Windows
Analysis Report
https://ucarecdn.com/6e80a848-4922-47e6-9a12-2e73d2540050/8ff754f5-7513-4298-9573-17aa31ff5b5c.html
Overview
General Information
Detection
Score: | 52 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 3976 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 4840 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2332,i ,111497643 1534499065 ,153738974 873917783, 262144 --d isable-fea tures=Opti mizationGu ideModelDo wnloading, Optimizati onHints,Op timization HintsFetch ing,Optimi zationTarg etPredicti on --varia tions-seed -version - -mojo-plat form-chann el-handle= 2384 /pref etch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 7040 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://ucare cdn.com/6e 80a848-492 2-47e6-9a1 2-2e73d254 0050/8ff75 4f5-7513-4 298-9573-1 7aa31ff5b5 c.html" MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 3256 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 6120 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --metri cs-shmem-h andle=1948 ,i,2868179 5122775684 59,1456856 5378952564 348,524288 --field-t rial-handl e=2028,i,3 7875054177 02600662,9 5035512552 79435640,2 62144 --di sable-feat ures=Optim izationGui deModelDow nloading,O ptimizatio nHints,Opt imizationH intsFetchi ng,Optimiz ationTarge tPredictio n --variat ions-seed- version=20 250410-050 051.531000 --mojo-pl atform-cha nnel-handl e=2072 /pr efetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 2692 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "C:\ Users\user \Downloads \8ff754f5- 7513-4298- 9573-17aa3 1ff5b5c.ht ml" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: | ||
Source: | Joe Sandbox AI: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior | ||
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 11 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | phishing |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
cdnjs.cloudflare.com | 104.17.24.14 | true | false | high | |
33vh88.perthshiregardenrooms.co.uk | 167.172.166.226 | true | false | unknown | |
microsoftonelineda48b13627.cometlogistics.co.uk | 167.172.166.226 | true | false | unknown | |
downloadsharedfile.de | 104.21.7.120 | true | false | high | |
www.google.com | 142.251.35.164 | true | false | high | |
ucarecdn.com | 151.101.130.132 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false |
| unknown | |
true |
| unknown | |
false |
| unknown | |
false | high | ||
false |
| unknown | |
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
104.17.24.14 | cdnjs.cloudflare.com | United States | 13335 | CLOUDFLARENETUS | false | |
104.21.7.120 | downloadsharedfile.de | United States | 13335 | CLOUDFLARENETUS | false | |
151.101.130.132 | ucarecdn.com | United States | 54113 | FASTLYUS | false | |
167.172.166.226 | 33vh88.perthshiregardenrooms.co.uk | United States | 14061 | DIGITALOCEAN-ASNUS | false | |
142.251.35.164 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.6 |
192.168.2.5 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1662266 |
Start date and time: | 2025-04-10 19:20:04 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 4m 35s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://ucarecdn.com/6e80a848-4922-47e6-9a12-2e73d2540050/8ff754f5-7513-4298-9573-17aa31ff5b5c.html |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal52.win@51/13@20/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, W MIADAP.exe, SIHClient.exe, Sgr mBroker.exe, conhost.exe, svch ost.exe, TextInputHost.exe - Excluded IPs from analysis (wh
itelisted): 142.251.35.163, 14 2.250.80.46, 142.250.31.84, 17 2.217.165.142, 23.53.11.13, 14 2.251.32.99, 23.9.183.29, 172. 202.163.200 - Excluded domains from analysis
(whitelisted): fs.microsoft.c om, clients2.google.com, edged l.me.gvt1.com, accounts.google .com, redirector.gvt1.com, sls cr.update.microsoft.com, updat e.googleapis.com, ctldl.window supdate.com, clientservices.go ogleapis.com, clients.l.google .com, c.pki.goog, fe3cr.delive ry.mp.microsoft.com - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtCreateFile calls fou nd. - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//ucarecdn.com/6e80a848-4922-4 7e6-9a12-2e73d2540050/8ff754f5 -7513-4298-9573-17aa31ff5b5c.h tml
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1872 |
Entropy (8bit): | 5.391436007943997 |
Encrypted: | false |
SSDEEP: | 24:hU2CDf0tNVO73DHk3vo/ScHAHnQPnjaxu0WY7agH96P71N9dXHSUtW2seFtlBa7M:EMYk3vgHVN0WY+gHcpVBseblkiz |
MD5: | EB64D302C3E2871C4707F72637527FB5 |
SHA1: | 3469AC20B615D7F02CBA53794486F4D9B0E2C04F |
SHA-256: | 8642BE05FDFC09717B79493BDE6FE6FB03760BBC76F9AFDD35B6184EE81381C5 |
SHA-512: | AEA41118CD1B165AB3A8CE253BF47ABFE11D68B8FDA090B44D82C2AA350762AEBD9354CE0773A83CBE45D86068A5A1EE3B4A9250998914F9B962B9ED816500B9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1872 |
Entropy (8bit): | 5.391436007943997 |
Encrypted: | false |
SSDEEP: | 24:hU2CDf0tNVO73DHk3vo/ScHAHnQPnjaxu0WY7agH96P71N9dXHSUtW2seFtlBa7M:EMYk3vgHVN0WY+gHcpVBseblkiz |
MD5: | EB64D302C3E2871C4707F72637527FB5 |
SHA1: | 3469AC20B615D7F02CBA53794486F4D9B0E2C04F |
SHA-256: | 8642BE05FDFC09717B79493BDE6FE6FB03760BBC76F9AFDD35B6184EE81381C5 |
SHA-512: | AEA41118CD1B165AB3A8CE253BF47ABFE11D68B8FDA090B44D82C2AA350762AEBD9354CE0773A83CBE45D86068A5A1EE3B4A9250998914F9B962B9ED816500B9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1872 |
Entropy (8bit): | 5.391436007943997 |
Encrypted: | false |
SSDEEP: | 24:hU2CDf0tNVO73DHk3vo/ScHAHnQPnjaxu0WY7agH96P71N9dXHSUtW2seFtlBa7M:EMYk3vgHVN0WY+gHcpVBseblkiz |
MD5: | EB64D302C3E2871C4707F72637527FB5 |
SHA1: | 3469AC20B615D7F02CBA53794486F4D9B0E2C04F |
SHA-256: | 8642BE05FDFC09717B79493BDE6FE6FB03760BBC76F9AFDD35B6184EE81381C5 |
SHA-512: | AEA41118CD1B165AB3A8CE253BF47ABFE11D68B8FDA090B44D82C2AA350762AEBD9354CE0773A83CBE45D86068A5A1EE3B4A9250998914F9B962B9ED816500B9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1872 |
Entropy (8bit): | 5.391436007943997 |
Encrypted: | false |
SSDEEP: | 24:hU2CDf0tNVO73DHk3vo/ScHAHnQPnjaxu0WY7agH96P71N9dXHSUtW2seFtlBa7M:EMYk3vgHVN0WY+gHcpVBseblkiz |
MD5: | EB64D302C3E2871C4707F72637527FB5 |
SHA1: | 3469AC20B615D7F02CBA53794486F4D9B0E2C04F |
SHA-256: | 8642BE05FDFC09717B79493BDE6FE6FB03760BBC76F9AFDD35B6184EE81381C5 |
SHA-512: | AEA41118CD1B165AB3A8CE253BF47ABFE11D68B8FDA090B44D82C2AA350762AEBD9354CE0773A83CBE45D86068A5A1EE3B4A9250998914F9B962B9ED816500B9 |
Malicious: | false |
Reputation: | low |
URL: | https://ucarecdn.com/6e80a848-4922-47e6-9a12-2e73d2540050/8ff754f5-7513-4298-9573-17aa31ff5b5c.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 315 |
Entropy (8bit): | 5.0572271090563765 |
Encrypted: | false |
SSDEEP: | 6:pn0+Dy9xwGObRmEr6VnetdzRx3G0CezoFEHcLgabzjsKtgsg93wzRbKqD:J0+oxBeRmR9etdzRxGezZfCzjsKtgizR |
MD5: | A34AC19F4AFAE63ADC5D2F7BC970C07F |
SHA1: | A82190FC530C265AA40A045C21770D967F4767B8 |
SHA-256: | D5A89E26BEAE0BC03AD18A0B0D1D3D75F87C32047879D25DA11970CB5C4662A3 |
SHA-512: | 42E53D96E5961E95B7A984D9C9778A1D3BD8EE0C87B8B3B515FA31F67C2D073C8565AFC2F4B962C43668C4EFA1E478DA9BB0ECFFA79479C7E880731BC4C55765 |
Malicious: | false |
Reputation: | low |
URL: | https://downloadsharedfile.de/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 48316 |
Entropy (8bit): | 5.6346993394709 |
Encrypted: | false |
SSDEEP: | 768:J1Z4iiyfiD78x6l42SWRV4HC0o10LEnM9OT81agZnEpnS:vZYDc6lXJd1mZpZEdS |
MD5: | 2CA03AD87885AB983541092B87ADB299 |
SHA1: | 1A17F60BF776A8C468A185C1E8E985C41A50DC27 |
SHA-256: | 8E3B0117F4DF4BE452C0B6AF5B8F0A0ACF9D4ADE23D08D55D7E312AF22077762 |
SHA-512: | 13C412BD66747822C6938926DE1C52B0D98659B2ED48249471EC0340F416645EA9114F06953F1AE5F177DB03A5D62F1FB5D321B2C4EB17F3A1C865B0A274DC5C |
Malicious: | false |
Reputation: | low |
URL: | https://cdnjs.cloudflare.com/ajax/libs/crypto-js/4.1.1/crypto-js.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 351 |
Entropy (8bit): | 5.210005812732593 |
Encrypted: | false |
SSDEEP: | 6:hxuJ9xVgY2pCXLx95VV4nJEx/QNH3BY2GRGRNHF59fHIBijASPska5HcTT4EINwu:hYzxVyCbxT4nJEx/QN/GRGr/ZVvPFoH7 |
MD5: | 30E324B6B6FB6C7F1BAF9A321122EFDE |
SHA1: | DCCD1AFE93AF7A0366E9D8D3E5AEC85F66D80C11 |
SHA-256: | 7D03AD51CBEB4A39811F4BB50DDE97159CADD58D665FF81B70B6D2AF65B324D6 |
SHA-512: | 9E5BD04748A93A22821BE03C6F404F85E71C65B855D910A888FF2CAB89863E169DB209A8E0FFC256D628A17DB53F88FDD34CC87B79BBBF0C4C47AF3AF3116D4D |
Malicious: | false |
Reputation: | low |
URL: | https://microsoftonelineda48b13627.cometlogistics.co.uk/?_da48b13627=bnBkL2lkZnVvZmVtcGhuYmlic2hBaHNmY3ZzYiRpcTBmZS9mbWpnZWZzYml0ZWJwbW94cGUwMDt0cXV1aQ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 320 |
Entropy (8bit): | 5.03433046230283 |
Encrypted: | false |
SSDEEP: | 6:pn0+Dy9xwGObRmEr6VnetdzRx3G0CezoFEHcLgabzjsKtgsg93wzRbKq7n:J0+oxBeRmR9etdzRxGezZfCzjsKtgiz5 |
MD5: | 9682400222EF22EC53C861B45F6B815A |
SHA1: | A285541B20F9A285A3C2EB45309020C7793ECB81 |
SHA-256: | 18B4FCEA2EC57CCD4341051EF8945F2085B0F0258C73BD9716F4B8010B8B2804 |
SHA-512: | 5971A09B0A76E414D7DDB985E75B47AC3918823153C0D35DA52A9EE8C2A715C0EB9A8B64F9A0609CB5FB6E8003DD22F750CEF93EAF3C47D788C5039504E2C505 |
Malicious: | false |
Reputation: | low |
URL: | https://downloadsharedfile.de/ph |
Preview: |
Icon Hash: | 00b29a8e86828200 |
Download Network PCAP: filtered – full
- Total Packets: 227
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 10, 2025 19:20:58.086432934 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:20:58.391278028 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:20:59.000653982 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:21:00.203790903 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:21:02.610019922 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:21:06.657825947 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:06.915930033 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:06.915976048 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:06.916075945 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:06.916235924 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:06.916249037 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:07.000808954 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:07.132124901 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:07.132199049 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:07.133768082 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:07.133780956 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:07.134108067 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:07.188306093 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:07.422647953 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:21:07.610189915 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:08.343203068 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343246937 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.343314886 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343552113 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343578100 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.343631029 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343651056 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343660116 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.343914032 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.343928099 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.556323051 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.556389093 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.557276964 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.557343006 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.572508097 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.572525978 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.572882891 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.573703051 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.573729992 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.574018955 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.574049950 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.614686966 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.616278887 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.813138008 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.813210964 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.813277006 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:08.813323975 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.817755938 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:08.821995020 CEST | 49698 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:08.822016954 CEST | 443 | 49698 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:09.349298954 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.349329948 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.349498987 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.350275993 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.350286007 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.542706013 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.542778015 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.544452906 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.544460058 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.544761896 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.545017958 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.592268944 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775202036 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775263071 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775295019 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775306940 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.775321960 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775448084 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775480032 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775506020 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775515079 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.775515079 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.775523901 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.775563002 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.775571108 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776494026 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776535988 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776545048 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.776557922 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776593924 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776647091 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.776654005 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.776736975 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.777224064 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.777273893 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.777311087 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.777318954 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.777415991 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.777483940 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.777489901 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778208971 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778255939 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778275013 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.778284073 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778316021 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778904915 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778955936 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.778955936 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.778963089 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.778995991 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.779052019 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.779079914 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.779118061 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.779118061 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.779124975 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780533075 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780565023 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780587912 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.780601978 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780631065 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780733109 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.780740023 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.780838966 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.781424046 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.781485081 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.781508923 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.781577110 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.781584024 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.781598091 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:09.781677008 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.781769037 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.782195091 CEST | 49700 | 443 | 192.168.2.6 | 104.17.24.14 |
Apr 10, 2025 19:21:09.782203913 CEST | 443 | 49700 | 104.17.24.14 | 192.168.2.6 |
Apr 10, 2025 19:21:10.070292950 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070312977 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070343971 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.070362091 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.070400953 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070522070 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070712090 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070723057 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.070859909 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.070893049 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.447915077 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.448023081 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.449508905 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.449526072 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.449811935 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.450400114 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.462277889 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.462343931 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.463027000 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.463041067 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.463273048 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.492268085 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.503052950 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.959558010 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.959638119 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:10.959732056 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.960180044 CEST | 49703 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:10.960196018 CEST | 443 | 49703 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.201527119 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.201562881 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.201617002 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.202032089 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.202042103 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.231997013 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:11.565871000 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.565953970 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.567087889 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.567100048 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.567346096 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:11.567718983 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:11.612267971 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:12.044142962 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:12.044222116 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:12.044265985 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:12.045258045 CEST | 49704 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:12.045269966 CEST | 443 | 49704 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:21:12.271492958 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.271527052 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.271588087 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.271893024 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.271917105 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.271966934 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.272165060 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.272176981 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.272387981 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.272399902 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.462929964 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.463004112 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.463860035 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.463918924 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.464167118 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.464169979 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.464492083 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.465060949 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.465066910 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.465234041 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.465313911 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.508295059 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.518953085 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.886384010 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886425972 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886459112 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886483908 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886509895 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.886518955 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886548042 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.886550903 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886684895 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.886693001 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886732101 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.886822939 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.886827946 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.887712002 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.887736082 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.887763977 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.887773991 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.887816906 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.955172062 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955348015 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955420971 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.955427885 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955452919 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955559015 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.955565929 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955739021 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.955799103 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.956832886 CEST | 49706 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.956842899 CEST | 443 | 49706 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.965966940 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.995902061 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.995948076 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:12.996020079 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.996289968 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:12.996299982 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.008272886 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.193900108 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.194389105 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.194417953 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.194446087 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.194453001 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.256858110 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.257025957 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.257112026 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.266688108 CEST | 49705 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.266710043 CEST | 443 | 49705 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.446697950 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.446731091 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.446926117 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.447055101 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.447062016 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.455553055 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.455616951 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.455662012 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.459359884 CEST | 49707 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.459367990 CEST | 443 | 49707 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.657063961 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.664341927 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.664355040 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:13.673491001 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:13.673506975 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:14.223597050 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:14.223736048 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:14.223952055 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:14.225532055 CEST | 49708 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:21:14.225553036 CEST | 443 | 49708 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:21:16.035115004 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:17.035101891 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 10, 2025 19:21:17.123577118 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:17.123641968 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:17.123692989 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:17.240242004 CEST | 49694 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:21:17.240289927 CEST | 443 | 49694 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:21:17.269886017 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:17.370717049 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.370812893 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:17.370960951 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:17.457988977 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.458359957 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.458378077 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.458390951 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.458420038 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:17.464219093 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:17.549143076 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.549158096 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:21:17.549216032 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:21:25.642963886 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 10, 2025 19:21:53.579651117 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:21:53.579663992 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:21:55.470401049 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:21:55.470459938 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:06.877563000 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:06.877599955 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:06.877717018 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:06.877852917 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:06.877866030 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:07.077255011 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:07.077832937 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:07.077857018 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:09.237410069 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:22:09.237663984 CEST | 443 | 49697 | 151.101.130.132 | 192.168.2.6 |
Apr 10, 2025 19:22:09.237966061 CEST | 49697 | 443 | 192.168.2.6 | 151.101.130.132 |
Apr 10, 2025 19:22:10.458748102 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:10.458830118 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:10.458920956 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:11.238374949 CEST | 49702 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:11.238411903 CEST | 443 | 49702 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:17.091559887 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:17.091629982 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:17.091764927 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:17.238167048 CEST | 49718 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:17.238202095 CEST | 443 | 49718 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:17.271420956 CEST | 443 | 49681 | 2.23.227.215 | 192.168.2.6 |
Apr 10, 2025 19:22:17.271445990 CEST | 443 | 49681 | 2.23.227.215 | 192.168.2.6 |
Apr 10, 2025 19:22:17.271608114 CEST | 49681 | 443 | 192.168.2.6 | 2.23.227.215 |
Apr 10, 2025 19:22:17.767760038 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:22:17.866600037 CEST | 80 | 49711 | 142.251.40.99 | 192.168.2.6 |
Apr 10, 2025 19:22:17.866758108 CEST | 49711 | 80 | 192.168.2.6 | 142.251.40.99 |
Apr 10, 2025 19:22:25.365806103 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:25.365859985 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:25.365959883 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:25.366159916 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:25.366175890 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:25.552335024 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:25.552627087 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:25.553755045 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:25.553766966 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:25.554162979 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:25.597240925 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:28.413636923 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.413681030 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.413799047 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.414262056 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.414275885 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.414680958 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.414690018 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.414784908 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.415045023 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.415056944 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.800513983 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.800642967 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.801749945 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.801759958 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.801963091 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.802290916 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.815815926 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.815932035 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.816433907 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:28.816445112 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.817202091 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.848273993 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:28.872154951 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.291976929 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.292059898 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.292119980 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.302190065 CEST | 49731 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.302206993 CEST | 443 | 49731 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.403884888 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.403914928 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.403974056 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.404164076 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.404181957 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.803225994 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.803298950 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.804651976 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.804657936 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.804863930 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:29.805203915 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:29.848270893 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:30.322032928 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:30.322124004 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:30.322463036 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:30.322479963 CEST | 443 | 49736 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:22:30.322496891 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:30.322521925 CEST | 49736 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:22:30.489939928 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.489979029 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:30.490410089 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.490448952 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:30.490498066 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.490586042 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.490586042 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.490617990 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:30.490832090 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:30.490843058 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.357705116 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.359108925 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.359108925 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.359122992 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.359483957 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.360270023 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.404268980 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.694961071 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.695100069 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.714972973 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.715001106 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.715251923 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.731654882 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.731728077 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:31.731796026 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.762289047 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.865639925 CEST | 49738 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:31.865664005 CEST | 443 | 49738 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:35.549158096 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:35.549226999 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:35.549473047 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:37.113677025 CEST | 49730 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:22:37.113698959 CEST | 443 | 49730 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:22:39.480782032 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:39.480818987 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:39.480897903 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:39.481146097 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:39.481163979 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:39.680763006 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:39.681641102 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:39.681669950 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:46.677375078 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:46.677447081 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:46.679694891 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:47.113302946 CEST | 49737 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:47.113346100 CEST | 443 | 49737 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:54.973059893 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:54.973251104 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:22:54.973324060 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:55.113902092 CEST | 49739 | 443 | 192.168.2.6 | 104.21.7.120 |
Apr 10, 2025 19:22:55.113930941 CEST | 443 | 49739 | 104.21.7.120 | 192.168.2.6 |
Apr 10, 2025 19:23:13.829718113 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:23:13.829792023 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:23:25.333214045 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:25.333256006 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:25.333353996 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:25.333683968 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:25.333702087 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:25.546536922 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:25.546993017 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:25.547024012 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:28.804100037 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:23:28.804200888 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:23:28.804241896 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:23:29.115861893 CEST | 49732 | 443 | 192.168.2.6 | 167.172.166.226 |
Apr 10, 2025 19:23:29.115895033 CEST | 443 | 49732 | 167.172.166.226 | 192.168.2.6 |
Apr 10, 2025 19:23:35.555931091 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:35.556088924 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Apr 10, 2025 19:23:35.556226015 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:37.114655972 CEST | 49745 | 443 | 192.168.2.6 | 142.251.35.164 |
Apr 10, 2025 19:23:37.114687920 CEST | 443 | 49745 | 142.251.35.164 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 10, 2025 19:21:02.987689972 CEST | 53 | 59165 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:03.012243986 CEST | 53 | 50912 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:03.764589071 CEST | 53 | 53647 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:03.938451052 CEST | 53 | 60997 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:06.815496922 CEST | 50094 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:06.815496922 CEST | 51853 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:06.914720058 CEST | 53 | 50094 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:06.914736986 CEST | 53 | 51853 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:08.244709015 CEST | 60581 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:08.245001078 CEST | 61905 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:08.342288017 CEST | 53 | 60581 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:08.342681885 CEST | 53 | 61905 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:09.261411905 CEST | 58996 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:09.261527061 CEST | 49802 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:09.344814062 CEST | 53 | 58996 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:09.344835997 CEST | 53 | 49802 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:09.832942009 CEST | 59614 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:09.833157063 CEST | 61074 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:10.060364008 CEST | 53 | 59614 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:10.069323063 CEST | 53 | 61074 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:10.962246895 CEST | 58264 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:10.962246895 CEST | 61520 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:11.154659033 CEST | 53 | 58264 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:11.234745026 CEST | 53 | 61520 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:12.113848925 CEST | 59546 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:12.114192963 CEST | 55091 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:21:12.269737959 CEST | 53 | 59546 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:12.269756079 CEST | 53 | 55091 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:20.922193050 CEST | 53 | 52989 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:39.782685995 CEST | 53 | 51090 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:21:41.985265017 CEST | 53 | 59920 | 162.159.36.2 | 192.168.2.6 |
Apr 10, 2025 19:22:02.204252005 CEST | 53 | 63852 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:02.533032894 CEST | 53 | 64857 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:04.745147943 CEST | 138 | 138 | 192.168.2.6 | 192.168.2.255 |
Apr 10, 2025 19:22:20.929631948 CEST | 53 | 63407 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:21.501790047 CEST | 53 | 50953 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:25.270296097 CEST | 55853 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:25.270737886 CEST | 60962 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:25.364347935 CEST | 53 | 55853 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:25.364378929 CEST | 53 | 60962 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:28.320214987 CEST | 52177 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:28.324078083 CEST | 63974 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:28.408740997 CEST | 53 | 52177 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:28.412537098 CEST | 53 | 63974 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:29.305799961 CEST | 53386 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:29.306123972 CEST | 53237 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:29.401813030 CEST | 53 | 53386 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:29.403323889 CEST | 53 | 53237 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:30.397759914 CEST | 54007 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:30.397852898 CEST | 62967 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 10, 2025 19:22:30.489161968 CEST | 53 | 54007 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:30.489183903 CEST | 53 | 62967 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:38.490505934 CEST | 53 | 58375 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:22:57.384291887 CEST | 53 | 55387 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:23:20.335367918 CEST | 53 | 53566 | 1.1.1.1 | 192.168.2.6 |
Apr 10, 2025 19:23:20.604604006 CEST | 53 | 65471 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 10, 2025 19:21:11.234814882 CEST | 192.168.2.6 | 1.1.1.1 | c256 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 10, 2025 19:21:06.815496922 CEST | 192.168.2.6 | 1.1.1.1 | 0x3c82 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:06.815496922 CEST | 192.168.2.6 | 1.1.1.1 | 0x3522 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:21:08.244709015 CEST | 192.168.2.6 | 1.1.1.1 | 0x9b6f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:08.245001078 CEST | 192.168.2.6 | 1.1.1.1 | 0xf35c | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:21:09.261411905 CEST | 192.168.2.6 | 1.1.1.1 | 0xcdb8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:09.261527061 CEST | 192.168.2.6 | 1.1.1.1 | 0x57a6 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:21:09.832942009 CEST | 192.168.2.6 | 1.1.1.1 | 0xc2eb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:09.833157063 CEST | 192.168.2.6 | 1.1.1.1 | 0x2b98 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:21:10.962246895 CEST | 192.168.2.6 | 1.1.1.1 | 0xe0fd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:10.962246895 CEST | 192.168.2.6 | 1.1.1.1 | 0x7055 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:21:12.113848925 CEST | 192.168.2.6 | 1.1.1.1 | 0x96f7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:21:12.114192963 CEST | 192.168.2.6 | 1.1.1.1 | 0xe53c | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:22:25.270296097 CEST | 192.168.2.6 | 1.1.1.1 | 0x1e9c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:22:25.270737886 CEST | 192.168.2.6 | 1.1.1.1 | 0xe5ad | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:22:28.320214987 CEST | 192.168.2.6 | 1.1.1.1 | 0xf02 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:22:28.324078083 CEST | 192.168.2.6 | 1.1.1.1 | 0x8b | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:22:29.305799961 CEST | 192.168.2.6 | 1.1.1.1 | 0xc61c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:22:29.306123972 CEST | 192.168.2.6 | 1.1.1.1 | 0xb70 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 10, 2025 19:22:30.397759914 CEST | 192.168.2.6 | 1.1.1.1 | 0xfef2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 10, 2025 19:22:30.397852898 CEST | 192.168.2.6 | 1.1.1.1 | 0x267e | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 10, 2025 19:21:06.914720058 CEST | 1.1.1.1 | 192.168.2.6 | 0x3c82 | No error (0) | 142.251.35.164 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:06.914736986 CEST | 1.1.1.1 | 192.168.2.6 | 0x3522 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 10, 2025 19:21:08.342288017 CEST | 1.1.1.1 | 192.168.2.6 | 0x9b6f | No error (0) | 151.101.130.132 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:08.342288017 CEST | 1.1.1.1 | 192.168.2.6 | 0x9b6f | No error (0) | 151.101.66.132 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:08.342288017 CEST | 1.1.1.1 | 192.168.2.6 | 0x9b6f | No error (0) | 151.101.194.132 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:08.342288017 CEST | 1.1.1.1 | 192.168.2.6 | 0x9b6f | No error (0) | 151.101.2.132 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:09.344814062 CEST | 1.1.1.1 | 192.168.2.6 | 0xcdb8 | No error (0) | 104.17.24.14 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:09.344814062 CEST | 1.1.1.1 | 192.168.2.6 | 0xcdb8 | No error (0) | 104.17.25.14 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:09.344835997 CEST | 1.1.1.1 | 192.168.2.6 | 0x57a6 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 10, 2025 19:21:10.060364008 CEST | 1.1.1.1 | 192.168.2.6 | 0xc2eb | No error (0) | 167.172.166.226 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:11.154659033 CEST | 1.1.1.1 | 192.168.2.6 | 0xe0fd | No error (0) | 167.172.166.226 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:12.269737959 CEST | 1.1.1.1 | 192.168.2.6 | 0x96f7 | No error (0) | 104.21.7.120 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:12.269737959 CEST | 1.1.1.1 | 192.168.2.6 | 0x96f7 | No error (0) | 172.67.130.75 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:21:12.269756079 CEST | 1.1.1.1 | 192.168.2.6 | 0xe53c | No error (0) | 65 | IN (0x0001) | false | |||
Apr 10, 2025 19:22:25.364347935 CEST | 1.1.1.1 | 192.168.2.6 | 0x1e9c | No error (0) | 142.251.35.164 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:22:25.364378929 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5ad | No error (0) | 65 | IN (0x0001) | false | |||
Apr 10, 2025 19:22:28.408740997 CEST | 1.1.1.1 | 192.168.2.6 | 0xf02 | No error (0) | 167.172.166.226 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:22:29.401813030 CEST | 1.1.1.1 | 192.168.2.6 | 0xc61c | No error (0) | 167.172.166.226 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:22:30.489161968 CEST | 1.1.1.1 | 192.168.2.6 | 0xfef2 | No error (0) | 104.21.7.120 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:22:30.489161968 CEST | 1.1.1.1 | 192.168.2.6 | 0xfef2 | No error (0) | 172.67.130.75 | A (IP address) | IN (0x0001) | false | ||
Apr 10, 2025 19:22:30.489183903 CEST | 1.1.1.1 | 192.168.2.6 | 0x267e | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49711 | 142.251.40.99 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Apr 10, 2025 19:21:17.370960951 CEST | 202 | OUT | |
Apr 10, 2025 19:21:17.458359957 CEST | 1031 | IN | |
Apr 10, 2025 19:21:17.458378077 CEST | 1031 | IN | |
Apr 10, 2025 19:21:17.458390951 CEST | 390 | IN | |
Apr 10, 2025 19:21:17.464219093 CEST | 200 | OUT | |
Apr 10, 2025 19:21:17.549143076 CEST | 1031 | IN | |
Apr 10, 2025 19:21:17.549158096 CEST | 212 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 49698 | 151.101.130.132 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:08 UTC | 740 | OUT | |
2025-04-10 17:21:08 UTC | 623 | IN | |
2025-04-10 17:21:08 UTC | 1378 | IN | |
2025-04-10 17:21:08 UTC | 494 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49700 | 104.17.24.14 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:09 UTC | 567 | OUT | |
2025-04-10 17:21:09 UTC | 964 | IN | |
2025-04-10 17:21:09 UTC | 405 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN | |
2025-04-10 17:21:09 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.6 | 49703 | 167.172.166.226 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:10 UTC | 698 | OUT | |
2025-04-10 17:21:10 UTC | 475 | IN | |
2025-04-10 17:21:10 UTC | 198 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 49704 | 167.172.166.226 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:11 UTC | 778 | OUT | |
2025-04-10 17:21:12 UTC | 320 | IN | |
2025-04-10 17:21:12 UTC | 351 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.6 | 49706 | 104.21.7.120 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:12 UTC | 726 | OUT | |
2025-04-10 17:21:12 UTC | 1044 | IN | |
2025-04-10 17:21:12 UTC | 325 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN | |
2025-04-10 17:21:12 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 49705 | 104.21.7.120 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:12 UTC | 1127 | OUT | |
2025-04-10 17:21:12 UTC | 22 | OUT | |
2025-04-10 17:21:13 UTC | 1032 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49707 | 104.21.7.120 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:13 UTC | 866 | OUT | |
2025-04-10 17:21:13 UTC | 554 | IN | |
2025-04-10 17:21:13 UTC | 332 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49708 | 104.21.7.120 | 443 | 4840 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:21:13 UTC | 1125 | OUT | |
2025-04-10 17:21:14 UTC | 396 | IN | |
2025-04-10 17:21:14 UTC | 327 | IN | |
2025-04-10 17:21:14 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.6 | 49731 | 167.172.166.226 | 443 | 6120 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:22:28 UTC | 698 | OUT | |
2025-04-10 17:22:29 UTC | 475 | IN | |
2025-04-10 17:22:29 UTC | 198 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.6 | 49736 | 167.172.166.226 | 443 | 6120 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:22:29 UTC | 830 | OUT | |
2025-04-10 17:22:30 UTC | 269 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.6 | 49738 | 104.21.7.120 | 443 | 6120 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-10 17:22:31 UTC | 1122 | OUT | |
2025-04-10 17:22:31 UTC | 396 | IN | |
2025-04-10 17:22:31 UTC | 327 | IN | |
2025-04-10 17:22:31 UTC | 5 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 13:20:58 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 3 |
Start time: | 13:21:01 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 12 |
Start time: | 13:21:07 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 16 |
Start time: | 13:22:19 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 17 |
Start time: | 13:22:19 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 18 |
Start time: | 13:22:27 |
Start date: | 10/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff631b40000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |