEST | 80 | 49710 | 23.203.176.221 | 192.168.2.4 |
Apr 2, 2025 20:16:18.179841042 CEST | 49710 | 80 | 192.168.2.4 | 23.203.176.221 |
Apr 2, 2025 20:16:38.959739923 CEST | 49712 | 80 | 192.168.2.4 | 142.250.65.227 |
Apr 2, 2025 20:16:38.959813118 CEST | 49711 | 80 | 192.168.2.4 | 199.232.214.172 |
Apr 2, 2025 20:16:38.960014105 CEST | 49713 | 80 | 192.168.2.4 | 199.232.214.172 |
Apr 2, 2025 20:16:39.055963039 CEST | 80 | 49712 | 142.250.65.227 | 192.168.2.4 |
Apr 2, 2025 20:16:39.056051016 CEST | 49712 | 80 | 192.168.2.4 | 142.250.65.227 |
Apr 2, 2025 20:16:39.056082964 CEST | 80 | 49711 | 199.232.214.172 | 192.168.2.4 |
Apr 2, 2025 20:16:39.056119919 CEST | 80 | 49711 | 199.232.214.172 | 192.168.2.4 |
Apr 2, 2025 20:16:39.056189060 CEST | 49711 | 80 | 192.168.2.4 | 199.232.214.172 |
Apr 2, 2025 20:16:39.057082891 CEST | 80 | 49713 | 199.232.214.172 | 192.168.2.4 |
Apr 2, 2025 20:16:39.057117939 CEST | 80 | 49713 | 199.232.214.172 | 192.168.2.4 |
Apr 2, 2025 20:16:39.057172060 CEST | 49713 | 80 | 192.168.2.4 | 199.232.214.172 |
Apr 2, 2025 20:16:48.185887098 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:16:48.185899973 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:17:01.581583977 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:01.581621885 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:01.581705093 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:01.581846952 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:01.581871986 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:01.787795067 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:01.788245916 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:01.788271904 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:03.045999050 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:17:03.046154976 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:17:03.046473980 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:17:03.501707077 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:17:03.501751900 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:17:11.815000057 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:11.815145016 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Apr 2, 2025 20:17:11.815246105 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:13.491643906 CEST | 49747 | 443 | 192.168.2.4 | 142.251.40.228 |
Apr 2, 2025 20:17:13.491672993 CEST | 443 | 49747 | 142.251.40.228 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 20:15:57.463449955 CEST | 53 | 50386 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:15:57.547784090 CEST | 53 | 49228 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:15:58.247230053 CEST | 53 | 50097 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:15:58.408854961 CEST | 53 | 54709 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:01.525444984 CEST | 61080 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:01.525444984 CEST | 64105 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:01.630985975 CEST | 53 | 61080 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:01.631022930 CEST | 53 | 64105 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:02.654113054 CEST | 65257 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:02.654927015 CEST | 59525 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:02.788714886 CEST | 53 | 65257 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:02.821540117 CEST | 53 | 59525 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:03.411292076 CEST | 58200 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:03.411525011 CEST | 51153 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:03.849281073 CEST | 53 | 58200 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:03.885996103 CEST | 53 | 51153 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:05.733752012 CEST | 62633 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:05.733946085 CEST | 63294 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:06.012073040 CEST | 53 | 63294 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:06.017509937 CEST | 53 | 62633 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:08.481017113 CEST | 61100 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:08.481229067 CEST | 57653 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:08.586541891 CEST | 53 | 57653 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:08.590835094 CEST | 53 | 61100 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:08.635691881 CEST | 53 | 55124 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:09.052175999 CEST | 63303 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:09.052417994 CEST | 61247 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:09.053415060 CEST | 59166 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:09.053415060 CEST | 50908 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:09.157654047 CEST | 53 | 63303 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:09.159652948 CEST | 53 | 50908 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:09.159677029 CEST | 53 | 59166 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:09.182164907 CEST | 53 | 61247 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:09.906857967 CEST | 54028 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:09.907058001 CEST | 62970 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:16:10.018079996 CEST | 53 | 54028 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:10.037789106 CEST | 53 | 62970 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:15.504600048 CEST | 53 | 58187 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:34.565990925 CEST | 53 | 63817 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:56.670177937 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Apr 2, 2025 20:16:56.892117023 CEST | 53 | 59843 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:57.084642887 CEST | 53 | 53507 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:16:59.954627037 CEST | 53 | 63836 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 2, 2025 20:16:02.821640968 CEST | 192.168.2.4 | 1.1.1.1 | c22f | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 2, 2025 20:16:01.525444984 CEST | 192.168.2.4 | 1.1.1.1 | 0x427d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:01.525444984 CEST | 192.168.2.4 | 1.1.1.1 | 0xde3b | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:02.654113054 CEST | 192.168.2.4 | 1.1.1.1 | 0x552c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:02.654927015 CEST | 192.168.2.4 | 1.1.1.1 | 0x3266 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:03.411292076 CEST | 192.168.2.4 | 1.1.1.1 | 0x3a60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:03.411525011 CEST | 192.168.2.4 | 1.1.1.1 | 0x1563 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:05.733752012 CEST | 192.168.2.4 | 1.1.1.1 | 0x348f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:05.733946085 CEST | 192.168.2.4 | 1.1.1.1 | 0xb18 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:08.481017113 CEST | 192.168.2.4 | 1.1.1.1 | 0xb840 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:08.481229067 CEST | 192.168.2.4 | 1.1.1.1 | 0xbd5a | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.052175999 CEST | 192.168.2.4 | 1.1.1.1 | 0x27df | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.052417994 CEST | 192.168.2.4 | 1.1.1.1 | 0x8203 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.053415060 CEST | 192.168.2.4 | 1.1.1.1 | 0x7523 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.053415060 CEST | 192.168.2.4 | 1.1.1.1 | 0x3beb | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.906857967 CEST | 192.168.2.4 | 1.1.1.1 | 0xaa69 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:16:09.907058001 CEST | 192.168.2.4 | 1.1.1.1 | 0xff0 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 2, 2025 20:16:01.630985975 CEST | 1.1.1.1 | 192.168.2.4 | 0x427d | No error (0) | 142.251.40.228 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:01.631022930 CEST | 1.1.1.1 | 192.168.2.4 | 0xde3b | No error (0) | 65 | IN (0x0001) | false | |||
Apr 2, 2025 20:16:02.788714886 CEST | 1.1.1.1 | 192.168.2.4 | 0x552c | No error (0) | 66.46.58.106 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:03.849281073 CEST | 1.1.1.1 | 192.168.2.4 | 0x3a60 | No error (0) | 136.243.112.230 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:06.017509937 CEST | 1.1.1.1 | 192.168.2.4 | 0x348f | No error (0) | 139.162.185.151 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:08.586541891 CEST | 1.1.1.1 | 192.168.2.4 | 0xbd5a | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:08.590835094 CEST | 1.1.1.1 | 192.168.2.4 | 0xb840 | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:08.590835094 CEST | 1.1.1.1 | 192.168.2.4 | 0xb840 | No error (0) | 79.127.206.207 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:08.590835094 CEST | 1.1.1.1 | 192.168.2.4 | 0xb840 | No error (0) | 79.127.206.235 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.128.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.132.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.128.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.132.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.132.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.157654047 CEST | 1.1.1.1 | 192.168.2.4 | 0x27df | No error (0) | 170.10.128.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.159652948 CEST | 1.1.1.1 | 192.168.2.4 | 0x3beb | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.159677029 CEST | 1.1.1.1 | 192.168.2.4 | 0x7523 | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.159677029 CEST | 1.1.1.1 | 192.168.2.4 | 0x7523 | No error (0) | 79.127.206.235 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:09.159677029 CEST | 1.1.1.1 | 192.168.2.4 | 0x7523 | No error (0) | 79.127.206.208 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.132.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.128.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.132.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.132.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.128.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:16:10.018079996 CEST | 1.1.1.1 | 192.168.2.4 | 0xaa69 | No error (0) | 170.10.128.88 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49729 | 66.46.58.106 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:03 UTC | 738 | OUT | |
2025-04-02 18:16:03 UTC | 391 | IN | |
2025-04-02 18:16:03 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49731 | 136.243.112.230 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:04 UTC | 689 | OUT | |
2025-04-02 18:16:05 UTC | 656 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49734 | 139.162.185.151 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:06 UTC | 692 | OUT | |
2025-04-02 18:16:06 UTC | 469 | IN | |
2025-04-02 18:16:06 UTC | 899 | IN | |
2025-04-02 18:16:07 UTC | 14994 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 16384 | IN | |
2025-04-02 18:16:07 UTC | 491 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49738 | 79.127.206.207 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:08 UTC | 644 | OUT | |
2025-04-02 18:16:09 UTC | 636 | IN | |
2025-04-02 18:16:09 UTC | 736 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49740 | 79.127.206.235 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:09 UTC | 411 | OUT | |
2025-04-02 18:16:09 UTC | 636 | IN | |
2025-04-02 18:16:09 UTC | 736 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49741 | 170.10.128.88 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:09 UTC | 664 | OUT | |
2025-04-02 18:16:09 UTC | 508 | IN | |
2025-04-02 18:16:09 UTC | 1150 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49742 | 170.10.132.89 | 443 | 6148 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:16:10 UTC | 431 | OUT | |
2025-04-02 18:16:10 UTC | 508 | IN | |
2025-04-02 18:16:10 UTC | 1150 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 2 |
Start time: | 14:15:50 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 14:15:55 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 9 |
Start time: | 14:16:01 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |