Windows
Analysis Report
Electronic_Receipt_ATT0001.htm
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 2736 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "C:\Us ers\user\D esktop\Ele ctronic_Re ceipt_ATT0 001.htm" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 1908 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2504 --fi eld-trial- handle=201 6,i,168268 5073517762 5839,11304 6510801240 14247,2621 44 /prefet ch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | SlashNext: |
Phishing |
---|
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | JA3 fingerprint: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
System Summary |
---|
Source: | Initial sample: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 1 Scripting | Valid Accounts | Windows Management Instrumentation | 1 Scripting | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Deobfuscate/Decode Files or Information | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | SlashNext | Credential Stealing type: Phishing & Social Engineering | ||
0% | URL Reputation | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
cdnjs.cloudflare.com | 104.17.25.14 | true | false | unknown | |
ktqco.eh5j.com | 172.67.183.69 | true | false | unknown | |
www.google.com | 142.250.184.196 | true | false | unknown | |
uzerapproved.com | 69.49.245.172 | true | false | unknown | |
href.li | 192.0.78.26 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | unknown | |||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.184.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
172.67.183.69 | ktqco.eh5j.com | United States | 13335 | CLOUDFLARENETUS | false | |
69.49.245.172 | uzerapproved.com | United States | 46606 | UNIFIEDLAYER-AS-1US | false | |
216.58.206.68 | unknown | United States | 15169 | GOOGLEUS | false | |
192.0.78.26 | href.li | United States | 2635 | AUTOMATTICUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
104.17.25.14 | cdnjs.cloudflare.com | United States | 13335 | CLOUDFLARENETUS | false |
IP |
---|
192.168.2.8 |
192.168.2.17 |
192.168.2.4 |
192.168.2.6 |
192.168.2.5 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1523714 |
Start date and time: | 2024-10-02 00:18:10 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 45s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowshtmlcookbook.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | Electronic_Receipt_ATT0001.htm |
Detection: | MAL |
Classification: | mal56.phis.winHTM@31/18@18/12 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.74.195, 142.250.186.142, 64.233.167.84, 34.104.35.123, 172.217.23.106, 216.58.212.138, 172.217.18.10, 172.217.16.202, 142.250.184.234, 142.250.185.170, 142.250.185.202, 142.250.186.106, 142.250.74.202, 142.250.185.138, 142.250.186.138, 142.250.185.106, 172.217.18.106, 142.250.185.74, 216.58.206.74, 142.250.185.234, 199.232.210.172, 192.229.221.95, 142.250.186.35, 142.250.186.78
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, ocsp.digicert.com, edgedl.me.gvt1.com, update.googleapis.com, clients.l.google.com, optimizationguide-pa.googleapis.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: Electronic_Receipt_ATT0001.htm
Input | Output |
---|---|
URL: https://ktqco.eh5j.com/MlKbF/#W#em11bGxpZ2FuQGhhcm1vbnljYXJlcy5jb20= Model: jbxai | { "brand":["Cloudflare"], "contains_trigger_text":true, "trigger_text":"This link has been flagged as phishing. We suggest you avoid it.", "prominent_button_name":"Dismiss this warning and enter site", "text_input_field_labels":["Your IP: Click to reveal"], "pdf_icon_visible":false, "has_visible_captcha":false, "has_urgent_text":false, "has_visible_qrcode":false} |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
192.0.78.26 | Get hash | malicious | HTMLPhisher | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
239.255.255.250 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | NetSupport RAT, Lsass Dumper, Mimikatz, Nukesped, Quasar, Trickbot, Xmrig | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Credential Flusher | Browse | |||
Get hash | malicious | Credential Flusher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
172.67.183.69 | Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse | ||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
69.49.245.172 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
cdnjs.cloudflare.com | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Tycoon2FA | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
href.li | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
uzerapproved.com | Get hash | malicious | HTMLPhisher, Tycoon2FA | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
ktqco.eh5j.com | Get hash | malicious | HTMLPhisher | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC, Stealc, Vidar | Browse |
| ||
Get hash | malicious | NetSupport RAT, Lsass Dumper, Mimikatz, Nukesped, Quasar, Trickbot, Xmrig | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC, Stealc, Vidar | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
AUTOMATTICUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC, Stealc, Vidar | Browse |
| ||
Get hash | malicious | NetSupport RAT, Lsass Dumper, Mimikatz, Nukesped, Quasar, Trickbot, Xmrig | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC, Stealc, Vidar | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
UNIFIEDLAYER-AS-1US | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
28a2c9bd18a11de089ef85a160da29e4 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | NetSupport RAT, Lsass Dumper, Mimikatz, Nukesped, Quasar, Trickbot, Xmrig | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Credential Flusher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 458 |
Entropy (8bit): | 5.211543572744993 |
Encrypted: | false |
SSDEEP: | 12:hYzx7BqhC2zvn7ctQtqqJmrLgFmzD+4Nbx8oA2WCEu:hYzxBqhCwn42R0n+4NBA2JB |
MD5: | B220A5645929F878444F485DAB681273 |
SHA1: | 8FC6ABF8067335F33C876E532473840AF6B5E8D4 |
SHA-256: | 2F3F0EDBEA4D6BCB10CA023C011015EA46B83C1116584D0E1AFF1A2833F942BB |
SHA-512: | F8CE5E7CE712CDF120901BE6C3E6B76FB09BEDED6F88C6B1669F99F0D1CBA5E91CE1377BFA9452BCEB451C70D2A461181BEF9D36E9FD0010D6171C6265F4A1F5 |
Malicious: | false |
Reputation: | low |
URL: | https://href.li/?https://KtqCO.eh5j.com/MlKbF/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4739 |
Entropy (8bit): | 5.03704848996151 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYjUDK/D5DMF+k1zvJADh/pRshxrR49PaQxJbGD:1j9jhjYjIK/Vo+kzRADh/pmhxrO9ieJ0 |
MD5: | 7BED2BA7F7BA8CF52B5C99DF9F8090EC |
SHA1: | BE70D0EF7BB061CC12C535CE95451F36DB264713 |
SHA-256: | 0123E2A4AAA6ECA6B354E872417CD4E7977444E8A6FFC90989CAB239EBB21D47 |
SHA-512: | DF03586374632884D8BB2FC938AAF431630AB8BB710D072A97F132BBC5AD80D4BA4433079A0CF7287C4B8F655AC69CFEEDB83B728799BCDECF0322585D38A5D2 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4739 |
Entropy (8bit): | 5.043794183241972 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYjUDK/D5DMF+k12vJADh/pRshrR49PaQxJbGD:1j9jhjYjIK/Vo+k2RADh/pmhrO9ieJGD |
MD5: | E6621D5A321F1FC033D50CB6109C77D7 |
SHA1: | DC9E0DF1BD62F931E072643547B4A5F933952DFF |
SHA-256: | 85664325B3AC2925E834806D029003EED93FD218C68AF306D53265FB8478E71A |
SHA-512: | DEBBE522BB4F75645827101DC0BF623D07B831BA4541C090CF854148D9843F21809DF175741BEE15E6A6872FE7D6A9BC402CF262188F152DDA55B9F0D4B9603F |
Malicious: | false |
Reputation: | low |
URL: | https://ktqco.eh5j.com/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 47992 |
Entropy (8bit): | 5.605846858683577 |
Encrypted: | false |
SSDEEP: | 768:LuxoaUN4+OIhwP53+e0QfA31jQM9OT81NHv4rnwfe:LuxoaU2+LwB2+G1ZdvCwfe |
MD5: | CF3402D7483B127DED4069D651EA4A22 |
SHA1: | BDE186152457CACF9C35477B5BDDA5BCB56B1F45 |
SHA-256: | EAB5D90A71736F267AF39FDF32CAA8C71673FD06703279B01E0F92B0D7BE0BFC |
SHA-512: | 9CE42EBC3F672A2AEFC4376F43D38CA9ED9D81AA5B3C1EEF60032BCC98A1C399BE68D71FD1D5F9DE6E98C4CE0B800F6EF1EF5E83D417FBFFA63EEF2408DA55D8 |
Malicious: | false |
Reputation: | high, very likely benign file |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 24051 |
Entropy (8bit): | 4.941039417164537 |
Encrypted: | false |
SSDEEP: | 192:VuR/6okgTQwq23gGM8lUR9YRGQ2BwoX6zp+1+nDT1FvxKSI7/UsV7MSE6XZ2dKzk:JwV+oUcoQJpdf1dxKSI7/Ue7ZX2qk |
MD5: | 5E8C69A459A691B5D1B9BE442332C87D |
SHA1: | F24DD1AD7C9080575D92A9A9A2C42620725EF836 |
SHA-256: | 84E3C77025ACE5AF143972B4A40FC834DCDFD4E449D4B36A57E62326F16B3091 |
SHA-512: | 6DB74B262D717916DE0B0B600EEAD2CC6A10E52A9E26D701FAE761FCBC931F35F251553669A92BE3B524F380F32E62AC6AD572BEA23C78965228CE9EFB92ED42 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
URL: | https://ktqco.eh5j.com/cdn-cgi/styles/cf.errors.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2007 |
Entropy (8bit): | 5.960040597444491 |
Encrypted: | false |
SSDEEP: | 48:87bTR6BLq5VlCxnEKeYvSEB0uIQFzzn0qW:8LUY5zqEKnvSESuIQVz0qW |
MD5: | 22A48BD278C3BE30236DC59F4A8BD2C8 |
SHA1: | 8A5072A5AF574B2B50A42DBBAA6C6E0F7243F35E |
SHA-256: | C106837D1C0C5E1C60795A5C6EFC3E290479E10F867F14E11E3D0667AEA13B7B |
SHA-512: | 4389528997F1A76A719AF0FFAE940A1A9BB76279978862A2BD8FDDA9B955E30C8FB11418A4F9166E48C0DCFA95114175ECE79494F02C6C089B8EAB9764B678A2 |
Malicious: | false |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 47992 |
Entropy (8bit): | 5.605846858683577 |
Encrypted: | false |
SSDEEP: | 768:LuxoaUN4+OIhwP53+e0QfA31jQM9OT81NHv4rnwfe:LuxoaU2+LwB2+G1ZdvCwfe |
MD5: | CF3402D7483B127DED4069D651EA4A22 |
SHA1: | BDE186152457CACF9C35477B5BDDA5BCB56B1F45 |
SHA-256: | EAB5D90A71736F267AF39FDF32CAA8C71673FD06703279B01E0F92B0D7BE0BFC |
SHA-512: | 9CE42EBC3F672A2AEFC4376F43D38CA9ED9D81AA5B3C1EEF60032BCC98A1C399BE68D71FD1D5F9DE6E98C4CE0B800F6EF1EF5E83D417FBFFA63EEF2408DA55D8 |
Malicious: | false |
URL: | https://cdnjs.cloudflare.com/ajax/libs/crypto-js/4.0.0/crypto-js.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4734 |
Entropy (8bit): | 5.046203899960507 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYjUDK/D5DMF+k1jvJADh/pRsOMrR49PaQxJbGD:1j9jhjYjIK/Vo+kjRADh/pmOMrO9ieJ0 |
MD5: | 1C8042846E5EB85569F9725108B91A7A |
SHA1: | AC2CCEB6DC5927141DEC3958EC490642CB0AECFE |
SHA-256: | 18E3334E61103E92A1C9D1EDAFAB192302BFBAD6F54AC719566B712D2276D9FE |
SHA-512: | 4FD5A70C339E8689F26B50332B953B01F54D313623192F59FAAFF40ED481E3E7698D7244A24C0AA7D771DEA2100D2D2908381D8C269B897A0E19012EBA620E95 |
Malicious: | false |
URL: | https://ktqco.eh5j.com/MlKbF/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 452 |
Entropy (8bit): | 7.0936408308765495 |
Encrypted: | false |
SSDEEP: | 12:6v/7EljW8E6Cl2SYh8SZM4tf70FSDvMXDxJp6ScFChY9:U8hCl2SIdZBtAFSDUX/ozIhK |
MD5: | C33DE66281E933259772399D10A6AFE8 |
SHA1: | B9F9D500F8814381451011D4DCF59CD2D90AD94F |
SHA-256: | F1591A5221136C49438642155691AE6C68E25B7241F3D7EBE975B09A77662016 |
SHA-512: | 5834FB9D66F550E6CECFE484B7B6A14F3FCA795405DECE8E652BD69AD917B94B6BBDCDF7639161B9C07F0D33EABD3E79580446B5867219F72F4FC43FD43B98C3 |
Malicious: | false |
URL: | https://ktqco.eh5j.com/cdn-cgi/images/icon-exclamation.png?1376755637 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2007 |
Entropy (8bit): | 5.963563802222883 |
Encrypted: | false |
SSDEEP: | 48:U7bTPTnmH4w5xznVWpp7CEId9cZ7STPb58n8YuIohTxDXX:Ufnmp5ZVWpp09cZgPt68YuIoZhXX |
MD5: | 3783841F1B7D2D7F2ACF89AAAD5373AD |
SHA1: | 094F6B3D0E9874122FE0B486B4799D639C29DE2A |
SHA-256: | 416ECE110E92E17E59388E518A748CF866C675B0F93D81EB700D6CC7BC73C5BA |
SHA-512: | 5F25F525CA94CDD37C8FB1AFCF4BC8BE2D360AC33932E72A2B8A29014036DB6047C55C7494ADDBFA20D967BD436AB5DFABFFC6E6AF8F947BBF690968598B2774 |
Malicious: | false |
URL: | https://uzerapproved.com/res444.php?2-68747470733a2f2f687265662e6c692f3f68747470733a2f2f4b7471434f2e6568356a2e636f6d2f4d6c4b62462f-quail |
Preview: |
File type: | |
Entropy (8bit): | 4.906133996856382 |
TrID: |
|
File name: | Electronic_Receipt_ATT0001.htm |
File size: | 1'749 bytes |
MD5: | 6f9e924102b87ad8368326dce7b61500 |
SHA1: | f8d81d8e4734a8771d5d55b0f3f102ccb0e8e8ed |
SHA256: | 65c57e8cd05b4d1ab5070bdb21be8629241cb193d176b3267529a3ff57b4e8da |
SHA512: | ffd09ed2b8ca6f2fbd304ee49fe92411003ee433f436d5e2211d006319082b1b4b7628faa847600f2592807ed92332421ddacc3c8f3f0fafc00c5d57e5c9c4db |
SSDEEP: | 24:1gWjaOyfJ5XgXuZmH5UHmkRGpSDfMXgdFv5pTxkGUSDkvfAlgmRh7XBuHkPWdMTW:1gWMfJ5VZmZjSrMs9TSSDs4zPX7+We/ |
TLSH: | 7731F0022C938733183683293D7A8A9AF716166EB653218835CD52742BF6F911DA30AD |
File Content Preview: | <html>..<script>.. walrus = ['aHR0cH',..`M6Ly91em`,.."VyYXBw",../*.... <i .... hidden> The .. writer .. found inspiration in the.... bustling.. city. </i> --> */...."cm92ZWQu",.."Y29tL3Jlcz",..'Q0NC5waHA',../* .... <stron |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 2, 2024 00:19:06.939735889 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:06.939748049 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:06.939798117 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:06.940105915 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:06.940115929 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.251880884 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.251920938 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.252072096 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.252230883 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.252244949 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.452977896 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.453350067 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.453363895 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.454818010 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.454921007 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.456958055 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.457020998 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.457550049 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.457557917 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.586174011 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.586252928 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.586368084 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.596353054 CEST | 49733 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.596368074 CEST | 443 | 49733 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.613656044 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:07.613697052 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:07.613868952 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:07.614243031 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:07.614259005 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:07.642924070 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.642961979 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.643661022 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.644042969 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.644057035 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.758668900 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.759052038 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.759071112 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.760099888 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.760204077 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.760679960 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.760746956 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.814559937 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:07.814573050 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:07.863920927 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.094172001 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.094518900 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.094542980 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.095602036 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.095654011 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.096662998 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.096772909 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.096869946 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.096879005 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.132911921 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.133182049 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.133207083 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.134268999 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.134344101 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.134787083 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.134840965 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.134938955 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.134946108 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.178427935 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.221621037 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.240412951 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.240457058 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.240535975 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.240541935 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.240561962 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.240608931 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.240614891 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.240833044 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.241020918 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.241030931 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.241364956 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.241421938 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.241429090 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.241471052 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.241518974 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.241528034 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.245168924 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.245223999 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.245233059 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.265441895 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.265464067 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.265522003 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.265542984 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.265577078 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.266731024 CEST | 49740 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:08.266741991 CEST | 443 | 49740 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331470966 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331594944 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331624985 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331681967 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331696987 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.331731081 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331763983 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.331779003 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.331787109 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.331890106 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332048893 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332076073 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332093000 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.332103968 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332145929 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.332690001 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332715988 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332767010 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.332777977 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332885981 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332926035 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332937956 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.332946062 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.332969904 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.333570004 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.333731890 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.333758116 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.333791018 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.333802938 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.333816051 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.333825111 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.333874941 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.334340096 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.375919104 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.376024008 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.376151085 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.377043962 CEST | 49739 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.377053976 CEST | 443 | 49739 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.389921904 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.389956951 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.390029907 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.390199900 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.390212059 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.503374100 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.503422022 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.503489017 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.503597975 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.503643990 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.503750086 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.503828049 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.503843069 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.503998995 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.504017115 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.845910072 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.846165895 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.846183062 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.847255945 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.847343922 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.849946022 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.850020885 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.850138903 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.850148916 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.892263889 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.971172094 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971240997 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971276045 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971292019 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.971309900 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971353054 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.971353054 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971371889 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971416950 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.971577883 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971740961 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.971786022 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.971795082 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.972074986 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.972121000 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.972130060 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.973321915 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.973640919 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.973663092 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.974067926 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.974208117 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.974781990 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.974874020 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.975815058 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.975905895 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.975914001 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.975928068 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.975969076 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:08.975979090 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:08.983202934 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.983416080 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.983436108 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.983803988 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.983864069 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.984539032 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:08.984582901 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.984704018 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:08.984771013 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.019260883 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.019283056 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.057969093 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058010101 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058044910 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.058062077 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058104038 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.058149099 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058383942 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058429956 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.058437109 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058696985 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058739901 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.058747053 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058896065 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058928013 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058938980 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.058945894 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.058983088 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.059478045 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059546947 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059592009 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.059598923 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059894085 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059926033 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059941053 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.059947968 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.059986115 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.060702085 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.060817957 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.060863972 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.060870886 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061012983 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061044931 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061053991 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.061060905 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061103106 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.061110973 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061182976 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.061224937 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.061382055 CEST | 49741 | 443 | 192.168.2.4 | 104.17.25.14 |
Oct 2, 2024 00:19:09.061393976 CEST | 443 | 49741 | 104.17.25.14 | 192.168.2.4 |
Oct 2, 2024 00:19:09.065628052 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.080800056 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.080830097 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.109330893 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.109411001 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.109488010 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.110287905 CEST | 49743 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.110301971 CEST | 443 | 49743 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:09.190387011 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:09.205809116 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.205848932 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.206027985 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.206274033 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.206321001 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.206389904 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.206487894 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.206500053 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.206739902 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.206752062 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.667299032 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.667552948 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.667579889 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.668637991 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.668693066 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.669735909 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.669799089 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.669918060 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.669924974 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.691061020 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.691405058 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.691421986 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.692507029 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.692564964 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.693144083 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.693211079 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.714238882 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.745518923 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.745533943 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.797698021 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.978763103 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978806973 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978831053 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978846073 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.978854895 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978867054 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978899956 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.978912115 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978943110 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:09.978957891 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.978986979 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.980561972 CEST | 49745 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:09.980576992 CEST | 443 | 49745 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.054475069 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.099407911 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155025005 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155097008 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155133963 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.155141115 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155173063 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155213118 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.155220032 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155395985 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155431986 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155436039 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.155442953 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.155486107 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.155565023 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.159742117 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.159785986 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.159809113 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.159846067 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.159878969 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.159885883 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.206938982 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.245637894 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.245785952 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.245816946 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.245842934 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.245860100 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.245898962 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.245908976 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.246097088 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.246149063 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.312685013 CEST | 49744 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.312716007 CEST | 443 | 49744 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.499396086 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.499452114 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.499521971 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.499995947 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.500011921 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.979974031 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.980376005 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.980405092 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.980741978 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.981055975 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:10.981118917 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:10.981215954 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.023408890 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.077168941 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.077222109 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.077409983 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.077748060 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.077764034 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.108383894 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.108459949 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.108520985 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.109236956 CEST | 49747 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.109258890 CEST | 443 | 49747 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.118479967 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.118527889 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.118649006 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.118962049 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.118976116 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.158363104 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.158411026 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.158562899 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.158931971 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.158941984 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.446856976 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:11.446888924 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:11.446964025 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:11.449244976 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:11.449263096 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:11.582784891 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.583146095 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.583162069 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.583511114 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.584127903 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.584204912 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.584291935 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.628351927 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.628365993 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.649974108 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.651479959 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.651489973 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.652518988 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.652578115 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.653549910 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.653578043 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.653611898 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.653671980 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.653688908 CEST | 443 | 49750 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.653701067 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.653995991 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.654011965 CEST | 49750 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.654036045 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.654089928 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.654282093 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.654297113 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727633953 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727694035 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727740049 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727768898 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727771997 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.727782965 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727826118 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.727832079 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727868080 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.727871895 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.727925062 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.733828068 CEST | 49749 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.733841896 CEST | 443 | 49749 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.734067917 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.734375000 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.734391928 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.735492945 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.735583067 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.736598015 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.736668110 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.740150928 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.740202904 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.740272999 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.740530968 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:11.740549088 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:11.782056093 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:11.782088041 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:11.828922987 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:12.108026028 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.108109951 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.111680984 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.111694098 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.111987114 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.142751932 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.144252062 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.144275904 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.145320892 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.145386934 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.145745039 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.145807028 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.145972967 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.157059908 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.162338972 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.188302040 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.188323975 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.207405090 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.225709915 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.226136923 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.226157904 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.227277040 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.227349043 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.227657080 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.227665901 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.227730989 CEST | 443 | 49753 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.227773905 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.227788925 CEST | 49753 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.228092909 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.228130102 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.228195906 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.228394985 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.228404999 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.235162020 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.266062021 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.266134024 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.266196966 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.268322945 CEST | 49752 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.268338919 CEST | 443 | 49752 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.380948067 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.381026030 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.381082058 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.381279945 CEST | 49751 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.381295919 CEST | 443 | 49751 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.442848921 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.442899942 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.442981958 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.443259001 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:12.443272114 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:12.707950115 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.708314896 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.708329916 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.708723068 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.709018946 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.709117889 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.709418058 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.755403996 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850296974 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850349903 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850383043 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850409031 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850425005 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.850449085 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.850465059 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.855506897 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:12.855585098 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.865212917 CEST | 49754 | 443 | 192.168.2.4 | 172.67.183.69 |
Oct 2, 2024 00:19:12.865232944 CEST | 443 | 49754 | 172.67.183.69 | 192.168.2.4 |
Oct 2, 2024 00:19:13.089765072 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.089849949 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.092658043 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.092677116 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.092916965 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.095675945 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.143404007 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.368756056 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.368829966 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.369371891 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.370881081 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.370909929 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:13.370923042 CEST | 49755 | 443 | 192.168.2.4 | 184.28.90.27 |
Oct 2, 2024 00:19:13.370929003 CEST | 443 | 49755 | 184.28.90.27 | 192.168.2.4 |
Oct 2, 2024 00:19:21.211429119 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:21.211479902 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:21.211546898 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:21.213037014 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:21.213049889 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:21.642081022 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:21.642152071 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:21.642244101 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:21.976257086 CEST | 49748 | 443 | 192.168.2.4 | 142.250.184.196 |
Oct 2, 2024 00:19:21.976284981 CEST | 443 | 49748 | 142.250.184.196 | 192.168.2.4 |
Oct 2, 2024 00:19:22.123617887 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.123709917 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.126945019 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.126966953 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.127268076 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.172288895 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.680851936 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.723412037 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942378998 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942406893 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942415953 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942430973 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942457914 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942476034 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.942508936 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.942524910 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.942524910 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.942555904 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.943306923 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.943380117 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:22.943397045 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.943696022 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:22.943752050 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:23.472124100 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:23.472173929 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:23.472188950 CEST | 49759 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:23.472197056 CEST | 443 | 49759 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:52.829704046 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:19:52.829720974 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:19:54.095415115 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:19:54.095437050 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:19:59.945620060 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:59.945661068 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:19:59.945764065 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:59.946682930 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:19:59.946695089 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:00.722328901 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:00.722436905 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:00.726667881 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:00.726681948 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:00.726958990 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:00.736368895 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:00.779402018 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054069042 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054095030 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054111958 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054194927 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.054208994 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054311991 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.054625034 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054666042 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.054735899 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.054735899 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.054745913 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.055219889 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:01.055324078 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.062647104 CEST | 49768 | 443 | 192.168.2.4 | 20.114.59.183 |
Oct 2, 2024 00:20:01.062668085 CEST | 443 | 49768 | 20.114.59.183 | 192.168.2.4 |
Oct 2, 2024 00:20:08.888463020 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:20:08.888546944 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:20:08.888602972 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:20:09.541258097 CEST | 49742 | 443 | 192.168.2.4 | 192.0.78.26 |
Oct 2, 2024 00:20:09.541307926 CEST | 443 | 49742 | 192.0.78.26 | 192.168.2.4 |
Oct 2, 2024 00:20:09.541327000 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:20:09.541443110 CEST | 443 | 49737 | 69.49.245.172 | 192.168.2.4 |
Oct 2, 2024 00:20:09.541627884 CEST | 49737 | 443 | 192.168.2.4 | 69.49.245.172 |
Oct 2, 2024 00:20:11.883734941 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:11.883765936 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:11.883877993 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:11.884324074 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:11.884337902 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:12.515094042 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:12.515433073 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:12.515445948 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:12.516053915 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:12.516443968 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:12.516534090 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:12.564553022 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:22.441560984 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:22.441641092 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:20:22.441803932 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:23.176186085 CEST | 49770 | 443 | 192.168.2.4 | 216.58.206.68 |
Oct 2, 2024 00:20:23.176232100 CEST | 443 | 49770 | 216.58.206.68 | 192.168.2.4 |
Oct 2, 2024 00:21:24.995562077 CEST | 61996 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:21:25.000847101 CEST | 53 | 61996 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:25.000952005 CEST | 61996 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:21:25.001038074 CEST | 61996 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:21:25.006344080 CEST | 53 | 61996 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:25.445297956 CEST | 53 | 61996 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:25.446610928 CEST | 61996 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:21:25.452748060 CEST | 53 | 61996 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:25.452801943 CEST | 61996 | 53 | 192.168.2.4 | 1.1.1.1 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 2, 2024 00:19:06.886343002 CEST | 53 | 57196 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:06.927190065 CEST | 56111 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:06.927365065 CEST | 53677 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:06.933082104 CEST | 53 | 64641 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:06.939018965 CEST | 53 | 56111 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:06.939208984 CEST | 53 | 53677 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:07.605755091 CEST | 56115 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:07.606086969 CEST | 58869 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:07.609361887 CEST | 55505 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:07.609754086 CEST | 54889 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:07.612417936 CEST | 53 | 56115 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:07.612683058 CEST | 53 | 58869 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:07.641277075 CEST | 53 | 55505 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:07.642410994 CEST | 53 | 54889 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:08.051999092 CEST | 53 | 58979 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:08.382455111 CEST | 50003 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:08.382597923 CEST | 59326 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:08.389153004 CEST | 53 | 50003 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:08.389360905 CEST | 53 | 59326 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:08.490200996 CEST | 64295 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:08.490521908 CEST | 56221 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:08.497242928 CEST | 53 | 64295 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:08.498492002 CEST | 53 | 56221 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:09.149899006 CEST | 59547 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:09.150135994 CEST | 50726 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:09.185933113 CEST | 53 | 59547 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:09.469379902 CEST | 53 | 50726 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:11.066905022 CEST | 50957 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:11.067065001 CEST | 59468 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:11.075140953 CEST | 53 | 59468 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:11.075247049 CEST | 53 | 50957 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:11.120857000 CEST | 62068 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:11.121037006 CEST | 50343 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:19:11.129565001 CEST | 53 | 50343 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:11.157622099 CEST | 53 | 62068 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:19.105298042 CEST | 53 | 49594 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:22.977642059 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Oct 2, 2024 00:19:25.185070038 CEST | 53 | 53392 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:19:44.127450943 CEST | 53 | 55806 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:20:06.342406988 CEST | 53 | 65081 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:20:06.999449968 CEST | 53 | 65321 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:20:11.130959988 CEST | 58287 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:20:11.131134987 CEST | 55212 | 53 | 192.168.2.4 | 1.1.1.1 |
Oct 2, 2024 00:20:11.881889105 CEST | 53 | 58287 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:20:11.882132053 CEST | 53 | 55212 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:20:34.063849926 CEST | 53 | 59141 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:20.924758911 CEST | 53 | 56929 | 1.1.1.1 | 192.168.2.4 |
Oct 2, 2024 00:21:24.995138884 CEST | 53 | 59644 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Oct 2, 2024 00:19:09.469510078 CEST | 192.168.2.4 | 1.1.1.1 | c278 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Oct 2, 2024 00:19:06.927190065 CEST | 192.168.2.4 | 1.1.1.1 | 0x288 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:06.927365065 CEST | 192.168.2.4 | 1.1.1.1 | 0x6099 | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:07.605755091 CEST | 192.168.2.4 | 1.1.1.1 | 0x6926 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:07.606086969 CEST | 192.168.2.4 | 1.1.1.1 | 0x5a18 | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:07.609361887 CEST | 192.168.2.4 | 1.1.1.1 | 0x7682 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:07.609754086 CEST | 192.168.2.4 | 1.1.1.1 | 0x4ddc | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:08.382455111 CEST | 192.168.2.4 | 1.1.1.1 | 0x74bd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:08.382597923 CEST | 192.168.2.4 | 1.1.1.1 | 0x504f | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:08.490200996 CEST | 192.168.2.4 | 1.1.1.1 | 0x3f96 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:08.490521908 CEST | 192.168.2.4 | 1.1.1.1 | 0xc19b | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:09.149899006 CEST | 192.168.2.4 | 1.1.1.1 | 0x736d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:09.150135994 CEST | 192.168.2.4 | 1.1.1.1 | 0x1d97 | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:11.066905022 CEST | 192.168.2.4 | 1.1.1.1 | 0x5e49 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:11.067065001 CEST | 192.168.2.4 | 1.1.1.1 | 0x265d | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:19:11.120857000 CEST | 192.168.2.4 | 1.1.1.1 | 0x52eb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:19:11.121037006 CEST | 192.168.2.4 | 1.1.1.1 | 0xf79f | Standard query (0) | 65 | IN (0x0001) | false | |
Oct 2, 2024 00:20:11.130959988 CEST | 192.168.2.4 | 1.1.1.1 | 0x197 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 2, 2024 00:20:11.131134987 CEST | 192.168.2.4 | 1.1.1.1 | 0x634d | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Oct 2, 2024 00:19:06.939018965 CEST | 1.1.1.1 | 192.168.2.4 | 0x288 | No error (0) | 69.49.245.172 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:07.612417936 CEST | 1.1.1.1 | 192.168.2.4 | 0x6926 | No error (0) | 104.17.25.14 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:07.612417936 CEST | 1.1.1.1 | 192.168.2.4 | 0x6926 | No error (0) | 104.17.24.14 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:07.612683058 CEST | 1.1.1.1 | 192.168.2.4 | 0x5a18 | No error (0) | 65 | IN (0x0001) | false | |||
Oct 2, 2024 00:19:07.641277075 CEST | 1.1.1.1 | 192.168.2.4 | 0x7682 | No error (0) | 69.49.245.172 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:08.389153004 CEST | 1.1.1.1 | 192.168.2.4 | 0x74bd | No error (0) | 104.17.25.14 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:08.389153004 CEST | 1.1.1.1 | 192.168.2.4 | 0x74bd | No error (0) | 104.17.24.14 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:08.389360905 CEST | 1.1.1.1 | 192.168.2.4 | 0x504f | No error (0) | 65 | IN (0x0001) | false | |||
Oct 2, 2024 00:19:08.497242928 CEST | 1.1.1.1 | 192.168.2.4 | 0x3f96 | No error (0) | 192.0.78.26 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:08.497242928 CEST | 1.1.1.1 | 192.168.2.4 | 0x3f96 | No error (0) | 192.0.78.27 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:09.185933113 CEST | 1.1.1.1 | 192.168.2.4 | 0x736d | No error (0) | 172.67.183.69 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:09.185933113 CEST | 1.1.1.1 | 192.168.2.4 | 0x736d | No error (0) | 104.21.40.89 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:09.469379902 CEST | 1.1.1.1 | 192.168.2.4 | 0x1d97 | No error (0) | 65 | IN (0x0001) | false | |||
Oct 2, 2024 00:19:11.075140953 CEST | 1.1.1.1 | 192.168.2.4 | 0x265d | No error (0) | 65 | IN (0x0001) | false | |||
Oct 2, 2024 00:19:11.075247049 CEST | 1.1.1.1 | 192.168.2.4 | 0x5e49 | No error (0) | 142.250.184.196 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:11.129565001 CEST | 1.1.1.1 | 192.168.2.4 | 0xf79f | No error (0) | 65 | IN (0x0001) | false | |||
Oct 2, 2024 00:19:11.157622099 CEST | 1.1.1.1 | 192.168.2.4 | 0x52eb | No error (0) | 172.67.183.69 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:19:11.157622099 CEST | 1.1.1.1 | 192.168.2.4 | 0x52eb | No error (0) | 104.21.40.89 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:20:11.881889105 CEST | 1.1.1.1 | 192.168.2.4 | 0x197 | No error (0) | 216.58.206.68 | A (IP address) | IN (0x0001) | false | ||
Oct 2, 2024 00:20:11.882132053 CEST | 1.1.1.1 | 192.168.2.4 | 0x634d | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49733 | 69.49.245.172 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:07 UTC | 591 | OUT | |
2024-10-01 22:19:07 UTC | 196 | IN | |
2024-10-01 22:19:07 UTC | 2019 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49739 | 104.17.25.14 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:08 UTC | 526 | OUT | |
2024-10-01 22:19:08 UTC | 930 | IN | |
2024-10-01 22:19:08 UTC | 439 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49740 | 69.49.245.172 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:08 UTC | 451 | OUT | |
2024-10-01 22:19:08 UTC | 196 | IN | |
2024-10-01 22:19:08 UTC | 2019 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49741 | 104.17.25.14 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:08 UTC | 386 | OUT | |
2024-10-01 22:19:08 UTC | 934 | IN | |
2024-10-01 22:19:08 UTC | 435 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN | |
2024-10-01 22:19:08 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49743 | 192.0.78.26 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:08 UTC | 666 | OUT | |
2024-10-01 22:19:09 UTC | 279 | IN | |
2024-10-01 22:19:09 UTC | 470 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49745 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:09 UTC | 649 | OUT | |
2024-10-01 22:19:09 UTC | 592 | IN | |
2024-10-01 22:19:09 UTC | 777 | IN | |
2024-10-01 22:19:09 UTC | 1369 | IN | |
2024-10-01 22:19:09 UTC | 1369 | IN | |
2024-10-01 22:19:09 UTC | 1227 | IN | |
2024-10-01 22:19:09 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49744 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:10 UTC | 561 | OUT | |
2024-10-01 22:19:10 UTC | 411 | IN | |
2024-10-01 22:19:10 UTC | 958 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN | |
2024-10-01 22:19:10 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49747 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:10 UTC | 647 | OUT | |
2024-10-01 22:19:11 UTC | 409 | IN | |
2024-10-01 22:19:11 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49749 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:11 UTC | 590 | OUT | |
2024-10-01 22:19:11 UTC | 594 | IN | |
2024-10-01 22:19:11 UTC | 775 | IN | |
2024-10-01 22:19:11 UTC | 1369 | IN | |
2024-10-01 22:19:11 UTC | 1369 | IN | |
2024-10-01 22:19:11 UTC | 1234 | IN | |
2024-10-01 22:19:11 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49752 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:12 UTC | 384 | OUT | |
2024-10-01 22:19:12 UTC | 409 | IN | |
2024-10-01 22:19:12 UTC | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49751 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:12 UTC | 161 | OUT | |
2024-10-01 22:19:12 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49754 | 172.67.183.69 | 443 | 1908 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:12 UTC | 349 | OUT | |
2024-10-01 22:19:12 UTC | 590 | IN | |
2024-10-01 22:19:12 UTC | 779 | IN | |
2024-10-01 22:19:12 UTC | 1369 | IN | |
2024-10-01 22:19:12 UTC | 1369 | IN | |
2024-10-01 22:19:12 UTC | 1230 | IN | |
2024-10-01 22:19:12 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49755 | 184.28.90.27 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:13 UTC | 239 | OUT | |
2024-10-01 22:19:13 UTC | 515 | IN | |
2024-10-01 22:19:13 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49759 | 20.114.59.183 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:19:22 UTC | 306 | OUT | |
2024-10-01 22:19:22 UTC | 560 | IN | |
2024-10-01 22:19:22 UTC | 15824 | IN | |
2024-10-01 22:19:22 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49768 | 20.114.59.183 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-01 22:20:00 UTC | 306 | OUT | |
2024-10-01 22:20:01 UTC | 560 | IN | |
2024-10-01 22:20:01 UTC | 15824 | IN | |
2024-10-01 22:20:01 UTC | 14181 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 18:19:02 |
Start date: | 01/10/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 2 |
Start time: | 18:19:05 |
Start date: | 01/10/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |