Windows
Analysis Report
https://www.prizeably.es/nam/e5a06f4a-1ec4-4d01-8f73-e7dd15f26134/546610a9-fe5f-4a73-a654-34b70f643dcc/87f066f9-a9e4-4291-ada2-9ebe227c3990/login?id=eCtVUWF0N2xJcytIOUNIeSsxYktIRy9FRTcxd1VvczA4ejVXdkZsOUlNbTB2bVl3V1JmK3NxRm1iZEkzNmFzb1Z0aStWaFNjV1hrUGQrZ29Ua0VWeDlQWUkyRURtS1FLT3dPRWptcGJ6bWVlZVFWVVc
Overview
General Information
Detection
Score: | 48 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 2932 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 744 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2396 --fi eld-trial- handle=232 8,i,643473 7573605265 882,102830 4677548806 7918,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6540 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://www.p rizeably.e s/nam/e5a0 6f4a-1ec4- 4d01-8f73- e7dd15f261 34/546610a 9-fe5f-4a7 3-a654-34b 70f643dcc/ 87f066f9-a 9e4-4291-a da2-9ebe22 7c3990/log in?id=eCtV UWF0N2xJcy tIOUNIeSsx YktIRy9FRT cxd1VvczA4 ejVXdkZsOU lNbTB2bVl3 V1JmK3NxRm 1iZEkzNmFz b1Z0aStWaF NjV1hrUGQr Z29Ua0VWeD lQWUkyRURt S1FLT3dPRW ptcGJ6bWVl ZVFWVVcwUD kxVlRML3NH WHJkcSt1bU hQdWd0RTV0 L0JhSEh3UF FIb1FnU1Jh Y0lGNzZsVW 9DeU1BTmNr RzlheVJ6Y3 c4cDhicmVJ UmxoZ1ZJek 5xemsyY0w2 MERPdGIzeX dEaXdDWHU3 aTBkdlRGM0 d1U1VtZERR TWMyaDdiTF FrWHdySzk2 eUVSWkJJUn BDVGZjSy8w YWZPWmw3OU ZDYmh6WkRh NkM1QXdZcG ZucSszRzl3 VWU5Mm1WY3 lBeEVlclk1 V3pKQ1RHeU 9rWHlFWmVZ OU1OSGhEaX F1QXpCNGpZ aHFpdFAwUm lBSnZXUWpu UGU0TS9wZU RmYXloTHMy alpPSHpkZW xibm9jWG8y cHQxSWhjYV lVZzZ4dlox TUxZM2FnTz NCbkVmZz09 " MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
Phishing |
---|
Source: | Matcher: |
Source: | Matcher: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
1% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
part-0013.t-0009.t-msedge.net | 13.107.246.41 | true | false | unknown | |
www.google.com | 172.217.215.147 | true | false | high | |
part-0012.t-0009.t-msedge.net | 13.107.246.40 | true | false | unknown | |
part-0042.t-0009.t-msedge.net | 13.107.246.70 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown | |
www.prizeably.es | unknown | unknown | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown | ||
false | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
13.107.246.41 | part-0013.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
13.107.246.40 | part-0012.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.217.215.147 | www.google.com | United States | 15169 | GOOGLEUS | false | |
13.107.246.70 | part-0042.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1427115 |
Start date and time: | 2024-04-17 02:12:18 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 15s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://www.prizeably.es/nam/e5a06f4a-1ec4-4d01-8f73-e7dd15f26134/546610a9-fe5f-4a73-a654-34b70f643dcc/87f066f9-a9e4-4291-ada2-9ebe227c3990/login?id=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 |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal48.phis.win@16/23@4/6 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.105.94, 173.194.219.101, 173.194.219.102, 173.194.219.113, 173.194.219.100, 173.194.219.139, 173.194.219.138, 173.194.219.84, 34.104.35.123, 142.251.15.95, 74.125.138.95, 142.250.105.95, 172.217.215.95, 142.250.9.95, 64.233.177.95, 64.233.185.95, 108.177.122.95, 173.194.219.95, 64.233.176.95, 172.253.124.95, 40.127.169.103, 23.11.231.224, 23.11.231.227, 192.229.211.108, 20.3.187.198, 172.253.124.94
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, clientservices.googleapis.com, a767.dspw65.akamai.net, clients2.google.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, azurefd-t-prod.trafficmanager.net, glb.sls.prod.dcat.dsp.trafficmanager.net, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, aadcdnoriginwus2.azureedge.net, ctldl.windowsupdate.com, aadcdn.msauth.net, wu-bg-shim.trafficmanager.net, firstparty-azurefd-prod.trafficmanager.net, download.windowsupdate.com.edgesuite.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, aadcdnoriginwus2.afd.azureedge.net, clients.l.google.com
- HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 51045 |
Entropy (8bit): | 5.248340698798764 |
Encrypted: | false |
SSDEEP: | 768:swYw7GuJM+HV0cen/7Kh5rM7V4RxCKg8FW/xsXQUd+FiID65r48Hgp5HRlDV:swX7PMIM7V4R5LFAxTWyuHHgp5HRlR |
MD5: | E47A9D976663A4CE4DB5961AF909EB58 |
SHA1: | 12CA7264086B9E543605395947C6671EDDE9AC80 |
SHA-256: | 4F3FAEEC469294B610F6CA82AA1CC2B3368FD56611B31C551C2EE224FEADB411 |
SHA-512: | BFAF1DBB52F6B55BA44C63E8353F1DE6F25E7A8BD24A366E202F5E78F64A9404C25B31E5A560CE9C61049F3D38B7853CE5091E6E86C0F53AAD491A9C06948A80 |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/Content/bootstrap.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7868 |
Entropy (8bit): | 5.004251051031321 |
Encrypted: | false |
SSDEEP: | 96:xmJ0WZhHPQiPuYKJLkjlBiBiP2n9dg3F+vkShbKXiEy60f3359wAs1/ubSjIfXgh:x+0WZhH4lFsjs0/SheXiEy6aAxdubbtm |
MD5: | BAD3E4D73AB8638EF18D6B46780111A9 |
SHA1: | 4C253CF88BE490DD7E435BC3ABFBBD18D2011227 |
SHA-256: | F116760BD4B44C1A29B36DD4D59729BAD9091A9B0E89C2B470BFF0086982A822 |
SHA-512: | A2B414C322CEAFCFE446C1ED116F2E9D2C8517A71C02B67D0856DA02B3ED3E3C10ABEC101D8D0C60DDF66782FEBD74FAE31BC9AF28A75FDEAEB46B743F8A2BEC |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/Content/Sign_In_files/style.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 159793 |
Entropy (8bit): | 5.0324417385918885 |
Encrypted: | false |
SSDEEP: | 1536:o7uXlKyR4JFnp7otsaGHkpR8BvFI9mINKuM5WqF7awJZzDfMKMIYSl+scmE:oUOnp7U3I8 |
MD5: | BA019172D690669F6D92ABA85BE1A66C |
SHA1: | 4144036104EF49AD7087BB5ED46C3571AD9FE1DF |
SHA-256: | 44B83D90140D64CA74023355F2284DEABA49C0A8329CB94FDE4C91CA1E4F53A9 |
SHA-512: | 270BFA2909B691E99AC40222F6349D9AB23E5072A42E84616C38071C49C2359730E905B2AE7D394A59C6EAD8EBF5AD2757F338C8389DFC003001962CF1E38BB3 |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/nam/e5a06f4a-1ec4-4d01-8f73-e7dd15f26134/546610a9-fe5f-4a73-a654-34b70f643dcc/87f066f9-a9e4-4291-ada2-9ebe227c3990/login?id=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 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4270 |
Entropy (8bit): | 5.001473490621857 |
Encrypted: | false |
SSDEEP: | 96:CAzIHyDqF00VIDt1YaPXEfSxNSS05ppmScuWzpRHdM:FmLSnEfuNSn5XmSclk |
MD5: | 87306133C167AE6AF4FCBC9FE0876B2B |
SHA1: | 4612A396F54161FBEFB3A375BD8B640A302D03E8 |
SHA-256: | C14468CDC2213365958A15B100E91D5B1722EFED31F0EB898D838EB7114316FE |
SHA-512: | 71817738BFA7489837C7377DAD717BA26574305B882C054FBE032608924AC479686FEA19AF443288146BC79CE7D82628FA9CC13FB62B8D340BFA729C587FF687 |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 198 |
Entropy (8bit): | 4.816428224415438 |
Encrypted: | false |
SSDEEP: | 6:ZULfIyOJbDRd74qIYfGYgOYAaJ+mMiJXulH:8AyOZDRR4mxYAaJ+uwH |
MD5: | 1E3427A62E79ED24BDFC6FFA1DDC2DC2 |
SHA1: | C2FBC41FCADF48518192F5CD1C968FB05FA44617 |
SHA-256: | 9029D5647ED4D5172C6876489B36E572A3F9320E93A2E84BABE158C011040FDB |
SHA-512: | ECB76F5E94F59C0FD7F8168021024259AD6B22E89124A9B507E2F8BE896DE831427D2A76B1B6B4AE42ED809B1A56F6E9A4D4F2DAEF1A1BBA70F997B03D2C06C7 |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/Content/login.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 32 |
Entropy (8bit): | 4.327819531114783 |
Encrypted: | false |
SSDEEP: | 3:19Usak86Bn:12Pk86Bn |
MD5: | 3D2521FFBAB3E52763AF5439D945B965 |
SHA1: | EC6A09A9174EFFAA5ED0DBB2360490ECB7414AEF |
SHA-256: | 918EA5B7AA4FF7D34A5724FA49F2D8080A7F6F93289A90B7C80A1365F10BF1BE |
SHA-512: | C6F2FA776970B46340E3E15226AF99067DB71F841E4F70F6F436662E116F5567CFFC63717D064CDAF1D75741144027656A3FAF9A6D5076F3BD47A0D2CDE9CFD0 |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwngfEr0bgRoCxIFDXFnXWMSBQ1Xevf9?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 621 |
Entropy (8bit): | 7.673946009263606 |
Encrypted: | false |
SSDEEP: | 12:Xp7fmqfW/e4YC2L0E5DZLB62y/+6lbPa1Gotq8mdd2Xmy2QLBwxD+QkCfBJ:Xp6qf2SCk3LBpy/rtPa1GKq8mOX5jLcD |
MD5: | 4761405717E938D7E7400BB15715DB1E |
SHA1: | 76FED7C229D353A27DB3257F5927C1EAF0AB8DE9 |
SHA-256: | F7ED91A1DAB5BB2802A7A3B3890DF4777588CCBE04903260FBA83E6E64C90DDF |
SHA-512: | E8DAC6F81EB4EBA2722E9F34DAF9B99548E5C40CCA93791FBEDA3DEBD8D6E401975FC1A75986C0E7262AFA1B9D1475E1008A89B92C8A7BEC84D8A917F221B4A2 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 89478 |
Entropy (8bit): | 5.2899182577550565 |
Encrypted: | false |
SSDEEP: | 1536:/jExXUqrnxDjoXEZxkMV4SYSt0zvDD6ip3h8cApwEjOPrBeU6QLiTFbc0QlQvaks:/Yh8eip3huuf6IidlrvakdtQ47GK8 |
MD5: | B61AA6E2D68D21B3546B5B418BF0E9C3 |
SHA1: | 9C1398F0DE4C869DACB1C9AB1A8CC327F5421FF7 |
SHA-256: | F36844906AD2309877AAE3121B87FB15B9E09803CB4C333ADC7E1E35AC92E14B |
SHA-512: | 5882735D9A0239C5C63C5C87B81618E3C8DC09D7D743C3444C535B9547B9B65DEFA509D7804552C581CB84B61DD1225E2ADD5DCA6B120868EC201FA979504F4B |
Malicious: | false |
Reputation: | low |
URL: | https://www.prizeably.es/Content/jquery-3.5.1.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 621 |
Entropy (8bit): | 7.673946009263606 |
Encrypted: | false |
SSDEEP: | 12:Xp7fmqfW/e4YC2L0E5DZLB62y/+6lbPa1Gotq8mdd2Xmy2QLBwxD+QkCfBJ:Xp6qf2SCk3LBpy/rtPa1GKq8mOX5jLcD |
MD5: | 4761405717E938D7E7400BB15715DB1E |
SHA1: | 76FED7C229D353A27DB3257F5927C1EAF0AB8DE9 |
SHA-256: | F7ED91A1DAB5BB2802A7A3B3890DF4777588CCBE04903260FBA83E6E64C90DDF |
SHA-512: | E8DAC6F81EB4EBA2722E9F34DAF9B99548E5C40CCA93791FBEDA3DEBD8D6E401975FC1A75986C0E7262AFA1B9D1475E1008A89B92C8A7BEC84D8A917F221B4A2 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/signin-options_4e48046ce74f4b89d45037c90576bfac.svg |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 17, 2024 02:13:00.858824015 CEST | 49678 | 443 | 192.168.2.4 | 104.46.162.224 |
Apr 17, 2024 02:13:02.530399084 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 17, 2024 02:13:11.717991114 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.718028069 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:11.718080997 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.718276978 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.718286037 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:11.718732119 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.718812943 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:11.719388008 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.719537020 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:11.719561100 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.044159889 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.044797897 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.044820070 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.045212030 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.045283079 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.045888901 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.045943975 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.049050093 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.049181938 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.049216032 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.050223112 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.050384045 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.050395966 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.050908089 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.050956964 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.051893950 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.051943064 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.052721024 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.052793026 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.092152119 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.092658997 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.092695951 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.093344927 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.093362093 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:12.139076948 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 17, 2024 02:13:12.139245033 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.139249086 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:12.683847904 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.683897018 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.683994055 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.684180975 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.684195042 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.907507896 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.908003092 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.908039093 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.909038067 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.909112930 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.909959078 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.910022974 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.954018116 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:12.954046011 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:12.999453068 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:14.198682070 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198708057 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198714972 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198775053 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.198782921 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198829889 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198858023 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198884964 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198887110 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.198896885 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.198930025 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.198945999 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.198955059 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.198975086 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.199017048 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.199032068 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.199070930 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.228369951 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.248265028 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.276113033 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.302731991 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.302742958 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.302798986 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.302818060 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.302831888 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.302862883 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.303028107 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303035975 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303101063 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.303119898 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303175926 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303188086 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.303212881 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.303368092 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303383112 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303426981 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.303433895 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.303466082 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.406987906 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407185078 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407241106 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407280922 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407322884 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407357931 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407380104 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407406092 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407406092 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407516003 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407557964 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407577038 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407588959 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407620907 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407746077 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407785892 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407815933 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407828093 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407854080 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407877922 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407928944 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.407941103 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.407989025 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.512200117 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.512228966 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.512295961 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.512331963 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.512371063 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.512382030 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.512418985 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.524667025 CEST | 49736 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.524693012 CEST | 443 | 49736 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.742156982 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:14.742239952 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:14.742321014 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:14.744484901 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:14.744507074 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:14.927643061 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.927694082 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.928133011 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.928517103 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.928554058 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.928601980 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.929317951 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.929332972 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.929527998 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.929539919 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.930432081 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.930507898 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.930571079 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.930947065 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:14.930980921 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:14.966794968 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:14.967027903 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:14.971796036 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:14.971848011 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:14.972145081 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.014086962 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.032161951 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.032243013 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.032347918 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.032699108 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.032777071 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.033037901 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.033072948 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.033117056 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.033194065 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.033227921 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.041157961 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.088119030 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.168982983 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.169107914 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.169312954 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.169846058 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.169846058 CEST | 49740 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.169908047 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.169951916 CEST | 443 | 49740 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214597940 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214668036 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214688063 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214704990 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214772940 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.214772940 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.214795113 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.214865923 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.215481043 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.227804899 CEST | 49735 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.227827072 CEST | 443 | 49735 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.255443096 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.262501955 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.262521982 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.272286892 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.272308111 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.272532940 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.272547960 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.273014069 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.273070097 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.273607016 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.274175882 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.274548054 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.274646997 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.277064085 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.277153015 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.300617933 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.300662994 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.300755024 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.301744938 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.302134991 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.302189112 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.302571058 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.302670956 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.303083897 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.303107023 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.303118944 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.303374052 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.303392887 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.303555012 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.303591013 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.310134888 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.310224056 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.310332060 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.311085939 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.311129093 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.344136953 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.344158888 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:15.354406118 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.354927063 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.354988098 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.355943918 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.356122971 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.359214067 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:15.373289108 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.380263090 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.380347967 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.380373955 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.380424976 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.380865097 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.380927086 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.384063959 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.384212971 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.388014078 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.388123989 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.388149977 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.388251066 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.436156988 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.436189890 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.436258078 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.436316967 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.483104944 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.483112097 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.532010078 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.532244921 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.556653023 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.556736946 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.557813883 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.559432030 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.561268091 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.561294079 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.561343908 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.561367989 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.561441898 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.571026087 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.571088076 CEST | 443 | 49744 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.604129076 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.626225948 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.632009029 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.632045031 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.635557890 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.635670900 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.636075020 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.636253119 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.645505905 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.645523071 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.688294888 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.697496891 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:15.697577953 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:15.697658062 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:15.698005915 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:15.698116064 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:15.739036083 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.739214897 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.739279032 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.746787071 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.746834040 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.746866941 CEST | 49747 | 443 | 192.168.2.4 | 23.63.206.91 |
Apr 17, 2024 02:13:15.746884108 CEST | 443 | 49747 | 23.63.206.91 | 192.168.2.4 |
Apr 17, 2024 02:13:15.837004900 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.837099075 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.837182999 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.853070974 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.853252888 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.853441954 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.855211020 CEST | 49746 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.855246067 CEST | 443 | 49746 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:15.855861902 CEST | 49745 | 443 | 192.168.2.4 | 13.107.246.40 |
Apr 17, 2024 02:13:15.855921030 CEST | 443 | 49745 | 13.107.246.40 | 192.168.2.4 |
Apr 17, 2024 02:13:16.015949011 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.016691923 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.016752958 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.018351078 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.018421888 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.019047022 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.019165039 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.019166946 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.060193062 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.064739943 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.064798117 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.111659050 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.226499081 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.226532936 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.226592064 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.226656914 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.226715088 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.226749897 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.350123882 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.350343943 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.350395918 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.354135990 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.354160070 CEST | 443 | 49748 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.366509914 CEST | 49742 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.366532087 CEST | 443 | 49742 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.384707928 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.384794950 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.384880066 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.385329962 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.385360956 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.388653994 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.388721943 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.388803005 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.395984888 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.396013975 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452617884 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452656031 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452666044 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452687979 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452717066 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.452738047 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452749014 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452759981 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452775002 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.452792883 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452824116 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452852011 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.452852011 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.452852011 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.452918053 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.452959061 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.453002930 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.453002930 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.453006983 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.453044891 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.453094006 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.453094006 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.453150988 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.497441053 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.497508049 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.564806938 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.564832926 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.564897060 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.564930916 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.564970016 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.564989090 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.565006018 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.565020084 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.565352917 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.565366030 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.565385103 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.565439939 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.565439939 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.565454006 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.565587044 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668595076 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668631077 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668689966 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668725014 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668742895 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668754101 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668878078 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668904066 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668955088 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668962002 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.668998003 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.668998003 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.709108114 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.712734938 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.756449938 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.756452084 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.768745899 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.768759012 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.770183086 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.770839930 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.771043062 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.771301985 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.771330118 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.772165060 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.772717953 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781070948 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781151056 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.781333923 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781408072 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781446934 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.781836033 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781857967 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.781968117 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.781969070 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.781976938 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782097101 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782119989 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782146931 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782147884 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782152891 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782201052 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782211065 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782211065 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782221079 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782258987 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782258987 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.782265902 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782306910 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.782562017 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.820111990 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.826312065 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.834294081 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.834508896 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.834860086 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.836833000 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.851864100 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.851886988 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.856575966 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:16.856602907 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:16.876111984 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.923712969 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.923856974 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.923957109 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:16.955624104 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.955750942 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:16.955799103 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:17.024197102 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.024291992 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.024384022 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.025280952 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.025306940 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.026134968 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:17.026159048 CEST | 443 | 49749 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:17.026878119 CEST | 49750 | 443 | 192.168.2.4 | 13.107.246.70 |
Apr 17, 2024 02:13:17.026921034 CEST | 443 | 49750 | 13.107.246.70 | 192.168.2.4 |
Apr 17, 2024 02:13:17.351664066 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.403769970 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.445065975 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.445116043 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.446652889 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.497526884 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.599297047 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.599720955 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.599771023 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:17.644110918 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:17.646529913 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:18.591974020 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:18.592006922 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:18.592128992 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:18.592148066 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:18.592199087 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:18.592212915 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:18.592250109 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:18.613903999 CEST | 49751 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 17, 2024 02:13:18.613936901 CEST | 443 | 49751 | 13.107.246.41 | 192.168.2.4 |
Apr 17, 2024 02:13:22.905261993 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:22.905410051 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:22.905601978 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:24.391482115 CEST | 49739 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:13:24.391514063 CEST | 443 | 49739 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:13:44.713455915 CEST | 80 | 49724 | 69.164.42.0 | 192.168.2.4 |
Apr 17, 2024 02:13:44.713675976 CEST | 49724 | 80 | 192.168.2.4 | 69.164.42.0 |
Apr 17, 2024 02:13:44.713726997 CEST | 49724 | 80 | 192.168.2.4 | 69.164.42.0 |
Apr 17, 2024 02:13:44.817744970 CEST | 80 | 49724 | 69.164.42.0 | 192.168.2.4 |
Apr 17, 2024 02:14:12.639413118 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.639461994 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.639877081 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.640028000 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.640058994 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.861315012 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.920330048 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.923949003 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.923999071 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.925492048 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.925863981 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:12.926101923 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:12.967144012 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:19.795140982 CEST | 49723 | 80 | 192.168.2.4 | 199.232.210.172 |
Apr 17, 2024 02:14:19.898709059 CEST | 80 | 49723 | 199.232.210.172 | 192.168.2.4 |
Apr 17, 2024 02:14:19.898736000 CEST | 80 | 49723 | 199.232.210.172 | 192.168.2.4 |
Apr 17, 2024 02:14:19.898782969 CEST | 49723 | 80 | 192.168.2.4 | 199.232.210.172 |
Apr 17, 2024 02:14:22.853460073 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:22.853543997 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Apr 17, 2024 02:14:22.853688955 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:24.391500950 CEST | 49762 | 443 | 192.168.2.4 | 172.217.215.147 |
Apr 17, 2024 02:14:24.391539097 CEST | 443 | 49762 | 172.217.215.147 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 17, 2024 02:13:09.955888033 CEST | 53 | 64966 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:10.111351967 CEST | 53 | 49285 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:10.792198896 CEST | 53 | 49195 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:11.526042938 CEST | 53861 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 17, 2024 02:13:11.526195049 CEST | 53094 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 17, 2024 02:13:12.577333927 CEST | 55847 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 17, 2024 02:13:12.577442884 CEST | 55210 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 17, 2024 02:13:12.682169914 CEST | 53 | 55210 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:12.682883024 CEST | 53 | 55847 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:17.128304958 CEST | 53 | 65046 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:27.994683027 CEST | 53 | 54567 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:13:31.378835917 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Apr 17, 2024 02:13:46.690130949 CEST | 53 | 50719 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:14:08.736936092 CEST | 53 | 54005 | 1.1.1.1 | 192.168.2.4 |
Apr 17, 2024 02:14:10.078048944 CEST | 53 | 57990 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 17, 2024 02:13:11.526042938 CEST | 192.168.2.4 | 1.1.1.1 | 0xc95d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 17, 2024 02:13:11.526195049 CEST | 192.168.2.4 | 1.1.1.1 | 0x1dbc | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 17, 2024 02:13:12.577333927 CEST | 192.168.2.4 | 1.1.1.1 | 0x346 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 17, 2024 02:13:12.577442884 CEST | 192.168.2.4 | 1.1.1.1 | 0x1ce5 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 17, 2024 02:13:11.688946962 CEST | 1.1.1.1 | 192.168.2.4 | 0x1dbc | No error (0) | astprod.azurefd.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.688946962 CEST | 1.1.1.1 | 192.168.2.4 | 0x1dbc | No error (0) | azurefd-t-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.717410088 CEST | 1.1.1.1 | 192.168.2.4 | 0xc95d | No error (0) | astprod.azurefd.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.717410088 CEST | 1.1.1.1 | 192.168.2.4 | 0xc95d | No error (0) | azurefd-t-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.717410088 CEST | 1.1.1.1 | 192.168.2.4 | 0xc95d | No error (0) | part-0013.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.717410088 CEST | 1.1.1.1 | 192.168.2.4 | 0xc95d | No error (0) | 13.107.246.41 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:11.717410088 CEST | 1.1.1.1 | 192.168.2.4 | 0xc95d | No error (0) | 13.107.213.41 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682169914 CEST | 1.1.1.1 | 192.168.2.4 | 0x1ce5 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.147 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.106 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.99 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.103 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.105 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:12.682883024 CEST | 1.1.1.1 | 192.168.2.4 | 0x346 | No error (0) | 172.217.215.104 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.027961969 CEST | 1.1.1.1 | 192.168.2.4 | 0x994f | No error (0) | part-0012.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.027961969 CEST | 1.1.1.1 | 192.168.2.4 | 0x994f | No error (0) | 13.107.246.40 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.027961969 CEST | 1.1.1.1 | 192.168.2.4 | 0x994f | No error (0) | 13.107.213.40 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.696285963 CEST | 1.1.1.1 | 192.168.2.4 | 0x3933 | No error (0) | part-0042.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.696285963 CEST | 1.1.1.1 | 192.168.2.4 | 0x3933 | No error (0) | 13.107.246.70 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:15.696285963 CEST | 1.1.1.1 | 192.168.2.4 | 0x3933 | No error (0) | 13.107.213.70 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:25.364861012 CEST | 1.1.1.1 | 192.168.2.4 | 0x58c7 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:25.364861012 CEST | 1.1.1.1 | 192.168.2.4 | 0x58c7 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:38.279174089 CEST | 1.1.1.1 | 192.168.2.4 | 0xe62d | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:13:38.279174089 CEST | 1.1.1.1 | 192.168.2.4 | 0xe62d | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:14:01.760396957 CEST | 1.1.1.1 | 192.168.2.4 | 0x5eb5 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:14:01.760396957 CEST | 1.1.1.1 | 192.168.2.4 | 0x5eb5 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 17, 2024 02:14:21.525816917 CEST | 1.1.1.1 | 192.168.2.4 | 0x9e51 | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 17, 2024 02:14:21.525816917 CEST | 1.1.1.1 | 192.168.2.4 | 0x9e51 | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49736 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:12 UTC | 1327 | OUT | |
2024-04-17 00:13:14 UTC | 418 | IN | |
2024-04-17 00:13:14 UTC | 15966 | IN | |
2024-04-17 00:13:14 UTC | 426 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN | |
2024-04-17 00:13:14 UTC | 8 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN | |
2024-04-17 00:13:14 UTC | 8194 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN | |
2024-04-17 00:13:14 UTC | 16384 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49735 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:14 UTC | 1230 | OUT | |
2024-04-17 00:13:15 UTC | 388 | IN | |
2024-04-17 00:13:15 UTC | 7868 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49740 | 23.63.206.91 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 161 | OUT | |
2024-04-17 00:13:15 UTC | 468 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49742 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 1201 | OUT | |
2024-04-17 00:13:16 UTC | 401 | IN | |
2024-04-17 00:13:16 UTC | 198 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49741 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 1212 | OUT | |
2024-04-17 00:13:16 UTC | 403 | IN | |
2024-04-17 00:13:16 UTC | 15981 | IN | |
2024-04-17 00:13:16 UTC | 403 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 7558 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49743 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 1209 | OUT | |
2024-04-17 00:13:16 UTC | 403 | IN | |
2024-04-17 00:13:16 UTC | 15981 | IN | |
2024-04-17 00:13:16 UTC | 403 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 16384 | IN | |
2024-04-17 00:13:16 UTC | 1893 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49744 | 13.107.246.40 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 654 | OUT | |
2024-04-17 00:13:15 UTC | 800 | IN | |
2024-04-17 00:13:15 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49745 | 13.107.246.40 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 654 | OUT | |
2024-04-17 00:13:15 UTC | 785 | IN | |
2024-04-17 00:13:15 UTC | 621 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49747 | 23.63.206.91 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 239 | OUT | |
2024-04-17 00:13:15 UTC | 531 | IN | |
2024-04-17 00:13:15 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49746 | 13.107.246.40 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:15 UTC | 653 | OUT | |
2024-04-17 00:13:15 UTC | 805 | IN | |
2024-04-17 00:13:15 UTC | 673 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49748 | 13.107.246.70 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:16 UTC | 418 | OUT | |
2024-04-17 00:13:16 UTC | 800 | IN | |
2024-04-17 00:13:16 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49750 | 13.107.246.70 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:16 UTC | 418 | OUT | |
2024-04-17 00:13:16 UTC | 805 | IN | |
2024-04-17 00:13:16 UTC | 621 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49749 | 13.107.246.70 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:16 UTC | 417 | OUT | |
2024-04-17 00:13:16 UTC | 805 | IN | |
2024-04-17 00:13:16 UTC | 673 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49751 | 13.107.246.41 | 443 | 744 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-17 00:13:17 UTC | 1256 | OUT | |
2024-04-17 00:13:18 UTC | 336 | IN | |
2024-04-17 00:13:18 UTC | 4278 | IN | |
2024-04-17 00:13:18 UTC | 5 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 02:13:04 |
Start date: | 17/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 02:13:07 |
Start date: | 17/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 02:13:10 |
Start date: | 17/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |