Windows
Analysis Report
https://cran.r-project.org/
Overview
Detection
Score: | 0 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64_ra
- chrome.exe (PID: 7064 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed --sing le-argumen t https:// cran.r-pro ject.org/ MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 6192 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2160 --fi eld-trial- handle=196 4,i,552490 7010789509 663,171113 0581080423 3055,26214 4 --disabl e-features =Optimizat ionGuideMo delDownloa ding,Optim izationHin ts,Optimiz ationHints Fetching,O ptimizatio nTargetPre diction /p refetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: | ||
Source: | HTTP Parser: | ||
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 1 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
1% | Virustotal | Browse |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
cran.wu-wien.ac.at | 137.208.57.37 | true | false | unknown | |
www.google.com | 172.217.2.196 | true | false | high | |
cran.r-project.org | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false |
| unknown | ||
false | high | |||
false | high | |||
false | high | |||
false |
| unknown | ||
false | high | |||
false |
| unknown | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
137.208.57.37 | cran.wu-wien.ac.at | Austria | 1776 | WirtschaftsuniversitaetWienAT | false | |
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
172.217.2.196 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.16 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1431936 |
Start date and time: | 2024-04-26 02:11:39 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 24s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | defaultwindowsinteractivecookbook.jbs |
Sample URL: | https://cran.r-project.org/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 14 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean0.win@14/22@6/4 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, SIHClient.exe, SgrmBroker.exe, MoUsoCoreWorker.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 172.217.165.195, 142.250.189.142, 74.125.139.84, 34.104.35.123, 142.250.189.131, 199.232.210.172, 142.250.64.142
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, clients2.google.com, accounts.google.com, edgedl.me.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2673 |
Entropy (8bit): | 3.979686808713447 |
Encrypted: | false |
SSDEEP: | 48:8MdeTaKnHsidAKZdA1FehwiZUklqehBy+3:8xXyuy |
MD5: | 98A01F3D36881BF37058140256285DD3 |
SHA1: | 5F4275CF4D3F6D1C1C2399F01D264B523F3EEB0E |
SHA-256: | 430472870AFB706072633E110CA782D21E91FB516649D854C2232BB7B03A06C5 |
SHA-512: | 9AC5B80DEB279E8347AFA1EE75970E3A539D297F50BFBA7CFB91BF48096D810ED0A0DF7F94DA41B52220FAB864EB9BCC0F86DF975623FF9BD9D37383030F1087 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2675 |
Entropy (8bit): | 3.996241356083018 |
Encrypted: | false |
SSDEEP: | 48:8adeTaKnHsidAKZdA1seh/iZUkAQkqehey+2:8vXs9QHy |
MD5: | E5F06A927146446917D3B829C86EC9FF |
SHA1: | 15BF1FE4929DACB4C1AA7B61580E4C925725B01B |
SHA-256: | 9C790C0924CE07D189A53B9F118D066035FC418AD334A188AB4167B361E3550B |
SHA-512: | FDB466795459ECD7D0328DE8DCEA19922AB21C943C8E7DC51D4671FF8301A712613A3E7895DEEBF381232EE20C03A7A583D3DD27173999DF91EC7F15730FEE94 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2689 |
Entropy (8bit): | 4.006396922914425 |
Encrypted: | false |
SSDEEP: | 48:8bdeTaKAHsidAKZdA14meh7sFiZUkmgqeh7sEy+BX:8EXtnCy |
MD5: | F09FC582EA0AB01F6ECBD8D5CDB7C6A9 |
SHA1: | 512FA9E8DA872B58363C6214036B8C3EB1B61589 |
SHA-256: | 7D67584F0D5793BAE5E8D29D7856E3C9A10D6A120A02B825AAF83374CDCAAFB7 |
SHA-512: | 7D1C192EA16F9FA778D7FBC103D757A7453721DCE642B2F5ACCC0D49DC5AB9D9D0184E61C19D6786C6560872A711ECDF4D3691B4577CD9A9964342EC13BEE036 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9955619085097664 |
Encrypted: | false |
SSDEEP: | 48:8CdeTaKnHsidAKZdA1TehDiZUkwqeh6y+R:8HXncy |
MD5: | EF060FF804E6EA533E338D1C7283A427 |
SHA1: | 54D291A1067C275D28CF2FE14FCD4B978B5A3451 |
SHA-256: | 124FD657A94C10FE57EF6AE73C82DA55EE69E4059377199868D756EC67D60B5F |
SHA-512: | 65F5B22F3EFC1336A41B62A921F6A7CE6910230C3DAB9F0E70AA03AEE179E6CCC60CC7E6393B99FDC416B50066AB29369E5BCA0ACD581F9F152BFF9B7FE74453 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9835246344140276 |
Encrypted: | false |
SSDEEP: | 48:8RdeTaKnHsidAKZdA1dehBiZUk1W1qehYy+C:8iX394y |
MD5: | 00A852BDEB972DF207618B62751990EA |
SHA1: | CCFA91E6EA619CD48642A3AEF9396B78AADEF540 |
SHA-256: | D191F610A04C65615C7B14D697EAC083FC6FB4FD3BF8757C9843F0AC426E9847 |
SHA-512: | 6061E2DDBE860A51B13388CDFE008B7114163B5C52957A9205A784E36F9798EE05861BE14EBC7F8595F0FE1098A54C82DAA0AEC3E26B33F81B41AF8CA696FD5F |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.995035404553118 |
Encrypted: | false |
SSDEEP: | 48:87QdeTaKnHsidAKZdA1duTeehOuTbbiZUk5OjqehOuTbCy+yT+:871X7TfTbxWOvTbCy7T |
MD5: | 313AB3E0E0270C50730125183C824BF0 |
SHA1: | D51FA0F58B755D15E4CB3409F7768E1EFC557229 |
SHA-256: | 2C4EBC64E1206124628F61BCDE1FF5AD2832EEFBC6647DF1529E0D108D21C8C0 |
SHA-512: | ACE8410E3E3B3FE93165CAAB5646BD3A9CDEB509F3080CB5720CDBC508157A08071A526886B44C149BFAB0F3375A1E127D35AD83F4200923B622161CB8E2F957 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5430 |
Entropy (8bit): | 4.710205174043457 |
Encrypted: | false |
SSDEEP: | 96:Hpv58AqpjL7s23vR0If0ajn0KVs3Re7SVQIurcdGZ:H8LjL7s2fCV3RyYAZ |
MD5: | 732DEC1DF8DC01D976D98A44B49DABB8 |
SHA1: | C438249651E0679BE4DFFAB5AA2609E23095736B |
SHA-256: | 50443AC7A296BB96AD7DB5E4F32092C7C5A460BC4E5D6A177131ED32ED0884E9 |
SHA-512: | 37D44AFB75067A0AF6B02C8B0D4BE524012EFC2984BF829B9B2EAABF1A2A379A71A908DD409B8F574EC16B71E2547A327EF074BC6EB64D6A392614AA30008619 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1422 |
Entropy (8bit): | 4.969728617926878 |
Encrypted: | false |
SSDEEP: | 24:hYDRTIpd10+EYa0KF8Blh0UelTVpobhJxVBhd:GIpzu0KqkV4xVzd |
MD5: | 5D8CB6D844875772D2A5F3BD6FD7DE66 |
SHA1: | 89F68DDEA6B16EC6FF99D41E854BC36A985A881C |
SHA-256: | 22C1348E52004842F40A6FAB2A94F3606E2F8204E9E9FB55C551A174DCAE5338 |
SHA-512: | CD774F7EC5CBA976ADEE3601AA6576AD28C5E2B7587708657FB8B561BA9CD897507C364E151163B83918E0F88F548D482D196B6C43DA5112BC78F6A6AD6EE8EC |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/navbar.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 866 |
Entropy (8bit): | 5.276269209940634 |
Encrypted: | false |
SSDEEP: | 12:BMQEdOa+3NNR7wwqXDMfht5FjbqQ0hFjbqq+uYLaGa2K1Bql1ql1tGlP1IyXR7cB:Wn+9/0Ip3yGsVlzGUacgVGl |
MD5: | 98C9BE59FEF6DC4BDAFDDB28DB9A023E |
SHA1: | 9BC781BF063E325B69FB970F45624EDE77A15B77 |
SHA-256: | EA11EC37E22216EC707F3D27FEC09059D251FB2A156097E29C3F8169E2955FA9 |
SHA-512: | 541F4C025D2F26FC8ACFE4F322EA76CBCA76C6032C36ED462F9EED2648770AE6C3DFD58AEBD89A14A52277B8932F47217B8EEC871F41D7C75CB6E774D2BD9B53 |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/ |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 2693 |
Entropy (8bit): | 5.314047977753302 |
Encrypted: | false |
SSDEEP: | 48:Ts1tjrNDfTiyZIV+PakS5ydlydGZj4Ky/DxbUM47ZutK9C4yYGrkL6LeRPKGX:YNDLa5V/v4LPr |
MD5: | F48436046DCA5D25F30091F715505987 |
SHA1: | 7898F047BF9EA7FF1434C98781685A327C9CC39A |
SHA-256: | 1498F585F2BF7C051DBCFAF66DDC41FB93DA5033461057525C712CC7E191BB16 |
SHA-512: | 4B54D5D41A50F7583F0A186FE83A28788FE17F0B61C563941CA6D3A7C31FF19AED5AF9D68926CB8402A985683D0D8B3EF54B323B4F1BA1B93ED0431ABA1F7EB8 |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/Rlogo.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5430 |
Entropy (8bit): | 4.710205174043457 |
Encrypted: | false |
SSDEEP: | 96:Hpv58AqpjL7s23vR0If0ajn0KVs3Re7SVQIurcdGZ:H8LjL7s2fCV3RyYAZ |
MD5: | 732DEC1DF8DC01D976D98A44B49DABB8 |
SHA1: | C438249651E0679BE4DFFAB5AA2609E23095736B |
SHA-256: | 50443AC7A296BB96AD7DB5E4F32092C7C5A460BC4E5D6A177131ED32ED0884E9 |
SHA-512: | 37D44AFB75067A0AF6B02C8B0D4BE524012EFC2984BF829B9B2EAABF1A2A379A71A908DD409B8F574EC16B71E2547A327EF074BC6EB64D6A392614AA30008619 |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 5.314047977753302 |
Encrypted: | false |
SSDEEP: | 48:Ts1tjrNDfTiyZIV+PakS5ydlydGZj4Ky/DxbUM47ZutK9C4yYGrkL6LeRPKGX:YNDLa5V/v4LPr |
MD5: | F48436046DCA5D25F30091F715505987 |
SHA1: | 7898F047BF9EA7FF1434C98781685A327C9CC39A |
SHA-256: | 1498F585F2BF7C051DBCFAF66DDC41FB93DA5033461057525C712CC7E191BB16 |
SHA-512: | 4B54D5D41A50F7583F0A186FE83A28788FE17F0B61C563941CA6D3A7C31FF19AED5AF9D68926CB8402A985683D0D8B3EF54B323B4F1BA1B93ED0431ABA1F7EB8 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 300 |
Entropy (8bit): | 5.151868240792161 |
Encrypted: | false |
SSDEEP: | 6:Wzh5/LMQFNxpqXDJR0NNEXW0YBtCeT/qzq9MkdAhB5Q7A+BhZsYDObQ4QL:yhqXDMfhtw+uYANQEWZsbbQL |
MD5: | 7B3760E9441D1DE7E0FA63546A641BAC |
SHA1: | 1830052A09065FD324CD5BD25A3CE965D6B903EC |
SHA-256: | 7DCCBA55CECA76B0DCFC1000FD713F5C6B8887F150BEDB7BE20B8990FB4E78BD |
SHA-512: | 14B756F6F5B6BFF9277A5857F1AF7B3A5E49F806E7DB101A06F9E7F0BBB37EC442E784B9F5A4423DC62CD5F86935317588598F404183E3FAAE6BD83E9602204D |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/logo.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1335 |
Entropy (8bit): | 4.733581909983123 |
Encrypted: | false |
SSDEEP: | 24:UCSRunSTTWISCSh4S69zS6+iS6FDgS6ixS6F2oEixDOBiliCqR+hfOM:UCm4bIFfROi1Dgc175WiI6GM |
MD5: | B6763E6916890C631FDC3F2643803B1A |
SHA1: | B1569D1EB7BE28B1BF3187EE36ADF421D6D87E5F |
SHA-256: | 0F4849AB1757247808D54DA2C371E992364371C942AD7D629DAE8D62327ED068 |
SHA-512: | 1CB9B40CF54006EB72770210459EC0E2E742568D65464B42A0BD7EA1491748914A84C0D612E2DF2B4D55BB113AEEA6147A86A2AEB3EC31490A8B363767235419 |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/R.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5770 |
Entropy (8bit): | 4.957309141911203 |
Encrypted: | false |
SSDEEP: | 96:k8IRFY0Xzhbx27Kh4Drvqq5pNZ4ZcbMlatl3XoHGNM87Mf9uJs2KzWa0JDo+:k8eY0Do8m+q5pN/ftmm3YBjCaw |
MD5: | 286F8149123235F55E55B5C49EA33D2A |
SHA1: | C0C3AC6101B42FE12B297DF9A290E2007D085FBE |
SHA-256: | 13F8570FB229072D6F9E7A5F96B2080D7905000C0D222D953C5339C6A6F84EA4 |
SHA-512: | F6358F2848C35814A78D9B86BB912A85895BD116A6F8840A2A1CDAC607AA45DB5CDCAB667D5CBF9E74696622E59EBD32C2029607BBDD924C9D2FFEB32646D31E |
Malicious: | false |
Reputation: | low |
URL: | https://cran.r-project.org/banner.shtml |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 26, 2024 02:12:05.718540907 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.718621016 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:05.718785048 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.718997002 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.719032049 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:05.719321966 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.719364882 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:05.719453096 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.719604015 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:05.719618082 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.237246037 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.237519979 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.237544060 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.238533020 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.238622904 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.239698887 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.239783049 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.239923954 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.239933014 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.247454882 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.247674942 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.247703075 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.249150991 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.249241114 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.250065088 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.250143051 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.283880949 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.300055027 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.300076008 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.347908974 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.738163948 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.738243103 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.738647938 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.739237070 CEST | 49704 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.739254951 CEST | 443 | 49704 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.750386000 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.756994963 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.757081032 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.757251024 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.757460117 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.757496119 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.758213043 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.758240938 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.758320093 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.758914948 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.758924961 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.759186983 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.759263992 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.759517908 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.759723902 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:06.759753942 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:06.792133093 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.003716946 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.003914118 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.003977060 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.005172968 CEST | 49703 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.005198002 CEST | 443 | 49703 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.274497986 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.274548054 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.274859905 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.274921894 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.274966955 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.275027037 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.275276899 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.275626898 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.275696993 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.275772095 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.275921106 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.276005030 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.276295900 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.276375055 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.276422977 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.280065060 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.280306101 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.280320883 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.281490088 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.283307076 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.283409119 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.283420086 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.320128918 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.320918083 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.320925951 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.320946932 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.328113079 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.336910009 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.368937969 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.779949903 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.780064106 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.780148983 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.780702114 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.780725956 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.780765057 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.780790091 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.780849934 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.781148911 CEST | 49705 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.781188011 CEST | 443 | 49705 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784259081 CEST | 49707 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.784287930 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784327984 CEST | 443 | 49707 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784595013 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784615993 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784666061 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.784687042 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784703016 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.784898043 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.784981012 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.788429022 CEST | 49706 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.788439989 CEST | 443 | 49706 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.790038109 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.790080070 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:07.790148973 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.790487051 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:07.790508032 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.302609921 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.303396940 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.303417921 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.303719997 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.304080963 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.304146051 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.304222107 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.352113962 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.808407068 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.808507919 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.808554888 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.808572054 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.808609009 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.809473991 CEST | 49709 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.809494019 CEST | 443 | 49709 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.816392899 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.816493034 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:08.816584110 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.816802025 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:08.816837072 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.279308081 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.279381037 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.279472113 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.279680967 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.279711008 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.327327013 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.327558994 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.327605963 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.327927113 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.328221083 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.328291893 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.328336954 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.372147083 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.374918938 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.799230099 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.799494982 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.799523115 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.802768946 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.802848101 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.803255081 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.803334951 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.803441048 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.803455114 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.832989931 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.833148003 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.833210945 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.833220005 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.833276033 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.833997965 CEST | 49711 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.834028006 CEST | 443 | 49711 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.837146997 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.837188959 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.837256908 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.837480068 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.837497950 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:09.852901936 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:09.883884907 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:09.883959055 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:09.884052992 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:09.884224892 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:09.884258986 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.223798037 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.224731922 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:10.224812031 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.226336002 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.226443052 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:10.227479935 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:10.227576971 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.269931078 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:10.269954920 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:10.305344105 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.305510998 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.305566072 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.305588961 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.305644989 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.305706978 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.306088924 CEST | 49713 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.306113005 CEST | 443 | 49713 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.317936897 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:10.352612972 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.352863073 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.352880955 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.353205919 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.353492022 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.353554964 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.353600025 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.396959066 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.396971941 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.859850883 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.860037088 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.860095024 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:10.860124111 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.860150099 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.860790968 CEST | 49714 | 443 | 192.168.2.16 | 137.208.57.37 |
Apr 26, 2024 02:12:10.860810995 CEST | 443 | 49714 | 137.208.57.37 | 192.168.2.16 |
Apr 26, 2024 02:12:11.959589005 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:12.262917042 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:12.866940975 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:14.074928999 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:14.142730951 CEST | 49689 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:16.479932070 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:18.298877001 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.298913956 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.299015045 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.300739050 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.300751925 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.596307039 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.596415997 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.601373911 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.601381063 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.601814985 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.652937889 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.653636932 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.700129986 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.857640028 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.857738018 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.857791901 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.857892036 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.857908964 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.857918978 CEST | 49719 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.857923985 CEST | 443 | 49719 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.896307945 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.896353960 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:18.896440983 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.896780968 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:18.896794081 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.179493904 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.179646015 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.181581020 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.181616068 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.184231043 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.185410976 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.232152939 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.460273027 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.460454941 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.460521936 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.461333036 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.461355925 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.461371899 CEST | 49720 | 443 | 192.168.2.16 | 23.63.206.91 |
Apr 26, 2024 02:12:19.461379051 CEST | 443 | 49720 | 23.63.206.91 | 192.168.2.16 |
Apr 26, 2024 02:12:19.690220118 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:19.690270901 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:19.690350056 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:19.691997051 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:19.692029953 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.137379885 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:20.194195986 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:20.194364071 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:20.194531918 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:20.198827982 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.198940992 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.203305006 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.203336954 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.203753948 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.248927116 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.253938913 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.296125889 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.440965891 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:20.665709019 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665740013 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665750980 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665765047 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665791988 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665837049 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.665879011 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665911913 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.665916920 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665941954 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.665951967 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.665996075 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.680490971 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.680526018 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:20.680542946 CEST | 49721 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:20.680552006 CEST | 443 | 49721 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:21.048948050 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:21.209671021 CEST | 49715 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:12:21.209734917 CEST | 443 | 49715 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:12:21.287981033 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:22.262938976 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:24.596076965 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:24.675951004 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:24.899960041 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:25.506964922 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:26.720974922 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:29.123157978 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:29.490032911 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:30.891993046 CEST | 49673 | 443 | 192.168.2.16 | 204.79.197.203 |
Apr 26, 2024 02:12:33.929105997 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:39.101152897 CEST | 49678 | 443 | 192.168.2.16 | 20.189.173.10 |
Apr 26, 2024 02:12:43.542993069 CEST | 49680 | 80 | 192.168.2.16 | 192.229.211.108 |
Apr 26, 2024 02:12:55.911781073 CEST | 80 | 49698 | 208.111.136.128 | 192.168.2.16 |
Apr 26, 2024 02:12:55.911916018 CEST | 49698 | 80 | 192.168.2.16 | 208.111.136.128 |
Apr 26, 2024 02:12:55.911953926 CEST | 49698 | 80 | 192.168.2.16 | 208.111.136.128 |
Apr 26, 2024 02:12:56.037940979 CEST | 80 | 49698 | 208.111.136.128 | 192.168.2.16 |
Apr 26, 2024 02:12:56.176198959 CEST | 49699 | 80 | 192.168.2.16 | 208.111.136.128 |
Apr 26, 2024 02:12:56.215357065 CEST | 80 | 49699 | 208.111.136.128 | 192.168.2.16 |
Apr 26, 2024 02:12:56.215466022 CEST | 49699 | 80 | 192.168.2.16 | 208.111.136.128 |
Apr 26, 2024 02:12:56.302300930 CEST | 80 | 49699 | 208.111.136.128 | 192.168.2.16 |
Apr 26, 2024 02:12:57.202378035 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.202406883 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:57.202542067 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.203686953 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.203701019 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:57.703100920 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:57.703279972 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.704972982 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.704979897 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:57.705372095 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:57.707142115 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:57.748137951 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.182642937 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.182702065 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.182748079 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.182789087 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.182806969 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.182832956 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.182852030 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.182961941 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.183042049 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.183043003 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.183084011 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.183132887 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.183139086 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.183187008 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.183244944 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.186197996 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.186214924 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:12:58.186225891 CEST | 49722 | 443 | 192.168.2.16 | 13.85.23.86 |
Apr 26, 2024 02:12:58.186230898 CEST | 443 | 49722 | 13.85.23.86 | 192.168.2.16 |
Apr 26, 2024 02:13:09.816170931 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:09.816211939 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:09.816317081 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:09.816519022 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:09.816534996 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:10.147845030 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:10.148149014 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:10.148183107 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:10.149288893 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:10.149584055 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:10.149761915 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:10.197041988 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:14.246140003 CEST | 49688 | 443 | 192.168.2.16 | 204.79.197.200 |
Apr 26, 2024 02:13:20.137381077 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:20.137542963 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Apr 26, 2024 02:13:20.137622118 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:21.203679085 CEST | 49724 | 443 | 192.168.2.16 | 172.217.2.196 |
Apr 26, 2024 02:13:21.203738928 CEST | 443 | 49724 | 172.217.2.196 | 192.168.2.16 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 26, 2024 02:12:04.972935915 CEST | 56542 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:04.973083973 CEST | 54313 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:05.096564054 CEST | 53 | 60195 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:05.099644899 CEST | 53 | 56265 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:05.717750072 CEST | 53 | 54313 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:05.718018055 CEST | 53 | 56542 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:05.934927940 CEST | 53 | 51363 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:08.812151909 CEST | 62543 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:08.812310934 CEST | 64117 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:09.221491098 CEST | 53 | 62543 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:09.300462961 CEST | 53 | 64117 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:09.757740021 CEST | 62444 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:09.757880926 CEST | 52939 | 53 | 192.168.2.16 | 1.1.1.1 |
Apr 26, 2024 02:12:09.882919073 CEST | 53 | 62444 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:09.883128881 CEST | 53 | 52939 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:22.950391054 CEST | 53 | 64807 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:12:41.848062038 CEST | 53 | 58729 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:13:04.884202003 CEST | 53 | 55552 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:13:05.045371056 CEST | 53 | 49452 | 1.1.1.1 | 192.168.2.16 |
Apr 26, 2024 02:13:16.303236008 CEST | 138 | 138 | 192.168.2.16 | 192.168.2.255 |
Apr 26, 2024 02:13:32.610099077 CEST | 53 | 64514 | 1.1.1.1 | 192.168.2.16 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 26, 2024 02:12:09.300553083 CEST | 192.168.2.16 | 1.1.1.1 | c248 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 26, 2024 02:12:04.972935915 CEST | 192.168.2.16 | 1.1.1.1 | 0xd739 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 02:12:04.973083973 CEST | 192.168.2.16 | 1.1.1.1 | 0x213b | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 26, 2024 02:12:08.812151909 CEST | 192.168.2.16 | 1.1.1.1 | 0xcc8a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 02:12:08.812310934 CEST | 192.168.2.16 | 1.1.1.1 | 0x5ed8 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 26, 2024 02:12:09.757740021 CEST | 192.168.2.16 | 1.1.1.1 | 0x6476 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 26, 2024 02:12:09.757880926 CEST | 192.168.2.16 | 1.1.1.1 | 0xe9af | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 26, 2024 02:12:05.717750072 CEST | 1.1.1.1 | 192.168.2.16 | 0x213b | No error (0) | cran.wu-wien.ac.at | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:05.718018055 CEST | 1.1.1.1 | 192.168.2.16 | 0xd739 | No error (0) | cran.wu-wien.ac.at | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:05.718018055 CEST | 1.1.1.1 | 192.168.2.16 | 0xd739 | No error (0) | 137.208.57.37 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:09.221491098 CEST | 1.1.1.1 | 192.168.2.16 | 0xcc8a | No error (0) | cran.wu-wien.ac.at | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:09.221491098 CEST | 1.1.1.1 | 192.168.2.16 | 0xcc8a | No error (0) | 137.208.57.37 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:09.300462961 CEST | 1.1.1.1 | 192.168.2.16 | 0x5ed8 | No error (0) | cran.wu-wien.ac.at | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:09.882919073 CEST | 1.1.1.1 | 192.168.2.16 | 0x6476 | No error (0) | 172.217.2.196 | A (IP address) | IN (0x0001) | false | ||
Apr 26, 2024 02:12:09.883128881 CEST | 1.1.1.1 | 192.168.2.16 | 0xe9af | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.16 | 49704 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:06 UTC | 661 | OUT | |
2024-04-26 00:12:06 UTC | 255 | IN | |
2024-04-26 00:12:06 UTC | 866 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.16 | 49703 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:06 UTC | 540 | OUT | |
2024-04-26 00:12:06 UTC | 255 | IN | |
2024-04-26 00:12:06 UTC | 1335 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.16 | 49705 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:07 UTC | 692 | OUT | |
2024-04-26 00:12:07 UTC | 255 | IN | |
2024-04-26 00:12:07 UTC | 300 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.16 | 49707 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:07 UTC | 694 | OUT | |
2024-04-26 00:12:07 UTC | 256 | IN | |
2024-04-26 00:12:07 UTC | 1422 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.16 | 49706 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:07 UTC | 695 | OUT | |
2024-04-26 00:12:07 UTC | 189 | IN | |
2024-04-26 00:12:07 UTC | 6 | IN | |
2024-04-26 00:12:07 UTC | 5534 | IN | |
2024-04-26 00:12:07 UTC | 2 | IN | |
2024-04-26 00:12:07 UTC | 247 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.16 | 49709 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:08 UTC | 599 | OUT | |
2024-04-26 00:12:08 UTC | 237 | IN | |
2024-04-26 00:12:08 UTC | 2693 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.16 | 49711 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:09 UTC | 592 | OUT | |
2024-04-26 00:12:09 UTC | 249 | IN | |
2024-04-26 00:12:09 UTC | 5430 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.16 | 49713 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:09 UTC | 351 | OUT | |
2024-04-26 00:12:10 UTC | 237 | IN | |
2024-04-26 00:12:10 UTC | 2693 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.16 | 49714 | 137.208.57.37 | 443 | 6192 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:10 UTC | 353 | OUT | |
2024-04-26 00:12:10 UTC | 249 | IN | |
2024-04-26 00:12:10 UTC | 5430 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.16 | 49719 | 23.63.206.91 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:18 UTC | 161 | OUT | |
2024-04-26 00:12:18 UTC | 467 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.16 | 49720 | 23.63.206.91 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:19 UTC | 239 | OUT | |
2024-04-26 00:12:19 UTC | 531 | IN | |
2024-04-26 00:12:19 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.16 | 49721 | 13.85.23.86 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:20 UTC | 306 | OUT | |
2024-04-26 00:12:20 UTC | 560 | IN | |
2024-04-26 00:12:20 UTC | 15824 | IN | |
2024-04-26 00:12:20 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.16 | 49722 | 13.85.23.86 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-26 00:12:57 UTC | 306 | OUT | |
2024-04-26 00:12:58 UTC | 560 | IN | |
2024-04-26 00:12:58 UTC | 15824 | IN | |
2024-04-26 00:12:58 UTC | 9633 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 02:12:03 |
Start date: | 26/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 02:12:03 |
Start date: | 26/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7f9810000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |