Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4

Overview

General Information

Sample URL:https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4
Analysis ID:1428816
Infos:

Detection

Score:0
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

No high impact signatures.

Classification

  • System is w10x64
  • chrome.exe (PID: 1928 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 2920 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2276 --field-trial-handle=2028,i,14737184125525801637,3342853058404941208,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • chrome.exe (PID: 6500 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

There are no malicious signatures, click here to show all signatures.

Source: https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4HTTP Parser: No favicon
Source: unknownHTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49742 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49744 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 184.31.62.93
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 173.222.162.32
Source: unknownTCP traffic detected without corresponding DNS query: 23.47.204.57
Source: unknownTCP traffic detected without corresponding DNS query: 23.47.204.57
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET /wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4 HTTP/1.1Host: mauserpackaging.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: mauserpackaging.comConnection: keep-alivesec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"sec-ch-ua-mobile: ?0User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36sec-ch-ua-platform: "Windows"Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8Sec-Fetch-Site: same-originSec-Fetch-Mode: no-corsSec-Fetch-Dest: imageReferer: https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4Accept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: __cf_bm=LwieGLItgHryOq268pXGyYB.psl4hT7wXxiBnq7Bsog-1713538687-1.0.1.1-7CtQ530R02e_GlvUoQkF4hphSiWPutMUvO8c9wq44zRGOrQJ13Bpq8jBTbBybxUJYuQpN.yI38uUYHgXCbBQYQ
Source: global trafficHTTP traffic detected: GET /favicon.ico HTTP/1.1Host: mauserpackaging.comConnection: keep-aliveUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36Accept: */*Sec-Fetch-Site: noneSec-Fetch-Mode: corsSec-Fetch-Dest: emptyAccept-Encoding: gzip, deflate, brAccept-Language: en-US,en;q=0.9Cookie: __cf_bm=LwieGLItgHryOq268pXGyYB.psl4hT7wXxiBnq7Bsog-1713538687-1.0.1.1-7CtQ530R02e_GlvUoQkF4hphSiWPutMUvO8c9wq44zRGOrQJ13Bpq8jBTbBybxUJYuQpN.yI38uUYHgXCbBQYQ
Source: global trafficHTTP traffic detected: GET /fs/windows/config.json HTTP/1.1Connection: Keep-AliveAccept: */*Accept-Encoding: identityIf-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMTRange: bytes=0-2147483646User-Agent: Microsoft BITS/7.8Host: fs.microsoft.com
Source: unknownDNS traffic detected: queries for: mauserpackaging.com
Source: chromecache_42.2.drString found in binary or memory: https://fontawesome.com
Source: chromecache_42.2.drString found in binary or memory: https://fontawesome.com/license/free
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 49675 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49672
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownHTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49742 version: TLS 1.2
Source: unknownHTTPS traffic detected: 184.31.62.93:443 -> 192.168.2.4:49744 version: TLS 1.2
Source: classification engineClassification label: clean0.win@16/2@6/6
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2276 --field-trial-handle=2028,i,14737184125525801637,3342853058404941208,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2276 --field-trial-handle=2028,i,14737184125525801637,3342853058404941208,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Process Injection
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization ScriptsRootkitLSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media2
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)Obfuscated Files or InformationSecurity Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive3
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
mauserpackaging.com
141.193.213.21
truefalse
    unknown
    www.google.com
    74.125.138.103
    truefalse
      high
      fp2e7a.wpc.phicdn.net
      192.229.211.108
      truefalse
        unknown
        NameMaliciousAntivirus DetectionReputation
        https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4false
          unknown
          https://mauserpackaging.com/favicon.icofalse
            unknown
            NameSourceMaliciousAntivirus DetectionReputation
            https://fontawesome.comchromecache_42.2.drfalse
              high
              https://fontawesome.com/license/freechromecache_42.2.drfalse
                high
                • No. of IPs < 25%
                • 25% < No. of IPs < 50%
                • 50% < No. of IPs < 75%
                • 75% < No. of IPs
                IPDomainCountryFlagASNASN NameMalicious
                141.193.213.21
                mauserpackaging.comUnited States
                396845DV-PRIMARY-ASN1USfalse
                74.125.138.103
                www.google.comUnited States
                15169GOOGLEUSfalse
                239.255.255.250
                unknownReserved
                unknownunknownfalse
                141.193.213.20
                unknownUnited States
                396845DV-PRIMARY-ASN1USfalse
                IP
                192.168.2.16
                192.168.2.4
                Joe Sandbox version:40.0.0 Tourmaline
                Analysis ID:1428816
                Start date and time:2024-04-19 16:57:10 +02:00
                Joe Sandbox product:CloudBasic
                Overall analysis duration:0h 3m 18s
                Hypervisor based Inspection enabled:false
                Report type:full
                Cookbook file name:browseurl.jbs
                Sample URL:https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4
                Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                Number of analysed new started processes analysed:8
                Number of new started drivers analysed:0
                Number of existing processes analysed:0
                Number of existing drivers analysed:0
                Number of injected processes analysed:0
                Technologies:
                • HCA enabled
                • EGA enabled
                • AMSI enabled
                Analysis Mode:default
                Analysis stop reason:Timeout
                Detection:CLEAN
                Classification:clean0.win@16/2@6/6
                EGA Information:Failed
                HCA Information:
                • Successful, ratio: 100%
                • Number of executed functions: 0
                • Number of non-executed functions: 0
                • Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
                • Excluded IPs from analysis (whitelisted): 142.250.105.94, 173.194.219.101, 173.194.219.100, 173.194.219.113, 173.194.219.138, 173.194.219.139, 173.194.219.102, 142.250.9.84, 34.104.35.123, 40.127.169.103, 23.40.205.41, 23.40.205.73, 23.40.205.49, 23.40.205.65, 23.40.205.51, 23.40.205.58, 23.40.205.67, 23.40.205.26, 23.40.205.42, 192.229.211.108, 13.85.23.206, 64.233.185.94
                • Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, slscr.update.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, a767.dspw65.akamai.net, wu-bg-shim.trafficmanager.net, download.windowsupdate.com.edgesuite.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, clients.l.google.com, glb.sls.prod.dcat.dsp.trafficmanager.net
                • HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
                • Not all processes where analyzed, report is missing behavior information
                • Report size getting too big, too many NtSetInformationFile calls found.
                • VT rate limit hit for: https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4
                No simulations
                No context
                No context
                No context
                No context
                No context
                Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                File Type:ASCII text, with very long lines (55139)
                Category:downloaded
                Size (bytes):55325
                Entropy (8bit):4.67371461848926
                Encrypted:false
                SSDEEP:768:FYC319PiyLNq4/xMoAUHJ2kEBR/MMQyYJrXjBrth5QzW:FYkPxLE4/6mHQpBCfdj9tMy
                MD5:07F5A0D965FE23537228FEB793EB95B0
                SHA1:4FC9F70C0A5CF7BA57C25A6A2921D6253264B7AE
                SHA-256:64F77A13C6E6D3ADCE340A06F37C55054D9CDD48CB1D9347943749592A2A565E
                SHA-512:4B8240013B7CCEF37CF3B4C6E3CAA9914E82022E91912175037F9F0E6F7E851BBBD6D2B6B48C59193FD02551B1F24BE67D2D236AD12B4B20CF8289CB01753614
                Malicious:false
                Reputation:low
                URL:https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4
                Preview:/*!. * Font Awesome Free 5.13.0 by @fontawesome - https://fontawesome.com. * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License). */. .fa-500px:before{content:"\f26e"}.fa-accessible-icon:before{content:"\f368"}.fa-accusoft:before{content:"\f369"}.fa-acquisitions-incorporated:before{content:"\f6af"}.fa-ad:before{content:"\f641"}.fa-address-book:before{content:"\f2b9"}.fa-address-card:before{content:"\f2bb"}.fa-adjust:before{content:"\f042"}.fa-adn:before{content:"\f170"}.fa-adobe:before{content:"\f778"}.fa-adversal:before{content:"\f36a"}.fa-affiliatetheme:before{content:"\f36b"}.fa-air-freshener:before{content:"\f5d0"}.fa-airbnb:before{content:"\f834"}.fa-algolia:before{content:"\f36c"}.fa-align-center:before{content:"\f037"}.fa-align-justify:before{content:"\f039"}.fa-align-left:before{content:"\f036"}.fa-align-right:before{content:"\f038"}.fa-alipay:before{content:"\f642"}.fa-allergies:before{content:"\f461"}.fa-amazon:before{conte
                No static file info
                TimestampSource PortDest PortSource IPDest IP
                Apr 19, 2024 16:57:57.832281113 CEST49675443192.168.2.4173.222.162.32
                Apr 19, 2024 16:58:06.729521990 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.729561090 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.729820013 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.730016947 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.730037928 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.730528116 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.730623007 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.730709076 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.730962992 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.730989933 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.958276033 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.958755970 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.958786011 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.959958076 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.960048914 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.961549997 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.961628914 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.961958885 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.961970091 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.962656021 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.970191956 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.970222950 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.971858978 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:06.971947908 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.973998070 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:06.974240065 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.025595903 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.025610924 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.051724911 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.068551064 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.215780973 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.215903997 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.215977907 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216006994 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216120958 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216176987 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216187000 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216260910 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216314077 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216322899 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216453075 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216511011 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216520071 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216629028 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216689110 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216697931 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216758013 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216809034 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216818094 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216886997 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216958046 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.216965914 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.216995001 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217047930 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.217077017 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217243910 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217299938 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.217308998 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217565060 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217612982 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.217621088 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217675924 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217725039 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.217740059 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217794895 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.217845917 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.217854977 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.218456984 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.218518972 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.218528032 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.218617916 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.218674898 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.218683004 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219367027 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219429016 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.219436884 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219521046 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219574928 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.219583035 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219669104 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.219722033 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.219729900 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220297098 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220356941 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.220365047 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220453978 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220506907 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.220515966 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220629930 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.220680952 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.220691919 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.221100092 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.221157074 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.221165895 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.221339941 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.221401930 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.228385925 CEST49735443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.228415012 CEST44349735141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.354219913 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.400119066 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.442509890 CEST49675443192.168.2.4173.222.162.32
                Apr 19, 2024 16:58:07.484487057 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.484638929 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.484754086 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.485261917 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.485306978 CEST44349736141.193.213.21192.168.2.4
                Apr 19, 2024 16:58:07.485335112 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.485371113 CEST49736443192.168.2.4141.193.213.21
                Apr 19, 2024 16:58:07.661751986 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.661859035 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.661968946 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.662242889 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.662281990 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.880688906 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.881494999 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.881553888 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.883021116 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.883125067 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.883740902 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.883832932 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.884151936 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.884169102 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:07.925044060 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:07.933851957 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:07.933880091 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:07.933960915 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:07.934382915 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:07.934398890 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.149228096 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:08.149398088 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:08.149456978 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:08.153582096 CEST49739443192.168.2.4141.193.213.20
                Apr 19, 2024 16:58:08.153599024 CEST44349739141.193.213.20192.168.2.4
                Apr 19, 2024 16:58:08.160590887 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.161571026 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:08.161597013 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.163238049 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.163309097 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:08.179708958 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:08.180053949 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.221898079 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:08.221916914 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:08.268786907 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:09.972598076 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:09.972683907 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:09.972762108 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:09.974685907 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:09.974721909 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.195141077 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.195216894 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.213247061 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.213267088 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.213643074 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.268484116 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.600055933 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.644115925 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.706702948 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.706789017 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.706895113 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.725788116 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.725828886 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.725902081 CEST49742443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.725919008 CEST44349742184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.810462952 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.810504913 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:10.810689926 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.811345100 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:10.811362028 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.024693012 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.024775028 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.026851892 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.026866913 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.027201891 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.029361010 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.076216936 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.231698036 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.231898069 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.232009888 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.232536077 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.232553959 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:11.232568979 CEST49744443192.168.2.4184.31.62.93
                Apr 19, 2024 16:58:11.232575893 CEST44349744184.31.62.93192.168.2.4
                Apr 19, 2024 16:58:18.153963089 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:18.154110909 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:18.154279947 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:21.304501057 CEST49740443192.168.2.474.125.138.103
                Apr 19, 2024 16:58:21.304527044 CEST4434974074.125.138.103192.168.2.4
                Apr 19, 2024 16:58:21.684451103 CEST49672443192.168.2.4173.222.162.32
                Apr 19, 2024 16:58:21.684530020 CEST44349672173.222.162.32192.168.2.4
                Apr 19, 2024 16:58:21.684729099 CEST49672443192.168.2.4173.222.162.32
                Apr 19, 2024 16:58:21.684748888 CEST44349672173.222.162.32192.168.2.4
                Apr 19, 2024 16:58:28.264113903 CEST4972380192.168.2.423.47.204.57
                Apr 19, 2024 16:58:28.368058920 CEST804972323.47.204.57192.168.2.4
                Apr 19, 2024 16:58:28.368213892 CEST4972380192.168.2.423.47.204.57
                Apr 19, 2024 16:59:07.836178064 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:07.836214066 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:07.836323023 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:07.836571932 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:07.836582899 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:08.054614067 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:08.055480957 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:08.055499077 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:08.055978060 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:08.057068110 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:08.057163954 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:08.112616062 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:18.084073067 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:18.084312916 CEST4434975174.125.138.103192.168.2.4
                Apr 19, 2024 16:59:18.084383011 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:22.372332096 CEST49751443192.168.2.474.125.138.103
                Apr 19, 2024 16:59:22.372360945 CEST4434975174.125.138.103192.168.2.4
                TimestampSource PortDest PortSource IPDest IP
                Apr 19, 2024 16:58:04.612787008 CEST53635211.1.1.1192.168.2.4
                Apr 19, 2024 16:58:04.853717089 CEST53494331.1.1.1192.168.2.4
                Apr 19, 2024 16:58:05.465382099 CEST53606951.1.1.1192.168.2.4
                Apr 19, 2024 16:58:06.590426922 CEST5116453192.168.2.41.1.1.1
                Apr 19, 2024 16:58:06.590794086 CEST6377153192.168.2.41.1.1.1
                Apr 19, 2024 16:58:06.712172985 CEST53511641.1.1.1192.168.2.4
                Apr 19, 2024 16:58:06.728408098 CEST53637711.1.1.1192.168.2.4
                Apr 19, 2024 16:58:07.489995003 CEST5358253192.168.2.41.1.1.1
                Apr 19, 2024 16:58:07.490200043 CEST6166553192.168.2.41.1.1.1
                Apr 19, 2024 16:58:07.595376015 CEST53616651.1.1.1192.168.2.4
                Apr 19, 2024 16:58:07.661078930 CEST53535821.1.1.1192.168.2.4
                Apr 19, 2024 16:58:07.827302933 CEST5895753192.168.2.41.1.1.1
                Apr 19, 2024 16:58:07.827404976 CEST5099353192.168.2.41.1.1.1
                Apr 19, 2024 16:58:07.932166100 CEST53509931.1.1.1192.168.2.4
                Apr 19, 2024 16:58:07.932363987 CEST53589571.1.1.1192.168.2.4
                Apr 19, 2024 16:58:27.716859102 CEST53512461.1.1.1192.168.2.4
                Apr 19, 2024 16:58:27.832262039 CEST138138192.168.2.4192.168.2.255
                Apr 19, 2024 16:58:49.580584049 CEST53569761.1.1.1192.168.2.4
                Apr 19, 2024 16:59:04.080831051 CEST53555161.1.1.1192.168.2.4
                Apr 19, 2024 16:59:12.624623060 CEST53586351.1.1.1192.168.2.4
                Apr 19, 2024 16:59:13.640430927 CEST53592531.1.1.1192.168.2.4
                TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
                Apr 19, 2024 16:58:06.590426922 CEST192.168.2.41.1.1.10x8c4fStandard query (0)mauserpackaging.comA (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:06.590794086 CEST192.168.2.41.1.1.10xaceStandard query (0)mauserpackaging.com65IN (0x0001)false
                Apr 19, 2024 16:58:07.489995003 CEST192.168.2.41.1.1.10xdc8cStandard query (0)mauserpackaging.comA (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.490200043 CEST192.168.2.41.1.1.10xc633Standard query (0)mauserpackaging.com65IN (0x0001)false
                Apr 19, 2024 16:58:07.827302933 CEST192.168.2.41.1.1.10xbe79Standard query (0)www.google.comA (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.827404976 CEST192.168.2.41.1.1.10x193aStandard query (0)www.google.com65IN (0x0001)false
                TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
                Apr 19, 2024 16:58:06.712172985 CEST1.1.1.1192.168.2.40x8c4fNo error (0)mauserpackaging.com141.193.213.21A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:06.712172985 CEST1.1.1.1192.168.2.40x8c4fNo error (0)mauserpackaging.com141.193.213.20A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.661078930 CEST1.1.1.1192.168.2.40xdc8cNo error (0)mauserpackaging.com141.193.213.20A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.661078930 CEST1.1.1.1192.168.2.40xdc8cNo error (0)mauserpackaging.com141.193.213.21A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932166100 CEST1.1.1.1192.168.2.40x193aNo error (0)www.google.com65IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.103A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.106A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.99A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.104A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.105A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:07.932363987 CEST1.1.1.1192.168.2.40xbe79No error (0)www.google.com74.125.138.147A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:28.854557991 CEST1.1.1.1192.168.2.40x6551No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                Apr 19, 2024 16:58:28.854557991 CEST1.1.1.1192.168.2.40x6551No error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
                Apr 19, 2024 16:58:43.543420076 CEST1.1.1.1192.168.2.40x5f52No error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                Apr 19, 2024 16:58:43.543420076 CEST1.1.1.1192.168.2.40x5f52No error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
                Apr 19, 2024 16:59:05.052181959 CEST1.1.1.1192.168.2.40xb50eNo error (0)fp2e7a.wpc.2be4.phicdn.netfp2e7a.wpc.phicdn.netCNAME (Canonical name)IN (0x0001)false
                Apr 19, 2024 16:59:05.052181959 CEST1.1.1.1192.168.2.40xb50eNo error (0)fp2e7a.wpc.phicdn.net192.229.211.108A (IP address)IN (0x0001)false
                • mauserpackaging.com
                • https:
                • fs.microsoft.com
                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                0192.168.2.449735141.193.213.214432920C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2024-04-19 14:58:06 UTC738OUTGET /wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4 HTTP/1.1
                Host: mauserpackaging.com
                Connection: keep-alive
                sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                sec-ch-ua-mobile: ?0
                sec-ch-ua-platform: "Windows"
                Upgrade-Insecure-Requests: 1
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
                Sec-Fetch-Site: none
                Sec-Fetch-Mode: navigate
                Sec-Fetch-User: ?1
                Sec-Fetch-Dest: document
                Accept-Encoding: gzip, deflate, br
                Accept-Language: en-US,en;q=0.9
                2024-04-19 14:58:07 UTC755INHTTP/1.1 200 OK
                Date: Fri, 19 Apr 2024 14:58:07 GMT
                Content-Type: text/css
                Transfer-Encoding: chunked
                Connection: close
                Vary: Accept-Encoding
                Vary: Accept-Encoding
                Vary: Accept-Encoding
                Vary: Accept-Encoding
                Last-Modified: Tue, 06 Jun 2006 00:00:00 GMT
                ETag: W/"4484c580-d81d"
                Cache-Control: public, max-age=31536000
                Access-Control-Allow-Origin: *
                CF-Cache-Status: HIT
                Age: 85449
                Set-Cookie: __cf_bm=LwieGLItgHryOq268pXGyYB.psl4hT7wXxiBnq7Bsog-1713538687-1.0.1.1-7CtQ530R02e_GlvUoQkF4hphSiWPutMUvO8c9wq44zRGOrQJ13Bpq8jBTbBybxUJYuQpN.yI38uUYHgXCbBQYQ; path=/; expires=Fri, 19-Apr-24 15:28:07 GMT; domain=.mauserpackaging.com; HttpOnly; Secure; SameSite=None
                Server: cloudflare
                CF-RAY: 876dc03aab39b063-ATL
                alt-svc: h3=":443"; ma=86400
                2024-04-19 14:58:07 UTC614INData Raw: 37 63 62 65 0d 0a 2f 2a 21 0a 20 2a 20 46 6f 6e 74 20 41 77 65 73 6f 6d 65 20 46 72 65 65 20 35 2e 31 33 2e 30 20 62 79 20 40 66 6f 6e 74 61 77 65 73 6f 6d 65 20 2d 20 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 61 77 65 73 6f 6d 65 2e 63 6f 6d 0a 20 2a 20 4c 69 63 65 6e 73 65 20 2d 20 68 74 74 70 73 3a 2f 2f 66 6f 6e 74 61 77 65 73 6f 6d 65 2e 63 6f 6d 2f 6c 69 63 65 6e 73 65 2f 66 72 65 65 20 28 49 63 6f 6e 73 3a 20 43 43 20 42 59 20 34 2e 30 2c 20 46 6f 6e 74 73 3a 20 53 49 4c 20 4f 46 4c 20 31 2e 31 2c 20 43 6f 64 65 3a 20 4d 49 54 20 4c 69 63 65 6e 73 65 29 0a 20 2a 2f 0a 20 2e 66 61 2d 35 30 30 70 78 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 36 65 22 7d 2e 66 61 2d 61 63 63 65 73 73 69 62 6c 65 2d 69 63 6f 6e 3a 62 65 66 6f 72 65 7b 63 6f
                Data Ascii: 7cbe/*! * Font Awesome Free 5.13.0 by @fontawesome - https://fontawesome.com * License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) */ .fa-500px:before{content:"\f26e"}.fa-accessible-icon:before{co
                2024-04-19 14:58:07 UTC1369INData Raw: 65 74 68 65 6d 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 36 62 22 7d 2e 66 61 2d 61 69 72 2d 66 72 65 73 68 65 6e 65 72 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 64 30 22 7d 2e 66 61 2d 61 69 72 62 6e 62 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 38 33 34 22 7d 2e 66 61 2d 61 6c 67 6f 6c 69 61 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 36 63 22 7d 2e 66 61 2d 61 6c 69 67 6e 2d 63 65 6e 74 65 72 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 33 37 22 7d 2e 66 61 2d 61 6c 69 67 6e 2d 6a 75 73 74 69 66 79 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 33 39 22 7d 2e 66 61 2d 61 6c 69 67 6e 2d 6c 65 66 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30
                Data Ascii: etheme:before{content:"\f36b"}.fa-air-freshener:before{content:"\f5d0"}.fa-airbnb:before{content:"\f834"}.fa-algolia:before{content:"\f36c"}.fa-align-center:before{content:"\f037"}.fa-align-justify:before{content:"\f039"}.fa-align-left:before{content:"\f0
                2024-04-19 14:58:07 UTC1369INData Raw: 7d 2e 66 61 2d 61 72 63 68 69 76 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 38 37 22 7d 2e 66 61 2d 61 72 63 68 77 61 79 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 35 37 22 7d 2e 66 61 2d 61 72 72 6f 77 2d 61 6c 74 2d 63 69 72 63 6c 65 2d 64 6f 77 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 35 38 22 7d 2e 66 61 2d 61 72 72 6f 77 2d 61 6c 74 2d 63 69 72 63 6c 65 2d 6c 65 66 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 35 39 22 7d 2e 66 61 2d 61 72 72 6f 77 2d 61 6c 74 2d 63 69 72 63 6c 65 2d 72 69 67 68 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 35 61 22 7d 2e 66 61 2d 61 72 72 6f 77 2d 61 6c 74 2d 63 69 72 63 6c 65 2d 75 70 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65
                Data Ascii: }.fa-archive:before{content:"\f187"}.fa-archway:before{content:"\f557"}.fa-arrow-alt-circle-down:before{content:"\f358"}.fa-arrow-alt-circle-left:before{content:"\f359"}.fa-arrow-alt-circle-right:before{content:"\f35a"}.fa-arrow-alt-circle-up:before{conte
                2024-04-19 14:58:07 UTC1369INData Raw: 5c 66 35 35 61 22 7d 2e 66 61 2d 62 61 63 6b 77 61 72 64 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 34 61 22 7d 2e 66 61 2d 62 61 63 6f 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 65 35 22 7d 2e 66 61 2d 62 61 68 61 69 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 36 36 36 22 7d 2e 66 61 2d 62 61 6c 61 6e 63 65 2d 73 63 61 6c 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 34 65 22 7d 2e 66 61 2d 62 61 6c 61 6e 63 65 2d 73 63 61 6c 65 2d 6c 65 66 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 31 35 22 7d 2e 66 61 2d 62 61 6c 61 6e 63 65 2d 73 63 61 6c 65 2d 72 69 67 68 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 31 36 22 7d 2e 66 61 2d 62 61 6e 3a 62 65 66 6f
                Data Ascii: \f55a"}.fa-backward:before{content:"\f04a"}.fa-bacon:before{content:"\f7e5"}.fa-bahai:before{content:"\f666"}.fa-balance-scale:before{content:"\f24e"}.fa-balance-scale-left:before{content:"\f515"}.fa-balance-scale-right:before{content:"\f516"}.fa-ban:befo
                2024-04-19 14:58:07 UTC1369INData Raw: 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 37 61 22 7d 2e 66 61 2d 62 6c 61 63 6b 2d 74 69 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 37 65 22 7d 2e 66 61 2d 62 6c 61 63 6b 62 65 72 72 79 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 33 37 62 22 7d 2e 66 61 2d 62 6c 65 6e 64 65 72 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 31 37 22 7d 2e 66 61 2d 62 6c 65 6e 64 65 72 2d 70 68 6f 6e 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 36 62 36 22 7d 2e 66 61 2d 62 6c 69 6e 64 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 39 64 22 7d 2e 66 61 2d 62 6c 6f 67 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 38 31 22 7d 2e 66 61 2d 62 6c 6f 67 67 65 72 3a 62 65 66 6f 72 65
                Data Ascii: fore{content:"\f37a"}.fa-black-tie:before{content:"\f27e"}.fa-blackberry:before{content:"\f37b"}.fa-blender:before{content:"\f517"}.fa-blender-phone:before{content:"\f6b6"}.fa-blind:before{content:"\f29d"}.fa-blog:before{content:"\f781"}.fa-blogger:before
                2024-04-19 14:58:07 UTC1369INData Raw: 75 73 68 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 35 64 22 7d 2e 66 61 2d 62 74 63 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 35 61 22 7d 2e 66 61 2d 62 75 66 66 65 72 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 38 33 37 22 7d 2e 66 61 2d 62 75 67 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 38 38 22 7d 2e 66 61 2d 62 75 69 6c 64 69 6e 67 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 61 64 22 7d 2e 66 61 2d 62 75 6c 6c 68 6f 72 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 61 31 22 7d 2e 66 61 2d 62 75 6c 6c 73 65 79 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 34 30 22 7d 2e 66 61 2d 62 75 72 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a
                Data Ascii: ush:before{content:"\f55d"}.fa-btc:before{content:"\f15a"}.fa-buffer:before{content:"\f837"}.fa-bug:before{content:"\f188"}.fa-building:before{content:"\f1ad"}.fa-bullhorn:before{content:"\f0a1"}.fa-bullseye:before{content:"\f140"}.fa-burn:before{content:
                2024-04-19 14:58:07 UTC1369INData Raw: 64 37 22 7d 2e 66 61 2d 63 61 72 65 74 2d 6c 65 66 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 64 39 22 7d 2e 66 61 2d 63 61 72 65 74 2d 72 69 67 68 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 64 61 22 7d 2e 66 61 2d 63 61 72 65 74 2d 73 71 75 61 72 65 2d 64 6f 77 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 35 30 22 7d 2e 66 61 2d 63 61 72 65 74 2d 73 71 75 61 72 65 2d 6c 65 66 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 39 31 22 7d 2e 66 61 2d 63 61 72 65 74 2d 73 71 75 61 72 65 2d 72 69 67 68 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 35 32 22 7d 2e 66 61 2d 63 61 72 65 74 2d 73 71 75 61 72 65 2d 75 70 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66
                Data Ascii: d7"}.fa-caret-left:before{content:"\f0d9"}.fa-caret-right:before{content:"\f0da"}.fa-caret-square-down:before{content:"\f150"}.fa-caret-square-left:before{content:"\f191"}.fa-caret-square-right:before{content:"\f152"}.fa-caret-square-up:before{content:"\f
                2024-04-19 14:58:07 UTC1369INData Raw: 6f 75 62 6c 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 36 30 22 7d 2e 66 61 2d 63 68 65 63 6b 2d 73 71 75 61 72 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 34 61 22 7d 2e 66 61 2d 63 68 65 65 73 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 65 66 22 7d 2e 66 61 2d 63 68 65 73 73 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 34 33 39 22 7d 2e 66 61 2d 63 68 65 73 73 2d 62 69 73 68 6f 70 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 34 33 61 22 7d 2e 66 61 2d 63 68 65 73 73 2d 62 6f 61 72 64 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 34 33 63 22 7d 2e 66 61 2d 63 68 65 73 73 2d 6b 69 6e 67 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 34 33 66 22 7d 2e 66
                Data Ascii: ouble:before{content:"\f560"}.fa-check-square:before{content:"\f14a"}.fa-cheese:before{content:"\f7ef"}.fa-chess:before{content:"\f439"}.fa-chess-bishop:before{content:"\f43a"}.fa-chess-board:before{content:"\f43c"}.fa-chess-king:before{content:"\f43f"}.f
                2024-04-19 14:58:07 UTC1369INData Raw: 6c 6c 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 33 62 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 6d 6f 6f 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 36 63 33 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 6d 6f 6f 6e 2d 72 61 69 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 33 63 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 72 61 69 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 33 64 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 73 68 6f 77 65 72 73 2d 68 65 61 76 79 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 37 34 30 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 73 75 6e 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 36 63 34 22 7d 2e 66 61 2d 63 6c 6f 75 64 2d 73 75 6e 2d 72 61 69 6e 3a 62 65 66 6f 72 65 7b
                Data Ascii: ll:before{content:"\f73b"}.fa-cloud-moon:before{content:"\f6c3"}.fa-cloud-moon-rain:before{content:"\f73c"}.fa-cloud-rain:before{content:"\f73d"}.fa-cloud-showers-heavy:before{content:"\f740"}.fa-cloud-sun:before{content:"\f6c4"}.fa-cloud-sun-rain:before{
                2024-04-19 14:58:07 UTC1369INData Raw: 22 7d 2e 66 61 2d 63 6f 6e 6e 65 63 74 64 65 76 65 6c 6f 70 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 30 65 22 7d 2e 66 61 2d 63 6f 6e 74 61 6f 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 32 36 64 22 7d 2e 66 61 2d 63 6f 6f 6b 69 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 36 33 22 7d 2e 66 61 2d 63 6f 6f 6b 69 65 2d 62 69 74 65 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 35 36 34 22 7d 2e 66 61 2d 63 6f 70 79 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 30 63 35 22 7d 2e 66 61 2d 63 6f 70 79 72 69 67 68 74 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c 66 31 66 39 22 7d 2e 66 61 2d 63 6f 74 74 6f 6e 2d 62 75 72 65 61 75 3a 62 65 66 6f 72 65 7b 63 6f 6e 74 65 6e 74 3a 22 5c
                Data Ascii: "}.fa-connectdevelop:before{content:"\f20e"}.fa-contao:before{content:"\f26d"}.fa-cookie:before{content:"\f563"}.fa-cookie-bite:before{content:"\f564"}.fa-copy:before{content:"\f0c5"}.fa-copyright:before{content:"\f1f9"}.fa-cotton-bureau:before{content:"\


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                1192.168.2.449736141.193.213.214432920C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2024-04-19 14:58:07 UTC837OUTGET /favicon.ico HTTP/1.1
                Host: mauserpackaging.com
                Connection: keep-alive
                sec-ch-ua: "Google Chrome";v="117", "Not;A=Brand";v="8", "Chromium";v="117"
                sec-ch-ua-mobile: ?0
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                sec-ch-ua-platform: "Windows"
                Accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8
                Sec-Fetch-Site: same-origin
                Sec-Fetch-Mode: no-cors
                Sec-Fetch-Dest: image
                Referer: https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4
                Accept-Encoding: gzip, deflate, br
                Accept-Language: en-US,en;q=0.9
                Cookie: __cf_bm=LwieGLItgHryOq268pXGyYB.psl4hT7wXxiBnq7Bsog-1713538687-1.0.1.1-7CtQ530R02e_GlvUoQkF4hphSiWPutMUvO8c9wq44zRGOrQJ13Bpq8jBTbBybxUJYuQpN.yI38uUYHgXCbBQYQ
                2024-04-19 14:58:07 UTC420INHTTP/1.1 200 OK
                Date: Fri, 19 Apr 2024 14:58:07 GMT
                Content-Type: image/x-icon
                Content-Length: 0
                Connection: close
                Last-Modified: Fri, 12 Apr 2024 04:12:31 GMT
                ETag: "6618b4af-0"
                Cache-Control: public, max-age=31536000
                Vary: Accept-Encoding
                Access-Control-Allow-Origin: *
                CF-Cache-Status: HIT
                Age: 80237
                Accept-Ranges: bytes
                Server: cloudflare
                CF-RAY: 876dc03c496353b9-ATL
                alt-svc: h3=":443"; ma=86400


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                2192.168.2.449739141.193.213.204432920C:\Program Files\Google\Chrome\Application\chrome.exe
                TimestampBytes transferredDirectionData
                2024-04-19 14:58:07 UTC521OUTGET /favicon.ico HTTP/1.1
                Host: mauserpackaging.com
                Connection: keep-alive
                User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/117.0.0.0 Safari/537.36
                Accept: */*
                Sec-Fetch-Site: none
                Sec-Fetch-Mode: cors
                Sec-Fetch-Dest: empty
                Accept-Encoding: gzip, deflate, br
                Accept-Language: en-US,en;q=0.9
                Cookie: __cf_bm=LwieGLItgHryOq268pXGyYB.psl4hT7wXxiBnq7Bsog-1713538687-1.0.1.1-7CtQ530R02e_GlvUoQkF4hphSiWPutMUvO8c9wq44zRGOrQJ13Bpq8jBTbBybxUJYuQpN.yI38uUYHgXCbBQYQ
                2024-04-19 14:58:08 UTC420INHTTP/1.1 200 OK
                Date: Fri, 19 Apr 2024 14:58:08 GMT
                Content-Type: image/x-icon
                Content-Length: 0
                Connection: close
                Last-Modified: Fri, 12 Apr 2024 04:12:31 GMT
                ETag: "6618b4af-0"
                Cache-Control: public, max-age=31536000
                Vary: Accept-Encoding
                Access-Control-Allow-Origin: *
                CF-Cache-Status: HIT
                Age: 80238
                Accept-Ranges: bytes
                Server: cloudflare
                CF-RAY: 876dc0407a231399-ATL
                alt-svc: h3=":443"; ma=86400


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                3192.168.2.449742184.31.62.93443
                TimestampBytes transferredDirectionData
                2024-04-19 14:58:10 UTC161OUTHEAD /fs/windows/config.json HTTP/1.1
                Connection: Keep-Alive
                Accept: */*
                Accept-Encoding: identity
                User-Agent: Microsoft BITS/7.8
                Host: fs.microsoft.com
                2024-04-19 14:58:10 UTC467INHTTP/1.1 200 OK
                Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                Content-Type: application/octet-stream
                ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                Server: ECAcc (chd/079C)
                X-CID: 11
                X-Ms-ApiVersion: Distribute 1.2
                X-Ms-Region: prod-eus-z1
                Cache-Control: public, max-age=144311
                Date: Fri, 19 Apr 2024 14:58:10 GMT
                Connection: close
                X-CID: 2


                Session IDSource IPSource PortDestination IPDestination PortPIDProcess
                4192.168.2.449744184.31.62.93443
                TimestampBytes transferredDirectionData
                2024-04-19 14:58:11 UTC239OUTGET /fs/windows/config.json HTTP/1.1
                Connection: Keep-Alive
                Accept: */*
                Accept-Encoding: identity
                If-Unmodified-Since: Tue, 16 May 2017 22:58:00 GMT
                Range: bytes=0-2147483646
                User-Agent: Microsoft BITS/7.8
                Host: fs.microsoft.com
                2024-04-19 14:58:11 UTC805INHTTP/1.1 200 OK
                ApiVersion: Distribute 1.1
                Content-Disposition: attachment; filename=config.json; filename*=UTF-8''config.json
                ETag: "0x64667F707FF07D62B733DBCB79EFE3855E6886C9975B0C0B467D46231B3FA5E7"
                Last-Modified: Tue, 16 May 2017 22:58:00 GMT
                Server: ECAcc (chd/0778)
                X-CID: 11
                X-CCC: US
                X-Azure-Ref-OriginShield: Ref A: 52EA27DBDE0C4533B819423583F6692E Ref B: CH1AA2040902052 Ref C: 2023-07-09T23:10:08Z
                X-MSEdge-Ref: Ref A: 528BB8D443C042AA9AEA4EC3F75C7762 Ref B: CHI30EDGE0111 Ref C: 2023-07-09T23:11:11Z
                Content-Type: application/octet-stream
                X-Azure-Ref: 01uvbYwAAAACkqWtaEMjWQL/4cpisZkorTUVNMzBFREdFMDgxMQBjZWZjMjU4My1hOWIyLTQ0YTctOTc1NS1iNzZkMTdlMDVmN2Y=
                Cache-Control: public, max-age=144331
                Date: Fri, 19 Apr 2024 14:58:11 GMT
                Content-Length: 55
                Connection: close
                X-CID: 2
                2024-04-19 14:58:11 UTC55INData Raw: 7b 22 66 6f 6e 74 53 65 74 55 72 69 22 3a 22 66 6f 6e 74 73 65 74 2d 32 30 31 37 2d 30 34 2e 6a 73 6f 6e 22 2c 22 62 61 73 65 55 72 69 22 3a 22 66 6f 6e 74 73 22 7d
                Data Ascii: {"fontSetUri":"fontset-2017-04.json","baseUri":"fonts"}


                Click to jump to process

                Click to jump to process

                Click to jump to process

                Target ID:0
                Start time:16:58:00
                Start date:19/04/2024
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
                Imagebase:0x7ff76e190000
                File size:3'242'272 bytes
                MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:false

                Target ID:2
                Start time:16:58:01
                Start date:19/04/2024
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=2276 --field-trial-handle=2028,i,14737184125525801637,3342853058404941208,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
                Imagebase:0x7ff76e190000
                File size:3'242'272 bytes
                MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:false

                Target ID:3
                Start time:16:58:05
                Start date:19/04/2024
                Path:C:\Program Files\Google\Chrome\Application\chrome.exe
                Wow64 process (32bit):false
                Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://mauserpackaging.com/wp-content/plugins/megamenu-pro/icons/fontawesome5/css/all.min.css?ver=2.2.4"
                Imagebase:0x7ff76e190000
                File size:3'242'272 bytes
                MD5 hash:45DE480806D1B5D462A7DDE4DCEFC4E4
                Has elevated privileges:true
                Has administrator privileges:true
                Programmed in:C, C++ or other language
                Reputation:low
                Has exited:true

                No disassembly