Windows
Analysis Report
http://rapidcdn.cc
Overview
Detection
Score: | 1 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 80% |
Signatures
Classification
- System is w10x64
- chrome.exe (PID: 5840 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed "about :blank" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 2000 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2136 --fi eld-trial- handle=198 0,i,403935 5249147773 185,187038 5400972821 885,262144 --disable -features= Optimizati onGuideMod elDownload ing,Optimi zationHint s,Optimiza tionHintsF etching,Op timization TargetPred iction /pr efetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 1520 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --st art-maximi zed --sing le-argumen t http://2 4920850606 5339175713 0653436826 2033923223 2032338309 3403644966 8026160985 3560675097 8510306553 4120013181 7362917853 3777592003 9000160515 4889513680 0267487876 30195/ MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4) - chrome.exe (PID: 4052 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --mojo-pla tform-chan nel-handle =2128 --fi eld-trial- handle=196 0,i,129018 8069160008 7831,16812 8409242335 24457,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction / prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- chrome.exe (PID: 5032 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://rapidc dn.cc" MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
- cleanup
Click to jump to signature section
There are no malicious signatures, click here to show all signatures.
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: | ||
Source: | LNK file: |
Source: | Window detected: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | 1 Registry Run Keys / Startup Folder | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | 1 Registry Run Keys / Startup Folder | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 5 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
2% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
2% | Virustotal | Browse |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
a.nel.cloudflare.com | 35.190.80.1 | true | false | high | |
rapidcdn.cc | 172.67.176.246 | true | false |
| unknown |
www.google.com | 172.217.0.164 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high | ||
false |
| unknown | |
false | high | ||
false | high | ||
false | high | ||
false | unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
239.255.255.250 | unknown | Reserved | unknown | unknown | false | |
35.190.80.1 | a.nel.cloudflare.com | United States | 15169 | GOOGLEUS | false | |
172.217.0.164 | www.google.com | United States | 15169 | GOOGLEUS | false | |
172.67.176.246 | rapidcdn.cc | United States | 13335 | CLOUDFLARENETUS | false |
IP |
---|
192.168.2.16 |
192.168.2.5 |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1433159 |
Start date and time: | 2024-04-29 10:07:42 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 20s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://rapidcdn.cc |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 9 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | CLEAN |
Classification: | clean1.win@24/10@10/6 |
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.191.227, 142.250.191.238, 142.251.165.84, 34.104.35.123, 199.232.210.172, 199.232.214.172, 192.229.211.108, 142.250.190.67, 23.214.97.58, 142.250.190.78
- Excluded domains from analysis (whitelisted): clients1.google.com, fs.microsoft.com, clients2.google.com, ocsp.digicert.com, accounts.google.com, edgedl.me.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtSetInformationFile calls found.
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2677 |
Entropy (8bit): | 3.9769764480924064 |
Encrypted: | false |
SSDEEP: | 48:8CdUTYA7cHRidAKZdA19ehwiZUklqehSy+3:8x37uFy |
MD5: | B2EF2E2868DDBD41C5F772920C8F26E9 |
SHA1: | D2EEDA9EE074E3EC3773B571B3080FC32CBC3EE1 |
SHA-256: | 2876193F656EFF092A7B1E3E9EA0F04D24F44040E005F908AC88300B30EEBCE2 |
SHA-512: | 5D4EADDDEF3A8BCCFDD93B292F2E00A0023CAA4855EF71CE97DD5C96A8065EA0E8793457AB4EBFE0DA843F987C44F558D9B1F9D32C51F181C80748134CCABE4A |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2679 |
Entropy (8bit): | 3.9951535581084867 |
Encrypted: | false |
SSDEEP: | 48:8KdUTYA7cHRidAKZdA1weh/iZUkAQkqeh1y+2:8537s9QQy |
MD5: | 1373F8D408CA9DBD54EFD7F9FBC4EF84 |
SHA1: | 017ED7488CC786A0F301C5D2AECF341420667C27 |
SHA-256: | F98211711FBB0DC604079DDCC52D3F50D2E2DBB7F1C47364C8D00A351AE753EE |
SHA-512: | 7EE00976F6DC097ABA1792446B82F70D4F05ADE977FCB81C1EE9494FC840EB02D83A2F5CAD736146583E38890715998885A566DE5CE114AD7668DED0AA772774 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2693 |
Entropy (8bit): | 4.007765428861563 |
Encrypted: | false |
SSDEEP: | 48:8xZdUTYAsHRidAKZdA14tseh7sFiZUkmgqeh7sry+BX:8xg3Unxy |
MD5: | 82DF674373927E4D4C62688B565C5047 |
SHA1: | 810668F1AC13D25208A98A7ECB4D90DE74459D2D |
SHA-256: | 3A3B4AEDCF70D33C85894B309E1C0EB554D6022993EA74EAEF587767004B113B |
SHA-512: | 384A0722911C08B45627ABD50521841F78FDCA2EA67717BDDA97F562B223B2E631DDFB97A6D190DE8643F11EA7677B0F39374E111CD0FE88EA786218311F9127 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.9929699573813653 |
Encrypted: | false |
SSDEEP: | 48:8adUTYA7cHRidAKZdA1vehDiZUkwqehJy+R:8J37Xjy |
MD5: | FE55855568EFE90493B15A6697A6CEEC |
SHA1: | 402C022FBE473ACC9F7328DA55132D5597EC6705 |
SHA-256: | 85DFA55EA3CFB13933A15883B27F532449CDD16C0310C98421F8E3B5920BF2A6 |
SHA-512: | ECBDA88B8849DEF2FCD32762E4FBF564B3DD31CFADE3E532FAB09F39F7B406CB7F2F97D725590F4AC7D4677AB48A3DC229BB609C16A0D1C6140F07ED4CF207D7 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2681 |
Entropy (8bit): | 3.983935946880112 |
Encrypted: | false |
SSDEEP: | 48:8GdUTYA7cHRidAKZdA1hehBiZUk1W1qehHy+C:8V37n9ny |
MD5: | 67CFDFD1689B33BB9E9E3FECD2FD6547 |
SHA1: | E204B834E7BB5BD8F0527BFD6612058ED827A455 |
SHA-256: | 349FCF41252D52CABFC314061786D4E8C3294F104E02321A3CE14331B5790EE9 |
SHA-512: | B499733F698C48A4EAE7A5BB85862C1AA191D65E2FCE0AE911B8BA2553E9E174434573DBA2D9897F6A953C30478E75031668598C10D7788D058FE8A1294819D5 |
Malicious: | false |
Reputation: | low |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Download File
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2683 |
Entropy (8bit): | 3.9911210597196796 |
Encrypted: | false |
SSDEEP: | 48:8JdUTYA7cHRidAKZdA1duT+ehOuTbbiZUk5OjqehOuTbxy+yT+:8Q37vT/TbxWOvTbxy7T |
MD5: | 0CF9284FECE867563F8B475A40E2B76B |
SHA1: | 983D10254EC4295C65DC456021A40AB39418676A |
SHA-256: | 9A7D22E0FEC8542453D80D3C1F6FED400E7D7B008D5CE0302FD2166A3A47F857 |
SHA-512: | C8F1D4A5F6212FB440896FC0919B029C897B19C730CA2DFEFAE922D6D1B381D2A98BBB23A91FE16858E17BB09AD31475B337D83819CFB2655F3ED3DE42173E8A |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 3724 |
Entropy (8bit): | 5.823977175722335 |
Encrypted: | false |
SSDEEP: | 96:IIYxgliC/vuXH6666VDc8j6dIoqqy0OZ8idoqjxaK8TJdka9ZQffffo:IIeWpaH6666VDaWoqqZOZ8SJjxatN+af |
MD5: | 938C83989568C5B4663D84EBF079F3AD |
SHA1: | D3F6A006BADC722B2F88B63DB8B232B3B73612EF |
SHA-256: | 739820DC55E235CE03BB36DB9D0AE436E3D05240772DBE72E2E5BBF89A5AF15D |
SHA-512: | BA306376A941E5ED6061E8621BB10BFEF25A00665E8A37C0FE684AAFC3097C57934558C6CD444712295B7758D5A3ED65908C25D826432F69F97895B4D087865B |
Malicious: | false |
Reputation: | low |
URL: | https://www.google.com/complete/search?client=chrome-omni&gs_ri=chrome-ext-ansg&xssi=t&q=&oit=0&oft=1&pgcl=20&gs_rn=42&sugkey=AIzaSyBOti4mM-6x9WDnZIjIeyEU21OpBXqWBgw |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 146 |
Entropy (8bit): | 4.37067366523352 |
Encrypted: | false |
SSDEEP: | 3:qVoB3tUROngsoMHXboAcMBXqWsMgs0U9ClIVLLP61IwcWWGu:q43tIigsoCXiMIWDgs01lI5LP8IpfGu |
MD5: | 9FE3CB2B7313DC79BB477BC8FDE184A7 |
SHA1: | 4D7B3CB41E90618358D0EE066C45C76227A13747 |
SHA-256: | 32F2FA940D4B4FE19ACA1E53A24E5AAC29C57B7C5EE78588325B87F1B649C864 |
SHA-512: | C54AD4F5292784E50B4830A8210B0D4D4EE08B803F4975C9859E637D483B3AF38CB0436AC501DEA0C73867B1A2C41B39EF2C27DC3FB20F3F27519B719EA743DB |
Malicious: | false |
Reputation: | low |
URL: | https://rapidcdn.cc/ |
Preview: |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 29, 2024 10:08:24.355155945 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:24.355165005 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:24.464540958 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:32.171900034 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.171950102 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.172096968 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.172139883 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.172173023 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.172203064 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.172398090 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.172418118 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.172772884 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.172794104 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.230022907 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.230042934 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.230098963 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.230452061 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.230460882 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.237433910 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.237457991 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.237539053 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.238075972 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.238086939 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.408493042 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.418299913 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.448446989 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.448472023 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.448810101 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.448841095 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.449476957 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.449549913 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.453879118 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.453974009 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.454144001 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.454241991 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.455522060 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.455539942 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.455802917 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.455890894 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.456130028 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.456145048 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.461710930 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.471364975 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.492189884 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.492197037 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.493069887 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.493158102 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.493855953 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.493875027 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.494503975 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.494556904 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.494820118 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.494824886 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.495539904 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.495601892 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.499814987 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.499922991 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.505835056 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.505899906 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.555061102 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.613234997 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.613250017 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658304930 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658335924 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658359051 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658376932 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658385038 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.658427000 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.658447027 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.664515018 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.664565086 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.664676905 CEST | 49708 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:32.664695978 CEST | 443 | 49708 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:32.759990931 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.070554972 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.070626020 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.070650101 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.070664883 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.070704937 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.096405983 CEST | 49707 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.096445084 CEST | 443 | 49707 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.098968029 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.144114017 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.147233963 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.147303104 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.147316933 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.147332907 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.147373915 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.148550034 CEST | 49709 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.148560047 CEST | 443 | 49709 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.151819944 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.151846886 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.151920080 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.152199984 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.152210951 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.221210003 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.221275091 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.221322060 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.221333027 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.221426964 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.221479893 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.222171068 CEST | 49710 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.222177982 CEST | 443 | 49710 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.390470982 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.391103983 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.391119003 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.392241001 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.393600941 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.393774986 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.394169092 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.436137915 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.625154972 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.625288963 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.625339985 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:33.625354052 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.625562906 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:33.625624895 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:34.055811882 CEST | 49674 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:34.101804972 CEST | 49675 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:34.104249001 CEST | 49673 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:35.443721056 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:35.443811893 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:35.812463999 CEST | 49713 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:35.812498093 CEST | 443 | 49713 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.046753883 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:36.046789885 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.046860933 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:36.049141884 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:36.049155951 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.284784079 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.304883957 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:36.304907084 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.306011915 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.348028898 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:36.348261118 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:36.410033941 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:42.119796038 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.119837999 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.119913101 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.122298956 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.122313976 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.350938082 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.351015091 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.356622934 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.356650114 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.356894016 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.488338947 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.532120943 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.600303888 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.600373030 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.600430012 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.634963989 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.634963989 CEST | 49717 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.634999037 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.635014057 CEST | 443 | 49717 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.730689049 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.730736017 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.730832100 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.731203079 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.731215000 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.956335068 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.956415892 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.968621969 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:42.968637943 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.968843937 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:42.970290899 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:43.012154102 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:43.177289009 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:43.177380085 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:43.177423000 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:43.178778887 CEST | 49718 | 443 | 192.168.2.5 | 23.11.208.106 |
Apr 29, 2024 10:08:43.178796053 CEST | 443 | 49718 | 23.11.208.106 | 192.168.2.5 |
Apr 29, 2024 10:08:44.561028957 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:44.561080933 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:44.561187029 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:44.562350035 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:44.562374115 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:44.963176966 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:44.963243961 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:44.966114044 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:44.966126919 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:44.966336012 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.019452095 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.425076962 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.468137026 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.655942917 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:45.656131983 CEST | 49703 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:45.656580925 CEST | 49724 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:45.656646013 CEST | 443 | 49724 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:45.656766891 CEST | 49724 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:45.657221079 CEST | 49724 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:45.657253981 CEST | 443 | 49724 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684700966 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684719086 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684726000 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684751987 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684770107 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684782028 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684797049 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.684818983 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684835911 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684851885 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.684895039 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.684895039 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.684904099 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.684916019 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.685046911 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.813026905 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:45.813102961 CEST | 443 | 49703 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:45.943048954 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.943070889 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.943083048 CEST | 49719 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:08:45.943089962 CEST | 443 | 49719 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:08:45.969122887 CEST | 443 | 49724 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:08:45.969191074 CEST | 49724 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:08:46.282751083 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:46.282902956 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:46.282963037 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:46.740725994 CEST | 49714 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:08:46.740741014 CEST | 443 | 49714 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:08:59.604003906 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.604098082 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.604188919 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.605174065 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.605210066 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.838716984 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.839118958 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.839199066 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.840079069 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.840225935 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.845155001 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.845264912 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.845383883 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:08:59.845417023 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:08:59.885061979 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.387896061 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.388266087 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.388350010 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.441292048 CEST | 49727 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.441327095 CEST | 443 | 49727 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.515799046 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.515877962 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.515952110 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.516235113 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.516266108 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.516318083 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.516580105 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.516613960 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.516720057 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.516732931 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.744173050 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.744415998 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.744426966 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.745291948 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.745383024 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.746295929 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.746337891 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.746479034 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.746484995 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.750591040 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.750869036 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.750909090 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.752060890 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.752377033 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.752510071 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.752522945 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.752566099 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:00.786523104 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.801809072 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:00.976332903 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.976396084 CEST | 443 | 49729 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.976725101 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.976725101 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.976746082 CEST | 49729 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.977394104 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.977432013 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.977632999 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.977798939 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:00.977808952 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.156696081 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.156838894 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.157134056 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.162062883 CEST | 49728 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.162085056 CEST | 443 | 49728 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.201316118 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.201618910 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.201647997 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.201947927 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.202378988 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.202378988 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.202399969 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.202464104 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.256310940 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.278508902 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.278589010 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.279454947 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.282203913 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.282241106 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.436681032 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.436758995 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.436913013 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.437000036 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.437016010 CEST | 443 | 49730 | 35.190.80.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.437047005 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.437148094 CEST | 49730 | 443 | 192.168.2.5 | 35.190.80.1 |
Apr 29, 2024 10:09:01.515012980 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.515266895 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.515307903 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.516396046 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.516463995 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.516813993 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.516881943 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.516953945 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.564119101 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.567015886 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.567044020 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.613789082 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:01.782469034 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.782630920 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:01.782783031 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:02.951668978 CEST | 49731 | 443 | 192.168.2.5 | 172.67.176.246 |
Apr 29, 2024 10:09:02.951761007 CEST | 443 | 49731 | 172.67.176.246 | 192.168.2.5 |
Apr 29, 2024 10:09:05.116446018 CEST | 443 | 49724 | 23.1.237.91 | 192.168.2.5 |
Apr 29, 2024 10:09:05.116543055 CEST | 49724 | 443 | 192.168.2.5 | 23.1.237.91 |
Apr 29, 2024 10:09:23.609081030 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:23.609179020 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:23.609266043 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:23.609695911 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:23.609730959 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.016349077 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.016522884 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.020742893 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.020791054 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.021018982 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.032479048 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.076142073 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404450893 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404476881 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404541016 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404587030 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.404669046 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404706001 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.404735088 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.404782057 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.404782057 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.408838034 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.408838034 CEST | 49732 | 443 | 192.168.2.5 | 52.165.165.26 |
Apr 29, 2024 10:09:24.408881903 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:24.408907890 CEST | 443 | 49732 | 52.165.165.26 | 192.168.2.5 |
Apr 29, 2024 10:09:35.302690983 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:35.302788973 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.302877903 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:35.303168058 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:35.303195953 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.542505026 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.542947054 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:35.542995930 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.544080019 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.545135021 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:35.545205116 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:35.598582983 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:45.542376041 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:45.542445898 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Apr 29, 2024 10:09:45.542510986 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:46.742688894 CEST | 49734 | 443 | 192.168.2.5 | 172.217.0.164 |
Apr 29, 2024 10:09:46.742750883 CEST | 443 | 49734 | 172.217.0.164 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 29, 2024 10:08:31.650310993 CEST | 53 | 55614 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:31.666027069 CEST | 53 | 65028 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:32.060802937 CEST | 60763 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:32.060983896 CEST | 59596 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:32.170866966 CEST | 53 | 60763 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:32.170991898 CEST | 53 | 59596 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:32.604665041 CEST | 53 | 49807 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:51.821976900 CEST | 53 | 60874 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:59.247198105 CEST | 54823 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:59.247679949 CEST | 51540 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:59.358089924 CEST | 53 | 54823 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:59.358486891 CEST | 53 | 51540 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:59.397811890 CEST | 52267 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:59.398196936 CEST | 49926 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:08:59.508470058 CEST | 53 | 52267 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:08:59.509401083 CEST | 53 | 49926 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.404452085 CEST | 55170 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:09:00.404934883 CEST | 54891 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:09:00.515108109 CEST | 53 | 54891 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:00.515402079 CEST | 53 | 55170 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.162066936 CEST | 62935 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:09:01.163256884 CEST | 55871 | 53 | 192.168.2.5 | 1.1.1.1 |
Apr 29, 2024 10:09:01.272715092 CEST | 53 | 62935 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:01.274800062 CEST | 53 | 55871 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:11.460618973 CEST | 53 | 59573 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:31.050241947 CEST | 53 | 62398 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:34.431406975 CEST | 53 | 53885 | 1.1.1.1 | 192.168.2.5 |
Apr 29, 2024 10:09:59.632520914 CEST | 53 | 58214 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 29, 2024 10:08:32.060802937 CEST | 192.168.2.5 | 1.1.1.1 | 0x4f10 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 29, 2024 10:08:32.060983896 CEST | 192.168.2.5 | 1.1.1.1 | 0x3100 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 29, 2024 10:08:59.247198105 CEST | 192.168.2.5 | 1.1.1.1 | 0x69b6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 29, 2024 10:08:59.247679949 CEST | 192.168.2.5 | 1.1.1.1 | 0x83ea | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 29, 2024 10:08:59.397811890 CEST | 192.168.2.5 | 1.1.1.1 | 0x908e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 29, 2024 10:08:59.398196936 CEST | 192.168.2.5 | 1.1.1.1 | 0xe562 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 29, 2024 10:09:00.404452085 CEST | 192.168.2.5 | 1.1.1.1 | 0x4bcc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 29, 2024 10:09:00.404934883 CEST | 192.168.2.5 | 1.1.1.1 | 0xbd1e | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 29, 2024 10:09:01.162066936 CEST | 192.168.2.5 | 1.1.1.1 | 0xb36 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 29, 2024 10:09:01.163256884 CEST | 192.168.2.5 | 1.1.1.1 | 0x1891 | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 29, 2024 10:08:32.170866966 CEST | 1.1.1.1 | 192.168.2.5 | 0x4f10 | No error (0) | 172.217.0.164 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:08:32.170991898 CEST | 1.1.1.1 | 192.168.2.5 | 0x3100 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 29, 2024 10:08:59.358089924 CEST | 1.1.1.1 | 192.168.2.5 | 0x69b6 | No error (0) | 172.67.176.246 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:08:59.358089924 CEST | 1.1.1.1 | 192.168.2.5 | 0x69b6 | No error (0) | 104.21.43.82 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:08:59.358486891 CEST | 1.1.1.1 | 192.168.2.5 | 0x83ea | No error (0) | 65 | IN (0x0001) | false | |||
Apr 29, 2024 10:08:59.508470058 CEST | 1.1.1.1 | 192.168.2.5 | 0x908e | No error (0) | 172.67.176.246 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:08:59.508470058 CEST | 1.1.1.1 | 192.168.2.5 | 0x908e | No error (0) | 104.21.43.82 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:08:59.509401083 CEST | 1.1.1.1 | 192.168.2.5 | 0xe562 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 29, 2024 10:09:00.515402079 CEST | 1.1.1.1 | 192.168.2.5 | 0x4bcc | No error (0) | 35.190.80.1 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:09:01.272715092 CEST | 1.1.1.1 | 192.168.2.5 | 0xb36 | No error (0) | 172.67.176.246 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:09:01.272715092 CEST | 1.1.1.1 | 192.168.2.5 | 0xb36 | No error (0) | 104.21.43.82 | A (IP address) | IN (0x0001) | false | ||
Apr 29, 2024 10:09:01.274800062 CEST | 1.1.1.1 | 192.168.2.5 | 0x1891 | No error (0) | 65 | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49708 | 172.217.0.164 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:32 UTC | 623 | OUT | |
2024-04-29 08:08:32 UTC | 1703 | IN | |
2024-04-29 08:08:32 UTC | 1703 | IN | |
2024-04-29 08:08:32 UTC | 1703 | IN | |
2024-04-29 08:08:32 UTC | 325 | IN | |
2024-04-29 08:08:32 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49707 | 172.217.0.164 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:32 UTC | 526 | OUT | |
2024-04-29 08:08:33 UTC | 1842 | IN | |
2024-04-29 08:08:33 UTC | 458 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49709 | 172.217.0.164 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:32 UTC | 353 | OUT | |
2024-04-29 08:08:33 UTC | 1760 | IN | |
2024-04-29 08:08:33 UTC | 417 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49710 | 172.217.0.164 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:33 UTC | 928 | OUT | |
2024-04-29 08:08:33 UTC | 356 | IN | |
2024-04-29 08:08:33 UTC | 899 | IN | |
2024-04-29 08:08:33 UTC | 1255 | IN | |
2024-04-29 08:08:33 UTC | 1029 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49713 | 172.217.0.164 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:33 UTC | 738 | OUT | |
2024-04-29 08:08:33 UTC | 356 | IN | |
2024-04-29 08:08:33 UTC | 899 | IN | |
2024-04-29 08:08:33 UTC | 1255 | IN | |
2024-04-29 08:08:33 UTC | 957 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49717 | 23.11.208.106 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:42 UTC | 161 | OUT | |
2024-04-29 08:08:42 UTC | 466 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49718 | 23.11.208.106 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:42 UTC | 239 | OUT | |
2024-04-29 08:08:43 UTC | 530 | IN | |
2024-04-29 08:08:43 UTC | 55 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49719 | 52.165.165.26 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:45 UTC | 306 | OUT | |
2024-04-29 08:08:45 UTC | 560 | IN | |
2024-04-29 08:08:45 UTC | 15824 | IN | |
2024-04-29 08:08:45 UTC | 8666 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49727 | 172.67.176.246 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:08:59 UTC | 654 | OUT | |
2024-04-29 08:09:00 UTC | 566 | IN | |
2024-04-29 08:09:00 UTC | 152 | IN | |
2024-04-29 08:09:00 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49729 | 35.190.80.1 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:09:00 UTC | 532 | OUT | |
2024-04-29 08:09:00 UTC | 336 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49728 | 172.67.176.246 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:09:00 UTC | 578 | OUT | |
2024-04-29 08:09:01 UTC | 643 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 49730 | 35.190.80.1 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:09:01 UTC | 478 | OUT | |
2024-04-29 08:09:01 UTC | 383 | OUT | |
2024-04-29 08:09:01 UTC | 168 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 49731 | 172.67.176.246 | 443 | 2000 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:09:01 UTC | 346 | OUT | |
2024-04-29 08:09:01 UTC | 657 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.5 | 49732 | 52.165.165.26 | 443 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-04-29 08:09:24 UTC | 306 | OUT | |
2024-04-29 08:09:24 UTC | 560 | IN | |
2024-04-29 08:09:24 UTC | 15824 | IN | |
2024-04-29 08:09:24 UTC | 9633 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 0 |
Start time: | 10:08:24 |
Start date: | 29/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 1 |
Start time: | 10:08:29 |
Start date: | 29/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 10:08:30 |
Start date: | 29/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 4 |
Start time: | 10:08:31 |
Start date: | 29/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 7 |
Start time: | 10:08:56 |
Start date: | 29/04/2024 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff715980000 |
File size: | 3'242'272 bytes |
MD5 hash: | 45DE480806D1B5D462A7DDE4DCEFC4E4 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |