Windows
Analysis Report
https://aulixalrrydrea.pages.dev/
Overview
Detection
Score: | 80 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5840 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2520 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2104 --fi eld-trial- handle=201 2,i,129690 9354985999 1253,14937 5651982315 21022,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 6464 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://aulix alrrydrea. pages.dev/ " MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security | ||
JoeSecurity_HtmlPhish_10 | Yara detected HtmlPhish_10 | Joe Security |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: | ||
Source: | SlashNext: |
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | Matcher: | ||
Source: | Matcher: | ||
Source: | Matcher: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Matcher: |
Source: | Matcher: | ||
Source: | Matcher: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Obfuscated Files or Information | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing | ||
100% | SlashNext | Credential Stealing type: Phishing & Social Engineering |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
bg.microsoft.map.fastly.net | 199.232.210.172 | true | false | unknown | |
part-0013.t-0009.t-msedge.net | 13.107.246.41 | true | false | unknown | |
www.google.com | 142.250.217.196 | true | false | high | |
aulixalrrydrea.pages.dev | 172.66.47.90 | true | false | unknown | |
fp2e7a.wpc.phicdn.net | 192.229.211.108 | true | false | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
true | unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
13.107.246.41 | part-0013.t-0009.t-msedge.net | United States | 8068 | MICROSOFT-CORP-MSN-AS-BLOCKUS | false | |
172.217.2.196 | unknown | United States | 15169 | GOOGLEUS | false | |
142.250.217.196 | www.google.com | United States | 15169 | GOOGLEUS | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.66.44.166 | unknown | United States | 13335 | CLOUDFLARENETUS | false | |
172.66.47.90 | aulixalrrydrea.pages.dev | United States | 13335 | CLOUDFLARENETUS | false |
IP |
---|
192.168.2.4 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1431908 |
Start date and time: | 2024-04-26 00:26:15 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 18s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://aulixalrrydrea.pages.dev/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 8 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal80.phis.win@16/24@8/7 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.189.131, 142.250.217.238, 172.217.193.84, 34.104.35.123, 192.178.50.42, 192.178.50.74, 142.250.189.138, 172.217.165.202, 142.251.35.234, 142.250.217.170, 142.250.217.234, 142.250.217.202, 142.250.64.138, 20.12.23.50, 199.232.210.172, 192.229.211.108, 13.85.23.206, 172.217.2.195
- Excluded domains from analysis (whitelisted): fs.microsoft.com, accounts.google.com, content-autofill.googleapis.com, aadcdnoriginwus2.azureedge.net, slscr.update.microsoft.com, clientservices.googleapis.com, ctldl.windowsupdate.com, aadcdn.msauth.net, wu-bg-shim.trafficmanager.net, firstparty-azurefd-prod.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, fe3.delivery.mp.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, ocsp.digicert.com, ocsp.edge.digicert.com, glb.cws.prod.dcat.dsp.trafficmanager.net, sls.update.microsoft.com, update.googleapis.com, aadcdnoriginwus2.afd.azureedge.net, clients.l.google.com, glb.sls.prod.dcat.dsp.trafficmanager.net
- HTTPS proxy raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: https://aulixalrrydrea.pages.dev/
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 17174 |
Entropy (8bit): | 2.9129715116732746 |
Encrypted: | false |
SSDEEP: | 24:QSNTmTFxg4lyyyyyyyyyyyyyio7eeeeeeeeekzgsLsLsLsLsLsQZp:nfgyyyyyyyyyyyyynzQQQQQO |
MD5: | 12E3DAC858061D088023B2BD48E2FA96 |
SHA1: | E08CE1A144ECEAE0C3C2EA7A9D6FBC5658F24CE5 |
SHA-256: | 90CDAF487716184E4034000935C605D1633926D348116D198F355A98B8C6CD21 |
SHA-512: | C5030C55A855E7A9E20E22F4C70BF1E0F3C558A9B7D501CFAB6992AC2656AE5E41B050CCAC541EFA55F9603E0D349B247EB4912EE169D44044271789C719CD01 |
Malicious: | false |
Reputation: | low |
URL: | https://aulixalrrydrea.pages.dev/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 32186 |
Entropy (8bit): | 7.993834915310616 |
Encrypted: | true |
SSDEEP: | 768:OtWoLXqCzZfLS6Qkn8hLKD7m6PvosCCMeMwnZyqsyWra:hMqOLzXs6m6PvDpMeyqsyWe |
MD5: | 7BF1190207067486998DA6F9F9BCF0CF |
SHA1: | E3EFB1DA875AAF807E812B3B6C0621ADAA7284F5 |
SHA-256: | A4457D7B477E07DE0055E79B31B5079CD04DF696E52EB799BE410F914573D142 |
SHA-512: | 9F146DEE3B9AAFAC8981C8B6F1D1447D474F90AAAEC5BAB71AC62E71E566355A7EC2A0EE46F34011A40B8EDCB9BB7E2102EC2A780EEA97674637DBC6CFB204BB |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/js/asyncchunk/convergedlogin_pcustomizationloader_f3782014f3739160dbfd.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 112847 |
Entropy (8bit): | 7.997382778474847 |
Encrypted: | true |
SSDEEP: | 3072:6CT5O+n0s0Xy2n1fsnmDzYkxlDsm6xgqrD:r0+0hi21fsngfDsm6xgu |
MD5: | DA5704439BE09695EAC53F186510C2DC |
SHA1: | 06C0DF31E93F8D55CF71F2239003D72C3E8748BB |
SHA-256: | 37320BA5268459126EA8170F1E68FD2A4172A1B8A953678248300FA6B4F9FE73 |
SHA-512: | 8EB68A0B461DF55BC29153A611995C90DAD035DBDD45EF846B5129568D50576E0D333835FE414462B98BA87868F6CB780FD2FB73F23752CBBEB48E6DA428F74F |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/js/ConvergedLogin_PCore_NnFX4S8X6vb-OgGnD82WNA2.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 17174 |
Entropy (8bit): | 2.9129715116732746 |
Encrypted: | false |
SSDEEP: | 24:QSNTmTFxg4lyyyyyyyyyyyyyio7eeeeeeeeekzgsLsLsLsLsLsQZp:nfgyyyyyyyyyyyyynzQQQQQO |
MD5: | 12E3DAC858061D088023B2BD48E2FA96 |
SHA1: | E08CE1A144ECEAE0C3C2EA7A9D6FBC5658F24CE5 |
SHA-256: | 90CDAF487716184E4034000935C605D1633926D348116D198F355A98B8C6CD21 |
SHA-512: | C5030C55A855E7A9E20E22F4C70BF1E0F3C558A9B7D501CFAB6992AC2656AE5E41B050CCAC541EFA55F9603E0D349B247EB4912EE169D44044271789C719CD01 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/microsoft_logo_ee5c8d9fb6248c938fd0dc19370e90bd.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 19970 |
Entropy (8bit): | 7.9803410960387735 |
Encrypted: | false |
SSDEEP: | 384:ekqQ8rNFEhCgMyL2iww6oIR8mWG4UbcFII2mpJ1Ncyi:9CGEiL/w7R81UgFISNO |
MD5: | F4ADBF9C60A3EF95809A6008F6764D08 |
SHA1: | B55C98C403B111B494C1ECE263DC06EABC0AB075 |
SHA-256: | 6A59A4F890EA26EF050B83D0722AAFC3AD70DDBCE706806381C4F159A5DB7497 |
SHA-512: | 14E1D5037910E7CEA689516B9751F812254B5771C31B28B51C7B6AF8CC24C5C086EAAC79E40B544B36DA48FF6A7EE3B6402C55A7CCFB2C307BD40742B126F40C |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/converged.v2.login.min_8owwt4u-33ps0wawi7tmow2.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 673 |
Entropy (8bit): | 7.6596900876595075 |
Encrypted: | false |
SSDEEP: | 12:Xl0t8TUViiYi5m6FhSBXWPsigK99WCqKMvBBFThSqfLd81CK6bC+k7LqZLsFlD:XFUVpkNK0Rwid81p6btk7LqZ6D |
MD5: | 0E176276362B94279A4492511BFCBD98 |
SHA1: | 389FE6B51F62254BB98939896B8C89EBEFFE2A02 |
SHA-256: | 9A2C174AE45CAC057822844211156A5ED293E65C5F69E1D211A7206472C5C80C |
SHA-512: | 8D61C9E464C8F3C77BF1729E32F92BBB1B426A19907E418862EFE117DBD1F0A26FCC3A6FE1D1B22B836853D43C964F6B6D25E414649767FBEA7FE10D2048D7A1 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/backgrounds/2_bc3d32a696895f78c19df6c717586a5d.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 27362 |
Entropy (8bit): | 4.893030833229059 |
Encrypted: | false |
SSDEEP: | 192:IZMRKHVT25pUPFtj/BGW+xtUnvuqbeaj4vw2sx8KPxgKq+bfnPv1jQzuW:8waFdZGW4eW43vxpq+bP+3 |
MD5: | 3386E6B9C0877D98DFA88D336CB9EB60 |
SHA1: | DAF7229C69D27083B4543AF0BF94F75D91C7680C |
SHA-256: | 251CB9BA9E0192EB2ED622D9B1A7A949E41631C9183B14DEF1E745043CF2F2EC |
SHA-512: | A7E3EDA3E97EF93588E735185C6B98F92D66E4DC54908AAD7C0A90715BD20CEAE4AE6C94B6091548A4A4D1D365956BC31D7002409F532958CEBA5142969C9AE3 |
Malicious: | false |
Reputation: | low |
URL: | https://aulixalrrydrea.pages.dev/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 621 |
Entropy (8bit): | 7.673946009263606 |
Encrypted: | false |
SSDEEP: | 12:Xp7fmqfW/e4YC2L0E5DZLB62y/+6lbPa1Gotq8mdd2Xmy2QLBwxD+QkCfBJ:Xp6qf2SCk3LBpy/rtPa1GKq8mOX5jLcD |
MD5: | 4761405717E938D7E7400BB15715DB1E |
SHA1: | 76FED7C229D353A27DB3257F5927C1EAF0AB8DE9 |
SHA-256: | F7ED91A1DAB5BB2802A7A3B3890DF4777588CCBE04903260FBA83E6E64C90DDF |
SHA-512: | E8DAC6F81EB4EBA2722E9F34DAF9B99548E5C40CCA93791FBEDA3DEBD8D6E401975FC1A75986C0E7262AFA1B9D1475E1008A89B92C8A7BEC84D8A917F221B4A2 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 621 |
Entropy (8bit): | 7.673946009263606 |
Encrypted: | false |
SSDEEP: | 12:Xp7fmqfW/e4YC2L0E5DZLB62y/+6lbPa1Gotq8mdd2Xmy2QLBwxD+QkCfBJ:Xp6qf2SCk3LBpy/rtPa1GKq8mOX5jLcD |
MD5: | 4761405717E938D7E7400BB15715DB1E |
SHA1: | 76FED7C229D353A27DB3257F5927C1EAF0AB8DE9 |
SHA-256: | F7ED91A1DAB5BB2802A7A3B3890DF4777588CCBE04903260FBA83E6E64C90DDF |
SHA-512: | E8DAC6F81EB4EBA2722E9F34DAF9B99548E5C40CCA93791FBEDA3DEBD8D6E401975FC1A75986C0E7262AFA1B9D1475E1008A89B92C8A7BEC84D8A917F221B4A2 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/signin-options_4e48046ce74f4b89d45037c90576bfac.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 16 |
Entropy (8bit): | 3.875 |
Encrypted: | false |
SSDEEP: | 3:HoUinYn:IUyY |
MD5: | 903747EA4323C522742842A52CE710C9 |
SHA1: | 9F806EA4288867A31A4AD53AC171AA4029DF182B |
SHA-256: | 4BD8B60F91849C936AE45615145A7B7BE2CF803322A30BABBAE7267A142CA5BB |
SHA-512: | EEF73DC29A38ED70FFCFC321931BCB5B5A29FAAC356E8F6D84F57C532EEF44AE75021C341CF7DAE26B8211924A1C0E0EC4735F6BFC4AF3970A48EB63BFB7895F |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAl5psc2NlFNxxIFDYOoWz0=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 13882 |
Entropy (8bit): | 7.984934622402065 |
Encrypted: | false |
SSDEEP: | 384:8ERkpbIMRpcr3UYREacoHtEDyV+EBnZGtP8PtJTWbbQrKdd:8EubUr3UYEeHsyVF3DOQred |
MD5: | B6A6E43FE3E1A97C0C00C395A5A24472 |
SHA1: | 9E2F07494F7BDF7C7B592E5407780EB51F87F97D |
SHA-256: | D59EFC3A1A9202A782892522221DFE9365E4BB2B6119DCB68CBF47BDA55FC435 |
SHA-512: | EBBF9E6E80F51DC4A6645C744788F3EA35084BB52AB98FD50D1383AA32CB0BB6430EE32488C861DCEDC7FF7700796944068B3D440E0D39AA14EA72475B9CDC1B |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/ests/2.1/content/cdnbundles/ux.converged.login.strings-en.min_drcggiwi0cystfohuwx04a2.js |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 26, 2024 00:26:56.832566023 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 26, 2024 00:26:57.676312923 CEST | 49678 | 443 | 192.168.2.4 | 104.46.162.224 |
Apr 26, 2024 00:27:03.986346006 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.986385107 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:03.986706018 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.986727953 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.986783981 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:03.986855030 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.986954927 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.986975908 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:03.987180948 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:03.987217903 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.254890919 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.257507086 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.257529020 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.259038925 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.259110928 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.260324001 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.260473967 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.260529041 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.263799906 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.264031887 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.264053106 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.265628099 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.265702963 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.266669989 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.266757965 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.303447962 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.303459883 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.319224119 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.319245100 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.350919008 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.366975069 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596077919 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596153975 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596189022 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596220970 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596244097 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596261978 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596276999 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596292019 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596327066 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596395016 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596425056 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596502066 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596532106 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596594095 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596642971 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596690893 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.596708059 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.596839905 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.597440958 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.597532988 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.597567081 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.597590923 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.597598076 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.597608089 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.597635984 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.598335028 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.598376989 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.598381042 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.598402023 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.598458052 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.598470926 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.598586082 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.598629951 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.599389076 CEST | 49736 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:04.599417925 CEST | 443 | 49736 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:04.752770901 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.752850056 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.752913952 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.752954006 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.752994061 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.753041029 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753091097 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753125906 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.753197908 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753418922 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753441095 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.753484011 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753874063 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.753910065 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.754144907 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.754157066 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.754295111 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.754331112 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:04.754432917 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:04.754470110 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.143635035 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.143645048 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.144011021 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.144073009 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.144203901 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.144259930 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.145339966 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.145426035 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.145590067 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.145667076 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.146440029 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.146447897 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.146517038 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.146730900 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.146773100 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.146821976 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.146917105 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.146965027 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.146980047 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.147022963 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.147042036 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.147536039 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.148221970 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.148296118 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.149127007 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.149214029 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.149244070 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.149265051 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.149415016 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.149430990 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.150810957 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.151062012 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.151760101 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.151843071 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.151849031 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.196151018 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.198647976 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.198648930 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.198649883 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.198827982 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.198847055 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.244596004 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.647696018 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647758961 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647780895 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647800922 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647825003 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.647839069 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647857904 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647865057 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.647897959 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.647907019 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.647907019 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.647953987 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.648010015 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.648060083 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.648072004 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.648241997 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.648287058 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.654158115 CEST | 49740 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.654181957 CEST | 443 | 49740 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874445915 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874533892 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874553919 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874591112 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874608040 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.874635935 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874680042 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874725103 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.874725103 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.874725103 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.874857903 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.874906063 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.881804943 CEST | 49739 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.881834984 CEST | 443 | 49739 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.890033007 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.890078068 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.890131950 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.891016960 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.891025066 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.891093969 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.891503096 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.891515970 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:05.892144918 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:05.892154932 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087621927 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087655067 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087662935 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087683916 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087697029 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087706089 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087752104 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.087826014 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087855101 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087897062 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087925911 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.087925911 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.087925911 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.087949038 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.087980986 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.088006973 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.088007927 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.088031054 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.218336105 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.218364000 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.218436956 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.218498945 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.218548059 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.218548059 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.219157934 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.219177961 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.219228029 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.219242096 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.219274998 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.219305992 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.220143080 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.220154047 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.220201969 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.220215082 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.220247984 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.220266104 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.289081097 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.289768934 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.289793015 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.290124893 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.291501045 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.291560888 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.291941881 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.298386097 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.298614979 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.298624992 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.299103975 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.300190926 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.300268888 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.300858974 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.336121082 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.344443083 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.344499111 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.344526052 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.344548941 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.344578028 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.344600916 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.345382929 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.345428944 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.345452070 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.345465899 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.345494986 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.345555067 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.345602989 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.348112106 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.355767012 CEST | 49738 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.355798960 CEST | 443 | 49738 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.442804098 CEST | 49675 | 443 | 192.168.2.4 | 173.222.162.32 |
Apr 26, 2024 00:27:06.551539898 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.551712036 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.551778078 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.552813053 CEST | 49743 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.552855968 CEST | 443 | 49743 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.917104006 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.917135000 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.917188883 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:06.917392969 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.964473963 CEST | 49744 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:06.964513063 CEST | 443 | 49744 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.074477911 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.074513912 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.074740887 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.075258017 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.075278044 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.202425003 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.202467918 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.205487013 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.231725931 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.231775999 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.231929064 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.232681990 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.232757092 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.233094931 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.233412027 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.233419895 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.233432055 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.233453989 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.235538006 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.235558033 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.410013914 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.411211967 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.411235094 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.412219048 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.412862062 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.415427923 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.415486097 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.471309900 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.471335888 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:07.511246920 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.511324883 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.514630079 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.514641047 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.514903069 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.523405075 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:07.525254965 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525284052 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525291920 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525310993 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525319099 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525326967 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525389910 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.525403023 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.525434017 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.525716066 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.526268959 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.526278973 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.526310921 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.526371002 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.526376963 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.526390076 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.526407003 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.526546001 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.535402060 CEST | 49741 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.535423040 CEST | 443 | 49741 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.571506023 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.625814915 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.626339912 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.627366066 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.627388954 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.628428936 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.628453016 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.628489017 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.628719091 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.629414082 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.629472017 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.629539013 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.629659891 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.629832029 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.629839897 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.630090952 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.630162954 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.630454063 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.672143936 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.675614119 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.675616980 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.675632954 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.675631046 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.675712109 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.679569006 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.681170940 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.681217909 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.721498966 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.760585070 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.804128885 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.882314920 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.882560968 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.882616997 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.883143902 CEST | 49747 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:07.883166075 CEST | 443 | 49747 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:07.889247894 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.889398098 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.889488935 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.889704943 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.889733076 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.889746904 CEST | 49746 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.889755964 CEST | 443 | 49746 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.919270039 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.919302940 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:07.919373989 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.919682980 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:07.919696093 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.072417974 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.072760105 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.072798014 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.073275089 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.073667049 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.073757887 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.073839903 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.116141081 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.182957888 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.183038950 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:08.184535980 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:08.184545040 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.185354948 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.186578035 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:08.196799040 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.197026014 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.197071075 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.197074890 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.197115898 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.198052883 CEST | 49748 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.198071957 CEST | 443 | 49748 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.232115984 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.440721035 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.440869093 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:08.440927982 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:08.655141115 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.656097889 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:08.656163931 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:08.687983036 CEST | 49751 | 443 | 192.168.2.4 | 23.202.106.101 |
Apr 26, 2024 00:27:08.688010931 CEST | 443 | 49751 | 23.202.106.101 | 192.168.2.4 |
Apr 26, 2024 00:27:09.993895054 CEST | 49749 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:09.993911028 CEST | 443 | 49749 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:10.048279047 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.092118979 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.378684044 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.378839970 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.378887892 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.378911972 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379045010 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379090071 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379096985 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379209042 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379254103 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379260063 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379368067 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379440069 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379446030 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379530907 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379578114 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379585028 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379699945 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379782915 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379823923 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379832029 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.379863977 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.379900932 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.380039930 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.380129099 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.380137920 CEST | 443 | 49735 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:10.380155087 CEST | 49735 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:10.545233011 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:10.545322895 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:10.545416117 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:10.545593023 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:10.545624018 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:10.716332912 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:10.716375113 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:10.716451883 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:10.716665983 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:10.716681004 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:10.936835051 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:10.979938030 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:10.987421989 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:10.999670029 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:10.999681950 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:10.999795914 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:10.999799013 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.000653028 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.000713110 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.000946045 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.001106977 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.001166105 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.001568079 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:11.001749992 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.001754999 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.001766920 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.001907110 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:11.044142008 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.049931049 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.296268940 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.298643112 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.298716068 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:11.299408913 CEST | 49753 | 443 | 192.168.2.4 | 13.107.246.41 |
Apr 26, 2024 00:27:11.299424887 CEST | 443 | 49753 | 13.107.246.41 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322371006 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322418928 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322458029 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.322463036 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322473049 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322503090 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.322628975 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322863102 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.322912931 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.322921038 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323019028 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323087931 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.323092937 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323265076 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323298931 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.323303938 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323726892 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323761940 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323803902 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.323808908 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323860884 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:11.323868036 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.323913097 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.325028896 CEST | 49755 | 443 | 192.168.2.4 | 172.66.44.166 |
Apr 26, 2024 00:27:11.325038910 CEST | 443 | 49755 | 172.66.44.166 | 192.168.2.4 |
Apr 26, 2024 00:27:17.402468920 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:17.402842999 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:17.402909040 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:18.745498896 CEST | 49745 | 443 | 192.168.2.4 | 142.250.217.196 |
Apr 26, 2024 00:27:18.745522976 CEST | 443 | 49745 | 142.250.217.196 | 192.168.2.4 |
Apr 26, 2024 00:27:23.210596085 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:23.210674047 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.210753918 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:23.214287043 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:23.214319944 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.481894016 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.482225895 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:23.482255936 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.483374119 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.483863115 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:23.484045029 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:23.534900904 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:38.470953941 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:38.471132994 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:27:38.471205950 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:38.648617983 CEST | 49762 | 443 | 192.168.2.4 | 172.66.47.90 |
Apr 26, 2024 00:27:38.648684025 CEST | 443 | 49762 | 172.66.47.90 | 192.168.2.4 |
Apr 26, 2024 00:28:07.202270031 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:07.202356100 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.202495098 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:07.202789068 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:07.202807903 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.597326040 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.617034912 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:07.617073059 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.618190050 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.618652105 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:07.618729115 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:07.659778118 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:16.647851944 CEST | 49723 | 80 | 192.168.2.4 | 72.21.81.240 |
Apr 26, 2024 00:28:16.647942066 CEST | 49724 | 80 | 192.168.2.4 | 72.21.81.240 |
Apr 26, 2024 00:28:16.772491932 CEST | 80 | 49723 | 72.21.81.240 | 192.168.2.4 |
Apr 26, 2024 00:28:16.775521994 CEST | 49723 | 80 | 192.168.2.4 | 72.21.81.240 |
Apr 26, 2024 00:28:16.775588036 CEST | 80 | 49724 | 72.21.81.240 | 192.168.2.4 |
Apr 26, 2024 00:28:16.779508114 CEST | 49724 | 80 | 192.168.2.4 | 72.21.81.240 |
Apr 26, 2024 00:28:17.600258112 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:17.600318909 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Apr 26, 2024 00:28:17.600379944 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:18.646156073 CEST | 49765 | 443 | 192.168.2.4 | 172.217.2.196 |
Apr 26, 2024 00:28:18.646181107 CEST | 443 | 49765 | 172.217.2.196 | 192.168.2.4 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 26, 2024 00:27:02.510359049 CEST | 53 | 60191 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:02.536555052 CEST | 53 | 54415 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:03.522841930 CEST | 53 | 64924 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:03.852006912 CEST | 55664 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:03.852334976 CEST | 60972 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:03.985572100 CEST | 53 | 60972 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:03.985589027 CEST | 53 | 55664 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:06.944957018 CEST | 62347 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:06.945683956 CEST | 52192 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:07.071335077 CEST | 53 | 62347 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:07.072774887 CEST | 53 | 52192 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:07.807373047 CEST | 53 | 59212 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:10.575982094 CEST | 49299 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:10.576147079 CEST | 56317 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:27:10.706394911 CEST | 53 | 49299 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:10.715723991 CEST | 53 | 56317 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:22.165245056 CEST | 53 | 64007 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:27:28.197314978 CEST | 138 | 138 | 192.168.2.4 | 192.168.2.255 |
Apr 26, 2024 00:27:41.434654951 CEST | 53 | 64624 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:28:02.301683903 CEST | 53 | 63423 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:28:04.465691090 CEST | 53 | 65287 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:28:07.074857950 CEST | 62078 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:28:07.075063944 CEST | 56391 | 53 | 192.168.2.4 | 1.1.1.1 |
Apr 26, 2024 00:28:07.200576067 CEST | 53 | 56391 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:28:07.200973034 CEST | 53 | 62078 | 1.1.1.1 | 192.168.2.4 |
Apr 26, 2024 00:28:30.056879044 CEST | 53 | 63460 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 26, 2024 00:27:03.852006912 CEST | 192.168.2.4 | 1.1.1.1 | 0xd6dd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 00:27:03.852334976 CEST | 192.168.2.4 | 1.1.1.1 | 0xffc9 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 26, 2024 00:27:06.944957018 CEST | 192.168.2.4 | 1.1.1.1 | 0x2b7b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 00:27:06.945683956 CEST | 192.168.2.4 | 1.1.1.1 | 0x329f | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 26, 2024 00:27:10.575982094 CEST | 192.168.2.4 | 1.1.1.1 | 0x7199 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 00:27:10.576147079 CEST | 192.168.2.4 | 1.1.1.1 | 0x3389 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 26, 2024 00:28:07.074857950 CEST | 192.168.2.4 | 1.1.1.1 | 0x7146 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 00:28:07.075063944 CEST | 192.168.2.4 | 1.1.1.1 | 0x3c33 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 26, 2024 00:27:03.985572100 CEST | 1.1.1.1 | 192.168.2.4 | 0xffc9 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 26, 2024 00:27:03.985589027 CEST | 1.1.1.1 | 192.168.2.4 | 0xd6dd | No error (0) | 172.66.47.90 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:03.985589027 CEST | 1.1.1.1 | 192.168.2.4 | 0xd6dd | No error (0) | 172.66.44.166 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:04.752137899 CEST | 1.1.1.1 | 192.168.2.4 | 0x395d | No error (0) | part-0013.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:04.752137899 CEST | 1.1.1.1 | 192.168.2.4 | 0x395d | No error (0) | 13.107.246.41 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:04.752137899 CEST | 1.1.1.1 | 192.168.2.4 | 0x395d | No error (0) | 13.107.213.41 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:07.071335077 CEST | 1.1.1.1 | 192.168.2.4 | 0x2b7b | No error (0) | 142.250.217.196 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:07.072774887 CEST | 1.1.1.1 | 192.168.2.4 | 0x329f | No error (0) | 65 | IN (0x0001) | false | |||
Apr 26, 2024 00:27:07.205580950 CEST | 1.1.1.1 | 192.168.2.4 | 0x2ef8 | No error (0) | part-0013.t-0009.t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:07.205580950 CEST | 1.1.1.1 | 192.168.2.4 | 0x2ef8 | No error (0) | 13.107.246.41 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:07.205580950 CEST | 1.1.1.1 | 192.168.2.4 | 0x2ef8 | No error (0) | 13.107.213.41 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:10.706394911 CEST | 1.1.1.1 | 192.168.2.4 | 0x7199 | No error (0) | 172.66.44.166 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:10.706394911 CEST | 1.1.1.1 | 192.168.2.4 | 0x7199 | No error (0) | 172.66.47.90 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:10.715723991 CEST | 1.1.1.1 | 192.168.2.4 | 0x3389 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 26, 2024 00:27:19.973753929 CEST | 1.1.1.1 | 192.168.2.4 | 0xe089 | No error (0) | 199.232.210.172 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:19.973753929 CEST | 1.1.1.1 | 192.168.2.4 | 0xe089 | No error (0) | 199.232.214.172 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:20.396498919 CEST | 1.1.1.1 | 192.168.2.4 | 0x5c6e | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:20.396498919 CEST | 1.1.1.1 | 192.168.2.4 | 0x5c6e | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:33.350985050 CEST | 1.1.1.1 | 192.168.2.4 | 0x777f | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:33.350985050 CEST | 1.1.1.1 | 192.168.2.4 | 0x777f | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:56.573878050 CEST | 1.1.1.1 | 192.168.2.4 | 0x255d | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:27:56.573878050 CEST | 1.1.1.1 | 192.168.2.4 | 0x255d | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:28:07.200576067 CEST | 1.1.1.1 | 192.168.2.4 | 0x3c33 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 26, 2024 00:28:07.200973034 CEST | 1.1.1.1 | 192.168.2.4 | 0x7146 | No error (0) | 172.217.2.196 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 00:28:15.287605047 CEST | 1.1.1.1 | 192.168.2.4 | 0xbb4a | No error (0) | fp2e7a.wpc.phicdn.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 00:28:15.287605047 CEST | 1.1.1.1 | 192.168.2.4 | 0xbb4a | No error (0) | 192.229.211.108 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49736 | 172.66.47.90 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:04 UTC | 667 | OUT | |
2024-04-25 22:27:04 UTC | 767 | IN | |
2024-04-25 22:27:04 UTC | 602 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN | |
2024-04-25 22:27:04 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49740 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:05 UTC | 656 | OUT | |
2024-04-25 22:27:05 UTC | 776 | IN | |
2024-04-25 22:27:05 UTC | 15608 | IN | |
2024-04-25 22:27:05 UTC | 4362 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49738 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:05 UTC | 633 | OUT | |
2024-04-25 22:27:06 UTC | 793 | IN | |
2024-04-25 22:27:06 UTC | 15591 | IN | |
2024-04-25 22:27:06 UTC | 16384 | IN | |
2024-04-25 22:27:06 UTC | 16384 | IN | |
2024-04-25 22:27:06 UTC | 16384 | IN | |
2024-04-25 22:27:06 UTC | 16384 | IN | |
2024-04-25 22:27:06 UTC | 16384 | IN | |
2024-04-25 22:27:06 UTC | 15336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49739 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:05 UTC | 652 | OUT | |
2024-04-25 22:27:05 UTC | 798 | IN | |
2024-04-25 22:27:05 UTC | 13882 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49741 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:05 UTC | 617 | OUT | |
2024-04-25 22:27:07 UTC | 792 | IN | |
2024-04-25 22:27:07 UTC | 15592 | IN | |
2024-04-25 22:27:07 UTC | 16384 | IN | |
2024-04-25 22:27:07 UTC | 210 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49744 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:06 UTC | 662 | OUT | |
2024-04-25 22:27:06 UTC | 780 | IN | |
2024-04-25 22:27:06 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49743 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:06 UTC | 662 | OUT | |
2024-04-25 22:27:06 UTC | 784 | IN | |
2024-04-25 22:27:06 UTC | 621 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49747 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:07 UTC | 418 | OUT | |
2024-04-25 22:27:07 UTC | 799 | IN | |
2024-04-25 22:27:07 UTC | 621 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49748 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:07 UTC | 418 | OUT | |
2024-04-25 22:27:08 UTC | 786 | IN | |
2024-04-25 22:27:08 UTC | 1435 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49746 | 23.202.106.101 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:07 UTC | 161 | OUT | |
2024-04-25 22:27:07 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49749 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:08 UTC | 661 | OUT | |
2024-04-25 22:27:08 UTC | 779 | IN | |
2024-04-25 22:27:08 UTC | 673 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49751 | 23.202.106.101 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:08 UTC | 239 | OUT | |
2024-04-25 22:27:08 UTC | 487 | IN | |
2024-04-25 22:27:08 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49735 | 172.66.47.90 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:10 UTC | 604 | OUT | |
2024-04-25 22:27:10 UTC | 765 | IN | |
2024-04-25 22:27:10 UTC | 604 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 228 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN | |
2024-04-25 22:27:10 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49755 | 172.66.44.166 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:10 UTC | 359 | OUT | |
2024-04-25 22:27:11 UTC | 765 | IN | |
2024-04-25 22:27:11 UTC | 604 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN | |
2024-04-25 22:27:11 UTC | 1369 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49753 | 13.107.246.41 | 443 | 2520 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-25 22:27:10 UTC | 417 | OUT | |
2024-04-25 22:27:11 UTC | 785 | IN | |
2024-04-25 22:27:11 UTC | 673 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 00:26:59 |
Start date: | 26/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 00:27:01 |
Start date: | 26/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 00:27:03 |
Start date: | 26/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76e190000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |