Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report


General Information

Sample URL:https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe
Analysis ID:1521125


Range:0 - 100


AI detected phishing page
Antivirus / Scanner detection for submitted sample
Yara detected HtmlPhish10
Uses IPFS gateway to access IPFS content in browser (often used in phishing/scams)
HTML body contains low number of good links
HTML body contains password input but no form action
HTML title does not match URL
Stores files to the Windows start menu directory
Uses insecure TLS / SSL version for HTTPS connection


  • System is w10x64
  • chrome.exe (PID: 576 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 3664 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2292 --field-trial-handle=2228,i,2634174614011090117,12737702450936448669,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • chrome.exe (PID: 5632 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No configs have been found
dropped/chromecache_72JoeSecurity_HtmlPhish_10Yara detected HtmlPhish_10Joe Security
    0.2.pages.csvJoeSecurity_HtmlPhish_10Yara detected HtmlPhish_10Joe Security
      0.1.pages.csvJoeSecurity_HtmlPhish_10Yara detected HtmlPhish_10Joe Security
        No Sigma rule has matched
        No Suricata rule has matched

        Click to jump to signature section

        Show All Signature Results

        AV Detection

        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeSlashNext: detection malicious, Label: Credential Stealing type: Phishing & Social Engineering


        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeLLM: Score: 9 Reasons: The brand 'Norton' is well-known and associated with cybersecurity products., The legitimate domain for Norton is 'norton.com'., The provided URL 'ipfs.io' does not match the legitimate domain for Norton., The URL 'ipfs.io' is a generic domain and not specifically associated with Norton., The presence of input fields for 'Email Address' and 'Email Password' on a non-legitimate domain is highly suspicious and indicative of phishing. DOM: 0.1.pages.csv
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeLLM: Score: 9 Reasons: The brand 'Norton' is well-known and associated with cybersecurity products., The legitimate domain for Norton is 'norton.com'., The URL 'ipfs.io' does not match the legitimate domain for Norton., The URL 'ipfs.io' is a generic domain and not directly associated with Norton., The presence of input fields for 'Email Address' and 'Email Password' on a non-legitimate domain is highly suspicious and indicative of phishing. DOM: 0.2.pages.csv
        Source: Yara matchFile source: 0.2.pages.csv, type: HTML
        Source: Yara matchFile source: 0.1.pages.csv, type: HTML
        Source: Yara matchFile source: dropped/chromecache_72, type: DROPPED
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: Gateway: ipfs.io
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: Number of links: 0
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: <input type="password" .../> found but no <form action="...
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: Title: does not match URL
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: <input type="password" .../> found
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: No <meta name="author".. found
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: No <meta name="author".. found
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: No <meta name="copyright".. found
        Source: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbeHTTP Parser: No <meta name="copyright".. found
        Source: unknownHTTPS traffic detected: -> version: TLS 1.0
        Source: unknownHTTPS traffic detected: -> version: TLS 1.2
        Source: unknownHTTPS traffic detected: -> version: TLS 1.2
        Source: unknownHTTPS traffic detected: -> version: TLS 1.0
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownTCP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: unknownUDP traffic detected without corresponding DNS query:
        Source: global trafficHTTP traffic detected: GET /ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe HTTP/1.1Host: ipfs.ioConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/ Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
        Source: global trafficHTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
        Source: global trafficDNS traffic detected: DNS query: ipfs.io
        Source: global trafficDNS traffic detected: DNS query: www.google.com
        Source: global trafficDNS traffic detected: DNS query: alphatrade-options.com
        Source: chromecache_72.2.drString found in binary or memory: https://ajax.googleapis.com/ajax/libs/jquery/3.6.0/jquery.min.js
        Source: chromecache_72.2.drString found in binary or memory: https://alphatrade-options.com/git/rand/favicon.png
        Source: chromecache_72.2.drString found in binary or memory: https://firebasestorage.googleapis.com/v0/b/portal-aa363.appspot.com/o/26-269507_arbys-logo-transpar
        Source: chromecache_72.2.drString found in binary or memory: https://firebasestorage.googleapis.com/v0/b/portal-aa363.appspot.com/o/favicons.png?alt=media&token=
        Source: chromecache_72.2.drString found in binary or memory: https://webhook.site/da7cffb2-0fe4-45e6-857a-c2d4218db1ca
        Source: chromecache_72.2.drString found in binary or memory: https://www.google.com/s2/favicons?domain=
        Source: unknownNetwork traffic detected: HTTP traffic on port 49674 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
        Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
        Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
        Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49703 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49703
        Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
        Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
        Source: unknownHTTPS traffic detected: -> version: TLS 1.2
        Source: unknownHTTPS traffic detected: -> version: TLS 1.2
        Source: classification engineClassification label: mal68.phis.win@16/19@9/5
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome AppsJump to behavior
        Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2292 --field-trial-handle=2228,i,2634174614011090117,12737702450936448669,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
        Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe"
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2292 --field-trial-handle=2228,i,2634174614011090117,12737702450936448669,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
        Source: Google Drive.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: YouTube.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: Sheets.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: Gmail.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: Slides.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: Docs.lnk.0.drLNK file: ..\..\..\..\..\..\..\..\..\Program Files\Google\Chrome\Application\chrome_proxy.exe
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeAutomated click: continue
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeAutomated click: continue
        Source: Window RecorderWindow detected: More than 3 window changes detected
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome AppsJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnkJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnkJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnkJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnkJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnkJump to behavior
        Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnkJump to behavior
        ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
        Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
        Registry Run Keys / Startup Folder
        Process Injection
        OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
        Encrypted Channel
        Exfiltration Over Other Network MediumAbuse Accessibility Features
        CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
        Registry Run Keys / Startup Folder
        Process Injection
        LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media2
        Non-Application Layer Protocol
        Exfiltration Over BluetoothNetwork Denial of Service
        Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive3
        Application Layer Protocol
        Automated ExfiltrationData Encrypted for Impact
        Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
        Ingress Tool Transfer
        Traffic DuplicationData Destruction
        Hide Legend


        • Process
        • Signature
        • Created File
        • DNS/IP Info
        • Is Dropped
        • Is Windows Process
        • Number of created Registry Values
        • Number of created Files
        • Visual Basic
        • Delphi
        • Java
        • .Net C# or VB.NET
        • C, C++ or other language
        • Is malicious
        • Internet

        This section contains all screenshots as thumbnails, including those not shown in the slideshow.

        https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe100%SlashNextCredential Stealing type: Phishing & Social Engineering
        No Antivirus matches
        No Antivirus matches
        No Antivirus matches
        No Antivirus matches
        NameIPActiveMaliciousAntivirus DetectionReputation

                  NameMaliciousAntivirus DetectionReputation
                    NameSourceMaliciousAntivirus DetectionReputation
                          • No. of IPs < 25%
                          • 25% < No. of IPs < 50%
                          • 50% < No. of IPs < 75%
                          • 75% < No. of IPs
                          IPDomainCountryFlagASNASN NameMalicious
                          www.google.comUnited States
                          ipfs.ioUnited States
                          Joe Sandbox version:41.0.0 Charoite
                          Analysis ID:1521125
                          Start date and time:2024-09-28 04:40:50 +02:00
                          Joe Sandbox product:CloudBasic
                          Overall analysis duration:0h 3m 25s
                          Hypervisor based Inspection enabled:false
                          Report type:full
                          Cookbook file name:browseurl.jbs
                          Sample URL:https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe
                          Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                          Number of analysed new started processes analysed:7
                          Number of new started drivers analysed:0
                          Number of existing processes analysed:0
                          Number of existing drivers analysed:0
                          Number of injected processes analysed:0
                          • HCA enabled
                          • EGA enabled
                          • AMSI enabled
                          Analysis Mode:default
                          Analysis stop reason:Timeout
                          EGA Information:Failed
                          HCA Information:
                          • Successful, ratio: 100%
                          • Number of executed functions: 0
                          • Number of non-executed functions: 0
                          • Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
                          • Excluded IPs from analysis (whitelisted):,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,,
                          • Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, ajax.googleapis.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, a767.dspw65.akamai.net, fe3cr.delivery.mp.microsoft.com, download.windowsupdate.com.edgesuite.net, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, firebasestorage.googleapis.com, glb.sls.prod.dcat.dsp.trafficmanager.net
                          • Not all processes where analyzed, report is missing behavior information
                          • Report size getting too big, too many NtSetInformationFile calls found.
                          • Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
                          • VT rate limit hit for: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe
                          No simulations
                          URL: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe Model: jbxai
                          "text_input_field_labels":["Email Address",
                          "Email Password"],
                          URL: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe Model: jbxai
                          "reasons":["The brand 'Norton' is well-known and associated with cybersecurity products.",
                          "The legitimate domain for Norton is 'norton.com'.",
                          "The provided URL 'ipfs.io' does not match the legitimate domain for Norton.",
                          "The URL 'ipfs.io' is a generic domain and not specifically associated with Norton.",
                          "The presence of input fields for 'Email Address' and 'Email Password' on a non-legitimate domain is highly suspicious and indicative of phishing."],
                          "input_fields":"Email Address,
                           Email Password"}
                          URL: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe Model: jbxai
                          "brand":["Norton Secured powered by VeriSign"],
                          "text_input_field_labels":["Email Address",
                          "Email Password"],
                          URL: https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe Model: jbxai
                          "brands":"Norton Secured powered by VeriSign",
                          "reasons":["The brand 'Norton' is well-known and associated with cybersecurity products.",
                          "The legitimate domain for Norton is 'norton.com'.",
                          "The URL 'ipfs.io' does not match the legitimate domain for Norton.",
                          "The URL 'ipfs.io' is a generic domain and not directly associated with Norton.",
                          "The presence of input fields for 'Email Address' and 'Email Password' on a non-legitimate domain is highly suspicious and indicative of phishing."],
                          "brand_input":"Norton Secured powered by VeriSign",
                          "input_fields":"Email Address,
                           Email Password"}
                          No context
                          No context
                          No context
                          No context
                          No context
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 01:41:46 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2677
                          Entropy (8bit):3.9778443424349277
                          Preview:L..................F.@.. ...$+.,.....c..O...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V<Y7............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 01:41:46 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2679
                          Entropy (8bit):3.993741700878807
                          Preview:L..................F.@.. ...$+.,........O...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V<Y7............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Wed Oct 4 12:54:07 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2693
                          Entropy (8bit):4.0053922956270185
                          Preview:L..................F.@.. ...$+.,......e>....N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VDW.n...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 01:41:46 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2681
                          Entropy (8bit):3.9906166857210095
                          Preview:L..................F.@.. ...$+.,.....i..O...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V<Y7............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 01:41:46 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2681
                          Entropy (8bit):3.9807688906886827
                          Preview:L..................F.@.. ...$+.,....y...O...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V<Y7............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Sat Sep 28 01:41:45 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                          Size (bytes):2683
                          Entropy (8bit):3.9898042241777683
                          Preview:L..................F.@.. ...$+.,....-...O...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....DWWn..PROGRA~1..t......O.I<Y5.....B...............J......SX.P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.>......CW.V<Y5.....L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.V<Y5.....M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.V<Y5............................"&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.V<Y7............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............s.m.....C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:ASCII text, with no line terminators
                          Size (bytes):64
                          Entropy (8bit):4.6448585007312415
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:PNG image data, 860 x 460, 8-bit/color RGBA, non-interlaced
                          Size (bytes):56109
                          Entropy (8bit):7.973537367126651
                          Preview:.PNG........IHDR...\.................IDATx....T..........vE....(*..."..{..z.M.J...^ ..T. $@..........L..g.=s.p}<G!..u].i....#!..B.!..b>..@.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B4.U./.%.M.*M.G..x..!..B.".....Z).C..$..H...<^..B..p.B....B.!..E..p.B.!.P..!....!..B(\..B."..B..p.B(\..B.!..B....E.!....!.P..!..B(\....!..B.....Trrrd.M2w.&....q..l.[..U...J.!....!....$...w....d....y.U..B.!..E.!u....o..k.7..5kx..!..B."....!..B....B."..B..p.B(\..B.!.P..!..E.!..B.".P..!..B(\.......B.!..BH......W\...QQ.s....{.7..k.UQ.$.@U...!..B(\..gSYY)K.,i62.....+.....>w.Jy...&...D..\..!..B....B.p.B.!.P..!..B.!....!..E."..B....B.p.B.!.P..!..B.!....!..E."..B....B.p.B.!.P
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
                          Size (bytes):492
                          Entropy (8bit):7.443140866786406
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:PNG image data, 860 x 460, 8-bit/color RGBA, non-interlaced
                          Size (bytes):56109
                          Entropy (8bit):7.973537367126651
                          Preview:.PNG........IHDR...\.................IDATx....T..........vE....(*..."..{..z.M.J...^ ..T. $@..........L..g.=s.p}<G!..u].i....#!..B.!..b>..@.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B.!..B....B.!..B(\..B.!..B(\..B.!..B."..B.!....!..B.!....!..B.!.P..!..B.!..E.!..B.!..E.!..B.!..B.!..B..p.B.!..B..p.B4.U./.%.M.*M.G..x..!..B.".....Z).C..$..H...<^..B..p.B....B.!..E..p.B.!.P..!....!..B(\..B."..B..p.B(\..B.!..B....E.!....!.P..!..B(\....!..B.....Trrrd.M2w.&....q..l.[..U...J.!....!....$...w....d....y.U..B.!..E.!u....o..k.7..5kx..!..B."....!..B....B."..B..p.B(\..B.!.P..!..E.!..B.".P..!..B(\.......B.!..BH......W\...QQ.s....{.7..k.UQ.$.@U...!..B(\..gSYY)K.,i62.....+.....>w.Jy...&...D..\..!..B....B.p.B.!.P..!..B.!....!..E."..B....B.p.B.!.P..!..B.!....!..E."..B....B.p.B.!.P
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced
                          Size (bytes):492
                          Entropy (8bit):7.443140866786406
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:ASCII text, with very long lines (65447)
                          Size (bytes):89501
                          Entropy (8bit):5.289893677458563
                          Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:ASCII text, with very long lines (65447)
                          Size (bytes):89501
                          Entropy (8bit):5.289893677458563
                          Preview:/*! jQuery v3.6.0 | (c) OpenJS Foundation and other contributors | jquery.org/license */.!function(e,t){"use strict";"object"==typeof module&&"object"==typeof module.exports?module.exports=e.document?t(e,!0):function(e){if(!e.document)throw new Error("jQuery requires a window with a document");return t(e)}:t(e)}("undefined"!=typeof window?window:this,function(C,e){"use strict";var t=[],r=Object.getPrototypeOf,s=t.slice,g=t.flat?function(e){return t.flat.call(e)}:function(e){return t.concat.apply([],e)},u=t.push,i=t.indexOf,n={},o=n.toString,v=n.hasOwnProperty,a=v.toString,l=a.call(Object),y={},m=function(e){return"function"==typeof e&&"number"!=typeof e.nodeType&&"function"!=typeof e.item},x=function(e){return null!=e&&e===e.window},E=C.document,c={type:!0,src:!0,nonce:!0,noModule:!0};function b(e,t,n){var r,i,o=(n=n||E).createElement("script");if(o.text=e,t)for(r in c)(i=t[r]||t.getAttribute&&t.getAttribute(r))&&o.setAttribute(r,i);n.head.appendChild(o).parentNode.removeChild(o)}funct
                          Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                          File Type:HTML document, Unicode text, UTF-8 text, with very long lines (1705), with CRLF line terminators
                          Size (bytes):55398
                          Entropy (8bit):5.480666993026314
                          Preview:<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd">..<html>..<head>.. lJfw87er........,Shop in bo..Hi Yin..E-mail......Explore your weekly savings..Warm up with great deals on your faves.....Shop deals ..Discover today's top deals..See all..Image of Dyson V11. Advanced Stick.....Dyson V11. Advanced Stick.....AU $788.00....AU $1,199.00 . AU $411.00 OFF....Direct from Dyson Direct from Dyson....Image of AZDOME 4K Dash Cam UHD.....AZDOME 4K Dash Cam UHD.....AU $55.99....AU $71.99 . 22% OFF....Image of Perfect Choice Red Mixed Wines.....Perfect Choice Red Mixed Wines.....AU $65.00....AU $230.00 . AU $165.00 OFF....Image of EVERAU. Women Men Slippers.....EVERAU. Women Men Slippers.....AU $54.00....AU $99.95 . 46% OFF....Image of ALFORDSON Greenhouse Aluminium.....ALFORDSON Greenhouse Aluminium.....AU $199.95....AU $1,199.75 . AU $999.80 OFF....Image of BLACK LORD Kettlebell Set 20kg.....BLACK LORD Kettlebell Set 20kg.....A
                          No static file info
                          TimestampSource PortDest PortSource IPDest IP
                          Sep 28, 2024 04:41:37.314471960 CEST49675443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:37.314481020 CEST49674443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:37.439521074 CEST49673443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:46.920670986 CEST49675443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:46.961123943 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.961164951 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:46.961246967 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.961481094 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.961493015 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:46.961546898 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.961889982 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.961905003 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:46.962074041 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:46.962084055 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.094260931 CEST49674443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:47.110266924 CEST49673443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:47.434587002 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.435007095 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.435028076 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.436086893 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.436192989 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.441276073 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.441637993 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.441654921 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.443430901 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.443506956 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.449368000 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.449469090 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.449609041 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.449711084 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.449726105 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.449742079 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.497543097 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:47.497590065 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:47.497664928 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:47.497893095 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:47.497908115 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:47.504084110 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.577970028 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578022003 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578051090 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578083992 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578119993 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578145027 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.578155994 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578161001 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.578167915 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578201056 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.578788996 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578845978 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.578855991 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578888893 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.578928947 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.578936100 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.582798958 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.582873106 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.582884073 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.595419884 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.595434904 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.625833035 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.641890049 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.666444063 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666507006 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666558027 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.666577101 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666654110 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666680098 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666706085 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.666713953 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.666773081 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.666965008 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667047977 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667084932 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.667092085 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667562962 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667607069 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.667613983 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667666912 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667710066 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.667717934 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667886019 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667915106 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667936087 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.667942047 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.667984009 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.668430090 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668520927 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668570042 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.668577909 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668899059 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668932915 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668941021 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.668948889 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.668981075 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.668987036 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.718952894 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.718971014 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755006075 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755064011 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755067110 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.755086899 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755125046 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755126953 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.755140066 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755191088 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.755198002 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755289078 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:47.755337000 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.755788088 CEST49710443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:41:47.755803108 CEST44349710209.94.90.1192.168.2.5
                          Sep 28, 2024 04:41:48.144575119 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:48.195960045 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.239762068 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.239818096 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:48.241097927 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:48.241266012 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.326937914 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.327333927 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:48.381268024 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.381284952 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:48.428452015 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:48.685539007 CEST4434970323.1.237.91192.168.2.5
                          Sep 28, 2024 04:41:48.685689926 CEST49703443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:51.146591902 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.146632910 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:51.146722078 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.150289059 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.150304079 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:51.820461035 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:51.820518970 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.826349020 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.826359034 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:51.826718092 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:51.873262882 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.901201010 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:51.947407007 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.099517107 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.099566936 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.099610090 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.099718094 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.099726915 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.099735975 CEST49721443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.099740982 CEST44349721184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.127825975 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.127861977 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.127931118 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.128232956 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.128246069 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.782717943 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.782874107 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.784792900 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.784806013 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.785150051 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:52.786858082 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:52.831398964 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:53.062392950 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:53.062462091 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:53.062572956 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:53.277298927 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:53.277298927 CEST49724443192.168.2.5184.28.90.27
                          Sep 28, 2024 04:41:53.277345896 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:53.277359962 CEST44349724184.28.90.27192.168.2.5
                          Sep 28, 2024 04:41:58.061336040 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:58.061499119 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:58.061559916 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:58.089481115 CEST49711443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:41:58.089504004 CEST44349711142.250.186.36192.168.2.5
                          Sep 28, 2024 04:41:59.469888926 CEST49703443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:59.470241070 CEST49703443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:59.471106052 CEST49730443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:59.471157074 CEST4434973023.1.237.91192.168.2.5
                          Sep 28, 2024 04:41:59.471354961 CEST49730443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:59.471980095 CEST49730443192.168.2.523.1.237.91
                          Sep 28, 2024 04:41:59.471995115 CEST4434973023.1.237.91192.168.2.5
                          Sep 28, 2024 04:41:59.474649906 CEST4434970323.1.237.91192.168.2.5
                          Sep 28, 2024 04:41:59.474992990 CEST4434970323.1.237.91192.168.2.5
                          Sep 28, 2024 04:42:00.057957888 CEST4434973023.1.237.91192.168.2.5
                          Sep 28, 2024 04:42:00.058047056 CEST49730443192.168.2.523.1.237.91
                          Sep 28, 2024 04:42:02.336004972 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:42:02.336090088 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:42:02.336169958 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:42:03.515826941 CEST49709443192.168.2.5209.94.90.1
                          Sep 28, 2024 04:42:03.515867949 CEST44349709209.94.90.1192.168.2.5
                          Sep 28, 2024 04:42:19.216444016 CEST4434973023.1.237.91192.168.2.5
                          Sep 28, 2024 04:42:19.216532946 CEST49730443192.168.2.523.1.237.91
                          Sep 28, 2024 04:42:47.554724932 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:47.554771900 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:47.554831982 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:47.555151939 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:47.555165052 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:48.206908941 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:48.207341909 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:48.207413912 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:48.208538055 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:48.209218025 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:48.209400892 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:48.264492989 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:58.108721972 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:58.108820915 CEST44349735142.250.186.36192.168.2.5
                          Sep 28, 2024 04:42:58.108880997 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:58.213593960 CEST49735443192.168.2.5142.250.186.36
                          Sep 28, 2024 04:42:58.213629961 CEST44349735142.250.186.36192.168.2.5
                          TimestampSource PortDest PortSource IPDest IP
                          Sep 28, 2024 04:41:45.485141039 CEST53506041.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:45.485761881 CEST53496891.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:46.456820965 CEST53596001.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:46.946950912 CEST5653453192.
                          Sep 28, 2024 04:41:46.947160006 CEST6407053192.
                          Sep 28, 2024 04:41:46.953613043 CEST53565341.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:46.955768108 CEST53640701.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:47.490072012 CEST5040453192.
                          Sep 28, 2024 04:41:47.490222931 CEST5928753192.
                          Sep 28, 2024 04:41:47.496572018 CEST53504041.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:47.496665001 CEST53592871.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:47.679841042 CEST53577191.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:47.767441988 CEST53599341.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:49.254849911 CEST53651401.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:50.929034948 CEST53529921.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:50.967298985 CEST5648253192.
                          Sep 28, 2024 04:41:50.967786074 CEST5521653192.
                          Sep 28, 2024 04:41:51.163009882 CEST53558251.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:51.455542088 CEST53552161.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:51.494381905 CEST5378453192.
                          Sep 28, 2024 04:41:51.661890030 CEST53564821.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:51.662585020 CEST5508553192.
                          Sep 28, 2024 04:41:52.023134947 CEST53537841.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:52.165283918 CEST53550851.1.1.1192.168.2.5
                          Sep 28, 2024 04:41:52.165971994 CEST5693453192.
                          Sep 28, 2024 04:41:52.172451973 CEST53569341.1.1.1192.168.2.5
                          Sep 28, 2024 04:42:03.523538113 CEST53624011.1.1.1192.168.2.5
                          Sep 28, 2024 04:42:22.562849045 CEST53572561.1.1.1192.168.2.5
                          Sep 28, 2024 04:42:44.478760958 CEST53557651.1.1.1192.168.2.5
                          Sep 28, 2024 04:42:45.803842068 CEST53527151.1.1.1192.168.2.5
                          TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                          Sep 28, 2024 04:41:46.946950912 CEST192. query (0)ipfs.ioA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:46.947160006 CEST192. query (0)ipfs.io65IN (0x0001)false
                          Sep 28, 2024 04:41:47.490072012 CEST192. query (0)www.google.comA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:47.490222931 CEST192. query (0)www.google.com65IN (0x0001)false
                          Sep 28, 2024 04:41:50.967298985 CEST192. query (0)alphatrade-options.comA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:50.967786074 CEST192. query (0)alphatrade-options.com65IN (0x0001)false
                          Sep 28, 2024 04:41:51.494381905 CEST192. query (0)alphatrade-options.com65IN (0x0001)false
                          Sep 28, 2024 04:41:51.662585020 CEST192. query (0)alphatrade-options.comA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:52.165971994 CEST192. query (0)alphatrade-options.comA (IP address)IN (0x0001)false
                          TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                          Sep 28, 2024 04:41:46.953613043 CEST1.1.1.1192.168.2.50xa14aNo error (0)ipfs.io209.94.90.1A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:46.955768108 CEST1.1.1.1192.168.2.50x96b7No error (0)ipfs.io65IN (0x0001)false
                          Sep 28, 2024 04:41:47.496572018 CEST1.1.1.1192.168.2.50x7be1No error (0)www.google.com142.250.186.36A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:47.496665001 CEST1.1.1.1192.168.2.50xcc97No error (0)www.google.com65IN (0x0001)false
                          Sep 28, 2024 04:41:51.455542088 CEST1.1.1.1192.168.2.50xfd6fServer failure (2)alphatrade-options.comnonenone65IN (0x0001)false
                          Sep 28, 2024 04:41:51.661890030 CEST1.1.1.1192.168.2.50x156dServer failure (2)alphatrade-options.comnonenoneA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:52.023134947 CEST1.1.1.1192.168.2.50x1aa9Server failure (2)alphatrade-options.comnonenone65IN (0x0001)false
                          Sep 28, 2024 04:41:52.165283918 CEST1.1.1.1192.168.2.50x5588Server failure (2)alphatrade-options.comnonenoneA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:52.172451973 CEST1.1.1.1192.168.2.50x7714Server failure (2)alphatrade-options.comnonenoneA (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:58.133436918 CEST1.1.1.1192.168.2.50x4b86No error (0)bg.microsoft.map.fastly.net199.232.214.172A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:58.133436918 CEST1.1.1.1192.168.2.50x4b86No error (0)bg.microsoft.map.fastly.net199.232.210.172A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:41:58.838027954 CEST1.1.1.1192.168.2.50x719No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                          Sep 28, 2024 04:41:58.838027954 CEST1.1.1.1192.168.2.50x719No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:42:12.678380013 CEST1.1.1.1192.168.2.50xfdc5No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                          Sep 28, 2024 04:42:12.678380013 CEST1.1.1.1192.168.2.50xfdc5No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:42:37.747162104 CEST1.1.1.1192.168.2.50x8da1No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                          Sep 28, 2024 04:42:37.747162104 CEST1.1.1.1192.168.2.50x8da1No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
                          Sep 28, 2024 04:42:57.507169008 CEST1.1.1.1192.168.2.50x898No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                          Sep 28, 2024 04:42:57.507169008 CEST1.1.1.1192.168.2.50x898No error (0)fp2e7a.wpc.phicdn.net192.229.221.95A (IP address)IN (0x0001)false
                          • ipfs.io
                          • fs.microsoft.com
                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                          0192.168.2.549710209.94.90.14433664C:\Program Files\Google\Chrome\Application\chrome.exe
                          TimestampBytes transferredDirectionData
                          2024-09-28 02:41:47 UTC714OUTGET /ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe HTTP/1.1
                          Host: ipfs.io
                          Connection: keep-alive
                          sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                          sec-ch-ua-mobile: ?0
                          sec-ch-ua-platform: "Windows"
                          Upgrade-Insecure-Requests: 1
                          User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/ Safari/537.36
                          Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                          Sec-Fetch-Site: none
                          Sec-Fetch-Mode: navigate
                          Sec-Fetch-User: ?1
                          Sec-Fetch-Dest: document
                          Accept-Encoding: gzip, deflate, br
                          Accept-Language: en-US,en;q=0.9
                          2024-09-28 02:41:47 UTC1039INHTTP/1.1 200 OK
                          Date: Sat, 28 Sep 2024 02:41:47 GMT
                          Content-Type: text/html
                          Transfer-Encoding: chunked
                          Connection: close
                          access-control-allow-headers: Content-Type
                          access-control-allow-headers: Range
                          access-control-allow-headers: User-Agent
                          access-control-allow-headers: X-Requested-With
                          access-control-allow-methods: GET
                          access-control-allow-methods: HEAD
                          access-control-allow-methods: OPTIONS
                          access-control-allow-origin: *
                          access-control-expose-headers: Content-Length
                          access-control-expose-headers: Content-Range
                          access-control-expose-headers: X-Chunked-Output
                          access-control-expose-headers: X-Ipfs-Path
                          access-control-expose-headers: X-Ipfs-Roots
                          access-control-expose-headers: X-Stream-Output
                          Cache-Control: public, max-age=29030400, immutable
                          x-ipfs-path: /ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe
                          x-ipfs-roots: bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe
                          x-ipfs-pop: rainbow-ny5-02
                          CF-Cache-Status: HIT
                          Age: 69660
                          Server: cloudflare
                          CF-RAY: 8ca0605ffdbc72b9-EWR
                          2024-09-28 02:41:47 UTC330INData Raw: 37 62 39 30 0d 0a 3c 21 44 4f 43 54 59 50 45 20 68 74 6d 6c 20 50 55 42 4c 49 43 20 22 2d 2f 2f 57 33 43 2f 2f 44 54 44 20 48 54 4d 4c 20 34 2e 30 31 2f 2f 45 4e 22 20 22 68 74 74 70 3a 2f 2f 77 77 77 2e 77 33 2e 6f 72 67 2f 54 52 2f 68 74 6d 6c 34 2f 73 74 72 69 63 74 2e 64 74 64 22 3e 0d 0a 3c 68 74 6d 6c 3e 0d 0a 3c 68 65 61 64 3e 0d 0a 3c 21 2d 2d 6c 4a 66 77 38 37 65 72 e6 95 ac e7 9a 84 e5 90 84 e8 a1 8c e6 a5 ad e4 be 9b e6 87 89 e5 95 86 2c 53 68 6f 70 20 69 6e 20 62 6f 0d 0a 48 69 20 59 69 6e 0d 0a 45 2d 6d 61 69 6c 0d 0a 0d 0a 0d 0a 45 78 70 6c 6f 72 65 20 79 6f 75 72 20 77 65 65 6b 6c 79 20 73 61 76 69 6e 67 73 0d 0a 57 61 72 6d 20 75 70 20 77 69 74 68 20 67 72 65 61 74 20 64 65 61 6c 73 20 6f 6e 20 79 6f 75 72 20 66 61 76 65 73 2e 0d 0a 0d 0a
                          Data Ascii: 7b90<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01//EN" "http://www.w3.org/TR/html4/strict.dtd"><html><head>...lJfw87er,Shop in boHi YinE-mailExplore your weekly savingsWarm up with great deals on your faves.
                          2024-09-28 02:41:47 UTC1369INData Raw: 61 6e 63 65 64 20 53 74 69 63 6b 2e 2e 2e 0d 0a 44 79 73 6f 6e 20 56 31 31 e2 84 a2 20 41 64 76 61 6e 63 65 64 20 53 74 69 63 6b 2e 2e 2e 0d 0a 41 55 20 24 37 38 38 2e 30 30 0d 0a 0d 0a 41 55 20 24 31 2c 31 39 39 2e 30 30 20 c2 b7 20 41 55 20 24 34 31 31 2e 30 30 20 4f 46 46 0d 0a 0d 0a 44 69 72 65 63 74 20 66 72 6f 6d 20 44 79 73 6f 6e 20 44 69 72 65 63 74 20 66 72 6f 6d 20 44 79 73 6f 6e 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 41 5a 44 4f 4d 45 20 34 4b 20 44 61 73 68 20 43 61 6d 20 55 48 44 2e 2e 2e 0d 0a 41 5a 44 4f 4d 45 20 34 4b 20 44 61 73 68 20 43 61 6d 20 55 48 44 2e 2e 2e 0d 0a 41 55 20 24 35 35 2e 39 39 0d 0a 0d 0a 41 55 20 24 37 31 2e 39 39 20 c2 b7 20 32 32 25 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 50 65 72 66 65 63 74 20 43 68 6f
                          Data Ascii: anced Stick...Dyson V11 Advanced Stick...AU $788.00AU $1,199.00 AU $411.00 OFFDirect from Dyson Direct from DysonImage of AZDOME 4K Dash Cam UHD...AZDOME 4K Dash Cam UHD...AU $55.99AU $71.99 22% OFFImage of Perfect Cho
                          2024-09-28 02:41:47 UTC1369INData Raw: 33 39 39 2e 39 35 20 c2 b7 20 41 55 20 24 32 30 30 2e 39 35 20 4f 46 46 0d 0a 0d 0a 44 69 72 65 63 74 20 66 72 6f 6d 20 53 65 6e 6e 68 65 69 73 65 72 20 44 69 72 65 63 74 20 66 72 6f 6d 20 53 65 6e 6e 68 65 69 73 65 72 0d 0a 0d 0a 45 78 70 6c 6f 72 65 20 67 72 65 61 74 20 6f 66 66 65 72 73 20 66 72 6f 6d 20 74 6f 70 20 62 72 61 6e 64 73 0d 0a 48 6f 74 20 73 61 76 69 6e 67 73 20 61 63 72 6f 73 73 20 61 20 68 75 67 65 20 72 61 6e 67 65 20 6f 6e 20 70 72 6f 64 75 63 74 73 20 79 6f 75 20 6c 6f 76 65 2e 0d 0a 0d 0a 53 68 6f 70 20 6e 6f 77 20 0d 0a 53 61 6c 65 73 20 26 20 65 76 65 6e 74 73 0d 0a 65 42 61 79 20 4c 6f 67 6f 09 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 0d 0a 55 70 64 61 74 65 20 79 6f 75 72 20 65 6d 61 69 6c 20 70
                          Data Ascii: 399.95 AU $200.95 OFFDirect from Sennheiser Direct from SennheiserExplore great offers from top brandsHot savings across a huge range on products you love.Shop now Sales & eventseBay Logo Update your email p
                          2024-09-28 02:41:47 UTC1369INData Raw: 44 53 4f 4e 20 41 64 69 72 6f 6e 64 61 63 6b 20 43 68 61 69 72 2e 2e 2e 0d 0a 41 4c 46 4f 52 44 53 4f 4e 20 41 64 69 72 6f 6e 64 61 63 6b 20 43 68 61 69 72 2e 2e 2e 0d 0a 41 55 20 24 31 31 39 2e 39 35 0d 0a 0d 0a 41 55 20 24 39 35 39 2e 39 35 20 c2 b7 20 41 55 20 24 38 34 30 2e 30 30 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 4f 69 6b 69 74 75 72 65 20 4b 69 74 63 68 65 6e 20 49 73 6c 61 6e 64 2e 2e 2e 0d 0a 4f 69 6b 69 74 75 72 65 20 4b 69 74 63 68 65 6e 20 49 73 6c 61 6e 64 2e 2e 2e 0d 0a 41 55 20 24 31 37 30 2e 30 30 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 42 65 64 72 61 20 45 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e 0d 0a 42 65 64 72 61 20 45 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e
                          Data Ascii: DSON Adirondack Chair...ALFORDSON Adirondack Chair...AU $119.95AU $959.95 AU $840.00 OFFImage of Oikiture Kitchen Island...Oikiture Kitchen Island...AU $170.00Image of Bedra Electric Blanket Fully...Bedra Electric Blanket Fully...
                          2024-09-28 02:41:47 UTC1369INData Raw: 65 63 74 20 66 72 6f 6d 20 44 79 73 6f 6e 20 44 69 72 65 63 74 20 66 72 6f 6d 20 44 79 73 6f 6e 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 41 5a 44 4f 4d 45 20 34 4b 20 44 61 73 68 20 43 61 6d 20 55 48 44 2e 2e 2e 0d 0a 41 5a 44 4f 4d 45 20 34 4b 20 44 61 73 68 20 43 61 6d 20 55 48 44 2e 2e 2e 0d 0a 41 55 20 24 35 35 2e 39 39 0d 0a 0d 0a 41 55 20 24 37 31 2e 39 39 20 c2 b7 20 32 32 25 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 50 65 72 66 65 63 74 20 43 68 6f 69 63 65 20 52 65 64 20 4d 69 78 65 64 20 57 69 6e 65 73 2e 2e 2e 0d 0a 50 65 72 66 65 63 74 20 43 68 6f 69 63 65 20 52 65 64 20 4d 69 78 65 64 20 57 69 6e 65 73 2e 2e 2e 0d 0a 41 55 20 24 36 35 2e 30 30 0d 0a 0d 0a 41 55 20 24 32 33 30 2e 30 30 20 c2 b7 20 41 55 20 24 31 36 35 2e 30 30 20 4f 46
                          Data Ascii: ect from Dyson Direct from DysonImage of AZDOME 4K Dash Cam UHD...AZDOME 4K Dash Cam UHD...AU $55.99AU $71.99 22% OFFImage of Perfect Choice Red Mixed Wines...Perfect Choice Red Mixed Wines...AU $65.00AU $230.00 AU $165.00 OF
                          2024-09-28 02:41:47 UTC1369INData Raw: 72 6f 6d 20 74 6f 70 20 62 72 61 6e 64 73 0d 0a 48 6f 74 20 73 61 76 69 6e 67 73 20 61 63 72 6f 73 73 20 61 20 68 75 67 65 20 72 61 6e 67 65 20 6f 6e 20 70 72 6f 64 75 63 74 73 20 79 6f 75 20 6c 6f 76 65 2e 0d 0a 0d 0a 53 68 6f 70 20 6e 6f 77 20 0d 0a 53 61 6c 65 73 20 26 20 65 76 65 6e 74 73 0d 0a 65 42 61 79 20 4c 6f 67 6f 09 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 0d 0a 55 70 64 61 74 65 20 79 6f 75 72 20 65 6d 61 69 6c 20 70 72 65 66 65 72 65 6e 63 65 73 2c 20 75 6e 73 75 62 73 63 72 69 62 65 20 6f 72 20 6c 65 61 72 6e 20 61 62 6f 75 74 20 61 63 63 6f 75 6e 74 20 70 72 6f 74 65 63 74 69 6f 6e 2e 0d 0a 49 66 20 79 6f 75 20 68 61 76 65 20 61 20 71 75 65 73 74 69 6f 6e 2c 20 63 6f 6e 74 61 63 74 20 75 73 2e 20 65 42 61
                          Data Ascii: rom top brandsHot savings across a huge range on products you love.Shop now Sales & eventseBay Logo Update your email preferences, unsubscribe or learn about account protection.If you have a question, contact us. eBa
                          2024-09-28 02:41:47 UTC1369INData Raw: 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 4f 69 6b 69 74 75 72 65 20 4b 69 74 63 68 65 6e 20 49 73 6c 61 6e 64 2e 2e 2e 0d 0a 4f 69 6b 69 74 75 72 65 20 4b 69 74 63 68 65 6e 20 49 73 6c 61 6e 64 2e 2e 2e 0d 0a 41 55 20 24 31 37 30 2e 30 30 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 42 65 64 72 61 20 45 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e 0d 0a 42 65 64 72 61 20 45 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e 0d 0a 41 55 20 24 36 33 2e 30 30 0d 0a 0d 0a 41 55 20 24 37 30 2e 39 30 20 c2 b7 20 31 31 25 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 42 6f 50 65 65 70 20 46 6f 6c 64 61 62 6c 65 20 4b 69 64 73 20 53 63 6f 6f 74 65 72 2e 2e 2e 0d 0a 42 6f 50 65 65 70 20 46 6f 6c 64 61 62 6c 65 20 4b 69
                          Data Ascii: Image of Oikiture Kitchen Island...Oikiture Kitchen Island...AU $170.00Image of Bedra Electric Blanket Fully...Bedra Electric Blanket Fully...AU $63.00AU $70.90 11% OFFImage of BoPeep Foldable Kids Scooter...BoPeep Foldable Ki
                          2024-09-28 02:41:47 UTC1369INData Raw: 41 55 20 24 35 35 2e 39 39 0d 0a 0d 0a 41 55 20 24 37 31 2e 39 39 20 c2 b7 20 32 32 25 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 50 65 72 66 65 63 74 20 43 68 6f 69 63 65 20 52 65 64 20 4d 69 78 65 64 20 57 69 6e 65 73 2e 2e 2e 0d 0a 50 65 72 66 65 63 74 20 43 68 6f 69 63 65 20 52 65 64 20 4d 69 78 65 64 20 57 69 6e 65 73 2e 2e 2e 0d 0a 41 55 20 24 36 35 2e 30 30 0d 0a 0d 0a 41 55 20 24 32 33 30 2e 30 30 20 c2 b7 20 41 55 20 24 31 36 35 2e 30 30 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 45 56 45 52 41 55 c2 ae 20 57 6f 6d 65 6e 20 4d 65 6e 20 53 6c 69 70 70 65 72 73 2e 2e 2e 0d 0a 45 56 45 52 41 55 c2 ae 20 57 6f 6d 65 6e 20 4d 65 6e 20 53 6c 69 70 70 65 72 73 2e 2e 2e 0d 0a 41 55 20 24 35 34 2e 30 30 0d 0a 0d 0a 41 55 20 24 39 39 2e 39
                          Data Ascii: AU $55.99AU $71.99 22% OFFImage of Perfect Choice Red Mixed Wines...Perfect Choice Red Mixed Wines...AU $65.00AU $230.00 AU $165.00 OFFImage of EVERAU Women Men Slippers...EVERAU Women Men Slippers...AU $54.00AU $99.9
                          2024-09-28 02:41:47 UTC1369INData Raw: 0a 65 42 61 79 20 4c 6f 67 6f 09 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 20 0d 0a 20 20 20 0d 0a 55 70 64 61 74 65 20 79 6f 75 72 20 65 6d 61 69 6c 20 70 72 65 66 65 72 65 6e 63 65 73 2c 20 75 6e 73 75 62 73 63 72 69 62 65 20 6f 72 20 6c 65 61 72 6e 20 61 62 6f 75 74 20 61 63 63 6f 75 6e 74 20 70 72 6f 74 65 63 74 69 6f 6e 2e 0d 0a 49 66 20 79 6f 75 20 68 61 76 65 20 61 20 71 75 65 73 74 69 6f 6e 2c 20 63 6f 6e 74 61 63 74 20 75 73 2e 20 65 42 61 79 20 4d e2 80 8c 61 72 6b 65 74 70 6c 61 63 65 73 20 47 e2 80 8c 6d 62 48 2c 20 48 e2 80 8c 65 6c 76 65 74 69 61 73 74 72 61 73 73 65 20 31 e2 80 8c 35 2f 31 37 2c 20 33 e2 80 8c 30 30 35 20 42 e2 80 8c 65 72 6e 2c 20 53 e2 80 8c 77 69 74 7a 65 72 6c 61 6e 64 20 c2 a9 20 31 39 39 35 2d 32 30 32
                          Data Ascii: eBay Logo Update your email preferences, unsubscribe or learn about account protection.If you have a question, contact us. eBay Marketplaces GmbH, Helvetiastrasse 15/17, 3005 Bern, Switzerland 1995-202
                          2024-09-28 02:41:47 UTC1369INData Raw: 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e 0d 0a 42 65 64 72 61 20 45 6c 65 63 74 72 69 63 20 42 6c 61 6e 6b 65 74 20 46 75 6c 6c 79 2e 2e 2e 0d 0a 41 55 20 24 36 33 2e 30 30 0d 0a 0d 0a 41 55 20 24 37 30 2e 39 30 20 c2 b7 20 31 31 25 20 4f 46 46 0d 0a 0d 0a 49 6d 61 67 65 20 6f 66 20 42 6f 50 65 65 70 20 46 6f 6c 64 61 62 6c 65 20 4b 69 64 73 20 53 63 6f 6f 74 65 72 2e 2e 2e 0d 0a 42 6f 50 65 65 70 20 46 6f 6c 64 61 62 6c 65 20 4b 69 64 73 20 53 63 6f 6f 74 65 72 2e 2e 2e 0d 0a 41 55 20 24 34 39 2e 39 39 0d 0a 0d 0a 41 55 20 24 31 30 37 2e 39 39 20 c2 b7 20 41 55 20 24 35 38 2e 30 30 20 4f 46 46 0d 0a 0d 0a 44 69 72 65 63 74 20 66 72 6f 6d 20 53 45 4c 4c 4f 20 44 69 72 65 63 74 20 66 72 6f 6d 20 53 45 4c 4c 4f 0d 0a 0d 0a 49
                          Data Ascii: lectric Blanket Fully...Bedra Electric Blanket Fully...AU $63.00AU $70.90 11% OFFImage of BoPeep Foldable Kids Scooter...BoPeep Foldable Kids Scooter...AU $49.99AU $107.99 AU $58.00 OFFDirect from SELLO Direct from SELLOI

                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                          TimestampBytes transferredDirectionData
                          2024-09-28 02:41:51 UTC161OUTHEAD /fs/windows/config.json HTTP/1.1
                          Connection: Keep-Alive
                          Accept: */*
                          Accept-Encoding: identity
                          User-Agent: Microsoft BITS/7.8
                          Host: fs.microsoft.com
                          2024-09-28 02:41:52 UTC467INHTTP/1.1 200 OK
                          Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                          Content-Type: application/octet-stream
                          ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                          Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                          Server: ECAcc (lpl/EF67)
                          X-CID: 11
                          X-Ms-ApiVersion: Distribute 1.2
                          X-Ms-Region: prod-neu-z1
                          Cache-Control: public, max-age=223391
                          Date: Sat, 28 Sep 2024 02:41:51 GMT
                          Connection: close
                          X-CID: 2

                          Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                          TimestampBytes transferredDirectionData
                          2024-09-28 02:41:52 UTC239OUTGET /fs/windows/config.json HTTP/1.1
                          Connection: Keep-Alive
                          Accept: */*
                          Accept-Encoding: identity
                          If-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMT
                          Range: bytes=0-2147483646
                          User-Agent: Microsoft BITS/7.8
                          Host: fs.microsoft.com
                          2024-09-28 02:41:53 UTC515INHTTP/1.1 200 OK
                          ApiVersion: Distribute 1.1
                          Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                          Content-Type: application/octet-stream
                          ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                          Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                          Server: ECAcc (lpl/EF06)
                          X-CID: 11
                          X-Ms-ApiVersion: Distribute 1.2
                          X-Ms-Region: prod-weu-z1
                          Cache-Control: public, max-age=223420
                          Date: Sat, 28 Sep 2024 02:41:52 GMT
                          Content-Length: 55
                          Connection: close
                          X-CID: 2
                          2024-09-28 02:41:53 UTC55INData Raw: 7b 22 66 6f 6e 74 53 65 74 55 72 69 22 3a 22 66 6f 6e 74 73 65 74 2d 32 30 31 37 2d 30 34 2e 6a 73 6f 6e 22 2c 22 62 61 73 65 55 72 69 22 3a 22 66 6f 6e 74 73 22 7d
                          Data Ascii: {"fontSetUri":"fontset-2017-04.json","baseUri":"fonts"}

                          Click to jump to process

                          Click to jump to process

                          Click to jump to process

                          Target ID:0
                          Start time:22:41:40
                          Start date:27/09/2024
                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                          Wow64 process (32bit):false
                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
                          File size:3'242'272 bytes
                          MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                          Has elevated privileges:true
                          Has administrator privileges:true
                          Programmed in:C, C++ or other language
                          Has exited:false

                          Target ID:2
                          Start time:22:41:41
                          Start date:27/09/2024
                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                          Wow64 process (32bit):false
                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2292 --field-trial-handle=2228,i,2634174614011090117,12737702450936448669,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
                          File size:3'242'272 bytes
                          MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                          Has elevated privileges:true
                          Has administrator privileges:true
                          Programmed in:C, C++ or other language
                          Has exited:false

                          Target ID:3
                          Start time:22:41:45
                          Start date:27/09/2024
                          Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                          Wow64 process (32bit):false
                          Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://ipfs.io/ipfs/bafkreibqtxx736fe6bzazqomwjn7xgt3biv76tsb4hh3mpwezl3ffn5hbe"
                          File size:3'242'272 bytes
                          MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                          Has elevated privileges:true
                          Has administrator privileges:true
                          Programmed in:C, C++ or other language
                          Has exited:true

                          No disassembly