Windows
Analysis Report
https://sway.cloud.microsoft/FmBEL5nr1CkYwv7j?ref=Link
Overview
General Information
Detection
Score: | 0 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
- chrome.exe (PID: 6784 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 5444 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2184 --fi eld-trial- handle=200 8,i,166097 1658912516 0765,14148 8173233721 05267,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6480 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://sway. cloud.micr osoft/FmBE L5nr1CkYwv 7j?ref=Lin k" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
www.sway-cdn.com | 2.20.211.3 | true | false | high | |
s-part-0017.t-0009.fb-t-msedge.net | 13.107.253.45 | true | false | high | |
s-part-0017.t-0009.t-msedge.net | 13.107.246.45 | true | false | high | |
www.google.com | 142.250.184.228 | true | false | high | |
sway.com | 52.111.243.45 | true | false | high | |
sway.cloud.microsoft | unknown | unknown | false | high | |
login.microsoftonline.com | unknown | unknown | false | high | |
eus-www.sway-cdn.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
2.20.211.3 | www.sway-cdn.com | European Union | 16625 | AKAMAI-ASUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
52.111.243.44 | unknown | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
142.250.184.228 | www.google.com | United States | 15169 | GOOGLEUS | false | |
52.111.243.45 | sway.com | United States | 8075 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false |
IP |
---|
192.168.2.17 |
192.168.2.16 |
192.168.2.23 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1592163 |
Start date and time: | 2025-01-15 21:01:19 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 31s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | https://sway.cloud.microsoft/FmBEL5nr1CkYwv7j?ref=Link |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean0.win@17/86@20/8 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, WMIADAP.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.186.163, 142.250.186.78, 64.233.184.84, 216.58.206.78, 142.250.184.206, 23.192.240.100, 40.126.32.76, 40.126.32.134, 40.126.32.68, 40.126.32.133, 40.126.32.74, 40.126.32.72, 40.126.32.140, 20.190.160.22, 142.250.185.238, 172.217.18.10, 142.250.185.234, 142.250.186.106, 216.58.206.42, 142.250.185.202, 172.217.16.138, 172.217.16.202, 142.250.184.202, 142.250.185.106, 142.250.186.138, 142.250.185.74, 142.250.181.234, 216.58.206.74, 142.250.184.234, 142.250.186.170, 172.217.23.106, 142.250.185.110, 216.58.206.46, 142.250.184.227, 88.221.168.226, 13.107.253.45, 13.107.246.45, 4.175.87.197, 20.109.210.53
- Excluded domains from analysis (whitelisted): clients1.google.com, www.tm.ak.prd.aadg.trafficmanager.net, azurefd-t-fb-prod.trafficmanager.net, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, slscr.update.microsoft.com, clientservices.googleapis.com, www.sway-cdn.com.edgekey.net, e9901.dscg.akamaiedge.net, ak.privatelink.msidentity.com, firstparty-azurefd-prod.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, login.mso.msidentity.com, clients.l.google.com, wcpstatic.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- VT rate limit hit for: https://sway.cloud.microsoft/FmBEL5nr1CkYwv7j?ref=Link
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.9873758509362602 |
Encrypted: | false |
SSDEEP: | 48:8eCdDTHLvjH4idAKZdA1FehwiZUklqehQy+3:8e+LDS/y |
MD5: | 809CAC7E266449A9B718956E860467A2 |
SHA1: | 5E6B5DABD968D890FEC42A9D8588343F10A803BE |
SHA-256: | CB9CBA76714D7843FA7B3FDF009193A3F5B7FF49F07DB61D4B8F8348F813CC6B |
SHA-512: | A722D7DDE22712B9F8821085D25D37BAE22996B063CFC84CF1FD31E050E8B06245878BB340CB6E1DB8BF8B203980AE8EE3A81F37837E6C6E500ADC891FB288F6 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 4.002810231703286 |
Encrypted: | false |
SSDEEP: | 48:8SCdDTHLvjH4idAKZdA1seh/iZUkAQkqehvy+2:8S+LDM9QWy |
MD5: | 6D8B79352199FB120982397161756F8B |
SHA1: | C2634E00AFEF639C91B62C51B4D7F6A01B9CEE87 |
SHA-256: | 2AF6B94C83B00D248CE42FF11A45C58D3310332E2037FE4DA0874A8840B70E22 |
SHA-512: | 181251061B8B73CAC6BC4ED164DCF33BE34A897CCED3A325549773E0E7AED66ECB58FFC7429537D3EA6E490F382F13191FB48BCC31D9C74BEFA572F32E33AC1A |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.010155333176078 |
Encrypted: | false |
SSDEEP: | 48:8WdDTHLvAH4idAKZdA14meh7sFiZUkmgqeh7sdy+BX:86LDpnLy |
MD5: | 852C31E73E0DA3B18DBEC7E76DBE468D |
SHA1: | A17B6B73D10D84B120654EC400A18B8BAA6FA1B4 |
SHA-256: | F4C8E723F5637893C5563BBC2E7994DDC7329A984F095C6993F755F5ACFB4CBD |
SHA-512: | 9136468F9AEADAAC4B1912BC10FF23E73D2AF3D6A1B9715E5FD3A3D3D5481CDE52E12E9B41FEBAD9CFA9A3D254F7E86956A1E6E51AF57115B4C2AA95122355F3 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9973909274650823 |
Encrypted: | false |
SSDEEP: | 48:83CdDTHLvjH4idAKZdA1TehDiZUkwqehjy+R:83+LDHVy |
MD5: | 3DD9A2395E95C132DA5540E34A6F6944 |
SHA1: | 2B9F91BF682BA0718E2D0C7C73E60A21570D9472 |
SHA-256: | 2A05D999C39C9F6EEEFE1169B1A2C2C4486D81689DD351E9D90B7C3E46573938 |
SHA-512: | A0630BC4B2DD6BA8C9908A69C2B0CBD02A06ACE226C148CC2ECD8D58D20660D3309176A366E1C57C16D12831E15F3129F5D375ADB0A153DEE5489B31D8CCE0D4 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.990839074460483 |
Encrypted: | false |
SSDEEP: | 48:8nCdDTHLvjH4idAKZdA1dehBiZUk1W1qehJy+C:8n+LDX9py |
MD5: | 06757FC857939D8BAE934CF2AFDBA090 |
SHA1: | 9D53B9EE78AF12F253204239490733CE9CD69BF8 |
SHA-256: | 3715353982AA86EC1F6BAF633376F7F418D2CD077232160647C1AC1549691092 |
SHA-512: | 184FCD6EEFBF1D256D91EA5E559552B410F0AB07AACBFFC531CF03ADB5837F8ADFA505C9C21150B84E25F76E4839680A3482115C04C96FA04C7F73CFAF906F82 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.99785106779965 |
Encrypted: | false |
SSDEEP: | 48:8ZCdDTHLvjH4idAKZdA1duTeehOuTbbiZUk5OjqehOuTbLy+yT+:8Z+LDbTfTbxWOvTbLy7T |
MD5: | 20260C416C5586A4734A9D872137F753 |
SHA1: | 9E25EB42BF40391B7D7050982ECDBB363EDE6CCC |
SHA-256: | A96C07C30BB7F2E8E53A2FB06E69AF5D9D3D71F99B35ABA1075E9D95B87EC206 |
SHA-512: | A279B2A7F0253F368C81DDE1772A24E2901D34D11963360BAB5E2BC4ADB18FA755A001049802A2230C654DED249D6116AA4CB4D56A38ECE4FDB9A16A7B33E981 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1278 |
Entropy (8bit): | 6.207694717678626 |
Encrypted: | false |
SSDEEP: | 24:3g20iGEAEIEiE4EerEErE0CRN9tYwa4ffOhJVJQdRNbsJl:3g20ivB5DpxEg0cqwa4f2zbQd4Jl |
MD5: | 71FE5AA913D40CB6E596C795EB2A0BDC |
SHA1: | 7B9925CEE0045982261680D4ECEF525B29EFC314 |
SHA-256: | 11572F274D092466B9249659CFD382A0CFB640B23DF4D4A1071C1B8D70147415 |
SHA-512: | 42504F4B56DCC687B6D0DD4EC457497E5E09B69676CAE085F9B8047050B778A1C3EB10543BBAAF3D6595DAFA0C420F356B147A76A7941B75D8576964E691443E |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/whitespinner.32x32.gif |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 126398 |
Entropy (8bit): | 4.971382267875293 |
Encrypted: | false |
SSDEEP: | 3072:ap/vdgJ03FmVSxJMKd7BOZ5gTfL0F2p9ptd2XvxbCz:mfBMKHSQ4F+eS |
MD5: | 5F20D18B83A97D000E2DA0C3A8222FF3 |
SHA1: | 536C593CFCA83A76CE724D79A88F8FB08163E139 |
SHA-256: | B59A9975A9E2891003414F9E02164DC765D7ACBE2A430CD934C585FFC931229A |
SHA-512: | 15D39129598CD645FE0C9F38C6416240D624EEA8F61434021C6B400C9EFB6A52A05871CFBEA68F8622A2D044BD3226015E7A30E3074AC46599BCBC29C2C32DAD |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 10721 |
Entropy (8bit): | 7.861629642768925 |
Encrypted: | false |
SSDEEP: | 192:jLXzxgn8tJG8kyLa1gTt5L632uebvEjHiCX+UydtSHiuEXr:jLXzKnaJzRY32BEjHRX+ZdGiuQr |
MD5: | B0D76C4804189526DCEF946D94CA58A9 |
SHA1: | CE86C3623F53E4B39D9CD33CC924AFC45E91F94F |
SHA-256: | D46375075D66174F88AD9834C0695792C9AFDD0F20456231FA4A873280A2C434 |
SHA-512: | 37878EAF430A447DB093B946051FC9C35690B5BAC24DDB3E5FA877D5E11A1AACA3C5BBCFF9E51ADEB5CACDDFB70C6CC292416FA09D05B2046D2EF4B2CCC14BD1 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.875 |
Encrypted: | false |
SSDEEP: | 3:HKzL:yL |
MD5: | A6F9C78D997A801FBCC0836D25BC5B49 |
SHA1: | FABE913CE6F1EF3578FF48B7899B1108C81E61EA |
SHA-256: | 727B9D28113D6854D243727AA66D1D1FAB2E92C32C1DC16252CDC45E8C9F9E09 |
SHA-512: | 021A018896B35625F186D7B80314B3971A99A16C15F0E2964FAA5F13B45CDD22AC85CD4A23BF64CE0632AFD05BA352FB23164E54C7FFC2451B2C2D7C6A95B4DF |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAmW1Spo7DBpgRIFDfGPtCg=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 162114 |
Entropy (8bit): | 5.419887861692767 |
Encrypted: | false |
SSDEEP: | 1536:CUnyk8ZNO/G4GpwF7A0uo1BpJl45dZlwskr0u2h4C9Mc9eciZ:CU0Ze3NF7rf5l45XNohC9W |
MD5: | 9F5DBA23BBFB4E0D50AC9AA6CE998D1A |
SHA1: | 0F027B6B4FD323C708592DCDE052774CA7FD5FD6 |
SHA-256: | 4F2D6301347A2FBF30FED521F2D319E78CFFD90713336DCC9C0A2676DC3FB37C |
SHA-512: | 8D48F7478BBEDB8E87FF6CBFB9314798CF64163BAE4D91D5803E758081343685C8C7FC0AB639811334B0F3A317D26328B4140C826A96D7D75D513B07EA7A3406 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 8541 |
Entropy (8bit): | 7.650655574445131 |
Encrypted: | false |
SSDEEP: | 192:savZxnBsK+BlD3QdLeGHo0mM4hhtNm75d4pwSBzSh:3vZxnqCdHUxNmNaqOzSh |
MD5: | 1AFA12F43A0730654FCBF142BAAF34E3 |
SHA1: | 51836B66CB3EE5EC89ACC73723B65BF0AAA8202F |
SHA-256: | 76890C8F5F4167CC49597143A1A3E68B6EC83AE1BC03D89711CA819576C25811 |
SHA-512: | D97DB0A0AD27A44E7F9F0A2FA5AFA46F4721526325E256A917E121AA0746CE1040F5D48E45537A12B97360BD292254447B0F48591577BE5AC70723C8D6116140 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/s/FmBEL5nr1CkYwv7j/images/zAisz-W1Ga6nsG?quality=506&allowAnimation=true |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 162114 |
Entropy (8bit): | 5.419887861692767 |
Encrypted: | false |
SSDEEP: | 1536:CUnyk8ZNO/G4GpwF7A0uo1BpJl45dZlwskr0u2h4C9Mc9eciZ:CU0Ze3NF7rf5l45XNohC9W |
MD5: | 9F5DBA23BBFB4E0D50AC9AA6CE998D1A |
SHA1: | 0F027B6B4FD323C708592DCDE052774CA7FD5FD6 |
SHA-256: | 4F2D6301347A2FBF30FED521F2D319E78CFFD90713336DCC9C0A2676DC3FB37C |
SHA-512: | 8D48F7478BBEDB8E87FF6CBFB9314798CF64163BAE4D91D5803E758081343685C8C7FC0AB639811334B0F3A317D26328B4140C826A96D7D75D513B07EA7A3406 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/feedback/OfficeBrowserFeedback.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1548698 |
Entropy (8bit): | 5.213073678696911 |
Encrypted: | false |
SSDEEP: | 24576:DNFeJZpT864p2Xt6V0qMVDwHCGHBTUw9Z+G/7JJn3:neHpT8Hp2Xt6V0q2DwHCGHBTUw9Z+G/X |
MD5: | 3A3ECA571E49966BDC90610849CB9AE5 |
SHA1: | FAF9F22A19CDE3CCA2B21FE2FB3FEC30A4E4E164 |
SHA-256: | 760897486502D412EF3E45FACF73BE4FC3DEAD7C928809C3D5C5F65E29F666A2 |
SHA-512: | 3BC663B6F5C687C3511825AC26FBDCC497F679DB7D658FA4411132D4986805C1CB5906C0A6B6B9C0D04B34597708A0752D795067A9046FCF506EE0C7872CB050 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8541 |
Entropy (8bit): | 7.650655574445131 |
Encrypted: | false |
SSDEEP: | 192:savZxnBsK+BlD3QdLeGHo0mM4hhtNm75d4pwSBzSh:3vZxnqCdHUxNmNaqOzSh |
MD5: | 1AFA12F43A0730654FCBF142BAAF34E3 |
SHA1: | 51836B66CB3EE5EC89ACC73723B65BF0AAA8202F |
SHA-256: | 76890C8F5F4167CC49597143A1A3E68B6EC83AE1BC03D89711CA819576C25811 |
SHA-512: | D97DB0A0AD27A44E7F9F0A2FA5AFA46F4721526325E256A917E121AA0746CE1040F5D48E45537A12B97360BD292254447B0F48591577BE5AC70723C8D6116140 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 18297 |
Entropy (8bit): | 5.044079059361469 |
Encrypted: | false |
SSDEEP: | 192:/O9cRa57f1rULrMUKxZkWV+awoHKreIWYeMSuhZ+6Kwy8b0URq3:/acQ5f1rkrMUK//VnzkSe+6KwfjRe |
MD5: | 07AEACE14BC25BD80965074A2E1BEF99 |
SHA1: | 1AAC494567122CBA3D74CE24F3929AAF6E795286 |
SHA-256: | 672C4522E341BC0C997527D35EF82B67428874DB680B485E9ACD5753BEB5CDBC |
SHA-512: | 5EC22428E8A5EB889F80D7AC8574CCEDED98BF783E19BAA678A3D4A80351C43644EC698FBB34FA867DC9DF57804899C7767062E21FF1A6A83237ECF1268E2AA6 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/Preload.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1191 |
Entropy (8bit): | 4.901790335768791 |
Encrypted: | false |
SSDEEP: | 24:YZUWnZNOgcZZC3aLBDhWuEIugyADYVsrEe6ByT+rK6:YXnZQZJnWusg34s4S+26 |
MD5: | D283604F5AE2A73E460A4ED4ED0F3173 |
SHA1: | 14646D287B7418D333AFBB4F706F71E5DD30CD79 |
SHA-256: | 4AA4F1E597282B4754DDDAB238AD28553A7FC855B926757053950B39C450CD7D |
SHA-512: | 8728499831BAFAE7530B0B62B5372940EA047F0FAA806666C97786BD10BD94710BF504FE0CC35780931B07BAD771C4159F99D4310669D6994311FDE7D3F6901A |
Malicious: | false |
Reputation: | low |
URL: | https://sway.cloud.microsoft/webappmanifest.json |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 253430 |
Entropy (8bit): | 5.247735041798601 |
Encrypted: | false |
SSDEEP: | 768:y5k/MpZL+RV5W/Hp0LrRQZsfgJVrSxFZafrJwr/x28/8pX8v0JampSXnzB2nGv5a:hnzSRZFsz8DuMrCoK4hW29lhxO+ |
MD5: | 042D35CD71CE494BF7819730894373E1 |
SHA1: | 968E6CE3EC065E0BC6CA4217A39F9C049B5491F9 |
SHA-256: | 3EC5AD6EB10D5D8045B9F7A8627C613E8E84369882843A7715FC81CE4426B3D1 |
SHA-512: | 54039E4D15F8C70B83110E36ECFB324F5E6478007622A03C96021B13619412C01AF741817A594509EA73BBFFB8B59D3EAC846A940DCFB40E17AE47D306BEAF15 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/Common.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7887 |
Entropy (8bit): | 5.325755396365933 |
Encrypted: | false |
SSDEEP: | 192:b+F27wN9BrbkGxwi3coAbRPQh+WNb3c4NX831R:KF2cNrbkGgoAtib392D |
MD5: | F299DC10BCDDD2E7808B978B3DE18936 |
SHA1: | D8273FB0282BFA670F554E45F8AE7B1F73EC8071 |
SHA-256: | 160DACA799B276D8CE387E0187D972D715ABEAD1399795BFF9EC2A64B494527C |
SHA-512: | 6578C21A647474AF527BE9D0F61A96A88D0A53A955BF8E5905E5B84DCD651B8E6F60963162BB32D9531AC1A332FAED330F79EFE50E556F772B2C82F6A7A39A7E |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/Content/modernizr-3.3.1-custom.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1548698 |
Entropy (8bit): | 5.213073678696911 |
Encrypted: | false |
SSDEEP: | 24576:DNFeJZpT864p2Xt6V0qMVDwHCGHBTUw9Z+G/7JJn3:neHpT8Hp2Xt6V0q2DwHCGHBTUw9Z+G/X |
MD5: | 3A3ECA571E49966BDC90610849CB9AE5 |
SHA1: | FAF9F22A19CDE3CCA2B21FE2FB3FEC30A4E4E164 |
SHA-256: | 760897486502D412EF3E45FACF73BE4FC3DEAD7C928809C3D5C5F65E29F666A2 |
SHA-512: | 3BC663B6F5C687C3511825AC26FBDCC497F679DB7D658FA4411132D4986805C1CB5906C0A6B6B9C0D04B34597708A0752D795067A9046FCF506EE0C7872CB050 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/StoryPage.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 7886 |
Entropy (8bit): | 3.9725278802902944 |
Encrypted: | false |
SSDEEP: | 24:i7x7LLLUvb5f8Tir5rbhSoGmse2J3W4PnpS4Gm1lZzwjB08kwjbMjyyyyyy3sj/O:gu9f/AomS49ZzSKTAbMXj6+2v4G6d |
MD5: | 765886EE3AF3ADC313CB7381B34E4858 |
SHA1: | A7BC43EB212CE09D3B5B864FF8BF041418B8AA58 |
SHA-256: | A92FACED88C70F90030B6DBF11C0E33714EB463624DFBD895904225F58466D3A |
SHA-512: | E794DEC7A4EA0E51134438713EF54A42C5BB41A413105567F7043C47E363A272545B2BF84DF006582370EF8A7F8FFE379DCFCCA0B7D48677926E308AB06A05F9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 254968 |
Entropy (8bit): | 5.158154121171024 |
Encrypted: | false |
SSDEEP: | 3072:VluPSaSvN5kaiDLCutlfU89lKazR42uz1eWaGMFW5dwgsY64OA1n:+2YlPOgEMAFXTOk |
MD5: | D67A4D0BDDF71AB21FCD71A66D962E17 |
SHA1: | 6D2A274BB0DB572A7D52B438F9CFC4BDF39D1F44 |
SHA-256: | 97074CA35C4DE9F01D6D58EC29988AC2A32F09BF95604C4D22CF7D3509E67605 |
SHA-512: | C28380170A952300D4D2A41B11E84DFA78E5A26518C4D3DC8F720EDF44E38792D4C02A00C87CE682A84B41CCC4F0F47C18B302550B6CAAD127A2293DA8B5F441 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/Content/jquery-ui-1.13.3-custom.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60442 |
Entropy (8bit): | 5.388841566581999 |
Encrypted: | false |
SSDEEP: | 1536:qnYykXj0ZePn1J3RdXdoGBRYdQGBgST4qs8XC53Dc1PthB:qnPkXj0ZePn9RUgis8XChiPt/ |
MD5: | FD14998BADF27D4F974CA33841C97397 |
SHA1: | D951A5FC5D3A3075E8986DBA845D956A9831423E |
SHA-256: | 2306CA934E2C1A52219D8A608C130F2BCDB7D859303F4CA5806CD48DB0C9AE6F |
SHA-512: | 64D91046B697AC8713F0D45B49498E80D62AAAB003F77ABC8DB57586060D897D1301A4287FA4240D1F366A420844D8807CA9C9C28A89ED4CF970579D07E3D9E0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 7887 |
Entropy (8bit): | 5.325755396365933 |
Encrypted: | false |
SSDEEP: | 192:b+F27wN9BrbkGxwi3coAbRPQh+WNb3c4NX831R:KF2cNrbkGgoAtib392D |
MD5: | F299DC10BCDDD2E7808B978B3DE18936 |
SHA1: | D8273FB0282BFA670F554E45F8AE7B1F73EC8071 |
SHA-256: | 160DACA799B276D8CE387E0187D972D715ABEAD1399795BFF9EC2A64B494527C |
SHA-512: | 6578C21A647474AF527BE9D0F61A96A88D0A53A955BF8E5905E5B84DCD651B8E6F60963162BB32D9531AC1A332FAED330F79EFE50E556F772B2C82F6A7A39A7E |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 18364 |
Entropy (8bit): | 5.291977630206291 |
Encrypted: | false |
SSDEEP: | 384:I5fTtX/CaTSQ5HmNmDARrayBFk7TcCnvCdHDLIxTr8C:8xX/CaTSQxmNmGFk7TcCvCdHfIxcC |
MD5: | D22D7500AB7C72DA9195C571002C2495 |
SHA1: | 528C2D1D834916F8A4C47191CB20D16D2F6A53D3 |
SHA-256: | F2BFC0B2FFA4E26071E6D6D8B73D750F6E9F8EB4E021A8FFDB18B84AF0B919A3 |
SHA-512: | 2F5A90943BDCDCEF28FFB77435D0562E799BBB91105E1F92441886E59ED28154EDCF71B3AAC1B26D96F2620ACC5C313E2B5670D5FE38711CD69F7AD3ECEA8AD5 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 254968 |
Entropy (8bit): | 5.158154121171024 |
Encrypted: | false |
SSDEEP: | 3072:VluPSaSvN5kaiDLCutlfU89lKazR42uz1eWaGMFW5dwgsY64OA1n:+2YlPOgEMAFXTOk |
MD5: | D67A4D0BDDF71AB21FCD71A66D962E17 |
SHA1: | 6D2A274BB0DB572A7D52B438F9CFC4BDF39D1F44 |
SHA-256: | 97074CA35C4DE9F01D6D58EC29988AC2A32F09BF95604C4D22CF7D3509E67605 |
SHA-512: | C28380170A952300D4D2A41B11E84DFA78E5A26518C4D3DC8F720EDF44E38792D4C02A00C87CE682A84B41CCC4F0F47C18B302550B6CAAD127A2293DA8B5F441 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 56984 |
Entropy (8bit): | 7.991601053212225 |
Encrypted: | true |
SSDEEP: | 1536:811aywQ5jt8+w0WXIdAEW13i1HhstvBNdP6D:8uy3RhwtXIs3i0JNG |
MD5: | 45586F9929A78F6FC868E820C20444CB |
SHA1: | A4FC62D30978CC3BCFEE1F9623ECDD53AEBBC47A |
SHA-256: | FCBD729033BCFB895F97B76D14300604CEDFFFEBDA9F067FD98696A7CF7FC81A |
SHA-512: | 8E737DBF6206D011B8CACA6EEDC30E68214E72C9B9718C9E94C6A6982C99C960A944BF8309760B702CB65C91A080FC41B26CE7958D58FFF11108B2239987043F |
Malicious: | false |
Reputation: | low |
URL: | https://www.sway-cdn.com/Content/ModernMT.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 52717 |
Entropy (8bit): | 5.462668685745912 |
Encrypted: | false |
SSDEEP: | 1536:tjspYRrxlhd0fq3agV3IcgPPPI3r7DAQHCloIB3Tj7xHw:tjZLCtxQ |
MD5: | 413FCC759CC19821B61B6941808B29B5 |
SHA1: | 1AD23B8A202043539C20681B1B3E9F3BC5D55133 |
SHA-256: | DAF7759FEDD9AF6C4D7E374B0D056547AE7CB245EC24A1C4ACF02932F30DC536 |
SHA-512: | E9BF8A74FEF494990AAFD15A0F21E0398DC28B4939C8F9F8AA1F3FFBD18056C8D1AB282B081F5C56F0928C48E30E768F7E347929304B55547F9CA8C1AABD80B8 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 144842 |
Entropy (8bit): | 5.150313101589764 |
Encrypted: | false |
SSDEEP: | 3072:+7CGYpHIWTskrJ080PsvvASNPeux8sCoKV:+7r0IWQkrJP0PuYSNPeux8cKV |
MD5: | F69ED7B2C776908F19485EAC7440E623 |
SHA1: | 2E67A11B7C59AF6B7D4E93A381B1F798526C4604 |
SHA-256: | 511C42B68EE9AC6C4D65E42B413E7B3A94EA4A03759778C552B2A04424AB9C5A |
SHA-512: | 2434FF77FD7984B1346B5304B0166ED9F356003C4FD5717C19E5AC5E5E13E5F15564F686003959784DACEB95AE004A4853DA9F202A6AFE7DDDD20D948DBFABCB |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/tdb.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1072254 |
Entropy (8bit): | 5.242135476915587 |
Encrypted: | false |
SSDEEP: | 12288:s4aABGxXVY/xMVVj5apQ+fhNoXX38fYyhPm:YXVIuj5apQ+fhNoXcfY2Pm |
MD5: | A1F2EBBEAC975DD339C6DB9FCA63F508 |
SHA1: | 232B27F4EE6815C7B64B4C2B5FF887846473363C |
SHA-256: | 1A011AAF43355B8AD955EFD58135B5D7ECF1950DD7796B4DDF878A7F350495A5 |
SHA-512: | BB77D19EDFC221EDF82243575EBC673EB87002284A0AB53695CA07E3F4491916E91792FA49FC6474DD0E20921A19722A38209821B9C8326AD7B98D6D61EA40F9 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/Common.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1278 |
Entropy (8bit): | 6.207694717678626 |
Encrypted: | false |
SSDEEP: | 24:3g20iGEAEIEiE4EerEErE0CRN9tYwa4ffOhJVJQdRNbsJl:3g20ivB5DpxEg0cqwa4f2zbQd4Jl |
MD5: | 71FE5AA913D40CB6E596C795EB2A0BDC |
SHA1: | 7B9925CEE0045982261680D4ECEF525B29EFC314 |
SHA-256: | 11572F274D092466B9249659CFD382A0CFB640B23DF4D4A1071C1B8D70147415 |
SHA-512: | 42504F4B56DCC687B6D0DD4EC457497E5E09B69676CAE085F9B8047050B778A1C3EB10543BBAAF3D6595DAFA0C420F356B147A76A7941B75D8576964E691443E |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 6828 |
Entropy (8bit): | 6.882128586928089 |
Encrypted: | false |
SSDEEP: | 96:g5BUfTkjBmjHoKvSPHUQo+YgxISAirXlPSF:2mjHLvSPHUQo+YguSAulPW |
MD5: | 2BF75FED35AF53B95F6265C32AE6FA86 |
SHA1: | 20F92AED3AD96C505F7A21CCAE780D8CEE27F252 |
SHA-256: | 2E237D89D57788E810720FD97BCC0992E159044281956ECBA83EFD3A4F4B56CF |
SHA-512: | 2BBB7CF16CE7C6F63A86BAF60241A32539048402BFE7817C2A8FA76C2FC88C921FBB4B35D3FF3CB1830BF0852DCE0D80EAF47B157A38C483C9CC54FBE7CC9936 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6828 |
Entropy (8bit): | 6.882128586928089 |
Encrypted: | false |
SSDEEP: | 96:g5BUfTkjBmjHoKvSPHUQo+YgxISAirXlPSF:2mjHLvSPHUQo+YguSAulPW |
MD5: | 2BF75FED35AF53B95F6265C32AE6FA86 |
SHA1: | 20F92AED3AD96C505F7A21CCAE780D8CEE27F252 |
SHA-256: | 2E237D89D57788E810720FD97BCC0992E159044281956ECBA83EFD3A4F4B56CF |
SHA-512: | 2BBB7CF16CE7C6F63A86BAF60241A32539048402BFE7817C2A8FA76C2FC88C921FBB4B35D3FF3CB1830BF0852DCE0D80EAF47B157A38C483C9CC54FBE7CC9936 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/traveling_dots1color_shorter_white.gif |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 22140 |
Entropy (8bit): | 7.96759760346471 |
Encrypted: | false |
SSDEEP: | 384:hTmdQ8snfXNJcTsgXa8K2hGnVW7E+o291+ElKtTsQUYjJ5Fr3JIn7:dyQLfeM85Q2EM9vKtTs/av5In7 |
MD5: | 7D6194A2C2E90678FEE013960EA9ECA7 |
SHA1: | 98FA90EC84CAFCF1E0FF194664E8B4C4D99C056E |
SHA-256: | E27855EF831CD10EB0FE2153D1B169D24A148E0B81D3DEA001FD2637E7244238 |
SHA-512: | B2D8D89BECA36222AD1250562F5BDD3A0C9FB80DFAAADCC4EDE9B0008BE05342BEB3150607F8039C696EC68BAB270CF538A4941C4C54D536369ED62929FEEE7F |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/swayicon.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 128318 |
Entropy (8bit): | 7.996856043856003 |
Encrypted: | true |
SSDEEP: | 3072:wqY9f2hDtJYMi+L+ZO+Zn8CTG65N63uxZZQ9um:eaLYB+L+5nL63uLZQ9z |
MD5: | ED69A963D14845990C8C9067243BFC02 |
SHA1: | 10972BA274795DE4611D26E6D3F83C40E1D76DCF |
SHA-256: | 199C4A56DC05DC42344A9A8EC71C63B042FF5D041C1C6E0B924626A00B0214B5 |
SHA-512: | 2750B63440FA129E5A0CBD362EEB7C80D042DBE57C2EA42A9349FF62D55E5367E4E697FD1DF3CF9E20D103701B1F539E0F2AA97C3E5147C1487CCB5F8425B392 |
Malicious: | false |
Reputation: | low |
URL: | https://www.sway-cdn.com/Content/times.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 17928 |
Entropy (8bit): | 7.954619105636336 |
Encrypted: | false |
SSDEEP: | 384:rSpaQ8sLva3CffO4UtjKxjXPZ8dsiRZfMkSZpTmFJrB+1B7:LQLGynO4UpSjPytRbSZpTklE7 |
MD5: | 79FE1F8B05FEE28587B8F88540AEA467 |
SHA1: | 77465646D7C48B25DEBBE396810D515BC4EF34EF |
SHA-256: | 3BA8DB3C78DB3DC15CB4A8C2523B5FBE189CF4BA8A24B07A810616EF4946B279 |
SHA-512: | B6CCBE02E54AB5CF2A01268DCD73A30B3846C9B155A50F7A3ACD52C8B374EF14C5266544492B9A614886B4BFEAD2DFF07466FD6F2DD9E4B52567718F4DA6CAC7 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/swayiconsl.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 23668 |
Entropy (8bit): | 5.327071742901981 |
Encrypted: | false |
SSDEEP: | 384:htEiyJyaryP1riSiJsgkKrl7cIobvFX+TQOkVftbBxVBSOByEydZhDyTTJEFX1GV:wQLP1XIY2mVbNwOIbXIWFgH50lDh+F |
MD5: | 16596D4249F021D9B71BB5CADDB7CC3B |
SHA1: | 7D3F469CCEF320E01ECD9C601E80EF5192326869 |
SHA-256: | AA26CFE55E8CD183738F42180AAE291DD666F4D39062E8A44C97B0BE021946EF |
SHA-512: | 0450021880885D651CAB49C5BAC595D31D93FACC08917605F87B28FAEE41130E0418FEFC1F250211AE144F22E38AE518EF00077261B0E272916B2CF142B1A3C5 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/common_raw.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 18364 |
Entropy (8bit): | 5.291977630206291 |
Encrypted: | false |
SSDEEP: | 384:I5fTtX/CaTSQ5HmNmDARrayBFk7TcCnvCdHDLIxTr8C:8xX/CaTSQxmNmGFk7TcCvCdHfIxcC |
MD5: | D22D7500AB7C72DA9195C571002C2495 |
SHA1: | 528C2D1D834916F8A4C47191CB20D16D2F6A53D3 |
SHA-256: | F2BFC0B2FFA4E26071E6D6D8B73D750F6E9F8EB4E021A8FFDB18B84AF0B919A3 |
SHA-512: | 2F5A90943BDCDCEF28FFB77435D0562E799BBB91105E1F92441886E59ED28154EDCF71B3AAC1B26D96F2620ACC5C313E2B5670D5FE38711CD69F7AD3ECEA8AD5 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/Content/Hammer-2.0.4.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 126398 |
Entropy (8bit): | 4.971382267875293 |
Encrypted: | false |
SSDEEP: | 3072:ap/vdgJ03FmVSxJMKd7BOZ5gTfL0F2p9ptd2XvxbCz:mfBMKHSQ4F+eS |
MD5: | 5F20D18B83A97D000E2DA0C3A8222FF3 |
SHA1: | 536C593CFCA83A76CE724D79A88F8FB08163E139 |
SHA-256: | B59A9975A9E2891003414F9E02164DC765D7ACBE2A430CD934C585FFC931229A |
SHA-512: | 15D39129598CD645FE0C9F38C6416240D624EEA8F61434021C6B400C9EFB6A52A05871CFBEA68F8622A2D044BD3226015E7A30E3074AC46599BCBC29C2C32DAD |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/en-us/Resources.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 18297 |
Entropy (8bit): | 5.044079059361469 |
Encrypted: | false |
SSDEEP: | 192:/O9cRa57f1rULrMUKxZkWV+awoHKreIWYeMSuhZ+6Kwy8b0URq3:/acQ5f1rkrMUK//VnzkSe+6KwfjRe |
MD5: | 07AEACE14BC25BD80965074A2E1BEF99 |
SHA1: | 1AAC494567122CBA3D74CE24F3929AAF6E795286 |
SHA-256: | 672C4522E341BC0C997527D35EF82B67428874DB680B485E9ACD5753BEB5CDBC |
SHA-512: | 5EC22428E8A5EB889F80D7AC8574CCEDED98BF783E19BAA678A3D4A80351C43644EC698FBB34FA867DC9DF57804899C7767062E21FF1A6A83237ECF1268E2AA6 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 85617 |
Entropy (8bit): | 5.44311147735067 |
Encrypted: | false |
SSDEEP: | 768:w5k/MpZL+RV5W/Hp0LrRQZsfgJVrSxFZafrJwr/x28/8pX8v0JampSXnzw909Vhx:znz80pu1s |
MD5: | E8D4F0ABAD8FB107491A919BBD3F3D73 |
SHA1: | 1E048048BECE156C0EA924EB94FF22FF89201054 |
SHA-256: | 0FF91B144B5BA2FB8303FF9C01BFB1031C9B8B170332623DF2A8D85AACE6583A |
SHA-512: | D46ADD91310EF2CEF11491F20E4F55184C75CB610685E04F5E8388BFF9631A16BD61DA5E1A80617B0668E3AA642610CE49E834E76AF96F567691CFD121BED3E8 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/Preload.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 23668 |
Entropy (8bit): | 5.327071742901981 |
Encrypted: | false |
SSDEEP: | 384:htEiyJyaryP1riSiJsgkKrl7cIobvFX+TQOkVftbBxVBSOByEydZhDyTTJEFX1GV:wQLP1XIY2mVbNwOIbXIWFgH50lDh+F |
MD5: | 16596D4249F021D9B71BB5CADDB7CC3B |
SHA1: | 7D3F469CCEF320E01ECD9C601E80EF5192326869 |
SHA-256: | AA26CFE55E8CD183738F42180AAE291DD666F4D39062E8A44C97B0BE021946EF |
SHA-512: | 0450021880885D651CAB49C5BAC595D31D93FACC08917605F87B28FAEE41130E0418FEFC1F250211AE144F22E38AE518EF00077261B0E272916B2CF142B1A3C5 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 87535 |
Entropy (8bit): | 5.262801903047628 |
Encrypted: | false |
SSDEEP: | 1536:3RUX9uDgwxcy2KVBNwchN6SLaHEk2BSrBESp+a/IEk4aAocVi8SMBQ47GKO:vHNwcv9VBQpLl88SMBQ47GKO |
MD5: | C9A1B0AA0167C8A4DF724D18D06814A8 |
SHA1: | F3F468CCF735476C87E3B49E274EB3752A884607 |
SHA-256: | 7AA6B0E08F48A0F95D8DF7EA89E4CBFE1EF3D1E8C0F7373F7F25EDFB4E4A325E |
SHA-512: | 05352A89084C3B747C375EEA2107B9B3C660FFB5989D48F10EE30E4ACF917DB21FA7CE56F9B385DE0FCFD0873C4C4E9D96C48F2F38E26D5CD5DD28ED792C3E06 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1072254 |
Entropy (8bit): | 5.242135476915587 |
Encrypted: | false |
SSDEEP: | 12288:s4aABGxXVY/xMVVj5apQ+fhNoXX38fYyhPm:YXVIuj5apQ+fhNoXcfY2Pm |
MD5: | A1F2EBBEAC975DD339C6DB9FCA63F508 |
SHA1: | 232B27F4EE6815C7B64B4C2B5FF887846473363C |
SHA-256: | 1A011AAF43355B8AD955EFD58135B5D7ECF1950DD7796B4DDF878A7F350495A5 |
SHA-512: | BB77D19EDFC221EDF82243575EBC673EB87002284A0AB53695CA07E3F4491916E91792FA49FC6474DD0E20921A19722A38209821B9C8326AD7B98D6D61EA40F9 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 87535 |
Entropy (8bit): | 5.262801903047628 |
Encrypted: | false |
SSDEEP: | 1536:3RUX9uDgwxcy2KVBNwchN6SLaHEk2BSrBESp+a/IEk4aAocVi8SMBQ47GKO:vHNwcv9VBQpLl88SMBQ47GKO |
MD5: | C9A1B0AA0167C8A4DF724D18D06814A8 |
SHA1: | F3F468CCF735476C87E3B49E274EB3752A884607 |
SHA-256: | 7AA6B0E08F48A0F95D8DF7EA89E4CBFE1EF3D1E8C0F7373F7F25EDFB4E4A325E |
SHA-512: | 05352A89084C3B747C375EEA2107B9B3C660FFB5989D48F10EE30E4ACF917DB21FA7CE56F9B385DE0FCFD0873C4C4E9D96C48F2F38E26D5CD5DD28ED792C3E06 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/Content/jquery-3.7.1-custom-1.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3298 |
Entropy (8bit): | 5.225683086639818 |
Encrypted: | false |
SSDEEP: | 48:0e01kS41aFV383YgiWRsUTY8WfUBB/J02hbZnkXxk3Ov2QV672X:031kP1av383YgZRsUE8xjkYOvFlX |
MD5: | B05AF20933A5C55D8228372B62CFF439 |
SHA1: | 8C7D1B8F149A66F4C82266C284AA12E2CA384CC1 |
SHA-256: | 583F54C663C161E490DD8991D9E9101A3CA54822F458E73DCFC4885CE0EFE34F |
SHA-512: | 2AAE9A3D97B75DD4CE3FDC50B153EA6CB0C14BD5319E695E528E7441FEF2FDF904AFF0ED0ECA6A9DFB7DB6CFB80E3AA75A34050AE8B08AE84E540A02F4876431 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/story_cluster.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7886 |
Entropy (8bit): | 3.9725278802902944 |
Encrypted: | false |
SSDEEP: | 24:i7x7LLLUvb5f8Tir5rbhSoGmse2J3W4PnpS4Gm1lZzwjB08kwjbMjyyyyyy3sj/O:gu9f/AomS49ZzSKTAbMXj6+2v4G6d |
MD5: | 765886EE3AF3ADC313CB7381B34E4858 |
SHA1: | A7BC43EB212CE09D3B5B864FF8BF041418B8AA58 |
SHA-256: | A92FACED88C70F90030B6DBF11C0E33714EB463624DFBD895904225F58466D3A |
SHA-512: | E794DEC7A4EA0E51134438713EF54A42C5BB41A413105567F7043C47E363A272545B2BF84DF006582370EF8A7F8FFE379DCFCCA0B7D48677926E308AB06A05F9 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 52717 |
Entropy (8bit): | 5.462668685745912 |
Encrypted: | false |
SSDEEP: | 1536:tjspYRrxlhd0fq3agV3IcgPPPI3r7DAQHCloIB3Tj7xHw:tjZLCtxQ |
MD5: | 413FCC759CC19821B61B6941808B29B5 |
SHA1: | 1AD23B8A202043539C20681B1B3E9F3BC5D55133 |
SHA-256: | DAF7759FEDD9AF6C4D7E374B0D056547AE7CB245EC24A1C4ACF02932F30DC536 |
SHA-512: | E9BF8A74FEF494990AAFD15A0F21E0398DC28B4939C8F9F8AA1F3FFBD18056C8D1AB282B081F5C56F0928C48E30E768F7E347929304B55547F9CA8C1AABD80B8 |
Malicious: | false |
Reputation: | low |
URL: | https://wcpstatic.microsoft.com/mscc/lib/v2/wcp-consent.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 10721 |
Entropy (8bit): | 7.861629642768925 |
Encrypted: | false |
SSDEEP: | 192:jLXzxgn8tJG8kyLa1gTt5L632uebvEjHiCX+UydtSHiuEXr:jLXzKnaJzRY32BEjHRX+ZdGiuQr |
MD5: | B0D76C4804189526DCEF946D94CA58A9 |
SHA1: | CE86C3623F53E4B39D9CD33CC924AFC45E91F94F |
SHA-256: | D46375075D66174F88AD9834C0695792C9AFDD0F20456231FA4A873280A2C434 |
SHA-512: | 37878EAF430A447DB093B946051FC9C35690B5BAC24DDB3E5FA877D5E11A1AACA3C5BBCFF9E51ADEB5CACDDFB70C6CC292416FA09D05B2046D2EF4B2CCC14BD1 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/story.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 60442 |
Entropy (8bit): | 5.388841566581999 |
Encrypted: | false |
SSDEEP: | 1536:qnYykXj0ZePn1J3RdXdoGBRYdQGBgST4qs8XC53Dc1PthB:qnPkXj0ZePn9RUgis8XChiPt/ |
MD5: | FD14998BADF27D4F974CA33841C97397 |
SHA1: | D951A5FC5D3A3075E8986DBA845D956A9831423E |
SHA-256: | 2306CA934E2C1A52219D8A608C130F2BCDB7D859303F4CA5806CD48DB0C9AE6F |
SHA-512: | 64D91046B697AC8713F0D45B49498E80D62AAAB003F77ABC8DB57586060D897D1301A4287FA4240D1F366A420844D8807CA9C9C28A89ED4CF970579D07E3D9E0 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/Content/CommonDiagnostics-Sway-1.0.0.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6140 |
Entropy (8bit): | 7.772313539696813 |
Encrypted: | false |
SSDEEP: | 96:hC3I0lRTQgaikAJ1UsX5tohbiKrqHHSdSEKNSKjfKAWey/Cx2/4ZcQ2fBcQ7:Q3I0lRTQiDXzoqHHQxKjy3ey/T/z17 |
MD5: | A207072E073B59E21CCEDD04403389AD |
SHA1: | 053D31B075133B48F6B61C01858419768DCB0121 |
SHA-256: | FC0F4C08C50F64C23B4C2031679BB705A2A426B09BE5865CBCB3931E0DBA447C |
SHA-512: | E4F187730DDA51E2A2A2B8FE1A273E00EBDA828F823BC249779A87B90095AF7BBCE834ABCB39F39EAF5E03A0DDFF640C5B8B913BB8F3A3A54840E14E90BB2398 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/swayicont.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 846333 |
Entropy (8bit): | 5.248134152022427 |
Encrypted: | false |
SSDEEP: | 6144:oT4H5MxnQCvC4GSsQAFqAOqmSl1b8SLS8+Hj41Ftyy2A/6pGo4IfgQ+/lflqkM+B:oT4H5MxnSQ8qAOqmSl17fT3 |
MD5: | C3F888E6C69CD5DF49185B49BDBA869F |
SHA1: | BD293B7DD931BE7806B5152DC7470841BF5FD324 |
SHA-256: | 222B17BC1A6DBE0EEF237BF6E4428E7E3EE3847D95567C80FD0E875D6E9059EF |
SHA-512: | 62A410FE74A9CE6581D069AB24064B889984F9D127B4460DFE3F5C1D7895929E56C4F2E1E6875E89A0604940B95A7F4356AE06A381FBFEF9827311DE3C02FAF4 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/StoryPage.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 144842 |
Entropy (8bit): | 5.150313101589764 |
Encrypted: | false |
SSDEEP: | 3072:+7CGYpHIWTskrJ080PsvvASNPeux8sCoKV:+7r0IWQkrJP0PuYSNPeux8cKV |
MD5: | F69ED7B2C776908F19485EAC7440E623 |
SHA1: | 2E67A11B7C59AF6B7D4E93A381B1F798526C4604 |
SHA-256: | 511C42B68EE9AC6C4D65E42B413E7B3A94EA4A03759778C552B2A04424AB9C5A |
SHA-512: | 2434FF77FD7984B1346B5304B0166ED9F356003C4FD5717C19E5AC5E5E13E5F15564F686003959784DACEB95AE004A4853DA9F202A6AFE7DDDD20D948DBFABCB |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 23704 |
Entropy (8bit): | 7.971326716166209 |
Encrypted: | false |
SSDEEP: | 384:z+/YYQ8sr+b6lhTXx6aCwr5iOQ0xU/jW2sMOgVFaKNQLoUX4PIeycAeD0psgx/sE:SYYQLCeT7Bti0A+MOgVLIHcAe+Lx/207 |
MD5: | 7DDED8E00E4E1FA6B8301BA58FDB96F1 |
SHA1: | A5CC4C84ED041EF71D6A989B34B841942234BA2B |
SHA-256: | 56C3F81E1FCADA437F327CA47A70ACBCE01C7B3A8DE0BC93081698AD039A7C42 |
SHA-512: | 732DD7EF21B70725679145BDB55C0B460393AD90FE6F26F415CEA261BE7AE770B58F96512A255BD9BB03719C49F1E3344627BA586B53A4068015F65A2E226E02 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/swayiconsb.woff |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 373854 |
Entropy (8bit): | 5.274848707347396 |
Encrypted: | false |
SSDEEP: | 3072:POKKZX6FR+61YxYfYEYdYGY7YlYWYtYDY4YzYVY/YbYtYCYdY/YVY7YlYkYtYDY6:POKKZX6FK |
MD5: | EA096B70A08E922F0A9CABBD802218D6 |
SHA1: | 03D32A5D0743B0EEC3C1EE8DC4D47C1A01D2228C |
SHA-256: | 4EAFEAA8F796A9BC2F6EF1DB4094E872EC00C3D9F7D52F9AB87B84B6640329AB |
SHA-512: | 3C910C26F346CBA06BFD94F446B5D4F2F25CE4CF71E33A6529F0259F4F43A790EC32637E78E294EBA8EEEE597F94315DF1387B51D66A7DEDB10329D1C72E6760 |
Malicious: | false |
Reputation: | low |
URL: | https://eus-www.sway-cdn.com/161850840101_Content/Home.css |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 15, 2025 21:01:46.229363918 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 15, 2025 21:01:46.686954975 CET | 49689 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:01:48.634578943 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 15, 2025 21:01:52.082456112 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.082516909 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.082737923 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.083007097 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.083098888 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.083278894 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.083292007 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.083343983 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.083494902 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.083532095 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.266019106 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:01:52.580576897 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:01:52.906497955 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.907213926 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.909917116 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.909984112 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.910898924 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.910979986 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.911520004 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.911539078 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.912623882 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.912692070 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.919961929 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.920053005 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.920257092 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.920346022 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.921809912 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.921827078 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.961560011 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:52.961570024 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:52.964174032 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.009563923 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.184683084 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:01:53.438568115 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 15, 2025 21:01:53.452522039 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452594042 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452640057 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452661991 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452681065 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452681065 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.452752113 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.452791929 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.452791929 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.452822924 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.540925980 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.540998936 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.541038990 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.541057110 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.541124105 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.541124105 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.541745901 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.541795969 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.541814089 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.541820049 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.541843891 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.541964054 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:53.542015076 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.542346954 CET | 49713 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:53.542361975 CET | 443 | 49713 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:54.393771887 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:01:54.534137011 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:54.579332113 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222311020 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222341061 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222351074 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222387075 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222388983 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.222421885 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222443104 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.222462893 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.222795963 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222871065 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.222922087 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.223413944 CET | 49712 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.223433018 CET | 443 | 49712 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.250655890 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.250741005 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.250832081 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.251043081 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:55.251079082 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:55.996761084 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:55.996854067 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:55.996951103 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:55.997173071 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:55.997210979 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.100020885 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.100311041 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.100348949 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.101414919 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.101511002 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.101809978 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.101881027 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.101953030 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.101967096 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.156702995 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.442718029 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.442828894 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.443118095 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.443416119 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.443434954 CET | 443 | 49740 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:56.443453074 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.443599939 CET | 49740 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:56.670228004 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.670461893 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:56.670496941 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.671578884 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.671659946 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:56.673001051 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:56.673068047 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.725577116 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:56.725595951 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:01:56.741836071 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:01:56.774012089 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:01:56.805618048 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:01:57.042851925 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:01:57.051920891 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.051955938 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.052150965 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.055291891 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.055301905 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.644787073 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:01:57.701575994 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.701675892 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.701811075 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.705583096 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.705615997 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.851039886 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.851106882 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.851191998 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.851440907 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.851469994 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.881819010 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.882090092 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.882102966 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.882608891 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.882930040 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.883018017 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:57.883102894 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.883120060 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:57.883136034 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.181066990 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.181232929 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.181284904 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.181345940 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.181366920 CET | 443 | 49747 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.181375980 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.181418896 CET | 49747 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.209754944 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.209805012 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.209863901 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.210093975 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.210108995 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.505342960 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.505793095 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.505860090 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.506242990 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.506633043 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.506742001 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.506815910 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.547420025 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.550637960 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.660917997 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.661170959 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.661232948 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.662360907 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.662437916 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.662719011 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.662801981 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.662861109 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.703341961 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.709584951 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.709605932 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:58.757600069 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:58.853605986 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:01:59.033526897 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.033838034 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.033905983 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.034432888 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.034848928 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.034945965 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.035011053 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.063424110 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.063477993 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.063697100 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.063972950 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.063996077 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.075334072 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.077676058 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.103775978 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.103849888 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.103971004 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.104552984 CET | 49749 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.104595900 CET | 443 | 49749 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.251496077 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.251712084 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.251821995 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.252470016 CET | 49753 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.252518892 CET | 443 | 49753 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.372296095 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.375129938 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.379400969 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.379874945 CET | 49752 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.379918098 CET | 443 | 49752 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.403086901 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.403132915 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:01:59.403217077 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.403434992 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.403454065 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:01:59.606355906 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.606472969 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:01:59.606575966 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.606853962 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:01:59.606889963 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:01:59.846704006 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.846961975 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.846996069 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.847394943 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.847938061 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.848001003 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:01:59.848113060 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.848184109 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:01:59.848225117 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.042762041 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.042996883 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.043065071 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.044083118 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.044258118 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.045000076 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.045077085 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.045129061 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.087369919 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.095695019 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.095715046 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.120346069 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.120431900 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.120492935 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.120790958 CET | 49758 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.120814085 CET | 443 | 49758 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.123662949 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.123759985 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.123842001 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.124030113 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.124068022 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.143630981 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.260485888 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.260751009 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.260816097 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.262269020 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.262351036 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.262749910 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.262847900 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.262873888 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.303325891 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.316706896 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.316770077 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333681107 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333703995 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333709955 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333734989 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333755016 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333764076 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333803892 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.333885908 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.333945990 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.333945990 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.364794016 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.440090895 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.440102100 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.440155029 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.440196991 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.440268993 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.440308094 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.440329075 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.444902897 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.445065975 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.500777960 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.500794888 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.500911951 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.501003981 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.501060963 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.511899948 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.511945009 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.512042046 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.512042046 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.512109041 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.534024954 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.534041882 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.534157991 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.534225941 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.562278032 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.562292099 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.562427044 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.562495947 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.577687025 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.577820063 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.577883959 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587238073 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587261915 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587270975 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587414026 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.587480068 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587524891 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587543964 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587582111 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.587582111 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.587599993 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.587671995 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.587671995 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.597021103 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.597039938 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.597153902 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.597155094 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.597222090 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.607588053 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.607676983 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.607728958 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.607728958 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.607884884 CET | 49763 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.607924938 CET | 443 | 49763 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.649804115 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.649813890 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.649962902 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.650027037 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.679917097 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680071115 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.680135965 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680181026 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680206060 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680243969 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.680243969 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.680264950 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680286884 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.680320024 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.680320024 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.694873095 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.695049047 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.695111990 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.728384018 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.728583097 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.728650093 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.728693008 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.728723049 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.728745937 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.729093075 CET | 49764 | 443 | 192.168.2.16 | 2.20.211.3 |
Jan 15, 2025 21:02:00.729156971 CET | 443 | 49764 | 2.20.211.3 | 192.168.2.16 |
Jan 15, 2025 21:02:00.936096907 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.936456919 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.936521053 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.936937094 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.937475920 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.937568903 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:00.937597990 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.937633991 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:00.980626106 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.078500032 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.078589916 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.078675985 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.079124928 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.079159975 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.143968105 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.144118071 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.144196987 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.144807100 CET | 49767 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.144846916 CET | 443 | 49767 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.266592979 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:02:01.613826990 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:02:01.934274912 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.934685946 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.934719086 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.936901093 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.937094927 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.937388897 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.937463999 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.937490940 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.937522888 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:01.992609978 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:01.992672920 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:02.040616035 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:02.144941092 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:02.145183086 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:02.145946980 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:02.146188974 CET | 49770 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:02.146230936 CET | 443 | 49770 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:03.049601078 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 15, 2025 21:02:06.078712940 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:02:06.580495119 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:06.580642939 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:06.580847979 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:07.482290983 CET | 49742 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:07.482364893 CET | 443 | 49742 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:11.213774920 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 15, 2025 21:02:15.685671091 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 15, 2025 21:02:38.276005983 CET | 49697 | 80 | 192.168.2.16 | 199.232.214.172 |
Jan 15, 2025 21:02:38.276290894 CET | 49698 | 80 | 192.168.2.16 | 199.232.214.172 |
Jan 15, 2025 21:02:38.281193972 CET | 80 | 49697 | 199.232.214.172 | 192.168.2.16 |
Jan 15, 2025 21:02:38.281306028 CET | 49697 | 80 | 192.168.2.16 | 199.232.214.172 |
Jan 15, 2025 21:02:38.281694889 CET | 80 | 49698 | 199.232.214.172 | 192.168.2.16 |
Jan 15, 2025 21:02:38.281790018 CET | 49698 | 80 | 192.168.2.16 | 199.232.214.172 |
Jan 15, 2025 21:02:46.942761898 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:46.942851067 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:46.943007946 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:46.943248987 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:46.943285942 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.922540903 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.922919989 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:47.922971010 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.924154997 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.924570084 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:47.924756050 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.924782991 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:47.924834967 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:47.924870014 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:47.968759060 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.178662062 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:48.178884029 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:48.178971052 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.179339886 CET | 49775 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.179357052 CET | 443 | 49775 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:48.182777882 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.182868958 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:48.182964087 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.183243036 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:48.183284044 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.039213896 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.039621115 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.039695978 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.041212082 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.041577101 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.041758060 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.041770935 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.042027950 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.081876993 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.269606113 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.269805908 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:49.269999981 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.270466089 CET | 49776 | 443 | 192.168.2.16 | 52.111.243.45 |
Jan 15, 2025 21:02:49.270509958 CET | 443 | 49776 | 52.111.243.45 | 192.168.2.16 |
Jan 15, 2025 21:02:56.053070068 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:56.053174019 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.053292036 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:56.053586006 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:56.053625107 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.834897995 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.835252047 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:56.835275888 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.836074114 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.836353064 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:02:56.836441040 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:02:56.882805109 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:06.743113041 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:06.743197918 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:06.743340015 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:07.488519907 CET | 49778 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:07.488548994 CET | 443 | 49778 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:28.706298113 CET | 49699 | 443 | 192.168.2.16 | 40.126.31.67 |
Jan 15, 2025 21:03:28.706307888 CET | 49700 | 80 | 192.168.2.16 | 2.23.77.188 |
Jan 15, 2025 21:03:28.711373091 CET | 443 | 49699 | 40.126.31.67 | 192.168.2.16 |
Jan 15, 2025 21:03:28.711453915 CET | 49699 | 443 | 192.168.2.16 | 40.126.31.67 |
Jan 15, 2025 21:03:28.711664915 CET | 80 | 49700 | 2.23.77.188 | 192.168.2.16 |
Jan 15, 2025 21:03:28.711738110 CET | 49700 | 80 | 192.168.2.16 | 2.23.77.188 |
Jan 15, 2025 21:03:32.062041044 CET | 49701 | 443 | 192.168.2.16 | 40.126.31.67 |
Jan 15, 2025 21:03:32.067121983 CET | 443 | 49701 | 40.126.31.67 | 192.168.2.16 |
Jan 15, 2025 21:03:32.067205906 CET | 49701 | 443 | 192.168.2.16 | 40.126.31.67 |
Jan 15, 2025 21:03:46.955943108 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:46.955986023 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:46.956079006 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:46.956367016 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:46.956383944 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.744306087 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.744714022 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.744731903 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.745094061 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.745495081 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.745560884 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.745682001 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.745739937 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.745774031 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.978039026 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.978133917 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:47.978188038 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.978549957 CET | 49782 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:47.978573084 CET | 443 | 49782 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.005384922 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.005441904 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.005531073 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.005827904 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.005861998 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.866998911 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.867353916 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.867384911 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.867881060 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.868280888 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.868357897 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:48.868447065 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:48.915335894 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:49.079176903 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:49.079279900 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:49.079385042 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:49.080162048 CET | 49783 | 443 | 192.168.2.16 | 52.111.243.44 |
Jan 15, 2025 21:03:49.080178022 CET | 443 | 49783 | 52.111.243.44 | 192.168.2.16 |
Jan 15, 2025 21:03:56.112773895 CET | 49784 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:56.112811089 CET | 443 | 49784 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:56.113444090 CET | 49784 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:56.113444090 CET | 49784 | 443 | 192.168.2.16 | 142.250.184.228 |
Jan 15, 2025 21:03:56.113471985 CET | 443 | 49784 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:56.764590025 CET | 443 | 49784 | 142.250.184.228 | 192.168.2.16 |
Jan 15, 2025 21:03:56.815221071 CET | 49784 | 443 | 192.168.2.16 | 142.250.184.228 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 15, 2025 21:01:51.366236925 CET | 53 | 52399 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:51.376456022 CET | 53 | 51758 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:52.072151899 CET | 59841 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:52.072263002 CET | 58902 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:52.079447985 CET | 53 | 58902 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:52.080022097 CET | 53 | 59841 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:52.389691114 CET | 53 | 65517 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:53.544572115 CET | 50726 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:53.544684887 CET | 65154 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:54.526951075 CET | 51116 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:54.527142048 CET | 49248 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:54.552191973 CET | 64252 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:54.552810907 CET | 55270 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:55.227381945 CET | 56862 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:55.227488995 CET | 58302 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:55.238701105 CET | 53 | 56862 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:55.250121117 CET | 53 | 58302 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:55.988827944 CET | 64478 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:55.988996029 CET | 56883 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:55.995786905 CET | 53 | 56883 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:55.995908976 CET | 53 | 64478 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:57.802242041 CET | 53 | 49971 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:59.382487059 CET | 54564 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:59.382661104 CET | 51494 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:01:59.402017117 CET | 53 | 51494 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:01:59.402427912 CET | 53 | 54564 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:02:09.418412924 CET | 53 | 52357 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:02:28.505491018 CET | 53 | 51531 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:02:48.434681892 CET | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Jan 15, 2025 21:02:51.087404013 CET | 53 | 56632 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:02:51.151705027 CET | 53 | 52153 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:02:56.642889977 CET | 55347 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:02:56.643054962 CET | 61177 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:03:21.953660965 CET | 53 | 50113 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:03:46.943840027 CET | 56082 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:03:46.944031000 CET | 63432 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:03:46.951525927 CET | 53 | 63432 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:03:46.955190897 CET | 53 | 56082 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:03:47.982137918 CET | 58436 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:03:47.982359886 CET | 53732 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 15, 2025 21:03:47.989845037 CET | 53 | 53732 | 1.1.1.1 | 192.168.2.16 |
Jan 15, 2025 21:03:48.004842043 CET | 53 | 58436 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Jan 15, 2025 21:01:54.731021881 CET | 192.168.2.16 | 1.1.1.1 | c281 | (Port unreachable) | Destination Unreachable |
Jan 15, 2025 21:02:56.696089029 CET | 192.168.2.16 | 1.1.1.1 | c281 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jan 15, 2025 21:01:52.072151899 CET | 192.168.2.16 | 1.1.1.1 | 0x1edd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:52.072263002 CET | 192.168.2.16 | 1.1.1.1 | 0x1da0 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:53.544572115 CET | 192.168.2.16 | 1.1.1.1 | 0x5d3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:53.544684887 CET | 192.168.2.16 | 1.1.1.1 | 0xfc97 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:54.526951075 CET | 192.168.2.16 | 1.1.1.1 | 0x507e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:54.527142048 CET | 192.168.2.16 | 1.1.1.1 | 0x41c4 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:54.552191973 CET | 192.168.2.16 | 1.1.1.1 | 0x3e2d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:54.552810907 CET | 192.168.2.16 | 1.1.1.1 | 0xe934 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:55.227381945 CET | 192.168.2.16 | 1.1.1.1 | 0x5970 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:55.227488995 CET | 192.168.2.16 | 1.1.1.1 | 0xdf84 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:55.988827944 CET | 192.168.2.16 | 1.1.1.1 | 0x91b9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:55.988996029 CET | 192.168.2.16 | 1.1.1.1 | 0xc48b | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:01:59.382487059 CET | 192.168.2.16 | 1.1.1.1 | 0x1aa5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:01:59.382661104 CET | 192.168.2.16 | 1.1.1.1 | 0x526c | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:02:56.642889977 CET | 192.168.2.16 | 1.1.1.1 | 0xbe49 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:02:56.643054962 CET | 192.168.2.16 | 1.1.1.1 | 0x4f6 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:03:46.943840027 CET | 192.168.2.16 | 1.1.1.1 | 0x40f8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:03:46.944031000 CET | 192.168.2.16 | 1.1.1.1 | 0xf977 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 15, 2025 21:03:47.982137918 CET | 192.168.2.16 | 1.1.1.1 | 0xd66c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 15, 2025 21:03:47.982359886 CET | 192.168.2.16 | 1.1.1.1 | 0x6b4d | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jan 15, 2025 21:01:52.079447985 CET | 1.1.1.1 | 192.168.2.16 | 0x1da0 | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:52.080022097 CET | 1.1.1.1 | 192.168.2.16 | 0x1edd | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:52.080022097 CET | 1.1.1.1 | 192.168.2.16 | 0x1edd | No error (0) | 52.111.243.45 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.475478888 CET | 1.1.1.1 | 192.168.2.16 | 0x347 | No error (0) | firstparty-azurefd-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.475774050 CET | 1.1.1.1 | 192.168.2.16 | 0x44cd | No error (0) | firstparty-azurefd-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.475774050 CET | 1.1.1.1 | 192.168.2.16 | 0x44cd | No error (0) | azurefd-t-fb-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.475774050 CET | 1.1.1.1 | 192.168.2.16 | 0x44cd | No error (0) | s-part-0017.t-0009.fb-t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.475774050 CET | 1.1.1.1 | 192.168.2.16 | 0x44cd | No error (0) | 13.107.253.45 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.551724911 CET | 1.1.1.1 | 192.168.2.16 | 0xfc97 | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:53.552202940 CET | 1.1.1.1 | 192.168.2.16 | 0x5d3 | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.533550978 CET | 1.1.1.1 | 192.168.2.16 | 0x507e | No error (0) | login.mso.msidentity.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.534013987 CET | 1.1.1.1 | 192.168.2.16 | 0x41c4 | No error (0) | login.mso.msidentity.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.536763906 CET | 1.1.1.1 | 192.168.2.16 | 0xeb5e | No error (0) | firstparty-azurefd-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.536776066 CET | 1.1.1.1 | 192.168.2.16 | 0xdd9b | No error (0) | firstparty-azurefd-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.536776066 CET | 1.1.1.1 | 192.168.2.16 | 0xdd9b | No error (0) | s-part-0017.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.536776066 CET | 1.1.1.1 | 192.168.2.16 | 0xdd9b | No error (0) | 13.107.246.45 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.559420109 CET | 1.1.1.1 | 192.168.2.16 | 0x3e2d | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:54.730890989 CET | 1.1.1.1 | 192.168.2.16 | 0xe934 | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:55.238701105 CET | 1.1.1.1 | 192.168.2.16 | 0x5970 | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:55.238701105 CET | 1.1.1.1 | 192.168.2.16 | 0x5970 | No error (0) | 52.111.243.45 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:55.250121117 CET | 1.1.1.1 | 192.168.2.16 | 0xdf84 | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:55.995786905 CET | 1.1.1.1 | 192.168.2.16 | 0xc48b | No error (0) | 65 | IN (0x0001) | false | |||
Jan 15, 2025 21:01:55.995908976 CET | 1.1.1.1 | 192.168.2.16 | 0x91b9 | No error (0) | 142.250.184.228 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:01:59.402427912 CET | 1.1.1.1 | 192.168.2.16 | 0x1aa5 | No error (0) | 2.20.211.3 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:02:56.650892973 CET | 1.1.1.1 | 192.168.2.16 | 0xbe49 | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:02:56.695969105 CET | 1.1.1.1 | 192.168.2.16 | 0x4f6 | No error (0) | www.sway-cdn.com.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:46.951525927 CET | 1.1.1.1 | 192.168.2.16 | 0xf977 | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:46.955190897 CET | 1.1.1.1 | 192.168.2.16 | 0x40f8 | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:46.955190897 CET | 1.1.1.1 | 192.168.2.16 | 0x40f8 | No error (0) | 52.111.243.44 | A (IP address) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:47.989845037 CET | 1.1.1.1 | 192.168.2.16 | 0x6b4d | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:48.004842043 CET | 1.1.1.1 | 192.168.2.16 | 0xd66c | No error (0) | sway.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 15, 2025 21:03:48.004842043 CET | 1.1.1.1 | 192.168.2.16 | 0xd66c | No error (0) | 52.111.243.44 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49713 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:52 UTC | 688 | OUT | |
2025-01-15 20:01:53 UTC | 1829 | IN | |
2025-01-15 20:01:53 UTC | 14555 | IN | |
2025-01-15 20:01:53 UTC | 16384 | IN | |
2025-01-15 20:01:53 UTC | 11307 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49712 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:54 UTC | 1152 | OUT | |
2025-01-15 20:01:54 UTC | 163 | OUT | |
2025-01-15 20:01:55 UTC | 1163 | IN | |
2025-01-15 20:01:55 UTC | 9608 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 49740 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:56 UTC | 561 | OUT | |
2025-01-15 20:01:56 UTC | 974 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 49747 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:57 UTC | 927 | OUT | |
2025-01-15 20:01:57 UTC | 629 | OUT | |
2025-01-15 20:01:58 UTC | 959 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 49749 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:58 UTC | 1261 | OUT | |
2025-01-15 20:01:59 UTC | 1032 | IN | |
2025-01-15 20:01:59 UTC | 2 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.16 | 49752 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:58 UTC | 1261 | OUT | |
2025-01-15 20:01:59 UTC | 1032 | IN | |
2025-01-15 20:01:59 UTC | 2 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.16 | 49753 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:59 UTC | 547 | OUT | |
2025-01-15 20:01:59 UTC | 998 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.16 | 49758 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:01:59 UTC | 1036 | OUT | |
2025-01-15 20:01:59 UTC | 11198 | OUT | |
2025-01-15 20:02:00 UTC | 1022 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.16 | 49763 | 2.20.211.3 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:00 UTC | 571 | OUT | |
2025-01-15 20:02:00 UTC | 527 | IN | |
2025-01-15 20:02:00 UTC | 15857 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 2421 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 12120 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 7952 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 8048 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.16 | 49764 | 2.20.211.3 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:00 UTC | 574 | OUT | |
2025-01-15 20:02:00 UTC | 526 | IN | |
2025-01-15 20:02:00 UTC | 15858 | IN | |
2025-01-15 20:02:00 UTC | 8718 | IN | |
2025-01-15 20:02:00 UTC | 16384 | IN | |
2025-01-15 20:02:00 UTC | 8192 | IN | |
2025-01-15 20:02:00 UTC | 7832 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.16 | 49767 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:00 UTC | 547 | OUT | |
2025-01-15 20:02:01 UTC | 998 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.16 | 49770 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:01 UTC | 568 | OUT | |
2025-01-15 20:02:02 UTC | 835 | IN | |
2025-01-15 20:02:02 UTC | 1191 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.16 | 49775 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:47 UTC | 1035 | OUT | |
2025-01-15 20:02:47 UTC | 2120 | OUT | |
2025-01-15 20:02:48 UTC | 1022 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.16 | 49776 | 52.111.243.45 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:02:49 UTC | 547 | OUT | |
2025-01-15 20:02:49 UTC | 998 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.16 | 49782 | 52.111.243.44 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:03:47 UTC | 1035 | OUT | |
2025-01-15 20:03:47 UTC | 6581 | OUT | |
2025-01-15 20:03:47 UTC | 1022 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.16 | 49783 | 52.111.243.44 | 443 | 5444 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-15 20:03:48 UTC | 547 | OUT | |
2025-01-15 20:03:49 UTC | 998 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 15:01:49 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 15:01:49 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 15:01:50 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |