Windows
Analysis Report
https://brewing.biolar.ind.br/seven/youtube/iq1jC2ZhL4UbNkFjktgne6XT03PVjfYH414ywbQNRLLYPzqpDL4qGzc3nGkvdPiY745Wtcu6pJvGyJhRPwMQrqcgx0FAKHBiGqSAjkwH6icNAQe82xAML7uzUV6UfkReUKaJ4mL5BR0CyZ0Bg3t7pzrq2a5xfU8np0MjkfnzkxVhCcTwiQRJ3AhXRYyzxFyguXExN61zpRFygMCKBpgN2dBcHqAFMiKxEw7f5YvdHb1U2xJqDkptF35mD5Y3FSM9
Overview
General Information
Detection
Score: | 1 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 1476 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2000 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2368 --fi eld-trial- handle=218 4,i,106576 1751446354 512,158478 3160703717 1849,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 5684 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://brewi ng.biolar. ind.br/sev en/youtube /iq1jC2ZhL 4UbNkFjktg ne6XT03PVj fYH414ywbQ NRLLYPzqpD L4qGzc3nGk vdPiY745Wt cu6pJvGyJh RPwMQrqcgx 0FAKHBiGqS AjkwH6icNA Qe82xAML7u zUV6UfkReU KaJ4mL5BR0 CyZ0Bg3t7p zrq2a5xfU8 np0Mjkfnzk xVhCcTwiQR J3AhXRYyzx FyguXExN61 zpRFygMCKB pgN2dBcHqA FMiKxEw7f5 YvdHb1U2xJ qDkptF35mD 5Y3FSM9wNM w0x9QNXSYn end0EkYcnh 8juky941H5 eifpRuWfHX jQbtDghaHf KPXgGktc7i ESue5HJwYr JvhDVYg5YQ 2MeG0VW2EQ cT2E5dq2ci jS2UAPakfj GchNN2rZY9 4mxbqW9YfL Uv1Z4aUmvB mC6Ch6z0Bn 9357uaHwYT FXfUkHugWP -am9lbC5hZ GFtc0Bzb3V 0aHNpZGUuY 29t" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
brewing.biolar.ind.br | 192.185.214.242 | true | false | unknown | |
www.google.com | 142.251.167.99 | true | false | high | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false | unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
192.185.214.242 | brewing.biolar.ind.br | United States | 46606 | UNIFIEDLAYER-AS-1US | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
142.251.167.99 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.5 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1417059 |
Start date and time: | 2024-03-28 15:13:18 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 17s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://brewing.biolar.ind.br/seven/youtube/iq1jC2ZhL4UbNkFjktgne6XT03PVjfYH414ywbQNRLLYPzqpDL4qGzc3nGkvdPiY745Wtcu6pJvGyJhRPwMQrqcgx0FAKHBiGqSAjkwH6icNAQe82xAML7uzUV6UfkReUKaJ4mL5BR0CyZ0Bg3t7pzrq2a5xfU8np0MjkfnzkxVhCcTwiQRJ3AhXRYyzxFyguXExN61zpRFygMCKBpgN2dBcHqAFMiKxEw7f5YvdHb1U2xJqDkptF35mD5Y3FSM9wNMw0x9QNXSYnend0EkYcnh8juky941H5eifpRuWfHXjQbtDghaHfKPXgGktc7iESue5HJwYrJvhDVYg5YQ2MeG0VW2EQcT2E5dq2cijS2UAPakfjGchNN2rZY94mxbqW9YfLUv1Z4aUmvBmC6Ch6z0Bn9357uaHwYTFXfUkHugWP-am9lbC5hZGFtc0Bzb3V0aHNpZGUuY29t |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean1.win@16/19@6/4 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.251.167.94, 142.251.167.113, 142.251.167.100, 142.251.167.101, 142.251.167.102, 142.251.167.138, 142.251.167.139, 172.253.115.84, 34.104.35.123, 172.253.115.95, 142.251.167.95, 172.253.63.95, 142.251.111.95, 172.253.122.95, 142.251.163.95, 172.253.62.95, 142.251.179.95, 142.251.16.95, 20.114.59.183, 23.40.179.181, 72.21.81.240, 192.229.211.108, 20.3.187.198, 172.253.122.94, 23.207.202.131, 23.207.202.162, 23.207.202.156, 23.207.202.167, 23.207.202.148, 23.207.202.136, 23.207.202.139, 23.207.202.138, 23.207.202.155
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, clientservices.googleapis.com, a767.dspw65.akamai.net, wu.azureedge.net, clients2.google.com, ocsp.digicert.com, ocsp.edge.digicert.com, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, glb.sls.prod.dcat.dsp.trafficmanager.net, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, wu.ec.azureedge.net, ctldl.windowsupdate.com, wu-bg-shim.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, download.windowsupdate.com.edgesuite.net, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, clients.l.google.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9855272048430184 |
Encrypted: | false |
SSDEEP: | 48:8NWdOTqKKH5idAKZdA19ehwiZUklqehr1ny+3:8N738S5y |
MD5: | 5642A4FD5CD38BEA0EB1291FB5EA1696 |
SHA1: | 058D324ABC343FCFFB94FE44D06168C78FA52A3D |
SHA-256: | F761185D96229B8BD30744A569FADF1F12F2907ABDAE5FC685F11932E79BC2D3 |
SHA-512: | 1325667A863BD78248A5E1DED0CDC7744DCAE281C12C2A3FA07239C8B0FD08B323D26E85BFA9108A9E5B9DA61B43DD0B6C23F81A1492EEA647B83EDAFD6EB21C |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9986779686872014 |
Encrypted: | false |
SSDEEP: | 48:8PWdOTqKKH5idAKZdA1weh/iZUkAQkqehC1ny+2:8P73O9Ql5y |
MD5: | 29A86F65E1FB62A9287D23E4803AE7B5 |
SHA1: | B7966B42FD5D5FFF639D2ECCF2F773253C4466F7 |
SHA-256: | 7F6532701164F71B119AD46F4305CC41991866189CD718F31257C3DB5663BF44 |
SHA-512: | 3A9A9DD816D3D225F1F99AC514CDA08C910E626B67E36C4AA112C92088D821EE4D9DD5D4DAF059575D285C0D2FCDD574979C9DCA7C907869308645CA37CBA89E |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.009465060565576 |
Encrypted: | false |
SSDEEP: | 48:8xjdOTqKsH5idAKZdA14tseh7sFiZUkmgqeh7sc1ny+BX:8x83cnW5y |
MD5: | A31F2F4BAB2AE6941B1BEAD2AF46433D |
SHA1: | 0168CF858D66772710FDE6900C45F3C358923EC6 |
SHA-256: | BEE6EA874883E27AEE6C094C76AED05929D2365FC4F28860DA52935A5E69E9A1 |
SHA-512: | 64279F8F3DB8EDA2F9F037776A853C45F9D853133F2AA1BD1CF6D8DFC208F75599C3AC8280ACA2ECB4AAD09BD3AAD8F03A85F05F5547629CC6CE3CBA9FC17999 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.999996418134966 |
Encrypted: | false |
SSDEEP: | 48:8/WdOTqKKH5idAKZdA1vehDiZUkwqeh+1ny+R:8/73VE5y |
MD5: | DF587C1DFEC988591F7E08FAA0CA90B1 |
SHA1: | 210DAA7AD2F4D3B06AD8D489FA991E1F59EB3AE2 |
SHA-256: | DC8F2A4B4B8115AE5108AF419E9344A51A2CE1F413EC2D2624F130919C7E70C4 |
SHA-512: | 2CFE6EDC28DC233B2D8DF194C28719957C471C01A710DAB99081A3065454A3DE82587A1CF750881B5DD869BFEA7F81F6CE93DC2B67AD5510B30C0D37BE068A98 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9880772278913565 |
Encrypted: | false |
SSDEEP: | 48:87WdOTqKKH5idAKZdA1hehBiZUk1W1qehw1ny+C:8773F9Q5y |
MD5: | 3CDDB4CD558E2438F1F1129BFBF64568 |
SHA1: | 4F34A4FD26770E6398A76C6A544CFD75B68CAA40 |
SHA-256: | 1CB23C4FA0ED1CD070B5FEE50978193467EC3B0C89127633DEA8C27ACF5F0E7A |
SHA-512: | 318BBD63590B5482E7119FFE5C2458D62FE2DB8D22CDCF66933F6D4ED1C03D952952D9AD17D01337650DCEBA6A1CBD2F6B7A31EBD7C7B711A43A4FE52A60533C |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 4.000173704660782 |
Encrypted: | false |
SSDEEP: | 48:8+WdOTqKKH5idAKZdA1duT+ehOuTbbiZUk5OjqehOuTbW1ny+yT+:8+73ZT/TbxWOvTbW5y7T |
MD5: | F5F3A78F9677DAD505D3405082989B41 |
SHA1: | DB60F38FFC46BD97A8D30850816D5F2495ADBBA8 |
SHA-256: | C5C9E1FE3A7E055FA38CBB39D0362222BE4A6BB485918ACBBB6BE71B8633C40E |
SHA-512: | A692A1E324A65170B01E9C7337D4C3D12E3450411488D7FD668FFF837CBE76F5204389D01CD7BDAB33E6202799A64D806DA10D36423871B5522A19626D5F39CC |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4227 |
Entropy (8bit): | 7.914583292638134 |
Encrypted: | false |
SSDEEP: | 96:smaoCB/f+PXdoT/qTZAvdZrzm24dfksz1iU9E/o8K1JEeUS6:smUf+1oDUZAD6BdHzZE/rKHK |
MD5: | 338CE2AB34AF5CEF8638EF06A443BE65 |
SHA1: | CE5E56423DCC490F2AC724D79B03623B9F2D0C26 |
SHA-256: | ADE7BA1E7C3AEC0CFF796A1B81B10345F3E61F4090C6E527D0F59DB8C795CD14 |
SHA-512: | 366D222E467EB78EFECA81DDD6BB481C43A3C60C247809A1E4F1A0AF99CE49DFCD7E0C350BCCEA90A977B5BA14A9D603FA0EBB39165B256FFAF0CD69851287EC |
Malicious: | false |
Reputation: | low |
URL: | https://brewing.biolar.ind.br/img/type.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1433 |
Entropy (8bit): | 4.7213378643499935 |
Encrypted: | false |
SSDEEP: | 24:U9KL8SvTdJYF0Z+AluGDXeOFU9sYLdFUShCYhsox9o+IYxc4TZgFgCKqyp9eT:UA8uyF0Z+qDuqpKFUAhsog+IyAFko |
MD5: | 8E649F7D63D8E0B4831190B16B618C38 |
SHA1: | B03BCDA706720DF86970FB6C93091399BBE358D4 |
SHA-256: | E524AC5A41F4658D6A5D958F9B09DF9CAFC3D9101672ABAE483065BF3D61D05B |
SHA-512: | 74066E6C0E651C6C7B216605AC29C8D83F0BC21EEEB9CA977980D64A1A558E6A1BAA0F0DE60842A90D7316513C7A89A14E4E50F5DBD771FF08FFEC83CA91567D |
Malicious: | false |
Reputation: | low |
URL: | https://brewing.biolar.ind.br/assets/css/style.css?v=14 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.702819531114783 |
Encrypted: | false |
SSDEEP: | 3:HycMK:S9K |
MD5: | F20C48603763A982D7F6B2C8830F01AD |
SHA1: | DEA4D0A2ABFADDA68DB41B134271C3A4A84475F7 |
SHA-256: | C91C7EEE4E89FF52C17776184F3134DB98F2C1C8A9AFB98F0D5E0A9EC7D6BC43 |
SHA-512: | 7BFDED2053A938E532B5FC31D18FB3023BC8DC8A22D64ACAF4B39B45C94F3763D76C9030053EBEBBFA7F9152EBDF9663126062C7327AEB84B4F87EAB4C3E8E2D |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAlZTb8qS51mYBIFDczKJGA=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7261 |
Entropy (8bit): | 7.9179433607916865 |
Encrypted: | false |
SSDEEP: | 96:Yg6XzWq/C2JZivTYnA9mfzuXcTO7kL1fK+QL3/BL+ISqrd9XWh067MJVAB6n:YhXCxoibz9Cqe1NQjBL+IrrnGmrnAIn |
MD5: | 783F85F1A3FF1F6CFC4DA4329A97C0FA |
SHA1: | 4CBE5EC9DEC0DB5AB1CEA9086F1C21A96652AB84 |
SHA-256: | E934DC43BC6036CE60D89D59059B171D9EABDA2A482D8B43A7E1F8AFD9CB95BF |
SHA-512: | 0AB9280613328C3AD5B3DDF30BEE8CBF085A32BC2E04424D13A0E2D365243656678C8D0B3FA2DF48E1142B4A2AF3A19BB9BD623A4644BD0C347F2C91A19844F5 |
Malicious: | false |
Reputation: | low |
URL: | https://brewing.biolar.ind.br/img/sharepoint.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4227 |
Entropy (8bit): | 7.914583292638134 |
Encrypted: | false |
SSDEEP: | 96:smaoCB/f+PXdoT/qTZAvdZrzm24dfksz1iU9E/o8K1JEeUS6:smUf+1oDUZAD6BdHzZE/rKHK |
MD5: | 338CE2AB34AF5CEF8638EF06A443BE65 |
SHA1: | CE5E56423DCC490F2AC724D79B03623B9F2D0C26 |
SHA-256: | ADE7BA1E7C3AEC0CFF796A1B81B10345F3E61F4090C6E527D0F59DB8C795CD14 |
SHA-512: | 366D222E467EB78EFECA81DDD6BB481C43A3C60C247809A1E4F1A0AF99CE49DFCD7E0C350BCCEA90A977B5BA14A9D603FA0EBB39165B256FFAF0CD69851287EC |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 45797 |
Entropy (8bit): | 7.979340440234387 |
Encrypted: | false |
SSDEEP: | 768:UABDHZP7PxXaX6LggBLPjxtcejq5k/7aV6/Gh/khCPqxmQ83Bg+S4N1BqstGrGvr:lBDZZF5jxBJGE/GKQ+p83B7Oswrh2 |
MD5: | C5E77AD973295C98D715B54869F95649 |
SHA1: | C9C06E6DA8A471F4378E6E3C28061616C0B7E394 |
SHA-256: | 4ECF9D58FE10AE3BAF948569D385E4B13CC731FE680BD1399EA4E61D97B6F085 |
SHA-512: | 9F321A090C957B4D6826B2A2CDF8E094D6E742E81F2FF8BF9DAD16257180C0311DF509BF861021DF0F2A4C61C601EC3F0601CAFEADCEE321B9324ECDDCF54E4D |
Malicious: | false |
Reputation: | low |
URL: | https://brewing.biolar.ind.br/img/submit.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 45797 |
Entropy (8bit): | 7.979340440234387 |
Encrypted: | false |
SSDEEP: | 768:UABDHZP7PxXaX6LggBLPjxtcejq5k/7aV6/Gh/khCPqxmQ83Bg+S4N1BqstGrGvr:lBDZZF5jxBJGE/GKQ+p83B7Oswrh2 |
MD5: | C5E77AD973295C98D715B54869F95649 |
SHA1: | C9C06E6DA8A471F4378E6E3C28061616C0B7E394 |
SHA-256: | 4ECF9D58FE10AE3BAF948569D385E4B13CC731FE680BD1399EA4E61D97B6F085 |
SHA-512: | 9F321A090C957B4D6826B2A2CDF8E094D6E742E81F2FF8BF9DAD16257180C0311DF509BF861021DF0F2A4C61C601EC3F0601CAFEADCEE321B9324ECDDCF54E4D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 7261 |
Entropy (8bit): | 7.9179433607916865 |
Encrypted: | false |
SSDEEP: | 96:Yg6XzWq/C2JZivTYnA9mfzuXcTO7kL1fK+QL3/BL+ISqrd9XWh067MJVAB6n:YhXCxoibz9Cqe1NQjBL+IrrnGmrnAIn |
MD5: | 783F85F1A3FF1F6CFC4DA4329A97C0FA |
SHA1: | 4CBE5EC9DEC0DB5AB1CEA9086F1C21A96652AB84 |
SHA-256: | E934DC43BC6036CE60D89D59059B171D9EABDA2A482D8B43A7E1F8AFD9CB95BF |
SHA-512: | 0AB9280613328C3AD5B3DDF30BEE8CBF085A32BC2E04424D13A0E2D365243656678C8D0B3FA2DF48E1142B4A2AF3A19BB9BD623A4644BD0C347F2C91A19844F5 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 28, 2024 15:14:04.945754051 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:04.945756912 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:05.039549112 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:10.536923885 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.536958933 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.537040949 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.537350893 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.537388086 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.537587881 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.537601948 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.537621021 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.537822962 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.537837029 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.788275003 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.788633108 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.788650990 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.789788008 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.789856911 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.790972948 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.791049004 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.791239023 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.791245937 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.792558908 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.792767048 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.792789936 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.793842077 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.793904066 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.794714928 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.794780970 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:10.876612902 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.937859058 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:10.937885046 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.047617912 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.531934977 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.531961918 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.532023907 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.532047033 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.532453060 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.532514095 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.563361883 CET | 49711 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.563385010 CET | 443 | 49711 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.579763889 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.579807997 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.579875946 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.580063105 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.580100060 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.580152988 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.581043005 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.581083059 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.581140041 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.581576109 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.581602097 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.581656933 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.581931114 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.582458973 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.582470894 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.582840919 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.582854033 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.583106041 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.583118916 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.583539963 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.583554983 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.628235102 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.833051920 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.833606005 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.833647966 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.834011078 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.834503889 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.834578991 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.834841013 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.836836100 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.837024927 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.837048054 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.838151932 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.838222980 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.838767052 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.838848114 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.838999987 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.839006901 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.849204063 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.849231005 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.849282026 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.849311113 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.849345922 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.850367069 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.850723982 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.850944042 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.850970030 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.851445913 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.852087021 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.852205992 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.852335930 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.852361917 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.852464914 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.852842093 CET | 49710 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.852858067 CET | 443 | 49710 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.853471041 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.853537083 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.862824917 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.862934113 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.863198042 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.863215923 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.880237103 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.883416891 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:11.900237083 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:11.904310942 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.061023951 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.061049938 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.061110020 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.061142921 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.061142921 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.061168909 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.061182022 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.061214924 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.065948963 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.065970898 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.066036940 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.066066027 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.066087961 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.076667070 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.076699018 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.076706886 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.076769114 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.076782942 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.082741976 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.082914114 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.082964897 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.084007978 CET | 49714 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.084031105 CET | 443 | 49714 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.120069027 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.120237112 CET | 49715 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.120253086 CET | 443 | 49715 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.134851933 CET | 49716 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.134876966 CET | 443 | 49716 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187359095 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187372923 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187426090 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.187469006 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.187479973 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187534094 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187542915 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.187578917 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.187720060 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187753916 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.187783003 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.187814951 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.266932964 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.267004967 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.298288107 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.298355103 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.298759937 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.298804045 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.298829079 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.298868895 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.323154926 CET | 49717 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.323175907 CET | 443 | 49717 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.352790117 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.352832079 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.352891922 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.353647947 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.353662968 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.572307110 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.572346926 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.572417021 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.572921038 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.572954893 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.573015928 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.573383093 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.573415041 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.573462963 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.573777914 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.573808908 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.573854923 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.574544907 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.574561119 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.575198889 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.575221062 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.575619936 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.575643063 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.575930119 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.575944901 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.605010986 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.605741978 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.605771065 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.606236935 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.607145071 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.607228994 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.607705116 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.652240992 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.807801008 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.808595896 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.808619022 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.809770107 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.809833050 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.810961962 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.811029911 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.811309099 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.811319113 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.813102961 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.813565969 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.813585043 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.814675093 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.814735889 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.815520048 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.815594912 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.816045046 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.816051960 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.828186035 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.828556061 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.828572035 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.829651117 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.829724073 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.831037045 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.831110001 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.831535101 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.831547022 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.833730936 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.833760023 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.833810091 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.833826065 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.834382057 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.836018085 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.836040974 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.836401939 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.836456060 CET | 443 | 49719 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.836508989 CET | 49719 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.837189913 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.837249994 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.838634014 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.838727951 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.839415073 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.839426041 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.859483004 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.859497070 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.873228073 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.888118982 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.888164043 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:12.888228893 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.888660908 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.890145063 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:12.890152931 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:12.890202045 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:12.891410112 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:12.891423941 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:12.892009020 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:12.892026901 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.042248011 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.042332888 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.042391062 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.042917013 CET | 49723 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.042937040 CET | 443 | 49723 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043032885 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043061018 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043097019 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043108940 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.043118000 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043134928 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043150902 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.043154955 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.043199062 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.043946981 CET | 49720 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.043967962 CET | 443 | 49720 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.056766033 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.056790113 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.056849957 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.056859016 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.056910038 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.057866096 CET | 49722 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.057883024 CET | 443 | 49722 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.060992956 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.061017036 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.061023951 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.061089993 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.061108112 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.110467911 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.122153997 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.122487068 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.122508049 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.122843027 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.123505116 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.123505116 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.123563051 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.171858072 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.171873093 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.171895981 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.171932936 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.172194958 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.172633886 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.172645092 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.172734976 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.173002005 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.173036098 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.173044920 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.173099995 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.173099995 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.173892975 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:13.174128056 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:13.174139977 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:13.175183058 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:13.175297976 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:13.263861895 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.263905048 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.263986111 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.263986111 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.286797047 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.286958933 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.286974907 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.287005901 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.287029028 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.287131071 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.293752909 CET | 49721 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.293783903 CET | 443 | 49721 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.359241009 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.359271049 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.359348059 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.359386921 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.362674952 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.363131046 CET | 49724 | 443 | 192.168.2.5 | 192.185.214.242 |
Mar 28, 2024 15:14:13.363149881 CET | 443 | 49724 | 192.185.214.242 | 192.168.2.5 |
Mar 28, 2024 15:14:13.426724911 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:13.426915884 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:13.469872952 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:13.469901085 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:13.516855955 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:14.356940985 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.356990099 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:14.357060909 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.362230062 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.362246037 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:14.547962904 CET | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:14.547964096 CET | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:14.641743898 CET | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:14.729070902 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:14.729156971 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.731758118 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.731766939 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:14.732009888 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:14.778733015 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:14.820241928 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.082993984 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.083069086 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.083127022 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.108941078 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.108941078 CET | 49730 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.108961105 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.108971119 CET | 443 | 49730 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.240612984 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.240649939 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.240835905 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.242577076 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.242594957 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.598669052 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.598789930 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.600665092 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.600672007 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.600923061 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.604340076 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.652226925 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.947263956 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.947343111 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.947511911 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.948976040 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.948992968 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:15.949139118 CET | 49731 | 443 | 192.168.2.5 | 23.54.46.90 |
Mar 28, 2024 15:14:15.949146032 CET | 443 | 49731 | 23.54.46.90 | 192.168.2.5 |
Mar 28, 2024 15:14:16.015935898 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:16.016064882 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:23.250056028 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:23.250129938 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:23.250205994 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:23.420757055 CET | 49725 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:14:23.420773983 CET | 443 | 49725 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:14:26.309663057 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:26.317007065 CET | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:26.444031954 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:26.444056988 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:26.444120884 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:26.445446014 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:26.445458889 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:26.467813015 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:26.474860907 CET | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:26.771378040 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:26.771447897 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.283001900 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.283014059 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.283412933 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.283489943 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.284018993 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.284035921 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.284657001 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.284662008 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.648458958 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.648708105 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.648935080 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.648993015 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.649425030 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.699376106 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.699398994 CET | 443 | 49736 | 23.1.237.91 | 192.168.2.5 |
Mar 28, 2024 15:14:27.699455023 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:14:27.699455023 CET | 49736 | 443 | 192.168.2.5 | 23.1.237.91 |
Mar 28, 2024 15:15:12.848617077 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:12.848653078 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:12.852744102 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:12.853236914 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:12.853256941 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:13.125449896 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:13.125785112 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:13.125802994 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:13.126177073 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:13.126589060 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:13.126665115 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:13.174592972 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:23.164772987 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:23.164846897 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Mar 28, 2024 15:15:23.165272951 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:23.285244942 CET | 49741 | 443 | 192.168.2.5 | 142.251.167.99 |
Mar 28, 2024 15:15:23.285273075 CET | 443 | 49741 | 142.251.167.99 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 28, 2024 15:14:09.122785091 CET | 53 | 61177 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:09.125138998 CET | 53 | 53411 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:09.836194038 CET | 53 | 56230 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:10.041089058 CET | 61306 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:10.041903973 CET | 55089 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:10.486942053 CET | 53 | 61306 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:10.536149025 CET | 53 | 55089 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:12.009918928 CET | 53 | 51779 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:12.177433014 CET | 50844 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:12.178160906 CET | 58904 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:12.274060011 CET | 53 | 58904 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:12.570884943 CET | 53 | 50844 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:12.788727045 CET | 61665 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:12.789422035 CET | 63524 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 28, 2024 15:14:12.883848906 CET | 53 | 61665 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:12.884845018 CET | 53 | 63524 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:27.788641930 CET | 53 | 54896 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:14:47.237842083 CET | 53 | 51528 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:15:08.733117104 CET | 53 | 60212 | 1.1.1.1 | 192.168.2.5 |
Mar 28, 2024 15:15:10.025188923 CET | 53 | 64719 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 28, 2024 15:14:10.041089058 CET | 192.168.2.5 | 1.1.1.1 | 0xa740 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 28, 2024 15:14:10.041903973 CET | 192.168.2.5 | 1.1.1.1 | 0x8202 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 28, 2024 15:14:12.177433014 CET | 192.168.2.5 | 1.1.1.1 | 0x8032 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 28, 2024 15:14:12.178160906 CET | 192.168.2.5 | 1.1.1.1 | 0xf4ae | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 28, 2024 15:14:12.788727045 CET | 192.168.2.5 | 1.1.1.1 | 0xe682 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 28, 2024 15:14:12.789422035 CET | 192.168.2.5 | 1.1.1.1 | 0x932d | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 28, 2024 15:14:10.486942053 CET | 1.1.1.1 | 192.168.2.5 | 0xa740 | No error (0) | 192.185.214.242 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.570884943 CET | 1.1.1.1 | 192.168.2.5 | 0x8032 | No error (0) | 192.185.214.242 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.99 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.103 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.104 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.147 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.105 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.883848906 CET | 1.1.1.1 | 192.168.2.5 | 0xe682 | No error (0) | 142.251.167.106 | A (IP address) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:12.884845018 CET | 1.1.1.1 | 192.168.2.5 | 0x932d | No error (0) | 65 | IN (0x0001) | false | |||
Mar 28, 2024 15:14:26.049595118 CET | 1.1.1.1 | 192.168.2.5 | 0x4db9 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 28, 2024 15:14:26.049595118 CET | 1.1.1.1 | 192.168.2.5 | 0x4db9 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49711 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:10 UTC | 1140 | OUT | |
2024-03-28 14:14:11 UTC | 382 | IN | |
2024-03-28 14:14:11 UTC | 2111 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49710 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:11 UTC | 1094 | OUT | |
2024-03-28 14:14:11 UTC | 254 | IN | |
2024-03-28 14:14:11 UTC | 1433 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49715 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:11 UTC | 1133 | OUT | |
2024-03-28 14:14:12 UTC | 232 | IN | |
2024-03-28 14:14:12 UTC | 7261 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49716 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:11 UTC | 1127 | OUT | |
2024-03-28 14:14:12 UTC | 232 | IN | |
2024-03-28 14:14:12 UTC | 4227 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49714 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:11 UTC | 1137 | OUT | |
2024-03-28 14:14:12 UTC | 304 | IN | |
2024-03-28 14:14:12 UTC | 1246 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49717 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:11 UTC | 1129 | OUT | |
2024-03-28 14:14:12 UTC | 233 | IN | |
2024-03-28 14:14:12 UTC | 7959 | IN | |
2024-03-28 14:14:12 UTC | 8000 | IN | |
2024-03-28 14:14:12 UTC | 8000 | IN | |
2024-03-28 14:14:12 UTC | 8000 | IN | |
2024-03-28 14:14:12 UTC | 8000 | IN | |
2024-03-28 14:14:12 UTC | 5838 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49719 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:12 UTC | 1126 | OUT | |
2024-03-28 14:14:12 UTC | 318 | IN | |
2024-03-28 14:14:12 UTC | 2111 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49723 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:12 UTC | 419 | OUT | |
2024-03-28 14:14:13 UTC | 304 | IN | |
2024-03-28 14:14:13 UTC | 1230 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49720 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:12 UTC | 415 | OUT | |
2024-03-28 14:14:13 UTC | 232 | IN | |
2024-03-28 14:14:13 UTC | 7261 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49722 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:12 UTC | 409 | OUT | |
2024-03-28 14:14:13 UTC | 232 | IN | |
2024-03-28 14:14:13 UTC | 4227 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49721 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:12 UTC | 411 | OUT | |
2024-03-28 14:14:13 UTC | 233 | IN | |
2024-03-28 14:14:13 UTC | 7959 | IN | |
2024-03-28 14:14:13 UTC | 8000 | IN | |
2024-03-28 14:14:13 UTC | 8000 | IN | |
2024-03-28 14:14:13 UTC | 8000 | IN | |
2024-03-28 14:14:13 UTC | 8000 | IN | |
2024-03-28 14:14:13 UTC | 5838 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 49724 | 192.185.214.242 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:13 UTC | 408 | OUT | |
2024-03-28 14:14:13 UTC | 318 | IN | |
2024-03-28 14:14:13 UTC | 2111 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 49730 | 23.54.46.90 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:14 UTC | 161 | OUT | |
2024-03-28 14:14:15 UTC | 468 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.5 | 49731 | 23.54.46.90 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:15 UTC | 239 | OUT | |
2024-03-28 14:14:15 UTC | 805 | IN | |
2024-03-28 14:14:15 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
14 | 192.168.2.5 | 49736 | 23.1.237.91 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-03-28 14:14:27 UTC | 2148 | OUT | |
2024-03-28 14:14:27 UTC | 1 | OUT | |
2024-03-28 14:14:27 UTC | 2483 | OUT | |
2024-03-28 14:14:27 UTC | 476 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 15:14:05 |
Start date: | 28/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 15:14:07 |
Start date: | 28/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 15:14:09 |
Start date: | 28/03/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |