Windows
Analysis Report
https://magnisteel.lk/4765445b-32c6-49b0-83e6-1d93765276ca.php
Overview
General Information
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5880 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 6184 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2424 --fi eld-trial- handle=238 8,i,555189 2867405834 826,301647 2368965618 072,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 3220 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://magni steel.lk/4 765445b-32 c6-49b0-83 e6-1d93765 276ca.php" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: | ||
Source: | SlashNext: |
Phishing |
---|
Source: | File source: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | 1 Drive-by Compromise | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing | ||
100% | SlashNext | Credential Stealing type: Phishing & Social Engineering |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
d26p066pn2w0s0.cloudfront.net | 13.225.142.14 | true | false | high | |
magnisteel.lk | 107.155.77.34 | true | false | unknown | |
google.com | 142.251.2.100 | true | false | high | |
cs1100.wpc.omegacdn.net | 152.199.4.44 | true | false | unknown | |
part-0041.t-0009.t-msedge.net | 13.107.213.69 | true | false | unknown | |
www.google.com | 142.250.101.103 | true | false | high | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown | |
aadcdn.msftauth.net | unknown | unknown | false | unknown | |
logo.clearbit.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false | high | ||
false |
| unknown | |
false | unknown | ||
true | unknown | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
142.250.101.103 | www.google.com | United States | 15169 | GOOGLEUS | false | |
107.155.77.34 | magnisteel.lk | United States | 29802 | HVC-ASUS | false | |
152.199.4.44 | cs1100.wpc.omegacdn.net | United States | 15133 | EDGECASTUS | false | |
13.225.142.14 | d26p066pn2w0s0.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false |
IP |
---|
192.168.2.4 |
192.168.2.5 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1430616 |
Start date and time: | 2024-04-24 00:27:29 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 12s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://magnisteel.lk/4765445b-32c6-49b0-83e6-1d93765276ca.php |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 7 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.phis.win@22/20@29/7 |
EGA Information: | Failed |
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 74.125.137.94, 142.251.2.84, 142.251.2.100, 142.251.2.102, 142.251.2.138, 142.251.2.101, 142.251.2.139, 142.251.2.113, 34.104.35.123, 20.190.151.133, 20.190.151.69, 20.190.151.8, 20.190.151.68, 20.190.151.67, 20.190.151.7, 20.190.151.9, 20.190.151.131, 142.250.141.95, 74.125.137.95, 142.251.2.95, 199.232.210.172, 72.21.81.240, 192.229.211.108, 52.165.164.15, 20.242.39.171, 142.251.2.94
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, clientservices.googleapis.com, wu.azureedge.net, clients2.google.com, ocsp.digicert.com, login.live.com, bg.apr-52dd2-0503.edgecastdns.net, cs11.wpc.v0cdn.net, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, hlb.apr-52dd2-0.edgecastdns.net, update.googleapis.com, prdv4a.aadg.msidentity.com, fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, aadcdnoriginwus2.azureedge.net, wu.ec.azureedge.net, www.tm.v4.a.prd.aadg.trafficmanager.net, ctldl.windowsupdate.com, aadcdn.msauth.net, wu-bg-shim.trafficmanager.net, firstparty-azurefd-prod.trafficmanager.net, login.msa.msidentity.com, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, edgedl.me.gvt1.com, aadcdnoriginwus2.afd.azureedge.net, clients.l.google.com, www.tm.lg.prod.aadmsa.trafficmanager.net
- HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://magnisteel.lk/4765445b-32c6-49b0-83e6-1d93765276ca.php
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.985555929538374 |
Encrypted: | false |
SSDEEP: | 48:8UdQTUI6HyidAKZdA19ehwiZUklqehOy+3:83fXVy |
MD5: | C81004456E148BE6324A79291EDE9981 |
SHA1: | 6A63F0530909A592D9CD62BEB70DF12DE4CEE2F0 |
SHA-256: | 605F005333B33AFC56E5037BE66F04EA3EEFDE08EE7918906C457E18280A786E |
SHA-512: | C5706EC1E24BA7DCBB2E25FE1B2F428D025A4094D17BD5B95CDB4CC3531459C1CF9F1712D0B3D11EC24DDC93BDB1659B5E6D98F22892278AA2BD1FD640155BD2 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 4.003065584527082 |
Encrypted: | false |
SSDEEP: | 48:8+dQTUI6HyidAKZdA1weh/iZUkAQkqehFy+2:81fd9QMy |
MD5: | 81731640C1BDA5E042BFE1EA3128E948 |
SHA1: | 4305DBE35732DFBF3E5023266333EC41F6AD412F |
SHA-256: | 0ACD71EE38C6B734370D0A687EC06CAAEDD65B688326DD3D6207E786A4B57F76 |
SHA-512: | 78380601E366E47509A92749BCD185F9619ED0AF2454E35DDA61EE57D7C5BAED991134032D40F7A1044C9D1E70CC72262D6FB0C387ECAB2BB21D6435168DDF2F |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.009791573645341 |
Encrypted: | false |
SSDEEP: | 48:8xRdQTUIsHyidAKZdA14tseh7sFiZUkmgqeh7sTy+BX:8xUfDnRy |
MD5: | 75A326FB8C90F054C00F99907F065E46 |
SHA1: | E60C4325285C4AFC25A92A378D9489EC83595E15 |
SHA-256: | 850853EED653EB485818F0E90E654E72D89B1378520DCBC6C50D14981FEEC78A |
SHA-512: | F7B8095D2412B18342E05BC51B65549100B1E9999A350E8882A7A81F97D0F3B3E489A06F027FC07652F8125F25932278BA1FEB830D8E9227FFC126396A9A950E |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 4.000716356849685 |
Encrypted: | false |
SSDEEP: | 48:8LOdQTUI6HyidAKZdA1vehDiZUkwqeh5y+R:8Bfeby |
MD5: | 20F217A633717D6232C020CB7F4C80A6 |
SHA1: | C4469C5E88D420AFCC013F8EFEC08DCADA2A294A |
SHA-256: | 47AA06D02CDCE927213B36C39AF7F7AFFB6CE851E6CF6D23B9ED8CB4FA59DD15 |
SHA-512: | B8673B9C4E823842BBB32EFB48A7B163374C97F6DA9EB3045288964F4E6A72546D8BE2F6116D73010AC75A88554A024D4E5331AD4890DABF85BE27C3918BF64D |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9892732433337224 |
Encrypted: | false |
SSDEEP: | 48:8ldQTUI6HyidAKZdA1hehBiZUk1W1qeh/y+C:8ofu9fy |
MD5: | 53A74D1254EBE3F6288F145AEBF53B87 |
SHA1: | 4C8CA04622965A93DE1478F7F4042BD7475D52AA |
SHA-256: | EB1E4E55ADC9FA42147EEC87B2A24A1BE08763FF6549D12450C1FB871437C4B5 |
SHA-512: | 91AB43E4FB68E899B12DD15DD3FA279DD4BF32429DC8966320AB70CBC26EA113FCB7390E89546D047D201088EE1DA0885322ACF610E1B87F84D580574A877453 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 4.000788908397433 |
Encrypted: | false |
SSDEEP: | 48:83dQTUI6HyidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbRy+yT+:8efQT/TbxWOvTbRy7T |
MD5: | C8B5A877C1740455A1CF292507118465 |
SHA1: | F5AE41BBC510C8DDB8BC23F2C47421BD0F680B5A |
SHA-256: | 180DC2028630D0385FEEF9637719ADF5F018B6F1C8D3E40B7CB1F838BA6F962A |
SHA-512: | 309C7A872E9BB7B8A83D2B677DC2D0E29D6FA59E8F382795E53A04E548343FB5B1EE712E6AC45C47A228C6FFA22C61B43BA9BC5CC3F6FFB0561CE6637407AAFE |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 15492 |
Entropy (8bit): | 5.36570170772995 |
Encrypted: | false |
SSDEEP: | 384:DuMl71I2ZhJdP+2sOh+rF3pQnRiDZD9zL86Nv5Gc:9l1f0Qu86v4c |
MD5: | BE9AA810D120B8D1F202871227F530E7 |
SHA1: | FE9B53CD6E17EC9A9604713DBED3D4F4EBF639B5 |
SHA-256: | 0140DA8C4170309BAA728814F96185DE2C71BB6A9101D51CB040ECE949AA3128 |
SHA-512: | FBE0417A357127BB840FE68CDEB132CE2814F746F7FB4D294FF4725386B90816AD5653C157F719A5DDE257F0D94301C95961A0132FF0A280EE94AA318CB1D9C1 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msftauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pfetchsessionsprogress_3cdbaab1cf6d9b038234.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 6834 |
Entropy (8bit): | 5.201686240611877 |
Encrypted: | false |
SSDEEP: | 96:jPjDXOMS1WfzcyJg7wieCAl9TTWzJcVwDcPRD5a1NLwCEL+Kia12j1L+E93LScNT:jP7rcyJYHuTTWz6VUqceLhcLpSU0MN |
MD5: | BF87790C76797B166527F814CA2E7275 |
SHA1: | E94F31F0907889DD1E93AA5407397619E6F3A761 |
SHA-256: | E9B270D2A6AF5D01DD798963A97D66CE020DA7501B55C0239C0B5D7C1D5D2375 |
SHA-512: | 70ACAAA1990C59F4C93ABEEDFA891C35A8DC7FFD092E15AF7FF0A76A5466A875251864DAAF8B6B4754095AEB5F0F0513972F1C21794CD49461317D2E223C5C2E |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msftauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pidpdisambiguation_76e0875415977704da38.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 28 |
Entropy (8bit): | 4.280394654123194 |
Encrypted: | false |
SSDEEP: | 3:6ATunSwVinY:uSgiY |
MD5: | 2E169B594939E8A3064EBB0EC676FFBC |
SHA1: | E32F2FE8AB60F7D7C43A77DA0644B19B99FECC4A |
SHA-256: | 3708DDD470F736E9200BE94C4CABAF1434560E25FFE7155986879EDBCF269F66 |
SHA-512: | 9C555AB34EFE3F0193A287DEC59EEA357F1A8273238AD2E34636CDC6E8BE9506DBFEA50A4706C004D174ED2C0132C98BC639BD1F9F02B3FABF953D9228D772CE |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwm1CE7fzEUKixIFDU9-u70SBQ2L6Jwp?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 110118 |
Entropy (8bit): | 5.288593644108406 |
Encrypted: | false |
SSDEEP: | 1536:QpHDgBvguhw+EViazA/PWrF7qvEAFiQcpmUyDzz6yVUns:xktHyVUs |
MD5: | 29F1D1172158F929B64CC926E4521C0B |
SHA1: | AF19579C25EBBFD3BBC82A5AB77479647FE02AB8 |
SHA-256: | 8B6A3B17737161E5FE8C29E401372A94B8E650226CF0CD17B4C3C4DE5B380B11 |
SHA-512: | DA984750F76BF1795737A507163E4180767D8688E4A55ED343363A831DB0E601702DE4F3AEC4D21F88D014B355CD296B422CABCBC7C8A236AAD65F19FF43383D |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msftauth.net/ests/2.1/content/cdnbundles/converged.v2.login.min_kfhrfyfy-sm2tmkm5ficcw2.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2347 |
Entropy (8bit): | 5.290031538794594 |
Encrypted: | false |
SSDEEP: | 48:gCgF0+kNL5iQ6+GhB+SYWzGuesAFcsGJOzgO6FIEv+sj+M++sx+suse+swsosmC0:gC3Na5+GX+Ti2XsYE2sqAsosushswsoB |
MD5: | E86EF8B6111E5FB1D1665BCDC90888C9 |
SHA1: | 994BF7651CB967CD9053056AF2D69ACB74DB7F29 |
SHA-256: | 3410242720DE50B090D07A23AEE2DAD879B31D36F2615732962EC4CFA8A9D458 |
SHA-512: | 2486B491681EE91A9CD1ECC9AA011A3FB34B48358C5D7A4D503A5357BC5CE4CA22999F918D40AC60A3063940D5F326FC7E4E5713D89D5C102DE68824E371B3AB |
Malicious: | false |
Reputation: | low |
URL: | https://login.live.com/Me.htm?v=3 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 43235 |
Entropy (8bit): | 5.403375350187382 |
Encrypted: | false |
SSDEEP: | 768:L2SEQOfl7fuFi1tDfrKKvU9KNa3DRhDuNq+J/Png3l88zkcSS7cgTPRUbx3Tg/q1:pti1tDfrKKvU9KNa3DRhDug+J/Png18D |
MD5: | FA18DC190C5F6455340B0CDB2DA083A9 |
SHA1: | 7ADE83BA171ABEE5803D093CCA708D45954EB4FA |
SHA-256: | A423AC7E2310BC44A1DEFEB1F6DF180CAB8A59442E7F41D093F21649FCC86E69 |
SHA-512: | 10025A85B1659DA9750C06286011790A4816AA7CC7A8DA98C8CD42F4EE25B61BFC879C446ABA98D0F8511875DD4DB1E039B5992AE0B5C3FA372012CC0A9205FA |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msftauth.net/ests/2.1/content/cdnbundles/ux.converged.login.strings-en-gb.min_-hjcgqxfzfu0cwzblacdqq2.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 20076 |
Entropy (8bit): | 5.17360743823565 |
Encrypted: | false |
SSDEEP: | 384:DMQy3PzqfF/pYQ2wVzZOOqw/AiupVnPiAA:cOphrxYA |
MD5: | F34D7D00BDC2F226C7F96169A9614C99 |
SHA1: | 3AFAE44C54B14EFAF24452D3CA4F0553815DBF38 |
SHA-256: | 7CB7621F3EB49C78B89D119106CF42981A3075DA154DC96AF6CA24F8F68C6F53 |
SHA-512: | 82728C33BF960398918842B37BA717D75388C8B57D424ADADDFB43A01BE6627C77659708086836E36AFBCFA61ACDEE30D512107499684F1FFE94C09080807343 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msftauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_ppassword_6f5648a25cfbe86f348c.js |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 24, 2024 00:28:12.742136955 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:12.742149115 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:12.851514101 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:20.942511082 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.942564011 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:20.942645073 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.943645954 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.943713903 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:20.943782091 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.944226980 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.944262028 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:20.944979906 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:20.945014954 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.345129967 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.345411062 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.345448971 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.346422911 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.346645117 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.346689939 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.347109079 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.347194910 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.348133087 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.348191023 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.348216057 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.348288059 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.348756075 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.348773003 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.349090099 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.349179983 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.460603952 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.460608959 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.460655928 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.546791077 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.546834946 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.546931028 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.547133923 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.547151089 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.663410902 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.759692907 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.759752989 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.759776115 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.759907961 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.759957075 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:21.856965065 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:21.924120903 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.924480915 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.924508095 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.926129103 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.926213026 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.927182913 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:21.927265882 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:21.934297085 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934361935 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.934446096 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934585094 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934613943 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.934669018 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934791088 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934833050 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.934881926 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.934920073 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.935004950 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.935074091 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.935146093 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.935175896 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.935369968 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.935384989 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.935947895 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.935960054 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:21.936284065 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:21.936321020 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.049606085 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.049633026 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.049669027 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.049741030 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.049804926 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.061321974 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:22.061350107 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:22.239793062 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.239818096 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.239861965 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.239885092 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.239948034 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.239985943 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240022898 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240044117 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240065098 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240082979 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240129948 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240168095 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240243912 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240314007 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240329981 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240372896 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240386009 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240513086 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.240562916 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240850925 CEST | 49709 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:22.240885019 CEST | 443 | 49709 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:22.262190104 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:22.432249069 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.432512045 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.432542086 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.433958054 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.434041023 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.434693098 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.437777996 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.437886000 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.442347050 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.442512989 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.442646980 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.442667007 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.442882061 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.442915916 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.443098068 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.443120003 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.443334103 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.443373919 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.444199085 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.444278002 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.444478035 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.444542885 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.444678068 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.444741964 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.447628021 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.447712898 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.448477983 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.448565960 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.448740005 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.448843956 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.448879957 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.448888063 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.448987961 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.449002981 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.449029922 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.449048996 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.460355997 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:22.460532904 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:22.460545063 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:22.648118973 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.648284912 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.650372028 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.650373936 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.650557041 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.750324965 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.750885010 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.750905037 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.750997066 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.751050949 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.751084089 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.751116991 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.751622915 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.751800060 CEST | 49717 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.751852989 CEST | 443 | 49717 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752401114 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752424002 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752443075 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752470016 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752485037 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752504110 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752506018 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752532005 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752536058 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752564907 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752584934 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752599001 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752645969 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752691031 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752701044 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752737999 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.752816916 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.752857924 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.753920078 CEST | 49716 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.753958941 CEST | 443 | 49716 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.757574081 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763190985 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763341904 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763369083 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763411999 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.763431072 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763448954 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.763473034 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.763520002 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.763567924 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.763910055 CEST | 49715 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.763921976 CEST | 443 | 49715 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778017998 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778042078 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778084040 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778104067 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778121948 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.778122902 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778155088 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778172016 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.778172970 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.778202057 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.778229952 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.804526091 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804553032 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804610968 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804626942 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.804657936 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804683924 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.804693937 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804713011 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804730892 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804752111 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.804771900 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.804795980 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.930906057 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.930928946 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.930969000 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.930988073 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.931013107 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.931035042 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.931071043 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955121994 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955141068 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955189943 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955216885 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955234051 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955257893 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955275059 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955288887 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955296040 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955312014 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955328941 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955346107 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955372095 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.955372095 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:22.955423117 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:22.955497980 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:22.955920935 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:22.955948114 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:22.977871895 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.977893114 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.977930069 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.977947950 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.977958918 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:22.977996111 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:22.978013039 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.002465010 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.002485037 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.002535105 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.002538919 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.002553940 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.002578020 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.002598047 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.002624035 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.002645016 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.054529905 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.054548025 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.087485075 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.087524891 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.087559938 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.087733030 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.090936899 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.092163086 CEST | 49714 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.092184067 CEST | 443 | 49714 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.121072054 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.121129990 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.121221066 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.131467104 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.137253046 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.137279034 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.172147989 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.287723064 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.287976027 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.287998915 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.289509058 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.289599895 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.291729927 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.291821957 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.291924000 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.291939974 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.336896896 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.371850014 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.375366926 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.375463009 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.382683039 CEST | 49710 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.382723093 CEST | 443 | 49710 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.579600096 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.579639912 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.579710007 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.579911947 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.579927921 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.621671915 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.621944904 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.621977091 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.622467041 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.622776031 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.622865915 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.622924089 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.664125919 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.723117113 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.723325014 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.723395109 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.723973036 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.724000931 CEST | 443 | 49718 | 13.225.142.14 | 192.168.2.5 |
Apr 24, 2024 00:28:23.724026918 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.724051952 CEST | 49718 | 443 | 192.168.2.5 | 13.225.142.14 |
Apr 24, 2024 00:28:23.747399092 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:23.747426987 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:23.747503996 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:23.749337912 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:23.749351978 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:23.915780067 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:23.915900946 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:23.946986914 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.947807074 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.947829008 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.947877884 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.947905064 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.947921991 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.947956085 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.948688984 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.948710918 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.948748112 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.948755980 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:23.948769093 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:23.969706059 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.969922066 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.969933987 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.971398115 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.971461058 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.971775055 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.971851110 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:23.971878052 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:23.994013071 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:24.016120911 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:24.024956942 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:24.024964094 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:24.071070910 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:24.088723898 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.090487003 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.097487926 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.097505093 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.097903967 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.108815908 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:24.108865976 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:24.108927011 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:24.108985901 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:24.109041929 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:24.109047890 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:24.109111071 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:24.113581896 CEST | 49719 | 443 | 192.168.2.5 | 152.199.4.44 |
Apr 24, 2024 00:28:24.113612890 CEST | 443 | 49719 | 152.199.4.44 | 192.168.2.5 |
Apr 24, 2024 00:28:24.149836063 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.161515951 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.204135895 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.400465012 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.400659084 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.400717020 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.400917053 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.400935888 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.400945902 CEST | 49723 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.400952101 CEST | 443 | 49723 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.442867041 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.442894936 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.442979097 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.443434954 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.443449974 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.655736923 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:24.659028053 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:24.659084082 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:24.659178972 CEST | 49722 | 443 | 192.168.2.5 | 107.155.77.34 |
Apr 24, 2024 00:28:24.659198999 CEST | 443 | 49722 | 107.155.77.34 | 192.168.2.5 |
Apr 24, 2024 00:28:24.775238037 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.775326014 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.779287100 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.779294968 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.779951096 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:24.781944990 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:24.828121901 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:25.091273069 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:25.091516972 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:25.091576099 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:25.092664957 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:25.092678070 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:25.092695951 CEST | 49724 | 443 | 192.168.2.5 | 23.61.214.98 |
Apr 24, 2024 00:28:25.092701912 CEST | 443 | 49724 | 23.61.214.98 | 192.168.2.5 |
Apr 24, 2024 00:28:31.932090044 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:31.932272911 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:31.932395935 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:33.102010012 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:33.102076054 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:33.102164030 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:33.103514910 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:33.103547096 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:33.296684980 CEST | 49713 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:28:33.296696901 CEST | 443 | 49713 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:28:33.699855089 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:33.700079918 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:33.708398104 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:33.708452940 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:33.708830118 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:33.757369041 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:34.716768026 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:34.760143995 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.040452003 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.041815996 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.046564102 CEST | 49730 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.046591043 CEST | 443 | 49730 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:35.046678066 CEST | 49730 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.047753096 CEST | 49730 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.047766924 CEST | 443 | 49730 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:35.099850893 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.099910975 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.099948883 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.099981070 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100003958 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100019932 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100033998 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100049973 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100061893 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100096941 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100096941 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100234985 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100297928 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.100325108 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100454092 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.100506067 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.201236963 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:35.203152895 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:35.386959076 CEST | 443 | 49730 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:35.387038946 CEST | 49730 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:28:35.608342886 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.608386040 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:35.608417034 CEST | 49725 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:28:35.608436108 CEST | 443 | 49725 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:28:54.549974918 CEST | 443 | 49730 | 23.1.237.91 | 192.168.2.5 |
Apr 24, 2024 00:28:54.550189972 CEST | 49730 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 24, 2024 00:29:12.636934996 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:12.636985064 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:12.639168024 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:12.639611959 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:12.639631987 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.231399059 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.231489897 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.235318899 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.235327959 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.235666037 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.244117975 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.292119026 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806164980 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806222916 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806266069 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806284904 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.806302071 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806340933 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.806360006 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.806430101 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806524038 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.806529999 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806576967 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806619883 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.806628942 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806687117 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.806780100 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.811285973 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.811285973 CEST | 49733 | 443 | 192.168.2.5 | 13.85.23.86 |
Apr 24, 2024 00:29:13.811310053 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:13.811320066 CEST | 443 | 49733 | 13.85.23.86 | 192.168.2.5 |
Apr 24, 2024 00:29:21.446532965 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:21.446609020 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.446703911 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:21.446980000 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:21.447014093 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.811191082 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.811501980 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:21.811537027 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.812644958 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.812979937 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:21.813162088 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:21.866692066 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:31.810420990 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:31.810590029 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Apr 24, 2024 00:29:31.810707092 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:33.280124903 CEST | 49735 | 443 | 192.168.2.5 | 142.250.101.103 |
Apr 24, 2024 00:29:33.280152082 CEST | 443 | 49735 | 142.250.101.103 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 24, 2024 00:28:18.133416891 CEST | 53 | 58394 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:18.134130001 CEST | 53 | 63593 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:19.152148008 CEST | 52375 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:19.152388096 CEST | 64173 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:19.338288069 CEST | 53 | 56245 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:19.703533888 CEST | 53 | 52375 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:19.714626074 CEST | 53 | 64173 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:20.940542936 CEST | 50994 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:20.941158056 CEST | 58363 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:21.096220970 CEST | 53 | 50994 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:21.096256971 CEST | 53 | 58363 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:21.390103102 CEST | 65044 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:21.390391111 CEST | 55656 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:21.545346975 CEST | 53 | 55656 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:21.545919895 CEST | 53 | 65044 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:21.778122902 CEST | 49947 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:21.778218985 CEST | 60675 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:21.933523893 CEST | 53 | 49947 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:21.933641911 CEST | 53 | 60675 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:22.757113934 CEST | 49263 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:22.757251024 CEST | 65154 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:22.913533926 CEST | 53 | 49263 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:22.954855919 CEST | 53 | 65154 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.130886078 CEST | 60857 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:23.131023884 CEST | 50731 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:23.326773882 CEST | 53 | 50731 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.329206944 CEST | 53 | 50692 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.343553066 CEST | 53 | 60857 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.344278097 CEST | 59995 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:23.424947977 CEST | 63858 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:23.425090075 CEST | 65171 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:23.498156071 CEST | 53 | 59995 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.522541046 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:23.578953981 CEST | 53 | 65171 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:23.579111099 CEST | 53 | 63858 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:24.273654938 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:25.033201933 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:31.325673103 CEST | 61350 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:31.344666958 CEST | 64748 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:31.541831017 CEST | 53 | 64748 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:31.542216063 CEST | 53 | 61350 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:31.543003082 CEST | 58989 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:31.696969986 CEST | 53 | 58989 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:31.702800989 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:32.460546017 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:33.210891962 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:34.058257103 CEST | 50486 | 53 | 192.168.2.5 | 8.8.8.8 |
Apr 24, 2024 00:28:34.058571100 CEST | 63559 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:34.214365959 CEST | 53 | 63559 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:34.229968071 CEST | 53 | 50486 | 8.8.8.8 | 192.168.2.5 |
Apr 24, 2024 00:28:35.068478107 CEST | 63053 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:35.068624973 CEST | 58521 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:35.224355936 CEST | 53 | 63053 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:35.224786997 CEST | 53 | 58521 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:35.238698959 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:35.992384911 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:36.744950056 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:37.199561119 CEST | 53 | 61506 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:42.797359943 CEST | 61592 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:42.798315048 CEST | 60984 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:42.953722954 CEST | 53 | 61592 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:42.955229998 CEST | 53 | 60984 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:42.956377983 CEST | 57991 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:28:43.112425089 CEST | 53 | 57991 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:28:43.113434076 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:43.867063046 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:44.619062901 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:28:58.587244987 CEST | 53 | 58872 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:15.663136005 CEST | 59409 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:29:15.663295031 CEST | 54447 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:29:15.819787025 CEST | 53 | 54447 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:15.820173979 CEST | 53 | 59409 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:15.820831060 CEST | 51327 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:29:15.977346897 CEST | 53 | 51327 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:15.977813005 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:29:16.728210926 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:29:17.257605076 CEST | 53 | 57927 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:17.482203007 CEST | 137 | 137 | 192.168.2.5 | 192.168.2.255 |
Apr 24, 2024 00:29:23.976913929 CEST | 53 | 58202 | 1.1.1.1 | 192.168.2.5 |
Apr 24, 2024 00:29:30.305774927 CEST | 61822 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 24, 2024 00:29:30.461402893 CEST | 53 | 61822 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 24, 2024 00:28:21.096391916 CEST | 192.168.2.5 | 1.1.1.1 | c1f4 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 24, 2024 00:28:19.152148008 CEST | 192.168.2.5 | 1.1.1.1 | 0xa363 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:19.152388096 CEST | 192.168.2.5 | 1.1.1.1 | 0x32d | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:20.940542936 CEST | 192.168.2.5 | 1.1.1.1 | 0x4b4f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:20.941158056 CEST | 192.168.2.5 | 1.1.1.1 | 0x8bca | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:21.390103102 CEST | 192.168.2.5 | 1.1.1.1 | 0x533b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:21.390391111 CEST | 192.168.2.5 | 1.1.1.1 | 0x7b65 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:21.778122902 CEST | 192.168.2.5 | 1.1.1.1 | 0x79c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:21.778218985 CEST | 192.168.2.5 | 1.1.1.1 | 0x9a01 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:22.757113934 CEST | 192.168.2.5 | 1.1.1.1 | 0x3a50 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:22.757251024 CEST | 192.168.2.5 | 1.1.1.1 | 0x8a51 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.130886078 CEST | 192.168.2.5 | 1.1.1.1 | 0x3d34 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.131023884 CEST | 192.168.2.5 | 1.1.1.1 | 0x5424 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.344278097 CEST | 192.168.2.5 | 1.1.1.1 | 0x726c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.424947977 CEST | 192.168.2.5 | 1.1.1.1 | 0x3288 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.425090075 CEST | 192.168.2.5 | 1.1.1.1 | 0xe2d8 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:31.325673103 CEST | 192.168.2.5 | 1.1.1.1 | 0xa606 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:31.344666958 CEST | 192.168.2.5 | 1.1.1.1 | 0x76b0 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:31.543003082 CEST | 192.168.2.5 | 1.1.1.1 | 0x301d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:34.058257103 CEST | 192.168.2.5 | 8.8.8.8 | 0xa6ab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:34.058571100 CEST | 192.168.2.5 | 1.1.1.1 | 0x6f44 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:35.068478107 CEST | 192.168.2.5 | 1.1.1.1 | 0x56a9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:35.068624973 CEST | 192.168.2.5 | 1.1.1.1 | 0xd5ac | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:42.797359943 CEST | 192.168.2.5 | 1.1.1.1 | 0x5594 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:42.798315048 CEST | 192.168.2.5 | 1.1.1.1 | 0xba11 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:42.956377983 CEST | 192.168.2.5 | 1.1.1.1 | 0x9bc4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.663136005 CEST | 192.168.2.5 | 1.1.1.1 | 0xdaed | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.663295031 CEST | 192.168.2.5 | 1.1.1.1 | 0x7c7e | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.820831060 CEST | 192.168.2.5 | 1.1.1.1 | 0x5a84 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:30.305774927 CEST | 192.168.2.5 | 1.1.1.1 | 0x89aa | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 24, 2024 00:28:19.703533888 CEST | 1.1.1.1 | 192.168.2.5 | 0xa363 | No error (0) | 107.155.77.34 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.096220970 CEST | 1.1.1.1 | 192.168.2.5 | 0x4b4f | No error (0) | 107.155.77.34 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545346975 CEST | 1.1.1.1 | 192.168.2.5 | 0x7b65 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.103 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.104 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.99 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.106 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.147 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.545919895 CEST | 1.1.1.1 | 192.168.2.5 | 0x533b | No error (0) | 142.250.101.105 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.933523893 CEST | 1.1.1.1 | 192.168.2.5 | 0x79c | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.933523893 CEST | 1.1.1.1 | 192.168.2.5 | 0x79c | No error (0) | 152.199.4.44 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:21.933641911 CEST | 1.1.1.1 | 192.168.2.5 | 0x9a01 | No error (0) | cs1100.wpc.omegacdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.091886044 CEST | 1.1.1.1 | 192.168.2.5 | 0x1908 | No error (0) | part-0041.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.091886044 CEST | 1.1.1.1 | 192.168.2.5 | 0x1908 | No error (0) | 13.107.213.69 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.091886044 CEST | 1.1.1.1 | 192.168.2.5 | 0x1908 | No error (0) | 13.107.246.69 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.913533926 CEST | 1.1.1.1 | 192.168.2.5 | 0x3a50 | No error (0) | d26p066pn2w0s0.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.913533926 CEST | 1.1.1.1 | 192.168.2.5 | 0x3a50 | No error (0) | 13.225.142.14 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.913533926 CEST | 1.1.1.1 | 192.168.2.5 | 0x3a50 | No error (0) | 13.225.142.22 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.913533926 CEST | 1.1.1.1 | 192.168.2.5 | 0x3a50 | No error (0) | 13.225.142.83 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.913533926 CEST | 1.1.1.1 | 192.168.2.5 | 0x3a50 | No error (0) | 13.225.142.90 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:22.954855919 CEST | 1.1.1.1 | 192.168.2.5 | 0x8a51 | No error (0) | d26p066pn2w0s0.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:23.326773882 CEST | 1.1.1.1 | 192.168.2.5 | 0x5424 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.343553066 CEST | 1.1.1.1 | 192.168.2.5 | 0x3d34 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.498156071 CEST | 1.1.1.1 | 192.168.2.5 | 0x726c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:23.579111099 CEST | 1.1.1.1 | 192.168.2.5 | 0x3288 | No error (0) | 107.155.77.34 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:31.541831017 CEST | 1.1.1.1 | 192.168.2.5 | 0x76b0 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:31.542216063 CEST | 1.1.1.1 | 192.168.2.5 | 0xa606 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:31.696969986 CEST | 1.1.1.1 | 192.168.2.5 | 0x301d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.100 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.138 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.101 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.102 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.139 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.214365959 CEST | 1.1.1.1 | 192.168.2.5 | 0x6f44 | No error (0) | 142.251.2.113 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.229968071 CEST | 8.8.8.8 | 192.168.2.5 | 0xa6ab | No error (0) | 142.251.40.46 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.688227892 CEST | 1.1.1.1 | 192.168.2.5 | 0x146b | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:34.688227892 CEST | 1.1.1.1 | 192.168.2.5 | 0x146b | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 00:28:35.224355936 CEST | 1.1.1.1 | 192.168.2.5 | 0x56a9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:35.224786997 CEST | 1.1.1.1 | 192.168.2.5 | 0xd5ac | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:42.953722954 CEST | 1.1.1.1 | 192.168.2.5 | 0x5594 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:28:42.955229998 CEST | 1.1.1.1 | 192.168.2.5 | 0xba11 | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:28:43.112425089 CEST | 1.1.1.1 | 192.168.2.5 | 0x9bc4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.819787025 CEST | 1.1.1.1 | 192.168.2.5 | 0x7c7e | Name error (3) | none | none | 65 | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.820173979 CEST | 1.1.1.1 | 192.168.2.5 | 0xdaed | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:15.977346897 CEST | 1.1.1.1 | 192.168.2.5 | 0x5a84 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 00:29:30.461402893 CEST | 1.1.1.1 | 192.168.2.5 | 0x89aa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49709 | 107.155.77.34 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:21 UTC | 696 | OUT | |
2024-04-23 22:28:21 UTC | 380 | IN | |
2024-04-23 22:28:21 UTC | 4409 | IN | |
2024-04-23 22:28:22 UTC | 8192 | IN | |
2024-04-23 22:28:22 UTC | 7822 | IN | |
2024-04-23 22:28:22 UTC | 2 | IN | |
2024-04-23 22:28:22 UTC | 8192 | IN | |
2024-04-23 22:28:22 UTC | 3489 | IN | |
2024-04-23 22:28:22 UTC | 2 | IN | |
2024-04-23 22:28:22 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49717 | 152.199.4.44 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:22 UTC | 610 | OUT | |
2024-04-23 22:28:22 UTC | 747 | IN | |
2024-04-23 22:28:22 UTC | 15492 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49715 | 152.199.4.44 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:22 UTC | 606 | OUT | |
2024-04-23 22:28:22 UTC | 746 | IN | |
2024-04-23 22:28:22 UTC | 6834 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49714 | 152.199.4.44 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:22 UTC | 636 | OUT | |
2024-04-23 22:28:22 UTC | 754 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 1 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 1 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 1 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 1 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 1 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49716 | 152.199.4.44 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:22 UTC | 597 | OUT | |
2024-04-23 22:28:22 UTC | 747 | IN | |
2024-04-23 22:28:22 UTC | 16383 | IN | |
2024-04-23 22:28:22 UTC | 3693 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49710 | 107.155.77.34 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:23 UTC | 659 | OUT | |
2024-04-23 22:28:23 UTC | 185 | IN | |
2024-04-23 22:28:23 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49718 | 13.225.142.14 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:23 UTC | 574 | OUT | |
2024-04-23 22:28:23 UTC | 493 | IN | |
2024-04-23 22:28:23 UTC | 23 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49719 | 152.199.4.44 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:23 UTC | 757 | OUT | |
2024-04-23 22:28:23 UTC | 749 | IN | |
2024-04-23 22:28:23 UTC | 16383 | IN | |
2024-04-23 22:28:23 UTC | 16383 | IN | |
2024-04-23 22:28:24 UTC | 10469 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49722 | 107.155.77.34 | 443 | 6184 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:23 UTC | 385 | OUT | |
2024-04-23 22:28:24 UTC | 185 | IN | |
2024-04-23 22:28:24 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49723 | 23.61.214.98 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:24 UTC | 161 | OUT | |
2024-04-23 22:28:24 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49724 | 23.61.214.98 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:24 UTC | 239 | OUT | |
2024-04-23 22:28:25 UTC | 455 | IN | |
2024-04-23 22:28:25 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 49725 | 13.85.23.86 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:28:34 UTC | 306 | OUT | |
2024-04-23 22:28:35 UTC | 560 | IN | |
2024-04-23 22:28:35 UTC | 15824 | IN | |
2024-04-23 22:28:35 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 49733 | 13.85.23.86 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-23 22:29:13 UTC | 306 | OUT | |
2024-04-23 22:29:13 UTC | 560 | IN | |
2024-04-23 22:29:13 UTC | 15824 | IN | |
2024-04-23 22:29:13 UTC | 9633 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 00:28:12 |
Start date: | 24/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 00:28:16 |
Start date: | 24/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 00:28:18 |
Start date: | 24/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |