Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20%D0%B3e%D0%A1%D0%90%D0%A0%D0%A2%D0%A1%D0%9D%D0%90%20Verification%20ID:%202482''

Overview

General Information

Sample URL:https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20%D0%B3e%D0%A1%D0%90%D0%A0%D0%A2%D0%A1%D0%9D%D0%90%20Verification%20ID:%202482''
Analysis ID:1640559
Infos:

Detection

Score:56
Range:0 - 100
Confidence:100%

Signatures

Antivirus / Scanner detection for submitted sample
Antivirus detection for URL or domain
Creates files inside the system directory
Deletes files inside the Windows folder

Classification

  • System is w10x64
  • chrome.exe (PID: 5800 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" MD5: E81F54E6C1129887AEA47E7D092680BF)
    • chrome.exe (PID: 5632 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2256,i,4543849367317179972,17137900220596633881,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2304 /prefetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
  • chrome.exe (PID: 6836 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20?e???????%20Verification%20ID:%202482''" MD5: E81F54E6C1129887AEA47E7D092680BF)
  • cleanup
No configs have been found
No yara matches
No Sigma rule has matched
No Suricata rule has matched

Click to jump to signature section

Show All Signature Results

AV Detection

barindex
Source: https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20e%20Verification%20ID:%202482''Avira URL Cloud: detection malicious, Label: malware
Source: https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20Avira URL Cloud: Label: malware
Source: unknownHTTPS traffic detected: 142.250.186.36:443 -> 192.168.2.6:49699 version: TLS 1.2
Source: unknownHTTPS traffic detected: 188.114.96.3:443 -> 192.168.2.6:49701 version: TLS 1.2
Source: unknownHTTPS traffic detected: 188.114.96.3:443 -> 192.168.2.6:49702 version: TLS 1.2
Source: unknownHTTPS traffic detected: 35.190.80.1:443 -> 192.168.2.6:49704 version: TLS 1.2
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 20.42.65.91
Source: unknownTCP traffic detected without corresponding DNS query: 2.19.96.112
Source: unknownTCP traffic detected without corresponding DNS query: 184.30.131.245
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.215
Source: unknownTCP traffic detected without corresponding DNS query: 2.23.227.215
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: global trafficHTTP traffic detected: GET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1Host: check.telavya8.icuConnection: keep-alivesec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: noneSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1Host: check.telavya8.icuConnection: keep-aliveCache-Control: max-age=0sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficHTTP traffic detected: GET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1Host: check.telavya8.icuConnection: keep-aliveCache-Control: max-age=0sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"Upgrade-Insecure-Requests: 1User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7Sec-Fetch-Site: cross-siteSec-Fetch-Mode: navigateSec-Fetch-User: ?1Sec-Fetch-Dest: documentAccept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: global trafficDNS traffic detected: DNS query: www.google.com
Source: global trafficDNS traffic detected: DNS query: check.telavya8.icu
Source: global trafficDNS traffic detected: DNS query: a.nel.cloudflare.com
Source: unknownHTTP traffic detected: POST /report/v4?s=niarAPWvwV2ZO2QYpl%2BQmVMyqHJQRVzVdhvKH0fMefpWl6t2mwiGKH%2Fr12cdgLO0M7n%2BpRaL1hAhijzSFEP%2BxEUsgZk%2BKxUO9v78ceQ2zMqiNsN6lhB8zYB693OE7YRzYd8j4oU%3D HTTP/1.1Host: a.nel.cloudflare.comConnection: keep-aliveContent-Length: 441Content-Type: application/reports+jsonOrigin: https://check.telavya8.icuUser-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36Accept-Encoding: gzip, deflate, br, zstdAccept-Language: en-US,en;q=0.9
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49699 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49672 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49681
Source: unknownNetwork traffic detected: HTTP traffic on port 49702 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49686 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49701 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49699
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 49707 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49707
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 49681 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49702
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49701
Source: unknownHTTPS traffic detected: 142.250.186.36:443 -> 192.168.2.6:49699 version: TLS 1.2
Source: unknownHTTPS traffic detected: 188.114.96.3:443 -> 192.168.2.6:49701 version: TLS 1.2
Source: unknownHTTPS traffic detected: 188.114.96.3:443 -> 192.168.2.6:49702 version: TLS 1.2
Source: unknownHTTPS traffic detected: 35.190.80.1:443 -> 192.168.2.6:49704 version: TLS 1.2
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Windows\SystemTemp\scoped_dir5800_1037555205Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile deleted: C:\Windows\SystemTemp\scoped_dir5800_1037555205Jump to behavior
Source: classification engineClassification label: mal56.win@26/0@6/4
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2256,i,4543849367317179972,17137900220596633881,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2304 /prefetch:3
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20?e???????%20Verification%20ID:%202482''"
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2256,i,4543849367317179972,17137900220596633881,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2304 /prefetch:3Jump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknownJump to behavior
Source: Window RecorderWindow detected: More than 3 window changes detected
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management InstrumentationPath Interception1
Process Injection
1
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System1
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization ScriptsBoot or Logon Initialization Scripts1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media3
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)Logon Script (Windows)1
File Deletion
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive4
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact
Employee NamesVirtual Private ServerLocal AccountsCronLogin HookLogin HookBinary PaddingNTDSSystem Network Configuration DiscoveryDistributed Component Object ModelInput Capture1
Ingress Tool Transfer
Traffic DuplicationData Destruction
Hide Legend

Legend:

  • Process
  • Signature
  • Created File
  • DNS/IP Info
  • Is Dropped
  • Is Windows Process
  • Number of created Registry Values
  • Number of created Files
  • Visual Basic
  • Delphi
  • Java
  • .Net C# or VB.NET
  • C, C++ or other language
  • Is malicious
  • Internet

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20e%20Verification%20ID:%202482''100%Avira URL Cloudmalware
No Antivirus matches
No Antivirus matches
No Antivirus matches
SourceDetectionScannerLabelLink
https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20100%Avira URL Cloudmalware
NameIPActiveMaliciousAntivirus DetectionReputation
check.telavya8.icu
188.114.96.3
truefalse
    high
    a.nel.cloudflare.com
    35.190.80.1
    truefalse
      high
      www.google.com
      142.250.186.36
      truefalse
        high
        NameMaliciousAntivirus DetectionReputation
        https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20false
        • Avira URL Cloud: malware
        unknown
        https://a.nel.cloudflare.com/report/v4?s=niarAPWvwV2ZO2QYpl%2BQmVMyqHJQRVzVdhvKH0fMefpWl6t2mwiGKH%2Fr12cdgLO0M7n%2BpRaL1hAhijzSFEP%2BxEUsgZk%2BKxUO9v78ceQ2zMqiNsN6lhB8zYB693OE7YRzYd8j4oU%3Dfalse
          high
          https://a.nel.cloudflare.com/report/v4?s=mJXCC9PlhkeFOIfuiBBIYbaEx0cbFH75ZyJdVV5d8AupYvVzU7NqmvozeKiUHBa5v96%2BdIkxfa8cp7gXLz%2FhNqtU5zP4ATOBqr93LP3t4QQkGuSkIX5Qdhw9Uqi57Dd1oipqXTo%3Dfalse
            high
            • No. of IPs < 25%
            • 25% < No. of IPs < 50%
            • 50% < No. of IPs < 75%
            • 75% < No. of IPs
            IPDomainCountryFlagASNASN NameMalicious
            142.250.186.36
            www.google.comUnited States
            15169GOOGLEUSfalse
            188.114.96.3
            check.telavya8.icuEuropean Union
            13335CLOUDFLARENETUSfalse
            35.190.80.1
            a.nel.cloudflare.comUnited States
            15169GOOGLEUSfalse
            IP
            192.168.2.6
            Joe Sandbox version:42.0.0 Malachite
            Analysis ID:1640559
            Start date and time:2025-03-17 12:59:32 +01:00
            Joe Sandbox product:CloudBasic
            Overall analysis duration:0h 3m 2s
            Hypervisor based Inspection enabled:false
            Report type:full
            Cookbook file name:browseurl.jbs
            Sample URL:https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20%D0%B3e%D0%A1%D0%90%D0%A0%D0%A2%D0%A1%D0%9D%D0%90%20Verification%20ID:%202482''
            Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
            Number of analysed new started processes analysed:15
            Number of new started drivers analysed:0
            Number of existing processes analysed:0
            Number of existing drivers analysed:0
            Number of injected processes analysed:0
            Technologies:
            • HCA enabled
            • EGA enabled
            • AMSI enabled
            Analysis Mode:default
            Analysis stop reason:Timeout
            Detection:MAL
            Classification:mal56.win@26/0@6/4
            EGA Information:Failed
            HCA Information:
            • Successful, ratio: 100%
            • Number of executed functions: 0
            • Number of non-executed functions: 0
            • Exclude process from analysis (whitelisted): MpCmdRun.exe, SIHClient.exe, SgrmBroker.exe, conhost.exe, svchost.exe
            • Excluded IPs from analysis (whitelisted): 172.217.16.206, 142.250.184.227, 142.250.186.142, 74.125.71.84, 142.250.186.78, 142.250.185.78, 199.232.214.172, 172.217.18.14, 142.250.185.174, 142.250.185.206, 142.250.185.110, 199.232.210.172, 142.250.186.67, 172.217.18.99, 142.250.186.46, 142.250.185.238, 23.199.214.10, 20.12.23.50
            • Excluded domains from analysis (whitelisted): fs.microsoft.com, clients2.google.com, edgedl.me.gvt1.com, accounts.google.com, redirector.gvt1.com, slscr.update.microsoft.com, update.googleapis.com, ctldl.windowsupdate.com, clientservices.googleapis.com, clients.l.google.com, fe3cr.delivery.mp.microsoft.com
            • Not all processes where analyzed, report is missing behavior information
            • Report size getting too big, too many NtOpenFile calls found.
            • VT rate limit hit for: https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20e%20Verification%20ID:%202482''
            No simulations
            No context
            No context
            No context
            No context
            No context
            No created / dropped files found
            No static file info
            TimestampSource PortDest PortSource IPDest IP
            Mar 17, 2025 13:00:24.554908991 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:24.869149923 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:25.481338024 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:26.697254896 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:29.105619907 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:31.300908089 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:31.300937891 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:31.301273108 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:31.301453114 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:31.301460981 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:31.940704107 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:31.940769911 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:31.941939116 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:31.941951990 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:31.942306995 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:31.994460106 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:32.926928043 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.926975965 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:32.927323103 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.927355051 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:32.927387953 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.927428007 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.927594900 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.927611113 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:32.927721977 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:32.927732944 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.122797012 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:33.387948990 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.388025999 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.393182039 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.393202066 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.393450022 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.393732071 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.405284882 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.405348063 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.405677080 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.405687094 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.405934095 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.425980091 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:33.436331987 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.449919939 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.729222059 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.729304075 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.729360104 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.730268002 CET49701443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:33.730283022 CET44349701188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:33.743201017 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:33.743258953 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:33.743344069 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:33.743454933 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:33.743472099 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:33.909193039 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:34.026993036 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:34.215841055 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.215934992 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.222057104 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.222073078 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.222330093 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.222568035 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.268325090 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.345720053 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.345802069 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.345846891 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.346086979 CET49704443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.346103907 CET4434970435.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.346718073 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.346757889 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.346820116 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.347078085 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.347091913 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.969440937 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.998992920 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.999016047 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:34.999156952 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:34.999161959 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:35.145875931 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:35.145942926 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:35.146032095 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:35.146658897 CET49706443192.168.2.635.190.80.1
            Mar 17, 2025 13:00:35.146673918 CET4434970635.190.80.1192.168.2.6
            Mar 17, 2025 13:00:35.229290962 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:37.635557890 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:40.171216011 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.171261072 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.171331882 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.171588898 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.171603918 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.177558899 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.220340967 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.504893064 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.504951954 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.505006075 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.505742073 CET49702443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.505759954 CET44349702188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.630194902 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:40.630445957 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:40.630474091 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:41.838479042 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:41.838541985 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:41.838617086 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:42.447801113 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:43.510358095 CET49672443192.168.2.6204.79.197.203
            Mar 17, 2025 13:00:43.668060064 CET49699443192.168.2.6142.250.186.36
            Mar 17, 2025 13:00:43.668082952 CET44349699142.250.186.36192.168.2.6
            Mar 17, 2025 13:00:52.056909084 CET49678443192.168.2.620.42.65.91
            Mar 17, 2025 13:00:55.537549019 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:55.537631035 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:00:55.537683010 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:55.668761015 CET49707443192.168.2.6188.114.96.3
            Mar 17, 2025 13:00:55.668796062 CET44349707188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:06.697324991 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.697376966 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:06.697442055 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.697565079 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.697618008 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:06.698748112 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.698767900 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:06.698788881 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.698960066 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:06.698971987 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.152429104 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.152741909 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:07.152770042 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.152962923 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:07.152968884 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.171896935 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.172100067 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:07.172127008 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.527698040 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.527769089 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:07.527822018 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:07.528840065 CET49710443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:07.528858900 CET44349710188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:14.854412079 CET4968780192.168.2.688.221.110.91
            Mar 17, 2025 13:01:14.859627008 CET804968788.221.110.91192.168.2.6
            Mar 17, 2025 13:01:14.861247063 CET4968780192.168.2.688.221.110.91
            Mar 17, 2025 13:01:16.452935934 CET4968880192.168.2.688.221.110.91
            Mar 17, 2025 13:01:16.452955008 CET49686443192.168.2.62.19.96.112
            Mar 17, 2025 13:01:16.453622103 CET4968980192.168.2.6184.30.131.245
            Mar 17, 2025 13:01:22.077019930 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:22.077090025 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:22.077169895 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:23.668402910 CET49711443192.168.2.6188.114.96.3
            Mar 17, 2025 13:01:23.668443918 CET44349711188.114.96.3192.168.2.6
            Mar 17, 2025 13:01:31.355475903 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:31.355530977 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:31.355614901 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:31.355776072 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:31.355796099 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:32.035461903 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:32.036165953 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:32.036190033 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:33.745758057 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:33.745804071 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:33.745865107 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:33.746000051 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:33.746014118 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.255306005 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.255764961 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.255795956 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.255819082 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.255825996 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.388506889 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.388621092 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.388675928 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.388828039 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.388848066 CET4434972035.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.388861895 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.388890982 CET49720443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.389406919 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.389441967 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.389542103 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.389678955 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.389692068 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.859030962 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.859333038 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.859345913 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.859560013 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.859565020 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.859684944 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.859689951 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.990483999 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.990556955 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.990910053 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.990910053 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:34.990922928 CET4434972135.190.80.1192.168.2.6
            Mar 17, 2025 13:01:34.990969896 CET49721443192.168.2.635.190.80.1
            Mar 17, 2025 13:01:41.916273117 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:41.916348934 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:41.916486979 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:43.668303013 CET49718443192.168.2.6142.250.186.36
            Mar 17, 2025 13:01:43.668349028 CET44349718142.250.186.36192.168.2.6
            Mar 17, 2025 13:01:44.089718103 CET443496812.23.227.215192.168.2.6
            Mar 17, 2025 13:01:44.089747906 CET443496812.23.227.215192.168.2.6
            Mar 17, 2025 13:01:44.089837074 CET49681443192.168.2.62.23.227.215
            Mar 17, 2025 13:01:44.089864016 CET49681443192.168.2.62.23.227.215
            TimestampSource PortDest PortSource IPDest IP
            Mar 17, 2025 13:00:27.527420044 CET53531741.1.1.1192.168.2.6
            Mar 17, 2025 13:00:28.644049883 CET53622371.1.1.1192.168.2.6
            Mar 17, 2025 13:00:31.292824030 CET5744953192.168.2.61.1.1.1
            Mar 17, 2025 13:00:31.293226957 CET5944653192.168.2.61.1.1.1
            Mar 17, 2025 13:00:31.300065041 CET53594461.1.1.1192.168.2.6
            Mar 17, 2025 13:00:31.300220966 CET53574491.1.1.1192.168.2.6
            Mar 17, 2025 13:00:32.906981945 CET6403953192.168.2.61.1.1.1
            Mar 17, 2025 13:00:32.910975933 CET5825053192.168.2.61.1.1.1
            Mar 17, 2025 13:00:32.918685913 CET53640391.1.1.1192.168.2.6
            Mar 17, 2025 13:00:32.926322937 CET53582501.1.1.1192.168.2.6
            Mar 17, 2025 13:00:33.735719919 CET4936753192.168.2.61.1.1.1
            Mar 17, 2025 13:00:33.735963106 CET6346853192.168.2.61.1.1.1
            Mar 17, 2025 13:00:33.742592096 CET53634681.1.1.1192.168.2.6
            Mar 17, 2025 13:00:33.742652893 CET53493671.1.1.1192.168.2.6
            Mar 17, 2025 13:00:45.739839077 CET53505471.1.1.1192.168.2.6
            Mar 17, 2025 13:01:04.580343008 CET53541551.1.1.1192.168.2.6
            Mar 17, 2025 13:01:25.846522093 CET53574831.1.1.1192.168.2.6
            Mar 17, 2025 13:01:27.017399073 CET53619571.1.1.1192.168.2.6
            Mar 17, 2025 13:01:27.333388090 CET53558751.1.1.1192.168.2.6
            Mar 17, 2025 13:01:31.204653025 CET138138192.168.2.6192.168.2.255
            TimestampSource IPDest IPTrans IDOP CodeNameTypeClassDNS over HTTPS
            Mar 17, 2025 13:00:31.292824030 CET192.168.2.61.1.1.10x86fcStandard query (0)www.google.comA (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:31.293226957 CET192.168.2.61.1.1.10xf9faStandard query (0)www.google.com65IN (0x0001)false
            Mar 17, 2025 13:00:32.906981945 CET192.168.2.61.1.1.10x8c06Standard query (0)check.telavya8.icuA (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:32.910975933 CET192.168.2.61.1.1.10x8f85Standard query (0)check.telavya8.icu65IN (0x0001)false
            Mar 17, 2025 13:00:33.735719919 CET192.168.2.61.1.1.10x5680Standard query (0)a.nel.cloudflare.comA (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:33.735963106 CET192.168.2.61.1.1.10x6715Standard query (0)a.nel.cloudflare.com65IN (0x0001)false
            TimestampSource IPDest IPTrans IDReply CodeNameCNameAddressTypeClassDNS over HTTPS
            Mar 17, 2025 13:00:31.300065041 CET1.1.1.1192.168.2.60xf9faNo error (0)www.google.com65IN (0x0001)false
            Mar 17, 2025 13:00:31.300220966 CET1.1.1.1192.168.2.60x86fcNo error (0)www.google.com142.250.186.36A (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:32.918685913 CET1.1.1.1192.168.2.60x8c06No error (0)check.telavya8.icu188.114.96.3A (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:32.918685913 CET1.1.1.1192.168.2.60x8c06No error (0)check.telavya8.icu188.114.97.3A (IP address)IN (0x0001)false
            Mar 17, 2025 13:00:32.926322937 CET1.1.1.1192.168.2.60x8f85No error (0)check.telavya8.icu65IN (0x0001)false
            Mar 17, 2025 13:00:33.742652893 CET1.1.1.1192.168.2.60x5680No error (0)a.nel.cloudflare.com35.190.80.1A (IP address)IN (0x0001)false
            • check.telavya8.icu
            • a.nel.cloudflare.com
            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            0192.168.2.649701188.114.96.34435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:00:33 UTC722OUTGET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1
            Host: check.telavya8.icu
            Connection: keep-alive
            sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
            sec-ch-ua-mobile: ?0
            sec-ch-ua-platform: "Windows"
            Upgrade-Insecure-Requests: 1
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
            Sec-Fetch-Site: none
            Sec-Fetch-Mode: navigate
            Sec-Fetch-User: ?1
            Sec-Fetch-Dest: document
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:00:33 UTC857INHTTP/1.1 422 Unprocessable Entity
            Date: Mon, 17 Mar 2025 12:00:33 GMT
            Content-Type: text/html; charset=UTF-8
            Transfer-Encoding: chunked
            Connection: close
            cf-cache-status: DYNAMIC
            Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=niarAPWvwV2ZO2QYpl%2BQmVMyqHJQRVzVdhvKH0fMefpWl6t2mwiGKH%2Fr12cdgLO0M7n%2BpRaL1hAhijzSFEP%2BxEUsgZk%2BKxUO9v78ceQ2zMqiNsN6lhB8zYB693OE7YRzYd8j4oU%3D"}],"group":"cf-nel","max_age":604800}
            NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
            speculation-rules: "/cdn-cgi/speculation"
            Server: cloudflare
            CF-RAY: 921c54a12ba378d6-EWR
            alt-svc: h3=":443"; ma=86400
            server-timing: cfL4;desc="?proto=TCP&rtt=1952&min_rtt=1944&rtt_var=745&sent=4&recv=6&lost=0&retrans=0&sent_bytes=2829&recv_bytes=1294&delivery_rate=1452736&cwnd=161&unsent_bytes=0&cid=f20570328b6a7fbb&ts=351&x=0"
            2025-03-17 12:00:33 UTC5INData Raw: 30 0d 0a 0d 0a
            Data Ascii: 0


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            1192.168.2.64970435.190.80.14435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:00:34 UTC553OUTOPTIONS /report/v4?s=niarAPWvwV2ZO2QYpl%2BQmVMyqHJQRVzVdhvKH0fMefpWl6t2mwiGKH%2Fr12cdgLO0M7n%2BpRaL1hAhijzSFEP%2BxEUsgZk%2BKxUO9v78ceQ2zMqiNsN6lhB8zYB693OE7YRzYd8j4oU%3D HTTP/1.1
            Host: a.nel.cloudflare.com
            Connection: keep-alive
            Origin: https://check.telavya8.icu
            Access-Control-Request-Method: POST
            Access-Control-Request-Headers: content-type
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:00:34 UTC336INHTTP/1.1 200 OK
            Content-Length: 0
            access-control-max-age: 86400
            access-control-allow-methods: POST, OPTIONS
            access-control-allow-origin: *
            access-control-allow-headers: content-length, content-type
            date: Mon, 17 Mar 2025 12:00:34 GMT
            Via: 1.1 google
            Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
            Connection: close


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            2192.168.2.64970635.190.80.14435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:00:34 UTC528OUTPOST /report/v4?s=niarAPWvwV2ZO2QYpl%2BQmVMyqHJQRVzVdhvKH0fMefpWl6t2mwiGKH%2Fr12cdgLO0M7n%2BpRaL1hAhijzSFEP%2BxEUsgZk%2BKxUO9v78ceQ2zMqiNsN6lhB8zYB693OE7YRzYd8j4oU%3D HTTP/1.1
            Host: a.nel.cloudflare.com
            Connection: keep-alive
            Content-Length: 441
            Content-Type: application/reports+json
            Origin: https://check.telavya8.icu
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:00:34 UTC441OUTData Raw: 5b 7b 22 61 67 65 22 3a 35 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 38 31 32 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 22 2c 22 73 61 6d 70 6c 69 6e 67 5f 66 72 61 63 74 69 6f 6e 22 3a 31 2e 30 2c 22 73 65 72 76 65 72 5f 69 70 22 3a 22 31 38 38 2e 31 31 34 2e 39 36 2e 33 22 2c 22 73 74 61 74 75 73 5f 63 6f 64 65 22 3a 34 32 32 2c 22 74 79 70 65 22 3a 22 68 74 74 70 2e 65 72 72 6f 72 22 7d 2c 22 74 79 70 65 22 3a 22 6e 65 74 77 6f 72 6b 2d 65 72 72 6f 72 22 2c 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 2f 2f 63 68 65 63 6b 2e 74 65 6c 61 76 79 61 38 2e 69 63
            Data Ascii: [{"age":5,"body":{"elapsed_time":812,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"","sampling_fraction":1.0,"server_ip":"188.114.96.3","status_code":422,"type":"http.error"},"type":"network-error","url":"https://check.telavya8.ic
            2025-03-17 12:00:35 UTC214INHTTP/1.1 200 OK
            Content-Length: 0
            access-control-allow-origin: *
            vary: Origin
            date: Mon, 17 Mar 2025 12:00:34 GMT
            Via: 1.1 google
            Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
            Connection: close


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            3192.168.2.649702188.114.96.34435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:00:40 UTC754OUTGET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1
            Host: check.telavya8.icu
            Connection: keep-alive
            Cache-Control: max-age=0
            sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
            sec-ch-ua-mobile: ?0
            sec-ch-ua-platform: "Windows"
            Upgrade-Insecure-Requests: 1
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
            Sec-Fetch-Site: cross-site
            Sec-Fetch-Mode: navigate
            Sec-Fetch-User: ?1
            Sec-Fetch-Dest: document
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:00:40 UTC858INHTTP/1.1 422 Unprocessable Entity
            Date: Mon, 17 Mar 2025 12:00:40 GMT
            Content-Type: text/html; charset=UTF-8
            Transfer-Encoding: chunked
            Connection: close
            cf-cache-status: DYNAMIC
            Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=VzE8bAk0Ll3UQBTPnJjKyCSbCtGk%2FM0Ew4X1n2ICJamHAqil6g9L0dGCmOz2j80AZE6zKeGv%2FPwanmopU%2FYVgsqMV1c9KwhPp3qBdO3sZyG%2FiKfYjGRSlipg5x%2BtyKKjQ0VlzXI%3D"}],"group":"cf-nel","max_age":604800}
            NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
            speculation-rules: "/cdn-cgi/speculation"
            Server: cloudflare
            CF-RAY: 921c54cb7d724228-EWR
            alt-svc: h3=":443"; ma=86400
            server-timing: cfL4;desc="?proto=TCP&rtt=1693&min_rtt=1688&rtt_var=644&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2830&recv_bytes=1326&delivery_rate=1684939&cwnd=178&unsent_bytes=0&cid=e9e3b8051d072e5d&ts=7107&x=0"
            2025-03-17 12:00:40 UTC5INData Raw: 30 0d 0a 0d 0a
            Data Ascii: 0


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            4192.168.2.649710188.114.96.34435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:01:07 UTC754OUTGET /gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20 HTTP/1.1
            Host: check.telavya8.icu
            Connection: keep-alive
            Cache-Control: max-age=0
            sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"
            sec-ch-ua-mobile: ?0
            sec-ch-ua-platform: "Windows"
            Upgrade-Insecure-Requests: 1
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
            Sec-Fetch-Site: cross-site
            Sec-Fetch-Mode: navigate
            Sec-Fetch-User: ?1
            Sec-Fetch-Dest: document
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:01:07 UTC851INHTTP/1.1 422 Unprocessable Entity
            Date: Mon, 17 Mar 2025 12:01:07 GMT
            Content-Type: text/html; charset=UTF-8
            Transfer-Encoding: chunked
            Connection: close
            cf-cache-status: DYNAMIC
            Report-To: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=mJXCC9PlhkeFOIfuiBBIYbaEx0cbFH75ZyJdVV5d8AupYvVzU7NqmvozeKiUHBa5v96%2BdIkxfa8cp7gXLz%2FhNqtU5zP4ATOBqr93LP3t4QQkGuSkIX5Qdhw9Uqi57Dd1oipqXTo%3D"}],"group":"cf-nel","max_age":604800}
            NEL: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}
            speculation-rules: "/cdn-cgi/speculation"
            Server: cloudflare
            CF-RAY: 921c55746ecf5e4b-EWR
            alt-svc: h3=":443"; ma=86400
            server-timing: cfL4;desc="?proto=TCP&rtt=1641&min_rtt=1616&rtt_var=656&sent=5&recv=6&lost=0&retrans=0&sent_bytes=2829&recv_bytes=1326&delivery_rate=1606160&cwnd=155&unsent_bytes=0&cid=d75bfa96af0ea946&ts=380&x=0"
            2025-03-17 12:01:07 UTC5INData Raw: 30 0d 0a 0d 0a
            Data Ascii: 0


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            5192.168.2.64972035.190.80.14435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:01:34 UTC547OUTOPTIONS /report/v4?s=mJXCC9PlhkeFOIfuiBBIYbaEx0cbFH75ZyJdVV5d8AupYvVzU7NqmvozeKiUHBa5v96%2BdIkxfa8cp7gXLz%2FhNqtU5zP4ATOBqr93LP3t4QQkGuSkIX5Qdhw9Uqi57Dd1oipqXTo%3D HTTP/1.1
            Host: a.nel.cloudflare.com
            Connection: keep-alive
            Origin: https://check.telavya8.icu
            Access-Control-Request-Method: POST
            Access-Control-Request-Headers: content-type
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:01:34 UTC336INHTTP/1.1 200 OK
            Content-Length: 0
            access-control-max-age: 86400
            access-control-allow-methods: OPTIONS, POST
            access-control-allow-origin: *
            access-control-allow-headers: content-type, content-length
            date: Mon, 17 Mar 2025 12:01:33 GMT
            Via: 1.1 google
            Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
            Connection: close


            Session IDSource IPSource PortDestination IPDestination PortPIDProcess
            6192.168.2.64972135.190.80.14435632C:\Program Files\Google\Chrome\Application\chrome.exe
            TimestampBytes transferredDirectionData
            2025-03-17 12:01:34 UTC522OUTPOST /report/v4?s=mJXCC9PlhkeFOIfuiBBIYbaEx0cbFH75ZyJdVV5d8AupYvVzU7NqmvozeKiUHBa5v96%2BdIkxfa8cp7gXLz%2FhNqtU5zP4ATOBqr93LP3t4QQkGuSkIX5Qdhw9Uqi57Dd1oipqXTo%3D HTTP/1.1
            Host: a.nel.cloudflare.com
            Connection: keep-alive
            Content-Length: 889
            Content-Type: application/reports+json
            Origin: https://check.telavya8.icu
            User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36
            Accept-Encoding: gzip, deflate, br, zstd
            Accept-Language: en-US,en;q=0.9
            2025-03-17 12:01:34 UTC889OUTData Raw: 5b 7b 22 61 67 65 22 3a 35 33 32 33 39 2c 22 62 6f 64 79 22 3a 7b 22 65 6c 61 70 73 65 64 5f 74 69 6d 65 22 3a 33 32 38 2c 22 6d 65 74 68 6f 64 22 3a 22 47 45 54 22 2c 22 70 68 61 73 65 22 3a 22 61 70 70 6c 69 63 61 74 69 6f 6e 22 2c 22 70 72 6f 74 6f 63 6f 6c 22 3a 22 68 74 74 70 2f 31 2e 31 22 2c 22 72 65 66 65 72 72 65 72 22 3a 22 22 2c 22 73 61 6d 70 6c 69 6e 67 5f 66 72 61 63 74 69 6f 6e 22 3a 31 2e 30 2c 22 73 65 72 76 65 72 5f 69 70 22 3a 22 31 38 38 2e 31 31 34 2e 39 36 2e 33 22 2c 22 73 74 61 74 75 73 5f 63 6f 64 65 22 3a 34 32 32 2c 22 74 79 70 65 22 3a 22 68 74 74 70 2e 65 72 72 6f 72 22 7d 2c 22 74 79 70 65 22 3a 22 6e 65 74 77 6f 72 6b 2d 65 72 72 6f 72 22 2c 22 75 72 6c 22 3a 22 68 74 74 70 73 3a 2f 2f 63 68 65 63 6b 2e 74 65 6c 61 76 79 61
            Data Ascii: [{"age":53239,"body":{"elapsed_time":328,"method":"GET","phase":"application","protocol":"http/1.1","referrer":"","sampling_fraction":1.0,"server_ip":"188.114.96.3","status_code":422,"type":"http.error"},"type":"network-error","url":"https://check.telavya
            2025-03-17 12:01:34 UTC214INHTTP/1.1 200 OK
            Content-Length: 0
            access-control-allow-origin: *
            vary: Origin
            date: Mon, 17 Mar 2025 12:01:34 GMT
            Via: 1.1 google
            Alt-Svc: h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
            Connection: close


            Click to jump to process

            Click to jump to process

            Click to jump to process

            Target ID:1
            Start time:08:00:22
            Start date:17/03/2025
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
            Imagebase:0x7ff63b000000
            File size:3'388'000 bytes
            MD5 hash:E81F54E6C1129887AEA47E7D092680BF
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:2
            Start time:08:00:25
            Start date:17/03/2025
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2256,i,4543849367317179972,17137900220596633881,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2304 /prefetch:3
            Imagebase:0x7ff63b000000
            File size:3'388'000 bytes
            MD5 hash:E81F54E6C1129887AEA47E7D092680BF
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:false

            Target ID:6
            Start time:08:00:31
            Start date:17/03/2025
            Path:C:\Program Files\Google\Chrome\Application\chrome.exe
            Wow64 process (32bit):false
            Commandline:"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://check.telavya8.icu/gkcxv.google?i=4876e1f6-ac44-408f-999b-2cd4a9b4a8df%20#%20''I%20am%20not%20a%20'robot'%20-%20?e???????%20Verification%20ID:%202482''"
            Imagebase:0x7ff63b000000
            File size:3'388'000 bytes
            MD5 hash:E81F54E6C1129887AEA47E7D092680BF
            Has elevated privileges:true
            Has administrator privileges:true
            Programmed in:C, C++ or other language
            Reputation:low
            Has exited:true

            No disassembly