Windows
Analysis Report
msedge.exe
Overview
General Information
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- msedge.exe (PID: 6924 cmdline:
"C:\Users\ user\Deskt op\msedge. exe" MD5: F1C2525DA4F545E783535C2875962C13) - schtasks.exe (PID: 6208 cmdline:
"C:\Window s\System32 \schtasks. exe" /crea te /f /RL HIGHEST /s c minute / mo 1 /tn " msedge" /t r "C:\User s\user\App Data\Local \msedge.ex e" MD5: 76CD6626DD8834BD4A42E6A565104DC2) - conhost.exe (PID: 6204 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - WerFault.exe (PID: 3616 cmdline:
C:\Windows \system32\ WerFault.e xe -u -p 6 924 -s 148 4 MD5: FD27D9F6D02763BDE32511B5DF7FF7A0)
- msedge.exe (PID: 2816 cmdline:
C:\Users\u ser\AppDat a\Local\ms edge.exe MD5: F1C2525DA4F545E783535C2875962C13)
- msedge.exe (PID: 2336 cmdline:
"C:\Users\ user\AppDa ta\Local\m sedge.exe" MD5: F1C2525DA4F545E783535C2875962C13)
- msedge.exe (PID: 4584 cmdline:
"C:\Users\ user\AppDa ta\Local\m sedge.exe" MD5: F1C2525DA4F545E783535C2875962C13)
- msedge.exe (PID: 5316 cmdline:
C:\Users\u ser\AppDat a\Local\ms edge.exe MD5: F1C2525DA4F545E783535C2875962C13)
- msedge.exe (PID: 6072 cmdline:
C:\Users\u ser\AppDat a\Local\ms edge.exe MD5: F1C2525DA4F545E783535C2875962C13)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
AsyncRAT | AsyncRAT is a Remote Access Tool (RAT) designed to remotely monitor and control other computers through a secure encrypted connection. It is an open source remote administration tool, however, it could also be used maliciously because it provides functionality such as keylogger, remote desktop control, and many other functions that may cause harm to the victims computer. In addition, AsyncRAT can be delivered via various methods such as spear-phishing, malvertising, exploit kit and other techniques. | No Attribution |
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
XWorm | Malware with wide range of capabilities ranging from RAT to ransomware. | No Attribution |
{"C2 url": ["https://pastebin.com/raw/ZnhxAV6a"], "Aes key": "<123456789>", "SPL": "<Xwormmm>", "Install file": "USB.exe"}
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
JoeSecurity_GenericDownloader_1 | Yara detected Generic Downloader | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
JoeSecurity_GenericDownloader_1 | Yara detected Generic Downloader | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
| |
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
| |
JoeSecurity_AsyncRAT | Yara detected AsyncRAT | Joe Security | ||
Click to see the 1 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
JoeSecurity_GenericDownloader_1 | Yara detected Generic Downloader | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
| |
JoeSecurity_XWorm | Yara detected XWorm | Joe Security | ||
MALWARE_Win_AsyncRAT | Detects AsyncRAT | ditekSHen |
| |
Click to see the 13 entries |
System Summary |
---|
Source: | Author: Victor Sergeev, Daniil Yugoslavskiy, Gleb Sukhodolskiy, Timur Zinniatullin, oscd.community, Tim Shelton, frack113 (split): |
Source: | Author: Roberto Rodriguez (Cyb3rWard0g), OTR (Open Threat Research): |
Source: | Author: Florian Roth (Nextron Systems): |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-02T18:46:30.372526+0100 | 2853193 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49822 | 147.185.221.24 | 3865 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Avira: |
Source: | Avira: |
Source: | Malware Configuration Extractor: |
Source: | ReversingLabs: |
Source: | ReversingLabs: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: |
Source: | Joe Sandbox ML: |
Source: | String decryptor: | ||
Source: | String decryptor: | ||
Source: | String decryptor: | ||
Source: | String decryptor: |
Source: | Static PE information: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | URLs: |
Source: | DNS query: |
Source: | DNS query: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | TCP traffic: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: | ||
Source: | IP Address: |
Source: | ASN Name: |
Source: | JA3 fingerprint: |
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Key, Mouse, Clipboard, Microphone and Screen Capturing |
---|
Source: | File source: |
Source: | Window created: | Jump to behavior |
Operating System Destruction |
---|
Source: | Process information set: | Jump to behavior |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Process Stats: |
Source: | Code function: | 0_2_00007FFD9B888BF6 | |
Source: | Code function: | 0_2_00007FFD9B881567 | |
Source: | Code function: | 0_2_00007FFD9B8899A2 | |
Source: | Code function: | 0_2_00007FFD9B881FB9 | |
Source: | Code function: | 3_2_00007FFD9B881567 | |
Source: | Code function: | 3_2_00007FFD9B881FB9 | |
Source: | Code function: | 4_2_00007FFD9B8A1567 | |
Source: | Code function: | 4_2_00007FFD9B8A1FB9 | |
Source: | Code function: | 11_2_00007FFD9B891567 | |
Source: | Code function: | 11_2_00007FFD9B891FB9 |
Source: | Process created: |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Static PE information: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: |
Source: | Base64 encoded string: | ||
Source: | Base64 encoded string: | ||
Source: | Base64 encoded string: | ||
Source: | Base64 encoded string: | ||
Source: | Base64 encoded string: |
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: |
Source: | Classification label: |
Source: | File created: | Jump to behavior |
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: |
Source: | File created: | Jump to behavior |
Source: | Static PE information: |
Source: | Static file information: |
Source: | File read: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | ReversingLabs: |
Source: | File read: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Source: | LNK file: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Data Obfuscation |
---|
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | Code function: | 0_2_00007FFD9B8823C9 | |
Source: | Code function: | 0_2_00007FFD9B880EEA |
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: |
Source: | File created: | Jump to dropped file |
Boot Survival |
---|
Source: | File source: |
Source: | Process created: |
Source: | File created: | Jump to behavior |
Source: | File created: | Jump to behavior |
Source: | Registry value created or modified: | Jump to behavior | ||
Source: | Registry value created or modified: | Jump to behavior |
Source: | Registry key monitored for changes: | Jump to behavior | ||
Source: | Registry key monitored for changes: | Jump to behavior |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Malware Analysis System Evasion |
---|
Source: | File source: |
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | Last function: |
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior | ||
Source: | File Volume queried: | Jump to behavior |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Process information queried: | Jump to behavior |
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior |
Source: | Memory allocated: | Jump to behavior |
Source: | Process created: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Lowering of HIPS / PFW / Operating System Security Settings |
---|
Source: | File source: |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | WMI Queries: | ||
Source: | WMI Queries: | ||
Source: | WMI Queries: | ||
Source: | WMI Queries: | ||
Source: | WMI Queries: | ||
Source: | WMI Queries: | ||
Source: | WMI Queries: |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 1 Windows Management Instrumentation | 1 DLL Side-Loading | 1 DLL Side-Loading | 1 Disable or Modify Tools | OS Credential Dumping | 1 File and Directory Discovery | Remote Services | 11 Archive Collected Data | 2 Web Service | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | 2 Scheduled Task/Job | 2 Scheduled Task/Job | 12 Process Injection | 1 Deobfuscate/Decode Files or Information | LSASS Memory | 13 System Information Discovery | Remote Desktop Protocol | 1 Clipboard Data | 1 Ingress Tool Transfer | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | 21 Registry Run Keys / Startup Folder | 2 Scheduled Task/Job | 111 Obfuscated Files or Information | Security Account Manager | 1 Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 11 Encrypted Channel | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | 21 Registry Run Keys / Startup Folder | 2 Software Packing | NTDS | 121 Security Software Discovery | Distributed Component Object Model | Input Capture | 1 Non-Standard Port | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 1 DLL Side-Loading | LSA Secrets | 2 Process Discovery | SSH | Keylogging | 2 Non-Application Layer Protocol | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 1 Masquerading | Cached Domain Credentials | 31 Virtualization/Sandbox Evasion | VNC | GUI Input Capture | 13 Application Layer Protocol | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 31 Virtualization/Sandbox Evasion | DCSync | 1 Application Window Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | 12 Process Injection | Proc Filesystem | System Owner/User Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
79% | ReversingLabs | ByteCode-MSIL.Backdoor.XWorm | ||
100% | Avira | TR/Spy.Gen | ||
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira | TR/Spy.Gen | ||
100% | Joe Sandbox ML | |||
79% | ReversingLabs | ByteCode-MSIL.Backdoor.XWorm |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
api.telegram.org | 149.154.167.220 | true | false | high | |
upon-forming.gl.at.ply.gg | 147.185.221.24 | true | true | unknown | |
pastebin.com | 104.20.3.235 | true | false | high | |
i.ibb.co | 91.134.9.160 | true | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
104.20.3.235 | pastebin.com | United States | 13335 | CLOUDFLARENETUS | false | |
149.154.167.220 | api.telegram.org | United Kingdom | 62041 | TELEGRAMRU | false | |
91.134.9.160 | i.ibb.co | France | 16276 | OVHFR | false | |
147.185.221.24 | upon-forming.gl.at.ply.gg | United States | 12087 | SALSGIVERUS | true |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1566853 |
Start date and time: | 2024-12-02 18:44:04 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 7m 51s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 15 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Critical Process Termination |
Sample name: | msedge.exe |
Detection: | MAL |
Classification: | mal100.troj.evad.winEXE@10/9@4/4 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Behavior information exceeds normal sizes, reducing to normal. Report will have missing behavior information.
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WerFault.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded domains from analysis (whitelisted): ocsp.digicert.com, slscr.update.microsoft.com, otelrules.azureedge.net, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com
- Execution Graph export aborted for target msedge.exe, PID 2336 because it is empty
- Execution Graph export aborted for target msedge.exe, PID 2816 because it is empty
- Execution Graph export aborted for target msedge.exe, PID 4584 because it is empty
- Execution Graph export aborted for target msedge.exe, PID 5316 because it is empty
- Execution Graph export aborted for target msedge.exe, PID 6072 because it is empty
- Not all processes where analyzed, report is missing behavior information
- Report size exceeded maximum capacity and may have missing behavior information.
- Report size getting too big, too many NtOpenKeyEx calls found.
- Report size getting too big, too many NtProtectVirtualMemory calls found.
- Report size getting too big, too many NtQueryValueKey calls found.
- Report size getting too big, too many NtReadVirtualMemory calls found.
- Report size getting too big, too many NtSetInformationFile calls found.
- VT rate limit hit for: msedge.exe
Time | Type | Description |
---|---|---|
12:44:53 | API Interceptor | |
17:44:55 | Task Scheduler | |
17:44:58 | Autostart | |
17:45:06 | Autostart | |
17:45:15 | Autostart |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
104.20.3.235 | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Njrat | Browse |
| ||
149.154.167.220 | Get hash | malicious | HTMLPhisher | Browse | ||
Get hash | malicious | GuLoader, Snake Keylogger, VIP Keylogger | Browse | |||
Get hash | malicious | Snake Keylogger | Browse | |||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse | |||
Get hash | malicious | HTMLPhisher | Browse | |||
Get hash | malicious | PureLog Stealer, Snake Keylogger, VIP Keylogger | Browse | |||
Get hash | malicious | MassLogger RAT | Browse | |||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse | |||
Get hash | malicious | GuLoader, Snake Keylogger | Browse | |||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse | |||
147.185.221.24 | Get hash | malicious | AsyncRAT, XWorm | Browse | ||
Get hash | malicious | AsyncRAT, XWorm | Browse | |||
Get hash | malicious | AsyncRAT, XWorm | Browse | |||
Get hash | malicious | XWorm | Browse | |||
Get hash | malicious | XWorm | Browse | |||
Get hash | malicious | XWorm | Browse | |||
Get hash | malicious | XWorm | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
i.ibb.co | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher, ReCaptcha Phish | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher, ReCaptcha Phish | Browse |
| ||
pastebin.com | Get hash | malicious | LummaC Stealer | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | PureLog Stealer, XWorm | Browse |
| ||
Get hash | malicious | Remcos | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | AsyncRAT, XWorm | Browse |
| ||
api.telegram.org | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | GuLoader, Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | PureLog Stealer, Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | MassLogger RAT | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | GuLoader, Snake Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
TELEGRAMRU | Get hash | malicious | HTMLPhisher | Browse |
| |
Get hash | malicious | GuLoader, Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | PureLog Stealer, Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | MassLogger RAT | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | GuLoader, Snake Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
OVHFR | Get hash | malicious | FormBook, PureLog Stealer | Browse |
| |
Get hash | malicious | Amadey, Cryptbot, LummaC Stealer, Nymaim, Stealc, Vidar | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Gurcu Stealer | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
CLOUDFLARENETUS | Get hash | malicious | BruteRatel, Latrodectus | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
SALSGIVERUS | Get hash | malicious | XWorm | Browse |
| |
Get hash | malicious | AsyncRAT, XWorm | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | AsyncRAT, XWorm | Browse |
| ||
Get hash | malicious | AsyncRAT, XWorm | Browse |
| ||
Get hash | malicious | XWorm | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
3b5074b1b5d032e5620f69f9f700ff0e | Get hash | malicious | Amadey, Stealc, Vidar | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC Stealer | Browse |
| ||
Get hash | malicious | GuLoader, Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger | Browse |
| ||
Get hash | malicious | GuLoader, Remcos | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | AgentTesla | Browse |
| ||
Get hash | malicious | AgentTesla, DarkTortilla | Browse |
| ||
Get hash | malicious | AgentTesla, DarkTortilla | Browse |
|
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_msedge.exe_2c2ca92dcd483d7a57334730825da1e95a3edac_e2b55a38_ee85a960-0b5e-4b89-bdc6-b3f5bd0c3ccc\Report.wer
Download File
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 65536 |
Entropy (8bit): | 1.5124730015755325 |
Encrypted: | false |
SSDEEP: | 384:whC0G0SE81ixa48i/Sw1zuiFqY4lO8/5:cC6SE81ixafw1zuiFqY4lO8 |
MD5: | 3766CC483EA759AD59689238E00911F5 |
SHA1: | 937D073285671C09BAB5A177D2B5EA4C2D77AE52 |
SHA-256: | 9BB8A235008C8E649C8D3210BF6B2904ECFEBC0B2B15F6C2F377A4706A3FCA27 |
SHA-512: | 2136838AECBC3D69FA89D9B62E4622FC8E48421DB5AF776FE9B56D07003D6CB60FC5E04938868E947C332DD60A804B2118ADEEAEDAE68575496EAA11E21C4864 |
Malicious: | true |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 738261 |
Entropy (8bit): | 3.3224010701805247 |
Encrypted: | false |
SSDEEP: | 12288:UFypES5/EicDxEnSbKJXLYfFqLu3uw/QI:UFijE5NiWFqRkQI |
MD5: | 8A07918064BC32A7EA5E2131B1B50EF6 |
SHA1: | 67AF4F77BF4AC115B7B4EDF54A518CE5F77B9170 |
SHA-256: | 58F5A0CA51BA2DB8FB2401D556F101816EA9083252161EE131D2FA59EEF1DCF7 |
SHA-512: | 79D94EC5D3F90F483077850F52F725F827023C97D5C303A79681CE8C1C91EDD48FDF4163ADC87DD031B79B98217AD0195516BAB82EF9CF87AC8E5558B4295079 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 9326 |
Entropy (8bit): | 3.70312232738191 |
Encrypted: | false |
SSDEEP: | 192:R6l7wVeJtl3366Y9Hzygmfk4jV4t8EprL89b3CBvSfhdm:R6lXJf3366Y1zygmfk04tk3nfS |
MD5: | F14E8191087C9E956688DBAF31316102 |
SHA1: | A8D57C6FD16D219C1D381B43509BFF87D99D0E1C |
SHA-256: | 6B5DF8BED0D28A382CAD7222ED639916AF346B59E3BBF431F75162AA55C7A346 |
SHA-512: | 9890F7C78FEB71DBFE1A352D5F4A2DC993444A803077EDC3257B361D4FC53F14F0159948DFE803F3B657EF101F6929B970480D851A465D5D9B8ACC7B61D0308E |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4922 |
Entropy (8bit): | 4.451284746342769 |
Encrypted: | false |
SSDEEP: | 48:cvIwWl8zsZKJg771I9z4WpW8VYqvYm8M4JO/SFFyq8vRV/MW1njnwDlk4d:uIjfCI7Mx7V5yJXWwWRjnwBk4d |
MD5: | 0EA84B06A4D5E4A19B64EF58F1ADD740 |
SHA1: | 7E96319D665EFA4C02505A6A3AA718D1395982E1 |
SHA-256: | AB114736A7228054ED07B0A6306EB2DADC7122A6EA97AE5221353A9D3DAE651F |
SHA-512: | 463E10B5DF979AB208D281D6D45935F9FF2EEC19FCBC5E8D83E41AA215B71DDBB04CA629BD6CADA2B03341896B2CB8378588D747E81F6C7A75A44F5AB77BC9C0 |
Malicious: | false |
Reputation: | low |
Preview: |
Process: | C:\Users\user\AppData\Local\msedge.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 654 |
Entropy (8bit): | 5.380476433908377 |
Encrypted: | false |
SSDEEP: | 12:Q3La/KDLI4MWuPXcp1OKbbDLI4MWuPOKfSSI6Khap+92n4MNQp3/VXM5gXu9tv:ML9E4KQwKDE4KGKZI6Kh6+84xp3/VclT |
MD5: | 30E4BDFC34907D0E4D11152CAEBE27FA |
SHA1: | 825402D6B151041BA01C5117387228EC9B7168BF |
SHA-256: | A7B8F7FFB4822570DB1423D61ED74D7F4B538CE73521CC8745BC6B131C18BE63 |
SHA-512: | 89FBCBCDB0BE5AD7A95685CF9AA4330D5B0250440E67DC40C6642260E024F52A402E9381F534A9824D2541B98B02094178A15BF2320148432EDB0D09B5F972BA |
Malicious: | true |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | C:\Users\user\Desktop\msedge.exe |
File Type: | |
Category: | modified |
Size (bytes): | 58 |
Entropy (8bit): | 3.598349098128234 |
Encrypted: | false |
SSDEEP: | 3:rRSFYJKXzovNsr42VjFYJKXzovX:EFYJKDoWr5FYJKDoP |
MD5: | 5362ACB758D5B0134C33D457FCC002D9 |
SHA1: | BC56DFFBE17C015DB6676CF56996E29DF426AB92 |
SHA-256: | 13229E0AD721D53BF9FB50FA66AE92C6C48F2ABB785F9E17A80E224E096028A4 |
SHA-512: | 3FB6DA9993FBFC1DC3204DC2529FB7D9C6FE4E6F06E6C8E2DC0BE05CD0E990ED2643359F26EC433087C1A54C8E1C87D02013413CE8F4E1A6D2F380BE0F5EB09B |
Malicious: | false |
Preview: |
Process: | C:\Users\user\Desktop\msedge.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 150016 |
Entropy (8bit): | 6.696125464038131 |
Encrypted: | false |
SSDEEP: | 3072:O4et7oUbY1cZx3bNLap5fOesrKe5BV0bUniyimyW:O4GkcHbAe5v0bURy |
MD5: | F1C2525DA4F545E783535C2875962C13 |
SHA1: | 92BF515741775FAC22690EFC0E400F6997EBA735 |
SHA-256: | 9E6985FDB3BFA539F3D6D6FCA9AAF18356C28A00604C4F961562C34FA9F11D0F |
SHA-512: | 56308AC106CAA84798925661406A25047DF8D90E4B65B587B261010293587938FA922FBB2CFDEDFE71139E16BFCF38E54BB31CBCC00CD244DB15D756459B6133 |
Malicious: | true |
Yara Hits: |
|
Antivirus: |
|
Preview: |
Process: | C:\Users\user\Desktop\msedge.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 954 |
Entropy (8bit): | 5.047582377057169 |
Encrypted: | false |
SSDEEP: | 12:8t9KO4c3WCygda8zKR4KiReirjAJf421IlpgUNwuLvqA44t2YZ/elFlSJmZmV:8t9ULbgNKRHi1AJf42CL7Pq/qyFm |
MD5: | 23B28B05CCE1C6B275C333E392DA5BD5 |
SHA1: | 19FDEE658A57326026798D80AC1D6389B6604CFE |
SHA-256: | A7FD9E65A9F35910EC90A24586CFB0DF7604BD2B5961D1063FC5DA7F276E12EB |
SHA-512: | 72A5E622E44AA6FBE51FF7BA5B86006604879A3E4D4DFF832159614A7BCA6073050B6A10FAF68A123C00AFCDF390338D876BEE02DF03F4015E0E77948F050E20 |
Malicious: | false |
Preview: |
Process: | C:\Windows\System32\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1835008 |
Entropy (8bit): | 4.465983964447968 |
Encrypted: | false |
SSDEEP: | 6144:pIXfpi67eLPU9skLmb0b4dWSPKaJG8nAgejZMMhA2gX4WABl0uNcdwBCswSb9:aXD94dWlLZMM6YFHq+9 |
MD5: | CA076E46157FDEE45DFCABC88ECAF5C7 |
SHA1: | D87413715638511FC722CAF03552AA5B71666D97 |
SHA-256: | 6835CB5C142F89AC21E5217573F32109434E507DD7E7ADD14D28DD14E7D6E048 |
SHA-512: | 76248AAB838D24D6279D4E98CE505B6FADB31C3E96592AA0FE21A3710D024DA71A4B99017A7248F3AFF10AB7824ECF18B6A03D1228E283F4E66AD1E253F70217 |
Malicious: | false |
Preview: |
File type: | |
Entropy (8bit): | 6.696125464038131 |
TrID: |
|
File name: | msedge.exe |
File size: | 150'016 bytes |
MD5: | f1c2525da4f545e783535c2875962c13 |
SHA1: | 92bf515741775fac22690efc0e400f6997eba735 |
SHA256: | 9e6985fdb3bfa539f3d6d6fca9aaf18356c28a00604c4f961562c34fa9f11d0f |
SHA512: | 56308ac106caa84798925661406a25047df8d90e4b65b587b261010293587938fa922fbb2cfdedfe71139e16bfcf38e54bb31cbcc00cd244db15d756459b6133 |
SSDEEP: | 3072:O4et7oUbY1cZx3bNLap5fOesrKe5BV0bUniyimyW:O4GkcHbAe5v0bURy |
TLSH: | 6AE3CF047BE5595AE86DCBF09CB1B7974739EE562412C26E30E06EBE7B43988C800FD5 |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..L....U.f.................&..."......~D... ...`....@.. ....................................@................................ |
Icon Hash: | 0703053232670f1f |
Entrypoint: | 0x41447e |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE, 32BIT_MACHINE |
DLL Characteristics: | DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x66D6551D [Tue Sep 3 00:15:25 2024 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 4 |
OS Version Minor: | 0 |
File Version Major: | 4 |
File Version Minor: | 0 |
Subsystem Version Major: | 4 |
Subsystem Version Minor: | 0 |
Import Hash: | f34d5f2d4577ed6d9ceec516c1f5a744 |
Instruction |
---|
jmp dword ptr [00402000h] |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x14430 | 0x4b | .text |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x16000 | 0x11fd2 | .rsrc |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x28000 | 0xc | .reloc |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x2000 | 0x8 | .text |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x2008 | 0x48 | .text |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x2000 | 0x12484 | 0x12600 | 93a0924952f5ff6f1718369ab1476828 | False | 0.6178385416666666 | data | 6.148458314188822 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.rsrc | 0x16000 | 0x11fd2 | 0x12000 | 7fd3e3fc11413536243aadd076347030 | False | 0.6408827039930556 | data | 6.763224846854993 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.reloc | 0x28000 | 0xc | 0x200 | 549acdf2b41238c7228afe03770ae4a1 | False | 0.044921875 | data | 0.10191042566270775 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ |
Name | RVA | Size | Type | Language | Country | ZLIB Complexity |
---|---|---|---|---|---|---|
RT_ICON | 0x16280 | 0x6fd1 | PNG image data, 256 x 256, 8-bit/color RGBA, non-interlaced | 0.9973449781659388 | ||
RT_ICON | 0x1d254 | 0x4228 | Device independent bitmap graphic, 64 x 128 x 32, image size 16896 | 0.36620217288615964 | ||
RT_ICON | 0x2147c | 0x25a8 | Device independent bitmap graphic, 48 x 96 x 32, image size 9600 | 0.4182572614107884 | ||
RT_ICON | 0x23a24 | 0x1a68 | Device independent bitmap graphic, 40 x 80 x 32, image size 6720 | 0.4485207100591716 | ||
RT_ICON | 0x2548c | 0x10a8 | Device independent bitmap graphic, 32 x 64 x 32, image size 4224 | 0.5117260787992496 | ||
RT_ICON | 0x26534 | 0x988 | Device independent bitmap graphic, 24 x 48 x 32, image size 2400 | 0.5745901639344262 | ||
RT_ICON | 0x26ebc | 0x6b8 | Device independent bitmap graphic, 20 x 40 x 32, image size 1680 | 0.6540697674418605 | ||
RT_ICON | 0x27574 | 0x468 | Device independent bitmap graphic, 16 x 32 x 32, image size 1088 | 0.7145390070921985 | ||
RT_GROUP_ICON | 0x279dc | 0x76 | data | 0.7288135593220338 | ||
RT_VERSION | 0x27a54 | 0x394 | OpenPGP Secret Key | 0.39956331877729256 | ||
RT_MANIFEST | 0x27de8 | 0x1ea | XML 1.0 document, Unicode text, UTF-8 (with BOM) text, with CRLF line terminators | 0.5469387755102041 |
DLL | Import |
---|---|
mscoree.dll | _CorExeMain |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-02T18:45:20.645531+0100 | 2855924 | ETPRO MALWARE Win32/XWorm V3 CnC Command - PING Outbound | 1 | 192.168.2.4 | 49732 | 147.185.221.24 | 3865 | TCP |
2024-12-02T18:46:30.372526+0100 | 2853193 | ETPRO MALWARE Win32/XWorm V3 CnC Command - PING Outbound | 1 | 192.168.2.4 | 49822 | 147.185.221.24 | 3865 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 2, 2024 18:45:00.316950083 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:00.316992998 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:00.317068100 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:00.467456102 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:00.467483044 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:01.792633057 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:01.792778969 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:01.814802885 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:01.814825058 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:01.815896034 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:01.860631943 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:01.963830948 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:02.007343054 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:02.915611029 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:02.915904045 CET | 443 | 49730 | 104.20.3.235 | 192.168.2.4 |
Dec 2, 2024 18:45:02.916042089 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:02.932881117 CET | 49730 | 443 | 192.168.2.4 | 104.20.3.235 |
Dec 2, 2024 18:45:03.217261076 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:03.217303991 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:03.217880964 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:03.218748093 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:03.218765020 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:04.910263062 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:04.910492897 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:04.913418055 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:04.913439989 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:04.913855076 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:04.915494919 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:04.959336042 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:05.428978920 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:05.429083109 CET | 443 | 49731 | 149.154.167.220 | 192.168.2.4 |
Dec 2, 2024 18:45:05.429147959 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:05.436191082 CET | 49731 | 443 | 192.168.2.4 | 149.154.167.220 |
Dec 2, 2024 18:45:09.490264893 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:09.610330105 CET | 3865 | 49732 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:09.610419035 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:09.650651932 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:09.773829937 CET | 3865 | 49732 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:11.080653906 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:11.080692053 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:11.080874920 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:11.081321955 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:11.081332922 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:13.456005096 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:13.456094027 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:13.457922935 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:13.457928896 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:13.458257914 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:13.460640907 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:13.507328987 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:14.033963919 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:14.034027100 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:14.034084082 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:14.036556959 CET | 49733 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:14.036565065 CET | 443 | 49733 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:14.038105965 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:14.038141966 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:14.038223982 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:14.038450956 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:14.038466930 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:15.474736929 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:15.477279902 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:15.477303982 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:16.305430889 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:16.305577993 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:16.305679083 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:16.305942059 CET | 49736 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:16.305960894 CET | 443 | 49736 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:18.315222025 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:18.315279007 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:18.315413952 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:18.315687895 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:18.315699100 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:19.738905907 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:19.781171083 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:19.781199932 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.264764071 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.264924049 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.265012980 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:20.265269995 CET | 49740 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:20.265289068 CET | 443 | 49740 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.265760899 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:20.265785933 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.265855074 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:20.266069889 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:20.266082048 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:20.645530939 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:20.769293070 CET | 3865 | 49732 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:22.831708908 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:22.840675116 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:22.840708971 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:23.355144978 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:23.355285883 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:23.355654001 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:23.355670929 CET | 443 | 49742 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:23.355680943 CET | 49742 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:25.411295891 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:25.411345959 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:25.411427975 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:25.412480116 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:25.412489891 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:26.831738949 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:26.833441019 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:26.833460093 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:27.358285904 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:27.358366966 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:27.358454943 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:27.358969927 CET | 49743 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:27.358988047 CET | 443 | 49743 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:27.359597921 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:27.359641075 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:27.359718084 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:27.359957933 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:27.359967947 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:29.078978062 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:29.080636024 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:29.080658913 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:29.610606909 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:29.610657930 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:29.610727072 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:29.611485958 CET | 49744 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:29.611500978 CET | 443 | 49744 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:31.570941925 CET | 3865 | 49732 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:31.571106911 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:31.627037048 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:31.627083063 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:31.627212048 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:31.627588987 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:31.627604961 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:32.985945940 CET | 49732 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:32.987440109 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:33.106651068 CET | 3865 | 49732 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:33.107785940 CET | 3865 | 49746 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:33.107872963 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:33.119498014 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:33.121642113 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.122823000 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.122862101 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.241276979 CET | 3865 | 49746 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:33.656625986 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.656677961 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.656740904 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.657282114 CET | 49745 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.657299995 CET | 443 | 49745 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.658682108 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.658698082 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:33.658759117 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.659080982 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:33.659095049 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:35.231924057 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:35.237140894 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:35.237175941 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:36.246334076 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:36.246370077 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:36.246424913 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:36.246943951 CET | 49747 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:36.246961117 CET | 443 | 49747 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:38.252624989 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:38.252681971 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:38.252768993 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:38.253103018 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:38.253120899 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:40.586867094 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:40.588805914 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:40.588838100 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:41.121417999 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:41.121475935 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:41.121640921 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:41.122155905 CET | 49748 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:41.122181892 CET | 443 | 49748 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:41.123845100 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:41.123889923 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:41.123975992 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:41.124212027 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:41.124222994 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:43.189457893 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:43.190949917 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:43.190974951 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:44.331085920 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:44.331142902 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:44.331290007 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:44.331623077 CET | 49749 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:44.331641912 CET | 443 | 49749 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:46.346421003 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:46.346477985 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:46.346561909 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:46.346860886 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:46.346878052 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:46.658198118 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:46.778980017 CET | 3865 | 49746 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:47.748946905 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:47.787384033 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:47.787410975 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:48.724111080 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:48.724163055 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:48.724235058 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:48.724819899 CET | 49750 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:48.724838018 CET | 443 | 49750 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:48.726217031 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:48.726264000 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:48.726336956 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:48.726653099 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:48.726665974 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:53.405373096 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:53.407001972 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:53.407025099 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:54.716183901 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:54.716236115 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:54.716284990 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:54.716732025 CET | 49751 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:54.716749907 CET | 443 | 49751 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:55.086483002 CET | 3865 | 49746 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:55.086553097 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:56.688992023 CET | 49746 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:56.690938950 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:56.721553087 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:56.721591949 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:56.721684933 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:56.722019911 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:56.722034931 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:56.842282057 CET | 3865 | 49746 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:56.842308998 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:56.842578888 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:56.853609085 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:45:56.977015972 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:45:58.141758919 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.143326998 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.143347025 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.668994904 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.669053078 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.669130087 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.669562101 CET | 49755 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.669578075 CET | 443 | 49755 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.670658112 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.670694113 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:45:58.670763969 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.670974970 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:45:58.670990944 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:00.091512918 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:00.093038082 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:00.093070030 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:00.618944883 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:00.619003057 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:00.619050980 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:00.619530916 CET | 49761 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:00.619549036 CET | 443 | 49761 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:02.627662897 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:02.627708912 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:02.627801895 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:02.628072977 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:02.628088951 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:04.495738029 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:04.497107983 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:04.497117996 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:05.442765951 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:05.442821980 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:05.442915916 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:05.443347931 CET | 49772 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:05.443358898 CET | 443 | 49772 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:05.444442987 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:05.444492102 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:05.444689035 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:05.445028067 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:05.445040941 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:06.817251921 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:06.818526983 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:06.818540096 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:07.620275021 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:07.620323896 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:07.620435953 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:07.620850086 CET | 49778 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:07.620873928 CET | 443 | 49778 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:09.627754927 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:09.627799034 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:09.627955914 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:09.628233910 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:09.628252983 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:11.048846960 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:11.070739985 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:11.070759058 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:11.328202963 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:11.448163986 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:12.002032042 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:12.038172960 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:12.038225889 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:12.038275003 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:12.038852930 CET | 49789 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:12.038868904 CET | 443 | 49789 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:12.040196896 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:12.040235996 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:12.040297031 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:12.040677071 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:12.040685892 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:12.122111082 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:13.405239105 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:13.407007933 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:13.407040119 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:14.205142021 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:14.205204964 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:14.205250025 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:14.205868959 CET | 49795 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:14.205885887 CET | 443 | 49795 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:14.705040932 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:14.826457977 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:16.223058939 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:16.223093987 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:16.223150969 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:16.223690033 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:16.223701000 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:17.664738894 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:17.666380882 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:17.666400909 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.191517115 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.191663027 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.191725969 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:18.192157030 CET | 49806 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:18.192172050 CET | 443 | 49806 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.193435907 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:18.193469048 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.193541050 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:18.193850040 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:18.193866968 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:18.840596914 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:18.842937946 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:19.657052040 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:19.711940050 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:19.711968899 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:20.190112114 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:20.190165997 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:20.190262079 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:20.191190004 CET | 49811 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:20.191212893 CET | 443 | 49811 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:22.173710108 CET | 49754 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:22.179311037 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:22.206103086 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:22.206150055 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:22.206207991 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:22.206650019 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:22.206660986 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:22.453247070 CET | 3865 | 49754 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:22.453274965 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:22.453386068 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:22.724158049 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:22.971246004 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:23.561111927 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:23.684967041 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:23.685067892 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:23.746443987 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:23.748198032 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:23.748226881 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:23.807758093 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:24.243927956 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:24.424725056 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:24.424799919 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:24.548715115 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:24.561256886 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:24.561314106 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:24.561397076 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:24.561842918 CET | 49823 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:24.561857939 CET | 443 | 49823 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:24.563440084 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:24.563488960 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:24.563560963 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:24.563869953 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:24.563894033 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:24.654762030 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:24.775497913 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:25.979577065 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:25.983658075 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:25.983678102 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:26.176642895 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:26.298202038 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:27.202260017 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:27.322350025 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:28.358371973 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:28.478691101 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:28.589545965 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:28.709522009 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:28.716393948 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:28.716443062 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:28.716660023 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:28.717216015 CET | 49829 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:28.717237949 CET | 443 | 49829 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:29.328893900 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:29.451241016 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:29.452059031 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:29.574451923 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:29.574743986 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:29.698577881 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:29.830360889 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:29.950386047 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:30.252546072 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:30.372467041 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:30.372525930 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:30.492479086 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:30.697046041 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:30.721446991 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:30.721472979 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:30.721535921 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:30.721818924 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:30.721829891 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:30.817063093 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:30.876987934 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:30.998982906 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:32.140949965 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.144828081 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.144859076 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.165041924 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:32.285619020 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:32.412698984 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:32.533004045 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:32.612668037 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:32.733078003 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:32.765856028 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:32.885967970 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:32.956934929 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.956991911 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.957159042 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.957498074 CET | 49841 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.957516909 CET | 443 | 49841 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.958595037 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.958632946 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:32.958832979 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.959139109 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:32.959147930 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:33.384548903 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:33.505021095 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:34.382384062 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:34.431973934 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:34.431992054 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:35.197948933 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:35.198009014 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:35.198076010 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:35.198642015 CET | 49847 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:35.198656082 CET | 443 | 49847 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:35.205738068 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:35.325686932 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:35.328017950 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:35.448550940 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:35.448653936 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:35.568662882 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:35.897283077 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:36.017561913 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:36.017622948 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:36.137640953 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:37.207541943 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:37.207591057 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:37.207654953 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:37.208046913 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:37.208055973 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:39.283560991 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:39.454045057 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:40.010683060 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:40.130641937 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:41.405236006 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:41.525188923 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:41.840420961 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:41.845441103 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:41.845462084 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:42.010699987 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:42.131380081 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:42.135927916 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:42.256078959 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:42.256136894 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:42.377350092 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:42.606281996 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:42.606328011 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:42.606401920 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:42.606774092 CET | 49856 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:42.606787920 CET | 443 | 49856 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:42.607712030 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:42.607724905 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:42.607906103 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:42.608237982 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:42.608247995 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:43.120722055 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:43.240616083 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:43.345968008 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:43.466099977 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:43.522624969 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:43.643404961 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:43.643538952 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:43.763542891 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:43.764049053 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:43.887481928 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:44.240313053 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:44.360610962 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:44.385317087 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:44.385422945 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:44.446794033 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:44.448229074 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:44.448246002 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:44.969316959 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:44.969367981 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:44.969718933 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:44.969778061 CET | 49866 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:44.969786882 CET | 443 | 49866 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:46.971658945 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:46.971719027 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:46.972023964 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:46.972718954 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:46.972728968 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:48.564105034 CET | 49822 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:48.567167044 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:48.684108973 CET | 3865 | 49822 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:48.687177896 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:48.687360048 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:48.703145027 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:48.823215008 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:49.453613997 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.455025911 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.455051899 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.765357018 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:49.886969090 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:49.979561090 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.979608059 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.979679108 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.980393887 CET | 49875 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.980411053 CET | 443 | 49875 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.981467009 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.981503010 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:49.981616020 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.981996059 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:49.982012033 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:50.901736021 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:51.022447109 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:51.022563934 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:51.143871069 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:51.148063898 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:51.268935919 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:51.269047022 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:51.362541914 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:51.365159035 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:51.365184069 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:51.389002085 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:51.877713919 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:51.877768040 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:51.877835035 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:51.878159046 CET | 49886 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:51.878175974 CET | 443 | 49886 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:51.895198107 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:52.080507994 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:52.080651045 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:52.200912952 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:53.893929005 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:53.893985987 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:53.894051075 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:53.894392014 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:53.894404888 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:53.986309052 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:54.107171059 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:54.727415085 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:54.847532034 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:55.322561979 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.323873997 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.323911905 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.584810972 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:55.705646992 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:55.845549107 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.845623016 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.845716953 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.864403963 CET | 49892 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.864434958 CET | 443 | 49892 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.865720034 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.865760088 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:55.865993023 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.866449118 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:55.866461992 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:58.009253979 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:58.131944895 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:58.375801086 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:58.377868891 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:58.377886057 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:58.949246883 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:58.949398041 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:58.950284958 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:59.016459942 CET | 49898 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:46:59.016489029 CET | 443 | 49898 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:46:59.581712008 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:59.702048063 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:46:59.702101946 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:46:59.822177887 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:00.641406059 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:00.761539936 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:00.943093061 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:01.033987045 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:01.034028053 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:01.034105062 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:01.034410000 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:01.034420967 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:01.063462973 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:02.451277971 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.454015017 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.454035044 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.974915028 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.974968910 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.975122929 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.975622892 CET | 49909 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.975642920 CET | 443 | 49909 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.976819992 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.976869106 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:02.976927042 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.977174997 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:02.977185011 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:03.720103979 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:03.840070963 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:03.974781990 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:04.095299006 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:04.095468044 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:04.215648890 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:04.409635067 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:04.410979033 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:04.411041975 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:05.404292107 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:05.404429913 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:05.404488087 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:05.404815912 CET | 49915 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:05.404834032 CET | 443 | 49915 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:05.428186893 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:05.549679995 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:06.348712921 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:06.469280005 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:06.527853012 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:06.648277998 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:06.673342943 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:06.794136047 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:07.118434906 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:07.238985062 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:07.453104019 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:07.453146935 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:07.453336000 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:07.453638077 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:07.453648090 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:08.922365904 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:08.924541950 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:08.924555063 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:09.690002918 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:09.810014963 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:10.037823915 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:10.037873030 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:10.038168907 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:10.038355112 CET | 49926 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:10.038378000 CET | 443 | 49926 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:10.039484978 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:10.039540052 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:10.039742947 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:10.040128946 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:10.040143967 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:10.206053019 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:10.333007097 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:10.650321007 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:10.650424957 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:11.465735912 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:11.467241049 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:11.467267036 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:12.460556984 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:12.460621119 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:12.460695028 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:12.461111069 CET | 49932 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:12.461134911 CET | 443 | 49932 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:14.471441031 CET | 49943 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:14.471489906 CET | 443 | 49943 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:14.471565962 CET | 49943 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:14.471820116 CET | 49943 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:14.471832991 CET | 443 | 49943 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:15.626780033 CET | 49880 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:15.630635977 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:15.746895075 CET | 3865 | 49880 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:15.750762939 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:15.750838995 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:15.766638041 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:15.886776924 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:15.886825085 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:15.937448025 CET | 443 | 49943 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:15.949013948 CET | 49943 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:15.949069977 CET | 443 | 49943 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:15.949119091 CET | 49943 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:16.007081985 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:16.137504101 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:16.257483959 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:17.323884010 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:17.444433928 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:17.501782894 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:17.622911930 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:17.622972012 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:17.743048906 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:17.743088961 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:17.831238985 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:17.831286907 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:17.831353903 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:17.831701994 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:17.831720114 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:17.863394022 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:17.863440990 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:17.983597040 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:18.020365000 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:18.140326977 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:18.140374899 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:18.260801077 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:19.503631115 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:19.503715038 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:19.506597996 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:19.506614923 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:19.506871939 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:19.508424997 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:19.508466959 CET | 443 | 49955 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:19.508557081 CET | 49955 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:19.560244083 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:19.680214882 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:19.728835106 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:19.850505114 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:19.850552082 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:19.971556902 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:19.971611023 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:20.092304945 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:20.734915972 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:20.855868101 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:21.253635883 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:21.253670931 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:21.253739119 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:21.254240990 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:21.254251957 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:21.770999908 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:21.897325993 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:21.897376060 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:22.073285103 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:22.376471043 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:22.496516943 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:22.894103050 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:23.022739887 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:23.325845957 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:23.445985079 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:23.581127882 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:23.703725100 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:23.703778982 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:23.704721928 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:23.704791069 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:23.706924915 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:23.706933022 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:23.707130909 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:23.708539009 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:23.708579063 CET | 443 | 49961 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:23.708631039 CET | 49961 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:23.823904037 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:23.981952906 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:24.102272034 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:24.436383963 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:24.559185982 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:25.256823063 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:25.347388983 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:25.347429037 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:25.347489119 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:25.347904921 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:25.347918034 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:25.378232956 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:25.378293991 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:25.503251076 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:25.503318071 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:25.876600027 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:26.088222980 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:26.088283062 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:26.088335991 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:26.208760023 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:26.212197065 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:26.332281113 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:27.164385080 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:27.284476995 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:27.872648001 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:27.999602079 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:27.999666929 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:28.127331018 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:28.273972034 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:28.274182081 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:28.275760889 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:28.275769949 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:28.276021957 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:28.277338028 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:28.277375937 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:28.277484894 CET | 443 | 49972 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:28.277508974 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:28.277556896 CET | 49972 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:29.329360008 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:29.449459076 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:29.449532986 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:29.570462942 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:29.570513010 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:29.690488100 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:29.732601881 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:29.799382925 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:29.799418926 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:29.799479961 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:29.799736023 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:29.799747944 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:29.854304075 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:29.936698914 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:30.057113886 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:30.057164907 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:30.184446096 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:31.248821020 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:31.368828058 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:31.368882895 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:31.488852978 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:31.488902092 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:31.598323107 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:31.598393917 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:31.600383043 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:31.600399017 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:31.600640059 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:31.602083921 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:31.602123022 CET | 443 | 49983 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:31.602179050 CET | 49983 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:31.609211922 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:31.609261036 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:31.729214907 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:31.729268074 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:31.849200964 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:33.033888102 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:33.033931971 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:33.036209106 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:33.040081978 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:33.040093899 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:33.092345953 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:33.212755919 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:33.481543064 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:33.601449966 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:33.601494074 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:33.721501112 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:33.721553087 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:33.841440916 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:33.972501993 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:34.092698097 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:34.173428059 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:34.293657064 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:34.440118074 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:34.440351009 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:34.444077969 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:34.444092035 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:34.444350958 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:34.449086905 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:34.449140072 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:34.449265957 CET | 443 | 49989 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:34.449296951 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:34.449423075 CET | 49989 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:34.923861980 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.043946981 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.378741026 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.498797894 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.498919010 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.618899107 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.618963003 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.738974094 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.739029884 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.801551104 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:35.801610947 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:35.801685095 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:35.802166939 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:35.802184105 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:35.863459110 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.863516092 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:35.984066010 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:35.984133959 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:36.107264042 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:36.107326031 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:36.227440119 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:37.274262905 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:37.274415970 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:37.325123072 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:37.325150967 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:37.325484991 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:37.348654032 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:37.348720074 CET | 443 | 49998 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:37.348777056 CET | 49998 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:37.657107115 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:37.657174110 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:38.596592903 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:38.596652031 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:38.596739054 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:38.600087881 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:38.600116014 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:40.021334887 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:40.021411896 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:40.024816990 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:40.024840117 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:40.025070906 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:40.026879072 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:40.026932001 CET | 443 | 50005 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:40.026984930 CET | 50005 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:41.190926075 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:41.190968037 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:41.191123962 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:41.191411972 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:41.191422939 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.048759937 CET | 49949 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:42.052676916 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:42.168853998 CET | 3865 | 49949 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:42.173017025 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:42.173094988 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:42.191198111 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:42.312618971 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:42.566448927 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.566587925 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:42.568380117 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:42.568387985 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.568635941 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.570048094 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:42.570081949 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.570188999 CET | 443 | 50012 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:42.570235014 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:42.570383072 CET | 50012 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:43.667021990 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:43.667064905 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:43.667300940 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:43.670156002 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:43.670171976 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:43.839737892 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:43.960557938 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:43.960623980 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:44.081681013 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:44.081748009 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:44.203075886 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:45.090471029 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:45.092180014 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:45.092180014 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:45.092216015 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:45.092449903 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:45.104085922 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:45.104126930 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:45.104223013 CET | 443 | 50019 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:45.108165026 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:45.108165026 CET | 50019 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:46.170891047 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:46.170944929 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:46.171027899 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:46.205379963 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:46.205405951 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:47.532438993 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:47.572793961 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:47.572869062 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:47.575319052 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:47.575326920 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:47.575552940 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:47.577332973 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:47.577359915 CET | 443 | 50025 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:47.577404022 CET | 50025 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:47.652507067 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:47.652565002 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:47.773783922 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:47.773864985 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:47.894145012 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:48.202738047 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:48.323000908 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:48.519042015 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:48.519114017 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:48.523644924 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:48.526108027 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:48.526124001 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:49.886977911 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:49.949490070 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:49.949574947 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:49.951858997 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:49.951869965 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:49.952097893 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:49.953798056 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:49.953830957 CET | 443 | 50031 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:49.953886032 CET | 50031 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:50.008982897 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:50.009049892 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:50.130227089 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:50.130312920 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:50.255683899 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:50.255834103 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:50.381279945 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:50.832242012 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:50.832289934 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:50.832743883 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:50.832885027 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:50.832895994 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:51.234266996 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:51.355375051 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:51.355429888 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:51.475573063 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:51.647989988 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:51.768248081 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:51.768313885 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:51.888288021 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:52.219177008 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:52.219403028 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:52.227180004 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:52.227191925 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:52.227417946 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:52.231307983 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:52.231343031 CET | 443 | 50037 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:52.231401920 CET | 50037 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:53.049770117 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:53.049827099 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:53.050184011 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:53.050617933 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:53.050632954 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:53.850045919 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:53.970181942 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:54.071651936 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:54.191777945 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:54.522470951 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:54.522604942 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:54.524252892 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:54.524262905 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:54.524499893 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:54.532130003 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:54.532195091 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:54.532322884 CET | 443 | 50043 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:54.532397032 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:54.532397032 CET | 50043 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:55.262355089 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:55.300631046 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:55.300678015 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:55.300777912 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:55.301081896 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:55.301091909 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:55.382514000 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:55.382569075 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:55.502726078 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:55.502773046 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:55.623317957 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:55.740703106 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:55.861023903 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:55.910635948 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:56.031919003 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:56.031980991 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:56.152594090 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:56.784363031 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:56.784508944 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:56.786046982 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:56.786060095 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:56.786324024 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:56.787550926 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:56.787590027 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:56.787727118 CET | 443 | 50049 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:56.787822962 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:56.787822962 CET | 50049 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:57.280962944 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:57.401405096 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:57.401465893 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:57.503133059 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:57.503171921 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:57.503226042 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:57.503568888 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:57.503582001 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:57.521488905 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:57.521538973 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:57.641714096 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:57.766145945 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:57.886235952 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:57.886291981 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:58.008799076 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:58.042591095 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:58.162738085 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:58.162796021 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:58.284607887 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:58.925553083 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:58.925708055 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:58.927366018 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:58.927376986 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:58.927620888 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:58.929032087 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:58.929074049 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:58.929209948 CET | 443 | 50054 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:58.929286957 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:58.929286957 CET | 50054 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:59.248399019 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:59.368953943 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:59.438436985 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:59.559942007 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:59.560074091 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:47:59.596997023 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:59.597042084 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:59.597107887 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:59.597383022 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:47:59.597394943 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:47:59.680041075 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:47:59.680094004 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:00.007287025 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:00.007360935 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:00.127423048 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:01.229001999 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.229721069 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.241579056 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.241600990 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.241956949 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.269819975 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.269898891 CET | 443 | 50059 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.269956112 CET | 50059 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.746680021 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:01.866724014 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:01.866808891 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:01.909432888 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.909476995 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.909540892 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.909925938 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:01.909936905 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:01.987277031 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:01.987337112 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:02.107439995 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:02.107503891 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:02.228977919 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:03.376488924 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:03.376620054 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:03.633846045 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:03.633892059 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:03.634226084 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:03.635514975 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:03.635555983 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:03.635701895 CET | 443 | 50062 | 91.134.9.160 | 192.168.2.4 |
Dec 2, 2024 18:48:03.635701895 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:03.635785103 CET | 50062 | 443 | 192.168.2.4 | 91.134.9.160 |
Dec 2, 2024 18:48:04.121473074 CET | 3865 | 50013 | 147.185.221.24 | 192.168.2.4 |
Dec 2, 2024 18:48:04.124191999 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Dec 2, 2024 18:48:05.215029001 CET | 50013 | 3865 | 192.168.2.4 | 147.185.221.24 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 2, 2024 18:45:00.144412041 CET | 52543 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 2, 2024 18:45:00.284198046 CET | 53 | 52543 | 1.1.1.1 | 192.168.2.4 |
Dec 2, 2024 18:45:03.077164888 CET | 60096 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 2, 2024 18:45:03.216547012 CET | 53 | 60096 | 1.1.1.1 | 192.168.2.4 |
Dec 2, 2024 18:45:08.759732962 CET | 50228 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 2, 2024 18:45:09.487962961 CET | 53 | 50228 | 1.1.1.1 | 192.168.2.4 |
Dec 2, 2024 18:45:10.455332041 CET | 59161 | 53 | 192.168.2.4 | 1.1.1.1 |
Dec 2, 2024 18:45:11.077008009 CET | 53 | 59161 | 1.1.1.1 | 192.168.2.4 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 2, 2024 18:45:00.144412041 CET | 192.168.2.4 | 1.1.1.1 | 0xd921 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 2, 2024 18:45:03.077164888 CET | 192.168.2.4 | 1.1.1.1 | 0xa994 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 2, 2024 18:45:08.759732962 CET | 192.168.2.4 | 1.1.1.1 | 0x4a3b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 2, 2024 18:45:10.455332041 CET | 192.168.2.4 | 1.1.1.1 | 0x62d | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 2, 2024 18:45:00.284198046 CET | 1.1.1.1 | 192.168.2.4 | 0xd921 | No error (0) | 104.20.3.235 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:00.284198046 CET | 1.1.1.1 | 192.168.2.4 | 0xd921 | No error (0) | 172.67.19.24 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:00.284198046 CET | 1.1.1.1 | 192.168.2.4 | 0xd921 | No error (0) | 104.20.4.235 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:03.216547012 CET | 1.1.1.1 | 192.168.2.4 | 0xa994 | No error (0) | 149.154.167.220 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:09.487962961 CET | 1.1.1.1 | 192.168.2.4 | 0x4a3b | No error (0) | 147.185.221.24 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.9.160 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.10.127 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.10.182 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.10.168 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.82.79 | A (IP address) | IN (0x0001) | false | ||
Dec 2, 2024 18:45:11.077008009 CET | 1.1.1.1 | 192.168.2.4 | 0x62d | No error (0) | 91.134.9.159 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49730 | 104.20.3.235 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:01 UTC | 74 | OUT | |
2024-12-02 17:45:02 UTC | 391 | IN | |
2024-12-02 17:45:02 UTC | 36 | IN | |
2024-12-02 17:45:02 UTC | 5 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49731 | 149.154.167.220 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:04 UTC | 319 | OUT | |
2024-12-02 17:45:05 UTC | 346 | IN | |
2024-12-02 17:45:05 UTC | 56 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49733 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:13 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49736 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:15 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49740 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:19 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49742 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:22 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49743 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:26 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49744 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:29 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49745 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:33 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49747 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:35 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49748 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:40 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49749 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:43 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49750 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:47 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49751 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:53 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49755 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:45:58 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.4 | 49761 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:00 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.4 | 49772 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:04 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.4 | 49778 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:06 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.4 | 49789 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:11 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.4 | 49795 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:13 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.4 | 49806 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:17 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
21 | 192.168.2.4 | 49811 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:19 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
22 | 192.168.2.4 | 49823 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:23 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
23 | 192.168.2.4 | 49829 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:25 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
24 | 192.168.2.4 | 49841 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:32 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
25 | 192.168.2.4 | 49847 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:34 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
26 | 192.168.2.4 | 49856 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:41 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
27 | 192.168.2.4 | 49866 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:44 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
28 | 192.168.2.4 | 49875 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:49 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
29 | 192.168.2.4 | 49886 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:51 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
30 | 192.168.2.4 | 49892 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:55 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
31 | 192.168.2.4 | 49898 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:46:58 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
32 | 192.168.2.4 | 49909 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:47:02 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
33 | 192.168.2.4 | 49915 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:47:04 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
34 | 192.168.2.4 | 49926 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:47:08 UTC | 75 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
35 | 192.168.2.4 | 49932 | 91.134.9.160 | 443 | 6924 | C:\Users\user\Desktop\msedge.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-02 17:47:11 UTC | 75 | OUT |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 12:44:53 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\Desktop\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x600000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 1 |
Start time: | 12:44:54 |
Start date: | 02/12/2024 |
Path: | C:\Windows\System32\schtasks.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff76f990000 |
File size: | 235'008 bytes |
MD5 hash: | 76CD6626DD8834BD4A42E6A565104DC2 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 2 |
Start time: | 12:44:54 |
Start date: | 02/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7699e0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 3 |
Start time: | 12:45:01 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\AppData\Local\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x1e0000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 4 |
Start time: | 12:45:06 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\AppData\Local\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x530000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 6 |
Start time: | 12:45:15 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\AppData\Local\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0xb60000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 9 |
Start time: | 12:46:00 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\AppData\Local\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x800000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 11 |
Start time: | 12:47:00 |
Start date: | 02/12/2024 |
Path: | C:\Users\user\AppData\Local\msedge.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0xec0000 |
File size: | 150'016 bytes |
MD5 hash: | F1C2525DA4F545E783535C2875962C13 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Target ID: | 14 |
Start time: | 12:48:01 |
Start date: | 02/12/2024 |
Path: | C:\Windows\System32\WerFault.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff65d7f0000 |
File size: | 570'736 bytes |
MD5 hash: | FD27D9F6D02763BDE32511B5DF7FF7A0 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Execution Graph
Execution Coverage: | 19.9% |
Dynamic/Decrypted Code Coverage: | 100% |
Signature Coverage: | 0% |
Total number of Nodes: | 7 |
Total number of Limit Nodes: | 0 |
Graph
Control-flow Graph
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B888BF6 Relevance: .6, Instructions: 561COMMON
Control-flow Graph
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8899A2 Relevance: .5, Instructions: 543COMMON
Control-flow Graph
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B881FB9 Relevance: .2, Instructions: 210COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B881FB9 Relevance: .2, Instructions: 210COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B880C6E Relevance: .3, Instructions: 259COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8812F9 Relevance: .2, Instructions: 226COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B88115D Relevance: .2, Instructions: 151COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B880588 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B880B09 Relevance: .1, Instructions: 125COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8809CD Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8811C8 Relevance: .1, Instructions: 103COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B88085D Relevance: .1, Instructions: 101COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B882191 Relevance: .1, Instructions: 52COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A1FB9 Relevance: .2, Instructions: 210COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A0C6E Relevance: .3, Instructions: 259COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A12F9 Relevance: .2, Instructions: 226COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A115D Relevance: .2, Instructions: 151COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A0588 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A0B09 Relevance: .1, Instructions: 125COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A09CD Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A11C8 Relevance: .1, Instructions: 103COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A085D Relevance: .1, Instructions: 101COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8A2191 Relevance: .1, Instructions: 52COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870C6E Relevance: .3, Instructions: 259COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B87130C Relevance: .2, Instructions: 217COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870588 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B87205C Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870B0E Relevance: .1, Instructions: 120COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8709CD Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8711EC Relevance: .1, Instructions: 84COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870889 Relevance: .1, Instructions: 80COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8721AC Relevance: .0, Instructions: 35COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B872199 Relevance: .0, Instructions: 32COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870C6E Relevance: .3, Instructions: 259COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B87130C Relevance: .2, Instructions: 217COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870588 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B87205C Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870B0E Relevance: .1, Instructions: 120COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8709CD Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8711EC Relevance: .1, Instructions: 84COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B870889 Relevance: .1, Instructions: 80COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8721AC Relevance: .0, Instructions: 35COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B872199 Relevance: .0, Instructions: 32COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B891FB9 Relevance: .2, Instructions: 210COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B890C6E Relevance: .3, Instructions: 259COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8912F9 Relevance: .2, Instructions: 226COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B89115D Relevance: .2, Instructions: 151COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B890588 Relevance: .1, Instructions: 134COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B890B09 Relevance: .1, Instructions: 125COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8909CD Relevance: .1, Instructions: 109COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B8911C8 Relevance: .1, Instructions: 103COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B89085D Relevance: .1, Instructions: 101COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFD9B892191 Relevance: .1, Instructions: 52COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|