Windows
Analysis Report
https://content.app-us1.com/5zbe53/2024/09/30/90541351-e055-464e-9744-a165b8efcbb7.pdf
Overview
General Information
Detection
Score: | 21 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 1908 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 416 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2408 --fi eld-trial- handle=222 8,i,319041 6631717764 35,1618420 2748421723 685,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- chrome.exe (PID: 3852 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://conte nt.app-us1 .com/5zbe5 3/2024/09/ 30/9054135 1-e055-464 e-9744-a16 5b8efcbb7. pdf" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- Acrobat.exe (PID: 1512 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\Acrobat .exe" "C:\ Users\user \Downloads \downloade d.pdf" MD5: 24EAD1C46A47022347DC0F05F6EFBB8C) - AcroCEF.exe (PID: 6244 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\acrocef _1\AcroCEF .exe" --ba ckgroundco lor=167772 15 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE) - AcroCEF.exe (PID: 3264 cmdline:
"C:\Progra m Files\Ad obe\Acroba t DC\Acrob at\acrocef _1\AcroCEF .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --log-seve rity=disab le --user- agent-prod uct="Reade rServices/ 23.6.20320 Chrome/10 5.0.0.0" - -lang=en-U S --user-d ata-dir="C :\Users\us er\AppData \Local\CEF \User Data " --log-fi le="C:\Pro gram Files \Adobe\Acr obat DC\Ac robat\acro cef_1\debu g.log" --m ojo-platfo rm-channel -handle=20 96 --field -trial-han dle=1572,i ,151614980 9807810421 4,11881614 9331597546 23,131072 --disable- features=B ackForward Cache,Calc ulateNativ eWinOcclus ion,WinUse BrowserSpe llChecker /prefetch: 8 MD5: 9B38E8E8B6DD9622D24B53E095C5D9BE)
- chrome.exe (PID: 4196 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "https ://ebvq.pr enticeu.co m/SAFlSIeE CgRZt_tUKX hAOQHYyqb5 e4/" MD5: 5BBFA6CBDF4C254EB368D534F9E23C92) - chrome.exe (PID: 3420 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2396 --fi eld-trial- handle=228 0,i,251345 0487053188 419,161663 0016891420 058,262144 /prefetch :8 MD5: 5BBFA6CBDF4C254EB368D534F9E23C92)
- cleanup
Click to jump to signature section
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Initial sample: | ||
Source: | Initial sample: |
Source: | File created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | File opened: | Jump to behavior |
Source: | Window detected: |
Persistence and Installation Behavior |
---|
Source: | LLM: |
Source: | File created: | |||
Source: | File created: | Jump to dropped file |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | 1 Spearphishing Link | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 11 Masquerading | OS Credential Dumping | 1 System Information Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
1% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Virustotal | Browse | ||
1% | Virustotal | Browse | ||
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
ebvq.prenticeu.com | 188.114.96.3 | true | false | unknown | |
content.app-us1.com | 104.17.31.174 | true | false |
| unknown |
www.google.com | 142.250.185.100 | true | false |
| unknown |
x1.i.lencr.org | unknown | unknown | false |
| unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | unknown | ||
true | unknown | ||
false | unknown | ||
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.185.100 | www.google.com | United States | 15169 | GOOGLEUS | false | |
23.41.168.139 | unknown | United States | 6461 | ZAYO-6461US | false | |
142.250.184.228 | unknown | United States | 15169 | GOOGLEUS | false | |
142.250.184.196 | unknown | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
188.114.96.3 | ebvq.prenticeu.com | European Union | 13335 | CLOUDFLARENETUS | false | |
104.17.31.174 | content.app-us1.com | United States | 13335 | CLOUDFLARENETUS | false |
IP |
---|
192.168.2.6 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1522593 |
Start date and time: | 2024-09-30 12:20:02 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 6m 37s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://content.app-us1.com/5zbe53/2024/09/30/90541351-e055-464e-9744-a165b8efcbb7.pdf |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 18 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | SUS |
Classification: | sus21.win@69/56@13/8 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.186.163, 142.250.185.174, 64.233.167.84, 34.104.35.123, 192.229.221.95, 199.232.210.172, 172.217.18.99, 2.19.244.159, 23.22.254.206, 52.202.204.11, 54.227.187.23, 52.5.13.197, 162.159.61.3, 172.64.41.3, 2.19.126.149, 2.19.126.143, 2.23.197.184, 172.217.18.3, 142.251.168.84, 142.250.185.78, 142.250.185.234, 172.217.18.10, 142.250.186.74, 142.250.186.42, 142.250.185.138, 142.250.184.234, 216.58.206.74, 142.250.185.170, 142.250.185.106, 172.217.16.202, 142.250.184.202, 216.58.212.170, 216.58.206.42, 142.250.185.202, 142.250.186.170, 142.250.181.234, 142.250.186.106, 216.58.212.138, 142.250.185.74, 142.250.186.138, 172.217.18.106, 216.58.212.131, 142.250.186.174
- Excluded domains from analysis (whitelisted): e4578.dscg.akamaiedge.net, chrome.cloudflare-dns.com, chromewebstore.googleapis.com, e8652.dscx.akamaiedge.net, slscr.update.microsoft.com, clientservices.googleapis.com, acroipm2.adobe.com, clients2.google.com, ocsp.digicert.com, ssl-delivery.adobe.com.edgekey.net, a122.dscd.akamai.net, update.googleapis.com, crl.root-x1.letsencrypt.org.edgekey.net, optimizationguide-pa.googleapis.com, clients1.google.com, client.wns.windows.com, fs.microsoft.com, accounts.google.com, acroipm2.adobe.com.edgesuite.net, ctldl.windowsupdate.com, p13n.adobe.io, fe3cr.delivery.mp.microsoft.com, edgedl.me.gvt1.com, clients.l.google.com, geo2.adobe.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
Time | Type | Description |
---|---|---|
06:22:27 | API Interceptor |
Input | Output |
---|---|
URL: https://content.app-us1.com/5zbe53/2024/09/30/90541351-e055-464e-9744-a165b8efcbb7.pdf Model: jbxai | { "brand":["Arendal Boligbyggelag", "Adobe"], "contains_trigger_text":true, "trigger_text":"Se vedlaqte faktura # 4484747.", "prominent_button_name":"PDF", "text_input_field_labels":["Se vedlaqte faktura # 4484747."], "pdf_icon_visible":true, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: file:///C:/Users/user/Downloads/downloaded.pdf Model: jbxai | { "brand":["Arendal Boligbyggelag", "Adobe"], "contains_trigger_text":true, "trigger_text":"Se vedlaqte faktura # 4484747.", "prominent_button_name":"Find your downloads here", "text_input_field_labels":["Hilsen.", "Per Erik Hansen"], "pdf_icon_visible":true, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: https://ebvq.prenticeu.com/SAFlSIeECgRZt_tUKXhAOQHYyqb5e4/ Model: jbxai | { "brand":[], "contains_trigger_text":false, "trigger_text":"", "prominent_button_name":"unknown", "text_input_field_labels":"unknown", "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
URL: file:///C:/Users/user/Downloads/downloaded.pdf Model: jbxai | { "brand":["Arendal Boligbyggelag", "Adobe"], "contains_trigger_text":true, "trigger_text":"Vennligst finn vedlagte faktura fra Arendal Boligbyggelag. Last ned fakturaen din s. snart som mulig.", "prominent_button_name":"PDF", "text_input_field_labels":"unknown", "pdf_icon_visible":true, "has_visible_captcha":false, "has_urgent_text":true, "has_visible_qrcode":false} |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 295 |
Entropy (8bit): | 5.227446151343486 |
Encrypted: | false |
SSDEEP: | 6:PI1nq2PN72nKuAl9OmbnIFUt82Iz69Zmw+2I1FkwON72nKuAl9OmbjLJ:PQnvVaHAahFUt82N9/+2s5OaHAaSJ |
MD5: | 34489C458E27DE8E36DAAF8192107FCA |
SHA1: | 83AE21347486CC24A6761ECF058424A7DEB14699 |
SHA-256: | BDC7119BB75F9C0B366E97A17DDC95A65D2C5DBC6C81C706BBB1C0ECB17DB5E2 |
SHA-512: | 01191DD47315F7998BF849A3D89B13CA450EBF558B01C693E477D79539C5B221FEBF46CE1F93BCCFC787F51C54665DC9B3287AE332039F9EE4CB7DB78BB1BFD7 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 295 |
Entropy (8bit): | 5.227446151343486 |
Encrypted: | false |
SSDEEP: | 6:PI1nq2PN72nKuAl9OmbnIFUt82Iz69Zmw+2I1FkwON72nKuAl9OmbjLJ:PQnvVaHAahFUt82N9/+2s5OaHAaSJ |
MD5: | 34489C458E27DE8E36DAAF8192107FCA |
SHA1: | 83AE21347486CC24A6761ECF058424A7DEB14699 |
SHA-256: | BDC7119BB75F9C0B366E97A17DDC95A65D2C5DBC6C81C706BBB1C0ECB17DB5E2 |
SHA-512: | 01191DD47315F7998BF849A3D89B13CA450EBF558B01C693E477D79539C5B221FEBF46CE1F93BCCFC787F51C54665DC9B3287AE332039F9EE4CB7DB78BB1BFD7 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 339 |
Entropy (8bit): | 5.175261113415888 |
Encrypted: | false |
SSDEEP: | 6:PIJbmsN9+q2PN72nKuAl9Ombzo2jMGIFUt82IJwdXZmw+2IJwd3VkwON72nKuAlx:PKbD4vVaHAa8uFUt82Kw5/+2KwT5OaHA |
MD5: | 904A19F330E51979045E8DA0E33CD93A |
SHA1: | C1101D9D0C8B5FFECE4E1EA113A3945EB67767D8 |
SHA-256: | EEB53FB1795F0FCDCA78D378FF58C726E8C23C77EFDB0F8F5422EDBF1F8038A1 |
SHA-512: | 8CDCD5B7F574D70862242E5069B216C82B4DF5634D190DB1F6F109C9024502F9A37EDE10A57B8F052A0BEA057C5D42BA888A05F962B15DB87CF57CF108CB866B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Local Storage\leveldb\LOG.old (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 339 |
Entropy (8bit): | 5.175261113415888 |
Encrypted: | false |
SSDEEP: | 6:PIJbmsN9+q2PN72nKuAl9Ombzo2jMGIFUt82IJwdXZmw+2IJwd3VkwON72nKuAlx:PKbD4vVaHAa8uFUt82Kw5/+2KwT5OaHA |
MD5: | 904A19F330E51979045E8DA0E33CD93A |
SHA1: | C1101D9D0C8B5FFECE4E1EA113A3945EB67767D8 |
SHA-256: | EEB53FB1795F0FCDCA78D378FF58C726E8C23C77EFDB0F8F5422EDBF1F8038A1 |
SHA-512: | 8CDCD5B7F574D70862242E5069B216C82B4DF5634D190DB1F6F109C9024502F9A37EDE10A57B8F052A0BEA057C5D42BA888A05F962B15DB87CF57CF108CB866B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\8da833f9-4854-47fa-91a1-b1da3c809b39.tmp
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | modified |
Size (bytes): | 475 |
Entropy (8bit): | 4.965604377944479 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sq2BsBdOg2HVOgcaq3QYiubcP7E4T3y:Y2sRdsydMHVOL3QYhbA7nby |
MD5: | 37C5772ACA15E083BAE27E3553C7297A |
SHA1: | 30048BEB0CB86347CE47602DAE9D222F64D3F0B3 |
SHA-256: | 56A72F834139DB730D5A82B591FC279816789B117DF6F79AA66CAC0D7A8E4C0C |
SHA-512: | D4F0F5D42F5B6EC4E56170C107B238803832B06CE687ED54F6AE3FE5B14FFE8B379E3F0651AC7E05BFC9A584194846472F2A42C9634BD75B456E36787C2E3FEF |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Network\Network Persistent State (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 475 |
Entropy (8bit): | 4.965604377944479 |
Encrypted: | false |
SSDEEP: | 12:YH/um3RA8sq2BsBdOg2HVOgcaq3QYiubcP7E4T3y:Y2sRdsydMHVOL3QYhbA7nby |
MD5: | 37C5772ACA15E083BAE27E3553C7297A |
SHA1: | 30048BEB0CB86347CE47602DAE9D222F64D3F0B3 |
SHA-256: | 56A72F834139DB730D5A82B591FC279816789B117DF6F79AA66CAC0D7A8E4C0C |
SHA-512: | D4F0F5D42F5B6EC4E56170C107B238803832B06CE687ED54F6AE3FE5B14FFE8B379E3F0651AC7E05BFC9A584194846472F2A42C9634BD75B456E36787C2E3FEF |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\000003.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5859 |
Entropy (8bit): | 5.248888182315563 |
Encrypted: | false |
SSDEEP: | 96:av+Nkkl+2GAouz3z3xfNLUS3vHp5OuDzUrMzh28qXAXFP74LRXOtW7ANwE7svte8:av+Nkkl+2G1uz3zhfZUyPp5OuDzUwzh2 |
MD5: | D1E9CE2CAE12CE529A5810908080B438 |
SHA1: | B88558DEB64D3BAC1BE649225C2BE6B24D473E59 |
SHA-256: | D6F8B2133858EEE137E385834D0E8A195A638D5DD804EFC6077D0393375981C2 |
SHA-512: | E0915153F1110C15DDC3A25616D52091EEFFA8763B6C4F5B7E34C503A211121A8BADDF6515092EECD1AC27A7D950DDF8C4067AD6EC7DECDDCF292954695C4CB0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 327 |
Entropy (8bit): | 5.202831109052336 |
Encrypted: | false |
SSDEEP: | 6:PIJEt+q2PN72nKuAl9OmbzNMxIFUt82IJl1JZmw+2IJDVkwON72nKuAl9OmbzNMT:PKEovVaHAa8jFUt82Kl/+2KJ5OaHAa8E |
MD5: | 99D2BCE2BB1D11C3D6DE4359AC096BE2 |
SHA1: | 53AFD52957974F1D4899ECEEA5A5705CD2CC7BA4 |
SHA-256: | EE958EC55EE2B787A91D56489735760F970F1A1F11FB72C334E074F2F4779D4A |
SHA-512: | ECC16FE98A152AE9F6DC58100EA4DD2C16C903A39F4C0F7EA9177D0135EE793333A7BFF23E44D0C919CEB4AACBF6BE4158311DE4E3FC11574D41C58B01341DB4 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\AcroCef\DC\Acrobat\Cache\Session Storage\LOG.old (copy)
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 327 |
Entropy (8bit): | 5.202831109052336 |
Encrypted: | false |
SSDEEP: | 6:PIJEt+q2PN72nKuAl9OmbzNMxIFUt82IJl1JZmw+2IJDVkwON72nKuAl9OmbzNMT:PKEovVaHAa8jFUt82Kl/+2KJ5OaHAa8E |
MD5: | 99D2BCE2BB1D11C3D6DE4359AC096BE2 |
SHA1: | 53AFD52957974F1D4899ECEEA5A5705CD2CC7BA4 |
SHA-256: | EE958EC55EE2B787A91D56489735760F970F1A1F11FB72C334E074F2F4779D4A |
SHA-512: | ECC16FE98A152AE9F6DC58100EA4DD2C16C903A39F4C0F7EA9177D0135EE793333A7BFF23E44D0C919CEB4AACBF6BE4158311DE4E3FC11574D41C58B01341DB4 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Adobe\Acrobat\DC\ConnectorIcons\icon-240930102219Z-181.bmp
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 71190 |
Entropy (8bit): | 1.1372992755163 |
Encrypted: | false |
SSDEEP: | 192:8IDykGVQtC3Y50DXuy0S8pTHe2de5LOw3b8x6zi2:8IDykxtCJ8pTHeie573bZv |
MD5: | BCB2C22444DFCBE334321287EC4B2A51 |
SHA1: | FD6E55355FC7E8960E9CC2C6959CD8DCD01C5342 |
SHA-256: | 0CDE474E7D9D478FC07309029453821E1086B85F94A7D62B6EE30EB7C3664B72 |
SHA-512: | 21DAA8723BF8FD0FDB269484BBCAD867694BDB84445E36F43BC8748A58774339CEAA42D51C2F7B39BFB44EE08CBA7C99B3E6021AEDDC947F6055BBE2852149A9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 86016 |
Entropy (8bit): | 4.444819831331888 |
Encrypted: | false |
SSDEEP: | 384:ye6ci5txiBA7aDQPsknQ0UNCFOa14ocOUw6zyFzqFkdZ+EUTTcdUZ5yDQhJL:mCs3OazzU89UTTgUL |
MD5: | A1A4458BF22074CEB97A4CB438FF8753 |
SHA1: | 943467F91819671A9316BD5FAE13D6E0EDE5F067 |
SHA-256: | 5F27197702988C338F3008EBE0B423038FCD5648A6678743DBF9C59FE7697C02 |
SHA-512: | 9A94BD8174EA16DC667AFB3F4B54BB31F65E5FDD04995334E2DD7352779FDFC5330E5DB71D4B111688ACFC9DF374F87144FA1887272C46533124F6C073F08C3A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | modified |
Size (bytes): | 8720 |
Entropy (8bit): | 3.766549860355196 |
Encrypted: | false |
SSDEEP: | 48:7MrJioyV+ioyQoy1C7oy16oy18KOioy1noy1AYoy1Wioy1oioykioyBoy1noy1Om:70Ju+M3XjBi8b9IVXEBodRBkY |
MD5: | AB9DE273B5D9A61789B9C03903569FCB |
SHA1: | C1A1F3484E4DB6A550261AAB1EEF03A2DEDFFF74 |
SHA-256: | 98EE5916EC33CF98CFE8C4423C003B7CA926B56B9D7163153D6C9178511B9961 |
SHA-512: | 9EE622E662E35F44A7058DC9475F344C669CDCCA4D084530CAE1DB55394451F4AC82ABEFA30C1C7F7768A90C4853E902B1F6D20C72F476BEA700ED3206C076A9 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2D85F72862B55C4EADD9E66E06947F3D
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1391 |
Entropy (8bit): | 7.705940075877404 |
Encrypted: | false |
SSDEEP: | 24:ooVdTH2NMU+I3E0Ulcrgdaf3sWrATrnkC4EmCUkmGMkfQo1fSZotWzD1:ooVguI3Kcx8WIzNeCUkJMmSuMX1 |
MD5: | 0CD2F9E0DA1773E9ED864DA5E370E74E |
SHA1: | CABD2A79A1076A31F21D253635CB039D4329A5E8 |
SHA-256: | 96BCEC06264976F37460779ACF28C5A7CFE8A3C0AAE11A8FFCEE05C0BDDF08C6 |
SHA-512: | 3B40F27E828323F5B91F8909883A78A21C86551761F27B38029FAAEC14AF5B7AA96FB9F9CC93EE201B5EB1D0FEF17B290747E8B839D2E49A8F36C5EBF3C7C910 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2D85F72862B55C4EADD9E66E06947F3D
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 192 |
Entropy (8bit): | 2.7529698674325394 |
Encrypted: | false |
SSDEEP: | 3:kkFklZ4XaVXfllXlE/HT8k66zvNNX8RolJuRdxLlGB9lQRYwpDdt:kKdXnT8WpNMa8RdWBwRd |
MD5: | 04DCF6EEEEB449F3BB344C2F91425D90 |
SHA1: | D2B8E25A1B5C0EE1AEA18E18845C88B1ECAAA568 |
SHA-256: | 5BA14054EA08AF4F68C58F9FBA737357DBF81D1E0C035F63A72F42C2F78145A8 |
SHA-512: | 450BFDA41B37F37A10405FFA1D558D3A856A0A27070BF6568E91F01EF5B33144A42E64891022D423742F033ADA6FDD9E280969259F235EC0A28D0CD5F6626B7D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 185099 |
Entropy (8bit): | 5.182478651346149 |
Encrypted: | false |
SSDEEP: | 1536:JsVoWFMWQNk1KUQII5J5lZRT95tFiQibVJDS+Stu/3IVQBrp3Mv9df0CXLhNHqTM:bViyFXE07ZmandGCyN2mM7IgOP0gC |
MD5: | 94185C5850C26B3C6FC24ABC385CDA58 |
SHA1: | 42F042285037B0C35BC4226D387F88C770AB5CAA |
SHA-256: | 1D9979A98F7C4B3073BC03EE9D974CCE9FE265A1E2F8E9EE26A4A5528419E808 |
SHA-512: | 652657C00DD6AED1A132E1DFD0B97B8DF233CDC257DA8F75AC9F2428F2F7715186EA8B3B24F8350D409CC3D49AFDD36E904B077E28B4AD3E4D08B4DBD5714344 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 227002 |
Entropy (8bit): | 3.392780893644728 |
Encrypted: | false |
SSDEEP: | 1536:qKPC4iyzDtrh1cK3XEivK7VK/3AYvYwgF/rRoL+sn:XPCaJ/3AYvYwglFoL+sn |
MD5: | 265E3E1166312A864FB63291EA661C6A |
SHA1: | 80DFF3187FF929596EB22E1DB9021BAD6F97178C |
SHA-256: | C13E08B1887A4E44DC39609D7234E8D732A6BC11313B55D6F4ECFB060CD87728 |
SHA-512: | 48776A2BFE8F25E5601DCC0137F7AB103D5684517334B806E3ACF61683DD9B283828475FC85CE0CBE4E8AF88E6F8B25EED0A77640E2CFFF2CC73708726519AFA |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\ACROBAT_READER_MASTER_SURFACEID
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 295 |
Entropy (8bit): | 5.330761914069514 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJM3g98kUwPeUkwRe9:YvXKXpFHvcTGMbLUkee9 |
MD5: | 68D1BE55617393195854B36C7156F8FB |
SHA1: | 89517C7EFA0E5AC042C83F8313E3D23AB2DA8F71 |
SHA-256: | B764A748A7EB089803C84CBD136CAEB4E5F4E161DC182DF764F1908ED99605CC |
SHA-512: | C0A5D51CD2657A0A7BEA77A1627EC21B1D309CE60622027B001A06293137E88287FCFDA9FC5E46715453DDBA287DC3F106F5E920227711F908815F511524F075 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Home_View_Surface
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.2827334769482155 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfBoTfXpnrPeUkwRe9:YvXKXpFHvcTGWTfXcUkee9 |
MD5: | 5C79DF8E4CFB1669A30D7F3BAB8CFF10 |
SHA1: | 818986F8DEB58127CA9264F25527A16C23598231 |
SHA-256: | 1DE75C1A1D45EEEE5EF2072740B07B6BE7419DF1393D7BC3BAF02FE42D8B1014 |
SHA-512: | 4FC2C11BC964C754739E75B42EA18D66D63AFC1F700ED07A1B07C4123A2603A5920CCD4823DA8635586C456F27EDA4AEDAF750855A51C53AC7E9FBEFBA761BE6 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_FirstMile_Right_Sec_Surface
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 294 |
Entropy (8bit): | 5.261728512343291 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfBD2G6UpnrPeUkwRe9:YvXKXpFHvcTGR22cUkee9 |
MD5: | 877E357080C3A690A7000C69F2A4C99A |
SHA1: | 0EFB40785B80803332D697ACB0BDE159DB157147 |
SHA-256: | 205FB7B88A81814E7F7FD06EEF746D6DCA0B523B03FC6DBFB5FAD92CCFC4759F |
SHA-512: | 1605904FEB841C7F7152AF6FAB3BF7E22D6B2156D7CDC465EB1C85EADD385E70E8CE627D3B72B76AC61D5EBCA1E16D7F49C9FA17F03C2C9606B451E482FAB17F |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_READER_LAUNCH_CARD
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 285 |
Entropy (8bit): | 5.309640578426515 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfPmwrPeUkwRe9:YvXKXpFHvcTGH56Ukee9 |
MD5: | CC11907A2DB7957D0CBBCF1F4D2C3AB8 |
SHA1: | 58FEE97385A36BDAD201624FFADEFEF883798060 |
SHA-256: | 31748F3F24B00DCC6A96C0592EA35D6909EC44240368806ED602F3C49B95457A |
SHA-512: | B91E9873884503194E636B7C1F2F7725C971C6E96EE75D047684C01DD857223CFE01F40C0BFBE525BC031455BEE1D201352F90D4152FD1C73591E981DCB8C1FD |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Convert_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1063 |
Entropy (8bit): | 5.6618250630895925 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF0IpLgEFqciGennl0RCmK8czOCY4w2Z:YvWzhgLtaAh8cvYv2 |
MD5: | EE6DEB455473DD8B8F84FBB0D9467E3C |
SHA1: | 80CC51ED27E7864AAA570716BD28A6DA5E2EFB43 |
SHA-256: | 4383DE9D986677B9BCD9A5A6D02720982D9F256865D7026082A5B0E02F2AF648 |
SHA-512: | 7C215AC86EC4C9D87427CCE8B7013066386F5232EE67FEA0164D72C505D829A9587F55046F3CAD344249E9E67C2F8E9860873D577D3D47AE9A91CED64488B9C0 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1050 |
Entropy (8bit): | 5.6481574376163195 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF0aVLgEF0c7sbnl0RCmK8czOCYHflEpwiVZ:YvWvFg6sGAh8cvYHWpwk |
MD5: | CA4843734269EBD615EA5C22B903B4AB |
SHA1: | F20857390011794A13DBD6A4C2D07466CE2E11A8 |
SHA-256: | 46A36D4A3A46E9644493FF92EAC388899CFD803888CFB56BB5C3D05C466721E6 |
SHA-512: | F69A4D24E12FD2E70EF2FDE422C081C63ECF38AC91AF7F01E11D569E1251241F92C565F1FB8888A4DBE72DDBB1380D3418899C40AF10C0911FD0B593EECD47AB |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Disc_LHP_Retention
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 292 |
Entropy (8bit): | 5.261537557164223 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfQ1rPeUkwRe9:YvXKXpFHvcTGY16Ukee9 |
MD5: | ED6324E53D26062A0C1B84B184C5A619 |
SHA1: | A7FB3E2CC4F55F2353C66FD1B4B9C88131ED7BC4 |
SHA-256: | 3189E5F7D7D7E550CDEB7D74427163D891580EB8E00428344E0BA2DA91892B3C |
SHA-512: | 6EF3C56FF165230AABACCA3229647EA876299349AC2F384E92D89C3BA328F3F9A6220A6A2C53E713D36AAFC609E5DA6181CBD0A8807AD0CA3840E1DFDDC00881 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Edit_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1038 |
Entropy (8bit): | 5.641056195989887 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF0H2LgEF7cciAXs0nl0RCmK8czOCAPtciBZ:YvW+ogc8hAh8cvAX |
MD5: | A09C4401BC3B0AF7D0A55F36BDCABD5C |
SHA1: | 6D4B50A432DC902B1C6FD2A8B79E9FED388ECBED |
SHA-256: | 2BDD68BA4AC6A7591103DA547D5C4C542E5086702A46BA78790CFF8105BCC6FA |
SHA-512: | 9FF42F07ACC4040BFCB8727EF64B11505471053D92AF9229B0878D5D559CA63D13728EF2ECC57586C7772EDACF233C74B2A226503ACD56098DE2E56CB8D6DE36 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Home_LHP_Trial_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1164 |
Entropy (8bit): | 5.694060561251338 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF0rKLgEfIcZVSkpsn264rS514ZjBrwloJTmcVIsrSK5Z:YvWyEgqprtrS5OZjSlwTmAfSKr |
MD5: | 3AEE0075093576A7F76FDAE749F948A8 |
SHA1: | F6B7148E9C6700B5489F490A4A4742D8DE54A0FE |
SHA-256: | 5928AB83BE93A12BB9393AA4F7DD09955665B936742EF4383FB63439BFCADB90 |
SHA-512: | E76209849DD275079135F22BB1F916C1EB45F01ED20ACB3A76BE3A5802FBB21B1BA840011A0368059BBD3C195E491B929A5F6E874DF3F3FBAB9665E3BA9E4132 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_More_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 289 |
Entropy (8bit): | 5.264346746122827 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfYdPeUkwRe9:YvXKXpFHvcTGg8Ukee9 |
MD5: | AE23CA359FBAE7854D8AD8EAC20798AE |
SHA1: | 78150092ED2413670B0081CA50F9AAEC1F8F4E35 |
SHA-256: | DC90F074564C38696285E737E773EE9CA0AE020EDFC0572F171E437DFE1F45E1 |
SHA-512: | 2C87340D58C80F6B5CB5E25F0B265378DF66CC45EABA8FF2C0E07587DDF4F120A6634BDBD621AC01E567A325EF51F6DB3897D481A6856CD4A423FED0472B2753 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1395 |
Entropy (8bit): | 5.768634445145762 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF0WrLgEGOc93W2JeFmaR7CQzttgBcu141CjrWpHfRzVCV9FJNR:YvWxHgDv3W2aYQfgB5OUupHrQ9FJr |
MD5: | F462A9A9A69520493E31E2C1DE8E08E4 |
SHA1: | 416391360FEC275E17CA2C887D7BF13AB1F8AAD6 |
SHA-256: | F8152034269098BACBC538ACECDA7D674DADE996BED01B165DC02902A5FC321F |
SHA-512: | A18F291A4662C37441D753F1FE7B17B3EF7ACC04523B20941E6DF5DCDBFC0482EC9146C492EF1122AE3AE669EFBDCF5ED00DCBC0E6D70C8679D0908FDDD4F2FA |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Intent_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 291 |
Entropy (8bit): | 5.248138883342238 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfbPtdPeUkwRe9:YvXKXpFHvcTGDV8Ukee9 |
MD5: | 9CC976A0783B80773C5BB5ADF9CC69BA |
SHA1: | B2DACBD2C642462AEE6094B215E52F6E3AD14A40 |
SHA-256: | 6059F8E344DB7289E80DAE60E47E189F0561E2853AA6E141D88D6E7514DAD593 |
SHA-512: | A5E969C167C6F6A65256EAA0FF632D83C8797176095628B2F1D209287EB3798C9D50C35A471009EE6C53B42FC946E525CFDB4E2E36519F1B04E40A15B9098FC4 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_RHP_Retention
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 287 |
Entropy (8bit): | 5.252118122896318 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJf21rPeUkwRe9:YvXKXpFHvcTG+16Ukee9 |
MD5: | C10854879A98386044A5431D2FC25B70 |
SHA1: | BFDE7ED577B628EB845BA7C01CE9CF6D9C7401E4 |
SHA-256: | DABB8AFAA0AD2AB498B94E132B7E76DCFD6BFA6B20AD6CAFD215ED2362150AB9 |
SHA-512: | 3712ADD408086DBBEA2F30D509EA85CC3562398C77E18B29DA2B0FACF2943B0014926A3D9593E606D96B2975ECAC4946EDF5FB728498E01B86AA16856A14F082 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Sign_LHP_Banner
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1058 |
Entropy (8bit): | 5.650342298473888 |
Encrypted: | false |
SSDEEP: | 24:Yv6XpF08amXayLgEFRcONaqnl0RCmK8czOC+w2E+tg8BZ:YvWzBguOAh8cv+NKe |
MD5: | E00C22D1A399191E9FFD619231184162 |
SHA1: | 4240559D307276A2B0F341464BDFE18ED3D4C3AF |
SHA-256: | CB89186FA19C89027E578273FD156024C64B034FCFC12F7E6CCDD57D4B4BED3B |
SHA-512: | D38F1F3CB5195458A15E66033AEAEE69C890316E96D6B9641A1628222A26E0093C0B241A65F4E0F564FD2DFE89F9FF6D953FA2690D15AE4A15053D9C89699728 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Adobe\Acrobat\DC\SOPHIA\Acrobat\Files\DC_Reader_Upsell_Cards
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 286 |
Entropy (8bit): | 5.227812657232912 |
Encrypted: | false |
SSDEEP: | 6:YEQXJ2HXpFHnvnZiQ0Y0FFYoAvJfshHHrPeUkwRe9:YvXKXpFHvcTGUUUkee9 |
MD5: | F3540CBCCC5646D3D4E045FE2CB9974E |
SHA1: | 3A8703AFBA7CF47A5BE0200CF0CE495B11E2F3E7 |
SHA-256: | 105B77025A66A17F9417B770DBE634CEA95B08EA4815E3EF69DF8F13D2427C06 |
SHA-512: | 31094CC8EACF549B3D701DA43BA08556A4CFF929CBEBB3BDDD60FA7DC8ACEB4D0769B9D8AFA73F89CA037142690B52DEA37F9E07FC79D579C539EFD9F66073E0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 782 |
Entropy (8bit): | 5.345620044979313 |
Encrypted: | false |
SSDEEP: | 12:YvXKXpFHvcTGTq16Ukee1+3CEJ1KXd15kcyKMQo7P70c0WM6ZB/uhWN:Yv6XpF0j168CgEXX5kcIfANhk |
MD5: | B3235350BA14107DBBD6A76F5FB3A7D6 |
SHA1: | 55ABC02791B3FAB4A182E3EB244FCD7315DC3AA7 |
SHA-256: | 9295B3BBD271B5441CC1A22695E76BD3B7224D76FF3708136E02B235B0E08E8C |
SHA-512: | 6170464AB36BC287E3C05EAB526C9B0C81EA5AA2E1F893497C7B37BC2DE89E13B101348AC5F09F7C9751615631F29582E6C206C44D7EF89AC92E88BC0A2F9EE8 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4 |
Entropy (8bit): | 0.8112781244591328 |
Encrypted: | false |
SSDEEP: | 3:e:e |
MD5: | DC84B0D741E5BEAE8070013ADDCC8C28 |
SHA1: | 802F4A6A20CBF157AAF6C4E07E4301578D5936A2 |
SHA-256: | 81FF65EFC4487853BDB4625559E69AB44F19E0F5EFBD6D5B2AF5E3AB267C8E06 |
SHA-512: | 65D5F2A173A43ED2089E3934EB48EA02DD9CCE160D539A47D33A616F29554DBD7AF5D62672DA1637E0466333A78AAA023CBD95846A50AC994947DC888AB6AB71 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2818 |
Entropy (8bit): | 5.121743041754868 |
Encrypted: | false |
SSDEEP: | 24:YDcuq1a1sJayDA+sBgCpmo+0kc+2H4ejboj0SeyCC2l2LSIO5DGN51J9HVzuFOG:YDJXgQuyml0kGHfWvVkaOVGNp91m |
MD5: | E9306D2DBFE2266C75983D177E56AB39 |
SHA1: | 8DFABAA0D614907E4946860AE7908CB371649737 |
SHA-256: | 4BD0511C01BDFFB53E20A0F7B88C3B0D515A722BE86ED213CC3B96FD546C12EC |
SHA-512: | 14FA2F3CA2AA2C811FB5CFA088F0083D9C8E267969826583D45CC2705DA742E64F921ED4B679F866A632E6261DBC596AD65768E840330CE43F821C773CF9E42B |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 12288 |
Entropy (8bit): | 1.1462596129453053 |
Encrypted: | false |
SSDEEP: | 24:TLhx/XYKQvGJF7urs8RZXcMRZXcMZgux3Fmu3n9u1oGuDyIX4uDyvuOudIUudcHX:TFl2GL7msOXc+XcGNFlRYIX2v3kX |
MD5: | 9050E0B1EA193202CE67BD7905E809A9 |
SHA1: | 532F89F2730BEE974C8CD87B94A1B6867A35E32E |
SHA-256: | DB5AD3EBB167B0245BF721BE69F5BF5200DD50409ED3D940DCE24BA995BCF2F5 |
SHA-512: | 427CD32DC6EC834DCBB53299A3099218D3F12234467B30E1322D0649F92FD43BA90475216E07E0C22018912F0E1E1BB0B64D9CEE0E734FF651549D999556636C |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8720 |
Entropy (8bit): | 1.5527266027175226 |
Encrypted: | false |
SSDEEP: | 24:7+tJJUXcMRZXcMZgux3Fmu3n9u1oGuDyIX4uDyvuOudIUudcHRuLuxDnqLxx/XYg:7MMXc+XcGNFlRYIX2vGqVl2GL7msl |
MD5: | 56DA3FFB02237A897A302F2FE2AC279A |
SHA1: | 1DC3128D0C4FE25CAEB14017F13B20DD9FE34CFE |
SHA-256: | 7FDA99EBF853C81C573D429D8FD9CA951A733DE6BC11875C6E1E800CB4D7FE03 |
SHA-512: | 6C4337A6158BD8AFF7B9846367A23F7FA0A072FEEA0D15F049A3A1088EEBAB3808512D7F3F28E9FB3D378DBA1D4E7C6B5FB3C816A5FD9DBBDBE62F3F8AF572B4 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 246 |
Entropy (8bit): | 3.5197430193686525 |
Encrypted: | false |
SSDEEP: | 6:Qgl946caEbiQLxuZUQu+lEbYnuoblv2K879CH:Qw946cPbiOxDlbYnuRKI+ |
MD5: | 9D376B8D874B0576DA89E5FB059731FC |
SHA1: | 5D687B27E144D24221D078042403262B4FC2B2CA |
SHA-256: | D39DE47DDB5DA247353762AE8B3999C6F601BD7CBBDF1263A72F0858A09E7FA9 |
SHA-512: | B20BAC8ED442AA171D1B8C7521A6803BA089955D8A7EA117313D93E0C0B6B361F5898CEB4613FEE899ED8C47847F1EC6A336435DDAD117087A9B52DB5F0E5009 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6 2024-09-30 06-22-17-402.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 16525 |
Entropy (8bit): | 5.338264912747007 |
Encrypted: | false |
SSDEEP: | 384:lH4ZASLaTgKoBKkrNdOZTfUY9/B6u6AJ8dbBNrSVNspYiz5LkiTjgjQLhDydAY8s:kIb |
MD5: | 128A51060103D95314048C2F32A15C66 |
SHA1: | EEB64761BE485729CD12BF4FBF7F2A68BA1AD7DB |
SHA-256: | 601388D70DFB723E560FEA6AE08E5FEE8C1A980DF7DF9B6C10E1EC39705D4713 |
SHA-512: | 55099B6F65D6EF41BC0C077BF810A13BA338C503974B4A5F2AA8EB286E1FCF49DF96318B1DA691296FB71AA8F2A2EA1406C4E86F219B40FB837F2E0BF208E677 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Local\Temp\acrobat_sbx\NGL\NGLClient_AcrobatReader123.6.20320.6.log
Download File
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 16603 |
Entropy (8bit): | 5.360251357389485 |
Encrypted: | false |
SSDEEP: | 384:W0om7LSIEeurcFNg+Mh+1DK7r4zgIgUHORHVzX1+ofBnjRs53SwB3e3SbQybsTD8:/8X2 |
MD5: | D437AEBE2186B7FC1DF2AC626A76C6E2 |
SHA1: | 8DE46AC7AF92098E7F24AB528274A4EC969D8D00 |
SHA-256: | F310E7F6E51D91443B7F4D679A9ADC0E8809DCBB63726D54CF2ACB2F3BD90377 |
SHA-512: | C84DEE10B9A025B1154BFE14A633C414B43F0FD2345341504E50CCFF70DA120BDF999351F8C8830DE4C2C5B9F7A98B5EF596B1710C73C117F1E352EDA80FB49A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 29752 |
Entropy (8bit): | 5.404381702940814 |
Encrypted: | false |
SSDEEP: | 192:acb4I3dcbPcbaIO4cbYcbqnIdjcb6acbaIewcbjcbj2IzgecQQAtBcb2u3:V3fOCIdJDeSfzgecQQAtbu3 |
MD5: | F9DBCEA26EAEB3853D7F1DB73C0F5CDC |
SHA1: | 9EF9502FEA03D0077D60A65A677D74C94A3C8F6B |
SHA-256: | EC183CD1543166BBF70000D1A412A908E88746244043CDB5807A132B01D6948D |
SHA-512: | A8583B57F43D8A21D2CEE33EE2C588D4E4409FD4634159568E1B5739C06B4A25376F46831CDF8D8490F79BDA40F9F054B591B80BF69D8B65BD175FB5727F5D85 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 758601 |
Entropy (8bit): | 7.98639316555857 |
Encrypted: | false |
SSDEEP: | 12288:ONh3P65+Tegs6121YSWBlkipdjuv1ybxrr/IxkB1mabFhOXZ/fEa+vTJJJJv+9U0:O3Pjegf121YS8lkipdjMMNB1DofjgJJg |
MD5: | 3A49135134665364308390AC398006F1 |
SHA1: | 28EF4CE5690BF8A9E048AF7D30688120DAC6F126 |
SHA-256: | D1858851B2DC86BA23C0710FE8526292F0F69E100CEBFA7F260890BD41F5F42B |
SHA-512: | BE2C3C39CA57425B28DC36E669DA33B5FF6C7184509756B62832B5E2BFBCE46C9E62EAA88274187F7EE45474DCA98CD8084257EA2EBE6AB36932E28B857743E5 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 386528 |
Entropy (8bit): | 7.9736851559892425 |
Encrypted: | false |
SSDEEP: | 6144:8OSTJJJJEQ6T9UkRm1lBgI81ReWQ53+sQ36X/FLYVbxrr/IxktOQZ1mau4yBwsOo:sTJJJJv+9UZX+Tegs661ybxrr/IxkB1m |
MD5: | 5C48B0AD2FEF800949466AE872E1F1E2 |
SHA1: | 337D617AE142815EDDACB48484628C1F16692A2F |
SHA-256: | F40E3C96D4ED2F7A299027B37B2C0C03EAEEE22CF79C6B300E5F23ACB1EB31FE |
SHA-512: | 44210CE41F6365298BFBB14F6D850E59841FF555EBA00B51C6B024A12F458E91E43FDA3FA1A10AAC857D4BA7CA6992CCD891C02678DCA33FA1F409DE08859324 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1407294 |
Entropy (8bit): | 7.97605879016224 |
Encrypted: | false |
SSDEEP: | 24576:/xA7o5dpy6mlind9j2kvhsfFXpAXDgrFBU2/R07/WLaGZDwYIGNPJe:JVB3mlind9i4ufFXpAXkrfUs0jWLaGZo |
MD5: | A0CFC77914D9BFBDD8BC1B1154A7B364 |
SHA1: | 54962BFDF3797C95DC2A4C8B29E873743811AD30 |
SHA-256: | 81E45F94FE27B1D7D61DBC0DAFC005A1816D238D594B443BF4F0EE3241FB9685 |
SHA-512: | 74A8F6D96E004B8AFB4B635C0150355CEF5D7127972EA90683900B60560AA9C7F8DE780D1D5A4A944AF92B63C69F80DCDE09249AB99696932F1955F9EED443BE |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1419751 |
Entropy (8bit): | 7.976496077007677 |
Encrypted: | false |
SSDEEP: | 24576:/VSOWL07oXGZIeYIGNP5dpy6mlind9j2kvhsfFXpAXDgrFBU2/R07D:tPWLxXGZIeZGT3mlind9i4ufFXpAXkru |
MD5: | D3B63DF0CA325EC5A0D82AD75691E700 |
SHA1: | 0F9282C8B97AD6DE395F8BFB4E2021EFE835667B |
SHA-256: | 77764E073F3330DBF86C7DF9482B6B4679CB5880A39267ECB49BC61A8186C1BC |
SHA-512: | 29942C112280254B1B75FDFB6F7D6582EBA9782509E202E5C4D8DB2A23276CE9BFD5410085BE3DCF53B27D55B07EAEF01F400E5E71113FF57644F7120E93284E |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 13179 |
Entropy (8bit): | 7.864600293038402 |
Encrypted: | false |
SSDEEP: | 384:8UpAB1Vg7unfdN1CK4rKPZozL9b1L6D7d2AGLFY1d:8ew1VnnfdNXu9VCx2AGOd |
MD5: | 2D42D881D8957F6992217CCCE0CFBF6F |
SHA1: | BCAE6D63B9B6C404B01B54C08CE66EFA7599DF7E |
SHA-256: | 5BF7CB195B86F758D24CFF9FD9110D360C5825759EC436367A2B11D9D17DB722 |
SHA-512: | 9F8FED552708E370B237343E35E26E248B7AC40EADEC5E7FCE27687B561F8F99E1000D2B86C14965A2D263A89C525E20BC3925425066CFA95F9AE82C8E7A0072 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 41410 |
Entropy (8bit): | 7.9503127859429945 |
Encrypted: | false |
SSDEEP: | 768:8ew1VnnfdNXu9VCx2AGOETk5dgNSoimDFjAlr1MMY2iIaO8:vw1Vnnu98faqojDFjAlzwI18 |
MD5: | 8929D24BCD3FA597E0C8E24FDB811177 |
SHA1: | 934FE41AED2E90807C5388425C1A2F861E4F891B |
SHA-256: | 401DAA90B11E702E86C3E7B6D4ED6F1C7D468A3BA3D2658E12011BE06ACE7C39 |
SHA-512: | 83015E04757C31A692520E54B794845D9BAB465FF3CC6F875A382FD14B15F06A90ADF0E9FACFEA0E423C86E5487E6AD68B82CEF136F91D30ECD8F7D026C8A335 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 41410 |
Entropy (8bit): | 7.9503127859429945 |
Encrypted: | false |
SSDEEP: | 768:8ew1VnnfdNXu9VCx2AGOETk5dgNSoimDFjAlr1MMY2iIaO8:vw1Vnnu98faqojDFjAlzwI18 |
MD5: | 8929D24BCD3FA597E0C8E24FDB811177 |
SHA1: | 934FE41AED2E90807C5388425C1A2F861E4F891B |
SHA-256: | 401DAA90B11E702E86C3E7B6D4ED6F1C7D468A3BA3D2658E12011BE06ACE7C39 |
SHA-512: | 83015E04757C31A692520E54B794845D9BAB465FF3CC6F875A382FD14B15F06A90ADF0E9FACFEA0E423C86E5487E6AD68B82CEF136F91D30ECD8F7D026C8A335 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 41410 |
Entropy (8bit): | 7.9503127859429945 |
Encrypted: | false |
SSDEEP: | 768:8ew1VnnfdNXu9VCx2AGOETk5dgNSoimDFjAlr1MMY2iIaO8:vw1Vnnu98faqojDFjAlzwI18 |
MD5: | 8929D24BCD3FA597E0C8E24FDB811177 |
SHA1: | 934FE41AED2E90807C5388425C1A2F861E4F891B |
SHA-256: | 401DAA90B11E702E86C3E7B6D4ED6F1C7D468A3BA3D2658E12011BE06ACE7C39 |
SHA-512: | 83015E04757C31A692520E54B794845D9BAB465FF3CC6F875A382FD14B15F06A90ADF0E9FACFEA0E423C86E5487E6AD68B82CEF136F91D30ECD8F7D026C8A335 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 243 |
Entropy (8bit): | 5.465674771226253 |
Encrypted: | false |
SSDEEP: | 6:TMVBd/ZbZjZvKtWRVzj8pjloxK1Y79fa/an:TMHd9BZKtWRiBD1Ua/a |
MD5: | 7F5D921F8B5D600106E389DE9BF443A6 |
SHA1: | DD95A87435C8D350AAFF5F14EAC6D420DF77FADC |
SHA-256: | E597453E07C41D49D21A0ACF86D94EA57E1BCFCF4304E9CEC01D1ECAE8EBF194 |
SHA-512: | 9C4D72BBE963F94AEFC6EC5E501B62157A8FEEB26B0B88FE5B49132DCE40DDD1ECEBFE513E596E28C097BC08267D49A67C6E0C900461548EF37F35D1B6BFE2A2 |
Malicious: | false |
Reputation: | low |
URL: | https://content.app-us1.com/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 41410 |
Entropy (8bit): | 7.9503127859429945 |
Encrypted: | false |
SSDEEP: | 768:8ew1VnnfdNXu9VCx2AGOETk5dgNSoimDFjAlr1MMY2iIaO8:vw1Vnnu98faqojDFjAlzwI18 |
MD5: | 8929D24BCD3FA597E0C8E24FDB811177 |
SHA1: | 934FE41AED2E90807C5388425C1A2F861E4F891B |
SHA-256: | 401DAA90B11E702E86C3E7B6D4ED6F1C7D468A3BA3D2658E12011BE06ACE7C39 |
SHA-512: | 83015E04757C31A692520E54B794845D9BAB465FF3CC6F875A382FD14B15F06A90ADF0E9FACFEA0E423C86E5487E6AD68B82CEF136F91D30ECD8F7D026C8A335 |
Malicious: | false |
Reputation: | low |
URL: | https://content.app-us1.com/5zbe53/2024/09/30/90541351-e055-464e-9744-a165b8efcbb7.pdf |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 553 |
Entropy (8bit): | 4.662821081936326 |
Encrypted: | false |
SSDEEP: | 12:TvgsoCVIogs01lI55aNGlTF5TF5TF5TF5TF5TFK:cEQtnstTPTPTPTPTPTc |
MD5: | 0127426BF3BA07FF7211399DDF5186C4 |
SHA1: | 221D89F3261F545AC58848EBA300E0134C76FF9A |
SHA-256: | 982B986BB578E137F062099427A8CAEC3C501C84A9E4B22369EBD2BADEC42FE7 |
SHA-512: | 6CEA4AB7D43A518A316120BF7AE340583E989A21FC3E142DDD71742D53A7AE6CFA276F232ACD6B6794444B28AA9A666C40171EE44341A7B9A3CA8453B61A371A |
Malicious: | false |
Reputation: | low |
URL: | https://ebvq.prenticeu.com/SAFlSIeECgRZt_tUKXhAOQHYyqb5e4/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 553 |
Entropy (8bit): | 4.662821081936326 |
Encrypted: | false |
SSDEEP: | 12:TvgsoCVIogs01lI55aNGlTF5TF5TF5TF5TF5TFK:cEQtnstTPTPTPTPTPTc |
MD5: | 0127426BF3BA07FF7211399DDF5186C4 |
SHA1: | 221D89F3261F545AC58848EBA300E0134C76FF9A |
SHA-256: | 982B986BB578E137F062099427A8CAEC3C501C84A9E4B22369EBD2BADEC42FE7 |
SHA-512: | 6CEA4AB7D43A518A316120BF7AE340583E989A21FC3E142DDD71742D53A7AE6CFA276F232ACD6B6794444B28AA9A666C40171EE44341A7B9A3CA8453B61A371A |
Malicious: | false |
Reputation: | low |
URL: | https://ebvq.prenticeu.com/favicon.ico |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 30, 2024 12:20:45.700437069 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:20:50.262768984 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:20:50.262768984 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:20:50.512772083 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:20:54.743246078 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:54.743285894 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:54.743366957 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:54.744512081 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:54.744529963 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.553752899 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.553828001 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.559017897 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.559027910 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.559257984 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.561419010 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.561522961 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.561528921 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.561703920 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.607407093 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.742821932 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.743007898 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:55.743174076 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.743323088 CEST | 49709 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:55.743344069 CEST | 443 | 49709 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:56.911160946 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:56.911185980 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:56.911251068 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:56.911839008 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:56.911849976 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.001672983 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.001705885 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.001794100 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.002033949 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.002059937 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.002237082 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.002255917 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.002269030 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.002480030 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.002490044 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.461303949 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.465382099 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.472588062 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.472636938 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.472686052 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.472713947 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.473710060 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.473779917 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.474301100 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.474363089 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.475472927 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.475541115 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.478581905 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.478683949 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.478955030 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.478966951 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.526536942 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.526583910 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.575766087 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.607203007 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607271910 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607300997 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607340097 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607345104 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.607358932 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607409954 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607435942 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607467890 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607505083 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.607505083 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.607505083 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.607520103 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.607635975 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.608119011 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.693738937 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.693774939 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.693891048 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.693985939 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694009066 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.694009066 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.694017887 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694029093 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694071054 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.694080114 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694128036 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.694133997 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694946051 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694981098 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.694998980 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.695004940 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695050001 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.695053101 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695061922 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695101976 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.695709944 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695832968 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695867062 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695878029 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.695883989 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.695925951 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.695931911 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696743965 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696777105 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696787119 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.696793079 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696830034 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.696842909 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696855068 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.696888924 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.698947906 CEST | 49716 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.698962927 CEST | 443 | 49716 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:57.787653923 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.787919998 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:57.811652899 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:57.811669111 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.811901093 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.829760075 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:57.829760075 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:57.829778910 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.829854965 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:57.871407032 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:57.890520096 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:57.935400009 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:58.004933119 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:58.005045891 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:58.005155087 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:58.022048950 CEST | 49715 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:20:58.022063017 CEST | 443 | 49715 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:20:58.028312922 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:58.028403044 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:58.028474092 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:58.412014961 CEST | 49717 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:58.412054062 CEST | 443 | 49717 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:58.567455053 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:58.567554951 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:58.567637920 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:58.568557978 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:58.568595886 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.021769047 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.073261976 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.371061087 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.371079922 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.371573925 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.418262005 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.523538113 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.523674965 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.526747942 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.571394920 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.584105968 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:20:59.584134102 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:20:59.584275961 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:20:59.601926088 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:20:59.601941109 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631793022 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631840944 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631875992 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631882906 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.631901979 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631947994 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.631987095 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.631993055 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.632004976 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.632035971 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.632467031 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.632503986 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.632528067 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.632536888 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.632590055 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.632596970 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.683888912 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.683908939 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.718461990 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.718497038 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.718523026 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.718540907 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.718761921 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.718774080 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719120026 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719156981 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719171047 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.719187021 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719285965 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.719294071 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719690084 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719733000 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719769955 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719777107 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.719785929 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719827890 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.719835997 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719875097 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.719877005 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719887972 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.719929934 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.720606089 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.720726013 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.720758915 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.720767021 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.720774889 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.720845938 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.720848083 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.720916986 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.755534887 CEST | 49720 | 443 | 192.168.2.6 | 104.17.31.174 |
Sep 30, 2024 12:20:59.755553961 CEST | 443 | 49720 | 104.17.31.174 | 192.168.2.6 |
Sep 30, 2024 12:20:59.871454000 CEST | 49674 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:20:59.934000969 CEST | 49673 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:21:00.121393919 CEST | 49672 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:21:00.233268976 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.285986900 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:00.285995960 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.286981106 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.286993980 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.287086964 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:00.300885916 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:00.300967932 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.346981049 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:00.347028971 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:00.347103119 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:00.350675106 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:00.350691080 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:00.432601929 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:00.432610989 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:00.620246887 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:00.985841990 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:00.985944033 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:00.994199038 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:00.994223118 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:00.994528055 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.203397989 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.205044031 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:01.254642010 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:01.299428940 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.440422058 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.440514088 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.440651894 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:01.441273928 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:01.441274881 CEST | 49723 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:01.441310883 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.441328049 CEST | 443 | 49723 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:01.785772085 CEST | 443 | 49707 | 173.222.162.64 | 192.168.2.6 |
Sep 30, 2024 12:21:01.789186001 CEST | 49707 | 443 | 192.168.2.6 | 173.222.162.64 |
Sep 30, 2024 12:21:02.110435009 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.110470057 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:02.110913038 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.111196041 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.111207962 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:02.746944904 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:02.747016907 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.879031897 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.879045963 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:02.879376888 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:02.882975101 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:02.923408985 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:03.067718983 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:03.067790985 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:03.067843914 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:03.125020981 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:03.125027895 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:03.125046015 CEST | 49724 | 443 | 192.168.2.6 | 184.28.90.27 |
Sep 30, 2024 12:21:03.125051022 CEST | 443 | 49724 | 184.28.90.27 | 192.168.2.6 |
Sep 30, 2024 12:21:08.344089031 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:08.344121933 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:08.344204903 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:08.355334997 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:08.355344057 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.121493101 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.121588945 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.124406099 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.124442101 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.124783039 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.169945002 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.231549025 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.279401064 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483122110 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483149052 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483156919 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483165979 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483195066 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483247042 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.483258963 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483294964 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.483314991 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.483675957 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483732939 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.483737946 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483750105 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:09.483800888 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.509092093 CEST | 49728 | 443 | 192.168.2.6 | 4.245.163.56 |
Sep 30, 2024 12:21:09.509115934 CEST | 443 | 49728 | 4.245.163.56 | 192.168.2.6 |
Sep 30, 2024 12:21:10.161761045 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:10.161839962 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:10.161993980 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:11.672194958 CEST | 49721 | 443 | 192.168.2.6 | 142.250.185.100 |
Sep 30, 2024 12:21:11.672221899 CEST | 443 | 49721 | 142.250.185.100 | 192.168.2.6 |
Sep 30, 2024 12:21:23.487835884 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:23.487873077 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:23.487938881 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:23.488564968 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:23.488579035 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.264381886 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.264463902 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.270317078 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.270323038 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.270545959 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.272579908 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.272687912 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.272692919 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.272953987 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.319402933 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.446875095 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.447124004 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:24.447321892 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.447503090 CEST | 49731 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:24.447518110 CEST | 443 | 49731 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:46.476219893 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:46.476259947 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:46.476603985 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:46.476918936 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:46.476933956 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.098869085 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.098941088 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.100709915 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.100719929 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.101089001 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.113500118 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.159413099 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.313142061 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.313169956 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.313193083 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.313235998 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.313250065 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.313273907 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.313297033 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.314358950 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.314393044 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.314424992 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.314433098 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.314460039 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.314460993 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.314507008 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.318306923 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.318317890 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:47.318361998 CEST | 49732 | 443 | 192.168.2.6 | 20.12.23.50 |
Sep 30, 2024 12:21:47.318368912 CEST | 443 | 49732 | 20.12.23.50 | 192.168.2.6 |
Sep 30, 2024 12:21:52.937213898 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:52.937230110 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:52.937309027 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:52.937988043 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:52.937999010 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.724958897 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.725039959 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.727072954 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.727085114 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.727423906 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.729366064 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.729434013 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.729440928 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.729568958 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.775393963 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.904169083 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.904360056 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:53.904476881 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.905742884 CEST | 49733 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:21:53.905766010 CEST | 443 | 49733 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:21:59.634918928 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:21:59.634948015 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:21:59.635023117 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:21:59.635294914 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:21:59.635308981 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:00.292489052 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:00.292809010 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:22:00.292826891 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:00.293112993 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:00.293879032 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:22:00.293936968 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:00.341219902 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:22:10.199688911 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:10.199744940 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:10.200004101 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:22:11.675817966 CEST | 49735 | 443 | 192.168.2.6 | 142.250.184.228 |
Sep 30, 2024 12:22:11.675856113 CEST | 443 | 49735 | 142.250.184.228 | 192.168.2.6 |
Sep 30, 2024 12:22:24.903285980 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:24.903340101 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:24.903425932 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:24.904014111 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:24.904027939 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:25.844974041 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:25.845061064 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:25.847625971 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:25.847632885 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:25.847855091 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:25.853266001 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:25.853466988 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:25.853472948 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:25.853655100 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:25.895410061 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:26.027997971 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:26.028110981 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:26.028181076 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:26.028350115 CEST | 49741 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:22:26.028362036 CEST | 443 | 49741 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:22:28.121624947 CEST | 49703 | 80 | 192.168.2.6 | 93.184.221.240 |
Sep 30, 2024 12:22:28.127063036 CEST | 80 | 49703 | 93.184.221.240 | 192.168.2.6 |
Sep 30, 2024 12:22:28.127115965 CEST | 49703 | 80 | 192.168.2.6 | 93.184.221.240 |
Sep 30, 2024 12:22:28.494191885 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:28.494223118 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:28.494288921 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:28.494483948 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:28.494493961 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.049130917 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.049464941 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.049487114 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.050510883 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.050874949 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.056632996 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.056632996 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.056663036 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.056763887 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.111136913 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.111152887 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.153855085 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:29.153928995 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.155406952 CEST | 49744 | 443 | 192.168.2.6 | 23.41.168.139 |
Sep 30, 2024 12:22:29.155421972 CEST | 443 | 49744 | 23.41.168.139 | 192.168.2.6 |
Sep 30, 2024 12:22:41.295840979 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.295888901 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.296118021 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.300406933 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.300431013 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.970967054 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.981888056 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.981899977 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.983112097 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.983174086 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.991358995 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.991435051 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.991445065 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.991588116 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:41.991599083 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.991650105 CEST | 443 | 49748 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:41.991719007 CEST | 49748 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.015070915 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.015120983 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.015237093 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.020638943 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.020657063 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.686878920 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.687140942 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.687161922 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.688030005 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.688086033 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.793957949 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.794147968 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.794188023 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.839396954 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.841902971 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:42.841908932 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.890985966 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:42.891037941 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:43.317013025 CEST | 49749 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:43.317034960 CEST | 443 | 49749 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:43.512789011 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:43.512831926 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:43.512897015 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:43.515667915 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:43.515682936 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.189851999 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.190181017 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.190202951 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.191072941 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.191142082 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.565711975 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.565758944 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.565836906 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.565956116 CEST | 443 | 49750 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.566030025 CEST | 49750 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.566243887 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.566291094 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:44.566555977 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.566943884 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:44.566961050 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.205108881 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:45.205146074 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:45.205292940 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:45.205945015 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:45.205960035 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:45.226238966 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.226778030 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:45.226792097 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.227246046 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.227754116 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:45.227830887 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.228125095 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:45.275403976 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.338215113 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.338289022 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:45.338520050 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:45.758181095 CEST | 49752 | 443 | 192.168.2.6 | 188.114.96.3 |
Sep 30, 2024 12:22:45.758229971 CEST | 443 | 49752 | 188.114.96.3 | 192.168.2.6 |
Sep 30, 2024 12:22:46.057889938 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:46.058146000 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:46.058166981 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:46.059828043 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:46.059890985 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:46.225392103 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:46.225749016 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:46.355772018 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:46.355798960 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:46.465142965 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:55.955805063 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:55.956020117 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:22:55.956078053 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:57.842921972 CEST | 49753 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:22:57.842950106 CEST | 443 | 49753 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:01.645025969 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:01.645071983 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:01.645296097 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:01.646454096 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:01.646470070 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.469465017 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.469577074 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.479263067 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.479301929 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.479631901 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.504270077 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.504398108 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.504412889 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.504801035 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.547410011 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.681767941 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.681989908 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:02.682065964 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.683397055 CEST | 49764 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:23:02.683414936 CEST | 443 | 49764 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:23:04.691462040 CEST | 50238 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:04.696331978 CEST | 53 | 50238 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:04.696496964 CEST | 50238 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:04.696538925 CEST | 50238 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:04.701623917 CEST | 53 | 50238 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:05.158979893 CEST | 53 | 50238 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:05.159786940 CEST | 50238 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:05.164923906 CEST | 53 | 50238 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:05.165028095 CEST | 50238 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:45.257337093 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:45.257447958 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:45.257616997 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:45.258285046 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:45.258325100 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:46.105638027 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:46.106138945 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:46.106177092 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:46.106544018 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:46.106928110 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:46.107017040 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:46.152920008 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:56.009233952 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:56.009347916 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:23:56.009474039 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:57.845118999 CEST | 50242 | 443 | 192.168.2.6 | 142.250.184.196 |
Sep 30, 2024 12:23:57.845161915 CEST | 443 | 50242 | 142.250.184.196 | 192.168.2.6 |
Sep 30, 2024 12:24:19.640194893 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:19.640249968 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:19.640315056 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:19.641268015 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:19.641283035 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.420613050 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.420757055 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.427297115 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.427305937 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.427629948 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.431067944 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.431627989 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.431627989 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.431633949 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.475394011 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.605879068 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.606023073 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Sep 30, 2024 12:24:20.606153011 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.607984066 CEST | 50244 | 443 | 192.168.2.6 | 40.113.110.67 |
Sep 30, 2024 12:24:20.608011961 CEST | 443 | 50244 | 40.113.110.67 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Sep 30, 2024 12:20:55.418095112 CEST | 53 | 60794 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:55.420134068 CEST | 53 | 62860 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:56.453896999 CEST | 53 | 55426 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:56.988497019 CEST | 50948 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:20:56.988636971 CEST | 50180 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:20:56.997014046 CEST | 53 | 50180 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:57.000144958 CEST | 53 | 50948 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:59.566039085 CEST | 54022 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:20:59.566418886 CEST | 56036 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:20:59.572526932 CEST | 53 | 54022 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:20:59.573018074 CEST | 53 | 56036 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:13.782927036 CEST | 53 | 54051 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:32.676369905 CEST | 53 | 59448 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:54.915822029 CEST | 53 | 49668 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:55.004705906 CEST | 53 | 54638 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:59.621963024 CEST | 50480 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:21:59.622102976 CEST | 49430 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:21:59.628781080 CEST | 53 | 50480 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:21:59.634047985 CEST | 53 | 49430 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:28.083308935 CEST | 56908 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:22:41.229899883 CEST | 55941 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:22:41.230036974 CEST | 55884 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:22:41.237099886 CEST | 53 | 51682 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:41.241586924 CEST | 53 | 57846 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:41.247061968 CEST | 53 | 55941 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:41.292917013 CEST | 53 | 55884 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:43.319740057 CEST | 53 | 59460 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:45.189841032 CEST | 58483 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:22:45.190437078 CEST | 63445 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:22:45.197393894 CEST | 53 | 58483 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:45.197760105 CEST | 53 | 63445 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:48.254553080 CEST | 53 | 54290 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:22:58.395508051 CEST | 55461 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:23:00.654207945 CEST | 53 | 61929 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:04.691030025 CEST | 53 | 50102 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:10.200223923 CEST | 53 | 60723 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:23:41.047288895 CEST | 53 | 50237 | 1.1.1.1 | 192.168.2.6 |
Sep 30, 2024 12:24:02.028537989 CEST | 58484 | 53 | 192.168.2.6 | 1.1.1.1 |
Sep 30, 2024 12:24:31.091474056 CEST | 138 | 138 | 192.168.2.6 | 192.168.2.255 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Sep 30, 2024 12:20:56.988497019 CEST | 192.168.2.6 | 1.1.1.1 | 0x6a98 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:20:56.988636971 CEST | 192.168.2.6 | 1.1.1.1 | 0x5136 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 30, 2024 12:20:59.566039085 CEST | 192.168.2.6 | 1.1.1.1 | 0x855 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:20:59.566418886 CEST | 192.168.2.6 | 1.1.1.1 | 0x4c18 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 30, 2024 12:21:59.621963024 CEST | 192.168.2.6 | 1.1.1.1 | 0xcb85 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:21:59.622102976 CEST | 192.168.2.6 | 1.1.1.1 | 0xab7 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 30, 2024 12:22:28.083308935 CEST | 192.168.2.6 | 1.1.1.1 | 0x9fe4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:22:41.229899883 CEST | 192.168.2.6 | 1.1.1.1 | 0xabde | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:22:41.230036974 CEST | 192.168.2.6 | 1.1.1.1 | 0x59e6 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 30, 2024 12:22:45.189841032 CEST | 192.168.2.6 | 1.1.1.1 | 0x2b83 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:22:45.190437078 CEST | 192.168.2.6 | 1.1.1.1 | 0xd653 | Standard query (0) | 65 | IN (0x0001) | false | |
Sep 30, 2024 12:22:58.395508051 CEST | 192.168.2.6 | 1.1.1.1 | 0x3912 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Sep 30, 2024 12:24:02.028537989 CEST | 192.168.2.6 | 1.1.1.1 | 0x3811 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Sep 30, 2024 12:20:56.997014046 CEST | 1.1.1.1 | 192.168.2.6 | 0x5136 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 30, 2024 12:20:57.000144958 CEST | 1.1.1.1 | 192.168.2.6 | 0x6a98 | No error (0) | 104.17.31.174 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:20:57.000144958 CEST | 1.1.1.1 | 192.168.2.6 | 0x6a98 | No error (0) | 104.18.128.216 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:20:59.572526932 CEST | 1.1.1.1 | 192.168.2.6 | 0x855 | No error (0) | 142.250.185.100 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:20:59.573018074 CEST | 1.1.1.1 | 192.168.2.6 | 0x4c18 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 30, 2024 12:21:59.628781080 CEST | 1.1.1.1 | 192.168.2.6 | 0xcb85 | No error (0) | 142.250.184.228 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:21:59.634047985 CEST | 1.1.1.1 | 192.168.2.6 | 0xab7 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 30, 2024 12:22:28.092407942 CEST | 1.1.1.1 | 192.168.2.6 | 0x9fe4 | No error (0) | crl.root-x1.letsencrypt.org.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 30, 2024 12:22:41.247061968 CEST | 1.1.1.1 | 192.168.2.6 | 0xabde | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:22:41.247061968 CEST | 1.1.1.1 | 192.168.2.6 | 0xabde | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:22:41.292917013 CEST | 1.1.1.1 | 192.168.2.6 | 0x59e6 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 30, 2024 12:22:45.197393894 CEST | 1.1.1.1 | 192.168.2.6 | 0x2b83 | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Sep 30, 2024 12:22:45.197760105 CEST | 1.1.1.1 | 192.168.2.6 | 0xd653 | No error (0) | 65 | IN (0x0001) | false | |||
Sep 30, 2024 12:22:58.403105021 CEST | 1.1.1.1 | 192.168.2.6 | 0x3912 | No error (0) | crl.root-x1.letsencrypt.org.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Sep 30, 2024 12:24:02.037533045 CEST | 1.1.1.1 | 192.168.2.6 | 0x3811 | No error (0) | crl.root-x1.letsencrypt.org.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.6 | 49709 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:20:55 UTC | 71 | OUT | |
2024-09-30 10:20:55 UTC | 249 | OUT | |
2024-09-30 10:20:55 UTC | 1076 | OUT | |
2024-09-30 10:20:55 UTC | 218 | OUT | |
2024-09-30 10:20:55 UTC | 14 | IN | |
2024-09-30 10:20:55 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49716 | 104.17.31.174 | 443 | 416 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:20:57 UTC | 720 | OUT | |
2024-09-30 10:20:57 UTC | 511 | IN | |
2024-09-30 10:20:57 UTC | 858 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN | |
2024-09-30 10:20:57 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
2 | 192.168.2.6 | 49715 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:20:57 UTC | 71 | OUT | |
2024-09-30 10:20:57 UTC | 249 | OUT | |
2024-09-30 10:20:57 UTC | 1084 | OUT | |
2024-09-30 10:20:57 UTC | 218 | OUT | |
2024-09-30 10:20:58 UTC | 14 | IN | |
2024-09-30 10:20:58 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 49717 | 104.17.31.174 | 443 | 416 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:20:57 UTC | 652 | OUT | |
2024-09-30 10:20:58 UTC | 321 | IN | |
2024-09-30 10:20:58 UTC | 249 | IN | |
2024-09-30 10:20:58 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.6 | 49720 | 104.17.31.174 | 443 | 416 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:20:59 UTC | 392 | OUT | |
2024-09-30 10:20:59 UTC | 511 | IN | |
2024-09-30 10:20:59 UTC | 858 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN | |
2024-09-30 10:20:59 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 49723 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:01 UTC | 161 | OUT | |
2024-09-30 10:21:01 UTC | 494 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 49724 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:02 UTC | 239 | OUT | |
2024-09-30 10:21:03 UTC | 514 | IN | |
2024-09-30 10:21:03 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 49728 | 4.245.163.56 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:09 UTC | 306 | OUT | |
2024-09-30 10:21:09 UTC | 560 | IN | |
2024-09-30 10:21:09 UTC | 15824 | IN | |
2024-09-30 10:21:09 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
8 | 192.168.2.6 | 49731 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:24 UTC | 71 | OUT | |
2024-09-30 10:21:24 UTC | 249 | OUT | |
2024-09-30 10:21:24 UTC | 1084 | OUT | |
2024-09-30 10:21:24 UTC | 218 | OUT | |
2024-09-30 10:21:24 UTC | 14 | IN | |
2024-09-30 10:21:24 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.6 | 49732 | 20.12.23.50 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:47 UTC | 306 | OUT | |
2024-09-30 10:21:47 UTC | 560 | IN | |
2024-09-30 10:21:47 UTC | 15824 | IN | |
2024-09-30 10:21:47 UTC | 14181 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
10 | 192.168.2.6 | 49733 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:21:53 UTC | 71 | OUT | |
2024-09-30 10:21:53 UTC | 249 | OUT | |
2024-09-30 10:21:53 UTC | 1084 | OUT | |
2024-09-30 10:21:53 UTC | 218 | OUT | |
2024-09-30 10:21:53 UTC | 14 | IN | |
2024-09-30 10:21:53 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
11 | 192.168.2.6 | 49741 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:22:25 UTC | 71 | OUT | |
2024-09-30 10:22:25 UTC | 249 | OUT | |
2024-09-30 10:22:25 UTC | 1084 | OUT | |
2024-09-30 10:22:25 UTC | 218 | OUT | |
2024-09-30 10:22:26 UTC | 14 | IN | |
2024-09-30 10:22:26 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.6 | 49744 | 23.41.168.139 | 443 | 3264 | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:22:29 UTC | 475 | OUT | |
2024-09-30 10:22:29 UTC | 198 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.6 | 49749 | 188.114.96.3 | 443 | 3420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:22:42 UTC | 692 | OUT | |
2024-09-30 10:22:42 UTC | 178 | IN | |
2024-09-30 10:22:42 UTC | 553 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.6 | 49752 | 188.114.96.3 | 443 | 3420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:22:45 UTC | 623 | OUT | |
2024-09-30 10:22:45 UTC | 178 | IN | |
2024-09-30 10:22:45 UTC | 553 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
15 | 192.168.2.6 | 49764 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:23:02 UTC | 71 | OUT | |
2024-09-30 10:23:02 UTC | 249 | OUT | |
2024-09-30 10:23:02 UTC | 1084 | OUT | |
2024-09-30 10:23:02 UTC | 218 | OUT | |
2024-09-30 10:23:02 UTC | 14 | IN | |
2024-09-30 10:23:02 UTC | 58 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
16 | 192.168.2.6 | 50244 | 40.113.110.67 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-09-30 10:24:20 UTC | 71 | OUT | |
2024-09-30 10:24:20 UTC | 249 | OUT | |
2024-09-30 10:24:20 UTC | 1084 | OUT | |
2024-09-30 10:24:20 UTC | 218 | OUT | |
2024-09-30 10:24:20 UTC | 14 | IN | |
2024-09-30 10:24:20 UTC | 58 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 06:20:49 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 2 |
Start time: | 06:20:53 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 3 |
Start time: | 06:20:55 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 8 |
Start time: | 06:22:13 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff651090000 |
File size: | 5'641'176 bytes |
MD5 hash: | 24EAD1C46A47022347DC0F05F6EFBB8C |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 9 |
Start time: | 06:22:14 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff70df30000 |
File size: | 3'581'912 bytes |
MD5 hash: | 9B38E8E8B6DD9622D24B53E095C5D9BE |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 10 |
Start time: | 06:22:15 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff70df30000 |
File size: | 3'581'912 bytes |
MD5 hash: | 9B38E8E8B6DD9622D24B53E095C5D9BE |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 15 |
Start time: | 06:22:38 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 16 |
Start time: | 06:22:39 |
Start date: | 30/09/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff684c40000 |
File size: | 3'242'272 bytes |
MD5 hash: | 5BBFA6CBDF4C254EB368D534F9E23C92 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |