Windows
Analysis Report
https://youtube.ch%EF%BB%BF%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20
Overview
General Information
Detection
Score: | 20 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
- chrome.exe (PID: 6824 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 7056 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2064 --fi eld-trial- handle=199 2,i,656648 5900442544 9,93952126 0431475146 5,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion /pref etch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6520 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://youtu be.ch%EF%B B%BF%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%20 %20%20%20% 20%20%20%2 0%20%20%2" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
Phishing |
---|
Source: | Joe Sandbox AI: |
Source: | Memory has grown: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Browser Extensions | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 1 Registry Run Keys / Startup Folder | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | 1 Extra Window Memory Injection | 1 Extra Window Memory Injection | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
plus.l.google.com | 142.250.185.206 | true | false | high | |
play.google.com | 172.217.18.110 | true | false | high | |
www.google.com | 142.250.185.132 | true | false | high | |
apis.google.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
142.250.185.132 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1592379 |
Start date and time: | 2025-01-16 02:27:10 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 28s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | https://youtube.ch%EF%BB%BF%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%2 |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | SUS |
Classification: | sus20.win@20/28@6/3 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.185.131, 142.250.186.78, 108.177.15.84, 172.217.16.206, 142.250.185.206, 172.217.16.131, 199.232.214.172, 216.58.206.74, 172.217.18.106, 142.250.185.138, 142.250.184.202, 172.217.16.202, 142.250.185.106, 216.58.212.138, 142.250.185.74, 172.217.23.106, 142.250.185.170, 142.250.186.42, 142.250.186.138, 142.250.184.234, 142.250.186.74, 172.217.18.10, 142.250.185.202, 142.250.185.110, 216.58.206.78, 172.217.18.14, 142.250.185.238, 172.217.18.3, 142.250.186.46, 172.217.18.110, 2.23.242.162, 4.245.163.56
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, ctldl.windowsupdate.com, clientservices.googleapis.com, ogads-pa.googleapis.com, fe3cr.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, redirector.gvt1.com, update.googleapis.com, clients.l.google.com, www.gstatic.com
- Not all processes where analyzed, report is missing behavior information
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: https://youtube.ch%EF%BB%BF%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%20%
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.9810126241890345 |
Encrypted: | false |
SSDEEP: | 48:8hdyTe9kfHTidAKZdA1FehwiZUklqehKy+3:8eOkVFy |
MD5: | 184F95DFB54851A440AD7F149368F21F |
SHA1: | 471C8A87910E087A2B1BE5C0626D97730EC7C8BF |
SHA-256: | 5E1EEEB3C145C6EE639154DBB1103A9000267AD69496650883176E2B5B009855 |
SHA-512: | B4732AC468B046C1A979916E47002E436F4150DC4D0B6E4C6507F8816E2E06E4F434AC7AF74B458396ECABA95F0EFE7587024273051C51F535CE748A9F558DC4 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.996187423397436 |
Encrypted: | false |
SSDEEP: | 48:8YdyTe9kfHTidAKZdA1seh/iZUkAQkqeh1y+2:8hOkL9Qoy |
MD5: | AFE275A4D8819EA3DA552FDCF4823DBF |
SHA1: | D81DDA0B0A4C679B81C14E0B1D0D4C2D04774979 |
SHA-256: | 4367E1BFC22CB6AAD30E5D6A46EC2C49745C14E86F77D0DE00315933465496CC |
SHA-512: | AB5E16FC05A265C2286A81F214A860D81431F41A81BB01E270B1340B4E184473CB2A231F6DC3F26BB32C9EF2FFA3CEAD9DB94963F0FC8A25926A771C34F7EA29 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.006176638577596 |
Encrypted: | false |
SSDEEP: | 48:8HdyTe9kAHTidAKZdA14meh7sFiZUkmgqeh7sby+BX:8cOkin5y |
MD5: | BA43C4E4C6F1ADCF5408D34AF262C39B |
SHA1: | 71BF65244B3B39A67EFD39E47ED50C5A6711834A |
SHA-256: | 8D569AFD25DD683EBEDC2AB7DD7D811C9464363A84F8775F5EA515A55BA348D0 |
SHA-512: | 8ED6FCA86AA7327BC26900AF0BD0B23F1A2819050C68FD99FA61961411355C90FAB9CC286D658BC3A95C4F9D4CCA3A63F73AAE658CD41B3B7537A4B82599A0D0 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9938998908775076 |
Encrypted: | false |
SSDEEP: | 48:8PrdyTe9kfHTidAKZdA1TehDiZUkwqehxy+R:8PYOkYzy |
MD5: | 61BBCC777BDD7140EA0960C98DCF437D |
SHA1: | EFDA12CBBE2969530330C12101CCC26C8E955B6D |
SHA-256: | CE8CFAEAB852FBF6C5CB60BEC8A60CB3D4710AB05967FFFBF9FB80D15CA44D3C |
SHA-512: | A59257AE33F42C74582CE3AE06805D239EE76D063C1186BCE51AA175BB11722657AD5A1B3D46D4515403BBEA1584C59C99A5017A26CF3F029C076B15488D1DAA |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.984942705799252 |
Encrypted: | false |
SSDEEP: | 48:8HdyTe9kfHTidAKZdA1dehBiZUk1W1qehPy+C:8cOko9vy |
MD5: | B70D2A8902469FDE2761F6B95401E735 |
SHA1: | 473594A58A569C59111E7C96CFAFF1242794571A |
SHA-256: | 2BB72BECE0D5D6AA69433521DB15599BE5B414FC87A401203AC4C08491FA9793 |
SHA-512: | 5A851CF71EC524A12CE92BACA9F44E31343C6FEC70ABFCC08C5476BC490545C80753B6EC9D5E2AF38C6D6ADF60F9AF1BFAF105765EE6E486C07A5364C6E18B8D |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9926647051307596 |
Encrypted: | false |
SSDEEP: | 48:84dyTe9kfHTidAKZdA1duTeehOuTbbiZUk5OjqehOuTb5y+yT+:8BOkaTfTbxWOvTb5y7T |
MD5: | F4EBD780F5716707D5C29E2834EC5362 |
SHA1: | 237F857F11AC2E949C503E50E6B2718A5BC4AA57 |
SHA-256: | 05F27344B88419FF6E0230E79CDB033AFEA6BE3A3A9ED13CB3AA2650E5703722 |
SHA-512: | D7FACAA457635DEA265C35049533293C9A75975130387A24EF8B4955DA0FD2676D62578693737ABA0CDF43670A227C3D28DAAFC4C11D85DBF47580119959A679 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 806 |
Entropy (8bit): | 5.156599342861495 |
Encrypted: | false |
SSDEEP: | 24:c/RAFUJoI9MFEvw2BHslgT9lCuABATw3uoB7HHHHHHHYqmffffffo:rFrISKJKlgZ01BA83uSEqmffffffo |
MD5: | 4DAE7FC6F9F6831444DADD8714BA003A |
SHA1: | 0A9770BC6534F6BDAD0568A6845DF88622FCAFDC |
SHA-256: | CDBFB7412A7C9DDF91FE7757780BDCB8323C32C26A21AF6FA637D454E145EC84 |
SHA-512: | D3079BCA8B11F2E9505E0B1DAC1E48C93BF92B094165B143CE4F6369E241C50A1518433966D1C343EF83FF3852939652EED891039C6884F4116BF943FA52D671 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 175017 |
Entropy (8bit): | 5.547141709627909 |
Encrypted: | false |
SSDEEP: | 3072:ZzKYRicPAENEJ8X5rpzKSoi5O4NmHha+q5ByukhCOWomLCHiYyKfQ1fbK0jOJv6B:ZzKYRPAENEJ+pKSoUO4NmHhbq5ByukhM |
MD5: | DE73B70C2E96AA995C1D89F9DE01D399 |
SHA1: | D72592A0BF7FC706B4063B146FA0F505D9598E37 |
SHA-256: | 47051D5F0947B959605CA98298809213203547BD992E9EC13557B40547F5228F |
SHA-512: | 7C01A3EC31D67C79BDBFFCF166E8F61DFED6EBCEF56F0BBFAE4EFAA363E0F797E397C054183AC16515F1AA34B1C6E19ABB2EBF3F9C5CA85EEAE9B173D657028B |
Malicious: | false |
Reputation: | low |
URL: | "https://www.gstatic.com/og/_/js/k=og.qtm.en_US.WSo7OLdFZck.2019.O/rt=j/m=q_dnp,qmd,qcwid,qapid,qald,qads,q_dg/exm=qaaw,qabr,qadd,qaid,qalo,qebr,qein,qhaw,qhawgm3,qhba,qhbr,qhbrgm3,qhch,qhchgm3,qhga,qhid,qhidgm3,qhin,qhlo,qhlogm3,qhmn,qhpc,qhsf,qhsfgm3,qhtt/d=1/ed=1/rs=AA2YrTu3OIbomB3nx1wiDyRkhdiMoOpjsA" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 29 |
Entropy (8bit): | 3.9353986674667634 |
Encrypted: | false |
SSDEEP: | 3:VQAOx/1n:VQAOd1n |
MD5: | 6FED308183D5DFC421602548615204AF |
SHA1: | 0A3F484AAA41A60970BA92A9AC13523A1D79B4D5 |
SHA-256: | 4B8288C468BCFFF9B23B2A5FF38B58087CD8A6263315899DD3E249A3F7D4AB2D |
SHA-512: | A2F7627379F24FEC8DC2C472A9200F6736147172D36A77D71C7C1916C0F8BDD843E36E70D43B5DC5FAABAE8FDD01DD088D389D8AE56ED1F591101F09135D02F5 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/async/newtab_promos |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 855 |
Entropy (8bit): | 5.1861220763104905 |
Encrypted: | false |
SSDEEP: | 24:fRkfK7FnAPDpmBHslgT9lCuABATAuoB7HHHHHHHYqmffffffo:ai7FAVmKlgZ01BA8uSEqmffffffo |
MD5: | A09696124A3CC5A737DE54A2F56445F6 |
SHA1: | CCDEED7D7EAFE54D74C1086851164B4D61D182E8 |
SHA-256: | 7009850453F984FB91DA63E304C03A84623349CEE79C97112E7D192D9CEB2FDC |
SHA-512: | 529CB440F21F1FD3B982B66A3B66B459A75C06C57276E7327A1D4F021DB83B1907C7ED7D235FA2F3579AAC26806BF1EA1D20B09BCA7D41376430BEDD780296C9 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 133103 |
Entropy (8bit): | 5.434431231772 |
Encrypted: | false |
SSDEEP: | 3072:fJkAu9kJGkLpS+QVHTZxKtujUMoDI7VW2i6e:fZueFS7jxKtujUMo07VW8e |
MD5: | 37311948BBA277848A368803B6DDC5F8 |
SHA1: | AA1A0002899E797ABCD7F243935D8DBCFB836511 |
SHA-256: | 7F48374EBF8D82DD4395E7EAC054BB438A8264ED72B887EFD132338EE38C7969 |
SHA-512: | 637C47D7CBC0CCFAEBE359E82451826873450966A0A6C053F26FBD9F3E2CCE2982C3D30ADAE394C4521DE5159A790E5A1A0DF334B031197A9C5B17F7EE260315 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/async/newtab_ogb?hl=en-US&async=fixed:0 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 117446 |
Entropy (8bit): | 5.490775275046353 |
Encrypted: | false |
SSDEEP: | 3072:T2yvefrtJUEgK3Cvw3wWs/ZuTZVL/G1kL:T2y4tJbDK0L/G1kL |
MD5: | 942EA4F96889BAE7D3C59C0724AB2208 |
SHA1: | 033DDF473319500621D8EBB6961C4278E27222A7 |
SHA-256: | F59F7F32422E311462A6A6307D90CA75FE87FA11E6D481534A6F28BFCCF63B03 |
SHA-512: | C3F27662D08AA00ECBC910C39F6429C2F4CBC7CB5FC9083F63390047BACAF8CD7A83C3D6BBE7718F699DAE2ADA486F9E0CAED59BC3043491EECD9734EC32D92F |
Malicious: | false |
Reputation: | low |
URL: | "https://apis.google.com/_/scs/abc-static/_/js/k=gapi.gapi.en.l2ZUC8FxqV8.O/m=gapi_iframes,googleapis_client/rt=j/sv=1/d=1/ed=1/rs=AHpOoo9xAAkaXO7Lqf7-9uTpZLtrkpWaXQ/cb=gapi.loaded_0" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5162 |
Entropy (8bit): | 5.3503139230837595 |
Encrypted: | false |
SSDEEP: | 96:lXTMb1db1hNY/cobkcsidqg3gcIOnAg8IF8uM8DvY:lXT0TGKiqggdaAg8IF8uM8DA |
MD5: | 7977D5A9F0D7D67DE08DECF635B4B519 |
SHA1: | 4A66E5FC1143241897F407CEB5C08C36767726C1 |
SHA-256: | FE8B69B644EDDE569DD7D7BC194434C57BCDF60280078E9F96EEAA5489C01F9D |
SHA-512: | 8547AE6ACA1A9D74A70BF27E048AD4B26B2DC74525F8B70D631DA3940232227B596D56AB9807E2DCE96B0F5984E7993F480A35449F66EEFCF791A7428C5D0567 |
Malicious: | false |
Reputation: | low |
URL: | "https://www.gstatic.com/og/_/ss/k=og.qtm.CEsjJf2wziM.L.W.O/m=qmd,qcwid/excm=qaaw,qabr,qadd,qaid,qalo,qebr,qein,qhaw,qhawgm3,qhba,qhbr,qhbrgm3,qhch,qhchgm3,qhga,qhid,qhidgm3,qhin,qhlo,qhlogm3,qhmn,qhpc,qhsf,qhsfgm3,qhtt/d=1/ed=1/ct=zgms/rs=AA2YrTvDtorsWuiBHYzP5-lS7pwgoAa95g" |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 855 |
Entropy (8bit): | 5.19090611840839 |
Encrypted: | false |
SSDEEP: | 24:fRkfK7FnAPDpmBHslgT9lCuABATjquoB7HHHHHHHYqmffffffo:ai7FAVmKlgZ01BACuSEqmffffffo |
MD5: | 8C2A8CE09D011AAA48A1C747F4845B8F |
SHA1: | D7C1B3069C8147561FAAF774CD7649B6B92FE9F9 |
SHA-256: | 2597D3160832F975B7250B68827B259CEE10AFBA633CE49162CFFD7753A6ED7C |
SHA-512: | D0FC5EA86C2ADE6ABDDD4B0B303CD7D92725569A9DC5FBEF7BD79D21E8EB6B7B9110066DCFA73DE5307EBF3AFC738C8775A680ECEEEE01C062A4BECDD96AF0AE |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=15&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1660 |
Entropy (8bit): | 4.301517070642596 |
Encrypted: | false |
SSDEEP: | 48:A/S9VU5IDhYYmMqPLmumtrYW2DyZ/jTq9J:A2VUSDhYYmM5trYFw/jmD |
MD5: | 554640F465EB3ED903B543DAE0A1BCAC |
SHA1: | E0E6E2C8939008217EB76A3B3282CA75F3DC401A |
SHA-256: | 99BF4AA403643A6D41C028E5DB29C79C17CBC815B3E10CD5C6B8F90567A03E52 |
SHA-512: | 462198E2B69F72F1DC9743D0EA5EED7974A035F24600AA1C2DE0211D978FF0795370560CBF274CCC82C8AC97DC3706C753168D4B90B0B81AE84CC922C055CFF0 |
Malicious: | false |
Reputation: | low |
URL: | https://www.gstatic.com/images/branding/googlelogo/svg/googlelogo_clr_74x24px.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 19 |
Entropy (8bit): | 3.6818808028034042 |
Encrypted: | false |
SSDEEP: | 3:VQRWN:VQRWN |
MD5: | 9FAE2B6737B98261777262B14B586F28 |
SHA1: | 79C894898B2CED39335EB0003C18B27AA8C6DDCD |
SHA-256: | F55F6B26E77DF6647E544AE5B45892DCEA380B7A6D2BFAA1E023EA112CE81E73 |
SHA-512: | 29CB8E5462B15488B0C6D5FC1673E273FB47841E9C76A4AA5415CA93CEA31B87052BBA511680F2BC9E6543A29F1BBFBA9D06FCC08F5C65BEB115EE7A9E5EFF36 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/async/ddljson?async=ntp:2 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3626 |
Entropy (8bit): | 5.859364391513557 |
Encrypted: | false |
SSDEEP: | 96:KvVMliWCIN6666VezgCilq7lRGxQ3sIKmvNrTvSioIjDfQffo:KInN6666VeE1ClUxg1lbwIj |
MD5: | 455EDB49A5799DCE1E7709FB5B5D59F6 |
SHA1: | D47A9B4F2E7AEA90B0EBE2B9D76B7D726D65E08B |
SHA-256: | 35A4A1414806E68CD0F67BE7113439A3F6C2AED79884A57B6AB09219703F3A9F |
SHA-512: | 795337FFFD184775068A265529C2528C8D6077A73DCE5513580098CEF00A5534107AA55FDFD11CDE97C2041A4BE0284E6B893F843F65CE80E0DDCA97BA0391C3 |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=7&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 16, 2025 02:27:40.134772062 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:40.438137054 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:41.044153929 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:41.641223907 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:41.641256094 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:41.641335011 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:41.641747952 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:41.641757965 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.073517084 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.073554039 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.073616028 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.074301004 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.074312925 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.120147943 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.120197058 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.120357990 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.120594978 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.120606899 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.151583910 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.151607990 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.151684999 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.151943922 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.151956081 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.247174978 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:42.274774075 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.275310993 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.275327921 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.276328087 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.276575089 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.277880907 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.277945995 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.278040886 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.278047085 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.326493025 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.565150023 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.567518950 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.567985058 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.571753979 CET | 49703 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.571768999 CET | 443 | 49703 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.701518059 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.701803923 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.701821089 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.702708960 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.702965975 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.703087091 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.703133106 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.703319073 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.747334003 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.753585100 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.753838062 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.753851891 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.755278111 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.755338907 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.755718946 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.755799055 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.755855083 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.757177114 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.757184982 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.789474964 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.790266991 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.790277958 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.793873072 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.794064045 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.794318914 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.794405937 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.794509888 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.799356937 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.805166960 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.805176020 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.805198908 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.836405993 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.836421013 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:42.852159977 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:42.884417057 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.006711960 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.006814003 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.006969929 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.007817030 CET | 49704 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.007831097 CET | 443 | 49704 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077507973 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077656031 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077733994 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077773094 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.077789068 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077877998 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077897072 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.077904940 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.077939987 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.082920074 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.087131023 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.087208986 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.087308884 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.087321043 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.087368011 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.090312004 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.115664959 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.115999937 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.116086960 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.116764069 CET | 49706 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.116771936 CET | 443 | 49706 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.139174938 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.139184952 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.165415049 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.165486097 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.165498972 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.166470051 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.166524887 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.166533947 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.172580004 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.172657967 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.172725916 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.172734976 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.172838926 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.179105043 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.185296059 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.185359001 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.185370922 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.191502094 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.191559076 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.191566944 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.197622061 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.197681904 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.197690010 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.203587055 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.203660011 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.203666925 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.209724903 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.209800959 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.209803104 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.209831953 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.209887981 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.215883017 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.221965075 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.222023010 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.222033024 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.252121925 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.252202034 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.252211094 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.252342939 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.252388954 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.252394915 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.253902912 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.253967047 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.253973961 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.254065037 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.254137039 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.254143000 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.259357929 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.259413958 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.259421110 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.264913082 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.264991045 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.264997959 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.270931959 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.271009922 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.271015882 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.276793957 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.276911974 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.276959896 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.276968002 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.277069092 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.282532930 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.287897110 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.287964106 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.287971020 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.292897940 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.292979956 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.292988062 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.297832012 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.297890902 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.297899961 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.302849054 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.302906036 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.302913904 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.307698011 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.307785034 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.307791948 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.307813883 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.307883024 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.312237978 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.316662073 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.316721916 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.316729069 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.321058989 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.321109056 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.321115971 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.325169086 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.325225115 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.325233936 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.329303980 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.329416037 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.329452038 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.329458952 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.329638004 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.333122015 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.333301067 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.333386898 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.333395004 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.337138891 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.337219000 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.337227106 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.340889931 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.341007948 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.341015100 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.344770908 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.344826937 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.344844103 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.347177029 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.347240925 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.347248077 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.349482059 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.349536896 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.349544048 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.351888895 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.351950884 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.351958036 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.354149103 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.354203939 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.354212999 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.356605053 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.356842995 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.356849909 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.358911037 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.358971119 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.358979940 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.361253023 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.361325026 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.361331940 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.363606930 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.363667011 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.363684893 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.367188931 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.367275953 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.367294073 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.367594004 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:43.367763042 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.367923021 CET | 49705 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:43.367937088 CET | 443 | 49705 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:44.228725910 CET | 49689 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:44.656174898 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:45.510725975 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:45.510781050 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:45.510857105 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:45.511071920 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:45.511090040 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:46.146294117 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:46.146631956 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:46.146665096 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:46.146996021 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:46.147489071 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:46.147550106 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:46.193173885 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:48.304563046 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:48.607219934 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:49.213222027 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:49.468247890 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:27:50.426232100 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:52.773380995 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:52.837249994 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:53.077272892 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:53.685235977 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:54.897269964 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:56.094104052 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:56.094243050 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:56.094309092 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:56.925964117 CET | 49717 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:27:56.926009893 CET | 443 | 49717 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:27:57.307377100 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:27:57.643301964 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:27:59.079282045 CET | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Jan 16, 2025 02:28:02.110361099 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:28:04.710623026 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:04.710668087 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:04.710740089 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:04.710967064 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:04.710978985 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.016879082 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.016977072 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.017072916 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.017354012 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.017390966 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.339792013 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.340066910 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.340087891 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.340589046 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.340873003 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.340951920 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.340992928 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.383328915 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.383491993 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.643800974 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.643866062 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.643913031 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.644087076 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.644104958 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.644201040 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.645246983 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.645468950 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.645477057 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.645489931 CET | 443 | 49724 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.645531893 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.645637989 CET | 49724 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.646106958 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.646353006 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.646428108 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.646806002 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.647103071 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.647178888 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.647207022 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.687397957 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.702394009 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.945207119 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.945250034 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.945282936 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.945317030 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.945389032 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.945442915 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.947345972 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.947419882 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.947458982 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.947487116 CET | 443 | 49725 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:05.947513103 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.947513103 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:05.947560072 CET | 49725 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:07.252424002 CET | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Jan 16, 2025 02:28:11.724477053 CET | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Jan 16, 2025 02:28:13.807800055 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:13.807852030 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:13.807921886 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:13.808289051 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:13.808299065 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.114907026 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.114962101 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.115134954 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.115395069 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.115427017 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.438473940 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.438872099 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.438890934 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.439357042 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.439748049 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.439820051 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.439940929 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.487335920 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.733380079 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.734998941 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.735068083 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.735729933 CET | 49726 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.735749006 CET | 443 | 49726 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.750699997 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.750951052 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.751017094 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.752182007 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.752600908 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.752723932 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.752727032 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:14.795339108 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:14.800398111 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:15.043922901 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:15.045506001 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:15.045583963 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:15.046324015 CET | 49727 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:15.046346903 CET | 443 | 49727 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:45.569087982 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:45.569154024 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:45.569303989 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:45.569694042 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:45.569716930 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:46.214679956 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:46.215241909 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:46.215312004 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:46.216435909 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:46.216761112 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:46.216958046 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:46.271765947 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:56.195658922 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:56.195743084 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Jan 16, 2025 02:28:56.195828915 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:56.919250011 CET | 49730 | 443 | 192.168.2.16 | 142.250.185.132 |
Jan 16, 2025 02:28:56.919287920 CET | 443 | 49730 | 142.250.185.132 | 192.168.2.16 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 16, 2025 02:27:40.696284056 CET | 53 | 55341 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:40.788868904 CET | 53 | 53253 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:41.633618116 CET | 53269 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:41.633851051 CET | 58338 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:41.640263081 CET | 53 | 53269 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:41.640466928 CET | 53 | 58338 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:41.780158043 CET | 53 | 59267 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:43.453963041 CET | 53 | 57815 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:44.725727081 CET | 56672 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:44.725883007 CET | 60487 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:44.732410908 CET | 53 | 56672 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:44.732718945 CET | 53 | 49775 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:44.733159065 CET | 53 | 60487 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:45.730051994 CET | 57179 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:45.730242968 CET | 62419 | 53 | 192.168.2.16 | 1.1.1.1 |
Jan 16, 2025 02:27:45.736881971 CET | 53 | 57179 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:45.736963987 CET | 53 | 62419 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:27:58.768403053 CET | 53 | 49801 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:28:17.697489023 CET | 53 | 55217 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:28:40.631783962 CET | 53 | 55442 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:28:40.693974018 CET | 53 | 55917 | 1.1.1.1 | 192.168.2.16 |
Jan 16, 2025 02:28:44.473498106 CET | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Jan 16, 2025 02:29:10.411942959 CET | 53 | 54560 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Jan 16, 2025 02:27:41.633618116 CET | 192.168.2.16 | 1.1.1.1 | 0x581f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 16, 2025 02:27:41.633851051 CET | 192.168.2.16 | 1.1.1.1 | 0xf630 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 16, 2025 02:27:44.725727081 CET | 192.168.2.16 | 1.1.1.1 | 0x7945 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 16, 2025 02:27:44.725883007 CET | 192.168.2.16 | 1.1.1.1 | 0x52d7 | Standard query (0) | 65 | IN (0x0001) | false | |
Jan 16, 2025 02:27:45.730051994 CET | 192.168.2.16 | 1.1.1.1 | 0x3a89 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Jan 16, 2025 02:27:45.730242968 CET | 192.168.2.16 | 1.1.1.1 | 0x4d2a | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Jan 16, 2025 02:27:41.640263081 CET | 1.1.1.1 | 192.168.2.16 | 0x581f | No error (0) | 142.250.185.132 | A (IP address) | IN (0x0001) | false | ||
Jan 16, 2025 02:27:41.640466928 CET | 1.1.1.1 | 192.168.2.16 | 0xf630 | No error (0) | 65 | IN (0x0001) | false | |||
Jan 16, 2025 02:27:44.732410908 CET | 1.1.1.1 | 192.168.2.16 | 0x7945 | No error (0) | plus.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 16, 2025 02:27:44.732410908 CET | 1.1.1.1 | 192.168.2.16 | 0x7945 | No error (0) | 142.250.185.206 | A (IP address) | IN (0x0001) | false | ||
Jan 16, 2025 02:27:44.733159065 CET | 1.1.1.1 | 192.168.2.16 | 0x52d7 | No error (0) | plus.l.google.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Jan 16, 2025 02:27:45.736881971 CET | 1.1.1.1 | 192.168.2.16 | 0x3a89 | No error (0) | 172.217.18.110 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49703 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:27:42 UTC | 627 | OUT | |
2025-01-16 01:27:42 UTC | 1266 | IN | |
2025-01-16 01:27:42 UTC | 124 | IN | |
2025-01-16 01:27:42 UTC | 689 | IN | |
2025-01-16 01:27:42 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49704 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:27:42 UTC | 353 | OUT | |
2025-01-16 01:27:43 UTC | 1018 | IN | |
2025-01-16 01:27:43 UTC | 25 | IN | |
2025-01-16 01:27:43 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 49705 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:27:42 UTC | 530 | OUT | |
2025-01-16 01:27:43 UTC | 1018 | IN | |
2025-01-16 01:27:43 UTC | 372 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1293 | IN | |
2025-01-16 01:27:43 UTC | 500 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN | |
2025-01-16 01:27:43 UTC | 1390 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 49706 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:27:42 UTC | 353 | OUT | |
2025-01-16 01:27:43 UTC | 933 | IN | |
2025-01-16 01:27:43 UTC | 35 | IN | |
2025-01-16 01:27:43 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 49724 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:28:05 UTC | 833 | OUT | |
2025-01-16 01:28:05 UTC | 1266 | IN | |
2025-01-16 01:28:05 UTC | 124 | IN | |
2025-01-16 01:28:05 UTC | 1390 | IN | |
2025-01-16 01:28:05 UTC | 1390 | IN | |
2025-01-16 01:28:05 UTC | 728 | IN | |
2025-01-16 01:28:05 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.16 | 49725 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:28:05 UTC | 846 | OUT | |
2025-01-16 01:28:05 UTC | 1266 | IN | |
2025-01-16 01:28:05 UTC | 124 | IN | |
2025-01-16 01:28:05 UTC | 1390 | IN | |
2025-01-16 01:28:05 UTC | 1390 | IN | |
2025-01-16 01:28:05 UTC | 729 | IN | |
2025-01-16 01:28:05 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.16 | 49726 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:28:14 UTC | 833 | OUT | |
2025-01-16 01:28:14 UTC | 1266 | IN | |
2025-01-16 01:28:14 UTC | 124 | IN | |
2025-01-16 01:28:14 UTC | 738 | IN | |
2025-01-16 01:28:14 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.16 | 49727 | 142.250.185.132 | 443 | 7056 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-01-16 01:28:14 UTC | 847 | OUT | |
2025-01-16 01:28:15 UTC | 1266 | IN | |
2025-01-16 01:28:15 UTC | 124 | IN | |
2025-01-16 01:28:15 UTC | 738 | IN | |
2025-01-16 01:28:15 UTC | 5 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 20:27:38 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 20:27:39 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 20:27:40 |
Start date: | 15/01/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |