Windows
Analysis Report
https://myrnao.ca/cas/login?gateway=true&service=https://lebenswelthospitality.com/legend/key.php
Overview
General Information
Detection
Score: | 52 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 5704 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 1236 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2356,i ,493889632 6221542597 ,563938527 0427210330 ,262144 -- disable-fe atures=Opt imizationG uideModelD ownloading ,Optimizat ionHints,O ptimizatio nHintsFetc hing,Optim izationTar getPredict ion --vari ations-see d-version= 20250306-1 83004.4290 00 --mojo- platform-c hannel-han dle=2392 / prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 6944 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://myrna o.ca/cas/l ogin?gatew ay=true&se rvice=http s://lebens welthospit ality.com/ legend/key .php" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | HTTP traffic: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTP traffic: | ||
Source: | HTTP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 1 Web Protocols | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | Software Packing | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | 1 Ingress Tool Transfer | Scheduled Transfer | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
myrnao.ca | 66.46.58.106 | true | true | unknown | |
lebenswelthospitality.com | 136.243.112.230 | true | true | unknown | |
24editor.com | 139.162.185.151 | true | false | unknown | |
1004834818.rsc.cdn77.org | 79.127.206.234 | true | false | high | |
security-us.m.mimecastprotect.com | 170.10.132.87 | true | false | high | |
www.google.com | 142.251.41.4 | true | false | high | |
img.icons8.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | high | ||
false | unknown | ||
true |
| unknown | |
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false |
| unknown | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
66.46.58.106 | myrnao.ca | Canada | 15290 | ALLST-15290CA | true | |
139.162.185.151 | 24editor.com | Netherlands | 63949 | LINODE-APLinodeLLCUS | false | |
136.243.112.230 | lebenswelthospitality.com | Germany | 24940 | HETZNER-ASDE | true | |
79.127.206.234 | 1004834818.rsc.cdn77.org | Czech Republic | 9080 | GINCzechRepublicEUCZ | false | |
170.10.132.87 | security-us.m.mimecastprotect.com | United States | 30031 | MIMECAST-US | false | |
79.127.206.208 | unknown | Czech Republic | 9080 | GINCzechRepublicEUCZ | false | |
170.10.128.89 | unknown | United States | 30031 | MIMECAST-US | false | |
142.251.41.4 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1654952 |
Start date and time: | 2025-04-02 20:20:19 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 13s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://myrnao.ca/cas/login?gateway=true&service=https://lebenswelthospitality.com/legend/key.php |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal52.phis.win@22/10@16/9 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, RuntimeBroker.exe, ShellExperienceHost.exe, SIHC lient.exe, SgrmBroker.exe, bac kgroundTaskHost.exe, conhost.e xe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.251.41.3, 142. 250.65.206, 142.251.16.84, 142 .250.81.238, 142.250.80.110, 1 42.251.41.14, 142.251.40.234, 142.251.32.106, 142.250.80.42, 142.250.80.106, 142.250.80.74 , 142.251.40.106, 142.251.40.1 38, 142.251.35.170, 142.250.72 .106, 142.251.41.10, 142.250.6 4.106, 142.250.176.202, 172.21 7.165.138, 142.250.64.74, 142. 251.40.202, 142.251.40.170, 14 2.251.40.238, 142.251.40.142, 142.251.40.206, 172.217.165.13 1, 142.250.80.35, 199.232.210. 172, 184.31.69.3, 52.113.196.2 54, 4.175.87.197 - Excluded domains from analysis
(whitelisted): fs.microsoft.c om, accounts.google.com, conte nt-autofill.googleapis.com, sl scr.update.microsoft.com, ctld l.windowsupdate.com, clientser vices.googleapis.com, fe3cr.de livery.mp.microsoft.com, clien ts2.google.com, edgedl.me.gvt1 .com, redirector.gvt1.com, upd ate.googleapis.com, clients.l. google.com, teams-ring.msedge. net - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//myrnao.ca/cas/login?gateway= true&service=https://leben swelthospitality.com/legend/ke y.php
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1150 |
Entropy (8bit): | 3.28732561467651 |
Encrypted: | false |
SSDEEP: | 12:qmiiaZgszpGHr0Tn8D+c35COXpapjD4k1PZiwae4vPdeegbOh6mv8n:AusLGfEhB9a6mE |
MD5: | 44385673EEF386EC121603CD302FD05F |
SHA1: | C15A6D61054FFB16D8DF4DA943B545349FC82631 |
SHA-256: | 069E8A1E31ABA074CC28BC9D6D54C67495BD42A02115DC232BE7C8D9F83E40A8 |
SHA-512: | E80C43BE006B5EEB66F98192B177163E92B75A5CD0AAA880ADE24A67DB7A1F29A0CB958B158244DB47386CDC775DD025E0FC1F97E3D7ADCDDB76D347F3073DA7 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 736 |
Entropy (8bit): | 7.577039599980696 |
Encrypted: | false |
SSDEEP: | 12:6v/7o/6To9vpzjowqRmYUAwf3pJODV54WKCm+5X6/UrIILGFPV7Jsw80BUgTEPIG:p/6svpzjLqRhUfJuL4WKd+2kfLy/ttB6 |
MD5: | 24F4A960AB905EF542834509A6037210 |
SHA1: | 99A3554CC448A3CAAA0BB87D2EAA8F9DC91D4C8A |
SHA-256: | ADB6BCBC3EE624B3CCF1C15E160FE313F9EBDD117A692DF3C522A70BF873F04D |
SHA-512: | CC0BADEB7F96507EAFB45504A5DA48CBFF218B3A7B1DF50EA41EFA9DFB40D3D8BC05A02FAF78E09AD24A1481639E1EBB7C2FB0AF7C53AC3FAEF21AFF9A6DF70C |
Malicious: | false |
Reputation: | low |
URL: | https://img.icons8.com/ios-filled/50/microsoft-admin.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 736 |
Entropy (8bit): | 7.577039599980696 |
Encrypted: | false |
SSDEEP: | 12:6v/7o/6To9vpzjowqRmYUAwf3pJODV54WKCm+5X6/UrIILGFPV7Jsw80BUgTEPIG:p/6svpzjLqRhUfJuL4WKd+2kfLy/ttB6 |
MD5: | 24F4A960AB905EF542834509A6037210 |
SHA1: | 99A3554CC448A3CAAA0BB87D2EAA8F9DC91D4C8A |
SHA-256: | ADB6BCBC3EE624B3CCF1C15E160FE313F9EBDD117A692DF3C522A70BF873F04D |
SHA-512: | CC0BADEB7F96507EAFB45504A5DA48CBFF218B3A7B1DF50EA41EFA9DFB40D3D8BC05A02FAF78E09AD24A1481639E1EBB7C2FB0AF7C53AC3FAEF21AFF9A6DF70C |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.875 |
Encrypted: | false |
SSDEEP: | 3:HoUinYn:IUyY |
MD5: | 903747EA4323C522742842A52CE710C9 |
SHA1: | 9F806EA4288867A31A4AD53AC171AA4029DF182B |
SHA-256: | 4BD8B60F91849C936AE45615145A7B7BE2CF803322A30BABBAE7267A142CA5BB |
SHA-512: | EEF73DC29A38ED70FFCFC321931BCB5B5A29FAAC356E8F6D84F57C532EEF44AE75021C341CF7DAE26B8211924A1C0E0EC4735F6BFC4AF3970A48EB63BFB7895F |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTM0LjAuNjk5OC4zNhIZCUhrT7tQexqqEgUNg6hbPSHQkBwTzwrdYQ==?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1150 |
Entropy (8bit): | 3.28732561467651 |
Encrypted: | false |
SSDEEP: | 12:qmiiaZgszpGHr0Tn8D+c35COXpapjD4k1PZiwae4vPdeegbOh6mv8n:AusLGfEhB9a6mE |
MD5: | 44385673EEF386EC121603CD302FD05F |
SHA1: | C15A6D61054FFB16D8DF4DA943B545349FC82631 |
SHA-256: | 069E8A1E31ABA074CC28BC9D6D54C67495BD42A02115DC232BE7C8D9F83E40A8 |
SHA-512: | E80C43BE006B5EEB66F98192B177163E92B75A5CD0AAA880ADE24A67DB7A1F29A0CB958B158244DB47386CDC775DD025E0FC1F97E3D7ADCDDB76D347F3073DA7 |
Malicious: | false |
Reputation: | low |
URL: | https://security-us.m.mimecastprotect.com/ttpwp/resources/images/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 556775 |
Entropy (8bit): | 4.270034164450674 |
Encrypted: | false |
SSDEEP: | 12288:0chR5MLS4OdUeHbcudbeuEbUb0dhuvugpXxlZgn8jurfgCp8jb0soy:LMsoy |
MD5: | 201D85FF1964DC1892E41EBD5715EC68 |
SHA1: | 58C65CB81364C956085DF46A1A2B552E0E183BEB |
SHA-256: | 0E167ABE261C61C466BAB9050CD72D8AF55BD54F8966C8D152F785B79F500EA1 |
SHA-512: | 62C1D4A0B6695B9D331F156AAE17C44B67BD0647C7F48BBE48385797BEFD8CA94436250ED36B7DF9D08786F54524B1E0364B43F825E84868BA9E96562456D179 |
Malicious: | false |
Reputation: | low |
URL: | https://24editor.com/t/m-soft-cloud/mail/index.html |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 203
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 20:21:17.730540037 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:18.057774067 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:18.666964054 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:19.870373011 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:21.633222103 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:21.633265972 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:21.633332014 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:21.633539915 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:21.633553982 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:21.845160007 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:21.845232010 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:21.846930027 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:21.846935987 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:21.847418070 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:21.901246071 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:22.276267052 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:22.963047981 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963144064 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:22.963402987 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963445902 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:22.963449955 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963673115 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963682890 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963711023 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:22.963949919 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:22.963969946 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.308109999 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.308202028 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.308569908 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.308659077 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.319746971 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.319798946 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.320096970 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.320801973 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.320837021 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.321005106 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.321270943 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.364281893 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.364454985 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.566422939 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.567853928 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:23.567945004 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.654506922 CEST | 49729 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:21:23.654560089 CEST | 443 | 49729 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:21:24.093668938 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.093703032 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:24.093822956 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.093991995 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.094002962 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:24.527941942 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:24.528007030 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.529637098 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.529644966 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:24.529922962 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:24.530239105 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:24.576270103 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:25.809055090 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:25.809108019 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:25.809180021 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:25.813214064 CEST | 49731 | 443 | 192.168.2.4 | 136.243.112.230 |
Apr 2, 2025 20:21:25.813226938 CEST | 443 | 49731 | 136.243.112.230 | 192.168.2.4 |
Apr 2, 2025 20:21:26.113075018 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.113157988 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.113234997 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.115735054 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.115756035 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.487555981 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.487623930 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.492480993 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.492505074 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.492772102 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.493052006 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:26.503098011 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:26.536268950 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.808590889 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:26.874989033 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:26.923151016 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052525043 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052541971 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052586079 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052634001 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052673101 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052691936 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052710056 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052736044 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052763939 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052870035 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052900076 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052941084 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.052958965 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.052983046 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.053155899 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.090033054 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:27.233186007 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.233211994 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.233279943 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.233311892 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.233329058 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.233347893 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.234488964 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.234505892 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.234541893 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.234550953 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.234599113 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.236052990 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.236068964 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.236140966 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.236150980 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.236202955 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.412594080 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.412616968 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.412662983 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.412678003 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.412703037 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.412725925 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.415251970 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.415267944 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.415314913 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.415327072 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.415452003 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.416119099 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.416142941 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.416178942 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.416189909 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.416218996 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.416239023 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.417398930 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.417423010 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.417454004 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.417464018 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.417490959 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.417505026 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.418565989 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:27.769207001 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.769220114 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.769278049 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.769305944 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.769331932 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.769349098 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.769676924 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.772284031 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772301912 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772344112 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.772352934 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772367954 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772384882 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772409916 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.772418022 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.772433996 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.772454023 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.777483940 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777508020 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777570009 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777595043 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.777606964 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777636051 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777636051 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.777677059 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.777689934 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.777723074 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.778336048 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.778359890 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.778390884 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.778402090 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.778434038 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.821243048 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.948096991 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.948143959 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.948179960 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.948225975 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.948241949 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.948273897 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.953691959 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.953732014 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.953758001 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.953766108 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.953803062 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.953928947 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.958111048 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.958168030 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.958183050 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.958194017 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:27.958213091 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:27.958234072 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.124016047 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.124051094 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.124109983 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.124181986 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.124228954 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.124250889 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.129640102 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.129723072 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.129757881 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.129766941 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.129839897 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.133255959 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.133300066 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.133332014 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.133338928 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.133383989 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.304162979 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.304224968 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.304306984 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.304377079 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.304409027 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.304429054 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.310952902 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.310995102 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.311045885 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.311060905 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.311110020 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.313262939 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.313303947 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.313342094 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.313354969 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.313388109 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.313405991 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.476883888 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.477015018 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.477050066 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.477113962 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.477149963 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.478950977 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.488519907 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.488564968 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.488604069 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.488619089 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.488672972 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.494143009 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.494185925 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.494277000 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.494292021 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.494510889 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.497311115 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.497351885 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.497406960 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.497415066 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.497464895 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.497488976 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.634907007 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:28.655134916 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.655180931 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.655262947 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.655339003 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.655375957 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.657490969 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.665323019 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.665365934 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.665410042 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.665429115 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.665462017 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.665483952 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.671479940 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.671541929 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.671578884 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.671592951 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.671622992 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.674213886 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.702049017 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.702119112 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.702265024 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.702265978 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.702316999 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.706387997 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.838247061 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.838304996 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.838325024 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.838336945 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.838397980 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.839385033 CEST | 49734 | 443 | 192.168.2.4 | 139.162.185.151 |
Apr 2, 2025 20:21:28.839402914 CEST | 443 | 49734 | 139.162.185.151 | 192.168.2.4 |
Apr 2, 2025 20:21:28.976177931 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:28.976218939 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:28.976289988 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:28.976716995 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:28.976728916 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.196511984 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.196660995 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:29.197707891 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:29.197719097 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.197942019 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.198323965 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:29.244271040 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.400301933 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.400372028 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.400413990 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:29.412511110 CEST | 49738 | 443 | 192.168.2.4 | 79.127.206.234 |
Apr 2, 2025 20:21:29.412528992 CEST | 443 | 49738 | 79.127.206.234 | 192.168.2.4 |
Apr 2, 2025 20:21:29.567153931 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:29.567203045 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:29.567270994 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:29.567403078 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:29.567414045 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:29.605310917 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.605339050 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:29.605408907 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.605519056 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.605525970 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:29.825510025 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:29.825594902 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.826040983 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.826050997 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:29.826339960 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:29.826567888 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:29.872277975 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:30.028924942 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:30.029145002 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:30.029194117 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:30.030628920 CEST | 49742 | 443 | 192.168.2.4 | 79.127.206.208 |
Apr 2, 2025 20:21:30.030651093 CEST | 443 | 49742 | 79.127.206.208 | 192.168.2.4 |
Apr 2, 2025 20:21:30.131455898 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.131541014 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:30.133068085 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:30.133080959 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.133460999 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.133774996 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:30.180280924 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.239161015 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.239253044 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.239372015 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:30.240442038 CEST | 49741 | 443 | 192.168.2.4 | 170.10.132.87 |
Apr 2, 2025 20:21:30.240492105 CEST | 443 | 49741 | 170.10.132.87 | 192.168.2.4 |
Apr 2, 2025 20:21:30.381633043 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.381685972 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.381784916 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.382020950 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.382033110 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.704428911 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.704576015 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.705046892 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.705053091 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.705374956 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.705617905 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.748277903 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.813232899 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.813325882 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:30.813779116 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.817761898 CEST | 49743 | 443 | 192.168.2.4 | 170.10.128.89 |
Apr 2, 2025 20:21:30.817785025 CEST | 443 | 49743 | 170.10.128.89 | 192.168.2.4 |
Apr 2, 2025 20:21:31.048110008 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:31.856038094 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:31.856177092 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:31.856241941 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:33.372072935 CEST | 49727 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:21:33.372131109 CEST | 443 | 49727 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:21:35.855153084 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:21:36.698021889 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 2, 2025 20:21:41.424386024 CEST | 80 | 49716 | 23.203.176.221 | 192.168.2.4 |
Apr 2, 2025 20:21:41.424515009 CEST | 49716 | 80 | 192.168.2.4 | 23.203.176.221 |
Apr 2, 2025 20:21:45.468055964 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 2, 2025 20:22:01.976402044 CEST | 80 | 49710 | 23.203.176.221 | 192.168.2.4 |
Apr 2, 2025 20:22:01.976569891 CEST | 49710 | 80 | 192.168.2.4 | 23.203.176.221 |
Apr 2, 2025 20:22:01.976677895 CEST | 49710 | 80 | 192.168.2.4 | 23.203.176.221 |
Apr 2, 2025 20:22:02.074429035 CEST | 80 | 49710 | 23.203.176.221 | 192.168.2.4 |
Apr 2, 2025 20:22:02.457056046 CEST | 49711 | 80 | 192.168.2.4 | 142.250.65.163 |
Apr 2, 2025 20:22:02.554999113 CEST | 80 | 49711 | 142.250.65.163 | 192.168.2.4 |
Apr 2, 2025 20:22:02.555074930 CEST | 49711 | 80 | 192.168.2.4 | 142.250.65.163 |
Apr 2, 2025 20:22:02.778065920 CEST | 49712 | 443 | 192.168.2.4 | 23.219.82.51 |
Apr 2, 2025 20:22:02.778295994 CEST | 49716 | 80 | 192.168.2.4 | 23.203.176.221 |
Apr 2, 2025 20:22:08.335570097 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:22:08.335627079 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:22:21.592514038 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:21.592562914 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:21.592632055 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:21.592777967 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:21.592787981 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:21.802201033 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:21.802536964 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:21.802563906 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:23.193703890 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:22:23.193892002 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:22:23.193964958 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:22:23.365524054 CEST | 49730 | 443 | 192.168.2.4 | 66.46.58.106 |
Apr 2, 2025 20:22:23.365605116 CEST | 443 | 49730 | 66.46.58.106 | 192.168.2.4 |
Apr 2, 2025 20:22:31.833874941 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:31.834018946 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Apr 2, 2025 20:22:31.834153891 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:33.373986006 CEST | 49749 | 443 | 192.168.2.4 | 142.251.41.4 |
Apr 2, 2025 20:22:33.374048948 CEST | 443 | 49749 | 142.251.41.4 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 2, 2025 20:21:17.418606997 CEST | 53 | 56477 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:18.165045023 CEST | 53 | 64336 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:21.527611017 CEST | 59368 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:21.527781010 CEST | 61078 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:21.631726027 CEST | 53 | 59368 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:21.632097006 CEST | 53 | 61078 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:22.778904915 CEST | 57479 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:22.779055119 CEST | 55710 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:22.930490017 CEST | 53 | 55710 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:22.962088108 CEST | 53 | 57479 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:23.657130003 CEST | 49870 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:23.657290936 CEST | 64085 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:24.092807055 CEST | 53 | 64085 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:24.092863083 CEST | 53 | 49870 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:25.814085007 CEST | 61318 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:25.814548969 CEST | 51584 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:26.087060928 CEST | 53 | 51584 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:26.087975979 CEST | 53 | 61318 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:28.865833998 CEST | 51361 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:28.866043091 CEST | 56758 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:28.971957922 CEST | 53 | 56758 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:28.975454092 CEST | 53 | 51361 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:29.024950027 CEST | 53 | 61453 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:29.431124926 CEST | 65257 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:29.431314945 CEST | 50677 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:29.467642069 CEST | 50843 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:29.467834949 CEST | 49605 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:29.537436008 CEST | 53 | 65257 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:29.566749096 CEST | 53 | 50677 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:29.576056957 CEST | 53 | 50843 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:30.247215033 CEST | 63538 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:30.247401953 CEST | 60195 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 2, 2025 20:21:30.361720085 CEST | 53 | 63538 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:30.381097078 CEST | 53 | 60195 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:35.262257099 CEST | 53 | 63047 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:21:54.333055019 CEST | 53 | 50988 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:22:15.930939913 CEST | 53 | 52415 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:22:16.874332905 CEST | 53 | 58117 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:22:17.250427961 CEST | 53 | 55025 | 1.1.1.1 | 192.168.2.4 |
Apr 2, 2025 20:22:25.987946033 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 2, 2025 20:21:21.527611017 CEST | 192.168.2.4 | 1.1.1.1 | 0x3354 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:21.527781010 CEST | 192.168.2.4 | 1.1.1.1 | 0x8e5e | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:22.778904915 CEST | 192.168.2.4 | 1.1.1.1 | 0x7310 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:22.779055119 CEST | 192.168.2.4 | 1.1.1.1 | 0x4b21 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:23.657130003 CEST | 192.168.2.4 | 1.1.1.1 | 0x51a8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:23.657290936 CEST | 192.168.2.4 | 1.1.1.1 | 0x1b99 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:25.814085007 CEST | 192.168.2.4 | 1.1.1.1 | 0x266e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:25.814548969 CEST | 192.168.2.4 | 1.1.1.1 | 0x7834 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:28.865833998 CEST | 192.168.2.4 | 1.1.1.1 | 0xba9c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:28.866043091 CEST | 192.168.2.4 | 1.1.1.1 | 0x9aa1 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:29.431124926 CEST | 192.168.2.4 | 1.1.1.1 | 0x4b92 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:29.431314945 CEST | 192.168.2.4 | 1.1.1.1 | 0xe748 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:29.467642069 CEST | 192.168.2.4 | 1.1.1.1 | 0x24cd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:29.467834949 CEST | 192.168.2.4 | 1.1.1.1 | 0xab10 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 2, 2025 20:21:30.247215033 CEST | 192.168.2.4 | 1.1.1.1 | 0x6334 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 2, 2025 20:21:30.247401953 CEST | 192.168.2.4 | 1.1.1.1 | 0xd403 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 2, 2025 20:21:21.631726027 CEST | 1.1.1.1 | 192.168.2.4 | 0x3354 | No error (0) | 142.251.41.4 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:21.632097006 CEST | 1.1.1.1 | 192.168.2.4 | 0x8e5e | No error (0) | 65 | IN (0x0001) | false | |||
Apr 2, 2025 20:21:22.962088108 CEST | 1.1.1.1 | 192.168.2.4 | 0x7310 | No error (0) | 66.46.58.106 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:24.092863083 CEST | 1.1.1.1 | 192.168.2.4 | 0x51a8 | No error (0) | 136.243.112.230 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:26.087975979 CEST | 1.1.1.1 | 192.168.2.4 | 0x266e | No error (0) | 139.162.185.151 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:28.971957922 CEST | 1.1.1.1 | 192.168.2.4 | 0x9aa1 | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:28.975454092 CEST | 1.1.1.1 | 192.168.2.4 | 0xba9c | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:28.975454092 CEST | 1.1.1.1 | 192.168.2.4 | 0xba9c | No error (0) | 79.127.206.234 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:28.975454092 CEST | 1.1.1.1 | 192.168.2.4 | 0xba9c | No error (0) | 79.127.206.208 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.132.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.132.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.128.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.128.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.132.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.537436008 CEST | 1.1.1.1 | 192.168.2.4 | 0x4b92 | No error (0) | 170.10.128.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.576056957 CEST | 1.1.1.1 | 192.168.2.4 | 0x24cd | No error (0) | 1004834818.rsc.cdn77.org | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.576056957 CEST | 1.1.1.1 | 192.168.2.4 | 0x24cd | No error (0) | 79.127.206.208 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:29.576056957 CEST | 1.1.1.1 | 192.168.2.4 | 0x24cd | No error (0) | 79.127.206.235 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.128.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.128.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.132.87 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.128.88 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.132.89 | A (IP address) | IN (0x0001) | false | ||
Apr 2, 2025 20:21:30.361720085 CEST | 1.1.1.1 | 192.168.2.4 | 0x6334 | No error (0) | 170.10.132.88 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49729 | 66.46.58.106 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:23 UTC | 738 | OUT | |
2025-04-02 18:21:23 UTC | 391 | IN | |
2025-04-02 18:21:23 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49731 | 136.243.112.230 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:24 UTC | 689 | OUT | |
2025-04-02 18:21:25 UTC | 656 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49734 | 139.162.185.151 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:26 UTC | 692 | OUT | |
2025-04-02 18:21:26 UTC | 469 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN | |
2025-04-02 18:21:27 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49738 | 79.127.206.234 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:29 UTC | 644 | OUT | |
2025-04-02 18:21:29 UTC | 636 | IN | |
2025-04-02 18:21:29 UTC | 736 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49742 | 79.127.206.208 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:29 UTC | 411 | OUT | |
2025-04-02 18:21:30 UTC | 636 | IN | |
2025-04-02 18:21:30 UTC | 736 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49741 | 170.10.132.87 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:30 UTC | 664 | OUT | |
2025-04-02 18:21:30 UTC | 508 | IN | |
2025-04-02 18:21:30 UTC | 1150 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49743 | 170.10.128.89 | 443 | 1236 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-02 18:21:30 UTC | 431 | OUT | |
2025-04-02 18:21:30 UTC | 508 | IN | |
2025-04-02 18:21:30 UTC | 1150 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 14:21:12 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 14:21:15 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 4 |
Start time: | 14:21:21 |
Start date: | 02/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |