Windows
Analysis Report
https://abre.ai/vfd210df
Overview
Detection
Score: | 1 |
Range: | 0 - 100 |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 2500 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 420 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2360,i ,149138669 6667987988 9,96027380 0772257372 7,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion --var iations-se ed-version =20250306- 183004.429 000 --mojo -platform- channel-ha ndle=2372 /prefetch: 3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 6748 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://abre. ai/vfd210d f" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTP traffic: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
star.c10r.facebook.com | 157.240.241.17 | true | false | high | |
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
rplg.co | 49.12.20.10 | true | false | unknown | |
online.swifttech.cc | 104.21.37.50 | true | false | unknown | |
www.google.com | 142.251.40.196 | true | false | high | |
abre.ai | 167.71.108.29 | true | false | unknown | |
l.wl.co | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false |
| unknown | |
false | high | ||
false | unknown | ||
false |
| unknown | |
false |
| unknown | |
false | high | ||
false | high | ||
false |
| unknown | |
false |
| unknown | |
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
172.67.203.247 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
104.21.37.50 | online.swifttech.cc | United States | 13335 | CLOUDFLARENETUS | false | |
49.12.20.10 | rplg.co | Germany | 24940 | HETZNER-ASDE | false | |
157.240.241.17 | star.c10r.facebook.com | United States | 32934 | FACEBOOKUS | false | |
142.251.40.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false | |
167.71.108.29 | abre.ai | United States | 14061 | DIGITALOCEAN-ASNUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1657961 |
Start date and time: | 2025-04-07 04:46:29 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 4s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://abre.ai/vfd210df |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 20 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean1.win@23/12@14/8 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, a udiodg.exe, RuntimeBroker.exe, ShellExperienceHost.exe, SIHC lient.exe, SgrmBroker.exe, bac kgroundTaskHost.exe, conhost.e xe, svchost.exe - Excluded IPs from analysis (wh
itelisted): 142.250.80.14, 142 .251.40.195, 172.253.115.84, 1 72.217.165.142, 142.251.32.110 , 142.251.41.14, 23.203.176.22 1, 23.210.73.6, 142.250.65.174 , 142.250.65.206, 142.251.35.1 74, 142.250.80.110, 142.250.65 .227, 142.251.32.99, 184.31.69 .3, 204.79.197.222, 20.12.23.5 0 - Excluded domains from analysis
(whitelisted): fp.msedge.net, fs.microsoft.com, accounts.go ogle.com, slscr.update.microso ft.com, ctldl.windowsupdate.co m, clientservices.googleapis.c om, fe3cr.delivery.mp.microsof t.com, clients2.google.com, ed gedl.me.gvt1.com, redirector.g vt1.com, ocsp.digicert.com, up date.googleapis.com, clients.l .google.com, c.pki.goog - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - Some HTTPS proxied raw data pa
ckets have been limited to 10 per session. Please view the P CAPs for the complete data. - VT rate limit hit for: https:
//abre.ai/vfd210df
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 3213 |
Entropy (8bit): | 7.553565995366911 |
Encrypted: | false |
SSDEEP: | 96:35QRRzQqgtYCWBzmuvuLf33Pf309TxeL+vD+7SrQ9o6Br2eJk:GRRsqgOBzvcnM9TxVk9JCeJk |
MD5: | 0D768CBC261841D3AFFC933B9AC3130E |
SHA1: | AFF136A4C761E1DF1ADA7E5D9A6ED0EBEA74A4B7 |
SHA-256: | 1C53772285052E52BB7C12AD46A85A55747ED7BF66963FE1993FCEF91FF5B0D0 |
SHA-512: | CE5B1BBB8CF6B0C3D1FA146D1700DB2300ABD6F2BDBE43ECAAC6AEBC911BE6E1BCD2F8C6704A2CFA67BBB45598793DDEC017E05C2C37CE387293AAE08E7C342F |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 24051 |
Entropy (8bit): | 4.941039417164537 |
Encrypted: | false |
SSDEEP: | 192:VuR/6okgTQwq23gGM8lUR9YRGQ2BwoX6zp+1+nDT1FvxKSI7/UsV7MSE6XZ2dKzk:JwV+oUcoQJpdf1dxKSI7/Ue7ZX2qk |
MD5: | 5E8C69A459A691B5D1B9BE442332C87D |
SHA1: | F24DD1AD7C9080575D92A9A9A2C42620725EF836 |
SHA-256: | 84E3C77025ACE5AF143972B4A40FC834DCDFD4E449D4B36A57E62326F16B3091 |
SHA-512: | 6DB74B262D717916DE0B0B600EEAD2CC6A10E52A9E26D701FAE761FCBC931F35F251553669A92BE3B524F380F32E62AC6AD572BEA23C78965228CE9EFB92ED42 |
Malicious: | false |
Reputation: | low |
URL: | https://online.swifttech.cc/cdn-cgi/styles/cf.errors.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3213 |
Entropy (8bit): | 7.553565995366911 |
Encrypted: | false |
SSDEEP: | 96:35QRRzQqgtYCWBzmuvuLf33Pf309TxeL+vD+7SrQ9o6Br2eJk:GRRsqgOBzvcnM9TxVk9JCeJk |
MD5: | 0D768CBC261841D3AFFC933B9AC3130E |
SHA1: | AFF136A4C761E1DF1ADA7E5D9A6ED0EBEA74A4B7 |
SHA-256: | 1C53772285052E52BB7C12AD46A85A55747ED7BF66963FE1993FCEF91FF5B0D0 |
SHA-512: | CE5B1BBB8CF6B0C3D1FA146D1700DB2300ABD6F2BDBE43ECAAC6AEBC911BE6E1BCD2F8C6704A2CFA67BBB45598793DDEC017E05C2C37CE387293AAE08E7C342F |
Malicious: | false |
Reputation: | low |
URL: | https://online.swifttech.cc/cdn-cgi/images/cf-no-screenshot-error.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4513 |
Entropy (8bit): | 5.017707516750189 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYj5jDK/D5DMF+C8kcZqXKHvpIkdNxrRi9PaQxJbGD:1j9jhjYj9K/Vo+nkhaHvFdNxrQ9ieJGD |
MD5: | 184193C68A1F0D8CCB853A56C1778205 |
SHA1: | 247CB0A115799E1AB7C9CF71BB5C0B5C203078EE |
SHA-256: | 0C4FB3F96867533B5AF5F18B68B17BE3A8F3E60666409A71A32E50F5A26AEBA8 |
SHA-512: | A8EFFC6774DA81EC4483A24B12703E57EDE55DE0970A5B288434305BC7AB7FA5000EEFF2AD2994D3777570280B53E5115FD69218B6BBDE4C0BDA9ECB641CF907 |
Malicious: | false |
Reputation: | low |
URL: | https://online.swifttech.cc/new/sc03 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4513 |
Entropy (8bit): | 5.016685713764649 |
Encrypted: | false |
SSDEEP: | 96:1j9jwIjYj5jDK/D5DMF+C8kcZqXKHvpIkdN/rRi9PaQxJbGD:1j9jhjYj9K/Vo+nkhaHvFdN/rQ9ieJGD |
MD5: | 58A46EF30172E87109E8A0535E5AAD8B |
SHA1: | 4FC46BE45655D979A85FB35A4A230B69B00E8A4E |
SHA-256: | E707F3C4C10455FD4AE3E5EDA61AF582714904913E87BDA48000E5323D8C938F |
SHA-512: | EED0E24C5FBA518FE524A05706F9DA5AA131EE16095C9B405634B742E8C58B7CFCC7E92210A322BDD6BD44FB224A3664C5AFA5B8CC900EDDD737FDF4899CBC47 |
Malicious: | false |
Reputation: | low |
URL: | https://online.swifttech.cc/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 715 |
Entropy (8bit): | 7.3533249502413565 |
Encrypted: | false |
SSDEEP: | 12:6v/7et+/37c7jvBjLg+UnhdeNdLI4dACGHJovQpMZP5ajgj7xbKwkRR/:Lu490+NdcCqJlpMZxajnwCR/ |
MD5: | 226DCB8F6144BDAAFDFBD8F2F354BE64 |
SHA1: | 3785CC5B3BF52F8E398177B0FF1020B24AA86B8C |
SHA-256: | 8C873472F4925D5D47521DB4D52532D2983E9CB1BDE8B43143A6CC6DB56C35DB |
SHA-512: | ED898B12C4895F7ACEAAB443C1071E6376DB71B4DFDBD769F5F3BE71D562438A18B5E5DC36DD7CC610926E380603A894B2E81DF4302680C736A412BFD3360D3A |
Malicious: | false |
Reputation: | low |
URL: | https://online.swifttech.cc/cdn-cgi/images/browser-bar.png?1376755637 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 715 |
Entropy (8bit): | 7.3533249502413565 |
Encrypted: | false |
SSDEEP: | 12:6v/7et+/37c7jvBjLg+UnhdeNdLI4dACGHJovQpMZP5ajgj7xbKwkRR/:Lu490+NdcCqJlpMZxajnwCR/ |
MD5: | 226DCB8F6144BDAAFDFBD8F2F354BE64 |
SHA1: | 3785CC5B3BF52F8E398177B0FF1020B24AA86B8C |
SHA-256: | 8C873472F4925D5D47521DB4D52532D2983E9CB1BDE8B43143A6CC6DB56C35DB |
SHA-512: | ED898B12C4895F7ACEAAB443C1071E6376DB71B4DFDBD769F5F3BE71D562438A18B5E5DC36DD7CC610926E380603A894B2E81DF4302680C736A412BFD3360D3A |
Malicious: | false |
Reputation: | low |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 196
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 7, 2025 04:47:22.394238949 CEST | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Apr 7, 2025 04:47:29.421189070 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:29.790704012 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:30.503140926 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:31.802248001 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:32.003546953 CEST | 49681 | 80 | 192.168.2.4 | 2.17.190.73 |
Apr 7, 2025 04:47:33.634721994 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:33.634819984 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:33.634902000 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:33.635057926 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:33.635082960 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:33.839122057 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:33.839329958 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:33.840415001 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:33.840437889 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:33.840842962 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:33.894212008 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:34.210827112 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:35.598304033 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.598376989 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.598454952 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.598656893 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.598690987 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.615119934 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.615142107 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.615268946 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.615571976 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.615597963 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.852986097 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.853193045 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.854743958 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.854758024 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.854998112 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.855024099 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.855087042 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.856086969 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.856097937 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.856350899 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:35.856410980 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.896190882 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:35.900295973 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:36.098443985 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:36.098539114 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:36.098767042 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:36.099009037 CEST | 49723 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:47:36.099033117 CEST | 443 | 49723 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:47:36.228300095 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.228365898 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:36.228550911 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.228888035 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.228921890 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:36.607480049 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:36.607608080 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.633521080 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.633555889 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:36.633821964 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:36.634974003 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:36.680316925 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:38.165884972 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:38.473985910 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:38.501410961 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:38.501595974 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:38.504302979 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:38.504347086 CEST | 443 | 49725 | 49.12.20.10 | 192.168.2.4 |
Apr 7, 2025 04:47:38.504383087 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:38.504448891 CEST | 49725 | 443 | 192.168.2.4 | 49.12.20.10 |
Apr 7, 2025 04:47:38.625258923 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.625343084 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:38.625479937 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.628307104 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.628345013 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:38.826385975 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:38.826564074 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.832246065 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.832277060 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:38.832510948 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:38.834496021 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:38.876292944 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.022221088 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:39.046000957 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.046071053 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:39.046082020 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.046092987 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.046138048 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:39.046159983 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.046248913 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.046308994 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:39.047295094 CEST | 49728 | 443 | 192.168.2.4 | 157.240.241.17 |
Apr 7, 2025 04:47:39.047332048 CEST | 443 | 49728 | 157.240.241.17 | 192.168.2.4 |
Apr 7, 2025 04:47:39.086874962 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:39.272402048 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.272470951 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.272542953 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.272804022 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.272841930 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.272903919 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.272986889 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.273025990 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.273200035 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.273245096 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.476910114 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.477008104 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.477060080 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.477121115 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.478552103 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.478601933 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.478818893 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.478830099 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.478878975 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.479074955 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.479161024 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.519037008 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.520323992 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711684942 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711726904 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711757898 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711780071 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.711785078 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711839914 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711875916 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.711921930 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.711971998 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.714617968 CEST | 49731 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.714663982 CEST | 443 | 49731 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.769968987 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.811918974 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:39.811956882 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.812010050 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:39.812284946 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.812655926 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:39.812668085 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.868891954 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.868943930 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.868978977 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.868995905 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869009972 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869024038 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869057894 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869083881 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869113922 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869131088 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869154930 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869224072 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869374037 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869432926 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869462013 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869481087 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869497061 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.869554043 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.869893074 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870230913 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870254993 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870279074 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.870292902 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870342016 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.870354891 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870837927 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870881081 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.870893002 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870912075 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.870964050 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.871284008 CEST | 49730 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.871310949 CEST | 443 | 49730 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.880088091 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.880184889 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.880283117 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.880542040 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.880640984 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.880706072 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.880909920 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.880948067 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:39.881108999 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:39.881159067 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.019712925 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.019984007 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.020741940 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.020754099 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.020982981 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.021250963 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.068284988 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095226049 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095298052 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095685005 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.095688105 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.095727921 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095752001 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095927000 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.095928907 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.095941067 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.095941067 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.237170935 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.237236977 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.238043070 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238051891 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238070965 CEST | 443 | 49732 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.238101959 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238121986 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.238198996 CEST | 49732 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238218069 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238524914 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.238578081 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.298904896 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:40.334162951 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.334204912 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.334243059 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.334287882 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.334784031 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.338241100 CEST | 49735 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.338264942 CEST | 443 | 49735 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.429394960 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.429757118 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.429757118 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.429809093 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.429835081 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.451818943 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.451900005 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.452028036 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.452116966 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.452138901 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.526736021 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.526855946 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.527017117 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.527662992 CEST | 49734 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.527687073 CEST | 443 | 49734 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.541872025 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.541937113 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.542251110 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.543042898 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.543070078 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.563410997 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.563446045 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.566349030 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.569545031 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.569562912 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.650051117 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.650162935 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.650346994 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.650366068 CEST | 443 | 49737 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.650393963 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.650424004 CEST | 49737 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:47:40.652437925 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.652837992 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.652935982 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.652949095 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.653183937 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.653455019 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.696317911 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.742861986 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.747387886 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.747422934 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.747955084 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.747965097 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.778805017 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.778914928 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.780298948 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.780304909 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.780698061 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.781501055 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.828270912 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888062954 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888120890 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888153076 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888185978 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.888226032 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888338089 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.888463974 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.890958071 CEST | 49738 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:40.890980959 CEST | 443 | 49738 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983138084 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983191967 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983222961 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983253956 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983279943 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.983300924 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.983350992 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:40.983385086 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:40.984323978 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:41.015645981 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:41.015796900 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:41.015878916 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:41.234268904 CEST | 49740 | 443 | 192.168.2.4 | 172.67.203.247 |
Apr 7, 2025 04:47:41.234294891 CEST | 443 | 49740 | 172.67.203.247 | 192.168.2.4 |
Apr 7, 2025 04:47:41.236440897 CEST | 49739 | 443 | 192.168.2.4 | 104.21.37.50 |
Apr 7, 2025 04:47:41.236515999 CEST | 443 | 49739 | 104.21.37.50 | 192.168.2.4 |
Apr 7, 2025 04:47:41.376296997 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.377031088 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.377094984 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.476726055 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.477379084 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.477500916 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.478708029 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.478744030 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.478807926 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.479998112 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.482316017 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.482357025 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.482388973 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.482420921 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.486149073 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.579467058 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.586934090 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.590430975 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.590466976 CEST | 443 | 49709 | 131.253.33.254 | 192.168.2.4 |
Apr 7, 2025 04:47:41.590493917 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.590528011 CEST | 49709 | 443 | 192.168.2.4 | 131.253.33.254 |
Apr 7, 2025 04:47:41.752924919 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:47:41.846898079 CEST | 80 | 49745 | 142.251.35.163 | 192.168.2.4 |
Apr 7, 2025 04:47:41.846972942 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:47:41.847081900 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:47:41.944117069 CEST | 80 | 49745 | 142.251.35.163 | 192.168.2.4 |
Apr 7, 2025 04:47:41.944653988 CEST | 80 | 49745 | 142.251.35.163 | 192.168.2.4 |
Apr 7, 2025 04:47:41.950083017 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:47:42.044323921 CEST | 80 | 49745 | 142.251.35.163 | 192.168.2.4 |
Apr 7, 2025 04:47:42.096420050 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:47:42.706700087 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:43.831105947 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:43.831150055 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:43.831372976 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:44.317452908 CEST | 49721 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:47:44.317488909 CEST | 443 | 49721 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:47:47.520462990 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:47:48.628237009 CEST | 49671 | 443 | 192.168.2.4 | 204.79.197.203 |
Apr 7, 2025 04:47:57.134258032 CEST | 49678 | 443 | 192.168.2.4 | 20.189.173.27 |
Apr 7, 2025 04:48:20.863153934 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:48:20.863209963 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:48:33.598325014 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:33.598375082 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:33.598475933 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:33.598638058 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:33.598654032 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:33.800848007 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:33.801249981 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:33.801264048 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:35.810750008 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:48:35.810827971 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:48:35.811000109 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:48:36.317280054 CEST | 49724 | 443 | 192.168.2.4 | 167.71.108.29 |
Apr 7, 2025 04:48:36.317322016 CEST | 443 | 49724 | 167.71.108.29 | 192.168.2.4 |
Apr 7, 2025 04:48:39.723666906 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:39.723712921 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:39.723810911 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:39.723984957 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:39.723998070 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:39.918147087 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:39.918422937 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:39.918446064 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:39.918586969 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:39.918600082 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.140383959 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.140469074 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.140522957 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.140729904 CEST | 49755 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.140739918 CEST | 443 | 49755 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.141504049 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.141518116 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.141590118 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.141747952 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.141762972 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.335710049 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.335948944 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.335978031 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.336097002 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.336103916 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.560381889 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.560452938 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:40.560511112 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.560714006 CEST | 49756 | 443 | 192.168.2.4 | 35.190.80.1 |
Apr 7, 2025 04:48:40.560728073 CEST | 443 | 49756 | 35.190.80.1 | 192.168.2.4 |
Apr 7, 2025 04:48:42.346810102 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:48:42.442653894 CEST | 80 | 49745 | 142.251.35.163 | 192.168.2.4 |
Apr 7, 2025 04:48:42.442725897 CEST | 49745 | 80 | 192.168.2.4 | 142.251.35.163 |
Apr 7, 2025 04:48:43.819634914 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:43.819761992 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Apr 7, 2025 04:48:43.819838047 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:44.317240953 CEST | 49752 | 443 | 192.168.2.4 | 142.251.40.196 |
Apr 7, 2025 04:48:44.317286968 CEST | 443 | 49752 | 142.251.40.196 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 7, 2025 04:47:30.370759964 CEST | 53 | 59450 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:30.388322115 CEST | 53 | 52139 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:31.119568110 CEST | 53 | 58145 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:33.535815001 CEST | 61219 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:33.535979986 CEST | 49381 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:33.633383989 CEST | 53 | 61219 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:33.633780003 CEST | 53 | 49381 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:35.426378965 CEST | 52729 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:35.426624060 CEST | 63828 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:35.532852888 CEST | 53 | 63828 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:35.597568989 CEST | 53 | 52729 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:36.102359056 CEST | 57433 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:36.102514982 CEST | 58681 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:36.202363968 CEST | 53 | 58681 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:36.227699995 CEST | 53 | 57433 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:38.506372929 CEST | 59304 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:38.506638050 CEST | 65346 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:38.608432055 CEST | 53 | 65346 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:38.621759892 CEST | 53 | 59304 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.142601967 CEST | 57791 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:39.143109083 CEST | 57781 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:39.252405882 CEST | 53 | 57791 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.271502018 CEST | 53 | 57781 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.713474989 CEST | 63416 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:39.713635921 CEST | 52204 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:39.810818911 CEST | 53 | 63416 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:39.811139107 CEST | 53 | 52204 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.340409994 CEST | 52412 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:40.342241049 CEST | 55125 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 7, 2025 04:47:40.443789959 CEST | 53 | 55125 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:40.451361895 CEST | 53 | 52412 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:47:48.202172041 CEST | 53 | 51996 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:48:07.243465900 CEST | 53 | 61724 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:48:29.714643955 CEST | 53 | 54793 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:48:29.719263077 CEST | 53 | 51904 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:48:31.994573116 CEST | 53 | 52609 | 1.1.1.1 | 192.168.2.4 |
Apr 7, 2025 04:48:37.586999893 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 7, 2025 04:47:33.535815001 CEST | 192.168.2.4 | 1.1.1.1 | 0x3eef | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:33.535979986 CEST | 192.168.2.4 | 1.1.1.1 | 0xf859 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:35.426378965 CEST | 192.168.2.4 | 1.1.1.1 | 0xf052 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:35.426624060 CEST | 192.168.2.4 | 1.1.1.1 | 0x7a04 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:36.102359056 CEST | 192.168.2.4 | 1.1.1.1 | 0xa318 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:36.102514982 CEST | 192.168.2.4 | 1.1.1.1 | 0x9c47 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:38.506372929 CEST | 192.168.2.4 | 1.1.1.1 | 0xfd50 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:38.506638050 CEST | 192.168.2.4 | 1.1.1.1 | 0x64b7 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:39.142601967 CEST | 192.168.2.4 | 1.1.1.1 | 0x399c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:39.143109083 CEST | 192.168.2.4 | 1.1.1.1 | 0xd51d | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:39.713474989 CEST | 192.168.2.4 | 1.1.1.1 | 0x92a7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:39.713635921 CEST | 192.168.2.4 | 1.1.1.1 | 0xa284 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 7, 2025 04:47:40.340409994 CEST | 192.168.2.4 | 1.1.1.1 | 0xe089 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 7, 2025 04:47:40.342241049 CEST | 192.168.2.4 | 1.1.1.1 | 0x4a1 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 7, 2025 04:47:33.633383989 CEST | 1.1.1.1 | 192.168.2.4 | 0x3eef | No error (0) | 142.251.40.196 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:33.633780003 CEST | 1.1.1.1 | 192.168.2.4 | 0xf859 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 7, 2025 04:47:35.597568989 CEST | 1.1.1.1 | 192.168.2.4 | 0xf052 | No error (0) | 167.71.108.29 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:36.227699995 CEST | 1.1.1.1 | 192.168.2.4 | 0xa318 | No error (0) | 49.12.20.10 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:38.608432055 CEST | 1.1.1.1 | 192.168.2.4 | 0x64b7 | No error (0) | star.c10r.facebook.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:38.608432055 CEST | 1.1.1.1 | 192.168.2.4 | 0x64b7 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 7, 2025 04:47:38.608432055 CEST | 1.1.1.1 | 192.168.2.4 | 0x64b7 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 7, 2025 04:47:38.621759892 CEST | 1.1.1.1 | 192.168.2.4 | 0xfd50 | No error (0) | star.c10r.facebook.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:38.621759892 CEST | 1.1.1.1 | 192.168.2.4 | 0xfd50 | No error (0) | 157.240.241.17 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:39.252405882 CEST | 1.1.1.1 | 192.168.2.4 | 0x399c | No error (0) | 104.21.37.50 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:39.252405882 CEST | 1.1.1.1 | 192.168.2.4 | 0x399c | No error (0) | 172.67.203.247 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:39.271502018 CEST | 1.1.1.1 | 192.168.2.4 | 0xd51d | No error (0) | 65 | IN (0x0001) | false | |||
Apr 7, 2025 04:47:39.810818911 CEST | 1.1.1.1 | 192.168.2.4 | 0x92a7 | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:40.443789959 CEST | 1.1.1.1 | 192.168.2.4 | 0x4a1 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 7, 2025 04:47:40.451361895 CEST | 1.1.1.1 | 192.168.2.4 | 0xe089 | No error (0) | 172.67.203.247 | A (IP address) | IN (0x0001) | false | ||
Apr 7, 2025 04:47:40.451361895 CEST | 1.1.1.1 | 192.168.2.4 | 0xe089 | No error (0) | 104.21.37.50 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
0 | 192.168.2.4 | 49745 | 142.251.35.163 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Apr 7, 2025 04:47:41.847081900 CEST | 202 | OUT | |
Apr 7, 2025 04:47:41.944653988 CEST | 223 | IN | |
Apr 7, 2025 04:47:41.950083017 CEST | 200 | OUT | |
Apr 7, 2025 04:47:42.044323921 CEST | 1243 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49723 | 167.71.108.29 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:35 UTC | 665 | OUT | |
2025-04-07 02:47:36 UTC | 695 | IN | |
2025-04-07 02:47:36 UTC | 109 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49725 | 49.12.20.10 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:36 UTC | 673 | OUT | |
2025-04-07 02:47:38 UTC | 270 | IN | |
2025-04-07 02:47:38 UTC | 81 | IN | |
2025-04-07 02:47:38 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49728 | 157.240.241.17 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:38 UTC | 716 | OUT | |
2025-04-07 02:47:39 UTC | 1753 | IN | |
2025-04-07 02:47:39 UTC | 1668 | IN | |
2025-04-07 02:47:39 UTC | 4 | IN | |
2025-04-07 02:47:39 UTC | 238 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49731 | 104.21.37.50 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:39 UTC | 690 | OUT | |
2025-04-07 02:47:39 UTC | 901 | IN | |
2025-04-07 02:47:39 UTC | 468 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1315 | IN | |
2025-04-07 02:47:39 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49730 | 104.21.37.50 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:39 UTC | 580 | OUT | |
2025-04-07 02:47:39 UTC | 411 | IN | |
2025-04-07 02:47:39 UTC | 958 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN | |
2025-04-07 02:47:39 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49732 | 35.190.80.1 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 550 | OUT | |
2025-04-07 02:47:40 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49734 | 104.21.37.50 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 659 | OUT | |
2025-04-07 02:47:40 UTC | 178 | IN | |
2025-04-07 02:47:40 UTC | 722 | IN | |
2025-04-07 02:47:40 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49735 | 104.21.37.50 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 659 | OUT | |
2025-04-07 02:47:40 UTC | 410 | IN | |
2025-04-07 02:47:40 UTC | 959 | IN | |
2025-04-07 02:47:40 UTC | 1369 | IN | |
2025-04-07 02:47:40 UTC | 885 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49737 | 35.190.80.1 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 525 | OUT | |
2025-04-07 02:47:40 UTC | 412 | OUT | |
2025-04-07 02:47:40 UTC | 214 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49738 | 172.67.203.247 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 424 | OUT | |
2025-04-07 02:47:40 UTC | 410 | IN | |
2025-04-07 02:47:40 UTC | 959 | IN | |
2025-04-07 02:47:40 UTC | 1369 | IN | |
2025-04-07 02:47:40 UTC | 885 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49739 | 104.21.37.50 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 609 | OUT | |
2025-04-07 02:47:40 UTC | 897 | IN | |
2025-04-07 02:47:40 UTC | 472 | IN | |
2025-04-07 02:47:40 UTC | 1369 | IN | |
2025-04-07 02:47:40 UTC | 1369 | IN | |
2025-04-07 02:47:40 UTC | 1311 | IN | |
2025-04-07 02:47:40 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49740 | 172.67.203.247 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:47:40 UTC | 424 | OUT | |
2025-04-07 02:47:41 UTC | 409 | IN | |
2025-04-07 02:47:41 UTC | 715 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49755 | 35.190.80.1 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:48:39 UTC | 546 | OUT | |
2025-04-07 02:48:40 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49756 | 35.190.80.1 | 443 | 420 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-07 02:48:40 UTC | 521 | OUT | |
2025-04-07 02:48:40 UTC | 439 | OUT | |
2025-04-07 02:48:40 UTC | 214 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 22:47:26 |
Start date: | 06/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 22:47:28 |
Start date: | 06/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 4 |
Start time: | 22:47:34 |
Start date: | 06/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff786830000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |