Windows
Analysis Report
http://fitur-terbaru-dana-2024-s.pages.dev/
Overview
General Information
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 2972 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 572 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2080 --fi eld-trial- handle=201 6,i,131854 3053693719 760,176975 9128155866 3939,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6388 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://fitur- terbaru-da na-2024-s. pages.dev/ " MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security | ||
JoeSecurity_BlockedWebSite | Yara detected BlockedWebSite | Joe Security |
Click to jump to signature section
Phishing |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bg.microsoft.map.fastly.net | 199.232.214.172 | true | false | unknown | |
fitur-terbaru-dana-2024-s.pages.dev | 172.66.47.104 | true | false | unknown | |
www.google.com | 216.58.206.68 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.66.47.104 | fitur-terbaru-dana-2024-s.pages.dev | United States | 13335 | CLOUDFLARENETUS | false | |
172.66.44.152 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
216.58.206.68 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.4 |
192.168.2.5 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1522076 |
Start date and time: | 2024-09-29 08:14:50 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 7s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://fitur-terbaru-dana-2024-s.pages.dev/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.phis.win@17/16@8/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.18.3, 172.217.18.14, 74.125.71.84, 34.104.35.123, 4.245.163.56, 2.16.100.168, 88.221.110.91, 192.229.221.95, 13.85.23.206, 20.3.187.198, 142.250.185.131, 199.232.214.172
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, a767.dspw65.akamai.net, download.windowsupdate.com.edgesuite.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: http://fitur-terbaru-dana-2024-s.pages.dev/
Input | Output |
---|---|
URL: https://fitur-terbaru-dana-2024-s.pages.dev/ Model: jbxai | { "brand":[], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"Learn More", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: https://fitur-terbaru-dana-2024-s.pages.dev/ Model: jbxai | { "brand":["Cloudflare"], "contains_trigger_text":true, "trigger_text":"This website has been reported for potential phishing. Phishing is when a site attempts to steal sensitive information by falsely presenting as a safe source.", "prominent_button_name":"Learn More", "text_input_field_labels":["Your IP: 8.46.123.33 Performance & security by Cloudflare"], "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.978424242041398 |
Encrypted: | false |
SSDEEP: | 48:8AdUcT0ArsHAWidAKZdA19ehwiZUklqehHy+3:8ALuAy |
MD5: | 47E84A3EE92A926F6EF9C6CDC0A2E449 |
SHA1: | 175E63D6A76245389ADFA2571087FFE56F4B465C |
SHA-256: | 45DCD4FC334367C57FAB92DEE3F7AAE07AFBF495664E1CFAA75D5F0CDF132589 |
SHA-512: | F604E8C0D0F9424DB05C6A9420980DAA6B6627BF83A589437551E286DD78CD54F9B4CD6E1988341BC85D57AFED2D51216DBAE70CD2DD63A72016EDE65E992EEB |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9902054894795014 |
Encrypted: | false |
SSDEEP: | 48:8JdUcT0ArsHAWidAKZdA1weh/iZUkAQkqehwy+2:8XLs9QFy |
MD5: | EACC60BFF8909AEB5B1BDCC28DD0B952 |
SHA1: | CE6FA766A85B257EA7F65D4064FA1A4893FC482C |
SHA-256: | CDCB7BA501C41D8C1E64BE7BC471EA69BB9A1F6797331DDB6C0E082CEF7E88BF |
SHA-512: | 1E326844C2385010C43017DD9F01C9D0BC3894C24DCFCBC7475CAF782511B8BA8EB812E864C7C84F0F8353A5D395635167CB63647B017B6D366497E5E4907225 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.004363485400761 |
Encrypted: | false |
SSDEEP: | 48:8xcdUcT0ArsHAWidAKZdA14tseh7sFiZUkmgqeh7sOy+BX:8xcLknEy |
MD5: | EAD442108D858BCE7117C47ED799E772 |
SHA1: | A144E9FC58A5FECD24CC9D87DCBFF3948A0BEBB4 |
SHA-256: | C8A285EAD022206B8818C3B402AA55C174198FDD50C9BAF11E03CE871AA5355F |
SHA-512: | 1605374ED6090B13977701264DB798F1EFC0466EE829F4F9A2BFF3F7A0C116C80779BE0CF0C1215F77A07DDD2B259FA29F3E3A3E2133E292AB326C90824778FE |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9905768586966346 |
Encrypted: | false |
SSDEEP: | 48:8RdUcT0ArsHAWidAKZdA1vehDiZUkwqehMy+R:8PLX2y |
MD5: | 4F959686A82356438BDC07F655497F19 |
SHA1: | 67A388F034E8A48F2EFA7C280EEDEA17A1679DBB |
SHA-256: | 9E8733EBBDD82EAF221AA37A67F22D67E24565D64FD0218438C11254BAEA53C1 |
SHA-512: | 88EF1D1193F836C92E876A581021CB31A6C0BA4A8A4899C96FBAB6169874CE11507A73053DCB3177100D257A1E5E7459BD407A33D4BA019D7A66FF64AE49918D |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.980028732827238 |
Encrypted: | false |
SSDEEP: | 48:81dUcT0ArsHAWidAKZdA1hehBiZUk1W1qehiy+C:8DLn9Cy |
MD5: | 414A86F8987FCD5BDAFB9E572D7841E5 |
SHA1: | C59C09C42881E3C5D399DDDC3966827A8CD43132 |
SHA-256: | 5D3E647B52927BCF3DE8523F0CF4A848AF3E92956CA94ACE968BA6BADE151709 |
SHA-512: | D90307DE80AD5AF0CE14A848C642C4F6DAAFF5D80F7C556263571A9873D8BD22AC21354DCC554945B6EB9049EC9BAF04D4DAB4FA6E7F9E8B68E26EB9FD822BAB |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.987696795785672 |
Encrypted: | false |
SSDEEP: | 48:8cdUcT0ArsHAWidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbEy+yT+:8cLvT/TbxWOvTbEy7T |
MD5: | 6610B5722CF475DF19B4DB2B0BE67735 |
SHA1: | A3E529E46BDBA5816099E524CFD194FAD080F442 |
SHA-256: | 22D32CE89259F7CCF7375DE004748972FFA4FC2BEEDDC59946A7187B9E32111B |
SHA-512: | 6B5B4CB095058C1F92E38154BCEABD77A784CD0EE653BA21E67C145DFE56A7CDB10460C0F1C27B145DA1E0660A92CCC4102AEBA6B8B4B267C26AC2326592A541 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 36424 |
Entropy (8bit): | 5.221837406690279 |
Encrypted: | false |
SSDEEP: | 768:ya5WqlydWFKFZ4FhlFEFp1FhhFk3OBvPw/7Uigf0//po24aZxPg1Pk4:BWjdWwM/lSD1fhYOBvPM73ejbaZxPg1t |
MD5: | 8D5BFEA00B603576542403D0AD713C11 |
SHA1: | A041C98C6174BF3477583FECB59AE2FABEBADAB3 |
SHA-256: | F89EF373418977BC27A13D3AA2921C88FCFFCDC0BE8BBA06B9D7AEFA1DF60BAB |
SHA-512: | 17B35901C8D9D46EE0613CFEE8166EDADD696AD8BDBDBA928A0503AE6423A333530B81FF629D85FDA45D9FAE2D17B0F8893A7A84D95C464D88DCD94BD91505F9 |
Malicious: | false |
Reputation: | low |
URL: | https://fitur-terbaru-dana-2024-s.pages.dev/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 24051 |
Entropy (8bit): | 4.941039417164537 |
Encrypted: | false |
SSDEEP: | 192:VuR/6okgTQwq23gGM8lUR9YRGQ2BwoX6zp+1+nDT1FvxKSI7/UsV7MSE6XZ2dKzk:JwV+oUcoQJpdf1dxKSI7/Ue7ZX2qk |
MD5: | 5E8C69A459A691B5D1B9BE442332C87D |
SHA1: | F24DD1AD7C9080575D92A9A9A2C42620725EF836 |
SHA-256: | 84E3C77025ACE5AF143972B4A40FC834DCDFD4E449D4B36A57E62326F16B3091 |
SHA-512: | 6DB74B262D717916DE0B0B600EEAD2CC6A10E52A9E26D701FAE761FCBC931F35F251553669A92BE3B524F380F32E62AC6AD572BEA23C78965228CE9EFB92ED42 |
Malicious: | false |
Reputation: | low |
URL: | https://fitur-terbaru-dana-2024-s.pages.dev/cdn-cgi/styles/cf.errors.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4394 |
Entropy (8bit): | 5.077331982949202 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYjUDK/D5DMF+BOisO+A2ZLimzSrR49PaQxJbGD:1j9jhjYjIK/Vo+tsO6ZOmzSrO9ieJGD |
MD5: | 2B6E69929B2F67A66E43F67956C70622 |
SHA1: | F5E14276CE3335B81F70803EE7C957BF77F7788E |
SHA-256: | A13D5EE7B0ACBD5876D8666B17011D9A8F468ED16850077EC88F6DE0A156CD79 |
SHA-512: | 93C3C2F7DE6CAB3E2FB3898079A48ED355B9007C8D6DCE648F02B302E8311E385B6E6ECDEE3F1728BD49F7C55329843E5E2BC4B1E002CCD6AB0FF0CAF2DBF68F |
Malicious: | false |
Reputation: | low |
URL: | https://fitur-terbaru-dana-2024-s.pages.dev/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
Reputation: | low |
URL: | https://fitur-terbaru-dana-2024-s.pages.dev/cdn-cgi/images/icon-exclamation.png?1376755637 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 36424 |
Entropy (8bit): | 5.221837406690279 |
Encrypted: | false |
SSDEEP: | 768:ya5WqlydWFKFZ4FhlFEFp1FhhFk3OBvPw/7Uigf0//po24aZxPg1Pk4:BWjdWwM/lSD1fhYOBvPM73ejbaZxPg1t |
MD5: | 8D5BFEA00B603576542403D0AD713C11 |
SHA1: | A041C98C6174BF3477583FECB59AE2FABEBADAB3 |
SHA-256: | F89EF373418977BC27A13D3AA2921C88FCFFCDC0BE8BBA06B9D7AEFA1DF60BAB |
SHA-512: | 17B35901C8D9D46EE0613CFEE8166EDADD696AD8BDBDBA928A0503AE6423A333530B81FF629D85FDA45D9FAE2D17B0F8893A7A84D95C464D88DCD94BD91505F9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 08:15:36.131947041 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:36.131967068 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:36.225708961 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:44.218492985 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.218564987 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.218643904 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.219077110 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.219110966 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.694276094 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.726856947 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.726900101 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.732393980 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.732475996 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.745834112 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.745887995 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.745954037 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.746102095 CEST | 443 | 49709 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.746197939 CEST | 49709 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.746393919 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.746439934 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:44.747590065 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.748495102 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:44.748523951 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.211513042 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.219383001 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.219474077 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.220442057 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.220516920 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.223685980 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.223752022 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.224803925 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.224822044 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.275522947 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.336174965 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336216927 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336245060 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336263895 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.336270094 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336282015 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336318970 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.336350918 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.336401939 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.344463110 CEST | 49710 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.344500065 CEST | 443 | 49710 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.454102039 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.454140902 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.454217911 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.454531908 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:45.454546928 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.743633032 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:45.743659019 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:45.826679945 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:45.915973902 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:45.961924076 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.316108942 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.316139936 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.320252895 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.320333958 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.321923971 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.322086096 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.322113037 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.322222948 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.322237015 CEST | 443 | 49713 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.322247028 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.322288036 CEST | 49713 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.323137045 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.323158979 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.323225021 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.325820923 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.325829029 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.783097029 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.784818888 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.784832954 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.785110950 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.786668062 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.786714077 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.786933899 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.831410885 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920802116 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920842886 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920866013 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920887947 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920907021 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.920917034 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920939922 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.920957088 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920983076 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.920996904 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.921000004 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.921341896 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.921361923 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.921369076 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.921379089 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:46.921406031 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.970058918 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:46.970067978 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007378101 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007411003 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007426977 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.007433891 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007468939 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007482052 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.007487059 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007517099 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.007519960 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007606030 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.007643938 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.015101910 CEST | 49714 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.015120029 CEST | 443 | 49714 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.118923903 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.118979931 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:47.119040966 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.120825052 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.120845079 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:47.410171986 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:47.410221100 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:47.410290003 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:47.411958933 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.411967993 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.412026882 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.413749933 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:47.413764000 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:47.421483040 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.421506882 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.493334055 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:47.493433952 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:47.763777971 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:47.763871908 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.787795067 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.787828922 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:47.788750887 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:47.836400032 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:47.877335072 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.903884888 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.903911114 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.904854059 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.904917002 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.948385954 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.948410034 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.948508978 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.948667049 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.948702097 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.948709011 CEST | 443 | 49717 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.948755026 CEST | 49717 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.949007034 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.949035883 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:47.949103117 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.949516058 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:47.949529886 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.053669930 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.074075937 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:48.074512005 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:48.074527025 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:48.075423002 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:48.075480938 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:48.079786062 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:48.079839945 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:48.099401951 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.133549929 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:48.133560896 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:48.239481926 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.239692926 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.239778042 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.240057945 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.240078926 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.240139961 CEST | 49715 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.240144968 CEST | 443 | 49715 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.265818119 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.265935898 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.266103983 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.269077063 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.269109964 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.338365078 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:48.406867981 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.407217026 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.407244921 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.408159018 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.408231974 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.408665895 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.408822060 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.409082890 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.409089088 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.468947887 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.537941933 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.537993908 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.542929888 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.591340065 CEST | 49718 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.591372013 CEST | 443 | 49718 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.861696959 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.861767054 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.861901999 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.862596035 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:48.862612009 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:48.880116940 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:48.880158901 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:48.880291939 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:48.880594015 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:48.880606890 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:48.917017937 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.917087078 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.919164896 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.919192076 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.919501066 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:48.921468019 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:48.963403940 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:49.193923950 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:49.194108963 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:49.194171906 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:49.196928978 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:49.196969986 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:49.196999073 CEST | 49720 | 443 | 192.168.2.5 | 184.28.90.27 |
Sep 29, 2024 08:15:49.197014093 CEST | 443 | 49720 | 184.28.90.27 | 192.168.2.5 |
Sep 29, 2024 08:15:49.330363989 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.331069946 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.331120014 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.332520962 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.332585096 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334135056 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334168911 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334203005 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334244013 CEST | 443 | 49721 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.334317923 CEST | 49721 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334732056 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.334851027 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.334935904 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.335443974 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.335495949 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.336889982 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.337124109 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.337151051 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.338044882 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.338092089 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.339325905 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.339346886 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.339376926 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.339469910 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.339476109 CEST | 443 | 49722 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.339485884 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.339512110 CEST | 49722 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.340387106 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.340429068 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.340478897 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.341310978 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.341325045 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.793191910 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.798846006 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.889092922 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.889133930 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.889200926 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.889218092 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.890250921 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.890263081 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.890307903 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.890630960 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.930382967 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.951092958 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.951215029 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.951423883 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.951617002 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:49.951749086 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:49.951770067 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:49.951786041 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:49.995395899 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.050333977 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:50.050529003 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:50.051053047 CEST | 49724 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:50.051073074 CEST | 443 | 49724 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:50.088819981 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.088920116 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.088963985 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.088993073 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.089008093 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.089025021 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.089108944 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.089133024 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.089152098 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.089183092 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.089637041 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.089886904 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.089895010 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.093499899 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.093554020 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.093579054 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.093585968 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.093808889 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.175623894 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175718069 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175775051 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175818920 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175844908 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.175858021 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175905943 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.175930023 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.175936937 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176023960 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.176326990 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176526070 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.176532984 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176681995 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176729918 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176753998 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.176768064 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176805019 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.176876068 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.176882982 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.177113056 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.177330017 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.177489042 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.177628994 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.177768946 CEST | 49723 | 443 | 192.168.2.5 | 172.66.47.104 |
Sep 29, 2024 08:15:50.177784920 CEST | 443 | 49723 | 172.66.47.104 | 192.168.2.5 |
Sep 29, 2024 08:15:50.452797890 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:50.452848911 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:50.453115940 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:50.455826044 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:50.455838919 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:50.919534922 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.039812088 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.420713902 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.420751095 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.424750090 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.424787045 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.424818993 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.426268101 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.426318884 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.426462889 CEST | 443 | 49725 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.426474094 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.426582098 CEST | 49725 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.427469969 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.427508116 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.427561045 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.427833080 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.427843094 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.886764050 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.887052059 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.887083054 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.887576103 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.887897968 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.887975931 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:51.888051987 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:51.935405016 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064450026 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064657927 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064749956 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064810991 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.064829111 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064860106 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.064877033 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.065001965 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.065064907 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.065078974 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.065228939 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.065273046 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.065280914 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.068867922 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.068948030 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.068963051 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.117883921 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.150367022 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150546074 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150610924 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.150629044 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150726080 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150770903 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.150779009 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150892973 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.150971889 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151032925 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.151045084 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151087046 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.151093006 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151501894 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151551962 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.151560068 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151670933 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151721001 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.151727915 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151812077 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151890039 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.151909113 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.151916981 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.152154922 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.152160883 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.152179003 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:52.152251005 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.152487993 CEST | 49726 | 443 | 192.168.2.5 | 172.66.44.152 |
Sep 29, 2024 08:15:52.152503014 CEST | 443 | 49726 | 172.66.44.152 | 192.168.2.5 |
Sep 29, 2024 08:15:57.962328911 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:57.962410927 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:57.965054035 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:59.009802103 CEST | 49716 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:15:59.009833097 CEST | 443 | 49716 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:15:59.104249001 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:59.105669022 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:59.109082937 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:59.110503912 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:59.118601084 CEST | 49733 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:59.118644953 CEST | 443 | 49733 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:59.118839025 CEST | 49733 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:59.129700899 CEST | 49733 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:15:59.129718065 CEST | 443 | 49733 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:59.716857910 CEST | 443 | 49733 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:15:59.716959000 CEST | 49733 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:16:18.865506887 CEST | 443 | 49733 | 23.1.237.91 | 192.168.2.5 |
Sep 29, 2024 08:16:18.865566969 CEST | 49733 | 443 | 192.168.2.5 | 23.1.237.91 |
Sep 29, 2024 08:16:47.641459942 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:47.641515017 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:47.641581059 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:47.641874075 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:47.641887903 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:48.295958996 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:48.296492100 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:48.296509027 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:48.296974897 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:48.297856092 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:48.297933102 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:48.353343010 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:58.212500095 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:58.212572098 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Sep 29, 2024 08:16:58.215095043 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:59.190053940 CEST | 49737 | 443 | 192.168.2.5 | 216.58.206.68 |
Sep 29, 2024 08:16:59.190082073 CEST | 443 | 49737 | 216.58.206.68 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 08:15:42.285092115 CEST | 53 | 59300 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:42.379301071 CEST | 53 | 62586 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:43.702856064 CEST | 53 | 62118 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:44.188366890 CEST | 58720 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:44.188551903 CEST | 56555 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:44.200047970 CEST | 53 | 58720 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:44.200179100 CEST | 53 | 56555 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:44.205349922 CEST | 59093 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:44.205600023 CEST | 64451 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:44.216903925 CEST | 53 | 64451 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:44.217870951 CEST | 53 | 59093 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:47.287199020 CEST | 52911 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:47.287667990 CEST | 64217 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:47.293915987 CEST | 53 | 52911 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:47.294151068 CEST | 53 | 64217 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:48.869807005 CEST | 63587 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:48.870357037 CEST | 62405 | 53 | 192.168.2.5 | 1.1.1.1 |
Sep 29, 2024 08:15:48.879508018 CEST | 53 | 62405 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:15:48.879525900 CEST | 53 | 63587 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:16:01.013035059 CEST | 53 | 51088 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:16:19.673238993 CEST | 53 | 53714 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:16:42.105024099 CEST | 53 | 60846 | 1.1.1.1 | 192.168.2.5 |
Sep 29, 2024 08:16:42.137025118 CEST | 53 | 54433 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Sep 29, 2024 08:15:44.188366890 CEST | 192.168.2.5 | 1.1.1.1 | 0xf7d3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 08:15:44.188551903 CEST | 192.168.2.5 | 1.1.1.1 | 0xf41b | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 08:15:44.205349922 CEST | 192.168.2.5 | 1.1.1.1 | 0x677d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 08:15:44.205600023 CEST | 192.168.2.5 | 1.1.1.1 | 0x64b2 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 08:15:47.287199020 CEST | 192.168.2.5 | 1.1.1.1 | 0x7895 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 08:15:47.287667990 CEST | 192.168.2.5 | 1.1.1.1 | 0xec02 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 08:15:48.869807005 CEST | 192.168.2.5 | 1.1.1.1 | 0x554e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 08:15:48.870357037 CEST | 192.168.2.5 | 1.1.1.1 | 0x5def | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Sep 29, 2024 08:15:44.200047970 CEST | 1.1.1.1 | 192.168.2.5 | 0xf7d3 | No error (0) | 172.66.47.104 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:44.200047970 CEST | 1.1.1.1 | 192.168.2.5 | 0xf7d3 | No error (0) | 172.66.44.152 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:44.200179100 CEST | 1.1.1.1 | 192.168.2.5 | 0xf41b | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 08:15:44.216903925 CEST | 1.1.1.1 | 192.168.2.5 | 0x64b2 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 08:15:44.217870951 CEST | 1.1.1.1 | 192.168.2.5 | 0x677d | No error (0) | 172.66.47.104 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:44.217870951 CEST | 1.1.1.1 | 192.168.2.5 | 0x677d | No error (0) | 172.66.44.152 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:47.293915987 CEST | 1.1.1.1 | 192.168.2.5 | 0x7895 | No error (0) | 216.58.206.68 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:47.294151068 CEST | 1.1.1.1 | 192.168.2.5 | 0xec02 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 08:15:48.879508018 CEST | 1.1.1.1 | 192.168.2.5 | 0x5def | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 08:15:48.879525900 CEST | 1.1.1.1 | 192.168.2.5 | 0x554e | No error (0) | 172.66.44.152 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:48.879525900 CEST | 1.1.1.1 | 192.168.2.5 | 0x554e | No error (0) | 172.66.47.104 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:58.104444027 CEST | 1.1.1.1 | 192.168.2.5 | 0x393a | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 08:15:58.104444027 CEST | 1.1.1.1 | 192.168.2.5 | 0x393a | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:11.908144951 CEST | 1.1.1.1 | 192.168.2.5 | 0x2799 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:11.908144951 CEST | 1.1.1.1 | 192.168.2.5 | 0x2799 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:34.767746925 CEST | 1.1.1.1 | 192.168.2.5 | 0xf3e4 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:34.767746925 CEST | 1.1.1.1 | 192.168.2.5 | 0xf3e4 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:55.285633087 CEST | 1.1.1.1 | 192.168.2.5 | 0xff4c | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:55.285633087 CEST | 1.1.1.1 | 192.168.2.5 | 0xff4c | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:59.468662977 CEST | 1.1.1.1 | 192.168.2.5 | 0xd814 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 08:16:59.468662977 CEST | 1.1.1.1 | 192.168.2.5 | 0xd814 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49710 | 172.66.47.104 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:45 UTC | 678 | OUT | |
2024-09-29 06:15:45 UTC | 628 | IN | |
2024-09-29 06:15:45 UTC | 741 | IN | |
2024-09-29 06:15:45 UTC | 1369 | IN | |
2024-09-29 06:15:45 UTC | 1369 | IN | |
2024-09-29 06:15:45 UTC | 923 | IN | |
2024-09-29 06:15:45 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49714 | 172.66.47.104 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:46 UTC | 597 | OUT | |
2024-09-29 06:15:46 UTC | 411 | IN | |
2024-09-29 06:15:46 UTC | 958 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN | |
2024-09-29 06:15:46 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49715 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:48 UTC | 161 | OUT | |
2024-09-29 06:15:48 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49718 | 172.66.47.104 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:48 UTC | 689 | OUT | |
2024-09-29 06:15:48 UTC | 409 | IN | |
2024-09-29 06:15:48 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49720 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:48 UTC | 239 | OUT | |
2024-09-29 06:15:49 UTC | 515 | IN | |
2024-09-29 06:15:49 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49723 | 172.66.47.104 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:49 UTC | 626 | OUT | |
2024-09-29 06:15:50 UTC | 761 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN | |
2024-09-29 06:15:50 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49724 | 172.66.44.152 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:49 UTC | 405 | OUT | |
2024-09-29 06:15:50 UTC | 409 | IN | |
2024-09-29 06:15:50 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49726 | 172.66.44.152 | 443 | 572 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 06:15:51 UTC | 370 | OUT | |
2024-09-29 06:15:52 UTC | 765 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN | |
2024-09-29 06:15:52 UTC | 1369 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 02:15:37 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 02:15:41 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 02:15:43 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |