Windows Analysis Report
CreditCardNumbersVisa_20.xlsx

Overview

General Information

Sample name: CreditCardNumbersVisa_20.xlsx
Analysis ID: 1545072
MD5: 4a78e0e0db778f79f5a76a16c447c6c4
SHA1: 5916f25319eaf7e13bd7a311abc6af39cb456819
SHA256: d1d5930da65d1436f99f7e518892c2ebc1d8d1cf2976fa0863522df7cc33dcfd
Infos:

Detection

Score: 24
Range: 0 - 100
Whitelisted: false
Confidence: 60%

Signatures

AI detected landing page (webpage, office document or email)
Found a high number of Window / User specific system calls (may be a loop to detect user behavior)
IP address seen in connection with other malware
JA3 SSL client fingerprint seen in connection with other malware
Potential document exploit detected (performs HTTP gets)
Potential document exploit detected (unknown TCP traffic)
Sample execution stops while process was sleeping (likely an evasion)
Sigma detected: Excel Network Connections
Sigma detected: Suspicious Office Outbound Connections

Classification

Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File opened: C:\Program Files (x86)\Microsoft Office\root\vfs\SystemX86\MSVCR100.dll Jump to behavior
Source: unknown HTTPS traffic detected: 13.107.246.45:443 -> 192.168.2.5:49722 version: TLS 1.2
Source: unknown HTTPS traffic detected: 13.107.246.45:443 -> 192.168.2.5:52774 version: TLS 1.2
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52533 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52535 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52536 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52534 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52538 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52539 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52540 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52541 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52542 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52543 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52545 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52544 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52546 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52547 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52549 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52550 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52551 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52552 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52553 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52555 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52554 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52556 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52558 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52559 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52560 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52561 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52562 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52557 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52564 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52565 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52563 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52566 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52567 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52569 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52568 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52570 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52571 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52572 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52573 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52574 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52575 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52576 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52577 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52578 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52579 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52580 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52581 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52582 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52583 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52585 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52584 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52586 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52587 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52588 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52589 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52590 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52591 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52592 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52593 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52595 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52594 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52596 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52597 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52598 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52599 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52600 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52601 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52602 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52603 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52604 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52605 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52606 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52607 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52608 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52609 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52610 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52611 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52612 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52613 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52614 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52615 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52616 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52617 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52618 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52619 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52620 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52621 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52622 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52623 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52624 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52625 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52626 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52627 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52628 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52629 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52630 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52631 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52632 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52633 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52634 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52635 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52636 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52637 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52638 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52639 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52640 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52641 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52642 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52643 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52644 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52645 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52647 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52646 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52648 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52649 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52650 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52651 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52652 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52653 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52654 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52655 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52656 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52657 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52659 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52658 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52660 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52661 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52662 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52663 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52664 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52665 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52666 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52667 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52668 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52669 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52671 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52670 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52672 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52674 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52673 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52675 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52676 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52677 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52679 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52678 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52680 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52681 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52682 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52684 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52683 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52685 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52686 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52687 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52689 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52688 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52690 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52691 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52692 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52694 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52693 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52695 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52696 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52697 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52698 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52699 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52700 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52701 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52702 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52703 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52704 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52706 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52705 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52707 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52708 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52709 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52711 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52712 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52713 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52714 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52715 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52716 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52717 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52718 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52719 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52720 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52721 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52723 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52724 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52725 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52726 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52728 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52729 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52730 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52731 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52732 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52733 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52727 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52734 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52735 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52736 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52737 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52738 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52739 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52740 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52741 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52742 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52744 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52745 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52746 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52747 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52748 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52743 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52749 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52750 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52752 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52753 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52751 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52754 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52755 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52756 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52757 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52758 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52759 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52760 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52761 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52762 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52763 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52764 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52765 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52766 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52767 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52768 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52769 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52770 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52771 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52772 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52773 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52774 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52775 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:49722 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:49722
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52504 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52504
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52505 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52505
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52506 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52506
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 192.168.2.5:52508 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52508
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52507 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52507
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52509 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52509
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52510 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52510
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52513 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52513
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52512 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52512
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52511 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52511
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52516 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52516
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52518 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52518
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 192.168.2.5:52519 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52519
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52517 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52517
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52520 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52520
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52521 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52521
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52523 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52523
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52525 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52525
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52529
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52529
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52522 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52522
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52530
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52530
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52524 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52524
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52531
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52531
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52529
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52529
Source: global traffic TCP traffic: 192.168.2.5:52529 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52529
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52530
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52530
Source: global traffic TCP traffic: 192.168.2.5:52530 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52530
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52531
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52531
Source: global traffic TCP traffic: 192.168.2.5:52531 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52531
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 192.168.2.5:52528 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52528
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52532
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52527 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52527
Source: global traffic TCP traffic: 192.168.2.5:52532 -> 13.107.246.45:443
Source: global traffic TCP traffic: 13.107.246.45:443 -> 192.168.2.5:52532
Source: excel.exe Memory has grown: Private usage: 2MB later: 75MB
Source: Joe Sandbox View IP Address: 13.107.246.45 13.107.246.45
Source: Joe Sandbox View JA3 fingerprint: 28a2c9bd18a11de089ef85a160da29e4
Source: Joe Sandbox View JA3 fingerprint: a0e9f5d64349fb13191bc781f81f42e1
Source: global traffic HTTP traffic detected: GET /rules/other-Win32-v19.bundle HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120402v21s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule224902v2s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120600v4s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120608v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120609v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120610v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120611v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120614v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120613v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120612v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120615v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120617v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120618v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120616v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120619v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120620v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120622v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120624v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120621v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120623v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120626v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120625v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120627v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120628v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120629v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120631v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120630v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120633v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120634v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120632v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120635v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120636v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120638v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120637v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120639v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120640v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120642v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120641v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120643v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120644v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120645v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120646v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120647v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120648v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120649v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120651v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120650v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120652v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120654v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120655v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120656v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120657v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120658v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120653v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120660v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120661v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120659v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120662v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120663v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120665v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120664v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120666v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120667v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120668v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120669v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120670v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120671v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120672v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120673v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120674v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120675v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120676v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120677v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120678v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120679v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120681v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120680v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120682v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120602v10s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120601v3s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule224901v11s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701201v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701200v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700201v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700200v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702350v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702351v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701251v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701250v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700051v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700050v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702951v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702950v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701151v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701150v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702201v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702200v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700401v2s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700400v2s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700351v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700350v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703901v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703900v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701501v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701500v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702801v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702800v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703351v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703350v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703501v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703500v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701801v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701800v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701051v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701050v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702751v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702750v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702301v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702300v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703401v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703400v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702501v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702500v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700501v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700500v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702551v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702550v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701351v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701350v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702151v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702150v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703001v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703000v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700751v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700750v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700151v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700150v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703451v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703450v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700901v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700900v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702251v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702250v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702651v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702650v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703101v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703100v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702901v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702900v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703600v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703601v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703851v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703850v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703801v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703800v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703701v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703700v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703751v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703750v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701301v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701300v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704050v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704051v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701701v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702051v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701700v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702050v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700701v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700700v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700550v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700551v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703651v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703650v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700601v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700600v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703151v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703150v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703951v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703950v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702850v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702851v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700001v2s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700000v2s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701401v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701951v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701400v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701950v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700851v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700850v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701851v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701850v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703051v3s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703050v3s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700101v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702101v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702100v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700951v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700100v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700950v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703551v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703550v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700451v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702701v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702700v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700450v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701901v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701900v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704001v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704000v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703251v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703250v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702400v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702401v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701551v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701550v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700301v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700300v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702000v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702601v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702600v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703201v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703200v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700251v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702001v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700250v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700651v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule700650v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703301v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule703300v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701751v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701750v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701651v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701650v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702450v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701101v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule701100v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120128v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120603v8s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule702451v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120607v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230104v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230158v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230162v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230157v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230164v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230165v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230166v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230167v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230168v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230169v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230170v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230171v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230172v1s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230173v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule230174v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120119v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule224900v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704101v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704100v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704201v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704200v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704151v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule704150v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule226009v0s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/excel.exe-Production-v19.bundle HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; Microsoft Excel 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: global traffic HTTP traffic detected: GET /rules/rule120603v8s19.xml HTTP/1.1Connection: Keep-AliveAccept-Encoding: gzipUser-Agent: Microsoft Office/16.0 (Windows NT 10.0; Microsoft Excel 16.0.16827; Pro)Host: otelrules.azureedge.net
Source: 57C8EDB95DF3F0AD4EE2DC2B8CFD41570.0.dr String found in binary or memory: http://ctldl.windowsupdate.com/msdownload/update/v3/static/trustedr/en/disallowedcertstl.cab
Source: unknown Network traffic detected: HTTP traffic on port 52609 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52771 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52553 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52530 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52633 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52576 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52599 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52610 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52541 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52679 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52518 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52587 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52644 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52736 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52747 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52701 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52529 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 49722
Source: unknown Network traffic detected: HTTP traffic on port 52735 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52758 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52565 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52678 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52517 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52645 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52622 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52588 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52690 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52702 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52703
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52704
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52701
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52702
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52707
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52708
Source: unknown Network traffic detected: HTTP traffic on port 52656 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52705
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52706
Source: unknown Network traffic detected: HTTP traffic on port 52608 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52700
Source: unknown Network traffic detected: HTTP traffic on port 52713 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52772 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52506 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52554 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52667 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52709
Source: unknown Network traffic detected: HTTP traffic on port 52724 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52611 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52540 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52643 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52714 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52737 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52620 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52689 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52769 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52528 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52505 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52666 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52566 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52539 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52654 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52577 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52726 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52760 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52655 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52770 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52555 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52578 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52748 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52725 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52759 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52516 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52677 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52621 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52589 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52688 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52527 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52632 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52703 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52516
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52637
Source: unknown Network traffic detected: HTTP traffic on port 52676 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52758
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52517
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52638
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52759
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52635
Source: unknown Network traffic detected: HTTP traffic on port 52653 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52756
Source: unknown Network traffic detected: HTTP traffic on port 52567 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52636
Source: unknown Network traffic detected: HTTP traffic on port 52699 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52757
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52518
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52639
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52519
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52750
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52630
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52751
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52512
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52633
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52754
Source: unknown Network traffic detected: HTTP traffic on port 52756 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52513
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52634
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52755
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52510
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52631
Source: unknown Network traffic detected: HTTP traffic on port 52733 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52752
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52511
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52632
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52753
Source: unknown Network traffic detected: HTTP traffic on port 52538 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52618 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52527
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52648
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52769
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52528
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52649
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52525
Source: unknown Network traffic detected: HTTP traffic on port 52591 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52646
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52767
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52647
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52768
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52529
Source: unknown Network traffic detected: HTTP traffic on port 52549 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52640
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52761
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52520
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52641
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52762
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52760
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52523
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52644
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52765
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52524
Source: unknown Network traffic detected: HTTP traffic on port 52606 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52645
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52766
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52521
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52642
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52763
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52522
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52643
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52764
Source: unknown Network traffic detected: HTTP traffic on port 52556 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52722 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52504 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52768 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52665 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52630 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52709 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52538
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52659
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52539
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52536
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52657
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52658
Source: unknown Network traffic detected: HTTP traffic on port 52590 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52530
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52651
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52772
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52531
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52652
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52773
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52770
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52650
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52771
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52534
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52655
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52535
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52656
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52532
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52653
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52774
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52533
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52654
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52775
Source: unknown Network traffic detected: HTTP traffic on port 52664 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52687 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52721 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52744 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52631 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52568 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52549
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52547
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52668
Source: unknown Network traffic detected: HTTP traffic on port 52698 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52669
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52541
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52662
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52542
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52663
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52660
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52540
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52661
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52545
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52666
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52546
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52667
Source: unknown Network traffic detected: HTTP traffic on port 52755 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52543
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52664
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52544
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52665
Source: unknown Network traffic detected: HTTP traffic on port 52579 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52642 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52670
Source: unknown Network traffic detected: HTTP traffic on port 52619 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52714
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52715
Source: unknown Network traffic detected: HTTP traffic on port 52628 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52712
Source: unknown Network traffic detected: HTTP traffic on port 52592 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52713
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52718
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52719
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52716
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52717
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52711
Source: unknown Network traffic detected: HTTP traffic on port 52723 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52746 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52557 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52700 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52604
Source: unknown Network traffic detected: HTTP traffic on port 52711 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52725
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52605
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52726
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52602
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52723
Source: unknown Network traffic detected: HTTP traffic on port 52757 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52603
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52724
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52608
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52729
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52609
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52606
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52727
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52607
Source: unknown Network traffic detected: HTTP traffic on port 52675 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52728
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52600
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52721
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52601
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52722
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52720
Source: unknown Network traffic detected: HTTP traffic on port 52640 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52580 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52617 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52686 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52525 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52615
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52736
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52616
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52737
Source: unknown Network traffic detected: HTTP traffic on port 52569 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52613
Source: unknown Network traffic detected: HTTP traffic on port 52712 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52734
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52614
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52735
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52619
Source: unknown Network traffic detected: HTTP traffic on port 52697 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52617
Source: unknown Network traffic detected: HTTP traffic on port 52674 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52738
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52618
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52739
Source: unknown Network traffic detected: HTTP traffic on port 52513 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52607 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52611
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52732
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52612
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52733
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52730
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52610
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52731
Source: unknown Network traffic detected: HTTP traffic on port 52581 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52641 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 49722 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52536 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52767 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52505
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52626
Source: unknown Network traffic detected: HTTP traffic on port 52652 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52747
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52506
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52627
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52748
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52624
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52745
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52504
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52625
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52746
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52509
Source: unknown Network traffic detected: HTTP traffic on port 52547 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52629 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52507
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52628
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52749
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52508
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52629
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52740
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52622
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52743
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52623
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52744
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52620
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52741
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52621
Source: unknown Network traffic detected: HTTP traffic on port 52734 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52742
Source: unknown Network traffic detected: HTTP traffic on port 52663 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52558 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52745 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52596
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52597
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52594
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52595
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52598
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52599
Source: unknown Network traffic detected: HTTP traffic on port 52718 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52662 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52685 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52765 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52742 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52627 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52650 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52696 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52524 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52570 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52753 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52638 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52535 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52603 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52651 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52571 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52546 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52523 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52639 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52616 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52729 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52559 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52593 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52673 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52730 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52512 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52582 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52684 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52741 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52766 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52707 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52558
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52679
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52559
Source: unknown Network traffic detected: HTTP traffic on port 52672 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52552
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52673
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52553
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52674
Source: unknown Network traffic detected: HTTP traffic on port 52695 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52550
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52671
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52551
Source: unknown Network traffic detected: HTTP traffic on port 52511 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52672
Source: unknown Network traffic detected: HTTP traffic on port 52775 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52556
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52677
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52557
Source: unknown Network traffic detected: HTTP traffic on port 52605 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52678
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52554
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52675
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52555
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52676
Source: unknown Network traffic detected: HTTP traffic on port 52614 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52637 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52583 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52680
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52560
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52681
Source: unknown Network traffic detected: HTTP traffic on port 52560 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52534 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52595 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52708 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52569
Source: unknown Network traffic detected: HTTP traffic on port 52648 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52545 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52563
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52684
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52564
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52685
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52561
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52682
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52562
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52683
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52567
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52688
Source: unknown Network traffic detected: HTTP traffic on port 52719 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52732 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52568
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52689
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52565
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52686
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52566
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52687
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52570
Source: unknown Network traffic detected: HTTP traffic on port 52661 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52691
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52571
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52692
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52690
Source: unknown Network traffic detected: HTTP traffic on port 52764 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52743 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52594 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52626 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52649 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52574
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52695
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52575
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52696
Source: unknown Network traffic detected: HTTP traffic on port 52754 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52572
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52693
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52573
Source: unknown Network traffic detected: HTTP traffic on port 52584 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52694
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52578
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52699
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52579
Source: unknown Network traffic detected: HTTP traffic on port 52731 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52576
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52697
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52577
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52698
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52581
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52582
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52580
Source: unknown Network traffic detected: HTTP traffic on port 52683 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52671 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52522 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52572 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52585
Source: unknown Network traffic detected: HTTP traffic on port 52694 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52586
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52583
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52584
Source: unknown Network traffic detected: HTTP traffic on port 52660 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52589
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52587
Source: unknown Network traffic detected: HTTP traffic on port 52604 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52588
Source: unknown Network traffic detected: HTTP traffic on port 52615 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52592
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52593
Source: unknown Network traffic detected: HTTP traffic on port 52533 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52561 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52590
Source: unknown Network traffic detected: HTTP traffic on port 443 -> 52591
Source: unknown Network traffic detected: HTTP traffic on port 52720 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52544 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52521 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52647 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52550 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52682 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52624 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52601 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52509 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52704 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52727 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52562 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52715 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52510 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52774 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52693 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52659 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52573 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52613 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52716 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52750 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52532 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52551 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52658 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52574 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52763 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52625 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52681 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52543 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52585 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52600 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52738 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52749 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52636 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52670 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52596 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52519 -> 443
Source: unknown Network traffic detected: HTTP traffic on port 52586 -> 443
Source: unknown HTTPS traffic detected: 13.107.246.45:443 -> 192.168.2.5:49722 version: TLS 1.2
Source: unknown HTTPS traffic detected: 13.107.246.45:443 -> 192.168.2.5:52774 version: TLS 1.2
Source: classification engine Classification label: sus24.winXLSX@3/7@0/1
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File created: C:\Program Files (x86)\Microsoft Office\root\vfs\Common AppData\Microsoft\Office\Heartbeat\HeartbeatCache.xml Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File created: C:\Users\user\Desktop\~$CreditCardNumbersVisa_20.xlsx Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File created: C:\Users\user\AppData\Local\Temp\{851DDD6B-4D79-4C73-80E0-6DD00ADE190A} - OProcSessId.dat Jump to behavior
Source: CreditCardNumbersVisa_20.xlsx OLE indicator, Workbook stream: true
Source: 8E140000.0.dr OLE indicator, Workbook stream: true
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File read: C:\Users\desktop.ini Jump to behavior
Source: unknown Process created: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE "C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE" /automation -Embedding
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process created: C:\Windows\splwow64.exe C:\Windows\splwow64.exe 12288
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process created: C:\Windows\splwow64.exe C:\Windows\splwow64.exe 12288 Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Key value queried: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{88d96a0f-f192-11d4-a65f-0040963251e5}\InProcServer32 Jump to behavior
Source: Window Recorder Window detected: More than 3 window changes detected
Source: CreditCardNumbersVisa_20.xlsx Initial sample: OLE zip file path = docProps/custom.xml
Source: 8E140000.0.dr Initial sample: OLE zip file path = docProps/custom.xml
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Key opened: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Common Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE File opened: C:\Program Files (x86)\Microsoft Office\root\vfs\SystemX86\MSVCR100.dll Jump to behavior
Source: CreditCardNumbersVisa_20.xlsx Initial sample: OLE indicators vbamacros = False

Persistence and Installation Behavior

barindex
Source: Office document LLM: Page contains button: 'VIEW SHARED FILE' Source: 'Office document'
Source: Office document LLM: Office document contains prominent button: 'view shared file'
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: FAILCRITICALERRORS | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information set: NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Process information set: NOALIGNMENTFAULTEXCEPT | NOOPENFILEERRORBOX Jump to behavior
Source: C:\Windows\splwow64.exe Window / User API: threadDelayed 867 Jump to behavior
Source: C:\Windows\splwow64.exe Last function: Thread delayed
Source: C:\Windows\splwow64.exe Last function: Thread delayed
Source: C:\Windows\splwow64.exe Thread delayed: delay time: 120000 Jump to behavior
Source: C:\Windows\splwow64.exe Thread delayed: delay time: 120000 Jump to behavior
Source: C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE Process information queried: ProcessInformation Jump to behavior
  • No. of IPs < 25%
  • 25% < No. of IPs < 50%
  • 50% < No. of IPs < 75%
  • 75% < No. of IPs