Windows
Analysis Report
https://zigzag.notairequebec.com/
Overview
General Information
Detection
Score: | 0 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 2908 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2836 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2292 --fi eld-trial- handle=148 ,i,8323613 1184051398 87,1783118 1471390966 475,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6416 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://zigza g.notaireq uebec.com/ " MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bg.microsoft.map.fastly.net | 199.232.210.172 | true | false | unknown | |
www.google.com | 142.250.184.196 | true | false | unknown | |
zigzag.notairequebec.com | 173.209.33.163 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.221.95 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.184.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
173.209.33.163 | zigzag.notairequebec.com | Canada | 36666 | GTCOMMCA | false |
IP |
---|
192.168.2.4 |
192.168.2.5 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1522206 |
Start date and time: | 2024-09-29 14:35:38 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 8s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://zigzag.notairequebec.com/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean0.win@23/25@6/5 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.184.195, 142.250.185.174, 142.251.168.84, 34.104.35.123, 4.175.87.197, 199.232.210.172, 192.229.221.95, 52.165.164.15, 40.69.42.241, 142.250.186.35
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com.delivery.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, wu-b-net.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://zigzag.notairequebec.com/
Input | Output |
---|---|
URL: https://zigzag.notairequebec.com/cgi-bin/ Model: jbxai | { "brand":[], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"unknown", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: https://zigzag.notairequebec.com/ Model: jbxai | { "brand":[], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"unknown", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 7706 |
Entropy (8bit): | 4.392532656268659 |
Encrypted: | false |
SSDEEP: | 192:ZYm7/XhkJFQYhxzXqCs8PycPCrpjj0vORHjPh4dwy0GpgfdlsgjjO8:MJlX+rpjj0vORHrWdhpgDO8 |
MD5: | 0FA71BF6CB125DDAC365683EA3352CB0 |
SHA1: | B94EEAC8764B23AB614D148007C360FD2AB46F58 |
SHA-256: | 6A6B3FD328D213B1C6211581FC0DD5B56DD9DB878E4FEE73D33F5DD699ACED3E |
SHA-512: | 1264A894FD5F92C26087B5B67BCDEA3068E763C2F2E6E0036370355EC75517838D31A85D4CDD9924DEC0382E01C07D4CB3FF054E7C9404DE74DCAB7B8C9A5261 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1376 |
Entropy (8bit): | 5.065108828085407 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XyTv8iq3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7Xyb8iq3wIWMDDR3HMl |
MD5: | F20BFC8A1C83B256E540D35053BE27FF |
SHA1: | 4AC8F153029F8CEEB30EC516E8797B4466FA8D74 |
SHA-256: | 54515E48EC1A5F1598903B278EAB4A5C62EF7AA15F01AA0138218ACB2C523860 |
SHA-512: | DEF2F87600E2D00E928661E33BFD1C3F7D534BC66D2A6B7DA6937AED4AB008A56AF0CD510ACA5AB73D801D2C4EF2EFFF9516295A7F0D2F29C2AE249C36D784E5 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1377 |
Entropy (8bit): | 5.064519391629991 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7X8m8iq3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7X8m8iq3wIWMDDR3HMl |
MD5: | A1DD863E73FB81424CBB18227B722939 |
SHA1: | 277A9CE0170A49EC382A540DBF00E45C6F50B78F |
SHA-256: | CAF0B6EC4AE1528F921CC9A09CD46B79B8F9663A86F0599F963FB3662651AC72 |
SHA-512: | 685675C70066FFA37FE181AA59BB23DF54D4C5DBBCE6E5606F644542D8ECB871EF8BB8BED4050E342B5A1829DC6C708325E52DF7A393582BDAB979B7ADD7D963 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?ND |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1376 |
Entropy (8bit): | 5.065108828085407 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XyTv8iq3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7Xyb8iq3wIWMDDR3HMl |
MD5: | F20BFC8A1C83B256E540D35053BE27FF |
SHA1: | 4AC8F153029F8CEEB30EC516E8797B4466FA8D74 |
SHA-256: | 54515E48EC1A5F1598903B278EAB4A5C62EF7AA15F01AA0138218ACB2C523860 |
SHA-512: | DEF2F87600E2D00E928661E33BFD1C3F7D534BC66D2A6B7DA6937AED4AB008A56AF0CD510ACA5AB73D801D2C4EF2EFFF9516295A7F0D2F29C2AE249C36D784E5 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?NA |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 682 |
Entropy (8bit): | 5.148248640408019 |
Encrypted: | false |
SSDEEP: | 12:2QHT5y6gYfmEdj9Wpw/CQKfbRj9WCh/Uvjva9Uvj0arfPqCuF6tNKl:2Qz5y6gYfmE3uZAEQiyjbPq0b4 |
MD5: | 377B82A88AEDA884475D40FA1051C70A |
SHA1: | E7619035DB4C628248B82237F3A99683E29ED7A4 |
SHA-256: | 5FF78B7EA9124AD40C205B606048C819DBBDC9C708105961D89859F79092CD07 |
SHA-512: | 52E763C2F178F312382198012C5822788264093B797D2B8EDB01777E234CE693B78DC6AAD86CDCAA92B72E1158834C20FA82351C1C738DD63BEE2E20C93B79FC |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/_autoindex/assets/js/tablesort.number.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 591 |
Entropy (8bit): | 5.443126363785019 |
Encrypted: | false |
SSDEEP: | 12:TMHdPpNi/nzVJ/KYf3nCDHuYZuNkb3Ao4:2d7ATLf3CrFT4 |
MD5: | 5D0E817DCA10AAB2CB58087551767A9C |
SHA1: | 9286A744DE09B180F4D29750E5B16613280A2A09 |
SHA-256: | E52EA75A526A963A5D7371795D5DACB4CEAABFE6C77BDD9649F0B457B0D6009E |
SHA-512: | 9358D6857631857030FC8D09F0EC2A4EA9FF3C2BB8EF87B79889043D9D9AFC420A2A444FBA6C12D978B115DDB679124A5B05E59B5076F5C9F63E600A4B41BB7A |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/_autoindex/assets/icons/folder-fill.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1376 |
Entropy (8bit): | 5.065108828085407 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XZmXfq3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7XZmXfq3wIWMDDR3HMl |
MD5: | 6D8074775D9D38D808D56317863720DA |
SHA1: | 7CE434B9BB69A2BBD5E267B1DE20465394C5171E |
SHA-256: | 8408E18BE98CF255C31E7C5EF94AE080F220A1324397D6650BCA3E9C10E99EF2 |
SHA-512: | FF5369CA2CF8C5429BB8B1DAD7F8E62FD2F599DF173288FED30EF7625AF88176BFDBA0A08F7EBD31F2A6DD239743BF8E8565E3BD96F04AD7072D77DA71954FAE |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?MA |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7706 |
Entropy (8bit): | 4.392532656268659 |
Encrypted: | false |
SSDEEP: | 192:ZYm7/XhkJFQYhxzXqCs8PycPCrpjj0vORHjPh4dwy0GpgfdlsgjjO8:MJlX+rpjj0vORHrWdhpgDO8 |
MD5: | 0FA71BF6CB125DDAC365683EA3352CB0 |
SHA1: | B94EEAC8764B23AB614D148007C360FD2AB46F58 |
SHA-256: | 6A6B3FD328D213B1C6211581FC0DD5B56DD9DB878E4FEE73D33F5DD699ACED3E |
SHA-512: | 1264A894FD5F92C26087B5B67BCDEA3068E763C2F2E6E0036370355EC75517838D31A85D4CDD9924DEC0382E01C07D4CB3FF054E7C9404DE74DCAB7B8C9A5261 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/_autoindex/assets/js/tablesort.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1376 |
Entropy (8bit): | 5.065108828085407 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XZm8iB1I3hyMkajSOwwcwWAXHMRRkS:WdHz+7XZm8iB1IWMDDR3HMl |
MD5: | FA14C621D06BD76129D00444A192B618 |
SHA1: | C66ADB6181D6BD36232710019BAA9FE4EA6D15EC |
SHA-256: | 27946E48FB4BA9C3926C60DFFEBBAA4BA24D76F54D79DA496BB8479E96D592AD |
SHA-512: | 381F7EF3DD77147972278547691CFF2D84A421838C183C2B4914A70855C8C163AD44CC73CF3F52D7EA44A371B683E9EBB4A099E6269CACDE0A6ECEC0EBBD5FBE |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?SA |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 591 |
Entropy (8bit): | 5.443126363785019 |
Encrypted: | false |
SSDEEP: | 12:TMHdPpNi/nzVJ/KYf3nCDHuYZuNkb3Ao4:2d7ATLf3CrFT4 |
MD5: | 5D0E817DCA10AAB2CB58087551767A9C |
SHA1: | 9286A744DE09B180F4D29750E5B16613280A2A09 |
SHA-256: | E52EA75A526A963A5D7371795D5DACB4CEAABFE6C77BDD9649F0B457B0D6009E |
SHA-512: | 9358D6857631857030FC8D09F0EC2A4EA9FF3C2BB8EF87B79889043D9D9AFC420A2A444FBA6C12D978B115DDB679124A5B05E59B5076F5C9F63E600A4B41BB7A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3562 |
Entropy (8bit): | 5.174152297008417 |
Encrypted: | false |
SSDEEP: | 48:QOwwZPyWJb9gj5teeelwIlodDM17/soFsssZUgjyh6yBp/7uFEtoiBopTKOZ3Kzp:J/1u5tebKdI19lzk4ht |
MD5: | 590DB3A115B1E82A26B09F98964030A5 |
SHA1: | E792179B620700C09BD763EBF3B5F163FD18F213 |
SHA-256: | 37E1E1CBB4256D8006CCFCC7C7C8E891276191714768291589B40483D3F0FE46 |
SHA-512: | 7D79D3B49A4F691D56A8C27B123EB2B5E70EFF7FC2E370B8D507C07E0BB37881F815F34A3590F6BBEC81DA5994CA163B02CA95D8C42DFE784FDDEBD36C5AFAF6 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/_autoindex/assets/css/autoindex.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 682 |
Entropy (8bit): | 5.148248640408019 |
Encrypted: | false |
SSDEEP: | 12:2QHT5y6gYfmEdj9Wpw/CQKfbRj9WCh/Uvjva9Uvj0arfPqCuF6tNKl:2Qz5y6gYfmE3uZAEQiyjbPq0b4 |
MD5: | 377B82A88AEDA884475D40FA1051C70A |
SHA1: | E7619035DB4C628248B82237F3A99683E29ED7A4 |
SHA-256: | 5FF78B7EA9124AD40C205B606048C819DBBDC9C708105961D89859F79092CD07 |
SHA-512: | 52E763C2F178F312382198012C5822788264093B797D2B8EDB01777E234CE693B78DC6AAD86CDCAA92B72E1158834C20FA82351C1C738DD63BEE2E20C93B79FC |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1377 |
Entropy (8bit): | 5.064519391629991 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XZm8ib3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7XZm8ib3wIWMDDR3HMl |
MD5: | 7A029023E5B1E9CA43C87F31C81107C2 |
SHA1: | F06501070798551670F856DB495ED2DB196D19ED |
SHA-256: | DC11EED62189D004A67C22B83EA30933DE9427D9D448C642C3B73B6DFDE24704 |
SHA-512: | B99171EB0788175A6134F9A169E9FCB3386D56D8FFAE0C11B4F8AB7FA6E4AD88C0FA2B5FF1E0C6EFC65BB4037F11B2AC397274A52DE19ADFEE8DF78B205D257E |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?SD |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1377 |
Entropy (8bit): | 5.064519391629991 |
Encrypted: | false |
SSDEEP: | 24:haHkMndLVMAVGMLVjvJRA3ZO+7XZmNiq3wI3hyMkajSOwwcwWAXHMRRkS:WdHz+7XZmNiq3wIWMDDR3HMl |
MD5: | CA3CB34D2C678384E276E283CF55B893 |
SHA1: | 219F4185AEBC51FBA74741BED8F015020C1C1618 |
SHA-256: | B529605F09C437C36CF1478929CBF1172AFB5B199E22609D5B4907D243912BD1 |
SHA-512: | 1E508A542D269E2BABBB7EE21E247F523883EAFC4C1F201ED9D46CE3CF716B882DED9A0EEB3B03DC0702F0106C94F0BA04354FFCB8DF57AAF518B24485034195 |
Malicious: | false |
Reputation: | low |
URL: | https://zigzag.notairequebec.com/?MD |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 14:36:34.736399889 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:34.736458063 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:34.736526012 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:34.736732006 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:34.736745119 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.388890028 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.428740978 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:35.428767920 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.429876089 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.430042982 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:35.434660912 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:35.434732914 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.488797903 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:35.488815069 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:35.531802893 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:35.716027021 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716065884 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:35.716150045 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716391087 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716398001 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:35.716453075 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716598988 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716608047 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:35.716809988 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:35.716818094 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.188851118 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.193670034 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.193698883 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.194788933 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.194864988 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.194873095 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.194916964 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.196619987 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.196696997 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.196820974 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.196827888 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.223728895 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.223978043 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.223987103 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.224875927 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.224958897 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.224963903 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.225009918 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.225409031 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.225460052 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.241262913 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.273418903 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.273443937 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.321182966 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.375363111 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.375557899 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.375638962 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.381525993 CEST | 49737 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.381582022 CEST | 443 | 49737 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.473439932 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.473490000 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.473581076 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.474473000 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.474509001 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.474582911 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.475282907 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.475290060 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.475344896 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.475550890 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.484087944 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.484102964 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.485117912 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.485130072 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.486093998 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.486104012 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.523396015 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.583900928 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.583990097 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.584037066 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.584038019 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.584074974 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.590729952 CEST | 49738 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.590744972 CEST | 443 | 49738 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.966156960 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.967183113 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.967269897 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.968368053 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.968430996 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.968452930 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.968502998 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.969501019 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.969589949 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.970192909 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.970210075 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.970248938 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.970707893 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.970741987 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.971108913 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.971782923 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.971860886 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.972122908 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.984042883 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.984668970 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.984688044 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.985044956 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.986542940 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:36.986613035 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:36.987042904 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.010835886 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.015396118 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.031402111 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.122504950 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.122821093 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.122842073 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.122879028 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.122905970 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.122917891 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.123024940 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.123071909 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.136218071 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.136301041 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.136358023 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.146101952 CEST | 49742 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.146136999 CEST | 443 | 49742 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.151758909 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.151803970 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.151854992 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.162323952 CEST | 49741 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.162354946 CEST | 443 | 49741 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:37.240303040 CEST | 49740 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:37.240328074 CEST | 443 | 49740 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.121551991 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.121598959 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.121766090 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.123145103 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.123157024 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.471576929 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:38.471621990 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:38.471695900 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:38.474992037 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:38.475002050 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:38.569628954 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.569684982 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.569750071 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.569938898 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.569986105 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.570034981 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.570250988 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.570321083 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.570388079 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.571063995 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.571098089 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.571417093 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.571438074 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.571609020 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.571624041 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.601342916 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.613449097 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.613471031 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.613890886 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.615812063 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.615881920 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.615969896 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.659400940 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.763818979 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.764014006 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:38.764050961 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.815336943 CEST | 49743 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:38.815366983 CEST | 443 | 49743 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.107254028 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.107748985 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.107814074 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.108985901 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.109059095 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.109080076 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.109126091 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.109709024 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.109982967 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.110043049 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.110409021 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.110435009 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.110594988 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.110599995 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.110883951 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.111093044 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.111114979 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.111412048 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.111479044 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.111489058 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.111531019 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.111943007 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.111995935 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.112211943 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.112216949 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.112217903 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.112271070 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.112279892 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.112317085 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.112566948 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.112629890 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.112766027 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.112776041 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.132635117 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.132704973 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.136307001 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.136317015 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.136523008 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.164279938 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.164290905 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.164370060 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.179902077 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.187681913 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.235411882 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261029959 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261288881 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261296988 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261322975 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261471033 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.261471033 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.261538982 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261611938 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.261657953 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.268409014 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.268568039 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.268671036 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.273119926 CEST | 49747 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.273140907 CEST | 443 | 49747 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.273874998 CEST | 49748 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.273941040 CEST | 443 | 49748 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.285331964 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.285409927 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.285466909 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.286130905 CEST | 49746 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:39.286175966 CEST | 443 | 49746 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:39.408337116 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.408400059 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.408451080 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.408586979 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.408608913 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.408644915 CEST | 49745 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.408651114 CEST | 443 | 49745 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.450805902 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.450925112 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:39.451009989 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.451307058 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:39.451339006 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:40.106832027 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:40.106955051 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:41.067682028 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:41.067723989 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:41.068130970 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:41.071208000 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:41.115417957 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:41.258193016 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:41.258291960 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:41.258457899 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:41.261476040 CEST | 49749 | 443 | 192.168.2.4 | 184.28.90.27 |
Sep 29, 2024 14:36:41.261524916 CEST | 443 | 49749 | 184.28.90.27 | 192.168.2.4 |
Sep 29, 2024 14:36:45.288120031 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:45.288196087 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:45.288244963 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:45.613147974 CEST | 49735 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:36:45.613177061 CEST | 443 | 49735 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:36:47.678493977 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.678546906 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:47.678714991 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.679342031 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.679356098 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:47.679460049 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.695588112 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.695616007 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:47.696271896 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:47.696289062 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.176332951 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.176851034 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.178689957 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.178715944 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.178896904 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.178905010 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.179061890 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.179287910 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.180727959 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.180797100 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.186184883 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.186275005 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.186691999 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.227408886 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.229401112 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.343292952 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.343449116 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:48.343497992 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.429465055 CEST | 49754 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:48.429485083 CEST | 443 | 49754 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:50.355859041 CEST | 49723 | 80 | 192.168.2.4 | 2.16.100.168 |
Sep 29, 2024 14:36:50.360897064 CEST | 80 | 49723 | 2.16.100.168 | 192.168.2.4 |
Sep 29, 2024 14:36:50.361011028 CEST | 49723 | 80 | 192.168.2.4 | 2.16.100.168 |
Sep 29, 2024 14:36:51.685319901 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.685368061 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:51.685448885 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.687803984 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.687818050 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:51.767867088 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.815406084 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:51.873039961 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:51.873214006 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:51.873265028 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.920903921 CEST | 49753 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:51.920926094 CEST | 443 | 49753 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:52.161609888 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:52.170780897 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:52.170794964 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:52.171200037 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:52.172054052 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:52.172115088 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:52.215270042 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.847620010 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.847686052 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:53.847804070 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.851457119 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.851483107 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:53.854146957 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.895406008 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:53.967461109 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:53.967658997 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:53.967737913 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.968312979 CEST | 49758 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:53.968332052 CEST | 443 | 49758 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:54.374295950 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:54.374581099 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:54.374651909 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:54.375063896 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:54.375488043 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:54.375565052 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:54.430048943 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.625900984 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.625965118 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:55.626082897 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.626384020 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.626400948 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:55.635124922 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.679399967 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:55.740881920 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:55.741065979 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:55.741116047 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.741756916 CEST | 49759 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:55.741780043 CEST | 443 | 49759 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:56.115607023 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:56.157290936 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:56.181746006 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:56.181761026 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:56.182121038 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:56.184895992 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:36:56.184945107 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:36:56.235485077 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.636997938 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.637036085 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:05.637160063 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.637675047 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.637687922 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:05.638540983 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.679404974 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:05.761439085 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:05.761622906 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:05.761696100 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.762777090 CEST | 49760 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:05.762799025 CEST | 443 | 49760 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:06.126765966 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:06.127631903 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:06.127646923 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:06.128866911 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:06.131372929 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:06.131448030 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:06.195364952 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:07.907906055 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:07.907953024 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:07.908025980 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:07.926227093 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:07.926249027 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:07.955271006 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:07.999408960 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.066801071 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.067050934 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.067110062 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:08.067861080 CEST | 49761 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:08.067879915 CEST | 443 | 49761 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.429553032 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.429853916 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:08.429868937 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.430207968 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.430665016 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:08.430743933 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:08.470618963 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.716741085 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.716792107 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:17.716856003 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.751105070 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.751138926 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:17.752157927 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.799402952 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:17.867561102 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:17.867752075 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:17.868089914 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.870784044 CEST | 49762 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:17.870804071 CEST | 443 | 49762 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:18.230205059 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:18.230771065 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:18.230798960 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:18.231158972 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:18.232378006 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:18.232439041 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:18.274651051 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:29.151158094 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:29.151259899 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:29.151298046 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:29.608917952 CEST | 49763 | 443 | 192.168.2.4 | 173.209.33.163 |
Sep 29, 2024 14:37:29.608966112 CEST | 443 | 49763 | 173.209.33.163 | 192.168.2.4 |
Sep 29, 2024 14:37:34.791619062 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:34.791671991 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:34.791763067 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:34.792212963 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:34.792228937 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:35.438961983 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:35.439721107 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:35.439738989 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:35.440028906 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:35.440489054 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:35.440548897 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:35.493486881 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:39.493633032 CEST | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Sep 29, 2024 14:37:39.499656916 CEST | 80 | 49724 | 199.232.214.172 | 192.168.2.4 |
Sep 29, 2024 14:37:39.499706984 CEST | 49724 | 80 | 192.168.2.4 | 199.232.214.172 |
Sep 29, 2024 14:37:45.371740103 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:45.371803999 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Sep 29, 2024 14:37:45.371896029 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:45.610996008 CEST | 49766 | 443 | 192.168.2.4 | 142.250.184.196 |
Sep 29, 2024 14:37:45.611031055 CEST | 443 | 49766 | 142.250.184.196 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 29, 2024 14:36:33.374037027 CEST | 53 | 58942 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:33.426268101 CEST | 53 | 50674 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:34.403491974 CEST | 53 | 57883 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:34.728483915 CEST | 55808 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:34.728617907 CEST | 55747 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:34.735143900 CEST | 53 | 55808 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:34.735584974 CEST | 53 | 55747 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:35.516954899 CEST | 52214 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:35.517093897 CEST | 52486 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:35.715224981 CEST | 53 | 52214 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:35.715485096 CEST | 53 | 52486 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:38.467104912 CEST | 58111 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:38.467627048 CEST | 54000 | 53 | 192.168.2.4 | 1.1.1.1 |
Sep 29, 2024 14:36:38.564560890 CEST | 53 | 54000 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:38.565936089 CEST | 53 | 58111 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:36:51.062185049 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Sep 29, 2024 14:36:51.610555887 CEST | 53 | 52455 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:37:10.754884005 CEST | 53 | 55483 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:37:33.019531965 CEST | 53 | 53319 | 1.1.1.1 | 192.168.2.4 |
Sep 29, 2024 14:37:33.563807011 CEST | 53 | 62562 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Sep 29, 2024 14:36:34.728483915 CEST | 192.168.2.4 | 1.1.1.1 | 0xaaf2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 14:36:34.728617907 CEST | 192.168.2.4 | 1.1.1.1 | 0xfe85 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 14:36:35.516954899 CEST | 192.168.2.4 | 1.1.1.1 | 0xb075 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 14:36:35.517093897 CEST | 192.168.2.4 | 1.1.1.1 | 0xe288 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 29, 2024 14:36:38.467104912 CEST | 192.168.2.4 | 1.1.1.1 | 0x1715 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 29, 2024 14:36:38.467627048 CEST | 192.168.2.4 | 1.1.1.1 | 0x90ca | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Sep 29, 2024 14:36:34.735143900 CEST | 1.1.1.1 | 192.168.2.4 | 0xaaf2 | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:34.735584974 CEST | 1.1.1.1 | 192.168.2.4 | 0xfe85 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 29, 2024 14:36:35.715224981 CEST | 1.1.1.1 | 192.168.2.4 | 0xb075 | No error (0) | 173.209.33.163 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:38.565936089 CEST | 1.1.1.1 | 192.168.2.4 | 0x1715 | No error (0) | 173.209.33.163 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:46.954938889 CEST | 1.1.1.1 | 192.168.2.4 | 0x6ff0 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:46.954938889 CEST | 1.1.1.1 | 192.168.2.4 | 0x6ff0 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:48.641693115 CEST | 1.1.1.1 | 192.168.2.4 | 0xc00d | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 14:36:48.641693115 CEST | 1.1.1.1 | 192.168.2.4 | 0xc00d | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:01.688138962 CEST | 1.1.1.1 | 192.168.2.4 | 0xff6f | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:01.688138962 CEST | 1.1.1.1 | 192.168.2.4 | 0xff6f | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:25.846982956 CEST | 1.1.1.1 | 192.168.2.4 | 0xa8bd | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:25.846982956 CEST | 1.1.1.1 | 192.168.2.4 | 0xa8bd | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:46.097157955 CEST | 1.1.1.1 | 192.168.2.4 | 0x22a9 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 29, 2024 14:37:46.097157955 CEST | 1.1.1.1 | 192.168.2.4 | 0x22a9 | No error (0) | 192.229.221.95 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49737 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:36 UTC | 667 | OUT | |
2024-09-29 12:36:36 UTC | 334 | IN | |
2024-09-29 12:36:36 UTC | 1034 | IN | |
2024-09-29 12:36:36 UTC | 342 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49738 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:36 UTC | 582 | OUT | |
2024-09-29 12:36:36 UTC | 465 | IN | |
2024-09-29 12:36:36 UTC | 903 | IN | |
2024-09-29 12:36:36 UTC | 2659 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49742 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:36 UTC | 566 | OUT | |
2024-09-29 12:36:37 UTC | 393 | IN | |
2024-09-29 12:36:37 UTC | 975 | IN | |
2024-09-29 12:36:37 UTC | 6731 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49741 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:36 UTC | 573 | OUT | |
2024-09-29 12:36:37 UTC | 392 | IN | |
2024-09-29 12:36:37 UTC | 682 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49740 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:36 UTC | 632 | OUT | |
2024-09-29 12:36:37 UTC | 469 | IN | |
2024-09-29 12:36:37 UTC | 591 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49743 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:38 UTC | 604 | OUT | |
2024-09-29 12:36:38 UTC | 435 | IN | |
2024-09-29 12:36:38 UTC | 933 | IN | |
2024-09-29 12:36:38 UTC | 318 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49748 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:39 UTC | 381 | OUT | |
2024-09-29 12:36:39 UTC | 393 | IN | |
2024-09-29 12:36:39 UTC | 975 | IN | |
2024-09-29 12:36:39 UTC | 6731 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49747 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:39 UTC | 388 | OUT | |
2024-09-29 12:36:39 UTC | 392 | IN | |
2024-09-29 12:36:39 UTC | 682 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49746 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:39 UTC | 387 | OUT | |
2024-09-29 12:36:39 UTC | 469 | IN | |
2024-09-29 12:36:39 UTC | 591 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49745 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:39 UTC | 161 | OUT | |
2024-09-29 12:36:39 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49749 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:41 UTC | 239 | OUT | |
2024-09-29 12:36:41 UTC | 515 | IN | |
2024-09-29 12:36:41 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49754 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:48 UTC | 650 | OUT | |
2024-09-29 12:36:48 UTC | 334 | IN | |
2024-09-29 12:36:48 UTC | 1034 | IN | |
2024-09-29 12:36:48 UTC | 342 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49753 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:51 UTC | 655 | OUT | |
2024-09-29 12:36:51 UTC | 435 | IN | |
2024-09-29 12:36:51 UTC | 933 | IN | |
2024-09-29 12:36:51 UTC | 309 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49758 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:53 UTC | 650 | OUT | |
2024-09-29 12:36:53 UTC | 334 | IN | |
2024-09-29 12:36:53 UTC | 1034 | IN | |
2024-09-29 12:36:53 UTC | 343 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49759 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:36:55 UTC | 650 | OUT | |
2024-09-29 12:36:55 UTC | 334 | IN | |
2024-09-29 12:36:55 UTC | 1034 | IN | |
2024-09-29 12:36:55 UTC | 342 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.4 | 49760 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:37:05 UTC | 650 | OUT | |
2024-09-29 12:37:05 UTC | 334 | IN | |
2024-09-29 12:37:05 UTC | 1034 | IN | |
2024-09-29 12:37:05 UTC | 343 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.4 | 49761 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:37:07 UTC | 650 | OUT | |
2024-09-29 12:37:08 UTC | 334 | IN | |
2024-09-29 12:37:08 UTC | 1034 | IN | |
2024-09-29 12:37:08 UTC | 342 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.4 | 49762 | 173.209.33.163 | 443 | 2836 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-29 12:37:17 UTC | 650 | OUT | |
2024-09-29 12:37:17 UTC | 334 | IN | |
2024-09-29 12:37:17 UTC | 1034 | IN | |
2024-09-29 12:37:17 UTC | 343 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 08:36:27 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 08:36:29 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 08:36:34 |
Start date: | 29/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |