Windows
Analysis Report
66HKNPT1fl.exe
Overview
General Information
Sample name: | 66HKNPT1fl.exerenamed because original name is a hash value |
Original sample name: | 93469d74887267a8fbeed3a59094ddfbe12c991d800b4011b1ce5be62f6e27f3.exe |
Analysis ID: | 1551208 |
MD5: | f0d9a1e7385ed0ea2ece3d30915163d5 |
SHA1: | fa25bb798e084ddfa0ad97b659b49a405fa19b22 |
SHA256: | 93469d74887267a8fbeed3a59094ddfbe12c991d800b4011b1ce5be62f6e27f3 |
Tags: | exeuser-adrian__luca |
Infos: | |
Detection
Score: | 96 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- 66HKNPT1fl.exe (PID: 4784 cmdline:
"C:\Users\ user\Deskt op\66HKNPT 1fl.exe" MD5: F0D9A1E7385ED0EA2ECE3D30915163D5) - ew4bjmdlid9hjn8.exe (PID: 3960 cmdline:
"C:\daxjjw rfm\ew4bjm dlid9hjn8. exe" MD5: F0D9A1E7385ED0EA2ECE3D30915163D5) - qbpabupgx.exe (PID: 7084 cmdline:
"C:\daxjjw rfm\qbpabu pgx.exe" MD5: F0D9A1E7385ED0EA2ECE3D30915163D5)
- qbpabupgx.exe (PID: 6216 cmdline:
C:\daxjjwr fm\qbpabup gx.exe MD5: F0D9A1E7385ED0EA2ECE3D30915163D5) - tkjnbticppc.exe (PID: 7120 cmdline:
mdziuzwugs se "c:\dax jjwrfm\qbp abupgx.exe " MD5: F0D9A1E7385ED0EA2ECE3D30915163D5) - qbpabupgx.exe (PID: 3708 cmdline:
"c:\daxjjw rfm\qbpabu pgx.exe" MD5: F0D9A1E7385ED0EA2ECE3D30915163D5) - tkjnbticppc.exe (PID: 1540 cmdline:
mdziuzwugs se "c:\dax jjwrfm\qbp abupgx.exe " MD5: F0D9A1E7385ED0EA2ECE3D30915163D5)
- cleanup
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:42:08.521365+0100 | 2022930 | 1 | A Network Trojan was detected | 4.245.163.56 | 443 | 192.168.2.6 | 61217 | TCP |
2024-11-07T15:42:36.798438+0100 | 2022930 | 1 | A Network Trojan was detected | 4.245.163.56 | 443 | 192.168.2.6 | 54000 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:57.817092+0100 | 2018141 | 1 | A Network Trojan was detected | 18.143.155.63 | 80 | 192.168.2.6 | 61164 | TCP |
2024-11-07T15:42:00.835671+0100 | 2018141 | 1 | A Network Trojan was detected | 54.244.188.177 | 80 | 192.168.2.6 | 61185 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:57.817092+0100 | 2037771 | 1 | A Network Trojan was detected | 18.143.155.63 | 80 | 192.168.2.6 | 61164 | TCP |
2024-11-07T15:42:00.835671+0100 | 2037771 | 1 | A Network Trojan was detected | 54.244.188.177 | 80 | 192.168.2.6 | 61185 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:54.378741+0100 | 2018316 | 1 | A Network Trojan was detected | 1.1.1.1 | 53 | 192.168.2.6 | 57769 | UDP |
2024-11-07T15:43:42.679237+0100 | 2018316 | 1 | A Network Trojan was detected | 1.1.1.1 | 53 | 192.168.2.6 | 54598 | UDP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:54.258875+0100 | 2811542 | 1 | A Network Trojan was detected | 1.1.1.1 | 53 | 192.168.2.6 | 57116 | UDP |
2024-11-07T15:43:55.894056+0100 | 2811542 | 1 | A Network Trojan was detected | 1.1.1.1 | 53 | 192.168.2.6 | 52210 | UDP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:57.420782+0100 | 2815568 | 1 | A Network Trojan was detected | 192.168.2.6 | 61164 | 18.143.155.63 | 80 | TCP |
2024-11-07T15:43:37.556413+0100 | 2815568 | 1 | A Network Trojan was detected | 192.168.2.6 | 54125 | 18.143.155.63 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:55.658532+0100 | 2820680 | 1 | Malware Command and Control Activity Detected | 192.168.2.6 | 61162 | 199.59.243.227 | 80 | TCP |
2024-11-07T15:43:37.556413+0100 | 2820680 | 1 | Malware Command and Control Activity Detected | 192.168.2.6 | 54125 | 18.143.155.63 | 80 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Avira: |
Source: | Avira: | ||
Source: | Avira: | ||
Source: | Avira: |
Source: | ReversingLabs: | ||
Source: | ReversingLabs: | ||
Source: | ReversingLabs: |
Source: | ReversingLabs: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: | ||
Source: | Joe Sandbox ML: | ||
Source: | Joe Sandbox ML: |
Source: | Joe Sandbox ML: |
Source: | Code function: | 2_2_00077040 | |
Source: | Code function: | 3_2_00C47040 |
Source: | Static PE information: |
Source: | Code function: | 0_2_003660A0 | |
Source: | Code function: | 2_2_000560A0 | |
Source: | Code function: | 3_2_00C260A0 | |
Source: | Code function: | 4_2_000A60A0 | |
Source: | Code function: | 5_2_00C260A0 | |
Source: | Code function: | 9_2_001060A0 |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | Network traffic detected: |
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | Code function: | 0_2_003801B0 |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: |
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior | ||
Source: | File created: | Jump to behavior |
Source: | File deleted: | Jump to behavior |
Source: | Code function: | 0_2_00383060 | |
Source: | Code function: | 0_2_00372490 | |
Source: | Code function: | 0_2_003700C8 | |
Source: | Code function: | 0_2_0037B744 | |
Source: | Code function: | 0_2_00374420 | |
Source: | Code function: | 0_2_0038A050 | |
Source: | Code function: | 0_2_00390850 | |
Source: | Code function: | 0_2_003644A0 | |
Source: | Code function: | 0_2_00365894 | |
Source: | Code function: | 0_2_00375520 | |
Source: | Code function: | 0_2_00385950 | |
Source: | Code function: | 0_2_00382950 | |
Source: | Code function: | 0_2_003801B0 | |
Source: | Code function: | 0_2_003845A0 | |
Source: | Code function: | 0_2_003885E0 | |
Source: | Code function: | 0_2_00388DD6 | |
Source: | Code function: | 0_2_003619C0 | |
Source: | Code function: | 0_2_00374A29 | |
Source: | Code function: | 0_2_0038FE10 | |
Source: | Code function: | 0_2_0037C640 | |
Source: | Code function: | 0_2_0038EEB0 | |
Source: | Code function: | 0_2_00383AF0 | |
Source: | Code function: | 0_2_0037D2C0 | |
Source: | Code function: | 0_2_00365730 | |
Source: | Code function: | 0_2_00375F50 | |
Source: | Code function: | 0_2_0038DB50 | |
Source: | Code function: | 0_2_003803B9 | |
Source: | Code function: | 0_2_0038ABB0 | |
Source: | Code function: | 0_2_003777A1 | |
Source: | Code function: | 0_2_00388BA0 | |
Source: | Code function: | 0_2_00385B98 | |
Source: | Code function: | 0_2_00362F90 | |
Source: | Code function: | 0_2_00385B96 | |
Source: | Code function: | 0_2_003777F0 | |
Source: | Code function: | 0_2_0038B7F0 | |
Source: | Code function: | 0_2_0038CBE0 | |
Source: | Code function: | 0_2_00387BD0 | |
Source: | Code function: | 2_2_00073060 | |
Source: | Code function: | 2_2_00062490 | |
Source: | Code function: | 2_2_000600C8 | |
Source: | Code function: | 2_2_0006B744 | |
Source: | Code function: | 2_2_0007DB50 | |
Source: | Code function: | 2_2_0007CBE0 | |
Source: | Code function: | 2_2_00064420 | |
Source: | Code function: | 2_2_0007A050 | |
Source: | Code function: | 2_2_00080850 | |
Source: | Code function: | 2_2_00055894 | |
Source: | Code function: | 2_2_000544A0 | |
Source: | Code function: | 2_2_00065520 | |
Source: | Code function: | 2_2_00075950 | |
Source: | Code function: | 2_2_00072950 | |
Source: | Code function: | 2_2_000745A0 | |
Source: | Code function: | 2_2_000701B0 | |
Source: | Code function: | 2_2_000519C0 | |
Source: | Code function: | 2_2_00078DD6 | |
Source: | Code function: | 2_2_000785E0 | |
Source: | Code function: | 2_2_0007FE10 | |
Source: | Code function: | 2_2_00064A29 | |
Source: | Code function: | 2_2_0006C640 | |
Source: | Code function: | 2_2_0007EEB0 | |
Source: | Code function: | 2_2_0006D2C0 | |
Source: | Code function: | 2_2_00073AF0 | |
Source: | Code function: | 2_2_00055730 | |
Source: | Code function: | 2_2_00065F50 | |
Source: | Code function: | 2_2_00075B96 | |
Source: | Code function: | 2_2_00052F90 | |
Source: | Code function: | 2_2_00075B98 | |
Source: | Code function: | 2_2_00078BA0 | |
Source: | Code function: | 2_2_000677A1 | |
Source: | Code function: | 2_2_0007ABB0 | |
Source: | Code function: | 2_2_000703B9 | |
Source: | Code function: | 2_2_00077BD0 | |
Source: | Code function: | 2_2_000677F0 | |
Source: | Code function: | 2_2_0007B7F0 | |
Source: | Code function: | 3_2_00C300C1 | |
Source: | Code function: | 3_2_00C32490 | |
Source: | Code function: | 3_2_00C43060 | |
Source: | Code function: | 3_2_00C401B0 | |
Source: | Code function: | 3_2_00C4FE10 | |
Source: | Code function: | 3_2_00C4CBE0 | |
Source: | Code function: | 3_2_00C4DB50 | |
Source: | Code function: | 3_2_00C3B73A | |
Source: | Code function: | 3_2_00C25894 | |
Source: | Code function: | 3_2_00C244A0 | |
Source: | Code function: | 3_2_00C4A050 | |
Source: | Code function: | 3_2_00C50850 | |
Source: | Code function: | 3_2_00C34420 | |
Source: | Code function: | 3_2_00C219C0 | |
Source: | Code function: | 3_2_00C48DD6 | |
Source: | Code function: | 3_2_00C485E0 | |
Source: | Code function: | 3_2_00C445A0 | |
Source: | Code function: | 3_2_00C45950 | |
Source: | Code function: | 3_2_00C42950 | |
Source: | Code function: | 3_2_00C35520 | |
Source: | Code function: | 3_2_00C3D2C0 | |
Source: | Code function: | 3_2_00C43AF0 | |
Source: | Code function: | 3_2_00C4EEB0 | |
Source: | Code function: | 3_2_00C3C640 | |
Source: | Code function: | 3_2_00C34A29 | |
Source: | Code function: | 3_2_00C47BD0 | |
Source: | Code function: | 3_2_00C377F0 | |
Source: | Code function: | 3_2_00C4B7F0 | |
Source: | Code function: | 3_2_00C22F90 | |
Source: | Code function: | 3_2_00C45B96 | |
Source: | Code function: | 3_2_00C45B98 | |
Source: | Code function: | 3_2_00C377A1 | |
Source: | Code function: | 3_2_00C48BA0 | |
Source: | Code function: | 3_2_00C4ABB0 | |
Source: | Code function: | 3_2_00C403B9 | |
Source: | Code function: | 3_2_00C35F50 | |
Source: | Code function: | 3_2_00C25730 | |
Source: | Code function: | 4_2_000C3060 | |
Source: | Code function: | 4_2_000B2490 | |
Source: | Code function: | 4_2_000B4420 | |
Source: | Code function: | 4_2_000CA050 | |
Source: | Code function: | 4_2_000D0850 | |
Source: | Code function: | 4_2_000A5894 | |
Source: | Code function: | 4_2_000A44A0 | |
Source: | Code function: | 4_2_000B5520 | |
Source: | Code function: | 4_2_000C5950 | |
Source: | Code function: | 4_2_000C2950 | |
Source: | Code function: | 4_2_000C45A0 | |
Source: | Code function: | 4_2_000C01B0 | |
Source: | Code function: | 4_2_000A19C0 | |
Source: | Code function: | 4_2_000C85E0 | |
Source: | Code function: | 4_2_000CFE10 | |
Source: | Code function: | 4_2_000BC640 | |
Source: | Code function: | 4_2_000CEEB0 | |
Source: | Code function: | 4_2_000BD2C0 | |
Source: | Code function: | 4_2_000C3AF0 | |
Source: | Code function: | 4_2_000A5730 | |
Source: | Code function: | 4_2_000B5F50 | |
Source: | Code function: | 4_2_000CDB50 | |
Source: | Code function: | 4_2_000A2F90 | |
Source: | Code function: | 4_2_000C8BA0 | |
Source: | Code function: | 4_2_000CABB0 | |
Source: | Code function: | 4_2_000C7BD0 | |
Source: | Code function: | 4_2_000CCBE0 | |
Source: | Code function: | 4_2_000B77F0 | |
Source: | Code function: | 4_2_000CB7F0 | |
Source: | Code function: | 5_2_00C300C1 | |
Source: | Code function: | 5_2_00C32490 | |
Source: | Code function: | 5_2_00C43060 | |
Source: | Code function: | 5_2_00C3B73A | |
Source: | Code function: | 5_2_00C25894 | |
Source: | Code function: | 5_2_00C244A0 | |
Source: | Code function: | 5_2_00C4A050 | |
Source: | Code function: | 5_2_00C50850 | |
Source: | Code function: | 5_2_00C34420 | |
Source: | Code function: | 5_2_00C219C0 | |
Source: | Code function: | 5_2_00C48DD6 | |
Source: | Code function: | 5_2_00C485E0 | |
Source: | Code function: | 5_2_00C445A0 | |
Source: | Code function: | 5_2_00C401B0 | |
Source: | Code function: | 5_2_00C45950 | |
Source: | Code function: | 5_2_00C42950 | |
Source: | Code function: | 5_2_00C35520 | |
Source: | Code function: | 5_2_00C3D2C0 | |
Source: | Code function: | 5_2_00C43AF0 | |
Source: | Code function: | 5_2_00C4EEB0 | |
Source: | Code function: | 5_2_00C3C640 | |
Source: | Code function: | 5_2_00C4FE10 | |
Source: | Code function: | 5_2_00C34A29 | |
Source: | Code function: | 5_2_00C47BD0 | |
Source: | Code function: | 5_2_00C4CBE0 | |
Source: | Code function: | 5_2_00C377F0 | |
Source: | Code function: | 5_2_00C4B7F0 | |
Source: | Code function: | 5_2_00C22F90 | |
Source: | Code function: | 5_2_00C45B96 | |
Source: | Code function: | 5_2_00C45B98 | |
Source: | Code function: | 5_2_00C377A1 | |
Source: | Code function: | 5_2_00C48BA0 | |
Source: | Code function: | 5_2_00C4ABB0 | |
Source: | Code function: | 5_2_00C403B9 | |
Source: | Code function: | 5_2_00C35F50 | |
Source: | Code function: | 5_2_00C4DB50 | |
Source: | Code function: | 5_2_00C25730 | |
Source: | Code function: | 9_2_00123060 | |
Source: | Code function: | 9_2_00112490 | |
Source: | Code function: | 9_2_001100C8 | |
Source: | Code function: | 9_2_0011B744 | |
Source: | Code function: | 9_2_00114420 | |
Source: | Code function: | 9_2_0012A050 | |
Source: | Code function: | 9_2_00130850 | |
Source: | Code function: | 9_2_00105894 | |
Source: | Code function: | 9_2_001044A0 | |
Source: | Code function: | 9_2_00115520 | |
Source: | Code function: | 9_2_00125950 | |
Source: | Code function: | 9_2_00122950 | |
Source: | Code function: | 9_2_001201B0 | |
Source: | Code function: | 9_2_001245A0 | |
Source: | Code function: | 9_2_00128DD6 | |
Source: | Code function: | 9_2_001019C0 | |
Source: | Code function: | 9_2_001285E0 | |
Source: | Code function: | 9_2_0012FE10 | |
Source: | Code function: | 9_2_00114A29 | |
Source: | Code function: | 9_2_0011C640 | |
Source: | Code function: | 9_2_0012EEB0 | |
Source: | Code function: | 9_2_0011D2C0 | |
Source: | Code function: | 9_2_00123AF0 | |
Source: | Code function: | 9_2_00105730 | |
Source: | Code function: | 9_2_00115F50 | |
Source: | Code function: | 9_2_0012DB50 | |
Source: | Code function: | 9_2_00102F90 | |
Source: | Code function: | 9_2_00125B96 | |
Source: | Code function: | 9_2_00125B98 | |
Source: | Code function: | 9_2_0012ABB0 | |
Source: | Code function: | 9_2_001203B9 | |
Source: | Code function: | 9_2_001177A1 | |
Source: | Code function: | 9_2_00128BA0 | |
Source: | Code function: | 9_2_00127BD0 | |
Source: | Code function: | 9_2_001177F0 | |
Source: | Code function: | 9_2_0012B7F0 | |
Source: | Code function: | 9_2_0012CBE0 |
Source: | Static PE information: |
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Classification label: |
Source: | Code function: | 0_2_00378200 | |
Source: | Code function: | 2_2_00068200 | |
Source: | Code function: | 3_2_00C38200 | |
Source: | Code function: | 4_2_000B8200 | |
Source: | Code function: | 5_2_00C38200 | |
Source: | Code function: | 9_2_00118200 |
Source: | Code function: | 0_2_0037C250 |
Source: | Code function: | 0_2_00385010 |
Source: | Code function: | 0_2_00385010 | |
Source: | Code function: | 2_2_00075010 | |
Source: | Code function: | 3_2_00C45010 | |
Source: | Code function: | 4_2_000C5010 | |
Source: | Code function: | 5_2_00C45010 | |
Source: | Code function: | 9_2_00125010 |
Source: | Mutant created: |
Source: | Static PE information: |
Source: | Key opened: | Jump to behavior |
Source: | ReversingLabs: |
Source: | File read: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Code function: | 0_2_0038DB50 |
Source: | Code function: | 0_2_00368082 | |
Source: | Code function: | 0_2_0036949F | |
Source: | Code function: | 2_2_00058082 | |
Source: | Code function: | 2_2_0005949F | |
Source: | Code function: | 3_2_00C2949F | |
Source: | Code function: | 3_2_00C28082 | |
Source: | Code function: | 4_2_000A8082 | |
Source: | Code function: | 4_2_000A949F | |
Source: | Code function: | 4_2_000AC568 | |
Source: | Code function: | 5_2_00C2949F | |
Source: | Code function: | 5_2_00C28082 | |
Source: | Code function: | 9_2_00108082 | |
Source: | Code function: | 9_2_0010949F |
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | File created: | Jump to dropped file | ||
Source: | File created: | Jump to dropped file | ||
Source: | File created: | Jump to dropped file |
Source: | Code function: | 0_2_00385010 |
Source: | Code function: | 0_2_0038A050 | |
Source: | Code function: | 2_2_0007A050 | |
Source: | Code function: | 3_2_00C4A050 | |
Source: | Code function: | 4_2_000CA050 | |
Source: | Code function: | 5_2_00C4A050 | |
Source: | Code function: | 9_2_0012A050 |
Source: | Code function: | 2_2_0007DB50 | |
Source: | Code function: | 3_2_00C4DB50 |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Decision node followed by non-executed suspicious API: | graph_3-11111 | ||
Source: | Decision node followed by non-executed suspicious API: | graph_0-11325 | ||
Source: | Decision node followed by non-executed suspicious API: | graph_2-11379 | ||
Source: | Decision node followed by non-executed suspicious API: | graph_4-8223 |
Source: | Evasive API call chain: | graph_2-9333 | ||
Source: | Evasive API call chain: | graph_4-7495 | ||
Source: | Evasive API call chain: | graph_0-9767 | ||
Source: | Evasive API call chain: | graph_3-10336 |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: |
Source: | Code function: | 0_2_003660A0 | |
Source: | Code function: | 2_2_000560A0 | |
Source: | Code function: | 3_2_00C260A0 | |
Source: | Code function: | 4_2_000A60A0 | |
Source: | Code function: | 5_2_00C260A0 | |
Source: | Code function: | 9_2_001060A0 |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | API call chain: | graph_0-9389 | ||
Source: | API call chain: | graph_0-9349 | ||
Source: | API call chain: | graph_0-9401 | ||
Source: | API call chain: | graph_0-9502 | ||
Source: | API call chain: | graph_0-10301 | ||
Source: | API call chain: | graph_0-9513 | ||
Source: | API call chain: | graph_0-9331 | ||
Source: | API call chain: | graph_0-9546 | ||
Source: | API call chain: | graph_2-9379 | ||
Source: | API call chain: | graph_2-9338 | ||
Source: | API call chain: | graph_2-9364 | ||
Source: | API call chain: | graph_3-9435 | ||
Source: | API call chain: | graph_3-9417 | ||
Source: | API call chain: | graph_3-9378 | ||
Source: | API call chain: | graph_3-9583 | ||
Source: | API call chain: | graph_3-9403 | ||
Source: | API call chain: | graph_5-9408 | ||
Source: | API call chain: | graph_5-9424 | ||
Source: | API call chain: | graph_5-9370 | ||
Source: | API call chain: | graph_5-9395 | ||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: | |||
Source: | API call chain: |
Source: | Process information queried: | Jump to behavior |
Source: | Code function: | 0_2_0038DB50 |
Source: | Code function: | 0_2_0037C520 |
Source: | Code function: | 0_2_0038C640 |
Source: | Code function: | 0_2_003899B0 |
Source: | Code function: | 0_2_00372490 |
Source: | Key value queried: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 2 Service Execution | 4 Windows Service | 4 Windows Service | 1 Masquerading | OS Credential Dumping | 1 System Time Discovery | Remote Services | 1 Archive Collected Data | 2 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | 2 Native API | 1 DLL Side-Loading | 1 Process Injection | 11 Virtualization/Sandbox Evasion | LSASS Memory | 111 Security Software Discovery | Remote Desktop Protocol | Data from Removable Media | 2 Ingress Tool Transfer | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | 1 DLL Side-Loading | 1 Process Injection | Security Account Manager | 11 Virtualization/Sandbox Evasion | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 2 Obfuscated Files or Information | NTDS | 2 Process Discovery | Distributed Component Object Model | Input Capture | 2 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 2 Software Packing | LSA Secrets | 1 Application Window Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 1 DLL Side-Loading | Cached Domain Credentials | 1 System Service Discovery | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 1 File Deletion | DCSync | 1 System Network Configuration Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | Indicator Removal from Tools | Proc Filesystem | 1 File and Directory Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
Network Topology | Malvertising | Exploit Public-Facing Application | Command and Scripting Interpreter | At | At | HTML Smuggling | /etc/passwd and /etc/shadow | 4 System Information Discovery | Direct Cloud VM Connections | Data Staged | Web Protocols | Exfiltration Over Symmetric Encrypted Non-C2 Protocol | Internal Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
89% | ReversingLabs | Win32.Trojan.Bayrob | ||
100% | Avira | HEUR/AGEN.1318578 | ||
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira | HEUR/AGEN.1318578 | ||
100% | Avira | HEUR/AGEN.1318578 | ||
100% | Avira | HEUR/AGEN.1318578 | ||
100% | Joe Sandbox ML | |||
100% | Joe Sandbox ML | |||
100% | Joe Sandbox ML | |||
89% | ReversingLabs | Win32.Trojan.Bayrob | ||
89% | ReversingLabs | Win32.Trojan.Bayrob | ||
89% | ReversingLabs | Win32.Trojan.Bayrob |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
degreedaughter.net | 85.214.228.140 | true | false | high | |
7450.bodis.com | 199.59.243.227 | true | false | high | |
gentleanother.net | 54.244.188.177 | true | false | high | |
returnbottle.net | 18.143.155.63 | true | false | high | |
pleasantinstead.net | 18.143.155.63 | true | false | high | |
leaderstream.net | unknown | unknown | true | unknown | |
forwardpeople.net | unknown | unknown | true | unknown | |
degreeanother.net | unknown | unknown | true | unknown | |
degreeexplain.net | unknown | unknown | true | unknown | |
heaveninside.net | unknown | unknown | true | unknown | |
answerappear.net | unknown | unknown | true | unknown | |
heavybusiness.net | unknown | unknown | true | unknown | |
pleasantinside.net | unknown | unknown | true | unknown | |
requirebusiness.net | unknown | unknown | true | unknown | |
forwardinside.net | unknown | unknown | true | unknown | |
glassmanner.net | unknown | unknown | true | unknown | |
answerexplain.net | unknown | unknown | true | unknown | |
orderinside.net | unknown | unknown | true | unknown | |
variousappear.net | unknown | unknown | true | unknown | |
returnbright.net | unknown | unknown | true | unknown | |
difficultanother.net | unknown | unknown | true | unknown | |
heavyinside.net | unknown | unknown | true | unknown | |
forwardready.net | unknown | unknown | true | unknown | |
glassdaughter.net | unknown | unknown | true | unknown | |
necessarymanner.net | unknown | unknown | true | unknown | |
leadernothing.net | unknown | unknown | true | unknown | |
answeranother.net | unknown | unknown | true | unknown | |
leadermanner.net | unknown | unknown | true | unknown | |
heavybottle.net | unknown | unknown | true | unknown | |
heavenbright.net | unknown | unknown | true | unknown | |
heavydivide.net | unknown | unknown | true | unknown | |
degreebrown.net | unknown | unknown | true | unknown | |
gentleinstead.net | unknown | unknown | true | unknown | |
glassanother.net | unknown | unknown | true | unknown | |
heavenanother.net | unknown | unknown | true | unknown | |
difficultmanner.net | unknown | unknown | true | unknown | |
glassexplain.net | unknown | unknown | true | unknown | |
requireinside.net | unknown | unknown | true | unknown | |
heavenexplain.net | unknown | unknown | true | unknown | |
forwardbusiness.net | unknown | unknown | true | unknown | |
difficultexplain.net | unknown | unknown | true | unknown | |
gentleappear.net | unknown | unknown | true | unknown | |
pleasantbright.net | unknown | unknown | true | unknown | |
returnexplain.net | unknown | unknown | true | unknown | |
gentlemanner.net | unknown | unknown | true | unknown | |
answerdaughter.net | unknown | unknown | true | unknown | |
heardinside.net | unknown | unknown | true | unknown | |
requiremanner.net | unknown | unknown | true | unknown | |
gentleexplain.net | unknown | unknown | true | unknown | |
glassappear.net | unknown | unknown | true | unknown | |
necessaryanother.net | unknown | unknown | true | unknown | |
glassinside.net | unknown | unknown | true | unknown | |
difficultbright.net | unknown | unknown | true | unknown | |
glasspeople.net | unknown | unknown | true | unknown | |
requireinstead.net | unknown | unknown | true | unknown | |
necessaryinside.net | unknown | unknown | true | unknown | |
returndivide.net | unknown | unknown | true | unknown | |
heardinstead.net | unknown | unknown | true | unknown | |
variousbright.net | unknown | unknown | true | unknown | |
degreebusiness.net | unknown | unknown | true | unknown | |
answerbusiness.net | unknown | unknown | true | unknown | |
heavenbusiness.net | unknown | unknown | true | unknown | |
gentledivide.net | unknown | unknown | true | unknown | |
variousinstead.net | unknown | unknown | true | unknown | |
gentlestream.net | unknown | unknown | true | unknown | |
pleasantmanner.net | unknown | unknown | true | unknown | |
necessaryappear.net | unknown | unknown | true | unknown | |
pleasantbusiness.net | unknown | unknown | true | unknown | |
heardbright.net | unknown | unknown | true | unknown | |
heavenbottle.net | unknown | unknown | true | unknown | |
heavynothing.net | unknown | unknown | true | unknown | |
gentlebusiness.net | unknown | unknown | true | unknown | |
ordermanner.net | unknown | unknown | true | unknown | |
leaderbottle.net | unknown | unknown | true | unknown | |
pleasantanother.net | unknown | unknown | true | unknown | |
heavyanother.net | unknown | unknown | true | unknown | |
degreeinstead.net | unknown | unknown | true | unknown | |
degreepeople.net | unknown | unknown | true | unknown | |
answerready.net | unknown | unknown | true | unknown | |
answerbright.net | unknown | unknown | true | unknown | |
heavennothing.net | unknown | unknown | true | unknown | |
returninside.net | unknown | unknown | true | unknown | |
forwardbright.net | unknown | unknown | true | unknown | |
difficultinside.net | unknown | unknown | true | unknown | |
heavybright.net | unknown | unknown | true | unknown | |
leaderanother.net | unknown | unknown | true | unknown | |
returninstead.net | unknown | unknown | true | unknown | |
difficultinstead.net | unknown | unknown | true | unknown | |
heavenappear.net | unknown | unknown | true | unknown | |
answerinside.net | unknown | unknown | true | unknown | |
degreebright.net | unknown | unknown | true | unknown | |
forwardbrown.net | unknown | unknown | true | unknown | |
heavyinstead.net | unknown | unknown | true | unknown | |
gentleinside.net | unknown | unknown | true | unknown | |
heardexplain.net | unknown | unknown | true | unknown | |
heavyappear.net | unknown | unknown | true | unknown | |
answerpeople.net | unknown | unknown | true | unknown | |
pleasantexplain.net | unknown | unknown | true | unknown | |
requireexplain.net | unknown | unknown | true | unknown | |
orderappear.net | unknown | unknown | true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
18.143.155.63 | returnbottle.net | United States | 16509 | AMAZON-02US | false | |
85.214.228.140 | degreedaughter.net | Germany | 6724 | STRATOSTRATOAGDE | false | |
199.59.243.227 | 7450.bodis.com | United States | 395082 | BODIS-NJUS | false | |
54.244.188.177 | gentleanother.net | United States | 16509 | AMAZON-02US | false |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1551208 |
Start date and time: | 2024-11-07 15:40:56 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 6m 7s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 10 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | 66HKNPT1fl.exerenamed because original name is a hash value |
Original Sample Name: | 93469d74887267a8fbeed3a59094ddfbe12c991d800b4011b1ce5be62f6e27f3.exe |
Detection: | MAL |
Classification: | mal96.troj.winEXE@12/5@255/4 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WMIADAP.exe, SIHClient.exe
- Excluded domains from analysis (whitelisted): client.wns.windows.com, ocsp.digicert.com, otelrules.azureedge.net, slscr.update.microsoft.com, ctldl.windowsupdate.com, d.4.1.9.1.6.7.1.0.0.0.0.0.0.0.0.1.0.0.9.0.0.1.f.1.1.1.0.1.0.a.2.ip6.arpa, fe3cr.delivery.mp.microsoft.com
- Report size exceeded maximum capacity and may have missing disassembly code.
- VT rate limit hit for: 66HKNPT1fl.exe
Time | Type | Description |
---|---|---|
09:42:24 | API Interceptor | |
09:43:10 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
18.143.155.63 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
85.214.228.140 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | PureLog Stealer, RedLine | Browse |
| ||
Get hash | malicious | DBatLoader, Nitol, PureLog Stealer, XWorm | Browse |
| ||
Get hash | malicious | MassLogger RAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
199.59.243.227 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
gentleanother.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
returnbottle.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
degreedaughter.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
pleasantinstead.net | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
7450.bodis.com | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
AMAZON-02US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
STRATOSTRATOAGDE | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | PureLog Stealer, RedLine | Browse |
| ||
Get hash | malicious | DBatLoader, Nitol, PureLog Stealer, XWorm | Browse |
| ||
Get hash | malicious | MassLogger RAT | Browse |
| ||
BODIS-NJUS | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
AMAZON-02US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Ducktail | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
|
Process: | C:\Users\user\Desktop\66HKNPT1fl.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8 |
Entropy (8bit): | 3.0 |
Encrypted: | false |
SSDEEP: | 3:ej:ej |
MD5: | 2D0985C59DB9049A2394A00B369922BA |
SHA1: | CDC3557373CD4FB044D4D63C30DC1C07FCE6EC97 |
SHA-256: | A22E9689649DCADDAB2A6FCE1A88B715EC53B59E48FD29B526E16E7FFA8A0CA7 |
SHA-512: | C2119D490AC9105DC0E488CDC1A6397E0F4F20AF9B60EF02164C1989B8B5DAD0F4F478DF909DB528E68F77087C2875E60A6FCEB7072E67C59B938F48B6A41283 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Users\user\Desktop\66HKNPT1fl.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 248320 |
Entropy (8bit): | 7.1562498967433505 |
Encrypted: | false |
SSDEEP: | 3072:r/FjWEUzcSG8sGAVlElIY68MjAshfv6FKzFn8kysCdxYcYQ6OZadi6IyngAUexv6:ZF86JOvshn6FulCjl6cMWyJip |
MD5: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
SHA1: | FA25BB798E084DDFA0AD97B659B49A405FA19B22 |
SHA-256: | 93469D74887267A8FBEED3A59094DDFBE12C991D800B4011B1CE5BE62F6E27F3 |
SHA-512: | 50D640BB92E2E98AFD47D14DFAB9855D9F9C2D2F9CF7346FFF6F69B195F8A98232A9BCA964CF51C384F389B4FACD3CE9577E739BDF709D1F2E918A2EBB408C26 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
Process: | C:\Users\user\Desktop\66HKNPT1fl.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8 |
Entropy (8bit): | 3.0 |
Encrypted: | false |
SSDEEP: | 3:ej:ej |
MD5: | 2D0985C59DB9049A2394A00B369922BA |
SHA1: | CDC3557373CD4FB044D4D63C30DC1C07FCE6EC97 |
SHA-256: | A22E9689649DCADDAB2A6FCE1A88B715EC53B59E48FD29B526E16E7FFA8A0CA7 |
SHA-512: | C2119D490AC9105DC0E488CDC1A6397E0F4F20AF9B60EF02164C1989B8B5DAD0F4F478DF909DB528E68F77087C2875E60A6FCEB7072E67C59B938F48B6A41283 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\daxjjwrfm\ew4bjmdlid9hjn8.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 248320 |
Entropy (8bit): | 7.1562498967433505 |
Encrypted: | false |
SSDEEP: | 3072:r/FjWEUzcSG8sGAVlElIY68MjAshfv6FKzFn8kysCdxYcYQ6OZadi6IyngAUexv6:ZF86JOvshn6FulCjl6cMWyJip |
MD5: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
SHA1: | FA25BB798E084DDFA0AD97B659B49A405FA19B22 |
SHA-256: | 93469D74887267A8FBEED3A59094DDFBE12C991D800B4011B1CE5BE62F6E27F3 |
SHA-512: | 50D640BB92E2E98AFD47D14DFAB9855D9F9C2D2F9CF7346FFF6F69B195F8A98232A9BCA964CF51C384F389B4FACD3CE9577E739BDF709D1F2E918A2EBB408C26 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
Process: | C:\daxjjwrfm\qbpabupgx.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 248320 |
Entropy (8bit): | 7.1562498967433505 |
Encrypted: | false |
SSDEEP: | 3072:r/FjWEUzcSG8sGAVlElIY68MjAshfv6FKzFn8kysCdxYcYQ6OZadi6IyngAUexv6:ZF86JOvshn6FulCjl6cMWyJip |
MD5: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
SHA1: | FA25BB798E084DDFA0AD97B659B49A405FA19B22 |
SHA-256: | 93469D74887267A8FBEED3A59094DDFBE12C991D800B4011B1CE5BE62F6E27F3 |
SHA-512: | 50D640BB92E2E98AFD47D14DFAB9855D9F9C2D2F9CF7346FFF6F69B195F8A98232A9BCA964CF51C384F389B4FACD3CE9577E739BDF709D1F2E918A2EBB408C26 |
Malicious: | true |
Antivirus: |
|
Reputation: | low |
Preview: |
File type: | |
Entropy (8bit): | 7.1562498967433505 |
TrID: |
|
File name: | 66HKNPT1fl.exe |
File size: | 248'320 bytes |
MD5: | f0d9a1e7385ed0ea2ece3d30915163d5 |
SHA1: | fa25bb798e084ddfa0ad97b659b49a405fa19b22 |
SHA256: | 93469d74887267a8fbeed3a59094ddfbe12c991d800b4011b1ce5be62f6e27f3 |
SHA512: | 50d640bb92e2e98afd47d14dfab9855d9f9c2d2f9cf7346fff6f69b195f8a98232a9bca964cf51c384f389b4facd3ce9577e739bdf709d1f2e918a2ebb408c26 |
SSDEEP: | 3072:r/FjWEUzcSG8sGAVlElIY68MjAshfv6FKzFn8kysCdxYcYQ6OZadi6IyngAUexv6:ZF86JOvshn6FulCjl6cMWyJip |
TLSH: | FE34AD66D6100137DC5125FD866C3BB2EA5E9278BF1811C3839636E82CB0AD9DA3774F |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.........3...]...]...]..V&...]...\...].......].......].Rich..].........................PE..L...d_5S.....................@.......m..... |
Icon Hash: | 00928e8e8686b000 |
Entrypoint: | 0x426d10 |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE, 32BIT_MACHINE |
DLL Characteristics: | DYNAMIC_BASE, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x53355F64 [Fri Mar 28 11:39:16 2014 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 5 |
OS Version Minor: | 1 |
File Version Major: | 5 |
File Version Minor: | 1 |
Subsystem Version Major: | 5 |
Subsystem Version Minor: | 1 |
Import Hash: | 24940cd2712c7c6b52de6089584e9809 |
Instruction |
---|
mov ax, word ptr [00447212h] |
mov ecx, dword ptr [0043CA38h] |
cwde |
push esi |
or esi, FFFFFFFFh |
add word ptr [00447212h], si |
add ecx, eax |
cmp ecx, B13E0982h |
jl 00007F4FD4F38C9Bh |
mov dx, word ptr [0044DE84h] |
mov ecx, dword ptr [00444F1Ch] |
movsx eax, dx |
and ecx, eax |
mov word ptr [0044DE84h], cx |
call 00007F4FD4F14E25h |
add dword ptr [0043DF88h], DEFAFFFCh |
call 00007F4FD4F14006h |
add dword ptr [00441E54h], esi |
inc word ptr [0044C23Eh] |
mov dx, word ptr [0044C23Eh] |
mov ecx, dword ptr [00441E54h] |
movsx eax, dx |
add eax, 6DA8752Dh |
or ecx, eax |
cmp ecx, 40440043h |
jnle 00007F4FD4F38CACh |
mov eax, dword ptr [004381ECh] |
mov edx, dword ptr [00438A5Ch] |
and eax, F5B7F8B7h |
xor eax, C6284EF0h |
sub edx, 4E4EEEC7h |
cmp eax, edx |
jnl 00007F4FD4F38C8Dh |
mov eax, dword ptr [004432A4h] |
mov ecx, dword ptr [0044634Ch] |
push 00432170h |
push 00432168h |
call 00007F4FD4F372C1h |
and dword ptr [00443E18h], 6DD9F72Ah |
add esp, 08h |
call 00007F4FD4F2A50Fh |
mov ax, word ptr [eax] |
Programming Language: |
|
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x3225c | 0x50 | .rdata |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x4f000 | 0x7574 | .reloc |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x32000 | 0x168 | .rdata |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x1000 | 0x302ca | 0x30400 | 21f0700076e95abb4de47cbbef8cda48 | False | 0.7262437257124352 | data | 6.914886364886215 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.rdata | 0x32000 | 0xa04 | 0xc00 | fbf38fd25ffe3b995354a30109bba30b | False | 0.3968098958333333 | data | 4.798427724315568 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.data | 0x33000 | 0x1bb84 | 0x3e00 | 8fb1345fac8c46c706ce75db7ee26be4 | False | 0.9133064516129032 | data | 7.277764464021273 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.reloc | 0x4f000 | 0x76c8 | 0x7800 | 0e5310d3716de90a99d1ab24adebaa09 | False | 0.7573893229166667 | data | 6.814004846803548 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ |
DLL | Import |
---|---|
GDI32.dll | UpdateColors, GetBkColor, GetFontUnicodeRanges, GetFontLanguageInfo, GetTextCharset, SetTextJustification, GetTextAlign, GetStretchBltMode, SetTextAlign, GetClipRgn, GetSystemPaletteUse, GetRandomRgn, SetPixel, GetPolyFillMode, GetDCPenColor, SetTextColor, GetPixelFormat, GetMetaRgn, GetNearestColor, GetTextColor, GetNearestPaletteIndex, GetDeviceCaps, GetMapMode, GetTextCharsetInfo, GetObjectType, GetGraphicsMode, GetTextCharacterExtra |
USER32.dll | SetFocus, LoadIconA, DrawTextA, GetDlgItem, GetDlgItemInt, GetPropA, GetMenuItemID, EndPaint, GetWindowDC, EnableWindow, SetWindowTextA, GetInputState, GetMenu, MoveWindow, CheckDlgButton, GetMenuCheckMarkDimensions, EndDialog, WindowFromDC, RemovePropA, IsWindowUnicode, SetDlgItemTextA, PostMessageA, GetScrollPos, BeginPaint, SendMessageA, IsWindowEnabled, GetWindowContextHelpId, GetWindowLongA, GetKeyboardType, GetMenuContextHelpId, GetMenuItemCount |
KERNEL32.dll | GetProcAddress, GetFileType, GetCurrentProcessId, CloseHandle, GlobalHandle, GetCurrentThreadId, IsDebuggerPresent, SetFilePointer, IsProcessorFeaturePresent, LocalFlags, LockResource, GetCurrentProcess, GetModuleHandleA, MoveFileA, DeleteFileA, QueryPerformanceCounter, GlobalSize, GetTickCount, GlobalFlags, GetFileTime, GetLastError, FindResourceA, FindClose, FlushFileBuffers, GlobalAlloc, LoadResource, GetStdHandle, GetProcessHeap, HeapAlloc |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-11-07T15:41:54.258875+0100 | 2811542 | ETPRO MALWARE Possible Tinba DGA NXDOMAIN Responses (net) | 1 | 1.1.1.1 | 53 | 192.168.2.6 | 57116 | UDP |
2024-11-07T15:41:54.378741+0100 | 2018316 | ET MALWARE Possible Zeus GameOver/FluBot Related DGA NXDOMAIN Responses | 1 | 1.1.1.1 | 53 | 192.168.2.6 | 57769 | UDP |
2024-11-07T15:41:55.658532+0100 | 2820680 | ETPRO MALWARE W32/Bayrob Attempted Checkin 2 | 1 | 192.168.2.6 | 61162 | 199.59.243.227 | 80 | TCP |
2024-11-07T15:41:57.420782+0100 | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 1 | 192.168.2.6 | 61164 | 18.143.155.63 | 80 | TCP |
2024-11-07T15:41:57.817092+0100 | 2018141 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value Snkz | 1 | 18.143.155.63 | 80 | 192.168.2.6 | 61164 | TCP |
2024-11-07T15:41:57.817092+0100 | 2037771 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value btst | 1 | 18.143.155.63 | 80 | 192.168.2.6 | 61164 | TCP |
2024-11-07T15:42:00.835671+0100 | 2018141 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value Snkz | 1 | 54.244.188.177 | 80 | 192.168.2.6 | 61185 | TCP |
2024-11-07T15:42:00.835671+0100 | 2037771 | ET MALWARE Possible Compromised Host AnubisNetworks Sinkhole Cookie Value btst | 1 | 54.244.188.177 | 80 | 192.168.2.6 | 61185 | TCP |
2024-11-07T15:42:08.521365+0100 | 2022930 | ET EXPLOIT Possible CVE-2016-2211 Symantec Cab Parsing Buffer Overflow | 1 | 4.245.163.56 | 443 | 192.168.2.6 | 61217 | TCP |
2024-11-07T15:42:36.798438+0100 | 2022930 | ET EXPLOIT Possible CVE-2016-2211 Symantec Cab Parsing Buffer Overflow | 1 | 4.245.163.56 | 443 | 192.168.2.6 | 54000 | TCP |
2024-11-07T15:43:37.556413+0100 | 2815568 | ETPRO MALWARE Terse HTTP 1.0 Request Possible Nivdort | 1 | 192.168.2.6 | 54125 | 18.143.155.63 | 80 | TCP |
2024-11-07T15:43:37.556413+0100 | 2820680 | ETPRO MALWARE W32/Bayrob Attempted Checkin 2 | 1 | 192.168.2.6 | 54125 | 18.143.155.63 | 80 | TCP |
2024-11-07T15:43:42.679237+0100 | 2018316 | ET MALWARE Possible Zeus GameOver/FluBot Related DGA NXDOMAIN Responses | 1 | 1.1.1.1 | 53 | 192.168.2.6 | 54598 | UDP |
2024-11-07T15:43:55.894056+0100 | 2811542 | ETPRO MALWARE Possible Tinba DGA NXDOMAIN Responses (net) | 1 | 1.1.1.1 | 53 | 192.168.2.6 | 52210 | UDP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 7, 2024 15:41:54.844553947 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:54.850521088 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:54.850614071 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:54.850847960 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:54.855875015 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:55.658045053 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:55.658428907 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:55.658531904 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:55.658590078 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:55.658647060 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:55.658699036 CET | 61162 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:41:55.663583040 CET | 80 | 61162 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:41:55.912197113 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:55.917197943 CET | 80 | 61164 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:41:55.917280912 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:55.917365074 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:55.922625065 CET | 80 | 61164 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:41:57.377079010 CET | 80 | 61164 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:41:57.420782089 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:57.817091942 CET | 80 | 61164 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:41:57.817190886 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:57.817192078 CET | 61164 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:41:57.822119951 CET | 80 | 61164 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:41:59.841775894 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:41:59.847269058 CET | 80 | 61185 | 54.244.188.177 | 192.168.2.6 |
Nov 7, 2024 15:41:59.847400904 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:41:59.847522974 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:41:59.852287054 CET | 80 | 61185 | 54.244.188.177 | 192.168.2.6 |
Nov 7, 2024 15:42:00.718555927 CET | 80 | 61185 | 54.244.188.177 | 192.168.2.6 |
Nov 7, 2024 15:42:00.764575005 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:42:00.835670948 CET | 80 | 61185 | 54.244.188.177 | 192.168.2.6 |
Nov 7, 2024 15:42:00.835767984 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:42:00.835849047 CET | 61185 | 80 | 192.168.2.6 | 54.244.188.177 |
Nov 7, 2024 15:42:00.841044903 CET | 80 | 61185 | 54.244.188.177 | 192.168.2.6 |
Nov 7, 2024 15:42:01.808871031 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:01.813946962 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:01.814026117 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:01.814074039 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:01.819205046 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:02.470746994 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:02.470777035 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:02.470973969 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:02.473345995 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:02.473407030 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:02.473450899 CET | 61196 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:42:02.480953932 CET | 80 | 61196 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:42:03.294503927 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:03.299477100 CET | 80 | 61201 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:42:03.299637079 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:03.299684048 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:03.304487944 CET | 80 | 61201 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:42:04.784287930 CET | 80 | 61201 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:42:04.827020884 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:05.230200052 CET | 80 | 61201 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:42:05.230439901 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:05.230503082 CET | 61201 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:42:05.235357046 CET | 80 | 61201 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:42:06.446270943 CET | 61213 | 80 | 192.168.2.6 | 85.214.228.140 |
Nov 7, 2024 15:42:06.451636076 CET | 80 | 61213 | 85.214.228.140 | 192.168.2.6 |
Nov 7, 2024 15:42:06.451745033 CET | 61213 | 80 | 192.168.2.6 | 85.214.228.140 |
Nov 7, 2024 15:42:06.453412056 CET | 61213 | 80 | 192.168.2.6 | 85.214.228.140 |
Nov 7, 2024 15:42:06.458467007 CET | 80 | 61213 | 85.214.228.140 | 192.168.2.6 |
Nov 7, 2024 15:42:07.339715004 CET | 80 | 61213 | 85.214.228.140 | 192.168.2.6 |
Nov 7, 2024 15:42:07.340455055 CET | 61213 | 80 | 192.168.2.6 | 85.214.228.140 |
Nov 7, 2024 15:42:07.346086979 CET | 80 | 61213 | 85.214.228.140 | 192.168.2.6 |
Nov 7, 2024 15:42:07.346136093 CET | 61213 | 80 | 192.168.2.6 | 85.214.228.140 |
Nov 7, 2024 15:43:30.001475096 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.006447077 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:30.006525040 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.006602049 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.011634111 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:30.690996885 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:30.691035032 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:30.691104889 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.722445011 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:30.722558022 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.722615004 CET | 54124 | 80 | 192.168.2.6 | 199.59.243.227 |
Nov 7, 2024 15:43:30.727543116 CET | 80 | 54124 | 199.59.243.227 | 192.168.2.6 |
Nov 7, 2024 15:43:36.108063936 CET | 54125 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:43:36.113018036 CET | 80 | 54125 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:43:36.113085985 CET | 54125 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:43:36.113943100 CET | 54125 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:43:36.118774891 CET | 80 | 54125 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:43:37.556240082 CET | 80 | 54125 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:43:37.556412935 CET | 54125 | 80 | 192.168.2.6 | 18.143.155.63 |
Nov 7, 2024 15:43:37.562424898 CET | 80 | 54125 | 18.143.155.63 | 192.168.2.6 |
Nov 7, 2024 15:43:37.562490940 CET | 54125 | 80 | 192.168.2.6 | 18.143.155.63 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Nov 7, 2024 15:41:53.506658077 CET | 54582 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:53.543107986 CET | 53 | 54582 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:53.544981956 CET | 55160 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:53.555422068 CET | 53 | 55160 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:53.556427002 CET | 53476 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:53.588172913 CET | 53 | 53476 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:53.588982105 CET | 59697 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:53.595844030 CET | 53 | 59697 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.232904911 CET | 60332 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.243195057 CET | 53 | 60332 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.248635054 CET | 57116 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.258874893 CET | 53 | 57116 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.263756037 CET | 51554 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.276308060 CET | 53 | 51554 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.282855034 CET | 50200 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.314434052 CET | 53 | 50200 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.319019079 CET | 62948 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.330238104 CET | 53 | 62948 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.337842941 CET | 58412 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.347049952 CET | 53 | 58412 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.349253893 CET | 49923 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.358637094 CET | 53 | 49923 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.368004084 CET | 57769 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.378741026 CET | 53 | 57769 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.379426956 CET | 57108 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.389899969 CET | 53 | 57108 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.390434980 CET | 52967 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.416484118 CET | 53 | 52967 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.430154085 CET | 64563 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.439172029 CET | 53 | 64563 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.444452047 CET | 64900 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.475759029 CET | 53 | 64900 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:54.512857914 CET | 62622 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:54.829195023 CET | 53 | 62622 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:55.659338951 CET | 57604 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:55.670730114 CET | 53 | 57604 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:55.671514034 CET | 59169 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:55.681399107 CET | 53 | 59169 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:55.682008028 CET | 62245 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:55.692348003 CET | 53 | 62245 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:55.692894936 CET | 49280 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:55.724601984 CET | 53 | 49280 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:55.725229979 CET | 53824 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:55.911421061 CET | 53 | 53824 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.817819118 CET | 64054 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.828553915 CET | 53 | 64054 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.829165936 CET | 64243 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.840790033 CET | 53 | 64243 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.841368914 CET | 63763 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.850421906 CET | 53 | 63763 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.851160049 CET | 51010 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.866318941 CET | 53 | 51010 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.866940975 CET | 49620 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.876775980 CET | 53 | 49620 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.877368927 CET | 51499 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.908783913 CET | 53 | 51499 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.909492016 CET | 49919 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.918889046 CET | 53 | 49919 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.919434071 CET | 50790 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.928412914 CET | 53 | 50790 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.928946018 CET | 65201 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.959700108 CET | 53 | 65201 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.960274935 CET | 62188 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:57.970865965 CET | 53 | 62188 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:57.971513033 CET | 59137 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.001770973 CET | 53 | 59137 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.002605915 CET | 50401 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.012409925 CET | 53 | 50401 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.013202906 CET | 61944 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.044363022 CET | 53 | 61944 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.045164108 CET | 61520 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.054833889 CET | 53 | 61520 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.055454016 CET | 58125 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.065419912 CET | 53 | 58125 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.066004038 CET | 56418 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.075436115 CET | 53 | 56418 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.075938940 CET | 65260 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.107876062 CET | 53 | 65260 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.108573914 CET | 51712 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.264873981 CET | 53 | 51712 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.265629053 CET | 51279 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.296588898 CET | 53 | 51279 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.297272921 CET | 56484 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.304090977 CET | 53 | 56484 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.304574013 CET | 64414 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.313775063 CET | 53 | 64414 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.314344883 CET | 57047 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.346585035 CET | 53 | 57047 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.354036093 CET | 55104 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.386097908 CET | 53 | 55104 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.387094975 CET | 61629 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.396900892 CET | 53 | 61629 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.397530079 CET | 65370 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.428978920 CET | 53 | 65370 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.429656982 CET | 63172 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.442555904 CET | 53 | 63172 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.443128109 CET | 57873 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.453717947 CET | 53 | 57873 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.454363108 CET | 63396 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.464113951 CET | 53 | 63396 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.464747906 CET | 53253 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.474076986 CET | 53 | 53253 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.474767923 CET | 54401 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.484527111 CET | 53 | 54401 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.485228062 CET | 53370 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.516268969 CET | 53 | 53370 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.518723011 CET | 51185 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.527909994 CET | 53 | 51185 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.529160023 CET | 61578 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.696866035 CET | 53 | 61578 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.698390961 CET | 53629 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.709086895 CET | 53 | 53629 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.709846020 CET | 60825 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.723721027 CET | 53 | 60825 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.724337101 CET | 57913 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.735677958 CET | 53 | 57913 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.736354113 CET | 58843 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.747745991 CET | 53 | 58843 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.748291969 CET | 57983 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.765239000 CET | 53 | 57983 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.765824080 CET | 61694 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.798336983 CET | 53 | 61694 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.799072981 CET | 61442 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:58.832793951 CET | 53 | 61442 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:58.833936930 CET | 53089 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.188870907 CET | 53 | 53089 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.189964056 CET | 51883 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.220474958 CET | 53 | 51883 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.221791029 CET | 62539 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.384079933 CET | 53 | 62539 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.397233963 CET | 62258 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.407087088 CET | 53 | 62258 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.408514023 CET | 54953 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.418261051 CET | 53 | 54953 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.425976992 CET | 52427 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.458400965 CET | 53 | 52427 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.459321976 CET | 64927 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.489969015 CET | 53 | 64927 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.490938902 CET | 58392 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.524666071 CET | 53 | 58392 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.525670052 CET | 64236 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.536775112 CET | 53 | 64236 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.537642956 CET | 57938 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.570112944 CET | 53 | 57938 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.571193933 CET | 53243 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.603425980 CET | 53 | 53243 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.604568958 CET | 61696 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.615341902 CET | 53 | 61696 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.616296053 CET | 53017 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.647249937 CET | 53 | 53017 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:41:59.648407936 CET | 54766 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:41:59.840943098 CET | 53 | 54766 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.836661100 CET | 62361 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.867495060 CET | 53 | 62361 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.868488073 CET | 60636 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.900161982 CET | 53 | 60636 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.901371002 CET | 63680 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.912790060 CET | 53 | 63680 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.913538933 CET | 54101 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.924434900 CET | 53 | 54101 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.925321102 CET | 61332 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.940551043 CET | 53 | 61332 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.941373110 CET | 51671 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.950934887 CET | 53 | 51671 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.951792955 CET | 60039 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.961421967 CET | 53 | 60039 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.962095976 CET | 56336 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.972805977 CET | 53 | 56336 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.973738909 CET | 52242 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:00.989516020 CET | 53 | 52242 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:00.990161896 CET | 51251 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.021161079 CET | 53 | 51251 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.022108078 CET | 65155 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.031016111 CET | 53 | 65155 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.031712055 CET | 60163 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.044020891 CET | 53 | 60163 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.044601917 CET | 51260 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.054066896 CET | 53 | 51260 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.054757118 CET | 59530 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.085321903 CET | 53 | 59530 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.086224079 CET | 52066 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.096111059 CET | 53 | 52066 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.097312927 CET | 52969 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.108268023 CET | 53 | 52969 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.121191025 CET | 52594 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.151448011 CET | 53 | 52594 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.152260065 CET | 64128 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.312693119 CET | 53 | 64128 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.313704014 CET | 53290 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.323566914 CET | 53 | 53290 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.324220896 CET | 65113 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.334382057 CET | 53 | 65113 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.334898949 CET | 52385 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.350759983 CET | 53 | 52385 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.351377010 CET | 52887 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.362658024 CET | 53 | 52887 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.363173962 CET | 62597 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.394521952 CET | 53 | 62597 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.395379066 CET | 55344 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.405895948 CET | 53 | 55344 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.406482935 CET | 55208 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.416650057 CET | 53 | 55208 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:01.417210102 CET | 62696 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:01.805315018 CET | 53 | 62696 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.474060059 CET | 61739 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.507220030 CET | 53 | 61739 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.511351109 CET | 54476 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.541723013 CET | 53 | 54476 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.542598963 CET | 58569 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.573909998 CET | 53 | 58569 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.574980974 CET | 64753 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.584532976 CET | 53 | 64753 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.585282087 CET | 53070 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.595499992 CET | 53 | 53070 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.596122980 CET | 62083 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.609965086 CET | 53 | 62083 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.610929012 CET | 61088 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.851505995 CET | 53 | 61088 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.852314949 CET | 63701 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.861774921 CET | 53 | 63701 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.862653017 CET | 51877 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.876271963 CET | 53 | 51877 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.879086971 CET | 49958 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:02.912797928 CET | 53 | 49958 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:02.919193029 CET | 51580 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:03.117065907 CET | 53 | 51580 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.231203079 CET | 64332 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.238532066 CET | 53 | 64332 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.239267111 CET | 49394 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.270049095 CET | 53 | 49394 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.296817064 CET | 50792 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.330167055 CET | 53 | 50792 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.330936909 CET | 64644 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.343450069 CET | 53 | 64644 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.344223976 CET | 60201 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.376176119 CET | 53 | 60201 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.376954079 CET | 62669 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.387470007 CET | 53 | 62669 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.388268948 CET | 52609 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.398643017 CET | 53 | 52609 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.399561882 CET | 62774 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.430944920 CET | 53 | 62774 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.431803942 CET | 52666 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.441553116 CET | 53 | 52666 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.442267895 CET | 59731 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.452076912 CET | 53 | 59731 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.452877998 CET | 57267 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.463351965 CET | 53 | 57267 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.463956118 CET | 64106 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.474698067 CET | 53 | 64106 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.475404978 CET | 64429 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.486880064 CET | 53 | 64429 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.487477064 CET | 52472 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.498019934 CET | 53 | 52472 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.498653889 CET | 51799 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.507431030 CET | 53 | 51799 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.508066893 CET | 62630 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.520091057 CET | 53 | 62630 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.520708084 CET | 50503 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.530713081 CET | 53 | 50503 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.531266928 CET | 54728 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.540957928 CET | 53 | 54728 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.541481018 CET | 63209 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.572529078 CET | 53 | 63209 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.573386908 CET | 52292 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.583734035 CET | 53 | 52292 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.584635019 CET | 63659 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.594752073 CET | 53 | 63659 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.595367908 CET | 52993 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.605401039 CET | 53 | 52993 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.606190920 CET | 59728 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.618357897 CET | 53 | 59728 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.634835958 CET | 65387 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.666467905 CET | 53 | 65387 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.667608976 CET | 59072 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.674981117 CET | 53 | 59072 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.675825119 CET | 58853 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.706729889 CET | 53 | 58853 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.707603931 CET | 56972 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.717257977 CET | 53 | 56972 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.718173027 CET | 61062 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.729911089 CET | 53 | 61062 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.730417013 CET | 49381 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.761569977 CET | 53 | 49381 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.762610912 CET | 57422 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.772382975 CET | 53 | 57422 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.773071051 CET | 50679 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.784383059 CET | 53 | 50679 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.784909964 CET | 51556 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.794369936 CET | 53 | 51556 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.794914007 CET | 65176 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.826064110 CET | 53 | 65176 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.826957941 CET | 52185 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.836395025 CET | 53 | 52185 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.837161064 CET | 51551 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.846688032 CET | 53 | 51551 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.909682989 CET | 60678 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.920953035 CET | 53 | 60678 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.959589958 CET | 51984 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:05.991071939 CET | 53 | 51984 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:05.998435020 CET | 62095 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.007891893 CET | 53 | 62095 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.013880014 CET | 61646 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.024072886 CET | 53 | 61646 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.028636932 CET | 53060 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.037777901 CET | 53 | 53060 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.065294981 CET | 57434 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.076098919 CET | 53 | 57434 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.101950884 CET | 58426 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.133517981 CET | 53 | 58426 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.154905081 CET | 55244 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.165941000 CET | 53 | 55244 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.187683105 CET | 56226 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.195358992 CET | 53 | 56226 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.196180105 CET | 59125 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.206001997 CET | 53 | 59125 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:06.208935976 CET | 49570 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:06.298192978 CET | 53 | 49570 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.341170073 CET | 63664 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.350570917 CET | 53 | 63664 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.351458073 CET | 63089 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.362273932 CET | 53 | 63089 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.363214016 CET | 65341 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.373131990 CET | 53 | 65341 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.373986006 CET | 55876 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.381449938 CET | 53 | 55876 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.382261038 CET | 52038 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.393147945 CET | 53 | 52038 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.393755913 CET | 57160 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.553627968 CET | 53 | 57160 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.554506063 CET | 62417 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.565201998 CET | 53 | 62417 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.565824986 CET | 58869 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.597084045 CET | 53 | 58869 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.597865105 CET | 51465 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.609004021 CET | 53 | 51465 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.609813929 CET | 51773 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.620984077 CET | 53 | 51773 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:07.621617079 CET | 60206 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:42:07.631449938 CET | 53 | 60206 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:42:34.631880045 CET | 53 | 60861 | 162.159.36.2 | 192.168.2.6 |
Nov 7, 2024 15:42:35.258991003 CET | 53 | 54641 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:14.115783930 CET | 58666 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:14.125332117 CET | 53 | 58666 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:15.140620947 CET | 63316 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:15.150748968 CET | 53 | 63316 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:16.221878052 CET | 57477 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:16.252557993 CET | 53 | 57477 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:17.265491962 CET | 57204 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:17.276210070 CET | 53 | 57204 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:18.292524099 CET | 55553 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:18.312746048 CET | 55553 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:18.447458982 CET | 53 | 55553 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:18.447485924 CET | 53 | 55553 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:19.473737001 CET | 62746 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:19.499171972 CET | 62746 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:19.505630970 CET | 53 | 62746 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:19.506145954 CET | 53 | 62746 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:20.515742064 CET | 51885 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:20.526391029 CET | 53 | 51885 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:21.619050026 CET | 62902 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:21.629300117 CET | 53 | 62902 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:22.641386032 CET | 58266 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:22.651343107 CET | 53 | 58266 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:23.656169891 CET | 54382 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:23.667277098 CET | 53 | 54382 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:24.842623949 CET | 56810 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:24.865039110 CET | 56810 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:24.874732971 CET | 53 | 56810 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:24.874749899 CET | 53 | 56810 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:25.906321049 CET | 57742 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:25.916416883 CET | 53 | 57742 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:26.921778917 CET | 63235 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:26.929193974 CET | 53 | 63235 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:27.937464952 CET | 61216 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:27.967884064 CET | 61216 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:27.969069958 CET | 53 | 61216 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:27.975379944 CET | 53 | 61216 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:28.984153986 CET | 60183 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:28.995719910 CET | 53 | 60183 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:31.734087944 CET | 61903 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:31.744566917 CET | 53 | 61903 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:32.749819994 CET | 57492 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:32.760966063 CET | 53 | 57492 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:33.765551090 CET | 56157 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:33.796114922 CET | 56157 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:33.909955978 CET | 53 | 56157 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:33.909981012 CET | 53 | 56157 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:34.922061920 CET | 58269 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:34.952421904 CET | 58269 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:34.953933001 CET | 53 | 58269 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:34.959440947 CET | 53 | 58269 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:38.572472095 CET | 53717 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:38.581660986 CET | 53 | 53717 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:39.593841076 CET | 65409 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:39.603759050 CET | 53 | 65409 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:40.609422922 CET | 53851 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:40.619654894 CET | 53 | 53851 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:41.625169039 CET | 62965 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:41.632752895 CET | 53 | 62965 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:42.640528917 CET | 54598 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:42.671125889 CET | 54598 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:42.674387932 CET | 53 | 54598 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:42.679236889 CET | 53 | 54598 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:43.687500954 CET | 54418 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:43.718087912 CET | 54418 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:43.720408916 CET | 53 | 54418 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:43.725275993 CET | 53 | 54418 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:44.734496117 CET | 51323 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:44.764806986 CET | 51323 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:44.765461922 CET | 53 | 51323 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:44.771636963 CET | 53 | 51323 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:45.781469107 CET | 54182 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:45.811789036 CET | 54182 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:45.812875986 CET | 53 | 54182 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:45.819344044 CET | 53 | 54182 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:46.828219891 CET | 63939 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:46.838902950 CET | 53 | 63939 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:47.909003019 CET | 60641 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:47.923378944 CET | 53 | 60641 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:49.063409090 CET | 55185 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:49.074929953 CET | 53 | 55185 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:50.046789885 CET | 63600 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:50.077416897 CET | 63600 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:50.078346968 CET | 53 | 63600 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:50.085731030 CET | 53 | 63600 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:51.015631914 CET | 63118 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:51.025511026 CET | 53 | 63118 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:51.937378883 CET | 58056 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:51.967885017 CET | 58056 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:52.094109058 CET | 53 | 58056 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:52.094227076 CET | 53 | 58056 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:52.968643904 CET | 56790 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:52.999638081 CET | 56790 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:52.999736071 CET | 53 | 56790 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:53.006853104 CET | 53 | 56790 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:53.859247923 CET | 52753 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:53.869788885 CET | 53 | 52753 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:54.687422991 CET | 54529 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:54.698144913 CET | 53 | 54529 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.577853918 CET | 59010 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.585814953 CET | 53 | 59010 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.586328030 CET | 63924 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.608727932 CET | 63924 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.616806030 CET | 53 | 63924 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.616846085 CET | 53 | 63924 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.617536068 CET | 53905 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.627713919 CET | 53 | 53905 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.628247976 CET | 62012 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.638164997 CET | 53 | 62012 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.638608932 CET | 53515 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.648478985 CET | 53 | 53515 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.648983955 CET | 62635 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.659259081 CET | 53 | 62635 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.659866095 CET | 51178 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.670146942 CET | 53 | 51178 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.670752048 CET | 63142 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.681123018 CET | 53 | 63142 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.681590080 CET | 60593 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.702215910 CET | 60593 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.713984966 CET | 53 | 60593 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.714024067 CET | 53 | 60593 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.714850903 CET | 52727 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.724735022 CET | 53 | 52727 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.725353003 CET | 62466 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.736336946 CET | 53 | 62466 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.736797094 CET | 61422 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.764694929 CET | 61422 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.768152952 CET | 53 | 61422 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.768954039 CET | 57461 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.771770954 CET | 53 | 61422 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.777060986 CET | 53 | 57461 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.777558088 CET | 63721 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.788003922 CET | 53 | 63721 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.788743973 CET | 60943 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.811563015 CET | 60943 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.820233107 CET | 53 | 60943 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.820415020 CET | 53 | 60943 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.821124077 CET | 57163 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.832729101 CET | 53 | 57163 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.833384037 CET | 59737 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.843116045 CET | 53 | 59737 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.843619108 CET | 57176 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.851432085 CET | 53 | 57176 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.851938009 CET | 60313 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.874041080 CET | 60313 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.884104013 CET | 53 | 60313 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.884135008 CET | 53 | 60313 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.884608984 CET | 52210 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.894056082 CET | 53 | 52210 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.894685030 CET | 51182 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.920989990 CET | 51182 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.926999092 CET | 53 | 51182 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.927609921 CET | 51344 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.928174019 CET | 53 | 51182 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.938483953 CET | 53 | 51344 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.938896894 CET | 50098 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.948695898 CET | 53 | 50098 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.949161053 CET | 52386 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.967808962 CET | 52386 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.981246948 CET | 53 | 52386 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.981264114 CET | 53 | 52386 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:55.982069016 CET | 49665 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:55.999038935 CET | 49665 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:56.013346910 CET | 53 | 49665 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:56.013364077 CET | 53 | 49665 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:56.014215946 CET | 58211 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:56.023665905 CET | 53 | 58211 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:56.024429083 CET | 51354 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:56.033694029 CET | 53 | 51354 | 1.1.1.1 | 192.168.2.6 |
Nov 7, 2024 15:43:56.034334898 CET | 49300 | 53 | 192.168.2.6 | 1.1.1.1 |
Nov 7, 2024 15:43:56.044936895 CET | 53 | 49300 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Nov 7, 2024 15:41:53.506658077 CET | 192.168.2.6 | 1.1.1.1 | 0x3f95 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:53.544981956 CET | 192.168.2.6 | 1.1.1.1 | 0xa49a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:53.556427002 CET | 192.168.2.6 | 1.1.1.1 | 0xcef9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:53.588982105 CET | 192.168.2.6 | 1.1.1.1 | 0x258a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.232904911 CET | 192.168.2.6 | 1.1.1.1 | 0xece6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.248635054 CET | 192.168.2.6 | 1.1.1.1 | 0x2eef | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.263756037 CET | 192.168.2.6 | 1.1.1.1 | 0x4c1d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.282855034 CET | 192.168.2.6 | 1.1.1.1 | 0x50d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.319019079 CET | 192.168.2.6 | 1.1.1.1 | 0x55f5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.337842941 CET | 192.168.2.6 | 1.1.1.1 | 0xe935 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.349253893 CET | 192.168.2.6 | 1.1.1.1 | 0x9a31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.368004084 CET | 192.168.2.6 | 1.1.1.1 | 0x44bd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.379426956 CET | 192.168.2.6 | 1.1.1.1 | 0x3f66 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.390434980 CET | 192.168.2.6 | 1.1.1.1 | 0xe2f7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.430154085 CET | 192.168.2.6 | 1.1.1.1 | 0xee75 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.444452047 CET | 192.168.2.6 | 1.1.1.1 | 0x6a61 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.512857914 CET | 192.168.2.6 | 1.1.1.1 | 0x92a4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.659338951 CET | 192.168.2.6 | 1.1.1.1 | 0x6274 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.671514034 CET | 192.168.2.6 | 1.1.1.1 | 0x629a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.682008028 CET | 192.168.2.6 | 1.1.1.1 | 0xc785 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.692894936 CET | 192.168.2.6 | 1.1.1.1 | 0x78e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.725229979 CET | 192.168.2.6 | 1.1.1.1 | 0x3618 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.817819118 CET | 192.168.2.6 | 1.1.1.1 | 0x5b2a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.829165936 CET | 192.168.2.6 | 1.1.1.1 | 0xe04d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.841368914 CET | 192.168.2.6 | 1.1.1.1 | 0xb284 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.851160049 CET | 192.168.2.6 | 1.1.1.1 | 0x4012 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.866940975 CET | 192.168.2.6 | 1.1.1.1 | 0x5c16 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.877368927 CET | 192.168.2.6 | 1.1.1.1 | 0x783 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.909492016 CET | 192.168.2.6 | 1.1.1.1 | 0xb912 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.919434071 CET | 192.168.2.6 | 1.1.1.1 | 0xce6d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.928946018 CET | 192.168.2.6 | 1.1.1.1 | 0x923 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.960274935 CET | 192.168.2.6 | 1.1.1.1 | 0x9cdb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.971513033 CET | 192.168.2.6 | 1.1.1.1 | 0x2ce2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.002605915 CET | 192.168.2.6 | 1.1.1.1 | 0xad02 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.013202906 CET | 192.168.2.6 | 1.1.1.1 | 0x5d1f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.045164108 CET | 192.168.2.6 | 1.1.1.1 | 0x7623 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.055454016 CET | 192.168.2.6 | 1.1.1.1 | 0x1698 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.066004038 CET | 192.168.2.6 | 1.1.1.1 | 0x2a2a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.075938940 CET | 192.168.2.6 | 1.1.1.1 | 0x3bb9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.108573914 CET | 192.168.2.6 | 1.1.1.1 | 0x492a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.265629053 CET | 192.168.2.6 | 1.1.1.1 | 0x1199 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.297272921 CET | 192.168.2.6 | 1.1.1.1 | 0x17c5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.304574013 CET | 192.168.2.6 | 1.1.1.1 | 0x5b3e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.314344883 CET | 192.168.2.6 | 1.1.1.1 | 0x4486 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.354036093 CET | 192.168.2.6 | 1.1.1.1 | 0xdb80 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.387094975 CET | 192.168.2.6 | 1.1.1.1 | 0xe013 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.397530079 CET | 192.168.2.6 | 1.1.1.1 | 0x59f8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.429656982 CET | 192.168.2.6 | 1.1.1.1 | 0x14a4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.443128109 CET | 192.168.2.6 | 1.1.1.1 | 0x4e75 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.454363108 CET | 192.168.2.6 | 1.1.1.1 | 0x11b6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.464747906 CET | 192.168.2.6 | 1.1.1.1 | 0x8834 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.474767923 CET | 192.168.2.6 | 1.1.1.1 | 0x5f9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.485228062 CET | 192.168.2.6 | 1.1.1.1 | 0x39a5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.518723011 CET | 192.168.2.6 | 1.1.1.1 | 0xc756 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.529160023 CET | 192.168.2.6 | 1.1.1.1 | 0x9c6e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.698390961 CET | 192.168.2.6 | 1.1.1.1 | 0xc432 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.709846020 CET | 192.168.2.6 | 1.1.1.1 | 0x5057 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.724337101 CET | 192.168.2.6 | 1.1.1.1 | 0x97ca | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.736354113 CET | 192.168.2.6 | 1.1.1.1 | 0x5dab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.748291969 CET | 192.168.2.6 | 1.1.1.1 | 0x3f4a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.765824080 CET | 192.168.2.6 | 1.1.1.1 | 0x85a8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.799072981 CET | 192.168.2.6 | 1.1.1.1 | 0xa003 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.833936930 CET | 192.168.2.6 | 1.1.1.1 | 0xd19c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.189964056 CET | 192.168.2.6 | 1.1.1.1 | 0xadd1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.221791029 CET | 192.168.2.6 | 1.1.1.1 | 0xff8b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.397233963 CET | 192.168.2.6 | 1.1.1.1 | 0x7b96 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.408514023 CET | 192.168.2.6 | 1.1.1.1 | 0x8e51 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.425976992 CET | 192.168.2.6 | 1.1.1.1 | 0x326e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.459321976 CET | 192.168.2.6 | 1.1.1.1 | 0x521b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.490938902 CET | 192.168.2.6 | 1.1.1.1 | 0x74ff | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.525670052 CET | 192.168.2.6 | 1.1.1.1 | 0x5d00 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.537642956 CET | 192.168.2.6 | 1.1.1.1 | 0x9e08 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.571193933 CET | 192.168.2.6 | 1.1.1.1 | 0x9455 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.604568958 CET | 192.168.2.6 | 1.1.1.1 | 0x1bf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.616296053 CET | 192.168.2.6 | 1.1.1.1 | 0x72a5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.648407936 CET | 192.168.2.6 | 1.1.1.1 | 0x8369 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.836661100 CET | 192.168.2.6 | 1.1.1.1 | 0x43b6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.868488073 CET | 192.168.2.6 | 1.1.1.1 | 0x4d36 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.901371002 CET | 192.168.2.6 | 1.1.1.1 | 0xb1b2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.913538933 CET | 192.168.2.6 | 1.1.1.1 | 0x89e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.925321102 CET | 192.168.2.6 | 1.1.1.1 | 0x748b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.941373110 CET | 192.168.2.6 | 1.1.1.1 | 0x29da | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.951792955 CET | 192.168.2.6 | 1.1.1.1 | 0xc77 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.962095976 CET | 192.168.2.6 | 1.1.1.1 | 0x2d64 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.973738909 CET | 192.168.2.6 | 1.1.1.1 | 0xb08 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.990161896 CET | 192.168.2.6 | 1.1.1.1 | 0xeb5e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.022108078 CET | 192.168.2.6 | 1.1.1.1 | 0x9f2a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.031712055 CET | 192.168.2.6 | 1.1.1.1 | 0xfe86 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.044601917 CET | 192.168.2.6 | 1.1.1.1 | 0xc50e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.054757118 CET | 192.168.2.6 | 1.1.1.1 | 0x1beb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.086224079 CET | 192.168.2.6 | 1.1.1.1 | 0x365f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.097312927 CET | 192.168.2.6 | 1.1.1.1 | 0x5153 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.121191025 CET | 192.168.2.6 | 1.1.1.1 | 0x1173 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.152260065 CET | 192.168.2.6 | 1.1.1.1 | 0xe4d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.313704014 CET | 192.168.2.6 | 1.1.1.1 | 0x676f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.324220896 CET | 192.168.2.6 | 1.1.1.1 | 0x7948 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.334898949 CET | 192.168.2.6 | 1.1.1.1 | 0xfc94 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.351377010 CET | 192.168.2.6 | 1.1.1.1 | 0xe7c6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.363173962 CET | 192.168.2.6 | 1.1.1.1 | 0xf059 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.395379066 CET | 192.168.2.6 | 1.1.1.1 | 0xf159 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.406482935 CET | 192.168.2.6 | 1.1.1.1 | 0xd7b6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.417210102 CET | 192.168.2.6 | 1.1.1.1 | 0xd32b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.474060059 CET | 192.168.2.6 | 1.1.1.1 | 0xb414 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.511351109 CET | 192.168.2.6 | 1.1.1.1 | 0x5ea2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.542598963 CET | 192.168.2.6 | 1.1.1.1 | 0x6c1a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.574980974 CET | 192.168.2.6 | 1.1.1.1 | 0x39c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.585282087 CET | 192.168.2.6 | 1.1.1.1 | 0x3c20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.596122980 CET | 192.168.2.6 | 1.1.1.1 | 0x82f5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.610929012 CET | 192.168.2.6 | 1.1.1.1 | 0xbc59 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.852314949 CET | 192.168.2.6 | 1.1.1.1 | 0x19b5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.862653017 CET | 192.168.2.6 | 1.1.1.1 | 0x968 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.879086971 CET | 192.168.2.6 | 1.1.1.1 | 0xdf5a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.919193029 CET | 192.168.2.6 | 1.1.1.1 | 0x5c09 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.231203079 CET | 192.168.2.6 | 1.1.1.1 | 0x4447 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.239267111 CET | 192.168.2.6 | 1.1.1.1 | 0x9226 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.296817064 CET | 192.168.2.6 | 1.1.1.1 | 0x5d6d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.330936909 CET | 192.168.2.6 | 1.1.1.1 | 0x2630 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.344223976 CET | 192.168.2.6 | 1.1.1.1 | 0x2ec1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.376954079 CET | 192.168.2.6 | 1.1.1.1 | 0xf397 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.388268948 CET | 192.168.2.6 | 1.1.1.1 | 0x7d32 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.399561882 CET | 192.168.2.6 | 1.1.1.1 | 0x5a85 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.431803942 CET | 192.168.2.6 | 1.1.1.1 | 0x7536 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.442267895 CET | 192.168.2.6 | 1.1.1.1 | 0x4180 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.452877998 CET | 192.168.2.6 | 1.1.1.1 | 0x4e14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.463956118 CET | 192.168.2.6 | 1.1.1.1 | 0xb295 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.475404978 CET | 192.168.2.6 | 1.1.1.1 | 0x92d5 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.487477064 CET | 192.168.2.6 | 1.1.1.1 | 0x52d1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.498653889 CET | 192.168.2.6 | 1.1.1.1 | 0x1f6f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.508066893 CET | 192.168.2.6 | 1.1.1.1 | 0x9f60 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.520708084 CET | 192.168.2.6 | 1.1.1.1 | 0x842c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.531266928 CET | 192.168.2.6 | 1.1.1.1 | 0x62b6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.541481018 CET | 192.168.2.6 | 1.1.1.1 | 0xe965 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.573386908 CET | 192.168.2.6 | 1.1.1.1 | 0x5c7b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.584635019 CET | 192.168.2.6 | 1.1.1.1 | 0xf365 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.595367908 CET | 192.168.2.6 | 1.1.1.1 | 0xfa57 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.606190920 CET | 192.168.2.6 | 1.1.1.1 | 0xf032 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.634835958 CET | 192.168.2.6 | 1.1.1.1 | 0xa621 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.667608976 CET | 192.168.2.6 | 1.1.1.1 | 0xcb31 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.675825119 CET | 192.168.2.6 | 1.1.1.1 | 0x8e69 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.707603931 CET | 192.168.2.6 | 1.1.1.1 | 0x878a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.718173027 CET | 192.168.2.6 | 1.1.1.1 | 0x109e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.730417013 CET | 192.168.2.6 | 1.1.1.1 | 0x3a7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.762610912 CET | 192.168.2.6 | 1.1.1.1 | 0xd915 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.773071051 CET | 192.168.2.6 | 1.1.1.1 | 0xb03f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.784909964 CET | 192.168.2.6 | 1.1.1.1 | 0xf7f9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.794914007 CET | 192.168.2.6 | 1.1.1.1 | 0x8e75 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.826957941 CET | 192.168.2.6 | 1.1.1.1 | 0x9ff8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.837161064 CET | 192.168.2.6 | 1.1.1.1 | 0x6758 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.909682989 CET | 192.168.2.6 | 1.1.1.1 | 0x210d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.959589958 CET | 192.168.2.6 | 1.1.1.1 | 0x566a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.998435020 CET | 192.168.2.6 | 1.1.1.1 | 0x9596 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.013880014 CET | 192.168.2.6 | 1.1.1.1 | 0x7c62 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.028636932 CET | 192.168.2.6 | 1.1.1.1 | 0xf89 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.065294981 CET | 192.168.2.6 | 1.1.1.1 | 0x5ec6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.101950884 CET | 192.168.2.6 | 1.1.1.1 | 0x5735 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.154905081 CET | 192.168.2.6 | 1.1.1.1 | 0x2db8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.187683105 CET | 192.168.2.6 | 1.1.1.1 | 0x7149 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.196180105 CET | 192.168.2.6 | 1.1.1.1 | 0xd749 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.208935976 CET | 192.168.2.6 | 1.1.1.1 | 0x919e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.341170073 CET | 192.168.2.6 | 1.1.1.1 | 0xde9c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.351458073 CET | 192.168.2.6 | 1.1.1.1 | 0xb71f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.363214016 CET | 192.168.2.6 | 1.1.1.1 | 0x88c4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.373986006 CET | 192.168.2.6 | 1.1.1.1 | 0xc457 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.382261038 CET | 192.168.2.6 | 1.1.1.1 | 0x66dd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.393755913 CET | 192.168.2.6 | 1.1.1.1 | 0x5e4f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.554506063 CET | 192.168.2.6 | 1.1.1.1 | 0x7f33 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.565824986 CET | 192.168.2.6 | 1.1.1.1 | 0x1f6f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.597865105 CET | 192.168.2.6 | 1.1.1.1 | 0x14f4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.609813929 CET | 192.168.2.6 | 1.1.1.1 | 0xcd4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.621617079 CET | 192.168.2.6 | 1.1.1.1 | 0x92b8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:14.115783930 CET | 192.168.2.6 | 1.1.1.1 | 0x77fc | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:15.140620947 CET | 192.168.2.6 | 1.1.1.1 | 0xd6fd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:16.221878052 CET | 192.168.2.6 | 1.1.1.1 | 0x7b8f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:17.265491962 CET | 192.168.2.6 | 1.1.1.1 | 0xdd23 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:18.292524099 CET | 192.168.2.6 | 1.1.1.1 | 0xfde | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:18.312746048 CET | 192.168.2.6 | 1.1.1.1 | 0xfde | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:19.473737001 CET | 192.168.2.6 | 1.1.1.1 | 0xd6f6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:19.499171972 CET | 192.168.2.6 | 1.1.1.1 | 0xd6f6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:20.515742064 CET | 192.168.2.6 | 1.1.1.1 | 0xccae | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:21.619050026 CET | 192.168.2.6 | 1.1.1.1 | 0x9cf9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:22.641386032 CET | 192.168.2.6 | 1.1.1.1 | 0x44cf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:23.656169891 CET | 192.168.2.6 | 1.1.1.1 | 0x582 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:24.842623949 CET | 192.168.2.6 | 1.1.1.1 | 0x9426 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:24.865039110 CET | 192.168.2.6 | 1.1.1.1 | 0x9426 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:25.906321049 CET | 192.168.2.6 | 1.1.1.1 | 0xa933 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:26.921778917 CET | 192.168.2.6 | 1.1.1.1 | 0xca77 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:27.937464952 CET | 192.168.2.6 | 1.1.1.1 | 0x2480 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:27.967884064 CET | 192.168.2.6 | 1.1.1.1 | 0x2480 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:28.984153986 CET | 192.168.2.6 | 1.1.1.1 | 0xf7e2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:31.734087944 CET | 192.168.2.6 | 1.1.1.1 | 0x3751 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:32.749819994 CET | 192.168.2.6 | 1.1.1.1 | 0xe96d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:33.765551090 CET | 192.168.2.6 | 1.1.1.1 | 0x6ea7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:33.796114922 CET | 192.168.2.6 | 1.1.1.1 | 0x6ea7 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:34.922061920 CET | 192.168.2.6 | 1.1.1.1 | 0x122 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:34.952421904 CET | 192.168.2.6 | 1.1.1.1 | 0x122 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:38.572472095 CET | 192.168.2.6 | 1.1.1.1 | 0x7c35 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:39.593841076 CET | 192.168.2.6 | 1.1.1.1 | 0xe0f2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:40.609422922 CET | 192.168.2.6 | 1.1.1.1 | 0x12e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:41.625169039 CET | 192.168.2.6 | 1.1.1.1 | 0x8d14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:42.640528917 CET | 192.168.2.6 | 1.1.1.1 | 0x847b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:42.671125889 CET | 192.168.2.6 | 1.1.1.1 | 0x847b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:43.687500954 CET | 192.168.2.6 | 1.1.1.1 | 0x2f5a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:43.718087912 CET | 192.168.2.6 | 1.1.1.1 | 0x2f5a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:44.734496117 CET | 192.168.2.6 | 1.1.1.1 | 0xccce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:44.764806986 CET | 192.168.2.6 | 1.1.1.1 | 0xccce | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:45.781469107 CET | 192.168.2.6 | 1.1.1.1 | 0xfec3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:45.811789036 CET | 192.168.2.6 | 1.1.1.1 | 0xfec3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:46.828219891 CET | 192.168.2.6 | 1.1.1.1 | 0xd05f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:47.909003019 CET | 192.168.2.6 | 1.1.1.1 | 0x7e49 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:49.063409090 CET | 192.168.2.6 | 1.1.1.1 | 0xbdab | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:50.046789885 CET | 192.168.2.6 | 1.1.1.1 | 0xec06 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:50.077416897 CET | 192.168.2.6 | 1.1.1.1 | 0xec06 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:51.015631914 CET | 192.168.2.6 | 1.1.1.1 | 0xbdfe | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:51.937378883 CET | 192.168.2.6 | 1.1.1.1 | 0x2956 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:51.967885017 CET | 192.168.2.6 | 1.1.1.1 | 0x2956 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:52.968643904 CET | 192.168.2.6 | 1.1.1.1 | 0xbc04 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:52.999638081 CET | 192.168.2.6 | 1.1.1.1 | 0xbc04 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:53.859247923 CET | 192.168.2.6 | 1.1.1.1 | 0x654d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:54.687422991 CET | 192.168.2.6 | 1.1.1.1 | 0x3511 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.577853918 CET | 192.168.2.6 | 1.1.1.1 | 0x7194 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.586328030 CET | 192.168.2.6 | 1.1.1.1 | 0x4232 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.608727932 CET | 192.168.2.6 | 1.1.1.1 | 0x4232 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.617536068 CET | 192.168.2.6 | 1.1.1.1 | 0xd012 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.628247976 CET | 192.168.2.6 | 1.1.1.1 | 0x87d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.638608932 CET | 192.168.2.6 | 1.1.1.1 | 0xc059 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.648983955 CET | 192.168.2.6 | 1.1.1.1 | 0xe004 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.659866095 CET | 192.168.2.6 | 1.1.1.1 | 0x1b2b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.670752048 CET | 192.168.2.6 | 1.1.1.1 | 0xb398 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.681590080 CET | 192.168.2.6 | 1.1.1.1 | 0x4a8b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.702215910 CET | 192.168.2.6 | 1.1.1.1 | 0x4a8b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.714850903 CET | 192.168.2.6 | 1.1.1.1 | 0xd4c9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.725353003 CET | 192.168.2.6 | 1.1.1.1 | 0x7f95 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.736797094 CET | 192.168.2.6 | 1.1.1.1 | 0xf553 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.764694929 CET | 192.168.2.6 | 1.1.1.1 | 0xf553 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.768954039 CET | 192.168.2.6 | 1.1.1.1 | 0xa6eb | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.777558088 CET | 192.168.2.6 | 1.1.1.1 | 0x737f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.788743973 CET | 192.168.2.6 | 1.1.1.1 | 0x7427 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.811563015 CET | 192.168.2.6 | 1.1.1.1 | 0x7427 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.821124077 CET | 192.168.2.6 | 1.1.1.1 | 0x5f8d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.833384037 CET | 192.168.2.6 | 1.1.1.1 | 0x8517 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.843619108 CET | 192.168.2.6 | 1.1.1.1 | 0x5ad8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.851938009 CET | 192.168.2.6 | 1.1.1.1 | 0x395c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.874041080 CET | 192.168.2.6 | 1.1.1.1 | 0x395c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.884608984 CET | 192.168.2.6 | 1.1.1.1 | 0x1fa3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.894685030 CET | 192.168.2.6 | 1.1.1.1 | 0xfcdd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.920989990 CET | 192.168.2.6 | 1.1.1.1 | 0xfcdd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.927609921 CET | 192.168.2.6 | 1.1.1.1 | 0x4269 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.938896894 CET | 192.168.2.6 | 1.1.1.1 | 0xe9e3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.949161053 CET | 192.168.2.6 | 1.1.1.1 | 0x892c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.967808962 CET | 192.168.2.6 | 1.1.1.1 | 0x892c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.982069016 CET | 192.168.2.6 | 1.1.1.1 | 0x1e2d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.999038935 CET | 192.168.2.6 | 1.1.1.1 | 0x1e2d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.014215946 CET | 192.168.2.6 | 1.1.1.1 | 0x32d0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.024429083 CET | 192.168.2.6 | 1.1.1.1 | 0x88d9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.034334898 CET | 192.168.2.6 | 1.1.1.1 | 0x69cd | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Nov 7, 2024 15:41:53.555422068 CET | 1.1.1.1 | 192.168.2.6 | 0xa49a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:53.588172913 CET | 1.1.1.1 | 192.168.2.6 | 0xcef9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.243195057 CET | 1.1.1.1 | 192.168.2.6 | 0xece6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.258874893 CET | 1.1.1.1 | 192.168.2.6 | 0x2eef | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.276308060 CET | 1.1.1.1 | 192.168.2.6 | 0x4c1d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.314434052 CET | 1.1.1.1 | 192.168.2.6 | 0x50d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.330238104 CET | 1.1.1.1 | 192.168.2.6 | 0x55f5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.347049952 CET | 1.1.1.1 | 192.168.2.6 | 0xe935 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.358637094 CET | 1.1.1.1 | 192.168.2.6 | 0x9a31 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.378741026 CET | 1.1.1.1 | 192.168.2.6 | 0x44bd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.389899969 CET | 1.1.1.1 | 192.168.2.6 | 0x3f66 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.416484118 CET | 1.1.1.1 | 192.168.2.6 | 0xe2f7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.439172029 CET | 1.1.1.1 | 192.168.2.6 | 0xee75 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.475759029 CET | 1.1.1.1 | 192.168.2.6 | 0x6a61 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:54.829195023 CET | 1.1.1.1 | 192.168.2.6 | 0x92a4 | No error (0) | 7450.bodis.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Nov 7, 2024 15:41:54.829195023 CET | 1.1.1.1 | 192.168.2.6 | 0x92a4 | No error (0) | 199.59.243.227 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:41:55.670730114 CET | 1.1.1.1 | 192.168.2.6 | 0x6274 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.681399107 CET | 1.1.1.1 | 192.168.2.6 | 0x629a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.692348003 CET | 1.1.1.1 | 192.168.2.6 | 0xc785 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.724601984 CET | 1.1.1.1 | 192.168.2.6 | 0x78e8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:55.911421061 CET | 1.1.1.1 | 192.168.2.6 | 0x3618 | No error (0) | 18.143.155.63 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:41:57.828553915 CET | 1.1.1.1 | 192.168.2.6 | 0x5b2a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.840790033 CET | 1.1.1.1 | 192.168.2.6 | 0xe04d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.850421906 CET | 1.1.1.1 | 192.168.2.6 | 0xb284 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.866318941 CET | 1.1.1.1 | 192.168.2.6 | 0x4012 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.876775980 CET | 1.1.1.1 | 192.168.2.6 | 0x5c16 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.908783913 CET | 1.1.1.1 | 192.168.2.6 | 0x783 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.918889046 CET | 1.1.1.1 | 192.168.2.6 | 0xb912 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.928412914 CET | 1.1.1.1 | 192.168.2.6 | 0xce6d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.959700108 CET | 1.1.1.1 | 192.168.2.6 | 0x923 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:57.970865965 CET | 1.1.1.1 | 192.168.2.6 | 0x9cdb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.001770973 CET | 1.1.1.1 | 192.168.2.6 | 0x2ce2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.012409925 CET | 1.1.1.1 | 192.168.2.6 | 0xad02 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.044363022 CET | 1.1.1.1 | 192.168.2.6 | 0x5d1f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.054833889 CET | 1.1.1.1 | 192.168.2.6 | 0x7623 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.065419912 CET | 1.1.1.1 | 192.168.2.6 | 0x1698 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.075436115 CET | 1.1.1.1 | 192.168.2.6 | 0x2a2a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.107876062 CET | 1.1.1.1 | 192.168.2.6 | 0x3bb9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.264873981 CET | 1.1.1.1 | 192.168.2.6 | 0x492a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.296588898 CET | 1.1.1.1 | 192.168.2.6 | 0x1199 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.304090977 CET | 1.1.1.1 | 192.168.2.6 | 0x17c5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.313775063 CET | 1.1.1.1 | 192.168.2.6 | 0x5b3e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.346585035 CET | 1.1.1.1 | 192.168.2.6 | 0x4486 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.386097908 CET | 1.1.1.1 | 192.168.2.6 | 0xdb80 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.396900892 CET | 1.1.1.1 | 192.168.2.6 | 0xe013 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.428978920 CET | 1.1.1.1 | 192.168.2.6 | 0x59f8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.442555904 CET | 1.1.1.1 | 192.168.2.6 | 0x14a4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.453717947 CET | 1.1.1.1 | 192.168.2.6 | 0x4e75 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.464113951 CET | 1.1.1.1 | 192.168.2.6 | 0x11b6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.474076986 CET | 1.1.1.1 | 192.168.2.6 | 0x8834 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.484527111 CET | 1.1.1.1 | 192.168.2.6 | 0x5f9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.516268969 CET | 1.1.1.1 | 192.168.2.6 | 0x39a5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.527909994 CET | 1.1.1.1 | 192.168.2.6 | 0xc756 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.696866035 CET | 1.1.1.1 | 192.168.2.6 | 0x9c6e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.709086895 CET | 1.1.1.1 | 192.168.2.6 | 0xc432 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.723721027 CET | 1.1.1.1 | 192.168.2.6 | 0x5057 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.735677958 CET | 1.1.1.1 | 192.168.2.6 | 0x97ca | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.747745991 CET | 1.1.1.1 | 192.168.2.6 | 0x5dab | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.765239000 CET | 1.1.1.1 | 192.168.2.6 | 0x3f4a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.798336983 CET | 1.1.1.1 | 192.168.2.6 | 0x85a8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:58.832793951 CET | 1.1.1.1 | 192.168.2.6 | 0xa003 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.188870907 CET | 1.1.1.1 | 192.168.2.6 | 0xd19c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.220474958 CET | 1.1.1.1 | 192.168.2.6 | 0xadd1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.384079933 CET | 1.1.1.1 | 192.168.2.6 | 0xff8b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.407087088 CET | 1.1.1.1 | 192.168.2.6 | 0x7b96 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.418261051 CET | 1.1.1.1 | 192.168.2.6 | 0x8e51 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.458400965 CET | 1.1.1.1 | 192.168.2.6 | 0x326e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.489969015 CET | 1.1.1.1 | 192.168.2.6 | 0x521b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.524666071 CET | 1.1.1.1 | 192.168.2.6 | 0x74ff | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.536775112 CET | 1.1.1.1 | 192.168.2.6 | 0x5d00 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.570112944 CET | 1.1.1.1 | 192.168.2.6 | 0x9e08 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.603425980 CET | 1.1.1.1 | 192.168.2.6 | 0x9455 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.615341902 CET | 1.1.1.1 | 192.168.2.6 | 0x1bf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.647249937 CET | 1.1.1.1 | 192.168.2.6 | 0x72a5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:41:59.840943098 CET | 1.1.1.1 | 192.168.2.6 | 0x8369 | No error (0) | 54.244.188.177 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:42:00.867495060 CET | 1.1.1.1 | 192.168.2.6 | 0x43b6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.900161982 CET | 1.1.1.1 | 192.168.2.6 | 0x4d36 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.912790060 CET | 1.1.1.1 | 192.168.2.6 | 0xb1b2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.924434900 CET | 1.1.1.1 | 192.168.2.6 | 0x89e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.940551043 CET | 1.1.1.1 | 192.168.2.6 | 0x748b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.950934887 CET | 1.1.1.1 | 192.168.2.6 | 0x29da | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.961421967 CET | 1.1.1.1 | 192.168.2.6 | 0xc77 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.972805977 CET | 1.1.1.1 | 192.168.2.6 | 0x2d64 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:00.989516020 CET | 1.1.1.1 | 192.168.2.6 | 0xb08 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.021161079 CET | 1.1.1.1 | 192.168.2.6 | 0xeb5e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.031016111 CET | 1.1.1.1 | 192.168.2.6 | 0x9f2a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.044020891 CET | 1.1.1.1 | 192.168.2.6 | 0xfe86 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.054066896 CET | 1.1.1.1 | 192.168.2.6 | 0xc50e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.085321903 CET | 1.1.1.1 | 192.168.2.6 | 0x1beb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.096111059 CET | 1.1.1.1 | 192.168.2.6 | 0x365f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.108268023 CET | 1.1.1.1 | 192.168.2.6 | 0x5153 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.151448011 CET | 1.1.1.1 | 192.168.2.6 | 0x1173 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.312693119 CET | 1.1.1.1 | 192.168.2.6 | 0xe4d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.323566914 CET | 1.1.1.1 | 192.168.2.6 | 0x676f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.334382057 CET | 1.1.1.1 | 192.168.2.6 | 0x7948 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.350759983 CET | 1.1.1.1 | 192.168.2.6 | 0xfc94 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.362658024 CET | 1.1.1.1 | 192.168.2.6 | 0xe7c6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.394521952 CET | 1.1.1.1 | 192.168.2.6 | 0xf059 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.405895948 CET | 1.1.1.1 | 192.168.2.6 | 0xf159 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.416650057 CET | 1.1.1.1 | 192.168.2.6 | 0xd7b6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:01.805315018 CET | 1.1.1.1 | 192.168.2.6 | 0xd32b | No error (0) | 7450.bodis.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Nov 7, 2024 15:42:01.805315018 CET | 1.1.1.1 | 192.168.2.6 | 0xd32b | No error (0) | 199.59.243.227 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:42:02.507220030 CET | 1.1.1.1 | 192.168.2.6 | 0xb414 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.541723013 CET | 1.1.1.1 | 192.168.2.6 | 0x5ea2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.573909998 CET | 1.1.1.1 | 192.168.2.6 | 0x6c1a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.584532976 CET | 1.1.1.1 | 192.168.2.6 | 0x39c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.595499992 CET | 1.1.1.1 | 192.168.2.6 | 0x3c20 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.609965086 CET | 1.1.1.1 | 192.168.2.6 | 0x82f5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.851505995 CET | 1.1.1.1 | 192.168.2.6 | 0xbc59 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.861774921 CET | 1.1.1.1 | 192.168.2.6 | 0x19b5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.876271963 CET | 1.1.1.1 | 192.168.2.6 | 0x968 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:02.912797928 CET | 1.1.1.1 | 192.168.2.6 | 0xdf5a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:03.117065907 CET | 1.1.1.1 | 192.168.2.6 | 0x5c09 | No error (0) | 18.143.155.63 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:42:05.238532066 CET | 1.1.1.1 | 192.168.2.6 | 0x4447 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.270049095 CET | 1.1.1.1 | 192.168.2.6 | 0x9226 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.330167055 CET | 1.1.1.1 | 192.168.2.6 | 0x5d6d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.343450069 CET | 1.1.1.1 | 192.168.2.6 | 0x2630 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.376176119 CET | 1.1.1.1 | 192.168.2.6 | 0x2ec1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.387470007 CET | 1.1.1.1 | 192.168.2.6 | 0xf397 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.398643017 CET | 1.1.1.1 | 192.168.2.6 | 0x7d32 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.430944920 CET | 1.1.1.1 | 192.168.2.6 | 0x5a85 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.441553116 CET | 1.1.1.1 | 192.168.2.6 | 0x7536 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.452076912 CET | 1.1.1.1 | 192.168.2.6 | 0x4180 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.463351965 CET | 1.1.1.1 | 192.168.2.6 | 0x4e14 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.474698067 CET | 1.1.1.1 | 192.168.2.6 | 0xb295 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.486880064 CET | 1.1.1.1 | 192.168.2.6 | 0x92d5 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.498019934 CET | 1.1.1.1 | 192.168.2.6 | 0x52d1 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.507431030 CET | 1.1.1.1 | 192.168.2.6 | 0x1f6f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.520091057 CET | 1.1.1.1 | 192.168.2.6 | 0x9f60 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.530713081 CET | 1.1.1.1 | 192.168.2.6 | 0x842c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.540957928 CET | 1.1.1.1 | 192.168.2.6 | 0x62b6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.572529078 CET | 1.1.1.1 | 192.168.2.6 | 0xe965 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.583734035 CET | 1.1.1.1 | 192.168.2.6 | 0x5c7b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.594752073 CET | 1.1.1.1 | 192.168.2.6 | 0xf365 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.605401039 CET | 1.1.1.1 | 192.168.2.6 | 0xfa57 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.618357897 CET | 1.1.1.1 | 192.168.2.6 | 0xf032 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.666467905 CET | 1.1.1.1 | 192.168.2.6 | 0xa621 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.674981117 CET | 1.1.1.1 | 192.168.2.6 | 0xcb31 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.706729889 CET | 1.1.1.1 | 192.168.2.6 | 0x8e69 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.717257977 CET | 1.1.1.1 | 192.168.2.6 | 0x878a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.729911089 CET | 1.1.1.1 | 192.168.2.6 | 0x109e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.761569977 CET | 1.1.1.1 | 192.168.2.6 | 0x3a7a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.772382975 CET | 1.1.1.1 | 192.168.2.6 | 0xd915 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.784383059 CET | 1.1.1.1 | 192.168.2.6 | 0xb03f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.794369936 CET | 1.1.1.1 | 192.168.2.6 | 0xf7f9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.826064110 CET | 1.1.1.1 | 192.168.2.6 | 0x8e75 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.836395025 CET | 1.1.1.1 | 192.168.2.6 | 0x9ff8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.846688032 CET | 1.1.1.1 | 192.168.2.6 | 0x6758 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.920953035 CET | 1.1.1.1 | 192.168.2.6 | 0x210d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:05.991071939 CET | 1.1.1.1 | 192.168.2.6 | 0x566a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.007891893 CET | 1.1.1.1 | 192.168.2.6 | 0x9596 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.024072886 CET | 1.1.1.1 | 192.168.2.6 | 0x7c62 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.037777901 CET | 1.1.1.1 | 192.168.2.6 | 0xf89 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.076098919 CET | 1.1.1.1 | 192.168.2.6 | 0x5ec6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.133517981 CET | 1.1.1.1 | 192.168.2.6 | 0x5735 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.165941000 CET | 1.1.1.1 | 192.168.2.6 | 0x2db8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.195358992 CET | 1.1.1.1 | 192.168.2.6 | 0x7149 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.206001997 CET | 1.1.1.1 | 192.168.2.6 | 0xd749 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:06.298192978 CET | 1.1.1.1 | 192.168.2.6 | 0x919e | No error (0) | 85.214.228.140 | A (IP address) | IN (0x0001) | false | ||
Nov 7, 2024 15:42:07.350570917 CET | 1.1.1.1 | 192.168.2.6 | 0xde9c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.362273932 CET | 1.1.1.1 | 192.168.2.6 | 0xb71f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.373131990 CET | 1.1.1.1 | 192.168.2.6 | 0x88c4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.381449938 CET | 1.1.1.1 | 192.168.2.6 | 0xc457 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.393147945 CET | 1.1.1.1 | 192.168.2.6 | 0x66dd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.553627968 CET | 1.1.1.1 | 192.168.2.6 | 0x5e4f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.565201998 CET | 1.1.1.1 | 192.168.2.6 | 0x7f33 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.597084045 CET | 1.1.1.1 | 192.168.2.6 | 0x1f6f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.609004021 CET | 1.1.1.1 | 192.168.2.6 | 0x14f4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.620984077 CET | 1.1.1.1 | 192.168.2.6 | 0xcd4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:42:07.631449938 CET | 1.1.1.1 | 192.168.2.6 | 0x92b8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:14.125332117 CET | 1.1.1.1 | 192.168.2.6 | 0x77fc | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:15.150748968 CET | 1.1.1.1 | 192.168.2.6 | 0xd6fd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:16.252557993 CET | 1.1.1.1 | 192.168.2.6 | 0x7b8f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:17.276210070 CET | 1.1.1.1 | 192.168.2.6 | 0xdd23 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:18.447458982 CET | 1.1.1.1 | 192.168.2.6 | 0xfde | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:18.447485924 CET | 1.1.1.1 | 192.168.2.6 | 0xfde | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:19.505630970 CET | 1.1.1.1 | 192.168.2.6 | 0xd6f6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:19.506145954 CET | 1.1.1.1 | 192.168.2.6 | 0xd6f6 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:20.526391029 CET | 1.1.1.1 | 192.168.2.6 | 0xccae | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:21.629300117 CET | 1.1.1.1 | 192.168.2.6 | 0x9cf9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:22.651343107 CET | 1.1.1.1 | 192.168.2.6 | 0x44cf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:23.667277098 CET | 1.1.1.1 | 192.168.2.6 | 0x582 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:24.874732971 CET | 1.1.1.1 | 192.168.2.6 | 0x9426 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:24.874749899 CET | 1.1.1.1 | 192.168.2.6 | 0x9426 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:25.916416883 CET | 1.1.1.1 | 192.168.2.6 | 0xa933 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:26.929193974 CET | 1.1.1.1 | 192.168.2.6 | 0xca77 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:27.969069958 CET | 1.1.1.1 | 192.168.2.6 | 0x2480 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:27.975379944 CET | 1.1.1.1 | 192.168.2.6 | 0x2480 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:28.995719910 CET | 1.1.1.1 | 192.168.2.6 | 0xf7e2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:31.744566917 CET | 1.1.1.1 | 192.168.2.6 | 0x3751 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:32.760966063 CET | 1.1.1.1 | 192.168.2.6 | 0xe96d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:33.909955978 CET | 1.1.1.1 | 192.168.2.6 | 0x6ea7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:33.909981012 CET | 1.1.1.1 | 192.168.2.6 | 0x6ea7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:34.953933001 CET | 1.1.1.1 | 192.168.2.6 | 0x122 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:34.959440947 CET | 1.1.1.1 | 192.168.2.6 | 0x122 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:38.581660986 CET | 1.1.1.1 | 192.168.2.6 | 0x7c35 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:39.603759050 CET | 1.1.1.1 | 192.168.2.6 | 0xe0f2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:40.619654894 CET | 1.1.1.1 | 192.168.2.6 | 0x12e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:41.632752895 CET | 1.1.1.1 | 192.168.2.6 | 0x8d14 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:42.674387932 CET | 1.1.1.1 | 192.168.2.6 | 0x847b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:42.679236889 CET | 1.1.1.1 | 192.168.2.6 | 0x847b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:43.720408916 CET | 1.1.1.1 | 192.168.2.6 | 0x2f5a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:43.725275993 CET | 1.1.1.1 | 192.168.2.6 | 0x2f5a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:44.765461922 CET | 1.1.1.1 | 192.168.2.6 | 0xccce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:44.771636963 CET | 1.1.1.1 | 192.168.2.6 | 0xccce | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:45.812875986 CET | 1.1.1.1 | 192.168.2.6 | 0xfec3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:45.819344044 CET | 1.1.1.1 | 192.168.2.6 | 0xfec3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:46.838902950 CET | 1.1.1.1 | 192.168.2.6 | 0xd05f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:47.923378944 CET | 1.1.1.1 | 192.168.2.6 | 0x7e49 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:49.074929953 CET | 1.1.1.1 | 192.168.2.6 | 0xbdab | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:50.078346968 CET | 1.1.1.1 | 192.168.2.6 | 0xec06 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:50.085731030 CET | 1.1.1.1 | 192.168.2.6 | 0xec06 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:51.025511026 CET | 1.1.1.1 | 192.168.2.6 | 0xbdfe | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:52.094109058 CET | 1.1.1.1 | 192.168.2.6 | 0x2956 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:52.094227076 CET | 1.1.1.1 | 192.168.2.6 | 0x2956 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:52.999736071 CET | 1.1.1.1 | 192.168.2.6 | 0xbc04 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:53.006853104 CET | 1.1.1.1 | 192.168.2.6 | 0xbc04 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:53.869788885 CET | 1.1.1.1 | 192.168.2.6 | 0x654d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:54.698144913 CET | 1.1.1.1 | 192.168.2.6 | 0x3511 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.585814953 CET | 1.1.1.1 | 192.168.2.6 | 0x7194 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.616806030 CET | 1.1.1.1 | 192.168.2.6 | 0x4232 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.616846085 CET | 1.1.1.1 | 192.168.2.6 | 0x4232 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.627713919 CET | 1.1.1.1 | 192.168.2.6 | 0xd012 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.638164997 CET | 1.1.1.1 | 192.168.2.6 | 0x87d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.648478985 CET | 1.1.1.1 | 192.168.2.6 | 0xc059 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.659259081 CET | 1.1.1.1 | 192.168.2.6 | 0xe004 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.670146942 CET | 1.1.1.1 | 192.168.2.6 | 0x1b2b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.681123018 CET | 1.1.1.1 | 192.168.2.6 | 0xb398 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.713984966 CET | 1.1.1.1 | 192.168.2.6 | 0x4a8b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.714024067 CET | 1.1.1.1 | 192.168.2.6 | 0x4a8b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.724735022 CET | 1.1.1.1 | 192.168.2.6 | 0xd4c9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.736336946 CET | 1.1.1.1 | 192.168.2.6 | 0x7f95 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.768152952 CET | 1.1.1.1 | 192.168.2.6 | 0xf553 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.771770954 CET | 1.1.1.1 | 192.168.2.6 | 0xf553 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.777060986 CET | 1.1.1.1 | 192.168.2.6 | 0xa6eb | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.788003922 CET | 1.1.1.1 | 192.168.2.6 | 0x737f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.820233107 CET | 1.1.1.1 | 192.168.2.6 | 0x7427 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.820415020 CET | 1.1.1.1 | 192.168.2.6 | 0x7427 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.832729101 CET | 1.1.1.1 | 192.168.2.6 | 0x5f8d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.843116045 CET | 1.1.1.1 | 192.168.2.6 | 0x8517 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.851432085 CET | 1.1.1.1 | 192.168.2.6 | 0x5ad8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.884104013 CET | 1.1.1.1 | 192.168.2.6 | 0x395c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.884135008 CET | 1.1.1.1 | 192.168.2.6 | 0x395c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.894056082 CET | 1.1.1.1 | 192.168.2.6 | 0x1fa3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.926999092 CET | 1.1.1.1 | 192.168.2.6 | 0xfcdd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.928174019 CET | 1.1.1.1 | 192.168.2.6 | 0xfcdd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.938483953 CET | 1.1.1.1 | 192.168.2.6 | 0x4269 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.948695898 CET | 1.1.1.1 | 192.168.2.6 | 0xe9e3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.981246948 CET | 1.1.1.1 | 192.168.2.6 | 0x892c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:55.981264114 CET | 1.1.1.1 | 192.168.2.6 | 0x892c | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.013346910 CET | 1.1.1.1 | 192.168.2.6 | 0x1e2d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.013364077 CET | 1.1.1.1 | 192.168.2.6 | 0x1e2d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.023665905 CET | 1.1.1.1 | 192.168.2.6 | 0x32d0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.033694029 CET | 1.1.1.1 | 192.168.2.6 | 0x88d9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Nov 7, 2024 15:43:56.044936895 CET | 1.1.1.1 | 192.168.2.6 | 0x69cd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 61162 | 199.59.243.227 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:41:54.850847960 CET | 84 | OUT | |
Nov 7, 2024 15:41:55.658045053 CET | 1236 | IN | |
Nov 7, 2024 15:41:55.658428907 CET | 519 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 61164 | 18.143.155.63 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:41:55.917365074 CET | 83 | OUT | |
Nov 7, 2024 15:41:57.377079010 CET | 387 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.6 | 61185 | 54.244.188.177 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:41:59.847522974 CET | 84 | OUT | |
Nov 7, 2024 15:42:00.718555927 CET | 388 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.6 | 61196 | 199.59.243.227 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:42:01.814074039 CET | 82 | OUT | |
Nov 7, 2024 15:42:02.470746994 CET | 1236 | IN | |
Nov 7, 2024 15:42:02.470777035 CET | 515 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.6 | 61201 | 18.143.155.63 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:42:03.299684048 CET | 86 | OUT | |
Nov 7, 2024 15:42:04.784287930 CET | 390 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.6 | 61213 | 85.214.228.140 | 80 | 6216 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:42:06.453412056 CET | 85 | OUT | |
Nov 7, 2024 15:42:07.339715004 CET | 176 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.6 | 54124 | 199.59.243.227 | 80 | 3708 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:43:30.006602049 CET | 84 | OUT | |
Nov 7, 2024 15:43:30.690996885 CET | 1236 | IN | |
Nov 7, 2024 15:43:30.691035032 CET | 519 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.6 | 54125 | 18.143.155.63 | 80 | 3708 | C:\daxjjwrfm\qbpabupgx.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Nov 7, 2024 15:43:36.113943100 CET | 83 | OUT | |
Nov 7, 2024 15:43:37.556240082 CET | 387 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 09:41:48 |
Start date: | 07/11/2024 |
Path: | C:\Users\user\Desktop\66HKNPT1fl.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x360000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 2 |
Start time: | 09:41:49 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\ew4bjmdlid9hjn8.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x50000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 3 |
Start time: | 09:41:49 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\qbpabupgx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xc20000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 4 |
Start time: | 09:41:50 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\tkjnbticppc.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xa0000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 5 |
Start time: | 09:41:51 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\qbpabupgx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xc20000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 8 |
Start time: | 09:43:09 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\qbpabupgx.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xc20000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 9 |
Start time: | 09:43:10 |
Start date: | 07/11/2024 |
Path: | C:\daxjjwrfm\tkjnbticppc.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x100000 |
File size: | 248'320 bytes |
MD5 hash: | F0D9A1E7385ED0EA2ECE3D30915163D5 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Execution Graph
Execution Coverage: | 8.4% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 51.6% |
Total number of Nodes: | 1932 |
Total number of Limit Nodes: | 18 |
Graph
Function 003700C8 Relevance: 56.1, APIs: 29, Strings: 2, Instructions: 1861sleepfilesynchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00372490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003660A0 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 186filesleepCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0037C520 Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00383060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038C640 Relevance: 4.6, APIs: 3, Instructions: 120memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0037B744 Relevance: .2, Instructions: 249COMMON
Control-flow Graph
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038A760 Relevance: 10.8, APIs: 7, Instructions: 266fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003838B0 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 116processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00376F00 Relevance: 3.0, APIs: 2, Instructions: 26memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00372290 Relevance: 3.0, APIs: 2, Instructions: 21stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00386D32 Relevance: 1.6, APIs: 1, Instructions: 61COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00382780 Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038EEB0 Relevance: 33.7, APIs: 15, Strings: 4, Instructions: 444pipeprocessfileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038DB50 Relevance: 17.2, APIs: 11, Instructions: 662memorylibraryloaderCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038B7F0 Relevance: 14.4, APIs: 7, Strings: 1, Instructions: 387processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0037D2C0 Relevance: 12.6, Strings: 8, Instructions: 2557COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003899B0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 113timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00385950 Relevance: 5.3, Strings: 4, Instructions: 342COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00375F50 Relevance: 4.7, Strings: 3, Instructions: 927COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003619C0 Relevance: 4.1, Strings: 3, Instructions: 356COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003644A0 Relevance: 4.0, APIs: 1, Strings: 1, Instructions: 453fileCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00385B98 Relevance: 4.0, Strings: 3, Instructions: 203COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00385B96 Relevance: 4.0, Strings: 3, Instructions: 202COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0037C640 Relevance: 2.7, Strings: 2, Instructions: 234COMMON
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038CBE0 Relevance: 2.1, APIs: 1, Instructions: 633COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00388BA0 Relevance: 1.9, Strings: 1, Instructions: 668COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00388DD6 Relevance: 1.7, Strings: 1, Instructions: 449COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00375520 Relevance: 1.6, Strings: 1, Instructions: 383COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00365730 Relevance: 1.6, Strings: 1, Instructions: 301COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00385010 Relevance: 1.5, APIs: 1, Instructions: 25COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003885E0 Relevance: 1.5, Strings: 1, Instructions: 247COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003777A1 Relevance: 1.5, Strings: 1, Instructions: 217COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003777F0 Relevance: 1.5, Strings: 1, Instructions: 211COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00365894 Relevance: 1.4, Strings: 1, Instructions: 176COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00374420 Relevance: 1.0, Instructions: 983COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00383AF0 Relevance: .4, Instructions: 416COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038ABB0 Relevance: .3, Instructions: 325COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00362F90 Relevance: .3, Instructions: 307COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00374A29 Relevance: .3, Instructions: 255COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 003845A0 Relevance: .2, Instructions: 245COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00390850 Relevance: .2, Instructions: 228COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0036B150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0036B531 Relevance: 12.2, APIs: 8, Instructions: 188registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038BADC Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 182processCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00381FF6 Relevance: 7.7, APIs: 5, Instructions: 157COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00381950 Relevance: 7.6, APIs: 5, Instructions: 56synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00377110 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 130registryCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038E880 Relevance: 6.2, APIs: 4, Instructions: 206fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0038FAD0 Relevance: 6.0, APIs: 4, Instructions: 28memoryCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00363DC0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 114timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 13.6% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 2.7% |
Total number of Nodes: | 1946 |
Total number of Limit Nodes: | 24 |
Graph
Function 000600C8 Relevance: 61.4, APIs: 29, Strings: 5, Instructions: 1861sleepfilesynchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00062490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007DB50 Relevance: 25.2, APIs: 13, Strings: 1, Instructions: 662memorylibraryloaderCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00073060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00077040 Relevance: 4.8, APIs: 3, Instructions: 256libraryloaderencryptionCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007CBE0 Relevance: 2.1, APIs: 1, Instructions: 633COMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000738B0 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 116processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007E880 Relevance: 6.2, APIs: 4, Instructions: 206fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007C640 Relevance: 4.6, APIs: 3, Instructions: 120memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00066F00 Relevance: 3.0, APIs: 2, Instructions: 26memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0006C520 Relevance: 3.0, APIs: 2, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00062290 Relevance: 3.0, APIs: 2, Instructions: 21stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000572E0 Relevance: 1.7, APIs: 1, Instructions: 162fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00076D32 Relevance: 1.6, APIs: 1, Instructions: 61COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00072780 Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007EEB0 Relevance: 31.9, APIs: 15, Strings: 3, Instructions: 444pipeprocessfileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007B7F0 Relevance: 14.4, APIs: 7, Strings: 1, Instructions: 387processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000560A0 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 186filesleepCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0005B150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0005B531 Relevance: 12.2, APIs: 8, Instructions: 188registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007A760 Relevance: 10.8, APIs: 7, Instructions: 266fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007BADC Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 182processCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00071FF6 Relevance: 7.7, APIs: 5, Instructions: 157COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00071950 Relevance: 7.6, APIs: 5, Instructions: 56synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00067110 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 130registryCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0007FAD0 Relevance: 6.0, APIs: 4, Instructions: 28memoryCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00053DC0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 114timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000799B0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 113timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 17.4% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1947 |
Total number of Limit Nodes: | 32 |
Graph
Function 00C300C1 Relevance: 63.1, APIs: 29, Strings: 6, Instructions: 1866sleepfilesynchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C32490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4DB50 Relevance: 25.2, APIs: 13, Strings: 1, Instructions: 662memorylibraryloaderCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C260A0 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 186filesleepCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C43060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C47040 Relevance: 4.8, APIs: 3, Instructions: 256libraryloaderencryptionCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4CBE0 Relevance: 2.1, APIs: 1, Instructions: 633COMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C45010 Relevance: 1.5, APIs: 1, Instructions: 25COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C2B531 Relevance: 12.2, APIs: 8, Instructions: 188registrysynchronizationCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C3C250 Relevance: 8.9, APIs: 4, Strings: 1, Instructions: 148processCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C438B0 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 116processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4C640 Relevance: 4.6, APIs: 3, Instructions: 120memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C3C389 Relevance: 3.1, APIs: 2, Instructions: 73COMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C36F00 Relevance: 3.0, APIs: 2, Instructions: 26memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C3C520 Relevance: 3.0, APIs: 2, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C32290 Relevance: 3.0, APIs: 2, Instructions: 21stringCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C272E0 Relevance: 1.7, APIs: 1, Instructions: 162fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C435C0 Relevance: 1.7, APIs: 1, Instructions: 151fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C46D32 Relevance: 1.6, APIs: 1, Instructions: 61COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4C080 Relevance: 1.4, APIs: 1, Instructions: 153sleepCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4EEB0 Relevance: 31.9, APIs: 15, Strings: 3, Instructions: 444pipeprocessfileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4B7F0 Relevance: 14.4, APIs: 7, Strings: 1, Instructions: 387processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C2B150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4A760 Relevance: 10.8, APIs: 7, Instructions: 266fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4BADC Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 182processCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C41FF6 Relevance: 7.7, APIs: 5, Instructions: 157COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C41950 Relevance: 7.6, APIs: 5, Instructions: 56synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C37110 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 130registryCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4E880 Relevance: 6.2, APIs: 4, Instructions: 206fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4FAD0 Relevance: 6.0, APIs: 4, Instructions: 28memoryCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C23DC0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 114timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 6.9% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1386 |
Total number of Limit Nodes: | 14 |
Graph
Function 000B2490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C3060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000AB150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C38B0 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 116processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000BC520 Relevance: 5.3, APIs: 2, Strings: 1, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CC640 Relevance: 4.6, APIs: 3, Instructions: 120memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000B6F00 Relevance: 3.0, APIs: 2, Instructions: 26memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000B2290 Relevance: 3.0, APIs: 2, Instructions: 21stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C2780 Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CEEB0 Relevance: 33.7, APIs: 15, Strings: 4, Instructions: 444pipeprocessfileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CB7F0 Relevance: 14.4, APIs: 7, Strings: 1, Instructions: 387processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000A60A0 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 186filesleepCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000AB531 Relevance: 12.2, APIs: 8, Instructions: 192registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CA760 Relevance: 10.8, APIs: 7, Instructions: 266fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C1950 Relevance: 7.6, APIs: 5, Instructions: 56synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000B7110 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 130registryCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CE880 Relevance: 6.2, APIs: 4, Instructions: 206fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000CFAD0 Relevance: 6.0, APIs: 4, Instructions: 28memoryCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000A3DC0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 114timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 000C99B0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 113timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 7% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 0% |
Total number of Nodes: | 1927 |
Total number of Limit Nodes: | 19 |
Graph
Function 00C300C1 Relevance: 56.1, APIs: 29, Strings: 2, Instructions: 1866sleepfilesynchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C32490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C43060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4C640 Relevance: 4.6, APIs: 3, Instructions: 120memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C36F00 Relevance: 3.0, APIs: 2, Instructions: 26memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C3C520 Relevance: 3.0, APIs: 2, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C32290 Relevance: 3.0, APIs: 2, Instructions: 21stringCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C272E0 Relevance: 1.7, APIs: 1, Instructions: 162fileCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C46D32 Relevance: 1.6, APIs: 1, Instructions: 61COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C42780 Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4EEB0 Relevance: 31.9, APIs: 15, Strings: 3, Instructions: 444pipeprocessfileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4B7F0 Relevance: 14.4, APIs: 7, Strings: 1, Instructions: 387processCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C260A0 Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 186filesleepCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C2B150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C2B531 Relevance: 12.2, APIs: 8, Instructions: 188registrysynchronizationCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4A760 Relevance: 10.8, APIs: 7, Instructions: 266fileCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4BADC Relevance: 10.7, APIs: 5, Strings: 1, Instructions: 182processCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C41FF6 Relevance: 7.7, APIs: 5, Instructions: 157COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C41950 Relevance: 7.6, APIs: 5, Instructions: 56synchronizationthreadCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C37110 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 130registryCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C438B0 Relevance: 7.1, APIs: 3, Strings: 1, Instructions: 116processCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4E880 Relevance: 6.2, APIs: 4, Instructions: 206fileCOMMON
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C4FAD0 Relevance: 6.0, APIs: 4, Instructions: 28memoryCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C23DC0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 114timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00C499B0 Relevance: 5.4, APIs: 2, Strings: 1, Instructions: 113timeCOMMON
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 001100C8 Relevance: 56.1, APIs: 29, Strings: 2, Instructions: 1861sleepfilesynchronizationCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00112490 Relevance: 28.9, APIs: 12, Strings: 4, Instructions: 918fileCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00123060 Relevance: 4.8, APIs: 3, Instructions: 287fileCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0010B150 Relevance: 12.4, APIs: 6, Strings: 1, Instructions: 156filetimeCOMMON
Control-flow Graph
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0011C520 Relevance: 3.0, APIs: 2, Instructions: 24memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00126D32 Relevance: 1.6, APIs: 1, Instructions: 61COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|