Windows
Analysis Report
http://bc1qcr8muz00d2v7uqg5ggulrmm.com
Overview
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
- chrome.exe (PID: 6188 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 6864 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2036 --fi eld-trial- handle=194 8,i,130660 3169626085 2138,12174 5467084529 44487,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 3924 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://bc1qcr 8muz00d2v7 uqg5ggulrm m.com" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware | ||
3% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
bc1qcr8muz00d2v7uqg5ggulrmm.com | 104.21.5.242 | true | false | high | |
www.google.com | 142.250.181.100 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false |
| unknown | |
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.67.134.10 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false | |
142.250.181.100 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1562774 |
Start date and time: | 2024-11-26 01:05:46 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 13s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | http://bc1qcr8muz00d2v7uqg5ggulrmm.com |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 14 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@18/10@8/5 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, WmiPrvSE.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 216.58.208.227, 172.217.19.238, 64.233.165.84, 34.104.35.123, 93.184.221.240, 172.217.17.67, 172.217.17.78
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.976474175199495 |
Encrypted: | false |
SSDEEP: | 48:87dGTiS6HlOidAKZdA1FehwiZUklqehXy+3:8MPNoy |
MD5: | 6F93E91B96D1F9B7BAFE3DB36F33A1BB |
SHA1: | C3E69A4EEDAF9E11ADE7F947BB19469B44C31DB6 |
SHA-256: | EFF68D4543B7DFB6ED24877E44B8E9E4A5A7D572B3A51396D39BBD60B92CBA1E |
SHA-512: | 521AB3CC7B8458E08B6F87FFD062D37BDEF6508910FBDE7269767E66C5F6FDB4A1790A1E6BC0E4EE79239A35A47CC57811660C7D39F3BE731538B54221F9A068 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.992879769951146 |
Encrypted: | false |
SSDEEP: | 48:8hdGTiS6HlOidAKZdA1seh/iZUkAQkqehYy+2:8SPj9QNy |
MD5: | 517B65AB70424CADFCA257A9A6ECC289 |
SHA1: | AAA70401CEB70588A9DD20B43922BC606CC97EF0 |
SHA-256: | 991BC8F6C91A67E3DC14F01FEC26062CA990A784ECC5DC21ED343ABA52763D3B |
SHA-512: | F3C552F4C891FC2A2955D35DA9DDA603683DA7114C4B51E1312F9327AC47B62EC3A9776FC34B32BB611B009D36416A5E5A42EC4F019AB1A036A9792C3AC75E03 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.002740380859729 |
Encrypted: | false |
SSDEEP: | 48:88dGTiSAHlOidAKZdA14meh7sFiZUkmgqeh7sWy+BX:8xP5n8y |
MD5: | 15FB131C85958107C367567629CEC191 |
SHA1: | 17F30560C3ED31836D38F04CDB929ED955B286FA |
SHA-256: | 8ECF7FF9C2E1F05F8777348554A2EFBDC86E15F85D97F05C230D179A5C24353C |
SHA-512: | 892B165B8B69D71143D6CD23EE957461DAE8AA8C18AF286196CCE5A8AB37A819786A5CCC91E365CB29D9F4D322EE088A8E0F25E8A6C29B0103FDB6A841420F59 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.99115655048477 |
Encrypted: | false |
SSDEEP: | 48:83dGTiS6HlOidAKZdA1TehDiZUkwqehky+R:8QPQey |
MD5: | 5EB7169C33E6F279689FEB99BDCFF79D |
SHA1: | B4643C46B5ADE745413540C45F23F9E125DC3588 |
SHA-256: | DBF88D73A1AEF3BC562625F81E45EDA4F2C281E7BD3378DBD0AFB720AD9AEA02 |
SHA-512: | E03C28B6AF1FADC1EFD828C223E43FB2ED128E9F67177D220ADAEB2FC336F390972B7D1620F311A5975586526DE55F911668C1CB53122533E60620A6A5E8CDD5 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9806889295362273 |
Encrypted: | false |
SSDEEP: | 48:8JHdGTiS6HlOidAKZdA1dehBiZUk1W1qeh6y+C:8uPw9ay |
MD5: | 765660B292BB9237D078DCBAABE95223 |
SHA1: | 3A16A6CBC71776CE86DBF211B5B4EFC593E0AC11 |
SHA-256: | 1AF784C17AE4DA053AD8CA521A4A4D8A715C19849CCFA81D38E4FB9CDA524777 |
SHA-512: | BDAA9D2B5F77D2F4F5549BFC364634275A0650B51EA187C3A11E78D28C4C8AC2C26CC0B059164D425A2423484D9E03A63D2C1EA2343A17E62C03BC0B81B9A23C |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.988798889055523 |
Encrypted: | false |
SSDEEP: | 48:83dGTiS6HlOidAKZdA1duTeehOuTbbiZUk5OjqehOuTb8y+yT+:8QPiTfTbxWOvTb8y7T |
MD5: | EDE1FF7E259E71D832E01400EC9BF456 |
SHA1: | B192D0BD7A61BAB5E3B86EC6E52A0FB6B6443D8A |
SHA-256: | 05CE36C3DB59DFE123FF761AD3847670EADF61A03335AD5A9576C2B4267227D4 |
SHA-512: | 9951830B1224137DB50B0869A75D43041ED01733D81628AC192DB977838E4642F7B638C25A2315BA6AD1C3DA6D72FD5BC9607776692AE4292DCF760C494116DA |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 22 |
Entropy (8bit): | 3.82306798227366 |
Encrypted: | false |
SSDEEP: | 3:YBAvMFjJ4:YwMZJ4 |
MD5: | 689525EE6C812E73A44B6AA1036AB53A |
SHA1: | 7350CB4703A96EA7C140BD30DA9A6D1BCFF36EB2 |
SHA-256: | 37EC4665A8102D115FFD1AC20DAE94C98B4DAC64B0C1A68228AA2A531CAEB35D |
SHA-512: | DA6DEFF19F0B2BF5E0EF17B3CAE34A0D44C5D48FBF9F3FFEDD00CEA74F923E1A3E9C4C926A6564C889CCA21041550F557E1EC00DB9E35502FFC794A5F9E9722E |
Malicious: | false |
Reputation: | low |
URL: | https://bc1qcr8muz00d2v7uqg5ggulrmm.com/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 22 |
Entropy (8bit): | 3.82306798227366 |
Encrypted: | false |
SSDEEP: | 3:YBAvMFjJ4:YwMZJ4 |
MD5: | 689525EE6C812E73A44B6AA1036AB53A |
SHA1: | 7350CB4703A96EA7C140BD30DA9A6D1BCFF36EB2 |
SHA-256: | 37EC4665A8102D115FFD1AC20DAE94C98B4DAC64B0C1A68228AA2A531CAEB35D |
SHA-512: | DA6DEFF19F0B2BF5E0EF17B3CAE34A0D44C5D48FBF9F3FFEDD00CEA74F923E1A3E9C4C926A6564C889CCA21041550F557E1EC00DB9E35502FFC794A5F9E9722E |
Malicious: | false |
Reputation: | low |
URL: | https://bc1qcr8muz00d2v7uqg5ggulrmm.com/ |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 26, 2024 01:06:14.850735903 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:14.850770950 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:14.850835085 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:14.851243973 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:14.851257086 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.074167013 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.074470043 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.074487925 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.076033115 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.076111078 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.077209949 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.077296019 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.077660084 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.077759981 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.077770948 CET | 443 | 49695 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.077779055 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.078109980 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.078129053 CET | 49695 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.078151941 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:16.078284979 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.078497887 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:16.078516960 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.342422009 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.342694998 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:17.342714071 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.343744993 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.343813896 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:17.344926119 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:17.344984055 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.345165968 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:17.387367010 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.387954950 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:17.387988091 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:17.435925961 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.031408072 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:18.031486034 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:18.031636953 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.038453102 CET | 49697 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.038469076 CET | 443 | 49697 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:18.175595999 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:18.175628901 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.175719023 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:18.175962925 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:18.175977945 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.313740015 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.313782930 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:18.313886881 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.314265966 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:18.314279079 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:18.405441999 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:18.405478954 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:18.405549049 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:18.405787945 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:18.405802965 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:18.936218023 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:19.236975908 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:19.482574940 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.482916117 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.482938051 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.483999968 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.485129118 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.485129118 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.485337019 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.485343933 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.485518932 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.537050962 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.537067890 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.590256929 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.622966051 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.630342007 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.630362988 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.631326914 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.631836891 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.631836891 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.631900072 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.631911993 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.631911993 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.632054090 CET | 443 | 49699 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.632633924 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.632669926 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.632669926 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.632669926 CET | 49699 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.633027077 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.633028030 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:19.633057117 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:19.852535009 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:19.961088896 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.961169958 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.962001085 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962008953 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962018967 CET | 443 | 49698 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.962061882 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:19.962181091 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962181091 CET | 49698 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962182045 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962415934 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:19.962429047 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:20.147809029 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:20.154354095 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:20.154382944 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:20.155472040 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:20.156327009 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:20.158063889 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:20.158134937 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:20.200005054 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:20.200027943 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:20.247972965 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:20.854109049 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:20.855676889 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:20.855701923 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:20.856038094 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:20.856524944 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:20.856584072 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:20.856810093 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:20.899336100 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:21.065948009 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:21.185874939 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.186182976 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:21.186197042 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.186558962 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.186861038 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:21.186932087 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.186995029 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:21.231333017 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.542515993 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:21.542582035 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:21.542638063 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:21.543611050 CET | 49701 | 443 | 192.168.2.16 | 172.67.134.10 |
Nov 26, 2024 01:06:21.543632030 CET | 443 | 49701 | 172.67.134.10 | 192.168.2.16 |
Nov 26, 2024 01:06:21.649869919 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.649950981 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:21.650005102 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:21.650201082 CET | 49703 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:06:21.650216103 CET | 443 | 49703 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:06:23.472928047 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:23.524552107 CET | 49690 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:25.902554035 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:25.902590036 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:25.902698994 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:25.904711008 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:25.904721022 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:27.107321024 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:27.410955906 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:27.649883986 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:27.649986982 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:27.653696060 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:27.653732061 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:27.654000998 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:27.696965933 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:27.704632998 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:27.751328945 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.017083883 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:28.288964033 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:28.340389967 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340423107 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340431929 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340442896 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340472937 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340537071 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.340612888 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.340653896 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.340677023 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.360833883 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.360934019 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.360946894 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.361011028 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.361124992 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.361162901 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:28.361188889 CET | 49708 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:06:28.361203909 CET | 443 | 49708 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:06:29.228960991 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:29.854167938 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:29.854226112 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:29.854319096 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:29.887418032 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:29.887450933 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:29.887546062 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:29.888735056 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:29.888747931 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.271837950 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.271972895 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.275661945 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.275674105 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.275990963 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.314264059 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.359338045 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.572124958 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:31.635958910 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:31.784667969 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.784847975 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.784931898 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.784957886 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.784976006 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.784976959 CET | 49710 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.784986019 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.784992933 CET | 443 | 49710 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.816049099 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.816082954 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.816195011 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.816453934 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:31.816468954 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:31.828449965 CET | 49700 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:06:31.828474998 CET | 443 | 49700 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:06:31.874054909 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:32.482131004 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:33.241426945 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.241530895 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.242794991 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.242803097 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.243037939 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.244195938 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.287338018 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.697053909 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:33.768356085 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.768426895 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.768723011 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.769335032 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.769335032 CET | 49711 | 443 | 192.168.2.16 | 23.218.208.109 |
Nov 26, 2024 01:06:33.769352913 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:33.769356966 CET | 443 | 49711 | 23.218.208.109 | 192.168.2.16 |
Nov 26, 2024 01:06:36.108000040 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:36.444010019 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:37.898978949 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Nov 26, 2024 01:06:40.913086891 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:06:46.055124998 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Nov 26, 2024 01:06:50.526042938 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Nov 26, 2024 01:07:04.803006887 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:04.803045988 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:04.803128958 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:04.803603888 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:04.803617001 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:06.604965925 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:06.605135918 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:06.606847048 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:06.606875896 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:06.607404947 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:06.608762980 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:06.655328989 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.319006920 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.319071054 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.319116116 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.319173098 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.319246054 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.319287062 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.319308996 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358254910 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358319998 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358347893 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358378887 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358453035 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358571053 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358618975 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358670950 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358704090 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358704090 CET | 49712 | 443 | 192.168.2.16 | 4.245.163.56 |
Nov 26, 2024 01:07:07.358736992 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:07.358772039 CET | 443 | 49712 | 4.245.163.56 | 192.168.2.16 |
Nov 26, 2024 01:07:18.038016081 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:18.038050890 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:18.038147926 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:18.038366079 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:18.038378954 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:18.326165915 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:18.326205015 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:18.326289892 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:18.326534033 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:18.326545954 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:19.298760891 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.299222946 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.299261093 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.300385952 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.300688028 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.300808907 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.300865889 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.347191095 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.768601894 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.768690109 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.768767118 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.768970966 CET | 49714 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.768991947 CET | 443 | 49714 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.769649029 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.769690037 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:19.769773006 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.769983053 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:19.769998074 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:20.108812094 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:20.109095097 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:20.109117985 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:20.109431982 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:20.109848022 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:20.109916925 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:20.162100077 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:20.980176926 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:20.980922937 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:20.980952978 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:20.981323957 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:20.981635094 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:20.981703043 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:20.981766939 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:21.025263071 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:21.025281906 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:21.475332975 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:21.475418091 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:21.475481987 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:21.475733042 CET | 49716 | 443 | 192.168.2.16 | 35.190.80.1 |
Nov 26, 2024 01:07:21.475754023 CET | 443 | 49716 | 35.190.80.1 | 192.168.2.16 |
Nov 26, 2024 01:07:29.788742065 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:29.788809061 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:07:29.788873911 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:29.825664043 CET | 49715 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:07:29.825687885 CET | 443 | 49715 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:08:18.387418032 CET | 49718 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:08:18.387455940 CET | 443 | 49718 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:08:18.387568951 CET | 49718 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:08:18.387821913 CET | 49718 | 443 | 192.168.2.16 | 142.250.181.100 |
Nov 26, 2024 01:08:18.387835979 CET | 443 | 49718 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:08:20.079869986 CET | 443 | 49718 | 142.250.181.100 | 192.168.2.16 |
Nov 26, 2024 01:08:20.129292965 CET | 49718 | 443 | 192.168.2.16 | 142.250.181.100 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 26, 2024 01:06:13.677145958 CET | 53 | 64439 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:13.723345995 CET | 53 | 53597 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:14.377897024 CET | 59249 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:14.378156900 CET | 51721 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:14.705905914 CET | 53 | 59249 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:14.707063913 CET | 53 | 51721 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:14.710095882 CET | 56890 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:14.710300922 CET | 51979 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:14.849553108 CET | 53 | 56890 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:14.850100040 CET | 53 | 51979 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:16.446173906 CET | 53 | 53956 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.035778999 CET | 52503 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:18.036093950 CET | 54211 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:18.174643040 CET | 53 | 52503 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.175143957 CET | 53 | 54211 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.265289068 CET | 57810 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:18.265590906 CET | 56161 | 53 | 192.168.2.16 | 1.1.1.1 |
Nov 26, 2024 01:06:18.404258966 CET | 53 | 57810 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:18.404587984 CET | 53 | 56161 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:33.469326973 CET | 53 | 54014 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:06:52.310842037 CET | 53 | 55145 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:07:13.657381058 CET | 53 | 58878 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:07:14.871562004 CET | 53 | 55368 | 1.1.1.1 | 192.168.2.16 |
Nov 26, 2024 01:07:23.283987999 CET | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Nov 26, 2024 01:07:43.834517956 CET | 53 | 52213 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Nov 26, 2024 01:06:14.377897024 CET | 192.168.2.16 | 1.1.1.1 | 0x1b8a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 26, 2024 01:06:14.378156900 CET | 192.168.2.16 | 1.1.1.1 | 0x910 | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 26, 2024 01:06:14.710095882 CET | 192.168.2.16 | 1.1.1.1 | 0x2232 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 26, 2024 01:06:14.710300922 CET | 192.168.2.16 | 1.1.1.1 | 0x1228 | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 26, 2024 01:06:18.035778999 CET | 192.168.2.16 | 1.1.1.1 | 0x6cc2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 26, 2024 01:06:18.036093950 CET | 192.168.2.16 | 1.1.1.1 | 0xacf2 | Standard query (0) | 65 | IN (0x0001) | false | |
Nov 26, 2024 01:06:18.265289068 CET | 192.168.2.16 | 1.1.1.1 | 0xa0f2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 26, 2024 01:06:18.265590906 CET | 192.168.2.16 | 1.1.1.1 | 0x31be | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Nov 26, 2024 01:06:14.705905914 CET | 1.1.1.1 | 192.168.2.16 | 0x1b8a | No error (0) | 104.21.5.242 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:14.705905914 CET | 1.1.1.1 | 192.168.2.16 | 0x1b8a | No error (0) | 172.67.134.10 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:14.707063913 CET | 1.1.1.1 | 192.168.2.16 | 0x910 | No error (0) | 65 | IN (0x0001) | false | |||
Nov 26, 2024 01:06:14.849553108 CET | 1.1.1.1 | 192.168.2.16 | 0x2232 | No error (0) | 172.67.134.10 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:14.849553108 CET | 1.1.1.1 | 192.168.2.16 | 0x2232 | No error (0) | 104.21.5.242 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:14.850100040 CET | 1.1.1.1 | 192.168.2.16 | 0x1228 | No error (0) | 65 | IN (0x0001) | false | |||
Nov 26, 2024 01:06:18.174643040 CET | 1.1.1.1 | 192.168.2.16 | 0x6cc2 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:18.404258966 CET | 1.1.1.1 | 192.168.2.16 | 0xa0f2 | No error (0) | 142.250.181.100 | A (IP address) | IN (0x0001) | false | ||
Nov 26, 2024 01:06:18.404587984 CET | 1.1.1.1 | 192.168.2.16 | 0x31be | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49697 | 172.67.134.10 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:17 UTC | 674 | OUT | |
2024-11-26 00:06:18 UTC | 772 | IN | |
2024-11-26 00:06:18 UTC | 22 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49698 | 35.190.80.1 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:19 UTC | 570 | OUT | |
2024-11-26 00:06:19 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 49701 | 172.67.134.10 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:20 UTC | 618 | OUT | |
2024-11-26 00:06:21 UTC | 805 | IN | |
2024-11-26 00:06:21 UTC | 22 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 49703 | 35.190.80.1 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:21 UTC | 496 | OUT | |
2024-11-26 00:06:21 UTC | 402 | OUT | |
2024-11-26 00:06:21 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 49708 | 4.245.163.56 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:27 UTC | 306 | OUT | |
2024-11-26 00:06:28 UTC | 560 | IN | |
2024-11-26 00:06:28 UTC | 15824 | IN | |
2024-11-26 00:06:28 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.16 | 49710 | 23.218.208.109 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:31 UTC | 161 | OUT | |
2024-11-26 00:06:31 UTC | 478 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.16 | 49711 | 23.218.208.109 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:06:33 UTC | 239 | OUT | |
2024-11-26 00:06:33 UTC | 534 | IN | |
2024-11-26 00:06:33 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.16 | 49712 | 4.245.163.56 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:07:06 UTC | 306 | OUT | |
2024-11-26 00:07:07 UTC | 560 | IN | |
2024-11-26 00:07:07 UTC | 15824 | IN | |
2024-11-26 00:07:07 UTC | 14181 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.16 | 49714 | 35.190.80.1 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:07:19 UTC | 576 | OUT | |
2024-11-26 00:07:19 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.16 | 49716 | 35.190.80.1 | 443 | 6864 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-11-26 00:07:20 UTC | 502 | OUT | |
2024-11-26 00:07:20 UTC | 457 | OUT | |
2024-11-26 00:07:21 UTC | 168 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 19:06:11 |
Start date: | 25/11/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 19:06:12 |
Start date: | 25/11/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 19:06:13 |
Start date: | 25/11/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |