There are no high impact signatures.
Source: https://klopotenko.com/wp-content/uploads/2023/08/knedli-img-1000x600.jpg?v=1720543094 |
HTTP Parser: No favicon |
Source: unknown |
HTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.6:49698 version: TLS 1.2 |
Source: unknown |
HTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.6:49701 version: TLS 1.2 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 142.250.176.195 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 142.250.176.195 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 142.250.176.195 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 142.250.176.195 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 204.79.197.203 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 20.42.65.91 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: unknown |
TCP traffic detected without corresponding DNS query: 4.175.87.197 |
Source: global traffic |
HTTP traffic detected: GET /SLS/%7B522D76A4-93E1-47F8-B8CE-07C937AD1A1E%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=+hpgHAgYclnOoAA&MD=c8pPaUcD HTTP/1.1host: slscr.update.microsoft.comaccept: */*user-agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33accept-encoding: identity |
Source: global traffic |
HTTP traffic detected: GET /wp-content/uploads/2023/08/knedli-img-1000x600.jpg?v=1720543094 HTTP/1.1host: klopotenko.comupgrade-insecure-requests: 1user-agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0sec-ch-ua-platform: "Windows"sec-fetch-site: nonesec-fetch-mode: navigatesec-fetch-user: ?1sec-fetch-dest: documentaccept-encoding: identityaccept-language: en-US,en;q=0.9priority: u=0, i |
Source: global traffic |
HTTP traffic detected: GET /favicon.ico HTTP/1.1host: klopotenko.comsec-ch-ua-platform: "Windows"user-agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36sec-ch-ua: "Chromium";v="134", "Not:A-Brand";v="24", "Google Chrome";v="134"sec-ch-ua-mobile: ?0accept: image/avif,image/webp,image/apng,image/svg+xml,image/*,*/*;q=0.8sec-fetch-site: same-originsec-fetch-mode: no-corssec-fetch-dest: imagereferer: https://klopotenko.com/wp-content/uploads/2023/08/knedli-img-1000x600.jpg?v=1720543094accept-encoding: identityaccept-language: en-US,en;q=0.9priority: u=1, i |
Source: global traffic |
HTTP traffic detected: GET /SLS/%7BE7A50285-D08D-499D-9FF8-180FDC2332BC%7D/x64/10.0.19045.2006/0?CH=700&L=en-GB&P=&PT=0x30&WUA=10.0.19041.1949&MK=+hpgHAgYclnOoAA&MD=c8pPaUcD HTTP/1.1host: slscr.update.microsoft.comaccept: */*user-agent: Windows-Update-Agent/10.0.10011.16384 Client-Protocol/2.33accept-encoding: identity |
Source: global traffic |
HTTP traffic detected: GET /r/r4.crl HTTP/1.1Cache-Control: max-age = 3000Connection: Keep-AliveAccept: */*If-Modified-Since: Thu, 25 Jul 2024 14:48:00 GMTUser-Agent: Microsoft-CryptoAPI/10.0Host: c.pki.goog |
Source: global traffic |
DNS traffic detected: DNS query: www.google.com |
Source: global traffic |
DNS traffic detected: DNS query: klopotenko.com |
Source: global traffic |
DNS traffic detected: DNS query: a.nel.cloudflare.com |
Source: global traffic |
DNS traffic detected: DNS query: e2c33.gcp.gvt2.com |
Source: global traffic |
DNS traffic detected: DNS query: beacons.gcp.gvt2.com |
Source: unknown |
HTTP traffic detected: POST /report/v4?s=LYmAD2yTYs%2FHa9f7GxC1cB%2Fsfwyypp6WjxsP5ZauQn0x5XixMz%2BMOwt32kVwm07n%2FD10lniwCQWBqAk1t8N9SftBfuC0HyVNsJglBYU0wD1LiZxSU2cfUuet5vKbZODY HTTP/1.1host: a.nel.cloudflare.comcontent-length: 472content-type: application/reports+jsonorigin: https://klopotenko.comuser-agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/134.0.0.0 Safari/537.36accept-encoding: identityaccept-language: en-US,en;q=0.9priority: u=4, i |
Source: global traffic |
HTTP traffic detected: HTTP/1.1 404 Not Founddate: Tue, 10 Jun 2025 17:11:45 GMTcontent-type: text/html; charset=UTF-8cf-ray: 94da7d5c8a95729b-EWRvary: Accept-Encodingcache-control: max-age=14400cf-cache-status: EXPIREDreport-to: {"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=LYmAD2yTYs%2FHa9f7GxC1cB%2Fsfwyypp6WjxsP5ZauQn0x5XixMz%2BMOwt32kVwm07n%2FD10lniwCQWBqAk1t8N9SftBfuC0HyVNsJglBYU0wD1LiZxSU2cfUuet5vKbZODY"}],"group":"cf-nel","max_age":604800}nel: {"success_fraction":0,"report_to":"cf-nel","max_age":604800}server: cloudflareserver-timing: cfL4;desc="?proto=TCP&rtt=92117&min_rtt=85623&rtt_var=11928&sent=83&recv=27&lost=0&retrans=0&sent_bytes=97622&recv_bytes=1282&delivery_rate=421456&cwnd=253&unsent_bytes=0&cid=dcb3dffde4973597&ts=1024&x=0"content-length: 564 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49698 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 49700 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49699 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 49699 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 49698 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49672 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 49697 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49678 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49697 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49700 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 49701 -> 443 |
Source: unknown |
Network traffic detected: HTTP traffic on port 443 -> 49701 |
Source: unknown |
HTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.6:49698 version: TLS 1.2 |
Source: unknown |
HTTPS traffic detected: 4.175.87.197:443 -> 192.168.2.6:49701 version: TLS 1.2 |
Source: classification engine |
Classification label: clean0.win@24/4@24/4 |
Source: unknown |
Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank" |
|
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2120,i,512368388479169648,8015906001973249642,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2148 /prefetch:3 |
|
Source: unknown |
Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" "http://klopotenko.com/wp-content/uploads/2023/08/knedli-img-1000x600.jpg?v=1720543094" |
|
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --no-pre-read-main-dll --field-trial-handle=2120,i,512368388479169648,8015906001973249642,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction --variations-seed-version --mojo-platform-channel-handle=2148 /prefetch:3 |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: C:\Program Files\Google\Chrome\Application\chrome.exe |
Process created: unknown unknown |
Jump to behavior |
Source: Window Recorder |
Window detected: More than 3 window changes detected |