Windows
Analysis Report
https://fusionzerodefy.pages.dev/
Overview
General Information
Detection
Score: | 64 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 4424 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2624 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2420 --fi eld-trial- handle=238 0,i,104865 1261645702 0233,10565 6101294122 64560,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6804 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://fusio nzerodefy. pages.dev/ " MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security | ||
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security |
Click to jump to signature section
AV Detection |
---|
Source: | Virustotal: | Perma Link |
Source: | Virustotal: | Perma Link |
Phishing |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
16% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse | ||
0% | Virustotal | Browse | ||
9% | Virustotal | Browse | ||
0% | Virustotal | Browse | ||
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse | ||
0% | Virustotal | Browse | ||
0% | Virustotal | Browse | ||
0% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
fusionzerodefy.pages.dev | 188.114.97.3 | true | false |
| unknown |
bg.microsoft.map.fastly.net | 199.232.210.172 | true | false |
| unknown |
www.google.com | 216.58.206.68 | true | false |
| unknown |
default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com | 217.20.57.18 | true | false |
| unknown |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false |
| unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
true | unknown | ||
true | unknown | ||
true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
188.114.97.3 | fusionzerodefy.pages.dev | European Union | 13335 | CLOUDFLARENETUS | false | |
216.58.206.68 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
192.168.2.5 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1521844 |
Start date and time: | 2024-09-29 04:35:43 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 19s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://fusionzerodefy.pages.dev/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal64.phis.win@16/16@6/5 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.185.131, 142.250.184.206, 142.250.110.84, 34.104.35.123, 20.114.59.183, 217.20.57.18, 192.229.221.95, 52.165.164.15, 40.69.42.241, 142.250.186.99, 199.232.210.172
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, 4.8.2.0.0.0.0.0.0.0.0.0.0.0.0.0.2.0.0.0.2.0.c.0.0.3.0.1.3.0.6.2.ip6.arpa, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
Input | Output |
---|---|
URL: https://fusionzerodefy.pages.dev/ Model: jbxai | { "brand":["Cloudflare"], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"Learn More", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: https://fusionzerodefy.pages.dev/ Model: jbxai | { "brand":["Cloudflare"], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"Learn More", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9772179828880363 |
Encrypted: | false |
SSDEEP: | 48:8GdiTuOyHNidAKZdA19ehwiZUklqehBy+3:8n3Qey |
MD5: | EA8C911797F82988DBB25266BBEF8C12 |
SHA1: | 57C7C1AF826E57AA29E67BEE65A82D8EE7E5EE70 |
SHA-256: | EB9B2231876205D52FC3F61B48A7FC6C44BD01D52505CCD468786E520F883A4B |
SHA-512: | 57167AC8443D72EFE0F5DA0FB8AA8507CBC97C0F1ED8D75CEFBD2DF44C43564107BCB549D17316ABC2C5ABC1398E46EA70068001E52E2900AC543B02926DD263 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9934817673465566 |
Encrypted: | false |
SSDEEP: | 48:8AdiTuOyHNidAKZdA1weh/iZUkAQkqehOy+2:8x3q9Qny |
MD5: | 33FE9D56423452B682A3434F424E9D8A |
SHA1: | 1D9CB3DCBF1C5D52ACCD0B46B59CE54DAF13F899 |
SHA-256: | D1E91AC713D5958F21C4F99609938AC89330299B62171F02A4425BECE0F46463 |
SHA-512: | 135EF8EBD31F362CD49C93712F0640C08166DA1EC7442D1FDAD47A17563B715B7B97800C189F9A30BEAFD0E6454D9204A212A144299218C73946145FB7DAA777 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.008441663899991 |
Encrypted: | false |
SSDEEP: | 48:8xHdiTuOsHNidAKZdA14tseh7sFiZUkmgqeh7scy+BX:8xM3snay |
MD5: | 3ECDA67139A04AB9D6118FC4493EA96C |
SHA1: | AA6A28FD1FC999993652DE7ADC086A94D85B4166 |
SHA-256: | F2FD04D609F6C76C81938E332E7BBD5725E180BC4DE04575DD015236C96423CE |
SHA-512: | B92B711539B9494754B5FCBC90B0B94153C5D52752EAA92A0864F12BA191C74F057AED35E73F291B21EC6A51BF1442184F5E4F7A8C7A6F9335CEF86ED6E6C1C5 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9952535672958067 |
Encrypted: | false |
SSDEEP: | 48:8SdiTuOyHNidAKZdA1vehDiZUkwqehCy+R:8D3xEy |
MD5: | 26E5FFA65EF7D0D51453273CA0C05CBE |
SHA1: | DA643C64D80444503E1944A0BD07784B34BB3304 |
SHA-256: | E3288D336E592841BA8B9958D35EE688A9C9DD032217262DED47478CF42EAEB1 |
SHA-512: | 7626DFCAE92F2DF417E3F810516E3CF9147DA694CF43DF9DDE5945B9E309E56F14378046DE7EC423DB36983DFECEE11ABB1494435D89451E7AE6A89C58CD7C9B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9827586749404453 |
Encrypted: | false |
SSDEEP: | 48:8EbdiTuOyHNidAKZdA1hehBiZUk1W1qehoy+C:8Ew3R9Iy |
MD5: | 4A39410E27AF65F7ED5CC6F96C8648B8 |
SHA1: | 5C9D516BA9B3A7AD12526A4BE0DDFFC014160A74 |
SHA-256: | A373A236578763BCDC7B17C062E168BABA7F7743C39164E9FFB70BE9D4480B86 |
SHA-512: | 0EB19C47940F14C6CE2B800F5C7C65441FB5FC3CFD2E729CBC20156194D423870A857934DFAC17BE6FC8C8C1A0356452819F7BC899F8DD7AF53B3925DF8DA0B2 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.992376419194947 |
Encrypted: | false |
SSDEEP: | 48:8vpdiTuOyHNidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbay+yT+:8m3NT/TbxWOvTbay7T |
MD5: | 7CFB9CBF0AB46123A58606090D983C1D |
SHA1: | 33F20339781651D77A9743B9C86D3F3DC381E3B2 |
SHA-256: | 404EB7E7DB1A94B4DF38007E07A57183A0904FF88E82A449FB233A595FA2DEFE |
SHA-512: | 7B63CCD1EA131FBFD563D60988960EF693AE2A7E1AD26E14FFF64FF4CF294B6F735C5BC9BC1A3F8FFE72BCA87CC95EF16E62628B07B6F58B318FB4918427A6E1 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 24051 |
Entropy (8bit): | 4.941039417164537 |
Encrypted: | false |
SSDEEP: | 192:VuR/6okgTQwq23gGM8lUR9YRGQ2BwoX6zp+1+nDT1FvxKSI7/UsV7MSE6XZ2dKzk:JwV+oUcoQJpdf1dxKSI7/Ue7ZX2qk |
MD5: | 5E8C69A459A691B5D1B9BE442332C87D |
SHA1: | F24DD1AD7C9080575D92A9A9A2C42620725EF836 |
SHA-256: | 84E3C77025ACE5AF143972B4A40FC834DCDFD4E449D4B36A57E62326F16B3091 |
SHA-512: | 6DB74B262D717916DE0B0B600EEAD2CC6A10E52A9E26D701FAE761FCBC931F35F251553669A92BE3B524F380F32E62AC6AD572BEA23C78965228CE9EFB92ED42 |
Malicious: | false |
Reputation: | low |
URL: | https://fusionzerodefy.pages.dev/cdn-cgi/styles/cf.errors.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16703 |
Entropy (8bit): | 5.4652151914175775 |
Encrypted: | false |
SSDEEP: | 192:c9S9J5Rgq0npypHMDhRz8tyUNRBmC6tG2fEckb33T2VRNgYC0bWb5QU:uuYDnFRzy9NRICOG2f1K33KVRNNnwX |
MD5: | AB38C05BCB2076E703BD7A49CAA0BD93 |
SHA1: | 98D2AA391DF57002665310DDC83C102009F1DE31 |
SHA-256: | 5B7BE5FDAF6422D6413CFD47F731CF42F833E68A02CF4CEBBC3D500D355ACCFB |
SHA-512: | 30429E7FCCB5E0FE8903C88670BACB352A8E0BC5BD50E021FCF6555C3B024F02C17759354D33533072EC0A13524C9173D908FA3C2869F8A0C15898721953024C |
Malicious: | false |
Reputation: | low |
URL: | https://fusionzerodefy.pages.dev/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
Reputation: | low |
URL: | https://fusionzerodefy.pages.dev/cdn-cgi/images/icon-exclamation.png?1376755637 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 16703 |
Entropy (8bit): | 5.4652151914175775 |
Encrypted: | false |
SSDEEP: | 192:c9S9J5Rgq0npypHMDhRz8tyUNRBmC6tG2fEckb33T2VRNgYC0bWb5QU:uuYDnFRzy9NRICOG2f1K33KVRNNnwX |
MD5: | AB38C05BCB2076E703BD7A49CAA0BD93 |
SHA1: | 98D2AA391DF57002665310DDC83C102009F1DE31 |
SHA-256: | 5B7BE5FDAF6422D6413CFD47F731CF42F833E68A02CF4CEBBC3D500D355ACCFB |
SHA-512: | 30429E7FCCB5E0FE8903C88670BACB352A8E0BC5BD50E021FCF6555C3B024F02C17759354D33533072EC0A13524C9173D908FA3C2869F8A0C15898721953024C |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4394 |
Entropy (8bit): | 5.089034052861014 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYjUDK/D5DMF+BOisFA2ZLimcrR49PaQxJbGD:1j9jhjYjIK/Vo+tsHZOmcrO9ieJGD |
MD5: | 459B8922BE0F43ECCD78213D2E1DC77E |
SHA1: | 2CA4E9455BFEAD9D844668DFD5AF1566A8BF7885 |
SHA-256: | 5E28900B3FEF372ED430FC4FE7BE03775BCB753CAFF93E30F59CD8AB63C1315C |
SHA-512: | 0918C8AEAE8D628570DD636012D2CBCE8AB27F664C908307F8A21D97CDDA72564A1FE7883AE1C4DEB0A23BE46DF4F4EC67F03C8B6C9B2CECB80C874FFB830104 |
Malicious: | false |
Reputation: | low |
URL: | https://fusionzerodefy.pages.dev/ |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 04:36:29.979229927 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:29.994841099 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:30.088598967 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:37.394886017 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.394973993 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.395181894 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.395217896 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.395227909 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.395275116 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.395869970 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.395890951 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.396312952 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.396328926 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.855400085 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.857525110 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.857541084 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.858608007 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.858690023 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.863560915 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.863607883 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.863637924 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.863836050 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.863883018 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.863890886 CEST | 443 | 49709 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.863914967 CEST | 49709 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.864572048 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.864613056 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.864749908 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.868175030 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.871917963 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.871927023 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.872075081 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.872102022 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.873013020 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.873084068 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.873466969 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.873487949 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.873528957 CEST | 443 | 49710 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.873557091 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.873615026 CEST | 49710 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.873961926 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.874006033 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:37.874082088 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.874247074 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:37.874258995 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.338918924 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.339164972 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.339204073 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.340009928 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.340233088 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.340295076 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.340383053 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.340399981 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.341444969 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.341497898 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.344717026 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.344790936 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.345500946 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.345622063 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.345900059 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.345910072 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.394889116 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.395077944 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.395095110 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.442465067 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.473473072 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473524094 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473550081 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473572016 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473576069 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.473606110 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473623037 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.473685980 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.473733902 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.490024090 CEST | 49713 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.490072966 CEST | 443 | 49713 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.655498981 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.703412056 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.752918959 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.752964973 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.752993107 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753007889 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.753025055 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753053904 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753063917 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.753070116 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753108978 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.753524065 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753595114 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.753638983 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.753647089 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.757627010 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.757663012 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.757671118 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.757683039 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.757719040 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.839946985 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840023994 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840066910 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.840080023 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840120077 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840151072 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840157986 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.840162992 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840198994 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:38.840203047 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840270042 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:38.840322018 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.276608944 CEST | 49712 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.276635885 CEST | 443 | 49712 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.372355938 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.372402906 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.372471094 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.389259100 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.389280081 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.584446907 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:39.601908922 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:39.698199987 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:39.843246937 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.843662024 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.843677044 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.844664097 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.844726086 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845144987 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845181942 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845206022 CEST | 443 | 49715 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.845233917 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845271111 CEST | 49715 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845613003 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.845679045 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:39.845839977 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.846030951 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:39.846049070 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.137088060 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.137156010 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.137223005 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.138016939 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.138035059 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.327795982 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.328335047 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.328397036 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.328722000 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.329229116 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.329293013 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.329653978 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.371409893 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.377299070 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:40.377335072 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:40.377454996 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:40.380702972 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:40.380721092 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:40.451478958 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.451565981 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.451683998 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.456248999 CEST | 49718 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.456280947 CEST | 443 | 49718 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.478480101 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.478528023 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.478668928 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.479038000 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.479053020 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.499886990 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.499927998 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.500061035 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.500998974 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.501022100 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.799670935 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.800043106 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.800085068 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.801579952 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.801655054 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.803200960 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.803505898 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.848442078 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.848468065 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:40.895311117 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:40.934751034 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.961337090 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.961359024 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.962204933 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.962714911 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.962721109 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.963326931 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.963376999 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.963701963 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.963748932 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.964212894 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.964277983 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.964302063 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.964443922 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.964451075 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.964592934 CEST | 443 | 49721 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.964646101 CEST | 49721 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.965306997 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.965361118 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.965445995 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.965883970 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.965981960 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.966038942 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.966089010 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.966265917 CEST | 443 | 49722 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.966304064 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.966325998 CEST | 49722 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.966629028 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.966710091 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.966850042 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.967103958 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.967122078 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:40.967330933 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:40.967350006 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.038376093 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.038463116 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.048677921 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.048702955 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.048930883 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.098757982 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.128705025 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.175411940 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.316158056 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.316239119 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.316488981 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.316986084 CEST | 49720 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.317020893 CEST | 443 | 49720 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.368788958 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:41.368875980 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:41.371865034 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.371905088 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.371975899 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.372523069 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:41.372531891 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.422749043 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.423532963 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.423577070 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.424593925 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.424648046 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.426332951 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.426398993 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.443928003 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.470575094 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.470592022 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.470877886 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.470895052 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.471762896 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.471831083 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.487231970 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.487381935 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.487396002 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.487411022 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.520665884 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.536381960 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.536423922 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.567491055 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.567562103 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.567634106 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.583143950 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.634934902 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635023117 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635056973 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635086060 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635097980 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.635118008 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635149956 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.635159016 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635200977 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635231972 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635243893 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.635251045 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635292053 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.635298967 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.635334969 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.635442019 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.676887989 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.676906109 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.723764896 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.725294113 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.725557089 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.725610018 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.740684986 CEST | 49724 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.740750074 CEST | 443 | 49724 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.741997957 CEST | 49723 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:41.742019892 CEST | 443 | 49723 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:41.997535944 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:41.997610092 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.008059978 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.008084059 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.008367062 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.009778023 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.051446915 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.264446974 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.264519930 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.264574051 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.426569939 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.426614046 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.426625013 CEST | 49725 | 443 | 192.168.2.5 | 2.19.244.127 |
Sep 29, 2024 04:36:42.426631927 CEST | 443 | 49725 | 2.19.244.127 | 192.168.2.5 |
Sep 29, 2024 04:36:42.578562975 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:42.578602076 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:42.578717947 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:42.579199076 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:42.579210043 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.209151983 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.209409952 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.209430933 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.210433006 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.210489988 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.210812092 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.210812092 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.210860014 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.210875034 CEST | 443 | 49726 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.210939884 CEST | 49726 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.211153984 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.211208105 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.211270094 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.211487055 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.211499929 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.670077085 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.670324087 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.670356989 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.670938969 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.671550989 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.671624899 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.671683073 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.719420910 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.724029064 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.827821016 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.827894926 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.827924013 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.827955008 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.827971935 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.827981949 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.827994108 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.828022003 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.828037024 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.828043938 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.828075886 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.828099966 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.828111887 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.828119040 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.830957890 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.832664013 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.880289078 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.880305052 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.914438963 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.914498091 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.914514065 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.914556980 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.914783955 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:43.914794922 CEST | 443 | 49727 | 188.114.97.3 | 192.168.2.5 |
Sep 29, 2024 04:36:43.914813995 CEST | 49727 | 443 | 192.168.2.5 | 188.114.97.3 |
Sep 29, 2024 04:36:50.701757908 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:50.701925039 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:50.701992035 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:51.837486029 CEST | 49719 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:36:51.837528944 CEST | 443 | 49719 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:36:52.915668964 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:52.915791035 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:52.916393995 CEST | 49734 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:52.916461945 CEST | 443 | 49734 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:52.916539907 CEST | 49734 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:52.920624971 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:52.920641899 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:52.921237946 CEST | 49734 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:36:52.921262026 CEST | 443 | 49734 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:53.537523031 CEST | 443 | 49734 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:36:53.537595987 CEST | 49734 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:37:12.691575050 CEST | 443 | 49734 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 04:37:12.691704035 CEST | 49734 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 04:37:18.591016054 CEST | 49643 | 53 | 192.168.2.5 | 162.159.36.2 |
Sep 29, 2024 04:37:18.595834970 CEST | 53 | 49643 | 162.159.36.2 | 192.168.2.5 |
Sep 29, 2024 04:37:18.595901012 CEST | 49643 | 53 | 192.168.2.5 | 162.159.36.2 |
Sep 29, 2024 04:37:18.595963001 CEST | 49643 | 53 | 192.168.2.5 | 162.159.36.2 |
Sep 29, 2024 04:37:18.600733042 CEST | 53 | 49643 | 162.159.36.2 | 192.168.2.5 |
Sep 29, 2024 04:37:19.054954052 CEST | 53 | 49643 | 162.159.36.2 | 192.168.2.5 |
Sep 29, 2024 04:37:19.055567980 CEST | 49643 | 53 | 192.168.2.5 | 162.159.36.2 |
Sep 29, 2024 04:37:19.060753107 CEST | 53 | 49643 | 162.159.36.2 | 192.168.2.5 |
Sep 29, 2024 04:37:19.060828924 CEST | 49643 | 53 | 192.168.2.5 | 162.159.36.2 |
Sep 29, 2024 04:37:40.236344099 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:40.236409903 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.236485004 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:40.236773014 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:40.236788988 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.892010927 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.892672062 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:40.892716885 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.893049002 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.894083023 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:40.894148111 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:40.942742109 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:50.803585052 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:50.803663015 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 04:37:50.803766012 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:51.835891962 CEST | 49647 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 04:37:51.835963011 CEST | 443 | 49647 | 216.58.206.68 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 04:36:35.569094896 CEST | 53 | 50845 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:35.652276993 CEST | 53 | 52275 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:36.846273899 CEST | 53 | 57185 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:37.382220030 CEST | 57744 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:37.382442951 CEST | 62021 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:37.392463923 CEST | 53 | 57744 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:37.394273996 CEST | 53 | 62021 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:40.128663063 CEST | 65114 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:40.128962040 CEST | 54730 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:40.135354042 CEST | 53 | 65114 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:40.135607958 CEST | 53 | 54730 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:40.487622023 CEST | 63740 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:40.487953901 CEST | 53608 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 04:36:40.498601913 CEST | 53 | 53608 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:40.498804092 CEST | 53 | 63740 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:36:53.809747934 CEST | 53 | 57500 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:37:12.856904030 CEST | 53 | 50911 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:37:18.590563059 CEST | 53 | 54846 | 162.159.36.2 | 192.168.2.5 |
Sep 29, 2024 04:37:19.067051888 CEST | 53 | 54120 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:37:35.081784964 CEST | 53 | 50617 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 04:37:35.232600927 CEST | 53 | 62051 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Sep 29, 2024 04:36:37.382220030 CEST | 192.168.2.5 | 1.1.1.1 | 0xca83 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 04:36:37.382442951 CEST | 192.168.2.5 | 1.1.1.1 | 0x23c0 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 04:36:40.128663063 CEST | 192.168.2.5 | 1.1.1.1 | 0x513e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 04:36:40.128962040 CEST | 192.168.2.5 | 1.1.1.1 | 0xf441 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 04:36:40.487622023 CEST | 192.168.2.5 | 1.1.1.1 | 0x2a4d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 04:36:40.487953901 CEST | 192.168.2.5 | 1.1.1.1 | 0x33a | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Sep 29, 2024 04:36:37.392463923 CEST | 1.1.1.1 | 192.168.2.5 | 0xca83 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:37.392463923 CEST | 1.1.1.1 | 192.168.2.5 | 0xca83 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:37.394273996 CEST | 1.1.1.1 | 192.168.2.5 | 0x23c0 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 04:36:40.135354042 CEST | 1.1.1.1 | 192.168.2.5 | 0x513e | No error (0) | 216.58.206.68 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:40.135607958 CEST | 1.1.1.1 | 192.168.2.5 | 0xf441 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 04:36:40.498601913 CEST | 1.1.1.1 | 192.168.2.5 | 0x33a | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 04:36:40.498804092 CEST | 1.1.1.1 | 192.168.2.5 | 0x2a4d | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:40.498804092 CEST | 1.1.1.1 | 192.168.2.5 | 0x2a4d | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:50.917723894 CEST | 1.1.1.1 | 192.168.2.5 | 0x58c0 | No error (0) | default.qdr.p1.ds-c7110-microsoft.global.dns.qwilted-cds.cqloud.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:50.917723894 CEST | 1.1.1.1 | 192.168.2.5 | 0x58c0 | No error (0) | 217.20.57.18 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:50.917723894 CEST | 1.1.1.1 | 192.168.2.5 | 0x58c0 | No error (0) | 217.20.57.34 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:51.568216085 CEST | 1.1.1.1 | 192.168.2.5 | 0x463 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 04:36:51.568216085 CEST | 1.1.1.1 | 192.168.2.5 | 0x463 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:05.533205986 CEST | 1.1.1.1 | 192.168.2.5 | 0x38ef | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:05.533205986 CEST | 1.1.1.1 | 192.168.2.5 | 0x38ef | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:27.934381008 CEST | 1.1.1.1 | 192.168.2.5 | 0x89cb | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:27.934381008 CEST | 1.1.1.1 | 192.168.2.5 | 0x89cb | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:48.216152906 CEST | 1.1.1.1 | 192.168.2.5 | 0xffca | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:48.216152906 CEST | 1.1.1.1 | 192.168.2.5 | 0xffca | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:53.616733074 CEST | 1.1.1.1 | 192.168.2.5 | 0x64e7 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 04:37:53.616733074 CEST | 1.1.1.1 | 192.168.2.5 | 0x64e7 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49713 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:38 UTC | 667 | OUT | |
2024-09-29 02:36:38 UTC | 606 | IN | |
2024-09-29 02:36:38 UTC | 763 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 901 | IN | |
2024-09-29 02:36:38 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49712 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:38 UTC | 575 | OUT | |
2024-09-29 02:36:38 UTC | 411 | IN | |
2024-09-29 02:36:38 UTC | 958 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN | |
2024-09-29 02:36:38 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49718 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:40 UTC | 667 | OUT | |
2024-09-29 02:36:40 UTC | 409 | IN | |
2024-09-29 02:36:40 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49720 | 2.19.244.127 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:41 UTC | 161 | OUT | |
2024-09-29 02:36:41 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49724 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:41 UTC | 394 | OUT | |
2024-09-29 02:36:41 UTC | 409 | IN | |
2024-09-29 02:36:41 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49723 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:41 UTC | 604 | OUT | |
2024-09-29 02:36:41 UTC | 745 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN | |
2024-09-29 02:36:41 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49725 | 2.19.244.127 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:42 UTC | 239 | OUT | |
2024-09-29 02:36:42 UTC | 535 | IN | |
2024-09-29 02:36:42 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49727 | 188.114.97.3 | 443 | 2624 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 02:36:43 UTC | 359 | OUT | |
2024-09-29 02:36:43 UTC | 749 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN | |
2024-09-29 02:36:43 UTC | 1369 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 22:36:31 |
Start date: | 28/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 22:36:34 |
Start date: | 28/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 22:36:36 |
Start date: | 28/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |