Windows
Analysis Report
https://0_kid43983.inibara.eu/
Overview
Detection
Score: | 56 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
- chrome.exe (PID: 1696 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed --sing le-argumen t https:// 0_kid43983 .inibara.e u/ MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 6156 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2176 --fi eld-trial- handle=200 8,i,176723 0824729965 7137,19695 7937647792 0447,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: | ||
Source: | Avira URL Cloud: |
Source: | Virustotal: | Perma Link |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
11% | Virustotal | Browse | ||
3% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware | ||
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware | ||
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
100% | Avira URL Cloud | malware |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
directlycoldnesscomponent.com | 172.240.108.84 | true | false |
| unknown |
counter.yadro.ru | 88.212.201.198 | true | false |
| unknown |
www.google.com | 142.250.141.105 | true | false | high | |
0_kid43983.inibara.eu | 172.67.195.24 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false |
| unknown | |
false |
| unknown | |
false |
| low | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| unknown | |
false |
| low | |
false | low | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false |
| unknown | ||
false | high | |||
false | high | |||
false |
| unknown | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
88.212.201.198 | counter.yadro.ru | Russian Federation | 39134 | UNITEDNETRU | false | |
172.240.108.84 | directlycoldnesscomponent.com | United States | 7979 | SERVERS-COMUS | false | |
172.67.195.24 | 0_kid43983.inibara.eu | United States | 13335 | CLOUDFLARENETUS | false | |
104.21.34.12 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
88.212.202.52 | unknown | Russian Federation | 39134 | UNITEDNETRU | false | |
142.250.141.105 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1431077 |
Start date and time: | 2024-04-24 14:41:53 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 29s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | https://0_kid43983.inibara.eu/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 14 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@14/16@12/9 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, SIHClient.exe, SgrmBroker.exe, MoUsoCoreWorker.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.72.227, 142.251.2.100, 142.251.2.101, 142.251.2.102, 142.251.2.139, 142.251.2.113, 142.251.2.138, 142.251.2.84, 34.104.35.123, 199.232.214.172, 142.250.101.94
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.9766457125719694 |
Encrypted: | false |
SSDEEP: | 48:87d4T8MvEHBidAKZdA1FehwiZUklqehty+3:8af2ay |
MD5: | 8A7672E6F0B2BBBD22AB6DD2C70A7A38 |
SHA1: | 91BE00494AC4327D1EE0204D255BE507BCFC479D |
SHA-256: | 8B4A033B889ECCAB145BB20E53B9F5467338F1FBCD1D52BD7C6FC9CCF426159D |
SHA-512: | 9F56F6872996BF0C259E224510CF085FF4C4EEB727597FB5B8F768D1AAD481BDF5C94BA327284CD6C5C30BBE0A9EFCE661E9C3DC60F3E4745EB29D0EA58B12D6 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.9917864900739835 |
Encrypted: | false |
SSDEEP: | 48:8wd4T8MvEHBidAKZdA1seh/iZUkAQkqehKy+2:8PfQ9QLy |
MD5: | E2C71FCCBAAA1F27705ABBA913031790 |
SHA1: | AB34F660AC6CC848D305FB03AA18EB503B7FBA60 |
SHA-256: | E1AFFEC2777CD681FD8192B8EDC284652F30701E6B6E892131D03D79F97C3642 |
SHA-512: | D9578E7C70EA93066A10BD8E42CB25FF120E4B1E6674497654D602C49081700EDEEE0728D5427FD90791C341FA82E079E71AB5CC21E0BC35127C595A9F3068A5 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.002000593467741 |
Encrypted: | false |
SSDEEP: | 48:8wd4T8MAHBidAKZdA14meh7sFiZUkmgqeh7sAy+BX:8PfInWy |
MD5: | 05775C5E41F9DC532225ED63CE6F15EA |
SHA1: | 61FB1BE3EA1BEC178747D1DE63A4ADC535921D86 |
SHA-256: | 6792AE1C108DFDA702127DAF12D9346B09141D2292207B497B81CB763CBB2AEF |
SHA-512: | 7C04492A4FD05C871889BEBD3DE153E3FD047949BACDC8B863FCA358F8EB988662F0E7DA18034ABB8A206026AE997BC459552128D2B32C0D70A2B9E2DB58873B |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9925305957464037 |
Encrypted: | false |
SSDEEP: | 48:8Ed4T8MvEHBidAKZdA1TehDiZUkwqehOy+R:87fLYy |
MD5: | 9F93C3939ABE10A8DE00EB44E3546ED4 |
SHA1: | 914DB2247DEBF017F0588438B9021ADB95C905C1 |
SHA-256: | 049B4E0BDBC75BFCCEF42207F38DFD7BCA395612E0AF06995EC331EF55A8DF0C |
SHA-512: | 8C583014DA3F3AC3CAC75B4734D69CD9354CE8BA5130464FC688C706CDB8E3BFB05668151838843CC599FF25070BEA4A7115C72BD273B5980D1A536C314DD9D0 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9809936325583686 |
Encrypted: | false |
SSDEEP: | 48:8Sd4T8MvEHBidAKZdA1dehBiZUk1W1qeh8y+C:8dfr9cy |
MD5: | 5022766E8197C4A8AFAF0E92557846D2 |
SHA1: | 1E38093DCED7C1975AA079A06CEF1802C6DD202F |
SHA-256: | 1650920D6742A59C9F91C00E583D2A52101C69C1D78C6B664A657D01179DAB8B |
SHA-512: | 4C5A8CF5AE68448040EF3B1127FE60FB24BB3F935529BB7B2AA80DFFF79B6DA16EBF45614DA8377CB222D328E4FD4841F7905420B995FA1847CED6AFCAB63118 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9901184157890768 |
Encrypted: | false |
SSDEEP: | 48:89d4T8MvEHBidAKZdA1duTeehOuTbbiZUk5OjqehOuTbWy+yT+:8ofvTfTbxWOvTbWy7T |
MD5: | CBD267F54A92E19E34E444E5DFC7D0C9 |
SHA1: | 467BA6D2BD2DB13137495E1D3695594D34033613 |
SHA-256: | D9DCB5D4EDE1036D2583FCB4E17E5C3A8D2A916F6F8074010503A056FE116D78 |
SHA-512: | E8371ACA3BC22BB95F2FEC82C658FCA24B182308F2DAC581220CE1621C872811D3113E31F8792E215A2A7C595B7D608794D04597730E44FE22BD7786A58EFA45 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 397 |
Entropy (8bit): | 5.083035583403008 |
Encrypted: | false |
SSDEEP: | 12:ZHDzCtIZ+CtHIg+Ct1NEc+CtcZ+Cp+CAOZVevb:ZH4NvYaDJQluZVeD |
MD5: | 963FD831F7A75252C7F686AD91ED4986 |
SHA1: | EE926DDDAFE4D8DCAA1DBE5E8F8D78A87DB92AC9 |
SHA-256: | 6586A5998FB472FEA7583C81BA90AE3F6B1FD64060FD70700BB995CF59DEB94F |
SHA-512: | E4A77E819EE1A1823A950A5A59228122B052368C46C75008149C459B556111CC7DBCD80915201B9506E4EBE9E7E9D2423164A8B916D5787435213C42CCAE1334 |
Malicious: | false |
Reputation: | low |
URL: | https://0_kid43983.inibara.eu/jquery2.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 104 |
Entropy (8bit): | 5.8185612872731065 |
Encrypted: | false |
SSDEEP: | 3:MpLY6Bh6LIYSTw5y9E4C9ukK5gamnC9en:b6BE8Yqw5yi45+HEen |
MD5: | 77BE1B29D5A9DDD0B4CF1878F1DE4B25 |
SHA1: | 29EE14CA48B313868412505BA4FB102DCCF7DC6B |
SHA-256: | ABA98D0405C2AAD0B6513F606B491A6F03C19811D9DFB2640D5EC9899652A970 |
SHA-512: | 5D1A9AE1FDDBABA3C4D768B0BE00194C5FEB9FD700ADF3F8BEDA3883F62756B6DAE5A402D7DB784E7CAE5AD97D0C1F21061DD0C1D7F0C8445AD7E9114665DBD1 |
Malicious: | false |
Reputation: | low |
URL: | https://counter.yadro.ru/hit;esgusi?q;t45.6;r;s1280*1024*24;uhttps%3A//0_kid43983.inibara.eu/;h%uD83D%uDDC2%uFE0F%20Curso%20Online%20Acido%20Hialuronico%20Que%20palabras%20adecuadas...%20La%20idea%20fenomenal%2C%20magn%EDfica;0.1923382023758422 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3482 |
Entropy (8bit): | 5.396556258256711 |
Encrypted: | false |
SSDEEP: | 48:i9xe118g8pCBDqMTJ2d58V5CPos3naNwNmNYZWzW6YYoNgYgyqYNbiY:i9xe12g8pRc2dkMPoWn9WzWJw6b |
MD5: | D067CC3D3416DBCAEDA1E0E7056542D4 |
SHA1: | D37F0438A3C105C77A120070F81F80FCCE5E27FA |
SHA-256: | B904CB792A7826C607E02DAA7D06917BE80750AC31FD06FF701F0CC28DE75B92 |
SHA-512: | 98C9F3130DC3EC3AE9B64C9F2ECB7E9E8AF26CDCC171EA3A82665F337120A44B841DB9F742BE81DECCAF8F2478494F960483CBBA9AC12F5BEB81D5A9743A7271 |
Malicious: | false |
Reputation: | low |
URL: | https://0_kid43983.inibara.eu/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3 |
Entropy (8bit): | 1.584962500721156 |
Encrypted: | false |
SSDEEP: | 3:g:g |
MD5: | ECAA88F7FA0BF610A5A26CF545DCD3AA |
SHA1: | 57218C316B6921E2CD61027A2387EDC31A2D9471 |
SHA-256: | F1945CD6C19E56B3C1C78943EF5EC18116907A4CA1EFC40A57D48AB1DB7ADFC5 |
SHA-512: | 37C783B80B1D458B89E712C2DFE2777050EFF0AEFC9F6D8BEEDEE77807D9AEB2E27D14815CF4F0229B1D36C186BB5F2B5EF55E632B108CC41E9FB964C39B42A5 |
Malicious: | false |
Reputation: | low |
URL: | https://0_kid43983.inibara.eu/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 3 |
Entropy (8bit): | 1.584962500721156 |
Encrypted: | false |
SSDEEP: | 3:g:g |
MD5: | ECAA88F7FA0BF610A5A26CF545DCD3AA |
SHA1: | 57218C316B6921E2CD61027A2387EDC31A2D9471 |
SHA-256: | F1945CD6C19E56B3C1C78943EF5EC18116907A4CA1EFC40A57D48AB1DB7ADFC5 |
SHA-512: | 37C783B80B1D458B89E712C2DFE2777050EFF0AEFC9F6D8BEEDEE77807D9AEB2E27D14815CF4F0229B1D36C186BB5F2B5EF55E632B108CC41E9FB964C39B42A5 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 104 |
Entropy (8bit): | 5.8185612872731065 |
Encrypted: | false |
SSDEEP: | 3:MpLY6Bh6LIYSTw5y9E4C9ukK5gamnC9en:b6BE8Yqw5yi45+HEen |
MD5: | 77BE1B29D5A9DDD0B4CF1878F1DE4B25 |
SHA1: | 29EE14CA48B313868412505BA4FB102DCCF7DC6B |
SHA-256: | ABA98D0405C2AAD0B6513F606B491A6F03C19811D9DFB2640D5EC9899652A970 |
SHA-512: | 5D1A9AE1FDDBABA3C4D768B0BE00194C5FEB9FD700ADF3F8BEDA3883F62756B6DAE5A402D7DB784E7CAE5AD97D0C1F21061DD0C1D7F0C8445AD7E9114665DBD1 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 24, 2024 14:42:21.239778042 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.239813089 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.239878893 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.240966082 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.240995884 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.241094112 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.241213083 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.241240025 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.241497040 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.241513014 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.577301979 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.577578068 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.577589035 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.578023911 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.578243017 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.578258038 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.578686953 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.578758955 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.579334974 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.579435110 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.579804897 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.579874039 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.579961061 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.579968929 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.580235958 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.580306053 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.620349884 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.620543957 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:21.620558977 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:21.668390989 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.849258900 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.849303961 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.849335909 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.849421024 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.849448919 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.849466085 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.849499941 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.849529028 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.851591110 CEST | 49700 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.851615906 CEST | 443 | 49700 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:22.868614912 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:22.916126966 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:23.046875954 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:23.046916962 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:23.047014952 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:23.047272921 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:23.047281981 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:23.107563019 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.107620001 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.107734919 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.107762098 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.107800007 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.107888937 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.108023882 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.108042002 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.108182907 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.108203888 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.440802097 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:23.440895081 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:23.440980911 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:23.442199945 CEST | 49701 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:23.442214966 CEST | 443 | 49701 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:23.759428024 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.759757996 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.759782076 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.760834932 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.760931015 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.762116909 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.762186050 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.762418032 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.762428999 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.769870996 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.770111084 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.770123005 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.771867990 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.772116899 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.773037910 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.773130894 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.773173094 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.806405067 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.820122004 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.822386026 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.822393894 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.870843887 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.977921963 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.978063107 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.978151083 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.978751898 CEST | 49703 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.978770971 CEST | 443 | 49703 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.980693102 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.980726004 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.980794907 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.981206894 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.981240034 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.981327057 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.981484890 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.981502056 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.981627941 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.981645107 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.992556095 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.992717981 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.992847919 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.993158102 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.993158102 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.993174076 CEST | 443 | 49704 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.993411064 CEST | 49704 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.994487047 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.994523048 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.994596004 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.994914055 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.994944096 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.994997978 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.995116949 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.995136023 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:23.995296001 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:23.995311975 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.076637983 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.076987028 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.076997995 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.078460932 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.078536034 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.079807997 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.079885960 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.080039978 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.080045938 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.132334948 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.421056986 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.421158075 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.421225071 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.421884060 CEST | 49702 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.421900988 CEST | 443 | 49702 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.424014091 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.424051046 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.424132109 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.424395084 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:24.424413919 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:24.629173994 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.629313946 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.629590988 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.629615068 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.629720926 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.629731894 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.629955053 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.630058050 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.630341053 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.630405903 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.630625010 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.630712986 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.630795002 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.630925894 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.649135113 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.649516106 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.649533033 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.649992943 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.650178909 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.650192022 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.650573015 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.650662899 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.650966883 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.651026011 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.651110888 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.651119947 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.653930902 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.654028893 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.654289961 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.654462099 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.654464006 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.676120996 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.676136017 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.696120977 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.704355955 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.704358101 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.704370022 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.750344992 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.851072073 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.851150990 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.851212025 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.851847887 CEST | 49707 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.851867914 CEST | 443 | 49707 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.855333090 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.855398893 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.855457067 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.855793953 CEST | 49706 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.855815887 CEST | 443 | 49706 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.874187946 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.874252081 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.874339104 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.874787092 CEST | 49709 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.874806881 CEST | 443 | 49709 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.876075983 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.876250982 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.876323938 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.876488924 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.876506090 CEST | 443 | 49708 | 172.240.108.84 | 192.168.2.16 |
Apr 24, 2024 14:42:24.876516104 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:24.876557112 CEST | 49708 | 443 | 192.168.2.16 | 172.240.108.84 |
Apr 24, 2024 14:42:25.116457939 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.116900921 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:25.116925001 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.117302895 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.117635965 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:25.117702961 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.117816925 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:25.160150051 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.905273914 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.905374050 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.905453920 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:25.906403065 CEST | 49710 | 443 | 192.168.2.16 | 88.212.201.198 |
Apr 24, 2024 14:42:25.906414032 CEST | 443 | 49710 | 88.212.201.198 | 192.168.2.16 |
Apr 24, 2024 14:42:25.916538954 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:25.916573048 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:25.916646957 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:25.917295933 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:25.917315960 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:25.941859007 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:25.941889048 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:25.941951036 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:25.942598104 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:25.942612886 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.072217941 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:26.072266102 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:26.072350025 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:26.072603941 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:26.072628021 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:26.211790085 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:26.245874882 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:26.247617960 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:26.247637033 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:26.248430014 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:26.248908043 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:26.249080896 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:26.249141932 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:26.291408062 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:26.291426897 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:26.298826933 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.299115896 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:26.299134016 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.300026894 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.300103903 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:26.301191092 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:26.301246881 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.354392052 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:26.354413033 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:26.402416945 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:26.513468027 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:27.024406910 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:27.024538994 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:27.024609089 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:27.025917053 CEST | 49711 | 443 | 192.168.2.16 | 172.67.195.24 |
Apr 24, 2024 14:42:27.025938034 CEST | 443 | 49711 | 172.67.195.24 | 192.168.2.16 |
Apr 24, 2024 14:42:27.119292021 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.119688034 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.119710922 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.121424913 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:27.123661995 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.123744011 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.124149084 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.124305010 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.124325991 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.169394016 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.169415951 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.185996056 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.186042070 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.186101913 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.186352968 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.186362982 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.217421055 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.470707893 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.470870018 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.470940113 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.471683979 CEST | 49713 | 443 | 192.168.2.16 | 88.212.202.52 |
Apr 24, 2024 14:42:27.471707106 CEST | 443 | 49713 | 88.212.202.52 | 192.168.2.16 |
Apr 24, 2024 14:42:27.513869047 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.514245033 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.514270067 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.515311003 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.515403986 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.515783072 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.515844107 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.515954018 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.515959978 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.567373991 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.892230034 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.892390966 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:27.892478943 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.893239021 CEST | 49714 | 443 | 192.168.2.16 | 104.21.34.12 |
Apr 24, 2024 14:42:27.893255949 CEST | 443 | 49714 | 104.21.34.12 | 192.168.2.16 |
Apr 24, 2024 14:42:28.328561068 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:28.715974092 CEST | 49689 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:30.740453959 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:32.630916119 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:32.630956888 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:32.631037951 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:32.633459091 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:32.633475065 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:32.978665113 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:32.978753090 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:32.984220028 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:32.984246969 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:32.984508991 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.035434961 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.082917929 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.128119946 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.345002890 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.345103979 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.345174074 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.345233917 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.345244884 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.345256090 CEST | 49720 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.345261097 CEST | 443 | 49720 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.390489101 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.390518904 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.390594006 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.390924931 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.390937090 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.731071949 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.731178999 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.733072042 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.733089924 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.733362913 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:33.735265017 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:33.780116081 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:34.077786922 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:34.077863932 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:34.077960968 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:34.078948975 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:34.078972101 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:34.078985929 CEST | 49721 | 443 | 192.168.2.16 | 23.206.6.29 |
Apr 24, 2024 14:42:34.078991890 CEST | 443 | 49721 | 23.206.6.29 | 192.168.2.16 |
Apr 24, 2024 14:42:34.377907991 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:34.680470943 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:35.150074005 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:35.150121927 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:35.150239944 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:35.151515007 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:35.151532888 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:35.285428047 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:35.540546894 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:36.065115929 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.065200090 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.068432093 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.068450928 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.068706036 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.114465952 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.132016897 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.176121950 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.298875093 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:36.298964977 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:36.299021959 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:36.496464014 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:36.959275961 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959306955 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959314108 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959323883 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959348917 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959453106 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.959486961 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959506989 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.959517002 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.959554911 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.959583998 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.973731041 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.973751068 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:36.973767042 CEST | 49722 | 443 | 192.168.2.16 | 40.68.123.157 |
Apr 24, 2024 14:42:36.973773003 CEST | 443 | 49722 | 40.68.123.157 | 192.168.2.16 |
Apr 24, 2024 14:42:37.233378887 CEST | 49712 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:42:37.233447075 CEST | 443 | 49712 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:42:38.839660883 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:38.903503895 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:39.143488884 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:39.751533985 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:40.965524912 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:43.378561974 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:43.713560104 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:45.152551889 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 24, 2024 14:42:48.186670065 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:42:53.319664955 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 24, 2024 14:42:57.793747902 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 24, 2024 14:43:13.446768045 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:13.446808100 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:13.446981907 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:13.448338032 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:13.448354959 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.033752918 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.033951998 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.035360098 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.035372019 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.035619020 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.037425041 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.084110975 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608169079 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608210087 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608230114 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608386993 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.608408928 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608428955 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.608494997 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.613266945 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.613287926 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:14.613312006 CEST | 49723 | 443 | 192.168.2.16 | 20.114.59.183 |
Apr 24, 2024 14:43:14.613317013 CEST | 443 | 49723 | 20.114.59.183 | 192.168.2.16 |
Apr 24, 2024 14:43:25.840243101 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:25.840295076 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:25.840409994 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:25.840698004 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:25.840709925 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:26.197527885 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:26.197901011 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:26.197920084 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:26.198363066 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:26.198776960 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:26.198849916 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:26.253024101 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:28.859096050 CEST | 49688 | 443 | 192.168.2.16 | 204.79.197.200 |
Apr 24, 2024 14:43:36.224431992 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:36.224627972 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Apr 24, 2024 14:43:36.224740982 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:37.239583969 CEST | 49725 | 443 | 192.168.2.16 | 142.250.141.105 |
Apr 24, 2024 14:43:37.239617109 CEST | 443 | 49725 | 142.250.141.105 | 192.168.2.16 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 24, 2024 14:42:20.962774992 CEST | 62160 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:20.962841988 CEST | 53706 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:21.111268044 CEST | 53 | 65417 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:21.134392977 CEST | 53 | 58556 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:21.188174009 CEST | 53 | 62160 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:21.410454035 CEST | 53 | 53706 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:22.132580042 CEST | 53 | 61776 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:22.869446993 CEST | 60598 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:22.869791985 CEST | 50985 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:22.880927086 CEST | 53506 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:22.881335974 CEST | 51910 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:23.037552118 CEST | 53 | 53506 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:23.046279907 CEST | 53 | 51910 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:23.102226973 CEST | 53 | 60598 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:23.102736950 CEST | 53 | 50985 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:25.787199020 CEST | 52717 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:25.787494898 CEST | 64811 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:25.917845011 CEST | 62823 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:25.917948961 CEST | 54061 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:25.940342903 CEST | 53 | 52717 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:25.940768003 CEST | 53 | 64811 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:26.071315050 CEST | 53 | 54061 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:26.071679115 CEST | 53 | 62823 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:27.029282093 CEST | 53124 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:27.029467106 CEST | 50471 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 24, 2024 14:42:27.183537960 CEST | 53 | 50471 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:27.185316086 CEST | 53 | 53124 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:39.139225006 CEST | 53 | 61398 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:42:57.868300915 CEST | 53 | 50886 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:43:20.402609110 CEST | 53 | 62399 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:43:21.108033895 CEST | 53 | 63935 | 1.1.1.1 | 192.168.2.16 |
Apr 24, 2024 14:43:30.544320107 CEST | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Apr 24, 2024 14:43:50.083178043 CEST | 53 | 50754 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 24, 2024 14:42:21.410587072 CEST | 192.168.2.16 | 1.1.1.1 | c240 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 24, 2024 14:42:20.962774992 CEST | 192.168.2.16 | 1.1.1.1 | 0x6307 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:20.962841988 CEST | 192.168.2.16 | 1.1.1.1 | 0x5438 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 14:42:22.869446993 CEST | 192.168.2.16 | 1.1.1.1 | 0x1e10 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:22.869791985 CEST | 192.168.2.16 | 1.1.1.1 | 0x3183 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 14:42:22.880927086 CEST | 192.168.2.16 | 1.1.1.1 | 0xa71b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:22.881335974 CEST | 192.168.2.16 | 1.1.1.1 | 0x5446 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 14:42:25.787199020 CEST | 192.168.2.16 | 1.1.1.1 | 0x50af | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:25.787494898 CEST | 192.168.2.16 | 1.1.1.1 | 0x60d7 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 14:42:25.917845011 CEST | 192.168.2.16 | 1.1.1.1 | 0xee8d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:25.917948961 CEST | 192.168.2.16 | 1.1.1.1 | 0x7ccf | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 24, 2024 14:42:27.029282093 CEST | 192.168.2.16 | 1.1.1.1 | 0x45ad | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 24, 2024 14:42:27.029467106 CEST | 192.168.2.16 | 1.1.1.1 | 0x887 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 24, 2024 14:42:21.188174009 CEST | 1.1.1.1 | 192.168.2.16 | 0x6307 | No error (0) | 172.67.195.24 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:21.188174009 CEST | 1.1.1.1 | 192.168.2.16 | 0x6307 | No error (0) | 104.21.34.12 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:21.410454035 CEST | 1.1.1.1 | 192.168.2.16 | 0x5438 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 24, 2024 14:42:23.037552118 CEST | 1.1.1.1 | 192.168.2.16 | 0xa71b | No error (0) | 88.212.201.198 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.037552118 CEST | 1.1.1.1 | 192.168.2.16 | 0xa71b | No error (0) | 88.212.202.52 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.037552118 CEST | 1.1.1.1 | 192.168.2.16 | 0xa71b | No error (0) | 88.212.201.204 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 172.240.108.84 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 172.240.108.68 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 192.243.59.12 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 172.240.127.234 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 192.243.61.225 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 172.240.108.76 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 192.243.59.20 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 192.243.59.13 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:23.102226973 CEST | 1.1.1.1 | 192.168.2.16 | 0x1e10 | No error (0) | 192.243.61.227 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.105 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.103 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.147 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.99 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.104 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940342903 CEST | 1.1.1.1 | 192.168.2.16 | 0x50af | No error (0) | 142.250.141.106 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:25.940768003 CEST | 1.1.1.1 | 192.168.2.16 | 0x60d7 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 24, 2024 14:42:26.071679115 CEST | 1.1.1.1 | 192.168.2.16 | 0xee8d | No error (0) | 88.212.202.52 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:26.071679115 CEST | 1.1.1.1 | 192.168.2.16 | 0xee8d | No error (0) | 88.212.201.198 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:26.071679115 CEST | 1.1.1.1 | 192.168.2.16 | 0xee8d | No error (0) | 88.212.201.204 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:27.183537960 CEST | 1.1.1.1 | 192.168.2.16 | 0x887 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 24, 2024 14:42:27.185316086 CEST | 1.1.1.1 | 192.168.2.16 | 0x45ad | No error (0) | 104.21.34.12 | A (IP address) | IN (0x0001) | false | ||
Apr 24, 2024 14:42:27.185316086 CEST | 1.1.1.1 | 192.168.2.16 | 0x45ad | No error (0) | 172.67.195.24 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49700 | 172.67.195.24 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:21 UTC | 664 | OUT | |
2024-04-24 12:42:22 UTC | 580 | IN | |
2024-04-24 12:42:22 UTC | 789 | IN | |
2024-04-24 12:42:22 UTC | 1369 | IN | |
2024-04-24 12:42:22 UTC | 1331 | IN | |
2024-04-24 12:42:22 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49701 | 172.67.195.24 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:22 UTC | 537 | OUT | |
2024-04-24 12:42:23 UTC | 692 | IN | |
2024-04-24 12:42:23 UTC | 397 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 49703 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:23 UTC | 578 | OUT | |
2024-04-24 12:42:23 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 49704 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:23 UTC | 578 | OUT | |
2024-04-24 12:42:23 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 49702 | 88.212.201.198 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:24 UTC | 798 | OUT | |
2024-04-24 12:42:24 UTC | 720 | IN | |
2024-04-24 12:42:24 UTC | 32 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.16 | 49706 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:24 UTC | 576 | OUT | |
2024-04-24 12:42:24 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.16 | 49707 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:24 UTC | 576 | OUT | |
2024-04-24 12:42:24 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.16 | 49709 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:24 UTC | 576 | OUT | |
2024-04-24 12:42:24 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.16 | 49708 | 172.240.108.84 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:24 UTC | 576 | OUT | |
2024-04-24 12:42:24 UTC | 540 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.16 | 49710 | 88.212.201.198 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:25 UTC | 839 | OUT | |
2024-04-24 12:42:25 UTC | 481 | IN | |
2024-04-24 12:42:25 UTC | 104 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.16 | 49711 | 172.67.195.24 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:26 UTC | 598 | OUT | |
2024-04-24 12:42:27 UTC | 653 | IN | |
2024-04-24 12:42:27 UTC | 8 | IN | |
2024-04-24 12:42:27 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.16 | 49713 | 88.212.202.52 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:27 UTC | 628 | OUT | |
2024-04-24 12:42:27 UTC | 459 | IN | |
2024-04-24 12:42:27 UTC | 104 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.16 | 49714 | 104.21.34.12 | 443 | 6156 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:27 UTC | 356 | OUT | |
2024-04-24 12:42:27 UTC | 664 | IN | |
2024-04-24 12:42:27 UTC | 8 | IN | |
2024-04-24 12:42:27 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.16 | 49720 | 23.206.6.29 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:33 UTC | 161 | OUT | |
2024-04-24 12:42:33 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.16 | 49721 | 23.206.6.29 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:33 UTC | 239 | OUT | |
2024-04-24 12:42:34 UTC | 531 | IN | |
2024-04-24 12:42:34 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.16 | 49722 | 40.68.123.157 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:42:36 UTC | 306 | OUT | |
2024-04-24 12:42:36 UTC | 560 | IN | |
2024-04-24 12:42:36 UTC | 15824 | IN | |
2024-04-24 12:42:36 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.16 | 49723 | 20.114.59.183 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-24 12:43:14 UTC | 306 | OUT | |
2024-04-24 12:43:14 UTC | 560 | IN | |
2024-04-24 12:43:14 UTC | 15824 | IN | |
2024-04-24 12:43:14 UTC | 9633 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 14:42:19 |
Start date: | 24/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 14:42:20 |
Start date: | 24/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |