Windows
Analysis Report
7qBBKk0P4l.exe
Overview
General Information
Sample name: | 7qBBKk0P4l.exerenamed because original name is a hash value |
Original sample name: | 3397920e23cf8435201e9e90796b2a8c9ec340e4733cbc8064999e462dc53470.exe |
Analysis ID: | 1488122 |
MD5: | 94e7772b2b1bda89b23a2fba0e57742e |
SHA1: | 2af48b80b7354b4a15eff49af3f3d70d3e5789a4 |
SHA256: | 3397920e23cf8435201e9e90796b2a8c9ec340e4733cbc8064999e462dc53470 |
Tags: | exe |
Infos: | |
Detection
Score: | 88 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- 7qBBKk0P4l.exe (PID: 1824 cmdline:
"C:\Users\ user\Deskt op\7qBBKk0 P4l.exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E) - psjpq2i82ktsjq0yguk.exe (PID: 6892 cmdline:
"C:\hjflhu kc\psjpq2i 82ktsjq0yg uk.exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E) - yanidfx.exe (PID: 4136 cmdline:
"C:\hjflhu kc\yanidfx .exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E)
- yanidfx.exe (PID: 2768 cmdline:
C:\hjflhuk c\yanidfx. exe MD5: 94E7772B2B1BDA89B23A2FBA0E57742E) - xxxniijvj.exe (PID: 3552 cmdline:
tgtbxnf8r3 3w "c:\hjf lhukc\yani dfx.exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E) - yanidfx.exe (PID: 3392 cmdline:
"c:\hjflhu kc\yanidfx .exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E) - xxxniijvj.exe (PID: 764 cmdline:
tgtbxnf8r3 3w "c:\hjf lhukc\yani dfx.exe" MD5: 94E7772B2B1BDA89B23A2FBA0E57742E)
- svchost.exe (PID: 3964 cmdline:
C:\Windows \System32\ svchost.ex e -k Local Service -p -s Licens eManager MD5: B7F884C1B74A263F746EE12A5F7C9F6A)
- cleanup
Source: | Author: vburov: |
Timestamp: | 2024-08-05T16:29:15.427900+0200 |
SID: | 2815568 |
Source Port: | 49705 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:21.526506+0200 |
SID: | 2815568 |
Source Port: | 49711 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:28.585913+0200 |
SID: | 2815568 |
Source Port: | 49716 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:11.586178+0200 |
SID: | 2811542 |
Source Port: | 53 |
Destination Port: | 56919 |
Protocol: | UDP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:12.540506+0200 |
SID: | 2815568 |
Source Port: | 49704 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:15.432885+0200 |
SID: | 2037771 |
Source Port: | 80 |
Destination Port: | 49705 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:17.836857+0200 |
SID: | 2037771 |
Source Port: | 80 |
Destination Port: | 49706 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:31.727756+0200 |
SID: | 2037771 |
Source Port: | 80 |
Destination Port: | 49719 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:31:09.914916+0200 |
SID: | 2815568 |
Source Port: | 60229 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:30:40.325809+0200 |
SID: | 2815568 |
Source Port: | 60228 |
Destination Port: | 80 |
Protocol: | TCP |
Classtype: | A Network Trojan was detected |
Timestamp: | 2024-08-05T16:29:18.843079+0200 |
SID: | 2018316 |
Source Port: | 53 |
Destination Port: | 54266 |
Protocol: | UDP |
Classtype: | A Network Trojan was detected |
Click to jump to signature section
AV Detection |
---|
Source: | Avira: |
Source: | Avira: | ||
Source: | Avira: | ||
Source: | Avira: |
Source: | ReversingLabs: | ||
Source: | ReversingLabs: | ||
Source: | ReversingLabs: |
Source: | ReversingLabs: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: | ||
Source: | Joe Sandbox ML: | ||
Source: | Joe Sandbox ML: |
Source: | Joe Sandbox ML: |
Source: | Code function: | 2_2_0092BECE | |
Source: | Code function: | 2_2_0093AE3B | |
Source: | Code function: | 3_2_006EBECE | |
Source: | Code function: | 3_2_006FAE3B |
Source: | Static PE information: |
Source: | Code function: | 1_2_000C5C39 | |
Source: | Code function: | 2_2_00925C39 | |
Source: | Code function: | 3_2_006E5C39 | |
Source: | Code function: | 4_2_000E5C39 | |
Source: | Code function: | 11_2_00E25C39 |
Networking |
---|
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | Network traffic detected: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: |
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | Code function: | 1_2_000D8695 |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Code function: | 1_2_000C88A8 | |
Source: | Code function: | 1_2_000D111E | |
Source: | Code function: | 1_2_000DFF20 | |
Source: | Code function: | 1_2_000DA805 | |
Source: | Code function: | 1_2_000E3025 | |
Source: | Code function: | 1_2_000ED831 | |
Source: | Code function: | 1_2_000C60AD | |
Source: | Code function: | 1_2_000E84D7 | |
Source: | Code function: | 1_2_000E24D3 | |
Source: | Code function: | 1_2_000D0CE6 | |
Source: | Code function: | 1_2_000D70E6 | |
Source: | Code function: | 1_2_000C9903 | |
Source: | Code function: | 1_2_000D0113 | |
Source: | Code function: | 1_2_000CA928 | |
Source: | Code function: | 1_2_000C69A8 | |
Source: | Code function: | 1_2_000C11B7 | |
Source: | Code function: | 1_2_000E7DC0 | |
Source: | Code function: | 1_2_000D1636 | |
Source: | Code function: | 1_2_000D8695 | |
Source: | Code function: | 1_2_000C46CF | |
Source: | Code function: | 1_2_000E5F1E | |
Source: | Code function: | 1_2_000D571F | |
Source: | Code function: | 1_2_000D9F24 | |
Source: | Code function: | 1_2_000C774C | |
Source: | Code function: | 1_2_000D5FBA | |
Source: | Code function: | 1_2_000CCFBB | |
Source: | Code function: | 1_2_000EDFCC | |
Source: | Code function: | 1_2_000DB3DB | |
Source: | Code function: | 2_2_009288A8 | |
Source: | Code function: | 2_2_009484D7 | |
Source: | Code function: | 2_2_0093B3DB | |
Source: | Code function: | 2_2_0093FF2A | |
Source: | Code function: | 2_2_009260AD | |
Source: | Code function: | 2_2_009424D3 | |
Source: | Code function: | 2_2_00930CE6 | |
Source: | Code function: | 2_2_009370E6 | |
Source: | Code function: | 2_2_0093A805 | |
Source: | Code function: | 2_2_0094D831 | |
Source: | Code function: | 2_2_00943025 | |
Source: | Code function: | 2_2_009211B7 | |
Source: | Code function: | 2_2_009269A8 | |
Source: | Code function: | 2_2_00947DC0 | |
Source: | Code function: | 2_2_00930113 | |
Source: | Code function: | 2_2_0093111E | |
Source: | Code function: | 2_2_00929903 | |
Source: | Code function: | 2_2_0092A928 | |
Source: | Code function: | 2_2_00938695 | |
Source: | Code function: | 2_2_009246CF | |
Source: | Code function: | 2_2_00931636 | |
Source: | Code function: | 2_2_00935FBA | |
Source: | Code function: | 2_2_0092CFBB | |
Source: | Code function: | 2_2_0094DFCC | |
Source: | Code function: | 2_2_00945F1E | |
Source: | Code function: | 2_2_0093571F | |
Source: | Code function: | 2_2_00939F24 | |
Source: | Code function: | 2_2_0092774C | |
Source: | Code function: | 3_2_007024D3 | |
Source: | Code function: | 3_2_007084D7 | |
Source: | Code function: | 3_2_006E88A8 | |
Source: | Code function: | 3_2_006F8695 | |
Source: | Code function: | 3_2_006FFF2A | |
Source: | Code function: | 3_2_006F571F | |
Source: | Code function: | 3_2_006FB3DB | |
Source: | Code function: | 3_2_0070D831 | |
Source: | Code function: | 3_2_00703025 | |
Source: | Code function: | 3_2_006FA805 | |
Source: | Code function: | 3_2_006F0CE6 | |
Source: | Code function: | 3_2_006F70E6 | |
Source: | Code function: | 3_2_006E60AD | |
Source: | Code function: | 3_2_006EA928 | |
Source: | Code function: | 3_2_006E9903 | |
Source: | Code function: | 3_2_006F111E | |
Source: | Code function: | 3_2_006F0113 | |
Source: | Code function: | 3_2_00707DC0 | |
Source: | Code function: | 3_2_006E69A8 | |
Source: | Code function: | 3_2_006E11B7 | |
Source: | Code function: | 3_2_006F1636 | |
Source: | Code function: | 3_2_006E46CF | |
Source: | Code function: | 3_2_006E774C | |
Source: | Code function: | 3_2_006F9F24 | |
Source: | Code function: | 3_2_00705F1E | |
Source: | Code function: | 3_2_0070DFCC | |
Source: | Code function: | 3_2_006ECFBB | |
Source: | Code function: | 3_2_006F5FBA | |
Source: | Code function: | 4_2_000E88A8 | |
Source: | Code function: | 4_2_000F571F | |
Source: | Code function: | 4_2_000FFF2A | |
Source: | Code function: | 4_2_000FA805 | |
Source: | Code function: | 4_2_0010D831 | |
Source: | Code function: | 4_2_00103025 | |
Source: | Code function: | 4_2_000E60AD | |
Source: | Code function: | 4_2_001024D3 | |
Source: | Code function: | 4_2_001084D7 | |
Source: | Code function: | 4_2_000F0CE6 | |
Source: | Code function: | 4_2_000F70E6 | |
Source: | Code function: | 4_2_000E9903 | |
Source: | Code function: | 4_2_000F111E | |
Source: | Code function: | 4_2_000F0113 | |
Source: | Code function: | 4_2_000EA928 | |
Source: | Code function: | 4_2_000E69A8 | |
Source: | Code function: | 4_2_000E11B7 | |
Source: | Code function: | 4_2_00107DC0 | |
Source: | Code function: | 4_2_000F1636 | |
Source: | Code function: | 4_2_000F8695 | |
Source: | Code function: | 4_2_000E46CF | |
Source: | Code function: | 4_2_00105F1E | |
Source: | Code function: | 4_2_000F9F24 | |
Source: | Code function: | 4_2_000E774C | |
Source: | Code function: | 4_2_000F5FBA | |
Source: | Code function: | 4_2_000ECFBB | |
Source: | Code function: | 4_2_000FB3DB | |
Source: | Code function: | 4_2_0010DFCC | |
Source: | Code function: | 11_2_00E288A8 | |
Source: | Code function: | 11_2_00E3FF25 | |
Source: | Code function: | 11_2_00E3571F | |
Source: | Code function: | 11_2_00E30CE6 | |
Source: | Code function: | 11_2_00E370E6 | |
Source: | Code function: | 11_2_00E484D7 | |
Source: | Code function: | 11_2_00E424D3 | |
Source: | Code function: | 11_2_00E260AD | |
Source: | Code function: | 11_2_00E43025 | |
Source: | Code function: | 11_2_00E4D831 | |
Source: | Code function: | 11_2_00E3A805 | |
Source: | Code function: | 11_2_00E47DC0 | |
Source: | Code function: | 11_2_00E269A8 | |
Source: | Code function: | 11_2_00E211B7 | |
Source: | Code function: | 11_2_00E2A928 | |
Source: | Code function: | 11_2_00E29903 | |
Source: | Code function: | 11_2_00E30113 | |
Source: | Code function: | 11_2_00E3111E | |
Source: | Code function: | 11_2_00E246CF | |
Source: | Code function: | 11_2_00E38695 | |
Source: | Code function: | 11_2_00E31636 | |
Source: | Code function: | 11_2_00E4DFCC | |
Source: | Code function: | 11_2_00E3B3DB | |
Source: | Code function: | 11_2_00E35FBA | |
Source: | Code function: | 11_2_00E2CFBB | |
Source: | Code function: | 11_2_00E2774C | |
Source: | Code function: | 11_2_00E39F24 | |
Source: | Code function: | 11_2_00E45F1E |
Source: | Static PE information: |
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Classification label: |
Source: | Code function: | 1_2_000E35AD | |
Source: | Code function: | 2_2_009435AD | |
Source: | Code function: | 3_2_007035AD | |
Source: | Code function: | 4_2_001035AD | |
Source: | Code function: | 11_2_00E435AD |
Source: | Code function: | 1_2_000D0806 |
Source: | Code function: | 1_2_000E74E8 |
Source: | Code function: | 1_2_000E74E8 | |
Source: | Code function: | 2_2_009474E8 | |
Source: | Code function: | 3_2_007074E8 | |
Source: | Code function: | 4_2_001074E8 | |
Source: | Code function: | 11_2_00E474E8 |
Source: | Mutant created: |
Source: | Static PE information: |
Source: | Key opened: | Jump to behavior |
Source: | ReversingLabs: |
Source: | File read: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Code function: | 1_2_000E84D7 |
Source: | Code function: | 1_2_000D2C95 | |
Source: | Code function: | 2_2_00932C95 | |
Source: | Code function: | 3_2_006F2C95 | |
Source: | Code function: | 4_2_000F2C95 | |
Source: | Code function: | 11_2_00E32C95 |
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | File created: | Jump to dropped file | ||
Source: | File created: | Jump to dropped file | ||
Source: | File created: | Jump to dropped file |
Source: | Code function: | 1_2_000E74E8 |
Source: | Code function: | 1_2_000D3285 |
Source: | Code function: | 1_2_000D9F24 | |
Source: | Code function: | 2_2_00939F24 | |
Source: | Code function: | 3_2_006F9F24 | |
Source: | Code function: | 4_2_000F9F24 | |
Source: | Code function: | 11_2_00E39F24 |
Source: | Code function: | 2_2_009484D7 | |
Source: | Code function: | 3_2_007084D7 |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Decision node followed by non-executed suspicious API: | graph_4-9413 | ||
Source: | Decision node followed by non-executed suspicious API: | graph_1-9411 | ||
Source: | Decision node followed by non-executed suspicious API: | graph_2-8821 |
Source: | Evasive API call chain: | graph_1-9041 | ||
Source: | Evasive API call chain: | graph_2-8277 | ||
Source: | Evasive API call chain: | graph_4-8321 | ||
Source: | Evasive API call chain: | graph_3-8890 |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: |
Source: | Code function: | 1_2_000C5C39 | |
Source: | Code function: | 2_2_00925C39 | |
Source: | Code function: | 3_2_006E5C39 | |
Source: | Code function: | 4_2_000E5C39 | |
Source: | Code function: | 11_2_00E25C39 |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | API call chain: | graph_1-8844 | ||
Source: | API call chain: | graph_2-8491 | ||
Source: | API call chain: | graph_3-8592 | ||
Source: | API call chain: | graph_3-9198 | ||
Source: | API call chain: | graph_4-8837 | ||
Source: | API call chain: | graph_11-8535 | ||
Source: | API call chain: | graph_11-9099 |
Source: | Process information queried: | Jump to behavior |
Source: | Code function: | 1_2_000E84D7 |
Source: | Code function: | 1_2_000CDE5A |
Source: | Code function: | 1_2_000CE769 |
Source: | Code function: | 1_2_000ED256 |
Source: | Code function: | 1_2_000C88A8 |
Source: | Key value queried: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 2 Service Execution | 4 Windows Service | 4 Windows Service | 1 Masquerading | OS Credential Dumping | 1 System Time Discovery | Remote Services | 1 Archive Collected Data | 2 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | 2 Native API | 1 DLL Side-Loading | 1 Process Injection | 21 Virtualization/Sandbox Evasion | LSASS Memory | 111 Security Software Discovery | Remote Desktop Protocol | Data from Removable Media | 4 Ingress Tool Transfer | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | 1 DLL Side-Loading | 1 Process Injection | Security Account Manager | 21 Virtualization/Sandbox Evasion | SMB/Windows Admin Shares | Data from Network Shared Drive | 3 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 2 Obfuscated Files or Information | NTDS | 2 Process Discovery | Distributed Component Object Model | Input Capture | 3 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 2 Software Packing | LSA Secrets | 1 Application Window Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 1 DLL Side-Loading | Cached Domain Credentials | 1 System Service Discovery | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 1 File Deletion | DCSync | 1 System Network Configuration Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | Indicator Removal from Tools | Proc Filesystem | 1 File and Directory Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
Network Topology | Malvertising | Exploit Public-Facing Application | Command and Scripting Interpreter | At | At | HTML Smuggling | /etc/passwd and /etc/shadow | 4 System Information Discovery | Direct Cloud VM Connections | Data Staged | Web Protocols | Exfiltration Over Symmetric Encrypted Non-C2 Protocol | Internal Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
92% | ReversingLabs | Win32.Spyware.Nivdort | ||
100% | Avira | HEUR/AGEN.1318579 | ||
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira | HEUR/AGEN.1318579 | ||
100% | Avira | HEUR/AGEN.1318579 | ||
100% | Avira | HEUR/AGEN.1318579 | ||
100% | Joe Sandbox ML | |||
100% | Joe Sandbox ML | |||
100% | Joe Sandbox ML | |||
92% | ReversingLabs | Win32.Spyware.Nivdort | ||
92% | ReversingLabs | Win32.Spyware.Nivdort | ||
92% | ReversingLabs | Win32.Spyware.Nivdort |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
crowdtrust.net | 170.187.200.48 | true | false | unknown | |
watersystem.net | 64.190.63.222 | true | false | unknown | |
thoughtsystem.net | 213.171.195.105 | true | false | unknown | |
membersystem.net | 85.13.130.3 | true | false | unknown | |
partygeneral.net | 3.33.130.190 | true | false | unknown | |
womanbelieve.net | 15.197.142.173 | true | false | unknown | |
womanhonor.net | 54.244.188.177 | true | false | unknown | |
membertrust.net | 3.33.130.190 | true | false | unknown | |
memberreceive.net | 35.164.78.200 | true | false | unknown | |
followfriend.net | 188.225.40.227 | true | false | unknown | |
partybelieve.net | 15.197.192.55 | true | false | unknown | |
freshfancy.net | 81.169.145.88 | true | false | unknown | |
alreadyfriend.net | 15.197.192.55 | true | false | unknown | |
thoughtbranch.net | 34.246.200.160 | true | false | unknown | |
beginhonor.net | unknown | unknown | true | unknown | |
memberlaughter.net | unknown | unknown | true | unknown | |
freshneither.net | unknown | unknown | true | unknown | |
thoughtneither.net | unknown | unknown | true | unknown | |
experiencefancy.net | unknown | unknown | true | unknown | |
followconsider.net | unknown | unknown | true | unknown | |
alreadyhonor.net | unknown | unknown | true | unknown | |
fighttrust.net | unknown | unknown | true | unknown | |
knownsystem.net | unknown | unknown | true | unknown | |
gentlemanhonor.net | unknown | unknown | true | unknown | |
memberfriend.net | unknown | unknown | true | unknown | |
freshtrust.net | unknown | unknown | true | unknown | |
experiencetrust.net | unknown | unknown | true | unknown | |
alreadybelieve.net | unknown | unknown | true | unknown | |
partyclear.net | unknown | unknown | true | unknown | |
waterquarter.net | unknown | unknown | true | unknown | |
fightbranch.net | unknown | unknown | true | unknown | |
knownlaughter.net | unknown | unknown | true | unknown | |
followtrust.net | unknown | unknown | true | unknown | |
experiencebelieve.net | unknown | unknown | true | unknown | |
summerhonor.net | unknown | unknown | true | unknown | |
thoughttrust.net | unknown | unknown | true | unknown | |
freshhonor.net | unknown | unknown | true | unknown | |
followfancy.net | unknown | unknown | true | unknown | |
freshfriend.net | unknown | unknown | true | unknown | |
freshconsider.net | unknown | unknown | true | unknown | |
summerquarter.net | unknown | unknown | true | unknown | |
gentlemantrust.net | unknown | unknown | true | unknown | |
fightinclude.net | unknown | unknown | true | unknown | |
gentlemanlaughter.net | unknown | unknown | true | unknown | |
memberbelieve.net | unknown | unknown | true | unknown | |
alreadylaughter.net | unknown | unknown | true | unknown | |
summerreceive.net | unknown | unknown | true | unknown | |
smokequarter.net | unknown | unknown | true | unknown | |
experiencesystem.net | unknown | unknown | true | unknown | |
thoughthonor.net | unknown | unknown | true | unknown | |
followbelieve.net | unknown | unknown | true | unknown | |
knowntrust.net | unknown | unknown | true | unknown | |
partybranch.net | unknown | unknown | true | unknown | |
crowdneither.net | unknown | unknown | true | unknown | |
womaninclude.net | unknown | unknown | true | unknown | |
smokebelieve.net | unknown | unknown | true | unknown | |
fightnorth.net | unknown | unknown | true | unknown | |
gentlemanneither.net | unknown | unknown | true | unknown | |
followquarter.net | unknown | unknown | true | unknown | |
knownhonor.net | unknown | unknown | true | unknown | |
womantrust.net | unknown | unknown | true | unknown | |
memberquarter.net | unknown | unknown | true | unknown | |
experiencefriend.net | unknown | unknown | true | unknown | |
waterbranch.net | unknown | unknown | true | unknown | |
smoketrust.net | unknown | unknown | true | unknown | |
gentlemanreceive.net | unknown | unknown | true | unknown | |
fightsystem.net | unknown | unknown | true | unknown | |
memberfancy.net | unknown | unknown | true | unknown | |
crowdhonor.net | unknown | unknown | true | unknown | |
summerbelieve.net | unknown | unknown | true | unknown | |
womanbranch.net | unknown | unknown | true | unknown | |
crowdbranch.net | unknown | unknown | true | unknown | |
beginbranch.net | unknown | unknown | true | unknown | |
experiencehonor.net | unknown | unknown | true | unknown | |
waterreceive.net | unknown | unknown | true | unknown | |
gentlemansystem.net | unknown | unknown | true | unknown | |
crowdsystem.net | unknown | unknown | true | unknown | |
knownbelieve.net | unknown | unknown | true | unknown | |
knownquarter.net | unknown | unknown | true | unknown | |
beginsystem.net | unknown | unknown | true | unknown | |
followsystem.net | unknown | unknown | true | unknown | |
crowdreceive.net | unknown | unknown | true | unknown | |
alreadyquarter.net | unknown | unknown | true | unknown | |
beginquarter.net | unknown | unknown | true | unknown | |
freshbelieve.net | unknown | unknown | true | unknown | |
alreadyconsider.net | unknown | unknown | true | unknown | |
alreadytrust.net | unknown | unknown | true | unknown | |
freshquarter.net | unknown | unknown | true | unknown | |
gentlemanfriend.net | unknown | unknown | true | unknown | |
beginbelieve.net | unknown | unknown | true | unknown | |
memberhonor.net | unknown | unknown | true | unknown | |
summersystem.net | unknown | unknown | true | unknown | |
partyquarter.net | unknown | unknown | true | unknown | |
alreadyfancy.net | unknown | unknown | true | unknown | |
fightneither.net | unknown | unknown | true | unknown | |
alreadybranch.net | unknown | unknown | true | unknown | |
partynorth.net | unknown | unknown | true | unknown | |
womangeneral.net | unknown | unknown | true | unknown | |
thoughtreceive.net | unknown | unknown | true | unknown | |
smokegeneral.net | unknown | unknown | true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown | ||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
85.13.130.3 | membersystem.net | Germany | 34788 | NMM-ASD-02742FriedersdorfHauptstrasse68DE | false | |
188.225.40.227 | followfriend.net | Russian Federation | 9123 | TIMEWEB-ASRU | false | |
34.246.200.160 | thoughtbranch.net | United States | 16509 | AMAZON-02US | false | |
170.187.200.48 | crowdtrust.net | United States | 7018 | ATT-INTERNET4US | false | |
35.164.78.200 | memberreceive.net | United States | 16509 | AMAZON-02US | false | |
15.197.142.173 | womanbelieve.net | United States | 7430 | TANDEMUS | false | |
54.244.188.177 | womanhonor.net | United States | 16509 | AMAZON-02US | false | |
64.190.63.222 | watersystem.net | United States | 11696 | NBS11696US | false | |
15.197.192.55 | partybelieve.net | United States | 7430 | TANDEMUS | false | |
3.33.130.190 | partygeneral.net | United States | 8987 | AMAZONEXPANSIONGB | false | |
213.171.195.105 | thoughtsystem.net | United Kingdom | 8560 | ONEANDONE-ASBrauerstrasse48DE | false | |
81.169.145.88 | freshfancy.net | Germany | 6724 | STRATOSTRATOAGDE | false |
Joe Sandbox version: | 40.0.0 Tourmaline |
Analysis ID: | 1488122 |
Start date and time: | 2024-08-05 16:28:02 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 6m 28s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | 7qBBKk0P4l.exerenamed because original name is a hash value |
Original Sample Name: | 3397920e23cf8435201e9e90796b2a8c9ec340e4733cbc8064999e462dc53470.exe |
Detection: | MAL |
Classification: | mal88.troj.evad.winEXE@13/5@207/12 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, WMIADAP.exe, SIHClient.exe, conhost.exe
- Excluded domains from analysis (whitelisted): ocsp.digicert.com, slscr.update.microsoft.com, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- VT rate limit hit for: 7qBBKk0P4l.exe
Time | Type | Description |
---|---|---|
10:29:41 | API Interceptor | |
10:30:26 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
85.13.130.3 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
188.225.40.227 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
34.246.200.160 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
membertrust.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
watersystem.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
crowdtrust.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
thoughtsystem.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
womanbelieve.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
womanhonor.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
partygeneral.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
membersystem.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
ATT-INTERNET4US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
TIMEWEB-ASRU | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | Emotet | Browse |
| ||
Get hash | malicious | DCRat | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
NMM-ASD-02742FriedersdorfHauptstrasse68DE | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
AMAZON-02US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | ZTrat | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook, PureLog Stealer | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Process: | C:\Users\user\Desktop\7qBBKk0P4l.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 6 |
Entropy (8bit): | 2.584962500721156 |
Encrypted: | false |
SSDEEP: | 3:o+k:op |
MD5: | 869F9B7357D5489D5FE37B208940AFD8 |
SHA1: | 8D4C9419F43D41066C40C67ED43F63A268A7E7AC |
SHA-256: | DEE53FC307F455BF9E72689A4472B6E5252C6B36B848C8F531DAD9714A8D3F80 |
SHA-512: | 9B7E12978891487D2BD31DCF0BCF02CFC74331AEBA1372AE9B0DA3B4BD7B1B177F25FD4A9E798D48A7F7C569409647FD1D975C3E4D12631B0953A50BDF71C75D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Users\user\Desktop\7qBBKk0P4l.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 6 |
Entropy (8bit): | 2.584962500721156 |
Encrypted: | false |
SSDEEP: | 3:o+k:op |
MD5: | 869F9B7357D5489D5FE37B208940AFD8 |
SHA1: | 8D4C9419F43D41066C40C67ED43F63A268A7E7AC |
SHA-256: | DEE53FC307F455BF9E72689A4472B6E5252C6B36B848C8F531DAD9714A8D3F80 |
SHA-512: | 9B7E12978891487D2BD31DCF0BCF02CFC74331AEBA1372AE9B0DA3B4BD7B1B177F25FD4A9E798D48A7F7C569409647FD1D975C3E4D12631B0953A50BDF71C75D |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Users\user\Desktop\7qBBKk0P4l.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 236032 |
Entropy (8bit): | 7.1119041831804 |
Encrypted: | false |
SSDEEP: | 6144:nSzlgBOTkmrLSoVjBLW5w+ihTEzD4NptOi9:n+gITkmrWoJZW+PhTEzcNptb |
MD5: | 94E7772B2B1BDA89B23A2FBA0E57742E |
SHA1: | 2AF48B80B7354B4A15EFF49AF3F3D70D3E5789A4 |
SHA-256: | 3397920E23CF8435201E9E90796B2A8C9EC340E4733CBC8064999E462DC53470 |
SHA-512: | 28F2B94180CBD451FDF887B6E47DC92596FDFB37D06B0F115B4C4A79524366681E05EB2624922A7311BCB9CA983D275BB10F29338628F8654FD673619669F101 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
Process: | C:\hjflhukc\yanidfx.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 236032 |
Entropy (8bit): | 7.1119041831804 |
Encrypted: | false |
SSDEEP: | 6144:nSzlgBOTkmrLSoVjBLW5w+ihTEzD4NptOi9:n+gITkmrWoJZW+PhTEzcNptb |
MD5: | 94E7772B2B1BDA89B23A2FBA0E57742E |
SHA1: | 2AF48B80B7354B4A15EFF49AF3F3D70D3E5789A4 |
SHA-256: | 3397920E23CF8435201E9E90796B2A8C9EC340E4733CBC8064999E462DC53470 |
SHA-512: | 28F2B94180CBD451FDF887B6E47DC92596FDFB37D06B0F115B4C4A79524366681E05EB2624922A7311BCB9CA983D275BB10F29338628F8654FD673619669F101 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
Process: | C:\hjflhukc\psjpq2i82ktsjq0yguk.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 236032 |
Entropy (8bit): | 7.1119041831804 |
Encrypted: | false |
SSDEEP: | 6144:nSzlgBOTkmrLSoVjBLW5w+ihTEzD4NptOi9:n+gITkmrWoJZW+PhTEzcNptb |
MD5: | 94E7772B2B1BDA89B23A2FBA0E57742E |
SHA1: | 2AF48B80B7354B4A15EFF49AF3F3D70D3E5789A4 |
SHA-256: | 3397920E23CF8435201E9E90796B2A8C9EC340E4733CBC8064999E462DC53470 |
SHA-512: | 28F2B94180CBD451FDF887B6E47DC92596FDFB37D06B0F115B4C4A79524366681E05EB2624922A7311BCB9CA983D275BB10F29338628F8654FD673619669F101 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
File type: | |
Entropy (8bit): | 7.1119041831804 |
TrID: |
|
File name: | 7qBBKk0P4l.exe |
File size: | 236'032 bytes |
MD5: | 94e7772b2b1bda89b23a2fba0e57742e |
SHA1: | 2af48b80b7354b4a15eff49af3f3d70d3e5789a4 |
SHA256: | 3397920e23cf8435201e9e90796b2a8c9ec340e4733cbc8064999e462dc53470 |
SHA512: | 28f2b94180cbd451fdf887b6e47dc92596fdfb37d06b0f115b4c4a79524366681e05eb2624922a7311bcb9ca983d275bb10f29338628f8654fd673619669f101 |
SSDEEP: | 6144:nSzlgBOTkmrLSoVjBLW5w+ihTEzD4NptOi9:n+gITkmrWoJZW+PhTEzcNptb |
TLSH: | D234AE27EA481433C92B627C8F4F3BE555BF71735A216A0D87AD29C85CA13CDB23251B |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$........i..............D................q.......q......Rich....................PE..L...w..T.....................>....................@ |
Icon Hash: | 00928e8e8686b000 |
Entrypoint: | 0x42cffe |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE, 32BIT_MACHINE |
DLL Characteristics: | DYNAMIC_BASE, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x5415F677 [Sun Sep 14 20:11:35 2014 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 5 |
OS Version Minor: | 1 |
File Version Major: | 5 |
File Version Minor: | 1 |
Subsystem Version Major: | 5 |
Subsystem Version Minor: | 1 |
Import Hash: | f2a0245d6e1fa4eff8f7908b9115e5a5 |
Instruction |
---|
inc dword ptr [004364E0h] |
mov eax, dword ptr [004364E0h] |
movsx ecx, word ptr [00439A58h] |
shl ecx, 05h |
add ecx, eax |
cmp ecx, 88FDF618h |
jne 00007FE034DCF4D5h |
movsx ecx, word ptr [00439E9Eh] |
movsx eax, word ptr [00438E72h] |
shl ecx, 09h |
add eax, eax |
or ecx, 8B9FEAD2h |
cmp eax, ecx |
jl 00007FE034DCF4AEh |
add dword ptr [004351D4h], 32000450h |
jmp 00007FE034DCF4ACh |
and dword ptr [004355ACh], FE8EB909h |
call 00007FE034DC81A8h |
mov ax, word ptr [00439448h] |
cwde |
and dword ptr [004364CCh], eax |
call 00007FE034DB818Eh |
movsx eax, word ptr [0043A870h] |
not eax |
cmp eax, 89F860A1h |
jle 00007FE034DCF4C8h |
mov ecx, dword ptr [00434EF8h] |
mov eax, dword ptr [00438310h] |
and ecx, 57A11F5Bh |
or eax, 87C03C33h |
inc dword ptr [00434EF8h] |
cmp ecx, eax |
jl 00007FE034DCF4A8h |
mov ax, word ptr [00438B68h] |
push esi |
push 0042F15Ch |
push 0042F154h |
call 00007FE034DC525Eh |
add dword ptr [004340B0h], FDBF763Fh |
pop ecx |
pop ecx |
call 00007FE034DCBE05h |
imul ecx, dword ptr [004347E0h], 0000ED7Bh |
Programming Language: |
|
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x2f198 | 0x50 | .rdata |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x3c000 | 0x77e8 | .reloc |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x2f000 | 0x154 | .rdata |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x1000 | 0x2d4a4 | 0x2d600 | a008b9f965a55234d4e9fec1e12e9ec6 | False | 0.7345310347796143 | data | 6.839663016682375 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.rdata | 0x2f000 | 0x8be | 0xa00 | 55aa2668bd66e2095758bac52ad4d6a9 | False | 0.4265625 | data | 4.9731112242142945 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.data | 0x30000 | 0xbaa0 | 0x3e00 | bd6e729852a57125388e38f19ed205d8 | False | 0.9037298387096774 | data | 7.278103942872461 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.reloc | 0x3c000 | 0x77e8 | 0x7800 | 623b73b7d554b0184d990dca084cd43a | False | 0.77333984375 | data | 6.84069434637676 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ |
DLL | Import |
---|---|
GDI32.dll | GetBkColor, GetDCBrushColor, GetDCPenColor, GetClipRgn, GetMetaRgn, GetCurrentObject, GetDeviceCaps, GetObjectType, GetRandomRgn, GetStretchBltMode, GetSystemPaletteUse, GetTextCharacterExtra, GetTextAlign, GetTextColor, GetTextCharset, GetTextCharsetInfo, GetFontLanguageInfo |
USER32.dll | GetMenuContextHelpId, GetCursor, GetWindowLongA, LoadIconA, GetWindowContextHelpId, SetWindowTextA, RemovePropA, GetPropA, GetScrollPos, EndPaint, GetDC, WindowFromDC, GetForegroundWindow, DrawTextA, GetMenuCheckMarkDimensions, GetMenuItemCount, GetMenuItemID, GetMenuState, GetMenu, IsWindowEnabled, EnableWindow, GetQueueStatus, SetFocus, GetDialogBaseUnits, CheckDlgButton, SetDlgItemTextA, GetDlgItemInt, GetDlgItem, EndDialog, MoveWindow, ShowWindow, CallWindowProcA, PostMessageA, SendMessageA, BeginPaint |
KERNEL32.dll | MoveFileA, LocalFlags, GlobalHandle, GlobalFlags, GlobalSize, SizeofResource, LockResource, LoadResource, GetProcAddress, GetModuleHandleA, GetTickCount, GetVersion, IsProcessorFeaturePresent, GetCurrentProcessId, GetCurrentProcess, GetProcessHeap, HeapAlloc, QueryPerformanceCounter, GetLastError, CloseHandle, IsDebuggerPresent, WriteFile, SetFilePointer, GetFileType, GetFileTime, GetDriveTypeA, FlushFileBuffers, FindClose, DeleteFileA, GetStdHandle |
Timestamp | Protocol | SID | Signature | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|---|---|---|
2024-08-05T16:29:15.427900+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
2024-08-05T16:29:21.526506+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
2024-08-05T16:29:28.585913+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
2024-08-05T16:29:11.586178+0200 | UDP | 2811542 | ETPRO MALWARE Possible Tinba DGA NXDOMAIN Responses (net) | 53 | 56919 | 1.1.1.1 | 192.168.2.8 |
2024-08-05T16:29:12.540506+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
2024-08-05T16:29:15.432885+0200 | TCP | 2037771 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value btst | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
2024-08-05T16:29:17.836857+0200 | TCP | 2037771 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value btst | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
2024-08-05T16:29:31.727756+0200 | TCP | 2037771 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value btst | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
2024-08-05T16:31:09.914916+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
2024-08-05T16:30:40.325809+0200 | TCP | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
2024-08-05T16:29:18.843079+0200 | UDP | 2018316 | ET MALWARE Possible Zeus GameOver/FluBot Related DGA NXDOMAIN Responses | 53 | 54266 | 1.1.1.1 | 192.168.2.8 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Aug 5, 2024 16:29:12.065845013 CEST | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:12.071082115 CEST | 80 | 49704 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:12.071178913 CEST | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:12.071218014 CEST | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:12.076324940 CEST | 80 | 49704 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:12.540308952 CEST | 80 | 49704 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:12.540328979 CEST | 80 | 49704 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:12.540505886 CEST | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:12.540577888 CEST | 49704 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:12.545561075 CEST | 80 | 49704 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:14.686279058 CEST | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:29:14.692420006 CEST | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:29:14.692543030 CEST | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:29:14.692574024 CEST | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:29:14.698522091 CEST | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:29:15.427299976 CEST | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:29:15.427824020 CEST | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:29:15.427900076 CEST | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:29:15.428062916 CEST | 49705 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:29:15.432884932 CEST | 80 | 49705 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:29:17.035758972 CEST | 49706 | 80 | 192.168.2.8 | 34.246.200.160 |
Aug 5, 2024 16:29:17.040955067 CEST | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
Aug 5, 2024 16:29:17.041033983 CEST | 49706 | 80 | 192.168.2.8 | 34.246.200.160 |
Aug 5, 2024 16:29:17.041102886 CEST | 49706 | 80 | 192.168.2.8 | 34.246.200.160 |
Aug 5, 2024 16:29:17.046912909 CEST | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
Aug 5, 2024 16:29:17.830583096 CEST | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
Aug 5, 2024 16:29:17.831773996 CEST | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
Aug 5, 2024 16:29:17.831890106 CEST | 49706 | 80 | 192.168.2.8 | 34.246.200.160 |
Aug 5, 2024 16:29:17.831890106 CEST | 49706 | 80 | 192.168.2.8 | 34.246.200.160 |
Aug 5, 2024 16:29:17.836857080 CEST | 80 | 49706 | 34.246.200.160 | 192.168.2.8 |
Aug 5, 2024 16:29:19.529993057 CEST | 49707 | 80 | 192.168.2.8 | 15.197.142.173 |
Aug 5, 2024 16:29:19.535176992 CEST | 80 | 49707 | 15.197.142.173 | 192.168.2.8 |
Aug 5, 2024 16:29:19.535249949 CEST | 49707 | 80 | 192.168.2.8 | 15.197.142.173 |
Aug 5, 2024 16:29:19.535299063 CEST | 49707 | 80 | 192.168.2.8 | 15.197.142.173 |
Aug 5, 2024 16:29:19.540290117 CEST | 80 | 49707 | 15.197.142.173 | 192.168.2.8 |
Aug 5, 2024 16:29:20.101177931 CEST | 80 | 49707 | 15.197.142.173 | 192.168.2.8 |
Aug 5, 2024 16:29:20.101299047 CEST | 49707 | 80 | 192.168.2.8 | 15.197.142.173 |
Aug 5, 2024 16:29:20.117944956 CEST | 80 | 49707 | 15.197.142.173 | 192.168.2.8 |
Aug 5, 2024 16:29:20.117995977 CEST | 49707 | 80 | 192.168.2.8 | 15.197.142.173 |
Aug 5, 2024 16:29:21.049998999 CEST | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:21.055402994 CEST | 80 | 49711 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:21.055469036 CEST | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:21.055541992 CEST | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:21.060467958 CEST | 80 | 49711 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:21.526259899 CEST | 80 | 49711 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:21.526505947 CEST | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:21.526566029 CEST | 80 | 49711 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:21.526608944 CEST | 49711 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:21.531361103 CEST | 80 | 49711 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:24.561898947 CEST | 49714 | 80 | 192.168.2.8 | 85.13.130.3 |
Aug 5, 2024 16:29:24.566826105 CEST | 80 | 49714 | 85.13.130.3 | 192.168.2.8 |
Aug 5, 2024 16:29:24.566931009 CEST | 49714 | 80 | 192.168.2.8 | 85.13.130.3 |
Aug 5, 2024 16:29:24.566958904 CEST | 49714 | 80 | 192.168.2.8 | 85.13.130.3 |
Aug 5, 2024 16:29:24.571830034 CEST | 80 | 49714 | 85.13.130.3 | 192.168.2.8 |
Aug 5, 2024 16:29:25.243931055 CEST | 80 | 49714 | 85.13.130.3 | 192.168.2.8 |
Aug 5, 2024 16:29:25.244179010 CEST | 49714 | 80 | 192.168.2.8 | 85.13.130.3 |
Aug 5, 2024 16:29:25.244664907 CEST | 80 | 49714 | 85.13.130.3 | 192.168.2.8 |
Aug 5, 2024 16:29:25.244726896 CEST | 49714 | 80 | 192.168.2.8 | 85.13.130.3 |
Aug 5, 2024 16:29:25.249881029 CEST | 80 | 49714 | 85.13.130.3 | 192.168.2.8 |
Aug 5, 2024 16:29:25.418395996 CEST | 49715 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:25.426352978 CEST | 80 | 49715 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:25.426425934 CEST | 49715 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:25.426461935 CEST | 49715 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:25.433134079 CEST | 80 | 49715 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:26.839092970 CEST | 80 | 49715 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:26.839190006 CEST | 80 | 49715 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:26.839265108 CEST | 49715 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:26.839318991 CEST | 49715 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:29:26.845216036 CEST | 80 | 49715 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:29:28.090379953 CEST | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
Aug 5, 2024 16:29:28.096540928 CEST | 80 | 49716 | 170.187.200.48 | 192.168.2.8 |
Aug 5, 2024 16:29:28.096625090 CEST | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
Aug 5, 2024 16:29:28.096674919 CEST | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
Aug 5, 2024 16:29:28.102552891 CEST | 80 | 49716 | 170.187.200.48 | 192.168.2.8 |
Aug 5, 2024 16:29:28.585762978 CEST | 80 | 49716 | 170.187.200.48 | 192.168.2.8 |
Aug 5, 2024 16:29:28.585912943 CEST | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
Aug 5, 2024 16:29:28.585988998 CEST | 80 | 49716 | 170.187.200.48 | 192.168.2.8 |
Aug 5, 2024 16:29:28.586029053 CEST | 49716 | 80 | 192.168.2.8 | 170.187.200.48 |
Aug 5, 2024 16:29:28.591212988 CEST | 80 | 49716 | 170.187.200.48 | 192.168.2.8 |
Aug 5, 2024 16:29:28.899480104 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:28.904766083 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:28.904879093 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:28.904913902 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:28.909677982 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.508569956 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.508590937 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.508605003 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.508676052 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:29.508698940 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.508738995 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:29.508866072 CEST | 49717 | 80 | 192.168.2.8 | 213.171.195.105 |
Aug 5, 2024 16:29:29.514097929 CEST | 80 | 49717 | 213.171.195.105 | 192.168.2.8 |
Aug 5, 2024 16:29:29.894680023 CEST | 49718 | 80 | 192.168.2.8 | 64.190.63.222 |
Aug 5, 2024 16:29:29.899880886 CEST | 80 | 49718 | 64.190.63.222 | 192.168.2.8 |
Aug 5, 2024 16:29:29.899956942 CEST | 49718 | 80 | 192.168.2.8 | 64.190.63.222 |
Aug 5, 2024 16:29:29.900022030 CEST | 49718 | 80 | 192.168.2.8 | 64.190.63.222 |
Aug 5, 2024 16:29:29.904846907 CEST | 80 | 49718 | 64.190.63.222 | 192.168.2.8 |
Aug 5, 2024 16:29:30.538731098 CEST | 80 | 49718 | 64.190.63.222 | 192.168.2.8 |
Aug 5, 2024 16:29:30.538876057 CEST | 80 | 49718 | 64.190.63.222 | 192.168.2.8 |
Aug 5, 2024 16:29:30.539040089 CEST | 49718 | 80 | 192.168.2.8 | 64.190.63.222 |
Aug 5, 2024 16:29:30.539040089 CEST | 49718 | 80 | 192.168.2.8 | 64.190.63.222 |
Aug 5, 2024 16:29:30.544055939 CEST | 80 | 49718 | 64.190.63.222 | 192.168.2.8 |
Aug 5, 2024 16:29:30.991458893 CEST | 49719 | 80 | 192.168.2.8 | 54.244.188.177 |
Aug 5, 2024 16:29:30.997493029 CEST | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
Aug 5, 2024 16:29:30.997596025 CEST | 49719 | 80 | 192.168.2.8 | 54.244.188.177 |
Aug 5, 2024 16:29:30.997627974 CEST | 49719 | 80 | 192.168.2.8 | 54.244.188.177 |
Aug 5, 2024 16:29:31.003624916 CEST | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
Aug 5, 2024 16:29:31.721687078 CEST | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
Aug 5, 2024 16:29:31.722110987 CEST | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
Aug 5, 2024 16:29:31.722199917 CEST | 49719 | 80 | 192.168.2.8 | 54.244.188.177 |
Aug 5, 2024 16:29:31.722739935 CEST | 49719 | 80 | 192.168.2.8 | 54.244.188.177 |
Aug 5, 2024 16:29:31.727756023 CEST | 80 | 49719 | 54.244.188.177 | 192.168.2.8 |
Aug 5, 2024 16:29:33.677495956 CEST | 49720 | 80 | 192.168.2.8 | 81.169.145.88 |
Aug 5, 2024 16:29:33.682679892 CEST | 80 | 49720 | 81.169.145.88 | 192.168.2.8 |
Aug 5, 2024 16:29:33.682810068 CEST | 49720 | 80 | 192.168.2.8 | 81.169.145.88 |
Aug 5, 2024 16:29:33.682877064 CEST | 49720 | 80 | 192.168.2.8 | 81.169.145.88 |
Aug 5, 2024 16:29:33.688606977 CEST | 80 | 49720 | 81.169.145.88 | 192.168.2.8 |
Aug 5, 2024 16:29:34.358859062 CEST | 80 | 49720 | 81.169.145.88 | 192.168.2.8 |
Aug 5, 2024 16:29:34.359009981 CEST | 49720 | 80 | 192.168.2.8 | 81.169.145.88 |
Aug 5, 2024 16:29:34.359103918 CEST | 80 | 49720 | 81.169.145.88 | 192.168.2.8 |
Aug 5, 2024 16:29:34.359146118 CEST | 49720 | 80 | 192.168.2.8 | 81.169.145.88 |
Aug 5, 2024 16:29:34.363785982 CEST | 80 | 49720 | 81.169.145.88 | 192.168.2.8 |
Aug 5, 2024 16:29:36.427856922 CEST | 60223 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:36.432811975 CEST | 80 | 60223 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:36.432909012 CEST | 60223 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:36.432952881 CEST | 60223 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:36.437908888 CEST | 80 | 60223 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:36.959588051 CEST | 80 | 60223 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:36.959820986 CEST | 60223 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:36.959952116 CEST | 80 | 60223 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:36.960002899 CEST | 60223 | 80 | 192.168.2.8 | 15.197.192.55 |
Aug 5, 2024 16:29:36.964721918 CEST | 80 | 60223 | 15.197.192.55 | 192.168.2.8 |
Aug 5, 2024 16:29:37.878561974 CEST | 60224 | 80 | 192.168.2.8 | 188.225.40.227 |
Aug 5, 2024 16:29:37.883460045 CEST | 80 | 60224 | 188.225.40.227 | 192.168.2.8 |
Aug 5, 2024 16:29:37.883611917 CEST | 60224 | 80 | 192.168.2.8 | 188.225.40.227 |
Aug 5, 2024 16:29:37.883701086 CEST | 60224 | 80 | 192.168.2.8 | 188.225.40.227 |
Aug 5, 2024 16:29:37.888633966 CEST | 80 | 60224 | 188.225.40.227 | 192.168.2.8 |
Aug 5, 2024 16:29:38.609452009 CEST | 80 | 60224 | 188.225.40.227 | 192.168.2.8 |
Aug 5, 2024 16:29:38.609632969 CEST | 60224 | 80 | 192.168.2.8 | 188.225.40.227 |
Aug 5, 2024 16:29:38.611435890 CEST | 80 | 60224 | 188.225.40.227 | 192.168.2.8 |
Aug 5, 2024 16:29:38.611502886 CEST | 60224 | 80 | 192.168.2.8 | 188.225.40.227 |
Aug 5, 2024 16:29:38.614476919 CEST | 80 | 60224 | 188.225.40.227 | 192.168.2.8 |
Aug 5, 2024 16:30:39.833633900 CEST | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:30:39.838700056 CEST | 80 | 60228 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:30:39.838896990 CEST | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:30:39.838965893 CEST | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:30:39.843888998 CEST | 80 | 60228 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:30:40.325565100 CEST | 80 | 60228 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:30:40.325807095 CEST | 80 | 60228 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:30:40.325809002 CEST | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:30:40.325864077 CEST | 60228 | 80 | 192.168.2.8 | 3.33.130.190 |
Aug 5, 2024 16:30:40.330770016 CEST | 80 | 60228 | 3.33.130.190 | 192.168.2.8 |
Aug 5, 2024 16:31:08.895189047 CEST | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:31:09.140079021 CEST | 80 | 60229 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:31:09.141366959 CEST | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:31:09.141431093 CEST | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:31:09.146253109 CEST | 80 | 60229 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:31:09.908768892 CEST | 80 | 60229 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:31:09.908910990 CEST | 80 | 60229 | 35.164.78.200 | 192.168.2.8 |
Aug 5, 2024 16:31:09.914916039 CEST | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:31:09.914963961 CEST | 60229 | 80 | 192.168.2.8 | 35.164.78.200 |
Aug 5, 2024 16:31:09.919799089 CEST | 80 | 60229 | 35.164.78.200 | 192.168.2.8 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Aug 5, 2024 16:29:11.065494061 CEST | 61902 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.075903893 CEST | 53 | 61902 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.078541994 CEST | 49451 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.319818020 CEST | 53 | 49451 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.320658922 CEST | 63185 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.562056065 CEST | 53 | 63185 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.563086033 CEST | 55706 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.574672937 CEST | 53 | 55706 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.575319052 CEST | 56919 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.586178064 CEST | 53 | 56919 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.586781025 CEST | 55415 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.597752094 CEST | 53 | 55415 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.598402977 CEST | 61045 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:11.769155979 CEST | 53 | 61045 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:11.770251989 CEST | 62407 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.020760059 CEST | 53 | 62407 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.021816015 CEST | 55599 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.033452034 CEST | 53 | 55599 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.034068108 CEST | 59448 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.045797110 CEST | 53 | 59448 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.046355963 CEST | 59613 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.063851118 CEST | 53 | 59613 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.541176081 CEST | 61573 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.552897930 CEST | 53 | 61573 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.553683996 CEST | 64638 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.564909935 CEST | 53 | 64638 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.565465927 CEST | 60297 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.806520939 CEST | 53 | 60297 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.812391043 CEST | 57349 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.823904037 CEST | 53 | 57349 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.824645996 CEST | 50523 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:12.836756945 CEST | 53 | 50523 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:12.840949059 CEST | 52046 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.082669973 CEST | 53 | 52046 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.083547115 CEST | 61632 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.094002008 CEST | 53 | 61632 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.094641924 CEST | 59774 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.104852915 CEST | 53 | 59774 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.105659962 CEST | 64082 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.349757910 CEST | 53 | 64082 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.350748062 CEST | 63732 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.361143112 CEST | 53 | 63732 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.362283945 CEST | 52280 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.610430002 CEST | 53 | 52280 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.613801956 CEST | 62749 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.630697012 CEST | 53 | 62749 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.631630898 CEST | 61701 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.873183966 CEST | 53 | 61701 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.874267101 CEST | 57334 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.886759996 CEST | 53 | 57334 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.887563944 CEST | 53843 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.898473024 CEST | 53 | 53843 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.899183989 CEST | 58685 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.908046961 CEST | 53 | 58685 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.908596992 CEST | 59609 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:13.919905901 CEST | 53 | 59609 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:13.920641899 CEST | 50085 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.166552067 CEST | 53 | 50085 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.167725086 CEST | 54652 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.179265976 CEST | 53 | 54652 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.180432081 CEST | 58147 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.421227932 CEST | 53 | 58147 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.422060013 CEST | 62903 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.435067892 CEST | 53 | 62903 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.435710907 CEST | 59371 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.449076891 CEST | 53 | 59371 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.449692965 CEST | 53146 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.462477922 CEST | 53 | 53146 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.463047981 CEST | 56053 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.473382950 CEST | 53 | 56053 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.473974943 CEST | 64295 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.485368013 CEST | 53 | 64295 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.485919952 CEST | 54596 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.497977972 CEST | 53 | 54596 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:14.498548031 CEST | 49396 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:14.685664892 CEST | 53 | 49396 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.428821087 CEST | 65045 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.442127943 CEST | 53 | 65045 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.442900896 CEST | 62299 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.454788923 CEST | 53 | 62299 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.455332041 CEST | 59547 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.467430115 CEST | 53 | 59547 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.467931986 CEST | 59909 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.717009068 CEST | 53 | 59909 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.718341112 CEST | 52517 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.959619045 CEST | 53 | 52517 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.960390091 CEST | 61074 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.972425938 CEST | 53 | 61074 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.973066092 CEST | 57690 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:15.986114979 CEST | 53 | 57690 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:15.987015963 CEST | 61928 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.000363111 CEST | 53 | 61928 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.001110077 CEST | 50901 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.016840935 CEST | 53 | 50901 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.017591953 CEST | 63096 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.029915094 CEST | 53 | 63096 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.030514002 CEST | 56143 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.273901939 CEST | 53 | 56143 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.274945021 CEST | 53554 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.527143955 CEST | 53 | 53554 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.527899027 CEST | 56030 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.538775921 CEST | 53 | 56030 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.539710045 CEST | 53002 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.550420046 CEST | 53 | 53002 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.551245928 CEST | 63064 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.561091900 CEST | 53 | 63064 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.561868906 CEST | 52188 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.573014021 CEST | 53 | 52188 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.573728085 CEST | 57888 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.826725006 CEST | 53 | 57888 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.827564001 CEST | 59607 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:16.842817068 CEST | 53 | 59607 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:16.843451023 CEST | 56916 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:17.033474922 CEST | 53 | 56916 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:17.832559109 CEST | 61128 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.072935104 CEST | 53 | 61128 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.073951960 CEST | 58046 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.325112104 CEST | 53 | 58046 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.326138973 CEST | 56288 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.577333927 CEST | 53 | 56288 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.578224897 CEST | 63106 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.591264963 CEST | 53 | 63106 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.591835976 CEST | 49274 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.603315115 CEST | 53 | 49274 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.603794098 CEST | 54266 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:18.843079090 CEST | 53 | 54266 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:18.843851089 CEST | 55060 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:19.086600065 CEST | 53 | 55060 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:19.087703943 CEST | 64820 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:19.264308929 CEST | 53 | 64820 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:19.265280008 CEST | 54030 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:19.275741100 CEST | 53 | 54030 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:19.276313066 CEST | 60983 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:19.529501915 CEST | 53 | 60983 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.101965904 CEST | 49449 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.576548100 CEST | 53 | 49449 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.577208042 CEST | 56055 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.590104103 CEST | 53 | 56055 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.590744019 CEST | 55157 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.602689981 CEST | 53 | 55157 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.603493929 CEST | 52363 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.616842985 CEST | 53 | 52363 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.617430925 CEST | 58891 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.628355980 CEST | 53 | 58891 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.628869057 CEST | 55369 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.644896030 CEST | 53 | 55369 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.645447969 CEST | 52676 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:20.657478094 CEST | 53 | 52676 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:20.657969952 CEST | 58884 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.049282074 CEST | 53 | 58884 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.527123928 CEST | 54487 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.539367914 CEST | 53 | 54487 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.540577888 CEST | 54521 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.551533937 CEST | 53 | 54521 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.574789047 CEST | 52264 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.586282969 CEST | 53 | 52264 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.588284016 CEST | 65291 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.599277973 CEST | 53 | 65291 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.605344057 CEST | 63622 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.774164915 CEST | 53 | 63622 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.775163889 CEST | 59709 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:21.790712118 CEST | 53 | 59709 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:21.791454077 CEST | 53785 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.035350084 CEST | 53 | 53785 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.036303043 CEST | 59318 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.283190966 CEST | 53 | 59318 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.284100056 CEST | 49343 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.295522928 CEST | 53 | 49343 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.296231985 CEST | 54338 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.542083025 CEST | 53 | 54338 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.543116093 CEST | 60614 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.556404114 CEST | 53 | 60614 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.557199955 CEST | 64796 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.802392006 CEST | 53 | 64796 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.803252935 CEST | 59535 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:22.816875935 CEST | 53 | 59535 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:22.817553997 CEST | 65507 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.068275928 CEST | 53 | 65507 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.069380045 CEST | 50452 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.080602884 CEST | 53 | 50452 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.081440926 CEST | 65494 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.092896938 CEST | 53 | 65494 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.094146967 CEST | 65405 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.105020046 CEST | 53 | 65405 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.105925083 CEST | 64963 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.349452019 CEST | 53 | 64963 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.350382090 CEST | 58878 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.600841045 CEST | 53 | 58878 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.601757050 CEST | 49435 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.844789028 CEST | 53 | 49435 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.845623016 CEST | 57941 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:23.856199026 CEST | 53 | 57941 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:23.859431982 CEST | 58600 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.110539913 CEST | 53 | 58600 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:24.111649036 CEST | 63584 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.121798992 CEST | 53 | 63584 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:24.122636080 CEST | 54531 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.132436991 CEST | 53 | 54531 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:24.133210897 CEST | 50134 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.374351978 CEST | 53 | 50134 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:24.375549078 CEST | 55497 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.386292934 CEST | 53 | 55497 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:24.387716055 CEST | 60783 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:24.561223030 CEST | 53 | 60783 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:25.244843006 CEST | 55776 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:25.405180931 CEST | 53 | 55776 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:25.406193018 CEST | 61375 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:25.417926073 CEST | 53 | 61375 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:26.839979887 CEST | 60552 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.180814028 CEST | 53 | 60552 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.181804895 CEST | 51064 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.193702936 CEST | 53 | 51064 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.209050894 CEST | 56435 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.218801022 CEST | 53 | 56435 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.219665051 CEST | 52736 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.231834888 CEST | 53 | 52736 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.232584953 CEST | 60107 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.241944075 CEST | 53 | 60107 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.244308949 CEST | 56179 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.255887032 CEST | 53 | 56179 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.256525040 CEST | 61442 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.268976927 CEST | 53 | 61442 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.269598007 CEST | 64228 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.280803919 CEST | 53 | 64228 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.281316042 CEST | 62040 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.292068958 CEST | 53 | 62040 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.295509100 CEST | 62309 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.540225029 CEST | 53 | 62309 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.541318893 CEST | 64780 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.551896095 CEST | 53 | 64780 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.552515984 CEST | 63310 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.563276052 CEST | 53 | 63310 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.563822985 CEST | 64996 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.575335979 CEST | 53 | 64996 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.576066971 CEST | 53297 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.586533070 CEST | 53 | 53297 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.587156057 CEST | 55776 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:27.835112095 CEST | 53 | 55776 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:27.836185932 CEST | 55908 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.089803934 CEST | 53 | 55908 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:28.586568117 CEST | 62848 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.598711014 CEST | 53 | 62848 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:28.599617958 CEST | 63537 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.611409903 CEST | 53 | 63537 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:28.612117052 CEST | 52678 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.623290062 CEST | 53 | 52678 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:28.623883963 CEST | 61162 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.633673906 CEST | 53 | 61162 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:28.634130001 CEST | 51776 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:28.898875952 CEST | 53 | 51776 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:29.509442091 CEST | 62894 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:29.893948078 CEST | 53 | 62894 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:30.539659023 CEST | 53234 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:30.550525904 CEST | 53 | 53234 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:30.551412106 CEST | 64272 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:30.561933041 CEST | 53 | 64272 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:30.562755108 CEST | 63496 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:30.990739107 CEST | 53 | 63496 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:31.722907066 CEST | 49589 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:31.735565901 CEST | 53 | 49589 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:31.736613035 CEST | 55558 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:31.986884117 CEST | 53 | 55558 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:31.987783909 CEST | 63806 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.229449034 CEST | 53 | 63806 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.230547905 CEST | 58099 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.471544027 CEST | 53 | 58099 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.472404003 CEST | 61168 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.715445042 CEST | 53 | 61168 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.716721058 CEST | 59232 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.728327990 CEST | 53 | 59232 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.729016066 CEST | 54417 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.739342928 CEST | 53 | 54417 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.740132093 CEST | 51042 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.753119946 CEST | 53 | 51042 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.753752947 CEST | 57280 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.764743090 CEST | 53 | 57280 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.765336037 CEST | 64841 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.776576042 CEST | 53 | 64841 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.777215004 CEST | 55796 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.788311005 CEST | 53 | 55796 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.788881063 CEST | 52455 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.799129009 CEST | 53 | 52455 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.799729109 CEST | 60613 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.833617926 CEST | 53 | 60613 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.836863041 CEST | 63224 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.849631071 CEST | 53 | 63224 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.850334883 CEST | 55954 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:32.862149954 CEST | 53 | 55954 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:32.863744020 CEST | 50278 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:33.105950117 CEST | 53 | 50278 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:33.106801987 CEST | 58968 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:33.347024918 CEST | 53 | 58968 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:33.348392963 CEST | 54067 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:33.676670074 CEST | 53 | 54067 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.359734058 CEST | 50581 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:34.372128963 CEST | 53 | 50581 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.373200893 CEST | 57769 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:34.386163950 CEST | 53 | 57769 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.387434959 CEST | 51101 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:34.398993969 CEST | 53 | 51101 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.399947882 CEST | 57612 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:34.408263922 CEST | 53 | 57612 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.983928919 CEST | 55829 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:34.996634960 CEST | 53 | 55829 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:34.997538090 CEST | 50716 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.245126963 CEST | 53 | 50716 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.246263027 CEST | 64643 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.491301060 CEST | 53 | 64643 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.492263079 CEST | 65313 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.503212929 CEST | 53 | 65313 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.503863096 CEST | 54613 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.743726015 CEST | 53 | 54613 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.744888067 CEST | 51099 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.755346060 CEST | 53 | 51099 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.756145000 CEST | 64170 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.916809082 CEST | 53 | 64170 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.918016911 CEST | 64943 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:35.928347111 CEST | 53 | 64943 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:35.929451942 CEST | 59758 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:36.426992893 CEST | 53 | 59758 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:36.961030960 CEST | 58011 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:36.977796078 CEST | 53 | 58011 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:36.978693008 CEST | 62706 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.231750011 CEST | 53 | 62706 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:37.232698917 CEST | 65397 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.242609978 CEST | 53 | 65397 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:37.243967056 CEST | 64720 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.258848906 CEST | 53 | 64720 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:37.259624004 CEST | 60765 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.276952028 CEST | 53 | 60765 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:37.277749062 CEST | 58144 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.289258003 CEST | 53 | 58144 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:37.290199995 CEST | 60845 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:37.877857924 CEST | 53 | 60845 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:38.610333920 CEST | 49218 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:38.621022940 CEST | 53 | 49218 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:38.621824980 CEST | 55401 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:38.631786108 CEST | 53 | 55401 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:29:38.633855104 CEST | 53886 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:29:38.884322882 CEST | 53 | 53886 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:30.198882103 CEST | 63775 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:30.211678028 CEST | 53 | 63775 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:31.220506907 CEST | 54126 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:31.232464075 CEST | 53 | 54126 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:32.236110926 CEST | 53781 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:32.477427959 CEST | 53 | 53781 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:33.486401081 CEST | 64797 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:33.496949911 CEST | 53 | 64797 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:34.501719952 CEST | 55778 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:34.741450071 CEST | 53 | 55778 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:35.751744986 CEST | 62524 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:35.763319016 CEST | 53 | 62524 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:36.767462015 CEST | 65127 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:36.782304049 CEST | 53 | 65127 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:37.798796892 CEST | 65401 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:37.810231924 CEST | 53 | 65401 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:38.814814091 CEST | 61698 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:38.828094959 CEST | 53 | 61698 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:41.329832077 CEST | 59382 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:41.581301928 CEST | 53 | 59382 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:42.595699072 CEST | 59726 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:42.606931925 CEST | 53 | 59726 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:43.611092091 CEST | 60968 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:43.622618914 CEST | 53 | 60968 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:44.627640009 CEST | 54430 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:44.639799118 CEST | 53 | 54430 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:45.642466068 CEST | 54316 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:45.720616102 CEST | 53 | 54316 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:46.736110926 CEST | 63484 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:46.980622053 CEST | 53 | 63484 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:47.986190081 CEST | 65316 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:47.997689009 CEST | 53 | 65316 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:49.002470016 CEST | 62730 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:49.020262003 CEST | 53 | 62730 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:50.032907963 CEST | 60309 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:50.044676065 CEST | 53 | 60309 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:51.048510075 CEST | 53535 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:51.060859919 CEST | 53 | 53535 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:52.064111948 CEST | 58130 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:52.074872017 CEST | 53 | 58130 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:53.080308914 CEST | 61560 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:53.100538015 CEST | 53 | 61560 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:54.114175081 CEST | 50586 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:54.125411987 CEST | 53 | 50586 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:55.142385960 CEST | 62163 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:55.160931110 CEST | 53 | 62163 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:56.173604965 CEST | 52005 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:56.414340019 CEST | 53 | 52005 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:57.423520088 CEST | 50887 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:57.437084913 CEST | 53 | 50887 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:58.439157963 CEST | 60556 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:58.684453964 CEST | 53 | 60556 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:30:59.689167976 CEST | 64071 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:30:59.699279070 CEST | 53 | 64071 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:00.704968929 CEST | 55694 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:00.946132898 CEST | 53 | 55694 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:01.954981089 CEST | 50918 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:01.965470076 CEST | 53 | 50918 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:03.009968996 CEST | 51571 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:03.020843029 CEST | 53 | 51571 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:04.048811913 CEST | 61642 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:04.060475111 CEST | 53 | 61642 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:05.033351898 CEST | 64006 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:05.277419090 CEST | 53 | 64006 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:06.220510006 CEST | 53718 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:06.230575085 CEST | 53 | 53718 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:07.142529964 CEST | 50010 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:07.155838966 CEST | 53 | 50010 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:08.033078909 CEST | 58155 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:08.045919895 CEST | 53 | 58155 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:10.736260891 CEST | 56232 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:11.173512936 CEST | 53 | 56232 | 1.1.1.1 | 192.168.2.8 |
Aug 5, 2024 16:31:11.970381975 CEST | 56393 | 53 | 192.168.2.8 | 1.1.1.1 |
Aug 5, 2024 16:31:11.978821993 CEST | 53 | 56393 | 1.1.1.1 | 192.168.2.8 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Aug 5, 2024 16:29:11.065494061 CEST | 192.168.2.8 | 1.1.1.1 | 0x6d10 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.078541994 CEST | 192.168.2.8 | 1.1.1.1 | 0x8476 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.320658922 CEST | 192.168.2.8 | 1.1.1.1 | 0xfe28 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.563086033 CEST | 192.168.2.8 | 1.1.1.1 | 0xd7bb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.575319052 CEST | 192.168.2.8 | 1.1.1.1 | 0x88ae | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.586781025 CEST | 192.168.2.8 | 1.1.1.1 | 0x9463 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.598402977 CEST | 192.168.2.8 | 1.1.1.1 | 0x38e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.770251989 CEST | 192.168.2.8 | 1.1.1.1 | 0x3387 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.021816015 CEST | 192.168.2.8 | 1.1.1.1 | 0x4e84 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.034068108 CEST | 192.168.2.8 | 1.1.1.1 | 0x2b79 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.046355963 CEST | 192.168.2.8 | 1.1.1.1 | 0xc3a9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.541176081 CEST | 192.168.2.8 | 1.1.1.1 | 0x4803 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.553683996 CEST | 192.168.2.8 | 1.1.1.1 | 0xd9aa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.565465927 CEST | 192.168.2.8 | 1.1.1.1 | 0x1f95 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.812391043 CEST | 192.168.2.8 | 1.1.1.1 | 0xb26 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.824645996 CEST | 192.168.2.8 | 1.1.1.1 | 0x3b37 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.840949059 CEST | 192.168.2.8 | 1.1.1.1 | 0xaf47 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.083547115 CEST | 192.168.2.8 | 1.1.1.1 | 0x9bd2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.094641924 CEST | 192.168.2.8 | 1.1.1.1 | 0xb315 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.105659962 CEST | 192.168.2.8 | 1.1.1.1 | 0x28bb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.350748062 CEST | 192.168.2.8 | 1.1.1.1 | 0x79f9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.362283945 CEST | 192.168.2.8 | 1.1.1.1 | 0x7c87 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.613801956 CEST | 192.168.2.8 | 1.1.1.1 | 0x614d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.631630898 CEST | 192.168.2.8 | 1.1.1.1 | 0x137f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.874267101 CEST | 192.168.2.8 | 1.1.1.1 | 0xa541 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.887563944 CEST | 192.168.2.8 | 1.1.1.1 | 0x52e0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.899183989 CEST | 192.168.2.8 | 1.1.1.1 | 0x7cd6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.908596992 CEST | 192.168.2.8 | 1.1.1.1 | 0x7fa7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.920641899 CEST | 192.168.2.8 | 1.1.1.1 | 0x3357 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.167725086 CEST | 192.168.2.8 | 1.1.1.1 | 0x3ef9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.180432081 CEST | 192.168.2.8 | 1.1.1.1 | 0x9ea2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.422060013 CEST | 192.168.2.8 | 1.1.1.1 | 0x10cb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.435710907 CEST | 192.168.2.8 | 1.1.1.1 | 0xe392 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.449692965 CEST | 192.168.2.8 | 1.1.1.1 | 0x9a7d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.463047981 CEST | 192.168.2.8 | 1.1.1.1 | 0xeda | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.473974943 CEST | 192.168.2.8 | 1.1.1.1 | 0x7059 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.485919952 CEST | 192.168.2.8 | 1.1.1.1 | 0x942c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.498548031 CEST | 192.168.2.8 | 1.1.1.1 | 0xf05f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.428821087 CEST | 192.168.2.8 | 1.1.1.1 | 0x6e28 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.442900896 CEST | 192.168.2.8 | 1.1.1.1 | 0x68f1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.455332041 CEST | 192.168.2.8 | 1.1.1.1 | 0xedf9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.467931986 CEST | 192.168.2.8 | 1.1.1.1 | 0x4d20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.718341112 CEST | 192.168.2.8 | 1.1.1.1 | 0xb61d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.960390091 CEST | 192.168.2.8 | 1.1.1.1 | 0x799f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.973066092 CEST | 192.168.2.8 | 1.1.1.1 | 0x304 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.987015963 CEST | 192.168.2.8 | 1.1.1.1 | 0x62bf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.001110077 CEST | 192.168.2.8 | 1.1.1.1 | 0xc50b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.017591953 CEST | 192.168.2.8 | 1.1.1.1 | 0x6516 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.030514002 CEST | 192.168.2.8 | 1.1.1.1 | 0x4770 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.274945021 CEST | 192.168.2.8 | 1.1.1.1 | 0x70fb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.527899027 CEST | 192.168.2.8 | 1.1.1.1 | 0x2cab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.539710045 CEST | 192.168.2.8 | 1.1.1.1 | 0x3930 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.551245928 CEST | 192.168.2.8 | 1.1.1.1 | 0x8d10 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.561868906 CEST | 192.168.2.8 | 1.1.1.1 | 0x13ef | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.573728085 CEST | 192.168.2.8 | 1.1.1.1 | 0xbf38 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.827564001 CEST | 192.168.2.8 | 1.1.1.1 | 0x8305 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.843451023 CEST | 192.168.2.8 | 1.1.1.1 | 0xb621 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:17.832559109 CEST | 192.168.2.8 | 1.1.1.1 | 0x1a7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.073951960 CEST | 192.168.2.8 | 1.1.1.1 | 0xf4fd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.326138973 CEST | 192.168.2.8 | 1.1.1.1 | 0x52a1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.578224897 CEST | 192.168.2.8 | 1.1.1.1 | 0xae7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.591835976 CEST | 192.168.2.8 | 1.1.1.1 | 0x2b38 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.603794098 CEST | 192.168.2.8 | 1.1.1.1 | 0x696 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.843851089 CEST | 192.168.2.8 | 1.1.1.1 | 0x89ba | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.087703943 CEST | 192.168.2.8 | 1.1.1.1 | 0x8c0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.265280008 CEST | 192.168.2.8 | 1.1.1.1 | 0x2ccd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.276313066 CEST | 192.168.2.8 | 1.1.1.1 | 0x604a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.101965904 CEST | 192.168.2.8 | 1.1.1.1 | 0x34c0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.577208042 CEST | 192.168.2.8 | 1.1.1.1 | 0x43ea | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.590744019 CEST | 192.168.2.8 | 1.1.1.1 | 0xcfce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.603493929 CEST | 192.168.2.8 | 1.1.1.1 | 0xe433 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.617430925 CEST | 192.168.2.8 | 1.1.1.1 | 0xaf58 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.628869057 CEST | 192.168.2.8 | 1.1.1.1 | 0xbab5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.645447969 CEST | 192.168.2.8 | 1.1.1.1 | 0xdc0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.657969952 CEST | 192.168.2.8 | 1.1.1.1 | 0xda1e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.527123928 CEST | 192.168.2.8 | 1.1.1.1 | 0x33ac | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.540577888 CEST | 192.168.2.8 | 1.1.1.1 | 0xc188 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.574789047 CEST | 192.168.2.8 | 1.1.1.1 | 0x2213 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.588284016 CEST | 192.168.2.8 | 1.1.1.1 | 0x711b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.605344057 CEST | 192.168.2.8 | 1.1.1.1 | 0x46c1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.775163889 CEST | 192.168.2.8 | 1.1.1.1 | 0x83cd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.791454077 CEST | 192.168.2.8 | 1.1.1.1 | 0x80 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.036303043 CEST | 192.168.2.8 | 1.1.1.1 | 0x3781 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.284100056 CEST | 192.168.2.8 | 1.1.1.1 | 0xb7c2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.296231985 CEST | 192.168.2.8 | 1.1.1.1 | 0x767d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.543116093 CEST | 192.168.2.8 | 1.1.1.1 | 0xcff | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.557199955 CEST | 192.168.2.8 | 1.1.1.1 | 0xfdc6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.803252935 CEST | 192.168.2.8 | 1.1.1.1 | 0xf6d0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.817553997 CEST | 192.168.2.8 | 1.1.1.1 | 0xc008 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.069380045 CEST | 192.168.2.8 | 1.1.1.1 | 0xf4c0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.081440926 CEST | 192.168.2.8 | 1.1.1.1 | 0xc1ca | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.094146967 CEST | 192.168.2.8 | 1.1.1.1 | 0xdcd7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.105925083 CEST | 192.168.2.8 | 1.1.1.1 | 0xf441 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.350382090 CEST | 192.168.2.8 | 1.1.1.1 | 0x974b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.601757050 CEST | 192.168.2.8 | 1.1.1.1 | 0x413e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.845623016 CEST | 192.168.2.8 | 1.1.1.1 | 0x289d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.859431982 CEST | 192.168.2.8 | 1.1.1.1 | 0x9770 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.111649036 CEST | 192.168.2.8 | 1.1.1.1 | 0x4c2e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.122636080 CEST | 192.168.2.8 | 1.1.1.1 | 0x9aa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.133210897 CEST | 192.168.2.8 | 1.1.1.1 | 0x6f24 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.375549078 CEST | 192.168.2.8 | 1.1.1.1 | 0x3251 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.387716055 CEST | 192.168.2.8 | 1.1.1.1 | 0x3d51 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:25.244843006 CEST | 192.168.2.8 | 1.1.1.1 | 0x4fdf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:25.406193018 CEST | 192.168.2.8 | 1.1.1.1 | 0x254f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:26.839979887 CEST | 192.168.2.8 | 1.1.1.1 | 0xdaa5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.181804895 CEST | 192.168.2.8 | 1.1.1.1 | 0x3be6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.209050894 CEST | 192.168.2.8 | 1.1.1.1 | 0xd2e6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.219665051 CEST | 192.168.2.8 | 1.1.1.1 | 0xa591 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.232584953 CEST | 192.168.2.8 | 1.1.1.1 | 0x57c8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.244308949 CEST | 192.168.2.8 | 1.1.1.1 | 0xa8ca | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.256525040 CEST | 192.168.2.8 | 1.1.1.1 | 0xc0bc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.269598007 CEST | 192.168.2.8 | 1.1.1.1 | 0x82be | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.281316042 CEST | 192.168.2.8 | 1.1.1.1 | 0x34a7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.295509100 CEST | 192.168.2.8 | 1.1.1.1 | 0xc793 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.541318893 CEST | 192.168.2.8 | 1.1.1.1 | 0x6ff4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.552515984 CEST | 192.168.2.8 | 1.1.1.1 | 0xb55c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.563822985 CEST | 192.168.2.8 | 1.1.1.1 | 0xbf43 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.576066971 CEST | 192.168.2.8 | 1.1.1.1 | 0x2c77 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.587156057 CEST | 192.168.2.8 | 1.1.1.1 | 0x8c6b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.836185932 CEST | 192.168.2.8 | 1.1.1.1 | 0x4106 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.586568117 CEST | 192.168.2.8 | 1.1.1.1 | 0xbc52 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.599617958 CEST | 192.168.2.8 | 1.1.1.1 | 0x5215 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.612117052 CEST | 192.168.2.8 | 1.1.1.1 | 0xe59c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.623883963 CEST | 192.168.2.8 | 1.1.1.1 | 0xb28e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.634130001 CEST | 192.168.2.8 | 1.1.1.1 | 0xe350 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:29.509442091 CEST | 192.168.2.8 | 1.1.1.1 | 0xc454 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:30.539659023 CEST | 192.168.2.8 | 1.1.1.1 | 0xbc3b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:30.551412106 CEST | 192.168.2.8 | 1.1.1.1 | 0x21b1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:30.562755108 CEST | 192.168.2.8 | 1.1.1.1 | 0xa572 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:31.722907066 CEST | 192.168.2.8 | 1.1.1.1 | 0x2bfd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:31.736613035 CEST | 192.168.2.8 | 1.1.1.1 | 0x407d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:31.987783909 CEST | 192.168.2.8 | 1.1.1.1 | 0xa179 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.230547905 CEST | 192.168.2.8 | 1.1.1.1 | 0x6759 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.472404003 CEST | 192.168.2.8 | 1.1.1.1 | 0x88f9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.716721058 CEST | 192.168.2.8 | 1.1.1.1 | 0x9f5f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.729016066 CEST | 192.168.2.8 | 1.1.1.1 | 0xf9a2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.740132093 CEST | 192.168.2.8 | 1.1.1.1 | 0xac47 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.753752947 CEST | 192.168.2.8 | 1.1.1.1 | 0x5114 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.765336037 CEST | 192.168.2.8 | 1.1.1.1 | 0x6a23 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.777215004 CEST | 192.168.2.8 | 1.1.1.1 | 0x561e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.788881063 CEST | 192.168.2.8 | 1.1.1.1 | 0x9abc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.799729109 CEST | 192.168.2.8 | 1.1.1.1 | 0xf52b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.836863041 CEST | 192.168.2.8 | 1.1.1.1 | 0xc0db | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.850334883 CEST | 192.168.2.8 | 1.1.1.1 | 0xb32c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.863744020 CEST | 192.168.2.8 | 1.1.1.1 | 0x9f65 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:33.106801987 CEST | 192.168.2.8 | 1.1.1.1 | 0x8a77 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:33.348392963 CEST | 192.168.2.8 | 1.1.1.1 | 0x6b13 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.359734058 CEST | 192.168.2.8 | 1.1.1.1 | 0x1d6c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.373200893 CEST | 192.168.2.8 | 1.1.1.1 | 0x81d2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.387434959 CEST | 192.168.2.8 | 1.1.1.1 | 0x6b12 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.399947882 CEST | 192.168.2.8 | 1.1.1.1 | 0x463a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.983928919 CEST | 192.168.2.8 | 1.1.1.1 | 0xb6b7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.997538090 CEST | 192.168.2.8 | 1.1.1.1 | 0xf2ce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.246263027 CEST | 192.168.2.8 | 1.1.1.1 | 0x2ce3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.492263079 CEST | 192.168.2.8 | 1.1.1.1 | 0x7ac2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.503863096 CEST | 192.168.2.8 | 1.1.1.1 | 0x7e89 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.744888067 CEST | 192.168.2.8 | 1.1.1.1 | 0x2d97 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.756145000 CEST | 192.168.2.8 | 1.1.1.1 | 0x12d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.918016911 CEST | 192.168.2.8 | 1.1.1.1 | 0x2a0a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.929451942 CEST | 192.168.2.8 | 1.1.1.1 | 0x7839 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:36.961030960 CEST | 192.168.2.8 | 1.1.1.1 | 0xe21 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:36.978693008 CEST | 192.168.2.8 | 1.1.1.1 | 0xa71a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.232698917 CEST | 192.168.2.8 | 1.1.1.1 | 0x3525 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.243967056 CEST | 192.168.2.8 | 1.1.1.1 | 0xf5e7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.259624004 CEST | 192.168.2.8 | 1.1.1.1 | 0xfd1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.277749062 CEST | 192.168.2.8 | 1.1.1.1 | 0x7520 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.290199995 CEST | 192.168.2.8 | 1.1.1.1 | 0x154f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:38.610333920 CEST | 192.168.2.8 | 1.1.1.1 | 0x1d24 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:38.621824980 CEST | 192.168.2.8 | 1.1.1.1 | 0x5b5d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:38.633855104 CEST | 192.168.2.8 | 1.1.1.1 | 0xc016 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:30.198882103 CEST | 192.168.2.8 | 1.1.1.1 | 0x9c67 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:31.220506907 CEST | 192.168.2.8 | 1.1.1.1 | 0xd09 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:32.236110926 CEST | 192.168.2.8 | 1.1.1.1 | 0x9ae1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:33.486401081 CEST | 192.168.2.8 | 1.1.1.1 | 0xe179 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:34.501719952 CEST | 192.168.2.8 | 1.1.1.1 | 0x463b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:35.751744986 CEST | 192.168.2.8 | 1.1.1.1 | 0xfec1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:36.767462015 CEST | 192.168.2.8 | 1.1.1.1 | 0x1880 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:37.798796892 CEST | 192.168.2.8 | 1.1.1.1 | 0x49d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:38.814814091 CEST | 192.168.2.8 | 1.1.1.1 | 0x6890 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:41.329832077 CEST | 192.168.2.8 | 1.1.1.1 | 0x749a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:42.595699072 CEST | 192.168.2.8 | 1.1.1.1 | 0xf04 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:43.611092091 CEST | 192.168.2.8 | 1.1.1.1 | 0x6903 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:44.627640009 CEST | 192.168.2.8 | 1.1.1.1 | 0x3984 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:45.642466068 CEST | 192.168.2.8 | 1.1.1.1 | 0x8a3d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:46.736110926 CEST | 192.168.2.8 | 1.1.1.1 | 0x9178 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:47.986190081 CEST | 192.168.2.8 | 1.1.1.1 | 0x1fbf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:49.002470016 CEST | 192.168.2.8 | 1.1.1.1 | 0xf922 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:50.032907963 CEST | 192.168.2.8 | 1.1.1.1 | 0x8935 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:51.048510075 CEST | 192.168.2.8 | 1.1.1.1 | 0x7c09 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:52.064111948 CEST | 192.168.2.8 | 1.1.1.1 | 0xad79 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:53.080308914 CEST | 192.168.2.8 | 1.1.1.1 | 0x482c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:54.114175081 CEST | 192.168.2.8 | 1.1.1.1 | 0x2639 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:55.142385960 CEST | 192.168.2.8 | 1.1.1.1 | 0x8ac6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:56.173604965 CEST | 192.168.2.8 | 1.1.1.1 | 0xb15d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:57.423520088 CEST | 192.168.2.8 | 1.1.1.1 | 0x176e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:58.439157963 CEST | 192.168.2.8 | 1.1.1.1 | 0xda66 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:59.689167976 CEST | 192.168.2.8 | 1.1.1.1 | 0xc207 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:00.704968929 CEST | 192.168.2.8 | 1.1.1.1 | 0x6279 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:01.954981089 CEST | 192.168.2.8 | 1.1.1.1 | 0xbb7d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:03.009968996 CEST | 192.168.2.8 | 1.1.1.1 | 0xbf1f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:04.048811913 CEST | 192.168.2.8 | 1.1.1.1 | 0xa1b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:05.033351898 CEST | 192.168.2.8 | 1.1.1.1 | 0x96f5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:06.220510006 CEST | 192.168.2.8 | 1.1.1.1 | 0xc0f4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:07.142529964 CEST | 192.168.2.8 | 1.1.1.1 | 0xb540 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:08.033078909 CEST | 192.168.2.8 | 1.1.1.1 | 0xa8c9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:10.736260891 CEST | 192.168.2.8 | 1.1.1.1 | 0x17b8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:11.970381975 CEST | 192.168.2.8 | 1.1.1.1 | 0x270b | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Aug 5, 2024 16:29:11.075903893 CEST | 1.1.1.1 | 192.168.2.8 | 0x6d10 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.319818020 CEST | 1.1.1.1 | 192.168.2.8 | 0x8476 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.562056065 CEST | 1.1.1.1 | 192.168.2.8 | 0xfe28 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.574672937 CEST | 1.1.1.1 | 192.168.2.8 | 0xd7bb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.586178064 CEST | 1.1.1.1 | 192.168.2.8 | 0x88ae | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.597752094 CEST | 1.1.1.1 | 192.168.2.8 | 0x9463 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:11.769155979 CEST | 1.1.1.1 | 192.168.2.8 | 0x38e8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.020760059 CEST | 1.1.1.1 | 192.168.2.8 | 0x3387 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.033452034 CEST | 1.1.1.1 | 192.168.2.8 | 0x4e84 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.045797110 CEST | 1.1.1.1 | 192.168.2.8 | 0x2b79 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.063851118 CEST | 1.1.1.1 | 192.168.2.8 | 0xc3a9 | No error (0) | 3.33.130.190 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:12.063851118 CEST | 1.1.1.1 | 192.168.2.8 | 0xc3a9 | No error (0) | 15.197.148.33 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:12.552897930 CEST | 1.1.1.1 | 192.168.2.8 | 0x4803 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.564909935 CEST | 1.1.1.1 | 192.168.2.8 | 0xd9aa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.806520939 CEST | 1.1.1.1 | 192.168.2.8 | 0x1f95 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.823904037 CEST | 1.1.1.1 | 192.168.2.8 | 0xb26 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:12.836756945 CEST | 1.1.1.1 | 192.168.2.8 | 0x3b37 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.082669973 CEST | 1.1.1.1 | 192.168.2.8 | 0xaf47 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.094002008 CEST | 1.1.1.1 | 192.168.2.8 | 0x9bd2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.104852915 CEST | 1.1.1.1 | 192.168.2.8 | 0xb315 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.349757910 CEST | 1.1.1.1 | 192.168.2.8 | 0x28bb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.361143112 CEST | 1.1.1.1 | 192.168.2.8 | 0x79f9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.610430002 CEST | 1.1.1.1 | 192.168.2.8 | 0x7c87 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.630697012 CEST | 1.1.1.1 | 192.168.2.8 | 0x614d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.873183966 CEST | 1.1.1.1 | 192.168.2.8 | 0x137f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.886759996 CEST | 1.1.1.1 | 192.168.2.8 | 0xa541 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.898473024 CEST | 1.1.1.1 | 192.168.2.8 | 0x52e0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.908046961 CEST | 1.1.1.1 | 192.168.2.8 | 0x7cd6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:13.919905901 CEST | 1.1.1.1 | 192.168.2.8 | 0x7fa7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.166552067 CEST | 1.1.1.1 | 192.168.2.8 | 0x3357 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.179265976 CEST | 1.1.1.1 | 192.168.2.8 | 0x3ef9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.421227932 CEST | 1.1.1.1 | 192.168.2.8 | 0x9ea2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.435067892 CEST | 1.1.1.1 | 192.168.2.8 | 0x10cb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.449076891 CEST | 1.1.1.1 | 192.168.2.8 | 0xe392 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.462477922 CEST | 1.1.1.1 | 192.168.2.8 | 0x9a7d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.473382950 CEST | 1.1.1.1 | 192.168.2.8 | 0xeda | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.485368013 CEST | 1.1.1.1 | 192.168.2.8 | 0x7059 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.497977972 CEST | 1.1.1.1 | 192.168.2.8 | 0x942c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:14.685664892 CEST | 1.1.1.1 | 192.168.2.8 | 0xf05f | No error (0) | 35.164.78.200 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:15.442127943 CEST | 1.1.1.1 | 192.168.2.8 | 0x6e28 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.454788923 CEST | 1.1.1.1 | 192.168.2.8 | 0x68f1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.467430115 CEST | 1.1.1.1 | 192.168.2.8 | 0xedf9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.717009068 CEST | 1.1.1.1 | 192.168.2.8 | 0x4d20 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.959619045 CEST | 1.1.1.1 | 192.168.2.8 | 0xb61d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.972425938 CEST | 1.1.1.1 | 192.168.2.8 | 0x799f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:15.986114979 CEST | 1.1.1.1 | 192.168.2.8 | 0x304 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.000363111 CEST | 1.1.1.1 | 192.168.2.8 | 0x62bf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.016840935 CEST | 1.1.1.1 | 192.168.2.8 | 0xc50b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.029915094 CEST | 1.1.1.1 | 192.168.2.8 | 0x6516 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.273901939 CEST | 1.1.1.1 | 192.168.2.8 | 0x4770 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.527143955 CEST | 1.1.1.1 | 192.168.2.8 | 0x70fb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.538775921 CEST | 1.1.1.1 | 192.168.2.8 | 0x2cab | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.550420046 CEST | 1.1.1.1 | 192.168.2.8 | 0x3930 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.561091900 CEST | 1.1.1.1 | 192.168.2.8 | 0x8d10 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.573014021 CEST | 1.1.1.1 | 192.168.2.8 | 0x13ef | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.826725006 CEST | 1.1.1.1 | 192.168.2.8 | 0xbf38 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:16.842817068 CEST | 1.1.1.1 | 192.168.2.8 | 0x8305 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:17.033474922 CEST | 1.1.1.1 | 192.168.2.8 | 0xb621 | No error (0) | 34.246.200.160 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:18.072935104 CEST | 1.1.1.1 | 192.168.2.8 | 0x1a7a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.325112104 CEST | 1.1.1.1 | 192.168.2.8 | 0xf4fd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.577333927 CEST | 1.1.1.1 | 192.168.2.8 | 0x52a1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.591264963 CEST | 1.1.1.1 | 192.168.2.8 | 0xae7a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.603315115 CEST | 1.1.1.1 | 192.168.2.8 | 0x2b38 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:18.843079090 CEST | 1.1.1.1 | 192.168.2.8 | 0x696 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.086600065 CEST | 1.1.1.1 | 192.168.2.8 | 0x89ba | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.264308929 CEST | 1.1.1.1 | 192.168.2.8 | 0x8c0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.275741100 CEST | 1.1.1.1 | 192.168.2.8 | 0x2ccd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:19.529501915 CEST | 1.1.1.1 | 192.168.2.8 | 0x604a | No error (0) | 15.197.142.173 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:19.529501915 CEST | 1.1.1.1 | 192.168.2.8 | 0x604a | No error (0) | 3.33.152.147 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:20.576548100 CEST | 1.1.1.1 | 192.168.2.8 | 0x34c0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.590104103 CEST | 1.1.1.1 | 192.168.2.8 | 0x43ea | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.602689981 CEST | 1.1.1.1 | 192.168.2.8 | 0xcfce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.616842985 CEST | 1.1.1.1 | 192.168.2.8 | 0xe433 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.628355980 CEST | 1.1.1.1 | 192.168.2.8 | 0xaf58 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.644896030 CEST | 1.1.1.1 | 192.168.2.8 | 0xbab5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:20.657478094 CEST | 1.1.1.1 | 192.168.2.8 | 0xdc0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.049282074 CEST | 1.1.1.1 | 192.168.2.8 | 0xda1e | No error (0) | 15.197.192.55 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:21.539367914 CEST | 1.1.1.1 | 192.168.2.8 | 0x33ac | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.551533937 CEST | 1.1.1.1 | 192.168.2.8 | 0xc188 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.586282969 CEST | 1.1.1.1 | 192.168.2.8 | 0x2213 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.599277973 CEST | 1.1.1.1 | 192.168.2.8 | 0x711b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.774164915 CEST | 1.1.1.1 | 192.168.2.8 | 0x46c1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:21.790712118 CEST | 1.1.1.1 | 192.168.2.8 | 0x83cd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.035350084 CEST | 1.1.1.1 | 192.168.2.8 | 0x80 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.283190966 CEST | 1.1.1.1 | 192.168.2.8 | 0x3781 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.295522928 CEST | 1.1.1.1 | 192.168.2.8 | 0xb7c2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.542083025 CEST | 1.1.1.1 | 192.168.2.8 | 0x767d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.556404114 CEST | 1.1.1.1 | 192.168.2.8 | 0xcff | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.802392006 CEST | 1.1.1.1 | 192.168.2.8 | 0xfdc6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:22.816875935 CEST | 1.1.1.1 | 192.168.2.8 | 0xf6d0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.068275928 CEST | 1.1.1.1 | 192.168.2.8 | 0xc008 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.080602884 CEST | 1.1.1.1 | 192.168.2.8 | 0xf4c0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.092896938 CEST | 1.1.1.1 | 192.168.2.8 | 0xc1ca | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.105020046 CEST | 1.1.1.1 | 192.168.2.8 | 0xdcd7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.349452019 CEST | 1.1.1.1 | 192.168.2.8 | 0xf441 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.600841045 CEST | 1.1.1.1 | 192.168.2.8 | 0x974b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.844789028 CEST | 1.1.1.1 | 192.168.2.8 | 0x413e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:23.856199026 CEST | 1.1.1.1 | 192.168.2.8 | 0x289d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.110539913 CEST | 1.1.1.1 | 192.168.2.8 | 0x9770 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.121798992 CEST | 1.1.1.1 | 192.168.2.8 | 0x4c2e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.132436991 CEST | 1.1.1.1 | 192.168.2.8 | 0x9aa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.374351978 CEST | 1.1.1.1 | 192.168.2.8 | 0x6f24 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.386292934 CEST | 1.1.1.1 | 192.168.2.8 | 0x3251 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:24.561223030 CEST | 1.1.1.1 | 192.168.2.8 | 0x3d51 | No error (0) | 85.13.130.3 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:25.405180931 CEST | 1.1.1.1 | 192.168.2.8 | 0x4fdf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:25.417926073 CEST | 1.1.1.1 | 192.168.2.8 | 0x254f | No error (0) | 3.33.130.190 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:25.417926073 CEST | 1.1.1.1 | 192.168.2.8 | 0x254f | No error (0) | 15.197.148.33 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:27.180814028 CEST | 1.1.1.1 | 192.168.2.8 | 0xdaa5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.193702936 CEST | 1.1.1.1 | 192.168.2.8 | 0x3be6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.218801022 CEST | 1.1.1.1 | 192.168.2.8 | 0xd2e6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.231834888 CEST | 1.1.1.1 | 192.168.2.8 | 0xa591 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.241944075 CEST | 1.1.1.1 | 192.168.2.8 | 0x57c8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.255887032 CEST | 1.1.1.1 | 192.168.2.8 | 0xa8ca | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.268976927 CEST | 1.1.1.1 | 192.168.2.8 | 0xc0bc | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.280803919 CEST | 1.1.1.1 | 192.168.2.8 | 0x82be | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.292068958 CEST | 1.1.1.1 | 192.168.2.8 | 0x34a7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.540225029 CEST | 1.1.1.1 | 192.168.2.8 | 0xc793 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.551896095 CEST | 1.1.1.1 | 192.168.2.8 | 0x6ff4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.563276052 CEST | 1.1.1.1 | 192.168.2.8 | 0xb55c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.575335979 CEST | 1.1.1.1 | 192.168.2.8 | 0xbf43 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.586533070 CEST | 1.1.1.1 | 192.168.2.8 | 0x2c77 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:27.835112095 CEST | 1.1.1.1 | 192.168.2.8 | 0x8c6b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.089803934 CEST | 1.1.1.1 | 192.168.2.8 | 0x4106 | No error (0) | 170.187.200.48 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:28.598711014 CEST | 1.1.1.1 | 192.168.2.8 | 0xbc52 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.611409903 CEST | 1.1.1.1 | 192.168.2.8 | 0x5215 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.623290062 CEST | 1.1.1.1 | 192.168.2.8 | 0xe59c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.633673906 CEST | 1.1.1.1 | 192.168.2.8 | 0xb28e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:28.898875952 CEST | 1.1.1.1 | 192.168.2.8 | 0xe350 | No error (0) | 213.171.195.105 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:29.893948078 CEST | 1.1.1.1 | 192.168.2.8 | 0xc454 | No error (0) | 64.190.63.222 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:30.550525904 CEST | 1.1.1.1 | 192.168.2.8 | 0xbc3b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:30.561933041 CEST | 1.1.1.1 | 192.168.2.8 | 0x21b1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:30.990739107 CEST | 1.1.1.1 | 192.168.2.8 | 0xa572 | No error (0) | 54.244.188.177 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:31.735565901 CEST | 1.1.1.1 | 192.168.2.8 | 0x2bfd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:31.986884117 CEST | 1.1.1.1 | 192.168.2.8 | 0x407d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.229449034 CEST | 1.1.1.1 | 192.168.2.8 | 0xa179 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.471544027 CEST | 1.1.1.1 | 192.168.2.8 | 0x6759 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.715445042 CEST | 1.1.1.1 | 192.168.2.8 | 0x88f9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.728327990 CEST | 1.1.1.1 | 192.168.2.8 | 0x9f5f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.739342928 CEST | 1.1.1.1 | 192.168.2.8 | 0xf9a2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.753119946 CEST | 1.1.1.1 | 192.168.2.8 | 0xac47 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.764743090 CEST | 1.1.1.1 | 192.168.2.8 | 0x5114 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.776576042 CEST | 1.1.1.1 | 192.168.2.8 | 0x6a23 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.788311005 CEST | 1.1.1.1 | 192.168.2.8 | 0x561e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.799129009 CEST | 1.1.1.1 | 192.168.2.8 | 0x9abc | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.849631071 CEST | 1.1.1.1 | 192.168.2.8 | 0xc0db | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:32.862149954 CEST | 1.1.1.1 | 192.168.2.8 | 0xb32c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:33.105950117 CEST | 1.1.1.1 | 192.168.2.8 | 0x9f65 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:33.347024918 CEST | 1.1.1.1 | 192.168.2.8 | 0x8a77 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:33.676670074 CEST | 1.1.1.1 | 192.168.2.8 | 0x6b13 | No error (0) | 81.169.145.88 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:34.372128963 CEST | 1.1.1.1 | 192.168.2.8 | 0x1d6c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.386163950 CEST | 1.1.1.1 | 192.168.2.8 | 0x81d2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.398993969 CEST | 1.1.1.1 | 192.168.2.8 | 0x6b12 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:34.996634960 CEST | 1.1.1.1 | 192.168.2.8 | 0xb6b7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.245126963 CEST | 1.1.1.1 | 192.168.2.8 | 0xf2ce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.491301060 CEST | 1.1.1.1 | 192.168.2.8 | 0x2ce3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.503212929 CEST | 1.1.1.1 | 192.168.2.8 | 0x7ac2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.743726015 CEST | 1.1.1.1 | 192.168.2.8 | 0x7e89 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.755346060 CEST | 1.1.1.1 | 192.168.2.8 | 0x2d97 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.916809082 CEST | 1.1.1.1 | 192.168.2.8 | 0x12d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:35.928347111 CEST | 1.1.1.1 | 192.168.2.8 | 0x2a0a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:36.426992893 CEST | 1.1.1.1 | 192.168.2.8 | 0x7839 | No error (0) | 15.197.192.55 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:36.977796078 CEST | 1.1.1.1 | 192.168.2.8 | 0xe21 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.231750011 CEST | 1.1.1.1 | 192.168.2.8 | 0xa71a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.242609978 CEST | 1.1.1.1 | 192.168.2.8 | 0x3525 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.258848906 CEST | 1.1.1.1 | 192.168.2.8 | 0xf5e7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.276952028 CEST | 1.1.1.1 | 192.168.2.8 | 0xfd1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.289258003 CEST | 1.1.1.1 | 192.168.2.8 | 0x7520 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:37.877857924 CEST | 1.1.1.1 | 192.168.2.8 | 0x154f | No error (0) | 188.225.40.227 | A (IP address) | IN (0x0001) | false | ||
Aug 5, 2024 16:29:38.621022940 CEST | 1.1.1.1 | 192.168.2.8 | 0x1d24 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:38.631786108 CEST | 1.1.1.1 | 192.168.2.8 | 0x5b5d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:29:38.884322882 CEST | 1.1.1.1 | 192.168.2.8 | 0xc016 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:30.211678028 CEST | 1.1.1.1 | 192.168.2.8 | 0x9c67 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:31.232464075 CEST | 1.1.1.1 | 192.168.2.8 | 0xd09 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:32.477427959 CEST | 1.1.1.1 | 192.168.2.8 | 0x9ae1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:33.496949911 CEST | 1.1.1.1 | 192.168.2.8 | 0xe179 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:34.741450071 CEST | 1.1.1.1 | 192.168.2.8 | 0x463b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:35.763319016 CEST | 1.1.1.1 | 192.168.2.8 | 0xfec1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:36.782304049 CEST | 1.1.1.1 | 192.168.2.8 | 0x1880 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:37.810231924 CEST | 1.1.1.1 | 192.168.2.8 | 0x49d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:38.828094959 CEST | 1.1.1.1 | 192.168.2.8 | 0x6890 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:41.581301928 CEST | 1.1.1.1 | 192.168.2.8 | 0x749a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:42.606931925 CEST | 1.1.1.1 | 192.168.2.8 | 0xf04 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:43.622618914 CEST | 1.1.1.1 | 192.168.2.8 | 0x6903 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:44.639799118 CEST | 1.1.1.1 | 192.168.2.8 | 0x3984 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:45.720616102 CEST | 1.1.1.1 | 192.168.2.8 | 0x8a3d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:46.980622053 CEST | 1.1.1.1 | 192.168.2.8 | 0x9178 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:47.997689009 CEST | 1.1.1.1 | 192.168.2.8 | 0x1fbf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:49.020262003 CEST | 1.1.1.1 | 192.168.2.8 | 0xf922 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:50.044676065 CEST | 1.1.1.1 | 192.168.2.8 | 0x8935 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:51.060859919 CEST | 1.1.1.1 | 192.168.2.8 | 0x7c09 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:52.074872017 CEST | 1.1.1.1 | 192.168.2.8 | 0xad79 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:53.100538015 CEST | 1.1.1.1 | 192.168.2.8 | 0x482c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:54.125411987 CEST | 1.1.1.1 | 192.168.2.8 | 0x2639 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:55.160931110 CEST | 1.1.1.1 | 192.168.2.8 | 0x8ac6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:56.414340019 CEST | 1.1.1.1 | 192.168.2.8 | 0xb15d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:57.437084913 CEST | 1.1.1.1 | 192.168.2.8 | 0x176e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:58.684453964 CEST | 1.1.1.1 | 192.168.2.8 | 0xda66 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:30:59.699279070 CEST | 1.1.1.1 | 192.168.2.8 | 0xc207 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:00.946132898 CEST | 1.1.1.1 | 192.168.2.8 | 0x6279 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:01.965470076 CEST | 1.1.1.1 | 192.168.2.8 | 0xbb7d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:03.020843029 CEST | 1.1.1.1 | 192.168.2.8 | 0xbf1f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:04.060475111 CEST | 1.1.1.1 | 192.168.2.8 | 0xa1b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:05.277419090 CEST | 1.1.1.1 | 192.168.2.8 | 0x96f5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:06.230575085 CEST | 1.1.1.1 | 192.168.2.8 | 0xc0f4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:07.155838966 CEST | 1.1.1.1 | 192.168.2.8 | 0xb540 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:08.045919895 CEST | 1.1.1.1 | 192.168.2.8 | 0xa8c9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:11.173512936 CEST | 1.1.1.1 | 192.168.2.8 | 0x17b8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Aug 5, 2024 16:31:11.978821993 CEST | 1.1.1.1 | 192.168.2.8 | 0x270b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.8 | 49704 | 3.33.130.190 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:12.071218014 CEST | 83 | OUT | |
Aug 5, 2024 16:29:12.540308952 CEST | 254 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.8 | 49705 | 35.164.78.200 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:14.692574024 CEST | 84 | OUT | |
Aug 5, 2024 16:29:15.427299976 CEST | 382 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.8 | 49706 | 34.246.200.160 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:17.041102886 CEST | 84 | OUT | |
Aug 5, 2024 16:29:17.830583096 CEST | 382 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.8 | 49707 | 15.197.142.173 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:19.535299063 CEST | 83 | OUT | |
Aug 5, 2024 16:29:20.101177931 CEST | 266 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.8 | 49711 | 15.197.192.55 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:21.055541992 CEST | 83 | OUT | |
Aug 5, 2024 16:29:21.526259899 CEST | 254 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.8 | 49714 | 85.13.130.3 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:24.566958904 CEST | 83 | OUT | |
Aug 5, 2024 16:29:25.243931055 CEST | 452 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.8 | 49715 | 3.33.130.190 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:25.426461935 CEST | 82 | OUT | |
Aug 5, 2024 16:29:26.839092970 CEST | 254 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.8 | 49716 | 170.187.200.48 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:28.096674919 CEST | 81 | OUT | |
Aug 5, 2024 16:29:28.585762978 CEST | 289 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.8 | 49717 | 213.171.195.105 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:28.904913902 CEST | 84 | OUT | |
Aug 5, 2024 16:29:29.508569956 CEST | 1236 | IN | |
Aug 5, 2024 16:29:29.508590937 CEST | 1236 | IN | |
Aug 5, 2024 16:29:29.508605003 CEST | 635 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.8 | 49718 | 64.190.63.222 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:29.900022030 CEST | 82 | OUT | |
Aug 5, 2024 16:29:30.538731098 CEST | 208 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.8 | 49719 | 54.244.188.177 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:30.997627974 CEST | 81 | OUT | |
Aug 5, 2024 16:29:31.721687078 CEST | 379 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.8 | 49720 | 81.169.145.88 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:33.682877064 CEST | 81 | OUT | |
Aug 5, 2024 16:29:34.358859062 CEST | 374 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.8 | 60223 | 15.197.192.55 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:36.432952881 CEST | 84 | OUT | |
Aug 5, 2024 16:29:36.959588051 CEST | 254 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.8 | 60224 | 188.225.40.227 | 80 | 2768 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:29:37.883701086 CEST | 83 | OUT | |
Aug 5, 2024 16:29:38.609452009 CEST | 373 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.8 | 60228 | 3.33.130.190 | 80 | 3392 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:30:39.838965893 CEST | 83 | OUT | |
Aug 5, 2024 16:30:40.325565100 CEST | 254 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.8 | 60229 | 35.164.78.200 | 80 | 3392 | C:\hjflhukc\yanidfx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Aug 5, 2024 16:31:09.141431093 CEST | 84 | OUT | |
Aug 5, 2024 16:31:09.908768892 CEST | 382 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 1 |
Start time: | 10:29:05 |
Start date: | 05/08/2024 |
Path: | C:\Users\user\Desktop\7qBBKk0P4l.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xc0000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 2 |
Start time: | 10:29:06 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\psjpq2i82ktsjq0yguk.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x920000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 3 |
Start time: | 10:29:06 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\yanidfx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x6e0000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 4 |
Start time: | 10:29:08 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\xxxniijvj.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe0000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 5 |
Start time: | 10:29:09 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\yanidfx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x6e0000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 9 |
Start time: | 10:29:48 |
Start date: | 05/08/2024 |
Path: | C:\Windows\System32\svchost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff67e6d0000 |
File size: | 55'320 bytes |
MD5 hash: | B7F884C1B74A263F746EE12A5F7C9F6A |
Has elevated privileges: | true |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 10 |
Start time: | 10:30:25 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\yanidfx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x6e0000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 11 |
Start time: | 10:30:26 |
Start date: | 05/08/2024 |
Path: | C:\hjflhukc\xxxniijvj.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe20000 |
File size: | 236'032 bytes |
MD5 hash: | 94E7772B2B1BDA89B23A2FBA0E57742E |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Execution Graph
Execution Coverage: | 9.3% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 54.1% |
Total number of Nodes: | 1491 |
Total number of Limit Nodes: | 4 |
Graph
Function 000DFF20 Relevance: 65.0, APIs: 29, Strings: 7, Instructions: 2030synchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C88A8 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 877fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D111E Relevance: 14.3, APIs: 7, Strings: 1, Instructions: 289fileCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CE769 Relevance: 4.6, APIs: 3, Instructions: 101memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CDE5A Relevance: 3.0, APIs: 2, Instructions: 17memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D5498 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 110processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D54D8 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 103processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CC622 Relevance: 4.7, APIs: 3, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D20D8 Relevance: 3.0, APIs: 2, Instructions: 27stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E23A6 Relevance: 3.0, APIs: 2, Instructions: 23memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D15E5 Relevance: 1.5, APIs: 1, Instructions: 9COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000ED831 Relevance: 28.4, APIs: 15, Strings: 1, Instructions: 388pipeprocessfileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E84D7 Relevance: 23.4, APIs: 11, Strings: 2, Instructions: 688memorylibraryloaderCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D8695 Relevance: 22.0, APIs: 10, Strings: 2, Instructions: 1045networkCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E35AD Relevance: 19.5, APIs: 9, Strings: 2, Instructions: 219serviceCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C11B7 Relevance: 13.6, Strings: 9, Instructions: 2310COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C9903 Relevance: 7.3, Strings: 5, Instructions: 1018COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CCFBB Relevance: 5.9, APIs: 2, Strings: 1, Instructions: 675threadCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C69A8 Relevance: 5.9, Strings: 4, Instructions: 901COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000ED256 Relevance: 3.1, APIs: 2, Instructions: 88timeCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D5FBA Relevance: 1.9, Strings: 1, Instructions: 688COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E24D3 Relevance: 1.8, APIs: 1, Instructions: 520sleepCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C46CF Relevance: 1.6, Strings: 1, Instructions: 321COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E74E8 Relevance: 1.5, APIs: 1, Instructions: 25COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D0CE6 Relevance: 1.5, Strings: 1, Instructions: 235COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E7DC0 Relevance: .4, Instructions: 352COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D0113 Relevance: .3, Instructions: 343COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E3025 Relevance: .3, Instructions: 303COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D70E6 Relevance: .3, Instructions: 298COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000DA805 Relevance: .3, Instructions: 260COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E5F1E Relevance: .2, Instructions: 244COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C774C Relevance: .2, Instructions: 244COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CA928 Relevance: .2, Instructions: 188COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000EDFCC Relevance: .2, Instructions: 162COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D3285 Relevance: .0, Instructions: 6COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CC9ED Relevance: 12.2, APIs: 8, Instructions: 196registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E4589 Relevance: 7.6, APIs: 5, Instructions: 104synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E4927 Relevance: 7.3, APIs: 3, Strings: 1, Instructions: 323sleepfileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000D9B78 Relevance: 6.2, APIs: 4, Instructions: 201fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E90F1 Relevance: 6.0, APIs: 4, Instructions: 38memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 14.2% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 4.2% |
Total number of Nodes: | 1341 |
Total number of Limit Nodes: | 6 |
Graph
Function 009288A8 Relevance: 30.6, APIs: 12, Strings: 5, Instructions: 877fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009484D7 Relevance: 26.9, APIs: 13, Strings: 2, Instructions: 688memorylibraryloaderCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009435AD Relevance: 19.5, APIs: 9, Strings: 2, Instructions: 219serviceCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0092BECE Relevance: 4.7, APIs: 3, Instructions: 222libraryloaderencryptionCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00935498 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 111processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009354D8 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 103processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00939B78 Relevance: 6.2, APIs: 4, Instructions: 201fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0092C622 Relevance: 4.7, APIs: 3, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0092E769 Relevance: 4.6, APIs: 3, Instructions: 101memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009320D8 Relevance: 3.0, APIs: 2, Instructions: 27stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009423A6 Relevance: 3.0, APIs: 2, Instructions: 23memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0092DE5A Relevance: 3.0, APIs: 2, Instructions: 17memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00923B2C Relevance: 1.6, APIs: 1, Instructions: 104fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009315E5 Relevance: 1.5, APIs: 1, Instructions: 9COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0094D831 Relevance: 28.4, APIs: 15, Strings: 1, Instructions: 388pipeprocessfileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0093111E Relevance: 14.3, APIs: 7, Strings: 1, Instructions: 289fileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0093AE3B Relevance: .0, Instructions: 41COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0092C9ED Relevance: 12.2, APIs: 8, Instructions: 196registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00944589 Relevance: 7.6, APIs: 5, Instructions: 104synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00944927 Relevance: 7.3, APIs: 3, Strings: 1, Instructions: 323sleepfileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 009490F1 Relevance: 6.0, APIs: 4, Instructions: 38memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 19.7% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1503 |
Total number of Limit Nodes: | 22 |
Graph
Function 006FFF2A Relevance: 68.5, APIs: 29, Strings: 9, Instructions: 2026synchronizationCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006E88A8 Relevance: 30.6, APIs: 12, Strings: 5, Instructions: 877fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007084D7 Relevance: 26.9, APIs: 13, Strings: 2, Instructions: 688memorylibraryloaderCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F8695 Relevance: 22.0, APIs: 10, Strings: 2, Instructions: 1045networkCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007024D3 Relevance: 5.0, APIs: 1, Strings: 2, Instructions: 520sleepCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006EBECE Relevance: 4.7, APIs: 3, Instructions: 222libraryloaderencryptionCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007074E8 Relevance: 1.5, APIs: 1, Instructions: 25COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006EC9ED Relevance: 12.2, APIs: 8, Instructions: 196registrysynchronizationCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F5485 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 115processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F54D8 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 103processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006EC622 Relevance: 4.7, APIs: 3, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006EE769 Relevance: 4.6, APIs: 3, Instructions: 101memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F20D8 Relevance: 3.0, APIs: 2, Instructions: 27stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007023A6 Relevance: 3.0, APIs: 2, Instructions: 23memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006EDE5A Relevance: 3.0, APIs: 2, Instructions: 17memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007075CE Relevance: 1.7, APIs: 1, Instructions: 152fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006E3B2C Relevance: 1.6, APIs: 1, Instructions: 104fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0070473B Relevance: 1.4, APIs: 1, Instructions: 107sleepCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0070D831 Relevance: 28.4, APIs: 15, Strings: 1, Instructions: 388pipeprocessfileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007035AD Relevance: 19.5, APIs: 9, Strings: 2, Instructions: 219serviceCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F111E Relevance: 14.3, APIs: 7, Strings: 1, Instructions: 289fileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00704589 Relevance: 7.6, APIs: 5, Instructions: 104synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00704927 Relevance: 7.3, APIs: 3, Strings: 1, Instructions: 323sleepfileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006F9B78 Relevance: 6.2, APIs: 4, Instructions: 201fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 007090F1 Relevance: 6.0, APIs: 4, Instructions: 38memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 8.9% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1498 |
Total number of Limit Nodes: | 7 |
Graph
Function 000FFF2A Relevance: 63.3, APIs: 29, Strings: 6, Instructions: 2026synchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000E88A8 Relevance: 30.6, APIs: 12, Strings: 5, Instructions: 877fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F54A1 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 108processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F54D8 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 103processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000EC622 Relevance: 4.7, APIs: 3, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000EE769 Relevance: 4.6, APIs: 3, Instructions: 101memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F20D8 Relevance: 3.0, APIs: 2, Instructions: 27stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 001023A6 Relevance: 3.0, APIs: 2, Instructions: 23memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000EDE5A Relevance: 3.0, APIs: 2, Instructions: 17memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F15E5 Relevance: 1.5, APIs: 1, Instructions: 9COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0010D831 Relevance: 28.4, APIs: 15, Strings: 1, Instructions: 388pipeprocessfileCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 001035AD Relevance: 19.5, APIs: 9, Strings: 2, Instructions: 219serviceCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F111E Relevance: 14.3, APIs: 7, Strings: 1, Instructions: 289fileCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000EC9ED Relevance: 12.2, APIs: 8, Instructions: 196registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00104589 Relevance: 7.6, APIs: 5, Instructions: 104synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00104927 Relevance: 7.3, APIs: 3, Strings: 1, Instructions: 323sleepfileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000F9B78 Relevance: 6.2, APIs: 4, Instructions: 201fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 001090F1 Relevance: 6.0, APIs: 4, Instructions: 38memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 7.9% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1494 |
Total number of Limit Nodes: | 6 |
Graph
Function 00E3FF25 Relevance: 63.3, APIs: 29, Strings: 6, Instructions: 2027synchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E288A8 Relevance: 30.6, APIs: 12, Strings: 5, Instructions: 877fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E2C622 Relevance: 4.7, APIs: 3, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E2E769 Relevance: 4.6, APIs: 3, Instructions: 101memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E320D8 Relevance: 3.0, APIs: 2, Instructions: 27stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E423A6 Relevance: 3.0, APIs: 2, Instructions: 23memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E2DE5A Relevance: 3.0, APIs: 2, Instructions: 17memoryCOMMONLIBRARYCODE
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E4D831 Relevance: 28.4, APIs: 15, Strings: 1, Instructions: 388pipeprocessfileCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E435AD Relevance: 19.5, APIs: 9, Strings: 2, Instructions: 219serviceCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E3111E Relevance: 14.3, APIs: 7, Strings: 1, Instructions: 289fileCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E2C9ED Relevance: 12.2, APIs: 8, Instructions: 196registrysynchronizationCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E44589 Relevance: 7.6, APIs: 5, Instructions: 104synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E44927 Relevance: 7.3, APIs: 3, Strings: 1, Instructions: 323sleepfileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E354D8 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 103processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E39B78 Relevance: 6.2, APIs: 4, Instructions: 201fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00E490F1 Relevance: 6.0, APIs: 4, Instructions: 38memoryCOMMONLIBRARYCODE
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|