Edit tour

Windows Analysis Report
https://mtowner.com

Overview

General Information

Sample URL:https://mtowner.com
Analysis ID:1672167
Infos:

Detection

Score:0
Range:0 - 100
Confidence:80%

Signatures

No high impact signatures.

Classification

RansomwareSpreadingPhishingBankerTrojan / BotAdwareSpywareExploiterEvaderMinercleansuspiciousmalicious
  • System is w10x64
  • chrome.exe (PID: 1592 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: E81F54E6C1129887AEA47E7D092680BF)
    • chrome.exe (PID: 4076 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2020,i,1661100902761445158,14043072267814350238,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=1984 /prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
  • chrome.exe (PID: 6400 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mtowner.com" MD5: E81F54E6C1129887AEA47E7D092680BF)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: unknownHTTPS traffic detected: 142.250.69.4:443 -> 192.168.2.8:49694 version: TLS 1.2
Source: unknownHTTPS traffic detected: 194.87.31.237:443 -> 192.168.2.8:49695 version: TLS 1.2
Source: unknownHTTPS traffic detected: 194.87.31.237:443 -> 192.168.2.8:49696 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.246.71
Source: global trafficHTTP traffic detected: GET / HTTP/1.1Host: mtowner.comConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: mtowner.comConnection: keep-alivesec-ch-ua-platform: "Windows"User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://mtowner.com/Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: mtowner.com
Source: global trafficHTTP traffic detected: HTTP/1.1 404 Not FoundDate: Wed, 23 Apr 2025 14:37:08 GMTServer: Apache/2.4.52 (Ubuntu)Content-Length: 274Connection: closeContent-Type: text/html; charset=iso-8859-1
Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49695 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49696
Source: unknownNetwork traffic detected: HTTP traffic on port 49676 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49695
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49694 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49694
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49696 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49681
Source: unknownNetwork traffic detected: HTTP traffic on port 49671 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49681 -> 443
Source: unknownHTTPS traffic detected: 142.250.69.4:443 -> 192.168.2.8:49694 version: TLS 1.2
Source: unknownHTTPS traffic detected: 194.87.31.237:443 -> 192.168.2.8:49695 version: TLS 1.2
Source: unknownHTTPS traffic detected: 194.87.31.237:443 -> 192.168.2.8:49696 version: TLS 1.2
Source: classification engineClassification label: clean0.win@21/4@4/4
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2020,i,1661100902761445158,14043072267814350238,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=1984 /prefetch:3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mtowner.com"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2020,i,1661100902761445158,14043072267814350238,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=1984 /prefetch:3Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Process Injection
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture3
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet
behaviorgraph top1 process2 2 Behavior Graph ID: 1672167 URL: https://mtowner.com Startdate: 23/04/2025 Architecture: WINDOWS Score: 0 5 chrome.exe 2 2->5         started        8 chrome.exe 2->8         started        dnsIp3 13 192.168.2.4 unknown unknown 5->13 15 192.168.2.8, 443, 49167, 49627 unknown unknown 5->15 10 chrome.exe 5->10         started        process4 dnsIp5 17 www.google.com 142.250.69.4, 443, 49694, 49711 GOOGLEUS United States 10->17 19 mtowner.com 194.87.31.237, 443, 49695, 49696 ASBAXETNRU Russian Federation 10->19

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://mtowner.com0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
https://mtowner.com/favicon.ico0%Avira URL Cloudsafe

Download Network PCAP: filteredfull

NameIPActiveMaliciousAntivirus DetectionReputation
www.google.com
142.250.69.4
truefalse
    high
    mtowner.com
    194.87.31.237
    truefalse
      unknown
      NameMaliciousAntivirus DetectionReputation
      https://mtowner.com/favicon.icofalse
      • Avira URL Cloud: safe
      unknown
      https://mtowner.com/false
        unknown
        • No. of IPs < 25%
        • 25% < No. of IPs < 50%
        • 50% < No. of IPs < 75%
        • 75% < No. of IPs
        IPDomainCountryFlagASNASN NameMalicious
        142.250.69.4
        www.google.comUnited States
        15169GOOGLEUSfalse
        194.87.31.237
        mtowner.comRussian Federation
        49392ASBAXETNRUfalse
        IP
        192.168.2.8
        192.168.2.4
        Joe Sandbox version:42.0.0 Malachite
        Analysis ID:1672167
        Start date and time:2025-04-23 16:36:08 +02:00
        Joe Sandbox product:CloudBasic
        Overall analysis duration:0h 3m 0s
        Hypervisor based Inspection enabled:false
        Report type:full
        Cookbook file name:browseurl.jbs
        Sample URL:https://mtowner.com
        Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
        Number of analysed new started processes analysed:14
        Number of new started drivers analysed:0
        Number of existing processes analysed:0
        Number of existing drivers analysed:0
        Number of injected processes analysed:0
        Technologies:
        • HCA enabled
        • EGA enabled
        • AMSI enabled
        Analysis Mode:default
        Analysis stop reason:Timeout
        Detection:CLEAN
        Classification:clean0.win@21/4@4/4
        EGA Information:Failed
        HCA Information:
        • Successful, ratio: 100%
        • Number of executed functions: 0
        • Number of non-executed functions: 0
        • Exclude process from analysis (whitelisted): sppsvc.exe, SIHClient.exe, SgrmBroker.exe, TextInputHost.exe, svchost.exe
        • Excluded IPs from analysis (whitelisted): 192.178.49.195, 142.250.68.238, 142.250.101.84, 142.250.69.14, 23.220.73.19, 20.12.23.50, 184.29.183.29
        • Excluded domains from analysis (whitelisted): fs.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, accounts.google.com, redirector.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, c.pki.goog, fe3cr.delivery.mp.microsoft.com
        • Not all processes where analyzed, report is missing behavior information
        • Report size getting too big, too many NtOpenFile calls found.
        • VT rate limit hit for: https://mtowner.com
        No simulations
        No context
        No context
        No context
        No context
        No context
        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
        File Type:ASCII text, with no line terminators
        Category:downloaded
        Size (bytes):9
        Entropy (8bit):3.169925001442312
        Encrypted:false
        SSDEEP:3:wFSuL:wZL
        MD5:35D56D565628F654CCEFAEE619BA9728
        SHA1:4CB2C207D5A9BB582AA3DDD06786D1AFA0D8BADA
        SHA-256:B22550984AE425E3EA0ED0FCC3AD554A42C7206BCC9CEEF5CC72528463560EFD
        SHA-512:76DA290B4AD80FD6FC9CF9C155110F11A9EEC503C5B9C4A306EEE060C08B4192A1D59BA437D027AB6C1559A9BF92B63DCE8823C2A63CA871175B8B2DC1C7DED5
        Malicious:false
        Reputation:low
        URL:https://mtowner.com/
        Preview:It works.
        Process:C:\Program Files\Google\Chrome\Application\chrome.exe
        File Type:HTML document, ASCII text
        Category:downloaded
        Size (bytes):274
        Entropy (8bit):5.199814983438777
        Encrypted:false
        SSDEEP:6:pn0+Dy9xwGObRmEr6VnetdzRx3G0CezoIRCwdExBFm8oD:J0+oxBeRmR9etdzRxGezHtdf8+
        MD5:C0B627F00C73171731BB84149A9A9663
        SHA1:187B5502E9F3C41971B1EF5145290361B37FE83E
        SHA-256:BDBE61F9CAEB9752F6959FB5C524EADBCBE590F24EA77B8282E1ECB03C4C1F34
        SHA-512:1F30B32BAD1E5D1F3DBA9898AC30056B24641CEB4E81FC2F70AEDECC95D45529825E7E04732AF4E8A8849C23A8EECEFF91C0FFF98863E5F1BA6C48B0335457E9
        Malicious:false
        Reputation:low
        URL:https://mtowner.com/favicon.ico
        Preview:<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">.<html><head>.<title>404 Not Found</title>.</head><body>.<h1>Not Found</h1>.<p>The requested URL was not found on this server.</p>.<hr>.<address>Apache/2.4.52 (Ubuntu) Server at mtowner.com Port 443</address>.</body></html>.
        No static file info

        Download Network PCAP: filteredfull

        • Total Packets: 118
        • 443 (HTTPS)
        • 80 (HTTP)
        • 53 (DNS)
        TimestampSource PortDest PortSource IPDest IP
        Apr 23, 2025 16:36:53.728415012 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.731436968 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.744431973 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.745877028 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.745965004 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.746949911 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.747030973 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.748855114 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.748874903 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.751646042 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.751765013 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.753875017 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.753954887 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.754098892 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.755889893 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.875827074 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.875972986 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.879033089 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.889573097 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.890249968 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.890660048 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.890842915 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.892929077 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.893062115 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.895329952 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.897463083 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:53.897540092 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.897676945 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:53.899458885 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.022388935 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.025511980 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.034174919 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.035289049 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.035393000 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.035752058 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.035811901 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.038414955 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.038496017 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.038570881 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.038635015 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.040529013 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.040673018 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.042849064 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.170192003 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.170325041 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.173541069 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.179025888 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.182554007 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.183015108 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.183079004 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.185872078 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.185924053 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.186383963 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.188766003 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.189385891 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.189515114 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.191441059 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.316044092 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.319634914 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.325965881 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.327330112 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.327409029 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.327755928 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.327805996 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.329982042 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.330096006 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.330166101 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.330379009 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.332089901 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.332396984 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.334569931 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.461097956 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.461306095 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.464126110 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.470693111 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.471389055 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.471784115 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.471856117 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.474149942 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.474186897 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.474344015 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.475425005 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.475495100 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.477649927 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.478498936 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.605173111 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.608851910 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.615081072 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.616238117 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.616369963 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.617625952 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.617716074 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.618922949 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.619676113 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.619782925 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.619878054 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.620037079 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.621912003 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.677104950 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.750097036 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.750278950 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.760399103 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.761194944 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.761318922 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:54.761610031 CEST4434968113.107.246.71192.168.2.8
        Apr 23, 2025 16:36:54.802335024 CEST49681443192.168.2.813.107.246.71
        Apr 23, 2025 16:36:56.552045107 CEST49675443192.168.2.82.23.227.215
        Apr 23, 2025 16:36:56.552045107 CEST49676443192.168.2.82.23.227.215
        Apr 23, 2025 16:36:56.552181959 CEST49674443192.168.2.82.23.227.208
        Apr 23, 2025 16:36:57.458267927 CEST4967780192.168.2.823.60.201.147
        Apr 23, 2025 16:36:57.458268881 CEST49672443192.168.2.82.19.104.63
        Apr 23, 2025 16:37:04.339482069 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:04.339535952 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:04.339915037 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:04.340306997 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:04.340323925 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:04.659437895 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:04.659521103 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:04.660794973 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:04.660810947 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:04.661060095 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:04.710670948 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:05.682977915 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.683042049 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:05.683119059 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.683626890 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.683676004 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:05.683805943 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.684103012 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.684122086 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:05.684156895 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:05.684171915 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.162306070 CEST49675443192.168.2.82.23.227.215
        Apr 23, 2025 16:37:06.162307024 CEST49676443192.168.2.82.23.227.215
        Apr 23, 2025 16:37:06.162337065 CEST49674443192.168.2.82.23.227.208
        Apr 23, 2025 16:37:06.522015095 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.522114992 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:06.523823977 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:06.523837090 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.524157047 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.524493933 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:06.525420904 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.525566101 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:06.526588917 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:06.526601076 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.526885986 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.568279982 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:06.571094036 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:07.067536116 CEST49672443192.168.2.82.19.104.63
        Apr 23, 2025 16:37:07.067557096 CEST4967780192.168.2.823.60.201.147
        Apr 23, 2025 16:37:08.242772102 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.242897987 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.242970943 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:08.256998062 CEST49695443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:08.257026911 CEST44349695194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.357834101 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:08.400273085 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.627495050 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.627571106 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:08.627701044 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:08.629636049 CEST49696443192.168.2.8194.87.31.237
        Apr 23, 2025 16:37:08.629647017 CEST44349696194.87.31.237192.168.2.8
        Apr 23, 2025 16:37:19.643755913 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:19.643812895 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:19.643908024 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:20.055187941 CEST49694443192.168.2.8142.250.69.4
        Apr 23, 2025 16:37:20.055226088 CEST44349694142.250.69.4192.168.2.8
        Apr 23, 2025 16:37:34.131341934 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:34.443240881 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:35.052634954 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:36.255795002 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:38.662225962 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:42.257110119 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:42.568850994 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:43.177727938 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:43.474608898 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:37:44.380852938 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:46.787633896 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:51.599828005 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:37:53.083954096 CEST49671443192.168.2.8204.79.197.203
        Apr 23, 2025 16:38:01.209486961 CEST49678443192.168.2.820.42.65.90
        Apr 23, 2025 16:38:04.257736921 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:04.257795095 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:04.257879972 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:04.258174896 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:04.258188963 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:04.572369099 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:04.572770119 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:04.572801113 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:14.566250086 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:14.566308975 CEST44349711142.250.69.4192.168.2.8
        Apr 23, 2025 16:38:14.566484928 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:15.057092905 CEST49711443192.168.2.8142.250.69.4
        Apr 23, 2025 16:38:15.057137966 CEST44349711142.250.69.4192.168.2.8
        TimestampSource PortDest PortSource IPDest IP
        Apr 23, 2025 16:37:00.231513977 CEST53496271.1.1.1192.168.2.8
        Apr 23, 2025 16:37:00.236347914 CEST53569081.1.1.1192.168.2.8
        Apr 23, 2025 16:37:01.536475897 CEST53576501.1.1.1192.168.2.8
        Apr 23, 2025 16:37:01.797337055 CEST53539691.1.1.1192.168.2.8
        Apr 23, 2025 16:37:04.196165085 CEST5958353192.168.2.81.1.1.1
        Apr 23, 2025 16:37:04.196342945 CEST4916753192.168.2.81.1.1.1
        Apr 23, 2025 16:37:04.336760998 CEST53595831.1.1.1192.168.2.8
        Apr 23, 2025 16:37:04.337722063 CEST53491671.1.1.1192.168.2.8
        Apr 23, 2025 16:37:05.538650990 CEST5115653192.168.2.81.1.1.1
        Apr 23, 2025 16:37:05.538893938 CEST5641753192.168.2.81.1.1.1
        Apr 23, 2025 16:37:05.680874109 CEST53511561.1.1.1192.168.2.8
        Apr 23, 2025 16:37:05.681199074 CEST53564171.1.1.1192.168.2.8
        Apr 23, 2025 16:37:18.711663961 CEST53611841.1.1.1192.168.2.8
        Apr 23, 2025 16:37:37.525074959 CEST53537501.1.1.1192.168.2.8
        Apr 23, 2025 16:37:59.546041012 CEST53548651.1.1.1192.168.2.8
        Apr 23, 2025 16:38:00.451812983 CEST53541321.1.1.1192.168.2.8
        Apr 23, 2025 16:38:02.898885965 CEST53648601.1.1.1192.168.2.8
        TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
        Apr 23, 2025 16:37:04.196165085 CEST192.168.2.81.1.1.10x7a28Standard query (0)www.google.comA (IP address)IN (0x0001)false
        Apr 23, 2025 16:37:04.196342945 CEST192.168.2.81.1.1.10xf39bStandard query (0)www.google.com65IN (0x0001)false
        Apr 23, 2025 16:37:05.538650990 CEST192.168.2.81.1.1.10xa37eStandard query (0)mtowner.comA (IP address)IN (0x0001)false
        Apr 23, 2025 16:37:05.538893938 CEST192.168.2.81.1.1.10x6beStandard query (0)mtowner.com65IN (0x0001)false
        TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
        Apr 23, 2025 16:37:04.336760998 CEST1.1.1.1192.168.2.80x7a28No error (0)www.google.com142.250.69.4A (IP address)IN (0x0001)false
        Apr 23, 2025 16:37:04.337722063 CEST1.1.1.1192.168.2.80xf39bNo error (0)www.google.com65IN (0x0001)false
        Apr 23, 2025 16:37:05.680874109 CEST1.1.1.1192.168.2.80xa37eNo error (0)mtowner.com194.87.31.237A (IP address)IN (0x0001)false
        • mtowner.com
        Session IDSource IPSource PortDestination IPDestination PortPIDProcess
        0192.168.2.849695194.87.31.2374434076C:\Program Files\Google\Chrome\Application\chrome.exe
        TimestampBytes transferredDirectionData
        2025-04-23 14:37:06 UTC661OUTGET / HTTP/1.1
        Host: mtowner.com
        Connection: keep-alive
        sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
        sec-ch-ua-mobile: ?0
        sec-ch-ua-platform: "Windows"
        Upgrade-Insecure-Requests: 1
        User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
        Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
        Sec-Fetch-Site: none
        Sec-Fetch-Mode: navigate
        Sec-Fetch-User: ?1
        Sec-Fetch-Dest: document
        Accept-Encoding: gzip, deflate, br, zstd
        Accept-Language: en-US,en;q=0.9
        2025-04-23 14:37:08 UTC166INHTTP/1.1 200 OK
        Date: Wed, 23 Apr 2025 14:37:08 GMT
        Server: Apache/2.4.52 (Ubuntu)
        Content-Length: 9
        Connection: close
        Content-Type: text/html; charset=UTF-8
        2025-04-23 14:37:08 UTC9INData Raw: 49 74 20 77 6f 72 6b 73 2e
        Data Ascii: It works.


        Session IDSource IPSource PortDestination IPDestination PortPIDProcess
        1192.168.2.849696194.87.31.2374434076C:\Program Files\Google\Chrome\Application\chrome.exe
        TimestampBytes transferredDirectionData
        2025-04-23 14:37:08 UTC585OUTGET /favicon.ico HTTP/1.1
        Host: mtowner.com
        Connection: keep-alive
        sec-ch-ua-platform: "Windows"
        User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
        sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
        sec-ch-ua-mobile: ?0
        Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
        Sec-Fetch-Site: same-origin
        Sec-Fetch-Mode: no-cors
        Sec-Fetch-Dest: image
        Referer: https://mtowner.com/
        Accept-Encoding: gzip, deflate, br, zstd
        Accept-Language: en-US,en;q=0.9
        2025-04-23 14:37:08 UTC180INHTTP/1.1 404 Not Found
        Date: Wed, 23 Apr 2025 14:37:08 GMT
        Server: Apache/2.4.52 (Ubuntu)
        Content-Length: 274
        Connection: close
        Content-Type: text/html; charset=iso-8859-1
        2025-04-23 14:37:08 UTC274INData Raw: 3c 21 44 4f 43 54 59 50 45 20 48 54 4d 4c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 49 45 54 46 2f 2f 44 54 44 20 48 54 4d 4c 20 32 2e 30 2f 2f 45 4e 22 3e 0a 3c 68 74 6d 6c 3e 3c 68 65 61 64 3e 0a 3c 74 69 74 6c 65 3e 34 30 34 20 4e 6f 74 20 46 6f 75 6e 64 3c 2f 74 69 74 6c 65 3e 0a 3c 2f 68 65 61 64 3e 3c 62 6f 64 79 3e 0a 3c 68 31 3e 4e 6f 74 20 46 6f 75 6e 64 3c 2f 68 31 3e 0a 3c 70 3e 54 68 65 20 72 65 71 75 65 73 74 65 64 20 55 52 4c 20 77 61 73 20 6e 6f 74 20 66 6f 75 6e 64 20 6f 6e 20 74 68 69 73 20 73 65 72 76 65 72 2e 3c 2f 70 3e 0a 3c 68 72 3e 0a 3c 61 64 64 72 65 73 73 3e 41 70 61 63 68 65 2f 32 2e 34 2e 35 32 20 28 55 62 75 6e 74 75 29 20 53 65 72 76 65 72 20 61 74 20 6d 74 6f 77 6e 65 72 2e 63 6f 6d 20 50 6f 72 74 20 34 34 33 3c 2f 61 64 64 72 65
        Data Ascii: <!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN"><html><head><title>404 Not Found</title></head><body><h1>Not Found</h1><p>The requested URL was not found on this server.</p><hr><address>Apache/2.4.52 (Ubuntu) Server at mtowner.com Port 443</addre


        020406080s020406080100

        Click to jump to process

        020406080s0.0050100MB

        Click to jump to process

        Target ID:0
        Start time:10:36:57
        Start date:23/04/2025
        Path:C:\Program Files\Google\Chrome\Application\chrome.exe
        Wow64 process (32bit):false
        Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
        Imagebase:0x7ff6b29d0000
        File size:3'388'000 bytes
        MD5 hash:E81F54E6C1129887AEA47E7D092680BF
        Has elevated privileges:true
        Has administrator privileges:true
        Programmed in:C, C++ or other language
        Reputation:low
        Has exited:false

        Target ID:1
        Start time:10:36:58
        Start date:23/04/2025
        Path:C:\Program Files\Google\Chrome\Application\chrome.exe
        Wow64 process (32bit):false
        Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2020,i,1661100902761445158,14043072267814350238,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version=20250306-183004.429000 --mojo-platform-channel-handle=1984 /prefetch:3
        Imagebase:0x7ff6b29d0000
        File size:3'388'000 bytes
        MD5 hash:E81F54E6C1129887AEA47E7D092680BF
        Has elevated privileges:true
        Has administrator privileges:true
        Programmed in:C, C++ or other language
        Reputation:low
        Has exited:false

        Target ID:5
        Start time:10:37:04
        Start date:23/04/2025
        Path:C:\Program Files\Google\Chrome\Application\chrome.exe
        Wow64 process (32bit):false
        Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mtowner.com"
        Imagebase:0x7ff6b29d0000
        File size:3'388'000 bytes
        MD5 hash:E81F54E6C1129887AEA47E7D092680BF
        Has elevated privileges:true
        Has administrator privileges:true
        Programmed in:C, C++ or other language
        Reputation:low
        Has exited:true
        There is hidden Windows Behavior. Click on Show Windows Behavior to show it.
        There is hidden Windows Behavior. Click on Show Windows Behavior to show it.

        No disassembly