Edit tour
Windows
Analysis Report
https://pkrhzxtlvs.scscollege.org/?dshhef7dyi-7c17jao-xt77v0w0o-qaglkg6oqgym5fffr1d51yfx11tqo0aczuqkhl6vwlimlntj-kn5c1~7v70x5thdvj7c1r1~56f38w80yeuur2e~myjmfimjgczyryf10fucpv~p0j241ano0rhvac-qzvpmr6b6kkd0xqdcikn5h-0xfvpwdyu9~062zk0tklf~vbjbpqf~p4mtkgudniqu01qy8mntriuy9cfvhcd-2-xov9j7c1sd-2shqdrvjte8
Overview
General Information
Detection
Score: | 64 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Antivirus / Scanner detection for submitted sample
Multi AV Scanner detection for domain / URL
Antivirus detection for URL or domain
HTML page is missing a favicon
Classification
- System is w10x64
- chrome.exe (PID: 3464 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" --sta rt-maximiz ed "about: blank MD5: 0FEC2748F363150DC54C1CAFFB1A9408) - chrome.exe (PID: 5864 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =1824 --fi eld-trial- handle=187 6,i,161062 7399689116 7105,15087 3938482061 95252,1310 72 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationTarg etPredicti on /prefet ch:8 MD5: 0FEC2748F363150DC54C1CAFFB1A9408)
- chrome.exe (PID: 3676 cmdline:
C:\Program Files\Goo gle\Chrome \Applicati on\chrome. exe" "http s://pkrhzx tlvs.scsco llege.org/ ?dshhef7dy i-7c17jao- xt77v0w0o- qaglkg6oqg ym5fffr1d5 1yfx11tqo0 aczuqkhl6v wlimlntj-k n5c1~7v70x 5thdvj7c1r 1~56f38w80 yeuur2e~my jmfimjgczy ryf10fucpv ~p0j241ano 0rhvac-qzv pmr6b6kkd0 xqdcikn5h- 0xfvpwdyu9 ~062zk0tkl f~vbjbpqf~ p4mtkgudni qu01qy8mnt riuy9cfvhc d-2-xov9j7 c1sd-2shqd rvjte8rl0n 7bj8myx79r jtx6w8c6hr ruf9k1suac axma0kc-hu o3t4p31t0u zu3llizpbp xat3w7qvaj x9yxo23u32 v4t1ju-0au -4pm15pgw0 f123y09rg7 -v25bw7mkn dt~3aa8f8m o-bpg-9tv7 enovx013t1 7dqlxwapfe 4yw18v23ks go54ysett0 k4aqxsutj5 -5yz~upoxh cry3v9tvuu 6evg6n0oxz hr55ng6otq vh~33id63e sxp30~-hrw rrjubs6565 g3-k2iucun 085yf7tpbc 6nhfuylze9 -51xvd8070 bt-i6munyi rhyuo7lwbh k0y1-y7ems q6qbpfhyeg hukzbtzizq kcb6niwnhj sj0s~5~~dt a42odpz4j1 xtlfjd0yks q6e-8e6a2b ip7w6xkcsw ynrka-vv0m eod4ypnio7 rsa6nvpgb1 diulznmdl3 htq4341bo~ ldqypza~16 btlefrzje6 w8cadgndkp ~n0uep~wno 30toq~lcjd s=value&ur l=memindus tries.com/ host/hjlwe hjwhnkewhj /Y2VsbGlvd HRAd2lja2V yc21pdGguY 29t MD5: 0FEC2748F363150DC54C1CAFFB1A9408)
- cleanup
⊘No configs have been found
⊘No yara matches
⊘No Sigma rule has matched
⊘No Snort rule has matched
Click to jump to signature section
Show All Signature Results
AV Detection |
---|
Source: | SlashNext: |
Source: | Virustotal: | Perma Link |
Source: | Avira URL Cloud: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | Directory created: | Jump to behavior |
Source: | DNS traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | HTTP traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Directory created: | Jump to behavior |
Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Exfiltration | Command and Control | Network Effects | Remote Service Effects | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 2 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | Exfiltration Over Other Network Medium | 1 Encrypted Channel | Eavesdrop on Insecure Network Communication | Remotely Track Device Without Authorization | Modify System Partition |
Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | Exfiltration Over Bluetooth | 4 Non-Application Layer Protocol | Exploit SS7 to Redirect Phone Calls/SMS | Remotely Wipe Data Without Authorization | Device Lockout |
Domain Accounts | At (Linux) | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | Automated Exfiltration | 5 Application Layer Protocol | Exploit SS7 to Track Device Location | Obtain Device Cloud Backups | Delete Device Data |
Local Accounts | At (Windows) | Logon Script (Mac) | Logon Script (Mac) | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | Scheduled Transfer | 3 Ingress Tool Transfer | SIM Card Swap | Carrier Billing Fraud |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse | ||
100% | SlashNext | Credential Stealing type: Phishing & Social usering | ||
0% | Avira URL Cloud | safe |
⊘No Antivirus matches
⊘No Antivirus matches
⊘No Antivirus matches
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
13% | Virustotal | Browse | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
accounts.google.com | 172.217.168.77 | true | false | high | |
pkrhzxtlvs.scscollege.org | 208.91.199.115 | true | false | unknown | |
www.google.com | 172.217.168.68 | true | false | high | |
clients.l.google.com | 142.250.203.110 | true | false | high | |
clients2.google.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false | high | ||
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
172.217.168.68 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.217.168.77 | accounts.google.com | United States | 15169 | GOOGLEUS | false | |
208.91.199.115 | pkrhzxtlvs.scscollege.org | United States | 394695 | PUBLIC-DOMAIN-REGISTRYUS | false | |
142.250.203.110 | clients.l.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.1 |
127.0.0.1 |
Joe Sandbox Version: | 37.1.0 Beryl |
Analysis ID: | 861346 |
Start date and time: | 2023-05-08 16:49:32 +02:00 |
Joe Sandbox Product: | CloudBasic |
Overall analysis duration: | 0h 6m 8s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://pkrhzxtlvs.scscollege.org/?dshhef7dyi-7c17jao-xt77v0w0o-qaglkg6oqgym5fffr1d51yfx11tqo0aczuqkhl6vwlimlntj-kn5c1~7v70x5thdvj7c1r1~56f38w80yeuur2e~myjmfimjgczyryf10fucpv~p0j241ano0rhvac-qzvpmr6b6kkd0xqdcikn5h-0xfvpwdyu9~062zk0tklf~vbjbpqf~p4mtkgudniqu01qy8mntriuy9cfvhcd-2-xov9j7c1sd-2shqdrvjte8rl0n7bj8myx79rjtx6w8c6hrruf9k1suacaxma0kc-huo3t4p31t0uzu3llizpbpxat3w7qvajx9yxo23u32v4t1ju-0au-4pm15pgw0f123y09rg7-v25bw7mkndt~3aa8f8mo-bpg-9tv7enovx013t17dqlxwapfe4yw18v23ksgo54ysett0k4aqxsutj5-5yz~upoxhcry3v9tvuu6evg6n0oxzhr55ng6otqvh~33id63esxp30~-hrwrrjubs6565g3-k2iucun085yf7tpbc6nhfuylze9-51xvd8070bt-i6munyirhyuo7lwbhk0y1-y7emsq6qbpfhyeghukzbtzizqkcb6niwnhjsj0s~5~~dta42odpz4j1xtlfjd0yksq6e-8e6a2bip7w6xkcswynrka-vv0meod4ypnio7rsa6nvpgb1diulznmdl3htq4341bo~ldqypza~16btlefrzje6w8cadgndkp~n0uep~wno30toq~lcjds=value&url=memindustries.com/host/hjlwehjwhnkewhj/Y2VsbGlvdHRAd2lja2Vyc21pdGguY29t |
Analysis system description: | Windows 10 64 bit v1803 with Office Professional Plus 2016, Chrome 104, IE 11, Adobe Reader DC 19, Java 8 Update 211 |
Number of analysed new started processes analysed: | 12 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal64.win@24/6@5/7 |
EGA Information: | Failed |
HDC Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): SgrmBroker.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.168.67, 34.104.35.123, 216.58.215.234, 172.217.168.10, 172.217.168.42, 142.250.203.106
- Excluded domains from analysis (whitelisted): fs.microsoft.com, edgedl.me.gvt1.com, content-autofill.googleapis.com, update.googleapis.com, clientservices.googleapis.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtWriteVirtualMemory calls found.
⊘No simulations
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1085 |
Entropy (8bit): | 4.058608047674449 |
Encrypted: | false |
SSDEEP: | 12:e/JqQxxbxYBPl4X2RXwZz3OBqgQlSQAiCJWyEyl/Gpb+oQb:qbxc4GKV3OBWXyBEG |
MD5: | F241A4A908C2B70B395455441557694E |
SHA1: | BDE4872A915E2317C2D09DA380DB8A847412972B |
SHA-256: | B54543FD98803B37498311B6CEAA2CDD91915E962E29F749AAB445EE4FD6882F |
SHA-512: | 8058973266C0CA98825C998AEDE297730C6AF78C129A2EB50CC6F3BBF7ACC1D18686D3057DD5F148F87887046B5CEC13122951E6959EE9DBCEA7857D99B46E3D |
Malicious: | false |
Reputation: | low |
URL: | https://pkrhzxtlvs.scscollege.org/?dshhef7dyi-7c17jao-xt77v0w0o-qaglkg6oqgym5fffr1d51yfx11tqo0aczuqkhl6vwlimlntj-kn5c1~7v70x5thdvj7c1r1~56f38w80yeuur2e~myjmfimjgczyryf10fucpv~p0j241ano0rhvac-qzvpmr6b6kkd0xqdcikn5h-0xfvpwdyu9~062zk0tklf~vbjbpqf~p4mtkgudniqu01qy8mntriuy9cfvhcd-2-xov9j7c1sd-2shqdrvjte8rl0n7bj8myx79rjtx6w8c6hrruf9k1suacaxma0kc-huo3t4p31t0uzu3llizpbpxat3w7qvajx9yxo23u32v4t1ju-0au-4pm15pgw0f123y09rg7-v25bw7mkndt~3aa8f8mo-bpg-9tv7enovx013t17dqlxwapfe4yw18v23ksgo54ysett0k4aqxsutj5-5yz~upoxhcry3v9tvuu6evg6n0oxzhr55ng6otqvh~33id63esxp30~-hrwrrjubs6565g3-k2iucun085yf7tpbc6nhfuylze9-51xvd8070bt-i6munyirhyuo7lwbhk0y1-y7emsq6qbpfhyeghukzbtzizqkcb6niwnhjsj0s~5~~dta42odpz4j1xtlfjd0yksq6e-8e6a2bip7w6xkcswynrka-vv0meod4ypnio7rsa6nvpgb1diulznmdl3htq4341bo~ldqypza~16btlefrzje6w8cadgndkp~n0uep~wno30toq~lcjds=value&url=memindustries.com/host/hjlwehjwhnkewhj/Y2VsbGlvdHRAd2lja2Vyc21pdGguY29t |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 15598 |
Entropy (8bit): | 7.8196723697549535 |
Encrypted: | false |
SSDEEP: | 384:+vbmyAC3cEOacUKp0znppKkr2lGYfuWM/7GZovw11:+vYEOabKp01pKkqlGYf6/acq |
MD5: | 85F54DDD54F2AFE99537CEE06448720F |
SHA1: | 2E294A5CA37696F67D81D9B3143DC970BF955822 |
SHA-256: | 0B74297FC0A1E3C33DAD46F145582A8774CBAE57D8A75E6B1441DE745D346CF3 |
SHA-512: | 30E59FC8B71EDFF0E6DCC44ED947C628BAC9D4FC16CA5DF8816A8B03A8738C94FCCD47355F54C146FCD029EC31B7DED4C98CA6026CD20DBD8122A8D0C99B77E1 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.702819531114783 |
Encrypted: | false |
SSDEEP: | 3:HycMK:S9K |
MD5: | F20C48603763A982D7F6B2C8830F01AD |
SHA1: | DEA4D0A2ABFADDA68DB41B134271C3A4A84475F7 |
SHA-256: | C91C7EEE4E89FF52C17776184F3134DB98F2C1C8A9AFB98F0D5E0A9EC7D6BC43 |
SHA-512: | 7BFDED2053A938E532B5FC31D18FB3023BC8DC8A22D64ACAF4B39B45C94F3763D76C9030053EBEBBFA7F9152EBDF9663126062C7327AEB84B4F87EAB4C3E8E2D |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTA0LjAuNTExMi44MRIQCeRgIue7qYF2EgUNzMokYA==?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 583 |
Entropy (8bit): | 5.11550204447751 |
Encrypted: | false |
SSDEEP: | 12:vQ0AMyHWBFc+sc3Ea2KVdNxtNufiCRiTkJsU3++W6OQ4NbxBShQL:vQFrWMAEafVfN+iCR2kJe+P4NjSK |
MD5: | 59F6AE7C7F154EC74D418D4ED6FC5B0E |
SHA1: | 674860108A41AB23BA5F73635749332BD8A46B7E |
SHA-256: | 50E0767F2731DA7DDB56D719DC85A7F830C4A860D8F09D0F25401D3DC7097D7D |
SHA-512: | 501F35D5347BD1F20024A1C76172874E0026289F6DD60DE6A1F83EF2DEB0FFF07CD75C45B4DCF693A7C2FF903528BEDBD05C2B9F9BB439D294F5F904427173F7 |
Malicious: | false |
Reputation: | low |
URL: | https://pkrhzxtlvs.scscollege.org/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1064 |
Entropy (8bit): | 4.826710531010508 |
Encrypted: | false |
SSDEEP: | 24:U9KL8SvTdJYF0Z+cYFMrZWSo9OFU/6YLdFUShCYl9jso/S+HfxE:UA8uyF0Z+7FMrZWF9qE6KFUAjso/S+HW |
MD5: | 27F9E9CF48D68471FD3CDFF493B9347B |
SHA1: | 4F030E7A53FB944DC56767594976121265C70AFD |
SHA-256: | C03307765D39AD9B0EBAC265B33C0903F27F32E293452E74D8A5EE6CAB098D23 |
SHA-512: | F4EE3BBD345532E5406D7DFB6E664929CEA6B2B8ED9FE03084CCE0B74119432C6D5E0C9D40BCFAB891A6EFC80FA3A28FCCBE16B2967AD6BDF64A232E4A11C68E |
Malicious: | false |
Reputation: | low |
URL: | https://pkrhzxtlvs.scscollege.org/assets/css/style.css?v=3 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 15598 |
Entropy (8bit): | 7.8196723697549535 |
Encrypted: | false |
SSDEEP: | 384:+vbmyAC3cEOacUKp0znppKkr2lGYfuWM/7GZovw11:+vYEOabKp01pKkqlGYf6/acq |
MD5: | 85F54DDD54F2AFE99537CEE06448720F |
SHA1: | 2E294A5CA37696F67D81D9B3143DC970BF955822 |
SHA-256: | 0B74297FC0A1E3C33DAD46F145582A8774CBAE57D8A75E6B1441DE745D346CF3 |
SHA-512: | 30E59FC8B71EDFF0E6DCC44ED947C628BAC9D4FC16CA5DF8816A8B03A8738C94FCCD47355F54C146FCD029EC31B7DED4C98CA6026CD20DBD8122A8D0C99B77E1 |
Malicious: | false |
Reputation: | low |
URL: | https://pkrhzxtlvs.scscollege.org/img/removebg-preview.png |
Preview: |
⊘No static file info
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
May 8, 2023 16:50:33.102252960 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.102309942 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.102411032 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.310003996 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.310051918 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.310134888 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.311976910 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.312016010 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.313010931 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.313072920 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.313137054 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.314347029 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.314378023 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.315329075 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.315371037 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.383711100 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.400845051 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.423988104 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.431988001 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.477526903 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.477591991 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.478148937 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.478173018 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.480360985 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.480460882 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.481096029 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.481116056 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.481774092 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.481802940 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.481834888 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:33.481892109 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:33.481930971 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.482785940 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:33.482911110 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:33.674159050 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.819549084 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.819766998 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.819787979 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.819955111 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.829951048 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.829997063 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.830210924 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:34.830393076 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:34.830420017 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.830450058 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.865052938 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.865221977 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:34.865262032 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.865289927 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.865348101 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:34.874046087 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.874094009 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.874170065 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.882931948 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.883100033 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.883105993 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.883152008 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.919543982 CEST | 49710 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:34.919576883 CEST | 443 | 49710 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:50:34.920547962 CEST | 49706 | 443 | 192.168.2.6 | 142.250.203.110 |
May 8, 2023 16:50:34.920571089 CEST | 443 | 49706 | 142.250.203.110 | 192.168.2.6 |
May 8, 2023 16:50:34.974050045 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:50:36.254606962 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.254667044 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.254741907 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.255611897 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.255641937 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.326509953 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.328344107 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.328380108 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.330638885 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.330723047 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.335922003 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.336172104 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.388756990 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.388808012 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.388891935 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.389789104 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.389815092 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.445966959 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.446032047 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:36.644015074 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:36.749058962 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.749883890 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.749927044 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.751220942 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.751357079 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.755384922 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.755594015 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.755820990 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:36.755857944 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:36.945027113 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.131055117 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.131161928 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.131230116 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.211035013 CEST | 49714 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.211091042 CEST | 443 | 49714 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.230564117 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.230639935 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.230746984 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.231415033 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.231448889 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.233123064 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.233191967 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.233279943 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.233968973 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.234003067 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.587213993 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.590089083 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.615716934 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.615761995 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.616086006 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.616132021 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.616748095 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.616756916 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.623270988 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.623517036 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.624551058 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.624810934 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.624876022 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.625087976 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.625140905 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.667438984 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.935058117 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.935170889 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.935241938 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.938821077 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.938873053 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.938982964 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.939017057 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.949429989 CEST | 49716 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.949470997 CEST | 443 | 49716 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.998277903 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.998358011 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:37.998492002 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.998878002 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:37.998903036 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.112313986 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.112417936 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.112488031 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.112572908 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.121572971 CEST | 49717 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.121608973 CEST | 443 | 49717 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.355019093 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.355766058 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.355798006 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.356308937 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.357175112 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.357259989 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.357546091 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.399487019 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.585328102 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.585383892 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.585484028 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.591736078 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.591768980 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.713754892 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.713886023 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.713968039 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.715198994 CEST | 49719 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.715230942 CEST | 443 | 49719 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.792325974 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.792438030 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.792570114 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.793195963 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.793229103 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.948945999 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.956151962 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.956203938 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.956845999 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.957633018 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.957791090 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:38.959691048 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:38.959758043 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.150774956 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.243151903 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.255235910 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.255271912 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.256222010 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.322921038 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.323033094 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.323112965 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.345201015 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.696758986 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.697179079 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.700977087 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:39.743417978 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.884671926 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.884814978 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:39.884885073 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:40.351452112 CEST | 49721 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:40.351499081 CEST | 443 | 49721 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:40.915112019 CEST | 49720 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:40.915152073 CEST | 443 | 49720 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:41.807516098 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:41.807591915 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:41.807688951 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:41.808151007 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:41.808182955 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.162468910 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.244404078 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.388313055 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.388348103 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.389326096 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.394135952 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.394455910 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.403002977 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.447421074 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.585738897 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.585859060 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.585944891 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.601823092 CEST | 49726 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.601874113 CEST | 443 | 49726 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.701422930 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.701524973 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:42.701649904 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.702410936 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:42.702454090 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.062306881 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.065454960 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.065519094 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.066535950 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.067672014 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.067897081 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.068097115 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.068167925 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.316648006 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.316705942 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.316843033 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.317167997 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.317184925 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.389100075 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.389153004 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.389213085 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.391055107 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.391081095 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.410342932 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.410454035 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.410518885 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.411818981 CEST | 49727 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.411864996 CEST | 443 | 49727 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.673970938 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.697798967 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.697827101 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.698453903 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.699522018 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.699665070 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.700683117 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.745810032 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.746221066 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.746253967 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.746701956 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.747389078 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.747425079 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.747520924 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:43.748979092 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:43.791435003 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.025207996 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.025248051 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.025432110 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.025474072 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.074412107 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.101797104 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.101897001 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.101994038 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.198398113 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.198416948 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.198509932 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.198592901 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.198652983 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.228199005 CEST | 49729 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.228245974 CEST | 443 | 49729 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:44.717361927 CEST | 49728 | 443 | 192.168.2.6 | 208.91.199.115 |
May 8, 2023 16:50:44.717396021 CEST | 443 | 49728 | 208.91.199.115 | 192.168.2.6 |
May 8, 2023 16:50:46.292851925 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:46.292927980 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:50:46.292987108 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:50.751900911 CEST | 49712 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:50:50.751965046 CEST | 443 | 49712 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:19.893970966 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:51:19.894012928 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:51:36.034499884 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:51:36.034672022 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:51:36.034938097 CEST | 443 | 49708 | 172.217.168.77 | 192.168.2.6 |
May 8, 2023 16:51:36.034940958 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:51:36.035161972 CEST | 49708 | 443 | 192.168.2.6 | 172.217.168.77 |
May 8, 2023 16:51:36.035192966 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:36.035247087 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.035324097 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:36.035855055 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:36.035877943 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.092895985 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.093384981 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:36.093449116 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.093987942 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.094481945 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:36.094599962 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:36.135207891 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:46.078438997 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:46.078581095 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
May 8, 2023 16:51:46.078691959 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:46.459585905 CEST | 49790 | 443 | 192.168.2.6 | 172.217.168.68 |
May 8, 2023 16:51:46.459656954 CEST | 443 | 49790 | 172.217.168.68 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
May 8, 2023 16:50:32.869354010 CEST | 50506 | 53 | 192.168.2.6 | 8.8.8.8 |
May 8, 2023 16:50:32.874413013 CEST | 49448 | 53 | 192.168.2.6 | 8.8.8.8 |
May 8, 2023 16:50:32.894115925 CEST | 53 | 49448 | 8.8.8.8 | 192.168.2.6 |
May 8, 2023 16:50:32.898030996 CEST | 53 | 50506 | 8.8.8.8 | 192.168.2.6 |
May 8, 2023 16:50:36.018121958 CEST | 65198 | 53 | 192.168.2.6 | 8.8.8.8 |
May 8, 2023 16:50:36.020821095 CEST | 62910 | 53 | 192.168.2.6 | 8.8.8.8 |
May 8, 2023 16:50:36.033209085 CEST | 53 | 65198 | 8.8.8.8 | 192.168.2.6 |
May 8, 2023 16:50:36.172612906 CEST | 63229 | 53 | 192.168.2.6 | 8.8.8.8 |
May 8, 2023 16:50:36.192825079 CEST | 53 | 63229 | 8.8.8.8 | 192.168.2.6 |
May 8, 2023 16:50:36.375439882 CEST | 53 | 62910 | 8.8.8.8 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
May 8, 2023 16:50:32.869354010 CEST | 192.168.2.6 | 8.8.8.8 | 0x8889 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 8, 2023 16:50:32.874413013 CEST | 192.168.2.6 | 8.8.8.8 | 0xeab5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 8, 2023 16:50:36.018121958 CEST | 192.168.2.6 | 8.8.8.8 | 0x8a2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 8, 2023 16:50:36.020821095 CEST | 192.168.2.6 | 8.8.8.8 | 0x5022 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
May 8, 2023 16:50:36.172612906 CEST | 192.168.2.6 | 8.8.8.8 | 0x209d | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
May 8, 2023 16:50:32.894115925 CEST | 8.8.8.8 | 192.168.2.6 | 0xeab5 | No error (0) | 172.217.168.77 | A (IP address) | IN (0x0001) | false | ||
May 8, 2023 16:50:32.898030996 CEST | 8.8.8.8 | 192.168.2.6 | 0x8889 | No error (0) | clients.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
May 8, 2023 16:50:32.898030996 CEST | 8.8.8.8 | 192.168.2.6 | 0x8889 | No error (0) | 142.250.203.110 | A (IP address) | IN (0x0001) | false | ||
May 8, 2023 16:50:36.033209085 CEST | 8.8.8.8 | 192.168.2.6 | 0x8a2 | No error (0) | 172.217.168.68 | A (IP address) | IN (0x0001) | false | ||
May 8, 2023 16:50:36.192825079 CEST | 8.8.8.8 | 192.168.2.6 | 0x209d | No error (0) | 172.217.168.68 | A (IP address) | IN (0x0001) | false | ||
May 8, 2023 16:50:36.375439882 CEST | 8.8.8.8 | 192.168.2.6 | 0x5022 | No error (0) | 208.91.199.115 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
0 | 192.168.2.6 | 49710 | 172.217.168.77 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:34 UTC | 0 | OUT | |
2023-05-08 14:50:34 UTC | 0 | OUT | |
2023-05-08 14:50:34 UTC | 2 | IN | |
2023-05-08 14:50:34 UTC | 4 | IN | |
2023-05-08 14:50:34 UTC | 4 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
1 | 192.168.2.6 | 49706 | 142.250.203.110 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:34 UTC | 0 | OUT | |
2023-05-08 14:50:34 UTC | 1 | IN | |
2023-05-08 14:50:34 UTC | 2 | IN | |
2023-05-08 14:50:34 UTC | 2 | IN | |
2023-05-08 14:50:34 UTC | 2 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
10 | 192.168.2.6 | 49728 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:43 UTC | 39 | OUT | |
2023-05-08 14:50:44 UTC | 39 | IN | |
2023-05-08 14:50:44 UTC | 40 | IN | |
2023-05-08 14:50:44 UTC | 49 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
11 | 192.168.2.6 | 49729 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:43 UTC | 39 | OUT | |
2023-05-08 14:50:44 UTC | 47 | IN | |
2023-05-08 14:50:44 UTC | 48 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
2 | 192.168.2.6 | 49714 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:36 UTC | 4 | OUT | |
2023-05-08 14:50:37 UTC | 5 | IN | |
2023-05-08 14:50:37 UTC | 6 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
3 | 192.168.2.6 | 49716 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:37 UTC | 7 | OUT | |
2023-05-08 14:50:37 UTC | 10 | IN | |
2023-05-08 14:50:37 UTC | 10 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
4 | 192.168.2.6 | 49717 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:37 UTC | 8 | OUT | |
2023-05-08 14:50:37 UTC | 11 | IN | |
2023-05-08 14:50:37 UTC | 11 | IN | |
2023-05-08 14:50:38 UTC | 19 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
5 | 192.168.2.6 | 49719 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:38 UTC | 26 | OUT | |
2023-05-08 14:50:38 UTC | 27 | IN | |
2023-05-08 14:50:38 UTC | 27 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | Process |
---|---|---|---|---|---|
6 | 192.168.2.6 | 49720 | 208.91.199.115 | 443 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | kBytes transferred | Direction | Data |
---|---|---|---|
2023-05-08 14:50:38 UTC | 28 | OUT |