Windows
Analysis Report
QCTYoyX422.dll
Overview
General Information
Sample name: | QCTYoyX422.dllrenamed because original name is a hash value |
Original sample name: | 78131997ac3542a3ce1c2ae4afac1474ba0a19cb.dll |
Analysis ID: | 1578323 |
MD5: | d32fca080e7b321914810ff69eafd1a4 |
SHA1: | 78131997ac3542a3ce1c2ae4afac1474ba0a19cb |
SHA256: | 2281a8837520789fed9c41a66d241a8cf85b83085da2b0fe0f8408e49bde8cef |
Tags: | dlluser-NDA0E |
Infos: | |
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- loaddll32.exe (PID: 6692 cmdline:
loaddll32. exe "C:\Us ers\user\D esktop\QCT YoyX422.dl l" MD5: 51E6071F9CBA48E79F10C84515AAE618) - conhost.exe (PID: 6048 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - cmd.exe (PID: 3576 cmdline:
cmd.exe /C rundll32. exe "C:\Us ers\user\D esktop\QCT YoyX422.dl l",#1 MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B) - rundll32.exe (PID: 6156 cmdline:
rundll32.e xe "C:\Use rs\user\De sktop\QCTY oyX422.dll ",#1 MD5: 889B99C52A60DD49227C5E485A016679) - cmd.exe (PID: 4416 cmdline:
cmd.exe /c ping 127. 0.0.1 -n 3 &rd /s /q "C:\Users\ user\Deskt op" MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B) - conhost.exe (PID: 4568 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - PING.EXE (PID: 2968 cmdline:
ping 127.0 .0.1 -n 3 MD5: B3624DD758CCECF93A1226CEF252CA12) - rundll32.exe (PID: 5400 cmdline:
rundll32.e xe C:\User s\user\Des ktop\QCTYo yX422.dll, DoAddToFav Dlg MD5: 889B99C52A60DD49227C5E485A016679) - rundll32.exe (PID: 6776 cmdline:
rundll32.e xe C:\User s\user\Des ktop\QCTYo yX422.dll, InputFile MD5: 889B99C52A60DD49227C5E485A016679) - rundll32.exe (PID: 3852 cmdline:
rundll32.e xe C:\User s\user\Des ktop\QCTYo yX422.dll, PrintFile MD5: 889B99C52A60DD49227C5E485A016679) - WerFault.exe (PID: 5476 cmdline:
C:\Windows \SysWOW64\ WerFault.e xe -u -p 3 852 -s 680 MD5: C31336C1EFC2CCB44B4326EA793040F2) - rundll32.exe (PID: 6360 cmdline:
rundll32.e xe "C:\Use rs\user\De sktop\QCTY oyX422.dll ",DoAddToF avDlg MD5: 889B99C52A60DD49227C5E485A016679) - cmd.exe (PID: 2360 cmdline:
cmd.exe /c ping 127. 0.0.1 -n 3 &rd /s /q "C:\Users\ user\Deskt op" MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B) - conhost.exe (PID: 2148 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - PING.EXE (PID: 5912 cmdline:
ping 127.0 .0.1 -n 3 MD5: B3624DD758CCECF93A1226CEF252CA12) - rundll32.exe (PID: 1268 cmdline:
rundll32.e xe "C:\Use rs\user\De sktop\QCTY oyX422.dll ",InputFil e MD5: 889B99C52A60DD49227C5E485A016679) - rundll32.exe (PID: 3780 cmdline:
rundll32.e xe "C:\Use rs\user\De sktop\QCTY oyX422.dll ",PrintFil e MD5: 889B99C52A60DD49227C5E485A016679) - WerFault.exe (PID: 1568 cmdline:
C:\Windows \SysWOW64\ WerFault.e xe -u -p 3 780 -s 668 MD5: C31336C1EFC2CCB44B4326EA793040F2)
- rundll32.exe (PID: 4512 cmdline:
"C:\Window s\SysWOW64 \rundll32. exe" "C:\U sers\user\ Desktop\QC TYoyX422.d ll",DoAddT oFavDlg MD5: 889B99C52A60DD49227C5E485A016679) - cmd.exe (PID: 612 cmdline:
cmd.exe /c ping 127. 0.0.1 -n 3 &rd /s /q "C:\Users\ user\Deskt op" MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B) - conhost.exe (PID: 2940 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - PING.EXE (PID: 5900 cmdline:
ping 127.0 .0.1 -n 3 MD5: B3624DD758CCECF93A1226CEF252CA12)
- rundll32.exe (PID: 2164 cmdline:
"C:\Window s\SysWOW64 \rundll32. exe" "C:\U sers\user\ Desktop\QC TYoyX422.d ll",DoAddT oFavDlg MD5: 889B99C52A60DD49227C5E485A016679) - cmd.exe (PID: 6640 cmdline:
cmd.exe /c ping 127. 0.0.1 -n 3 &rd /s /q "C:\Users\ user\Deskt op" MD5: D0FCE3AFA6AA1D58CE9FA336CC2B675B) - conhost.exe (PID: 4036 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - PING.EXE (PID: 1888 cmdline:
ping 127.0 .0.1 -n 3 MD5: B3624DD758CCECF93A1226CEF252CA12)
- cleanup
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
Winnti_NlaifSvc | Winnti sample - file NlaifSvc.dll | Florian Roth |
|
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
Winnti_NlaifSvc | Winnti sample - file NlaifSvc.dll | Florian Roth |
| |
Winnti_NlaifSvc | Winnti sample - file NlaifSvc.dll | Florian Roth |
| |
Winnti_NlaifSvc | Winnti sample - file NlaifSvc.dll | Florian Roth |
|
System Summary |
---|
Source: | Author: Victor Sergeev, Daniil Yugoslavskiy, Gleb Sukhodolskiy, Timur Zinniatullin, oscd.community, Tim Shelton, frack113 (split): |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-19T15:33:49.117775+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49832 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:33:53.576147+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49860 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:33:56.329824+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49899 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:01.922308+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49944 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:03.882293+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49983 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:07.901128+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50029 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:11.998149+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50073 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:16.124537+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50124 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:20.060517+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50169 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:26.235546+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50211 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:28.300492+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50261 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:32.273166+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50312 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:37.014304+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50373 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:40.492801+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50442 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:44.460965+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50514 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:50.548218+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50599 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:54.563154+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50694 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:58.581797+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50821 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:00.531712+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50968 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:04.602169+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51159 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:08.945512+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51338 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:13.774372+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51564 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:17.090682+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51811 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:22.454987+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53337 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:25.922944+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55397 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:29.752186+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 58026 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:35.720398+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59713 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:37.694973+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62269 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:39.876748+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64965 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:41.869054+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 65117 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:45.970804+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51145 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:50.736803+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53691 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:56.157102+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55835 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:58.175529+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 58043 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:03.560201+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 61064 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:08.443719+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62823 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:11.079166+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49190 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:14.682367+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51417 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:20.614467+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52994 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:24.626595+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55604 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:26.715575+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 57901 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:30.697075+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 60362 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:36.083800+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 63422 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:38.041832+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64310 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:42.322679+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50407 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:47.818287+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53368 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:50.547672+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 54824 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:54.669045+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 56892 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:58.732633+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59314 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:04.474074+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62377 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:06.983025+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 63810 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:09.575587+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64717 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:15.635195+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51632 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:18.875742+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52689 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:22.180429+0100 | 2803274 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53533 | 116.133.8.92 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-19T15:33:39.327074+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49718 | 107.160.131.253 | 18659 | TCP |
2024-12-19T15:33:45.397452+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49719 | 107.163.56.110 | 18530 | TCP |
2024-12-19T15:33:45.397574+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49792 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:45.397604+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49794 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:49.522293+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49814 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:49.522365+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49815 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:53.576110+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49859 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:53.576176+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49857 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:57.708282+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49900 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:57.708363+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49897 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:01.922280+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49943 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:01.922315+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49938 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:05.938341+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49982 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:05.938912+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49980 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:09.938157+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50028 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:09.938193+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50026 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:14.078380+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50072 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:14.078461+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50074 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:18.094296+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50123 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:18.094296+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50121 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:22.219354+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50166 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:22.219408+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50168 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:26.235588+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50210 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:26.235589+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50208 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:30.260068+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50256 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:30.260102+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50260 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:34.390927+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50311 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:34.391007+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50308 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:38.517665+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50374 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:38.518078+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50371 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:42.517559+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50443 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:42.517591+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50436 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:46.532733+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50515 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:46.532789+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50510 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:50.548185+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50597 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:50.548231+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50600 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:54.563201+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50690 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:54.563221+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50692 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:58.581718+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50815 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:58.581765+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50820 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:02.594584+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50967 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:02.594994+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50962 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:06.840239+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51158 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:06.840273+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51148 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:10.989053+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51331 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:10.989135+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51337 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:15.141197+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51553 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:15.141198+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51561 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:19.164022+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51803 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:19.164053+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51810 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:23.313500+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52999 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:23.313524+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52806 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:27.461328+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55398 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:27.461551+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55399 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:31.719758+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 58021 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:31.721035+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 58024 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:35.720361+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59600 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:35.720432+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59752 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:39.876631+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62271 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:39.876738+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62270 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:44.001026+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 65081 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:44.001126+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 65116 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:48.126628+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51043 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:48.126659+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51144 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:52.142027+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53692 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:52.142064+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53634 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:56.157493+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55836 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:56.157932+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55778 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:00.173328+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 58045 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:00.173372+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 57965 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:04.297888+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 60319 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:04.297917+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 60345 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:08.443784+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62825 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:08.443812+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62729 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:12.579717+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49177 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:12.579718+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 49188 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:16.595175+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51340 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:16.595345+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 51418 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:20.614490+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52993 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:20.614529+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52889 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:24.626516+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55567 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:24.626567+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 55602 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:28.642235+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 57794 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:28.642269+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 57903 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:32.676772+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 60361 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:32.676811+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 60254 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:36.083749+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62635 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:36.083794+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62667 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:40.204175+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64311 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:40.204221+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64313 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:44.220151+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50408 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:44.220250+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50290 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:48.433843+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52832 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:48.433898+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52878 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:52.594920+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 54823 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:52.595139+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 54804 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:56.749020+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 56890 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:56.749142+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 56893 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:00.876747+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59231 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:00.876781+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 59313 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:05.001203+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 62045 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:05.001270+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 61952 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:07.518667+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 63790 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:07.518717+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 63809 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:11.642377+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64715 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:11.642579+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 64718 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:15.818984+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50608 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:15.819027+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 50543 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:20.197833+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52688 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:20.197840+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 52686 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:42.238712+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53487 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:42.379327+0100 | 2803270 | 2 | Potentially Bad Traffic | 192.168.2.5 | 53534 | 107.160.131.254 | 23588 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-19T15:33:39.327074+0100 | 2812407 | 1 | Malware Command and Control Activity Detected | 192.168.2.5 | 49718 | 107.160.131.253 | 18659 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Avira: |
Source: | ReversingLabs: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: |
Source: | Static PE information: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Source: | Code function: | 3_2_10007F3E |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Networking |
---|
Source: | Suricata IDS: |
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior |
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Process created: |
Source: | TCP traffic: | ||
Source: | TCP traffic: | ||
Source: | TCP traffic: |
Source: | IP Address: |
Source: | ASN Name: | ||
Source: | ASN Name: |
Source: | JA3 fingerprint: |
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | Code function: | 3_2_10003F41 |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Process Stats: |
Source: | Code function: | 3_2_10008AAD |
Source: | Code function: | 3_2_10003F63 |
Source: | Code function: | 3_2_1000B224 | |
Source: | Code function: | 3_2_1000B70D | |
Source: | Code function: | 3_2_100121ED | |
Source: | Code function: | 3_2_1000AEC0 |
Source: | Code function: |
Source: | Process created: |
Source: | Binary or memory string: |
Source: | Static PE information: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Classification label: |
Source: | Code function: | 3_2_1000404F |
Source: | Code function: | 3_2_10003FB7 |
Source: | File created: | Jump to behavior |
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: |
Source: | File created: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Process created: |
Source: | ReversingLabs: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: |
Source: | Key value queried: | Jump to behavior |
Source: | Window detected: |
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: | ||
Source: | Binary string: |
Source: | Code function: | 3_2_1003901C | |
Source: | Code function: | 3_2_1002A254 | |
Source: | Code function: | 3_2_1002F036 | |
Source: | Code function: | 3_2_10027C71 | |
Source: | Code function: | 3_2_10029046 | |
Source: | Code function: | 3_2_1003B061 | |
Source: | Code function: | 3_2_1002F051 | |
Source: | Code function: | 3_2_1002F068 | |
Source: | Code function: | 3_2_100351D7 | |
Source: | Code function: | 3_2_1003307F | |
Source: | Code function: | 3_2_1003307F | |
Source: | Code function: | 3_2_1002D08D | |
Source: | Code function: | 3_2_10031095 | |
Source: | Code function: | 3_2_1002FD0B | |
Source: | Code function: | 3_2_1002FD4E | |
Source: | Code function: | 3_2_10023093 | |
Source: | Code function: | 3_2_100230B3 | |
Source: | Code function: | 3_2_1002B78C | |
Source: | Code function: | 3_2_1003B2DF | |
Source: | Code function: | 3_2_1002F874 | |
Source: | Code function: | 3_2_1002AD33 | |
Source: | Code function: | 3_2_1003408E | |
Source: | Code function: | 3_2_1002F0EF | |
Source: | Code function: | 3_2_100282E3 | |
Source: | Code function: | 3_2_100338DA | |
Source: | Code function: | 3_2_10035102 | |
Source: | Code function: | 3_2_100250F0 | |
Source: | Code function: | 3_2_1002B0FD | |
Source: | Code function: | 3_2_1002D116 | |
Source: | Code function: | 3_2_1002B0FD | |
Source: | Code function: | 3_2_10039116 |
Boot Survival |
---|
Source: | Registry value created or modified: | Jump to behavior |
Source: | Registry value created or modified: | Jump to behavior | ||
Source: | Registry value created or modified: | Jump to behavior |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: |
Malware Analysis System Evasion |
---|
Source: | Evasive API call chain: | graph_3-17279 |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: |
Source: | Code function: | 3_2_1001E1FE |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: | ||
Source: | Last function: |
Source: | Code function: | 3_2_10007F3E |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Process queried: | Jump to behavior | ||
Source: | Process queried: | Jump to behavior | ||
Source: | Process queried: | |||
Source: | Process queried: |
Source: | Code function: | 3_2_1001E1FE |
HIPS / PFW / Operating System Protection Evasion |
---|
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior | ||
Source: | Network Connect: | Jump to behavior |
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: |
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior | ||
Source: | Registry key value queried: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Stealing of Sensitive Information |
---|
Source: | Device IO: | Jump to behavior | ||
Source: | Device IO: | Jump to behavior | ||
Source: | Device IO: | Jump to behavior | ||
Source: | Device IO: | Jump to behavior |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 1 Native API | 11 Registry Run Keys / Startup Folder | 1 Access Token Manipulation | 1 Masquerading | OS Credential Dumping | 31 Security Software Discovery | Remote Services | 1 Archive Collected Data | 11 Encrypted Channel | Exfiltration Over Other Network Medium | 1 System Shutdown/Reboot |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 1 DLL Side-Loading | 111 Process Injection | 31 Virtualization/Sandbox Evasion | LSASS Memory | 31 Virtualization/Sandbox Evasion | Remote Desktop Protocol | Data from Removable Media | 11 Non-Standard Port | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | 11 Registry Run Keys / Startup Folder | 1 Access Token Manipulation | Security Account Manager | 1 Process Discovery | SMB/Windows Admin Shares | Data from Network Shared Drive | 2 Ingress Tool Transfer | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | 1 DLL Side-Loading | 111 Process Injection | NTDS | 1 Application Window Discovery | Distributed Component Object Model | Input Capture | 2 Non-Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 1 Deobfuscate/Decode Files or Information | LSA Secrets | 1 Remote System Discovery | SSH | Keylogging | 13 Application Layer Protocol | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 2 Obfuscated Files or Information | Cached Domain Credentials | 1 System Network Configuration Discovery | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 1 Rundll32 | DCSync | 2 File and Directory Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | 1 DLL Side-Loading | Proc Filesystem | 111 System Information Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
79% | ReversingLabs | Win32.Backdoor.Farfli | ||
100% | Avira | TR/Crypt.PEPM.Gen | ||
100% | Joe Sandbox ML |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
blogx.sina.com.cn | 116.133.8.92 | true | false | high | |
host123.zz.am | unknown | unknown | false | high | |
blog.sina.com.cn | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
false | high | ||
true | unknown | ||
true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | unknown | |||
false | unknown | |||
false | high | |||
false | high | |||
false | unknown | |||
false | high | |||
false | unknown | |||
false | high | |||
false | high | |||
false | unknown | |||
false | high | |||
false | high | |||
false | unknown | |||
false | high | |||
false | high | |||
false | high | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | high | |||
false | unknown | |||
false | high | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | high | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | high | |||
false | unknown | |||
false | unknown | |||
false | unknown | |||
false | high | |||
false | high | |||
false | unknown | |||
false | unknown | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
116.133.8.92 | blogx.sina.com.cn | China | 4837 | CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | false | |
107.163.56.110 | unknown | United States | 20248 | TAKE2US | true | |
107.160.131.253 | unknown | United States | 40676 | AS40676US | true | |
107.160.131.254 | unknown | United States | 40676 | AS40676US | true |
IP |
---|
127.0.0.1 |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1578323 |
Start date and time: | 2024-12-19 15:32:09 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 9m 53s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 33 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | QCTYoyX422.dllrenamed because original name is a hash value |
Original Sample Name: | 78131997ac3542a3ce1c2ae4afac1474ba0a19cb.dll |
Detection: | MAL |
Classification: | mal100.troj.spyw.evad.winDLL@42/11@48/5 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): dllhost.exe, WerFault.exe, WMIADAP.exe, SIHClient.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 199.232.214.172, 20.42.65.92, 199.232.210.172, 20.190.181.6, 13.107.246.63, 4.245.163.56
- Excluded domains from analysis (whitelisted): client.wns.windows.com, onedsblobprdeus17.eastus.cloudapp.azure.com, ocsp.digicert.com, login.live.com, otelrules.azureedge.net, slscr.update.microsoft.com, blobcollector.events.data.trafficmanager.net, ctldl.windowsupdate.com, umwatson.events.data.microsoft.com, fe3cr.delivery.mp.microsoft.com
- HTTP sessions have been limited to 150. Please view the PCAPs for the complete data.
- Not all processes where analyzed, report is missing behavior information
- Report size exceeded maximum capacity and may have missing behavior information.
- Report size getting too big, too many NtDeviceIoControlFile calls found.
- Report size getting too big, too many NtOpenFile calls found.
- Report size getting too big, too many NtOpenKeyEx calls found.
- Report size getting too big, too many NtProtectVirtualMemory calls found.
- Report size getting too big, too many NtQueryValueKey calls found.
- VT rate limit hit for: QCTYoyX422.dll
Time | Type | Description |
---|---|---|
09:33:16 | API Interceptor | |
09:33:23 | API Interceptor | |
09:33:26 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
107.163.56.110 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
107.160.131.253 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
107.160.131.254 | Get hash | malicious | Unknown | Browse | ||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse | |||
Get hash | malicious | Unknown | Browse |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
blogx.sina.com.cn | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
AS40676US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
CHINA169-BACKBONECHINAUNICOMChina169BackboneCN | Get hash | malicious | Mirai, Okiru | Browse |
| |
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
Get hash | malicious | Mirai, Okiru | Browse |
| ||
TAKE2US | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
37f463bf4616ecd445d4a1937da06e19 | Get hash | malicious | GuLoader, MassLogger RAT | Browse |
| |
Get hash | malicious | GuLoader, MassLogger RAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | GuLoader, RHADAMANTHYS | Browse |
| ||
Get hash | malicious | GuLoader, RHADAMANTHYS | Browse |
| ||
Get hash | malicious | GuLoader, RHADAMANTHYS | Browse |
| ||
Get hash | malicious | GuLoader, RHADAMANTHYS | Browse |
| ||
Get hash | malicious | GuLoader, RHADAMANTHYS | Browse |
| ||
Get hash | malicious | GuLoader, Snake Keylogger | Browse |
| ||
Get hash | malicious | RHADAMANTHYS | Browse |
|
Process: | C:\Windows\SysWOW64\rundll32.exe |
File Type: | |
Category: | modified |
Size (bytes): | 721 |
Entropy (8bit): | 4.5083577671839175 |
Encrypted: | false |
SSDEEP: | 6:yFDUeE+mjxxx/QQLDtnoXZr53rUOrTujsOdyuuuuuuuuuuuuuuuuuuuuM:8DHmjxn/QQLDtnKZrFksOdZ |
MD5: | A668E3EF36C02C5FF671A55C180016DC |
SHA1: | 5A143B7D1A587E0AADAA8FE9B20B6E6DA6639952 |
SHA-256: | 797FCF79DB59180F1F43836A256C12ED7C33D7DBEC45BEF6BBDA8BC55E635A1C |
SHA-512: | 09D51B72BF50E1B265DA020BEE0594B286720D0216738CDDB06F9F8392A46F9DFFE810A63A06BE04947FDCBB2D038070262FBB79900695043EA7FCFCA7D5470E |
Malicious: | false |
Preview: |
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_rundll32.exe_d2d6a05f617930bde2d4c76b2a5555e299272ba9_7522e4b5_3dad8a4c-1831-4971-aa98-839e8dd90250\Report.wer
Download File
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 65536 |
Entropy (8bit): | 0.9508901274102053 |
Encrypted: | false |
SSDEEP: | 192:BcibON7t30BU/wjeT8WaZYzuiFgZ24IO8dci:2iiBtEBU/wjeobYzuiFgY4IO8dci |
MD5: | 1507A11A1FC3A55A522C8FEC2CF92C5D |
SHA1: | 238A94BF85A587222958BB3620985303A45BCA40 |
SHA-256: | A3EEBD33E62ABADA43704128CCF5D1ACFDCE80616C63F0B495A5B15A8F5DAE65 |
SHA-512: | F7F46E868B09234812D7359F224C55DFD28FF01C2A52704FE13C61260305AC88F67F85D0466ADC5033E914F4B56C95538B77C2D31D9B1254763F2A813A0CF2B3 |
Malicious: | false |
Preview: |
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\AppCrash_rundll32.exe_fee72e296cfe876676a0f903eac30ffbede4e6_7522e4b5_d9acbd27-5457-4376-8dd5-26b82a891734\Report.wer
Download File
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 65536 |
Entropy (8bit): | 0.9510379801046509 |
Encrypted: | false |
SSDEEP: | 192:dxi8WO4v0BU/wjeT8WaZYzuiFgZ24IO8dci:7i8X4cBU/wjeobYzuiFgY4IO8dci |
MD5: | 1E0E98B4ED0AA8C07E40634B222841C2 |
SHA1: | B62BBC20A57BF9ED823285E764F532F100C00603 |
SHA-256: | 57531E99A9EB90CA81C78F6AC6E6C77F603D106EF379B8F5E90825E6CBC3A71F |
SHA-512: | 08D8A05AA690E9E90D6EC686E2B67A02409C57BE7595641AD082B068FE04B4AEE0B3AFF14EB654D6F7B2369FBD9E882391183FFCF83250C3805BEB144B8E8FF2 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 43452 |
Entropy (8bit): | 2.0845666960232223 |
Encrypted: | false |
SSDEEP: | 192:4sqIZINXJXXcO5H4c80h64wupxP/BC9roNWiuElMA:nZI/5HZpjT/BC9uWivM |
MD5: | 3BC51876FE3DD3818E5B6490D6DBDC83 |
SHA1: | 68DCBA0B9D92868C3E543D02BA26E94547669FCF |
SHA-256: | 952040479E604E8418AE48591D01210E7D2C86C6F57686381F616E56AE2C2448 |
SHA-512: | C6520A8AC9D1B6424DF961613A5405214B799F188B4347E97A708310E6968CEAC927FA4CEC6E9CAEC27DDBBC29A43CC28D422EC5B7929D974FA974ECA88D4C50 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8272 |
Entropy (8bit): | 3.6921630436836645 |
Encrypted: | false |
SSDEEP: | 192:R6l7wVeJxh6Zr6Y5E6mgmfTZxprt89bzisfvRm:R6lXJH6V6Ya6mgmfTZWzhfU |
MD5: | 8916BBE684FB65E6A7897EF2C20F45E5 |
SHA1: | 3032964921D169708098F0966414928E7DCB3E78 |
SHA-256: | 49562928E2EB69FF14969E575064914EF5F066AA7CD5F0F0252DA268156B31DD |
SHA-512: | 91FB8E4512C0584ED91F1E96AC811EB0B48B67C3912C3B6C4455F72F81638A024DC3184DFF88C2FC9E1D9C2262FC65A8A5756B3A9C2D1869FEB46BEDE8E12370 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4654 |
Entropy (8bit): | 4.459364086734924 |
Encrypted: | false |
SSDEEP: | 48:cvIwWl8zsMtJg77aI9bIWpW8VYbYm8M4JCdPSF8q+q8/ApGScS5d:uIjfyI7Bh7V/JUqRJ35d |
MD5: | 28BA515A9856E3F98D7128B14E152AF4 |
SHA1: | B65592BBC1643BF834C18F0784364BB646E44AE3 |
SHA-256: | 0770CA199BC129CEBB1C3C5E6533F65B27AF5F81D5A8AC6C70E88734C8A1463F |
SHA-512: | DF7D51ABF119AF4963F0818FA863530F538C5D4328AC5C8F6A00909C9BBB9E85E6940C8A75A5BB7AB2C95B8CABA518D6B08BF6F6B857794BDF0BD95519F0E532 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 42710 |
Entropy (8bit): | 2.100327838530544 |
Encrypted: | false |
SSDEEP: | 192:ycrPIZINXJX8O5H4cmrkQI+jX7DoCuqSRI:lrwZIP5HZmrkts7DPv |
MD5: | 6573D113291F01BB9704A60A9BE33D78 |
SHA1: | 0ED95C2DAF165B7F071ADFAF7428BF9244B639E3 |
SHA-256: | 28A1EE93DF7272DF398B5E1DC9A700CD33286E79AE87022AB153B6B743B52C19 |
SHA-512: | 6616ACB9C4DC9AD56067EA3B8918F61FCC86A7AC0B8175D11F7F714982E478ADEEE7C2E6BBC541C0D7F2A2354AE81BAA4A8B4BC53A88A1ECF4DC86191E77A4F6 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 8264 |
Entropy (8bit): | 3.6958878004552824 |
Encrypted: | false |
SSDEEP: | 192:R6l7wVeJZr6m6YR/6IgmfTxxprt89bBbsfgrm:R6lXJV6m6YJ6IgmfTxWBgfh |
MD5: | E7880C0EA4F9F9F7F5DC94C7CEAECFA3 |
SHA1: | 5401AD7EFF43E3D8D17BDA346AFE505B628D2CB0 |
SHA-256: | 0606E07946A8F518B03E01DA84FD957F2F9752149FD6D8A89EEE5E053B3AA66C |
SHA-512: | 457E65F607EB01D5603100D53BB8CEF2501803D2FCC4A11D6A1B884033E68B074C0AE7322DDCDD46DDD2F1DCB5422B55FC43578B66B1C7A8DD412B62BB4CADA5 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 4654 |
Entropy (8bit): | 4.460469187588189 |
Encrypted: | false |
SSDEEP: | 48:cvIwWl8zsMtJg77aI9bIWpW8VY0Ym8M4JCdPOFIA+q8/AoT4GScSEd:uIjfyI7Bh7V4JkAAcJ3Ed |
MD5: | 587D70F6CBC75AA7D4770610CF9C25D8 |
SHA1: | 6060E86CE29B69B246B9104F89BB5ECF1792DD3C |
SHA-256: | 2E0477343406CDC566A635518C6EB555371A872BA707B9CCA20EF29DE66FF564 |
SHA-512: | 711EF54659BF97144684A493080C1A42A34964CD57D81ED5C7E39087304E7F3CB1B6CACD7E48C6FAC402EE4981F5908879E532AE7650C8BFD734318F67BD2387 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
Download File
Process: | C:\Windows\SysWOW64\rundll32.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 328 |
Entropy (8bit): | 3.548225307988918 |
Encrypted: | false |
SSDEEP: | 6:kKaB3hK8ZsTwD8HGsL+N+SkQlPlEGYRMY9z+4KlDA3RUebT3:accImsLNkPlE99SNxAhUe/3 |
MD5: | DAD428D83DA7E628B70EF65FE757B78C |
SHA1: | B99C78E7AB2073CD7F05DAAC0CF550F76459B5E0 |
SHA-256: | 78F485513A1D3EE82C40C17062D60B9C6C02F5A3602B27D2EEAC726C2897186C |
SHA-512: | 4E2F495BE7BE5083E82BC114F239925A3298D46B08D7C15B77DC64DF553A7AB1BCA11BE7BFD1D2AE1CFBA9F4631B0B892BDCA601BF9D507455CA9EC51C35DC94 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WerFault.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1835008 |
Entropy (8bit): | 4.422271246554642 |
Encrypted: | false |
SSDEEP: | 6144:9Svfpi6ceLP/9skLmb0OTyWSPHaJG8nAgeMZMMhA2fX4WABlEnNP0uhiTw:kvloTyW+EZMM6DFyl03w |
MD5: | ECECCBF1A19603FFD20D993D0CC20CD1 |
SHA1: | 86B9F67643EF5021125424122AA9219277E7E730 |
SHA-256: | 4CAB442ABDF36B5D4432DD50A911052A00CA1D6FFAC016A60F10A3C936185227 |
SHA-512: | 5596E3EAE13F17B6C839A29F5B82538081F336ED88525C16BD91E3ED0E97BB5AC9B40165AAEFB34319CBFA3B69E623EE1407CC0D329487C1B0B42F2D3055F539 |
Malicious: | false |
Preview: |
File type: | |
Entropy (8bit): | 6.394027469387996 |
TrID: |
|
File name: | QCTYoyX422.dll |
File size: | 322'775 bytes |
MD5: | d32fca080e7b321914810ff69eafd1a4 |
SHA1: | 78131997ac3542a3ce1c2ae4afac1474ba0a19cb |
SHA256: | 2281a8837520789fed9c41a66d241a8cf85b83085da2b0fe0f8408e49bde8cef |
SHA512: | aa768dae6eb1191f7bb420a2041c70edae6ef679f11f91924fa5b5f96cf945b823f20744db5cc1be9ca951c0a8059a6b5aeba067bc995bfe67cf13a5db93ab53 |
SSDEEP: | 6144:YutK09bpsWYrPnP3UKLSr1TS8BbdrFucR+z+qagIK+bcgaI0M:BK0YWYrPP35LSrBS8LQ4+z+qagQYVIZ |
TLSH: | 3964AE0237B552F5D4F70A3A9F35E72DE33438109CA8DD159B8A08C91CE3949AED578B |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$......... B..N...N...N...B...N.F.....N.......N.......N.......N...@...N.m.D...N...O.^.N.m.E...N.=.H...N.m.J...N.Rich..N................ |
Icon Hash: | 7ae282899bbab082 |
Entrypoint: | 0x10042ae6 |
Entrypoint Section: | .text |
Digitally signed: | false |
Imagebase: | 0x10000000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE, LINE_NUMS_STRIPPED, LOCAL_SYMS_STRIPPED, 32BIT_MACHINE, DEBUG_STRIPPED, DLL |
DLL Characteristics: | |
Time Stamp: | 0x565C7C9C [Mon Nov 30 16:43:08 2015 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 4 |
OS Version Minor: | 0 |
File Version Major: | 4 |
File Version Minor: | 0 |
Subsystem Version Major: | 4 |
Subsystem Version Minor: | 0 |
Import Hash: | 1e14d607956b4cc2b9b7835c72bf0b77 |
Instruction |
---|
jmp 00007FCB388165EEh |
adc byte ptr [ebp+6E3FA254h], al |
or eax, dword ptr [esi] |
mov cl, 92h |
Programming Language: |
|
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x4fb24 | 0x68 | .rsrc |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0x3d6cc | 0x118 | .text |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0x4f000 | 0xb10 | .rsrc |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0x49000 | 0x1628 | .text |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x1000 | 0x4e000 | 0x4ca00 | b29859f73b90e7f64037da48fbee12a8 | False | 0.5888783391109299 | data | 6.394873960706557 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.rsrc | 0x4f000 | 0x2000 | 0x1e00 | a03763a40a39da37762a5efcd57a5136 | False | 0.6859375 | data | 6.354524003809639 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
.reloc | 0x51000 | 0x1000 | 0x0 | d41d8cd98f00b204e9800998ecf8427e | False | 0 | empty | 0.0 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
Name | RVA | Size | Type | Language | Country | ZLIB Complexity |
---|---|---|---|---|---|---|
RT_STRING | 0x4b000 | 0x16c | data | English | United States | 0.5521978021978022 |
RT_STRING | 0x4b170 | 0x86 | data | English | United States | 0.6417910447761194 |
RT_STRING | 0x4b1f8 | 0x56 | data | English | United States | 0.6744186046511628 |
RT_STRING | 0x4b250 | 0x16e | data | English | United States | 0.505464480874317 |
RT_STRING | 0x4b3c0 | 0x128 | data | English | United States | 0.581081081081081 |
RT_STRING | 0x4b4e8 | 0xd2 | data | English | United States | 0.5761904761904761 |
RT_STRING | 0x4b5c0 | 0x6a | data | English | United States | 0.660377358490566 |
RT_STRING | 0x4b630 | 0xc8 | Matlab v4 mat-file (little endian) b, numeric, rows 0, columns 0 | English | United States | 0.555 |
RT_STRING | 0x4b6f8 | 0x200 | data | English | United States | 0.375 |
RT_STRING | 0x4b8f8 | 0x23e | data | English | United States | 0.44773519163763065 |
RT_STRING | 0x4bb38 | 0x12e | data | English | United States | 0.4503311258278146 |
RT_STRING | 0x4bc68 | 0xca | Matlab v4 mat-file (little endian) O, numeric, rows 0, columns 0 | English | United States | 0.42574257425742573 |
RT_STRING | 0x4bd38 | 0x252 | data | English | United States | 0.39225589225589225 |
RT_STRING | 0x4bf90 | 0x28e | data | English | United States | 0.43730886850152906 |
RT_STRING | 0x4c220 | 0xce | data | English | United States | 0.4563106796116505 |
RT_STRING | 0x4c2f0 | 0x15c | Matlab v4 mat-file (little endian) a, numeric, rows 0, columns 0 | English | United States | 0.4166666666666667 |
RT_STRING | 0x4c450 | 0x398 | data | English | United States | 0.375 |
RT_STRING | 0x4c7e8 | 0x2ae | data | English | United States | 0.3688046647230321 |
RT_STRING | 0x4ca98 | 0x42 | data | English | United States | 0.4696969696969697 |
RT_STRING | 0x4cae0 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cb00 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cb20 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cb40 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cb60 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cb80 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cba0 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cbc0 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cbe0 | 0x7a | data | English | United States | 0.6475409836065574 |
RT_STRING | 0x4cc60 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cc80 | 0x20 | data | English | United States | 0.34375 |
RT_STRING | 0x4cca0 | 0x13a | Matlab v4 mat-file (little endian) ', numeric, rows 0, columns 0 | English | United States | 0.3821656050955414 |
RT_STRING | 0x4cde0 | 0x19a | data | English | United States | 0.4195121951219512 |
RT_STRING | 0x4cf80 | 0x9a | data | English | United States | 0.512987012987013 |
RT_STRING | 0x4d020 | 0xa8 | data | English | United States | 0.5833333333333334 |
RT_STRING | 0x4d0c8 | 0x20 | data | English | United States | 0.34375 |
RT_VERSION | 0x4f7f0 | 0x31c | data | English | United States | 0.4296482412060301 |
RT_HTML | 0x4d0e8 | 0x49 | HTML document, ASCII text, with CRLF line terminators | English | United States | 0.8493150684931506 |
RT_HTML | 0x4d138 | 0xd | HTML document, ASCII text, with no line terminators | English | United States | 1.3076923076923077 |
RT_HTML | 0x4d148 | 0x6be | HTML document, ASCII text, with CRLF line terminators | English | United States | 0.5179606025492468 |
DLL | Import |
---|---|
MFC42.DLL | |
MSVCRT.dll | _strcmpi |
KERNEL32.dll | CreateDirectoryA |
USER32.dll | GetDesktopWindow |
ADVAPI32.dll | RegDeleteValueA |
WS2_32.dll | htons |
SHLWAPI.dll | PathIsDirectoryA |
ole32.dll | CoUninitialize |
OLEAUT32.dll | SafeArrayGetVartype |
MSVCP60.dll | ?substr@?$basic_string@DU?$char_traits@D@std@@V?$allocator@D@2@@std@@QBE?AV12@II@Z |
NETAPI32.dll | Netbios |
KERNEL32.dll | GetModuleFileNameW |
KERNEL32.dll | GetModuleHandleA, LoadLibraryA, LocalAlloc, LocalFree, GetModuleFileNameA, ExitProcess |
Name | Ordinal | Address |
---|---|---|
DoAddToFavDlg | 1 | 0x10008645 |
InputFile | 2 | 0x1000678b |
PrintFile | 3 | 0x1000443d |
Language of compilation system | Country where language is spoken | Map |
---|---|---|
English | United States |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-12-19T15:33:39.327074+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49718 | 107.160.131.253 | 18659 | TCP |
2024-12-19T15:33:39.327074+0100 | 2812407 | ETPRO MALWARE Win32/Venik HTTP CnC Beacon | 1 | 192.168.2.5 | 49718 | 107.160.131.253 | 18659 | TCP |
2024-12-19T15:33:45.397452+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49719 | 107.163.56.110 | 18530 | TCP |
2024-12-19T15:33:45.397574+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49792 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:45.397604+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49794 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:49.117775+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49832 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:33:49.522293+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49814 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:49.522365+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49815 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:53.576110+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49859 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:53.576147+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49860 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:33:53.576176+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49857 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:56.329824+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49899 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:33:57.708282+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49900 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:33:57.708363+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49897 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:01.922280+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49943 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:01.922308+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49944 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:01.922315+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49938 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:03.882293+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49983 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:05.938341+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49982 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:05.938912+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49980 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:07.901128+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50029 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:09.938157+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50028 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:09.938193+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50026 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:11.998149+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50073 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:14.078380+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50072 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:14.078461+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50074 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:16.124537+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50124 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:18.094296+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50123 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:18.094296+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50121 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:20.060517+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50169 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:22.219354+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50166 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:22.219408+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50168 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:26.235546+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50211 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:26.235588+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50210 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:26.235589+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50208 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:28.300492+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50261 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:30.260068+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50256 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:30.260102+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50260 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:32.273166+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50312 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:34.390927+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50311 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:34.391007+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50308 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:37.014304+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50373 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:38.517665+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50374 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:38.518078+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50371 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:40.492801+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50442 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:42.517559+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50443 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:42.517591+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50436 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:44.460965+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50514 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:46.532733+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50515 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:46.532789+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50510 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:50.548185+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50597 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:50.548218+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50599 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:50.548231+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50600 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:54.563154+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50694 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:34:54.563201+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50690 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:54.563221+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50692 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:58.581718+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50815 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:58.581765+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50820 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:34:58.581797+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50821 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:00.531712+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50968 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:02.594584+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50967 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:02.594994+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50962 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:04.602169+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51159 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:06.840239+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51158 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:06.840273+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51148 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:08.945512+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51338 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:10.989053+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51331 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:10.989135+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51337 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:13.774372+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51564 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:15.141197+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51553 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:15.141198+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51561 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:17.090682+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51811 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:19.164022+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51803 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:19.164053+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51810 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:22.454987+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 53337 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:23.313500+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52999 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:23.313524+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52806 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:25.922944+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 55397 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:27.461328+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55398 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:27.461551+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55399 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:29.752186+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 58026 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:31.719758+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 58021 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:31.721035+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 58024 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:35.720361+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 59600 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:35.720398+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 59713 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:35.720432+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 59752 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:37.694973+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 62269 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:39.876631+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62271 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:39.876738+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62270 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:39.876748+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 64965 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:41.869054+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 65117 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:44.001026+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 65081 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:44.001126+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 65116 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:45.970804+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51145 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:48.126628+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51043 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:48.126659+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51144 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:50.736803+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 53691 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:52.142027+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 53692 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:52.142064+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 53634 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:56.157102+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 55835 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:35:56.157493+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55836 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:56.157932+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55778 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:35:58.175529+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 58043 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:00.173328+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 58045 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:00.173372+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 57965 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:03.560201+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 61064 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:04.297888+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 60319 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:04.297917+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 60345 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:08.443719+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 62823 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:08.443784+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62825 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:08.443812+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62729 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:11.079166+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 49190 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:12.579717+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49177 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:12.579718+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 49188 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:14.682367+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51417 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:16.595175+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51340 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:16.595345+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 51418 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:20.614467+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 52994 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:20.614490+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52993 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:20.614529+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52889 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:24.626516+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55567 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:24.626567+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 55602 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:24.626595+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 55604 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:26.715575+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 57901 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:28.642235+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 57794 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:28.642269+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 57903 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:30.697075+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 60362 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:32.676772+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 60361 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:32.676811+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 60254 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:36.083749+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62635 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:36.083794+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62667 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:36.083800+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 63422 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:38.041832+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 64310 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:40.204175+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 64311 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:40.204221+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 64313 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:42.322679+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 50407 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:44.220151+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50408 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:44.220250+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50290 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:47.818287+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 53368 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:48.433843+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52832 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:48.433898+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52878 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:50.547672+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 54824 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:52.594920+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 54823 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:52.595139+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 54804 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:54.669045+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 56892 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:36:56.749020+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 56890 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:56.749142+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 56893 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:36:58.732633+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 59314 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:00.876747+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 59231 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:00.876781+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 59313 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:04.474074+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 62377 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:05.001203+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 62045 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:05.001270+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 61952 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:06.983025+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 63810 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:07.518667+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 63790 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:07.518717+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 63809 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:09.575587+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 64717 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:11.642377+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 64715 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:11.642579+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 64718 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:15.635195+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 51632 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:15.818984+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50608 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:15.819027+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 50543 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:18.875742+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 52689 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:20.197833+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52688 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:20.197840+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 52686 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:22.180429+0100 | 2803274 | ETPRO MALWARE Common Downloader Header Pattern UH | 2 | 192.168.2.5 | 53533 | 116.133.8.92 | 80 | TCP |
2024-12-19T15:37:42.238712+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 53487 | 107.160.131.254 | 23588 | TCP |
2024-12-19T15:37:42.379327+0100 | 2803270 | ETPRO MALWARE Common Downloader Header Pattern UHCa | 2 | 192.168.2.5 | 53534 | 107.160.131.254 | 23588 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 19, 2024 15:33:17.311587095 CET | 49718 | 18659 | 192.168.2.5 | 107.160.131.253 |
Dec 19, 2024 15:33:17.314383984 CET | 49719 | 18530 | 192.168.2.5 | 107.163.56.110 |
Dec 19, 2024 15:33:17.431797028 CET | 18659 | 49718 | 107.160.131.253 | 192.168.2.5 |
Dec 19, 2024 15:33:17.431909084 CET | 49718 | 18659 | 192.168.2.5 | 107.160.131.253 |
Dec 19, 2024 15:33:17.434139013 CET | 18530 | 49719 | 107.163.56.110 | 192.168.2.5 |
Dec 19, 2024 15:33:17.434204102 CET | 49719 | 18530 | 192.168.2.5 | 107.163.56.110 |
Dec 19, 2024 15:33:17.452064037 CET | 49718 | 18659 | 192.168.2.5 | 107.160.131.253 |
Dec 19, 2024 15:33:17.452320099 CET | 49719 | 18530 | 192.168.2.5 | 107.163.56.110 |
Dec 19, 2024 15:33:17.572823048 CET | 18659 | 49718 | 107.160.131.253 | 192.168.2.5 |
Dec 19, 2024 15:33:17.572840929 CET | 18530 | 49719 | 107.163.56.110 | 192.168.2.5 |
Dec 19, 2024 15:33:39.327002048 CET | 18659 | 49718 | 107.160.131.253 | 192.168.2.5 |
Dec 19, 2024 15:33:39.327074051 CET | 49718 | 18659 | 192.168.2.5 | 107.160.131.253 |
Dec 19, 2024 15:33:39.327195883 CET | 49718 | 18659 | 192.168.2.5 | 107.160.131.253 |
Dec 19, 2024 15:33:39.446753025 CET | 18659 | 49718 | 107.160.131.253 | 192.168.2.5 |
Dec 19, 2024 15:33:43.463710070 CET | 49792 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.464024067 CET | 49794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.585283041 CET | 23588 | 49792 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:43.585299969 CET | 23588 | 49794 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:43.585403919 CET | 49792 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.586337090 CET | 49794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.586338043 CET | 49792 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.586730957 CET | 49794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:43.705818892 CET | 23588 | 49792 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:43.706259966 CET | 23588 | 49794 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:45.397452116 CET | 49719 | 18530 | 192.168.2.5 | 107.163.56.110 |
Dec 19, 2024 15:33:45.397573948 CET | 49792 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.397603989 CET | 49794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.510092974 CET | 49814 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.512221098 CET | 49815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.629632950 CET | 23588 | 49814 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:45.629745960 CET | 49814 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.629937887 CET | 49814 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.631709099 CET | 23588 | 49815 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:45.631800890 CET | 49815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.631921053 CET | 49815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:45.749365091 CET | 23588 | 49814 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:45.751348972 CET | 23588 | 49815 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:47.271791935 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:47.391330957 CET | 80 | 49832 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:47.391438007 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:47.392971039 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:47.512815952 CET | 80 | 49832 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.117685080 CET | 80 | 49832 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.117774963 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.122260094 CET | 49853 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.122313976 CET | 443 | 49853 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.122445107 CET | 49853 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.134360075 CET | 49853 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.134375095 CET | 443 | 49853 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.522027969 CET | 49853 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.522293091 CET | 49814 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.522365093 CET | 49815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.554570913 CET | 49857 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.667277098 CET | 49859 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.673451900 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.674576044 CET | 49860 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.676637888 CET | 23588 | 49857 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:49.676724911 CET | 49857 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.679462910 CET | 49857 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.786819935 CET | 23588 | 49859 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:49.788395882 CET | 49859 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.793386936 CET | 80 | 49832 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.794222116 CET | 80 | 49860 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:49.794333935 CET | 49832 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.794390917 CET | 49860 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:49.799171925 CET | 23588 | 49857 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:49.928164005 CET | 49859 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:49.928282976 CET | 49860 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:50.047926903 CET | 23588 | 49859 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:50.047943115 CET | 80 | 49860 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:53.576109886 CET | 49859 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.576147079 CET | 49860 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:53.576175928 CET | 49857 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.577049017 CET | 49897 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.696676970 CET | 23588 | 49897 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:53.696827888 CET | 49897 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.697033882 CET | 49897 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.697571993 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:53.698081970 CET | 49900 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.816778898 CET | 23588 | 49897 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:53.817189932 CET | 80 | 49899 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:53.817297935 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:53.817512035 CET | 23588 | 49900 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:53.817563057 CET | 49900 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.818470955 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:53.818614960 CET | 49900 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:53.938096046 CET | 80 | 49899 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:53.938267946 CET | 23588 | 49900 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:56.329720974 CET | 80 | 49899 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:56.329823971 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:56.337495089 CET | 49924 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:56.337547064 CET | 443 | 49924 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:56.338136911 CET | 49924 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:56.338136911 CET | 49924 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:56.338171005 CET | 443 | 49924 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:57.708281994 CET | 49900 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:57.708319902 CET | 49924 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:57.708363056 CET | 49897 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:57.710704088 CET | 49938 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:57.830934048 CET | 23588 | 49938 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:57.831105947 CET | 49938 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:57.912029982 CET | 49938 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:58.031501055 CET | 23588 | 49938 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:58.054681063 CET | 49943 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:58.054883003 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:58.055083990 CET | 49944 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:58.176608086 CET | 23588 | 49943 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:58.176624060 CET | 80 | 49944 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:58.177007914 CET | 49944 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:58.177011967 CET | 49943 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:58.177066088 CET | 49943 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:33:58.177181959 CET | 49944 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:58.178617954 CET | 80 | 49899 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:33:58.178695917 CET | 49899 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:33:58.296785116 CET | 23588 | 49943 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:33:58.296859026 CET | 80 | 49944 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:01.922280073 CET | 49943 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:01.922307968 CET | 49944 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:01.922314882 CET | 49938 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:01.922878981 CET | 49980 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.036874056 CET | 49982 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.039093971 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:02.044032097 CET | 23588 | 49980 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:02.044136047 CET | 49980 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.044260025 CET | 49980 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.156893015 CET | 23588 | 49982 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:02.158396006 CET | 49982 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.158725023 CET | 49982 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:02.158845901 CET | 80 | 49983 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:02.158909082 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:02.159209013 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:02.163862944 CET | 23588 | 49980 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:02.279158115 CET | 23588 | 49982 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:02.280193090 CET | 80 | 49983 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:03.882188082 CET | 80 | 49983 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:03.882292986 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:03.885150909 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:03.885200024 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:03.885324955 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:03.885705948 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:03.885720968 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.747549057 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.747739077 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.748351097 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.748497009 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.880836010 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.880847931 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.881215096 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.881376982 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.883748055 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.931324005 CET | 443 | 50003 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:05.938340902 CET | 49982 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:05.938911915 CET | 49980 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:05.939052105 CET | 50003 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:05.940932989 CET | 50026 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.049819946 CET | 50028 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.062155008 CET | 23588 | 50026 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:06.062333107 CET | 50026 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.062958956 CET | 50026 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.065253973 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:06.065603971 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:06.170017958 CET | 23588 | 50028 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:06.170192957 CET | 50028 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.170423985 CET | 50028 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:06.182923079 CET | 23588 | 50026 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:06.185122967 CET | 80 | 50029 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:06.185198069 CET | 80 | 49983 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:06.185333014 CET | 49983 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:06.185336113 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:06.185621977 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:06.291354895 CET | 23588 | 50028 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:06.308163881 CET | 80 | 50029 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:07.900721073 CET | 80 | 50029 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:07.901128054 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:08.038758039 CET | 50049 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:08.038814068 CET | 443 | 50049 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:08.039057970 CET | 50049 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:08.039566994 CET | 50049 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:08.039578915 CET | 443 | 50049 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:09.938157082 CET | 50028 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:09.938193083 CET | 50026 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:09.938216925 CET | 50049 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:09.939081907 CET | 50072 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.058772087 CET | 23588 | 50072 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:10.058870077 CET | 50072 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.077888966 CET | 50072 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.090518951 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:10.090868950 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:10.104247093 CET | 50074 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.197490931 CET | 23588 | 50072 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:10.210580111 CET | 80 | 50073 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:10.210716963 CET | 80 | 50029 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:10.210726976 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:10.210797071 CET | 50029 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:10.211318970 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:10.224056005 CET | 23588 | 50074 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:10.224257946 CET | 50074 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.224524975 CET | 50074 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:10.330856085 CET | 80 | 50073 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:10.344093084 CET | 23588 | 50074 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:11.998063087 CET | 80 | 50073 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:11.998148918 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:12.001326084 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:12.001368999 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:12.001485109 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:12.001820087 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:12.001832008 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:13.951936960 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:13.952047110 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:13.952752113 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:13.952811956 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:13.959856033 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:13.959867954 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:13.960139036 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:13.960187912 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:13.965804100 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.007333994 CET | 443 | 50097 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:14.078380108 CET | 50072 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.078460932 CET | 50074 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.078495026 CET | 50097 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.081377983 CET | 50121 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.193711042 CET | 50123 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.201488018 CET | 23588 | 50121 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:14.204520941 CET | 50121 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.206903934 CET | 50121 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.208775997 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.208782911 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.313298941 CET | 23588 | 50123 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:14.313465118 CET | 50123 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.320843935 CET | 50123 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:14.326488972 CET | 23588 | 50121 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:14.328382969 CET | 80 | 50124 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:14.328471899 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.328800917 CET | 80 | 50073 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:14.328912973 CET | 50073 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.329119921 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:14.440408945 CET | 23588 | 50123 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:14.448537111 CET | 80 | 50124 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:16.124452114 CET | 80 | 50124 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:16.124536991 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:16.129477978 CET | 50147 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:16.129528046 CET | 443 | 50147 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:16.129622936 CET | 50147 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:16.129914045 CET | 50147 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:16.129925966 CET | 443 | 50147 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:18.094275951 CET | 50147 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.094295979 CET | 50121 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.094295979 CET | 50123 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.097434998 CET | 50166 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.218064070 CET | 23588 | 50166 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:18.218162060 CET | 50166 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.218353033 CET | 50166 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.227597952 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.228080988 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.228084087 CET | 50168 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.337897062 CET | 23588 | 50166 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:18.347901106 CET | 80 | 50124 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:18.347913980 CET | 23588 | 50168 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:18.348072052 CET | 50124 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.348078966 CET | 50168 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.348092079 CET | 80 | 50169 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:18.348443031 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.348444939 CET | 50168 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:18.348536015 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:18.468226910 CET | 23588 | 50168 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:18.468430042 CET | 80 | 50169 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:20.060470104 CET | 80 | 50169 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:20.060517073 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:20.070276022 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:20.070319891 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:20.070408106 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:20.071053028 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:20.071069956 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.025418043 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.025629044 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.026194096 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.026312113 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.042177916 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.042186975 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.042542934 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.042707920 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.043036938 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.083328962 CET | 443 | 50187 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.219353914 CET | 50166 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.219408035 CET | 50168 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.220726013 CET | 50187 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.220727921 CET | 50208 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.332731962 CET | 50210 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.340567112 CET | 23588 | 50208 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:22.340701103 CET | 50208 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.340991974 CET | 50208 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.346349955 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.346750021 CET | 50211 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.452666044 CET | 23588 | 50210 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:22.452857018 CET | 50210 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.453018904 CET | 50210 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:22.460421085 CET | 23588 | 50208 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:22.466293097 CET | 80 | 50211 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.466387987 CET | 50211 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.466522932 CET | 80 | 50169 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:22.466999054 CET | 50169 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.470470905 CET | 50211 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:22.573014975 CET | 23588 | 50210 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:22.591110945 CET | 80 | 50211 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:26.235546112 CET | 50211 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:26.235588074 CET | 50210 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.235589027 CET | 50208 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.241360903 CET | 50256 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.350404978 CET | 50260 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.350744963 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:26.361016989 CET | 23588 | 50256 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:26.361135006 CET | 50256 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.361413002 CET | 50256 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.470257998 CET | 23588 | 50260 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:26.470361948 CET | 80 | 50261 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:26.470391989 CET | 50260 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.470427990 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:26.470549107 CET | 50260 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:26.470716953 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:26.480865955 CET | 23588 | 50256 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:26.590111971 CET | 23588 | 50260 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:26.590503931 CET | 80 | 50261 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:28.300256968 CET | 80 | 50261 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:28.300492048 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:28.306432009 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:28.306478024 CET | 443 | 50283 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:28.306598902 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:28.306951046 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:28.306962013 CET | 443 | 50283 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.136132956 CET | 443 | 50283 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.136307955 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.137195110 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.137219906 CET | 443 | 50283 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.138678074 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.138689995 CET | 443 | 50283 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.260067940 CET | 50256 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.260102034 CET | 50283 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.260102034 CET | 50260 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.260580063 CET | 50308 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.380490065 CET | 23588 | 50308 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:30.380790949 CET | 50308 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.385987997 CET | 50308 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.386729002 CET | 50311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.395463943 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.395792961 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.505877018 CET | 23588 | 50308 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:30.506545067 CET | 23588 | 50311 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:30.506643057 CET | 50311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.507567883 CET | 50311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:30.515300035 CET | 80 | 50312 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.515507936 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.515584946 CET | 80 | 50261 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.515641928 CET | 50261 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.517781973 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.875124931 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:30.909631968 CET | 23588 | 50311 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:30.910878897 CET | 80 | 50312 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:30.995884895 CET | 80 | 50312 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:32.273067951 CET | 80 | 50312 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:32.273165941 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:32.277895927 CET | 50340 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:32.277932882 CET | 443 | 50340 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:32.278001070 CET | 50340 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:32.278455019 CET | 50340 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:32.278465986 CET | 443 | 50340 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:34.390927076 CET | 50311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.390974045 CET | 50340 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.391006947 CET | 50308 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.391513109 CET | 50371 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.511305094 CET | 23588 | 50371 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:34.511435986 CET | 50371 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.511729002 CET | 50371 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.527345896 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.527693987 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.529189110 CET | 50374 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.631195068 CET | 23588 | 50371 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:34.647183895 CET | 80 | 50312 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:34.647249937 CET | 50312 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.647612095 CET | 80 | 50373 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:34.647705078 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.648057938 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:34.648636103 CET | 23588 | 50374 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:34.648694992 CET | 50374 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.649018049 CET | 50374 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:34.767564058 CET | 80 | 50373 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:34.768763065 CET | 23588 | 50374 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:37.014148951 CET | 80 | 50373 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:37.014303923 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:37.030194998 CET | 50412 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:37.030230045 CET | 443 | 50412 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:37.030307055 CET | 50412 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:37.030653954 CET | 50412 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:37.030672073 CET | 443 | 50412 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:38.517664909 CET | 50374 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.518078089 CET | 50371 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.518102884 CET | 50412 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.518321037 CET | 50436 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.629987955 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.630208969 CET | 50443 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.630565882 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.637806892 CET | 23588 | 50436 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:38.641005993 CET | 50436 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.644294977 CET | 50436 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.749500036 CET | 80 | 50442 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:38.749639034 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.749670029 CET | 23588 | 50443 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:38.749733925 CET | 50443 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.750360012 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.750380993 CET | 80 | 50373 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:38.750523090 CET | 50373 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:38.750665903 CET | 50443 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:38.766803026 CET | 23588 | 50436 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:38.869982004 CET | 80 | 50442 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:38.870385885 CET | 23588 | 50443 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:40.492660999 CET | 80 | 50442 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:40.492800951 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:40.495779991 CET | 50470 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:40.495816946 CET | 443 | 50470 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:40.496042013 CET | 50470 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:40.496416092 CET | 50470 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:40.496424913 CET | 443 | 50470 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:42.517534971 CET | 50470 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.517559052 CET | 50443 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.517591000 CET | 50436 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.518126965 CET | 50510 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.630270958 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.630570889 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.631206989 CET | 50515 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.637681961 CET | 23588 | 50510 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:42.637782097 CET | 50510 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.637887955 CET | 50510 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.751080036 CET | 80 | 50514 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:42.751173019 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.751281977 CET | 80 | 50442 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:42.751359940 CET | 50442 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.751437902 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:42.751553059 CET | 23588 | 50515 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:42.751626015 CET | 50515 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.751759052 CET | 50515 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:42.757447004 CET | 23588 | 50510 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:42.870965958 CET | 80 | 50514 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:42.871200085 CET | 23588 | 50515 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:44.460810900 CET | 80 | 50514 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:44.460964918 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:44.464056015 CET | 50555 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:44.464095116 CET | 443 | 50555 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:44.464175940 CET | 50555 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:44.464451075 CET | 50555 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:44.464468956 CET | 443 | 50555 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:46.532641888 CET | 50555 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.532732964 CET | 50515 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.532788992 CET | 50510 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.536479950 CET | 50597 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.651813030 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.652117968 CET | 50599 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.652461052 CET | 50600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.947802067 CET | 23588 | 50597 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:46.947967052 CET | 50597 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.948132992 CET | 80 | 50599 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:46.948146105 CET | 23588 | 50600 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:46.948156118 CET | 80 | 50514 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:46.948210001 CET | 50599 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.948242903 CET | 50597 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.948242903 CET | 50514 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.948416948 CET | 50600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:46.948417902 CET | 50599 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:46.948545933 CET | 50600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:47.067919970 CET | 23588 | 50597 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:47.067945004 CET | 80 | 50599 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:47.068089008 CET | 23588 | 50600 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:50.548185110 CET | 50597 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.548218012 CET | 50599 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:50.548230886 CET | 50600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.557184935 CET | 50690 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.609566927 CET | 80 | 50599 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:50.609802008 CET | 50599 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:50.663269997 CET | 50692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.677073956 CET | 23588 | 50690 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:50.677365065 CET | 50690 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.678339005 CET | 50694 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:50.678437948 CET | 50690 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.782994986 CET | 23588 | 50692 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:50.783108950 CET | 50692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.783268929 CET | 50692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:50.798013926 CET | 80 | 50694 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:50.798029900 CET | 23588 | 50690 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:50.798099995 CET | 50694 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:50.801126957 CET | 50694 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:50.903683901 CET | 23588 | 50692 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:50.920877934 CET | 80 | 50694 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:54.563153982 CET | 50694 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:54.563200951 CET | 50690 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.563220978 CET | 50692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.563935041 CET | 50815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.678380013 CET | 50820 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.678817987 CET | 50821 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:54.684781075 CET | 23588 | 50815 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:54.686794043 CET | 50815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.687002897 CET | 50815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.797991991 CET | 23588 | 50820 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:54.798434019 CET | 80 | 50821 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:54.798544884 CET | 50821 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:54.798547983 CET | 50820 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.800615072 CET | 50820 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:54.800981998 CET | 50821 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:54.809895992 CET | 23588 | 50815 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:54.922805071 CET | 23588 | 50820 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:54.922821999 CET | 80 | 50821 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:58.581717968 CET | 50815 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.581764936 CET | 50820 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.581796885 CET | 50821 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:58.583077908 CET | 50962 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.693402052 CET | 50967 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.693924904 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:58.703469992 CET | 23588 | 50962 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:58.703607082 CET | 50962 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.704050064 CET | 50962 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.813803911 CET | 23588 | 50967 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:58.813899994 CET | 50967 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.814078093 CET | 50967 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:34:58.814122915 CET | 80 | 50968 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:34:58.814188004 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:58.815144062 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:34:58.823498964 CET | 23588 | 50962 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:58.934042931 CET | 23588 | 50967 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:34:58.934865952 CET | 80 | 50968 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:00.530720949 CET | 80 | 50968 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:00.531712055 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:00.535295963 CET | 51059 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:00.535353899 CET | 443 | 51059 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:00.535453081 CET | 51059 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:00.535741091 CET | 51059 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:00.535749912 CET | 443 | 51059 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:02.594583988 CET | 50967 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.594635010 CET | 51059 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.594994068 CET | 50962 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.595679045 CET | 51148 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.715390921 CET | 23588 | 51148 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:02.716872931 CET | 51148 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.731898069 CET | 51148 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.738590002 CET | 51158 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.738789082 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.739025116 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.851521015 CET | 23588 | 51148 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:02.858290911 CET | 23588 | 51158 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:02.858378887 CET | 51158 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.858628035 CET | 51158 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:02.858633041 CET | 80 | 51159 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:02.858691931 CET | 80 | 50968 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:02.858716011 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.858772993 CET | 50968 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.858999014 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:02.978295088 CET | 23588 | 51158 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:02.978580952 CET | 80 | 51159 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:04.602087975 CET | 80 | 51159 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:04.602169037 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:04.604891062 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:04.604921103 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:04.605026007 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:04.605451107 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:04.605463982 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.447083950 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.447204113 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.447870016 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.447940111 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.496733904 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.496746063 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.497036934 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.498584032 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.498965025 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.543332100 CET | 443 | 51237 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:06.840169907 CET | 51237 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:06.840239048 CET | 51158 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:06.840272903 CET | 51148 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:06.860713005 CET | 51331 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:06.980247021 CET | 23588 | 51331 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:06.980344057 CET | 51331 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:06.982213974 CET | 51331 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:06.995687008 CET | 51337 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:07.001236916 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:07.001550913 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:07.103698969 CET | 23588 | 51331 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:07.115890980 CET | 23588 | 51337 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:07.115978956 CET | 51337 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:07.116161108 CET | 51337 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:07.121519089 CET | 80 | 51159 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:07.121552944 CET | 80 | 51338 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:07.121594906 CET | 51159 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:07.121643066 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:07.122026920 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:07.235805035 CET | 23588 | 51337 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:07.241835117 CET | 80 | 51338 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:08.941135883 CET | 80 | 51338 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:08.945512056 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:08.948713064 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:08.948765993 CET | 443 | 51452 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:08.948843956 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:08.949378014 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:08.949398994 CET | 443 | 51452 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:10.856441021 CET | 443 | 51452 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:10.856623888 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:10.859755993 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:10.859764099 CET | 443 | 51452 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:10.870928049 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:10.870938063 CET | 443 | 51452 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:10.989053011 CET | 51331 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:10.989083052 CET | 51452 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:10.989135027 CET | 51337 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.003825903 CET | 51553 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.123553038 CET | 23588 | 51553 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:11.123694897 CET | 51553 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.125632048 CET | 51553 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.128261089 CET | 51561 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.144340038 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:11.144535065 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:11.245127916 CET | 23588 | 51553 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:11.247829914 CET | 23588 | 51561 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:11.247910023 CET | 51561 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.248106956 CET | 51561 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:11.264100075 CET | 80 | 51564 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:11.264192104 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:11.264411926 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:11.264472961 CET | 80 | 51338 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:11.264534950 CET | 51338 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:11.368402004 CET | 23588 | 51561 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:11.383941889 CET | 80 | 51564 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:13.774283886 CET | 80 | 51564 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:13.774372101 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:13.777081966 CET | 51728 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:13.777131081 CET | 443 | 51728 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:13.777195930 CET | 51728 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:13.777592897 CET | 51728 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:13.777606010 CET | 443 | 51728 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:15.141197920 CET | 51561 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.141196966 CET | 51553 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.141298056 CET | 51728 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.142623901 CET | 51803 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.258821964 CET | 51810 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.259609938 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.259740114 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.262473106 CET | 23588 | 51803 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:15.262917042 CET | 51803 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.263513088 CET | 51803 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.378426075 CET | 23588 | 51810 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:15.378658056 CET | 51810 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.378885984 CET | 51810 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:15.380422115 CET | 80 | 51564 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:15.380507946 CET | 80 | 51811 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:15.380608082 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.380614996 CET | 51564 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.380764008 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:15.383369923 CET | 23588 | 51803 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:15.498577118 CET | 23588 | 51810 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:15.500233889 CET | 80 | 51811 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:17.090538979 CET | 80 | 51811 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:17.090682030 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:17.093458891 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:17.093518019 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:17.093602896 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:17.094065905 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:17.094080925 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.009970903 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.010210991 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.011184931 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.011362076 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.015794039 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.015925884 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.016160011 CET | 443 | 51920 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.016170025 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.016259909 CET | 51920 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.138020992 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.138422966 CET | 52787 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.164021969 CET | 51803 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.164052963 CET | 51810 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.185252905 CET | 52806 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.258348942 CET | 80 | 51811 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.258371115 CET | 80 | 52787 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:19.258497000 CET | 52787 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.258497000 CET | 51811 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:19.304970026 CET | 23588 | 52806 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:19.305274010 CET | 52806 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.306094885 CET | 52806 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.425806046 CET | 23588 | 52806 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:19.444818020 CET | 52999 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.564855099 CET | 23588 | 52999 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:19.564924002 CET | 52999 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.565332890 CET | 52999 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:19.685025930 CET | 23588 | 52999 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:20.523658037 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:20.643254995 CET | 80 | 53337 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:20.643739939 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:20.644289017 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:20.763947964 CET | 80 | 53337 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:22.454828978 CET | 80 | 53337 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:22.454987049 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:22.460525990 CET | 54702 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:22.460572958 CET | 443 | 54702 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:22.461080074 CET | 54702 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:22.461674929 CET | 54702 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:22.461687088 CET | 443 | 54702 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:23.313436031 CET | 54702 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.313499928 CET | 52999 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.313524008 CET | 52806 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.430435896 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.430905104 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.432411909 CET | 55398 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.434164047 CET | 55399 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.550497055 CET | 80 | 53337 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:23.550523996 CET | 80 | 55397 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:23.550623894 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.550692081 CET | 53337 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.551124096 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:23.551959991 CET | 23588 | 55398 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:23.552031040 CET | 55398 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.553046942 CET | 55398 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.553695917 CET | 23588 | 55399 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:23.553793907 CET | 55399 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.554677963 CET | 55399 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:23.670643091 CET | 80 | 55397 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:23.672646999 CET | 23588 | 55398 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:23.674231052 CET | 23588 | 55399 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:25.922816992 CET | 80 | 55397 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:25.922944069 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:25.926748037 CET | 57096 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:25.926798105 CET | 443 | 57096 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:25.926875114 CET | 57096 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:25.927495956 CET | 57096 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:25.927506924 CET | 443 | 57096 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:27.461329937 CET | 57096 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:27.461328030 CET | 55398 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.461550951 CET | 55399 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.501353025 CET | 58021 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.620912075 CET | 23588 | 58021 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:27.622127056 CET | 58021 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.710355997 CET | 58021 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.830426931 CET | 23588 | 58021 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:27.905195951 CET | 58024 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:27.916533947 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:27.916809082 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:28.025177956 CET | 23588 | 58024 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:28.025322914 CET | 58024 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:28.026566982 CET | 58024 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:28.036583900 CET | 80 | 58026 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:28.036695004 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:28.036807060 CET | 80 | 55397 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:28.036859989 CET | 55397 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:28.037859917 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:28.148428917 CET | 23588 | 58024 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:28.159456968 CET | 80 | 58026 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:29.752093077 CET | 80 | 58026 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:29.752186060 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:29.755779982 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:29.755819082 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:29.756156921 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:29.757170916 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:29.757186890 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.688205957 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.688324928 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.688971996 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.689040899 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.695468903 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.695522070 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.695658922 CET | 443 | 58988 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.695719004 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.695734978 CET | 58988 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.719758034 CET | 58021 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.721035004 CET | 58024 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.721695900 CET | 59600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.801673889 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.802018881 CET | 59713 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.833228111 CET | 59752 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.841254950 CET | 23588 | 59600 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:31.841353893 CET | 59600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.848117113 CET | 59600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.921796083 CET | 80 | 58026 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.921878099 CET | 58026 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.922040939 CET | 80 | 59713 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:31.922111034 CET | 59713 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.922398090 CET | 59713 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:31.953043938 CET | 23588 | 59752 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:31.953161955 CET | 59752 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.957998037 CET | 59752 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:31.968170881 CET | 23588 | 59600 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:32.042041063 CET | 80 | 59713 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:32.117322922 CET | 23588 | 59752 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:35.720360994 CET | 59600 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.720397949 CET | 59713 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:35.720432043 CET | 59752 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.866182089 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:35.870547056 CET | 62270 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.871103048 CET | 62271 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.986215115 CET | 80 | 62269 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:35.986401081 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:35.986850977 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:35.990221977 CET | 23588 | 62270 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:35.990401983 CET | 62270 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.990593910 CET | 23588 | 62271 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:35.990658998 CET | 62271 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.990951061 CET | 62270 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:35.991053104 CET | 62271 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:36.107388020 CET | 80 | 62269 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:36.111192942 CET | 23588 | 62270 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:36.111432076 CET | 23588 | 62271 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:37.694819927 CET | 80 | 62269 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:37.694972992 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:37.700510979 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:37.700556993 CET | 443 | 63631 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:37.701850891 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:37.706454992 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:37.706475019 CET | 443 | 63631 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.537983894 CET | 443 | 63631 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.538100004 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.538764954 CET | 443 | 63631 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.538816929 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.542222977 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.542273045 CET | 443 | 63631 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.542332888 CET | 63631 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.667752981 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.668077946 CET | 64965 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.787640095 CET | 80 | 64965 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.787807941 CET | 64965 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.787906885 CET | 80 | 62269 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.787976027 CET | 62269 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.807642937 CET | 64965 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.876631021 CET | 62271 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:39.876738071 CET | 62270 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:39.876748085 CET | 64965 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.878318071 CET | 65081 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:39.927218914 CET | 80 | 64965 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:39.927309036 CET | 64965 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:39.997965097 CET | 23588 | 65081 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:39.998059988 CET | 65081 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:40.000137091 CET | 65081 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:40.006258011 CET | 65116 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:40.006474972 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:40.119616032 CET | 23588 | 65081 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:40.125890017 CET | 23588 | 65116 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:40.125972033 CET | 65116 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:40.126130104 CET | 80 | 65117 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:40.126182079 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:40.126209974 CET | 65116 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:40.127289057 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:40.245693922 CET | 23588 | 65116 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:40.246737957 CET | 80 | 65117 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:41.868916035 CET | 80 | 65117 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:41.869054079 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:41.872927904 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:41.872982979 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:41.873130083 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:41.875755072 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:41.875775099 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:43.790210009 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:43.790416956 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.791042089 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:43.792072058 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.794882059 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.794989109 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:43.795186996 CET | 443 | 49565 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:43.795280933 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.795280933 CET | 49565 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.913980961 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:43.914546967 CET | 50982 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.001025915 CET | 65081 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.001126051 CET | 65116 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.002007961 CET | 51043 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.034140110 CET | 80 | 65117 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:44.034200907 CET | 80 | 50982 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:44.034282923 CET | 65117 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.034282923 CET | 50982 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.121773005 CET | 23588 | 51043 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:44.121948957 CET | 51043 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.125111103 CET | 51043 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.130376101 CET | 51144 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.130616903 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.244841099 CET | 23588 | 51043 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:44.250072956 CET | 23588 | 51144 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:44.250202894 CET | 80 | 51145 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:44.250245094 CET | 51144 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.250391960 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.251338005 CET | 51144 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:44.251538038 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:44.371032000 CET | 23588 | 51144 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:44.371104956 CET | 80 | 51145 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:45.970633984 CET | 80 | 51145 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:45.970803976 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:45.974230051 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:45.974284887 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:45.974694967 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:45.975476027 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:45.975506067 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:47.888400078 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:47.891004086 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:47.891031027 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:47.891164064 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:47.896639109 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:47.896689892 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:47.896843910 CET | 443 | 52236 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:47.896851063 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:47.897304058 CET | 52236 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.006623983 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.006629944 CET | 53517 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.126585960 CET | 80 | 53517 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:48.126627922 CET | 51043 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.126658916 CET | 51144 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.126804113 CET | 53517 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.128179073 CET | 80 | 51145 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:48.128493071 CET | 53634 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.128675938 CET | 51145 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.244643927 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.244643927 CET | 53692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.248260021 CET | 23588 | 53634 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:48.248589039 CET | 53634 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.248791933 CET | 53634 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.364942074 CET | 80 | 53691 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:48.364957094 CET | 23588 | 53692 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:48.365432024 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.365432024 CET | 53692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.365900993 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:48.365900993 CET | 53692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:48.368541002 CET | 23588 | 53634 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:48.485527039 CET | 80 | 53691 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:48.485543013 CET | 23588 | 53692 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:50.736736059 CET | 80 | 53691 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:50.736803055 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:50.742377996 CET | 55188 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:50.742444038 CET | 443 | 55188 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:50.742505074 CET | 55188 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:50.743793964 CET | 55188 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:50.743807077 CET | 443 | 55188 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:52.142026901 CET | 53692 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.142064095 CET | 53634 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.142064095 CET | 55188 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.143754005 CET | 55778 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.258543968 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.259047985 CET | 55835 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.261440992 CET | 55836 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.263353109 CET | 23588 | 55778 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:52.263751984 CET | 55778 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.264977932 CET | 55778 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.378998995 CET | 80 | 55835 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:52.379020929 CET | 80 | 53691 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:52.379162073 CET | 55835 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.379164934 CET | 53691 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.381361008 CET | 23588 | 55836 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:52.381707907 CET | 55836 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.384567022 CET | 23588 | 55778 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:52.408742905 CET | 55835 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:52.409044981 CET | 55836 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:52.528484106 CET | 80 | 55835 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:52.528496981 CET | 23588 | 55836 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:56.157102108 CET | 55835 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:56.157493114 CET | 55836 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.157932043 CET | 55778 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.159092903 CET | 57965 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.276391029 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:56.276973963 CET | 58045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.279407024 CET | 23588 | 57965 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:56.282017946 CET | 57965 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.285142899 CET | 57965 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.395898104 CET | 80 | 58043 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:56.396491051 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:56.396529913 CET | 23588 | 58045 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:56.396656036 CET | 58045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.396898985 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:56.403100014 CET | 58045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:35:56.405275106 CET | 23588 | 57965 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:56.516369104 CET | 80 | 58043 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:56.522819996 CET | 23588 | 58045 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:35:58.175431013 CET | 80 | 58043 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:58.175529003 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:58.202239990 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:58.202310085 CET | 443 | 59311 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:35:58.202472925 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:58.203306913 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:35:58.203344107 CET | 443 | 59311 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:00.038125992 CET | 443 | 59311 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:00.038269043 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:00.038940907 CET | 443 | 59311 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:00.039005041 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:00.173327923 CET | 58045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.173372030 CET | 57965 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.173996925 CET | 60319 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.294044018 CET | 23588 | 60319 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:00.294240952 CET | 60319 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.296431065 CET | 60319 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.301978111 CET | 60345 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.416251898 CET | 23588 | 60319 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:00.421972990 CET | 23588 | 60345 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:00.422090054 CET | 60345 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.428411007 CET | 60345 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:00.548156977 CET | 23588 | 60345 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:01.514590025 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.514700890 CET | 443 | 59311 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:01.514808893 CET | 59311 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.642405033 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.643129110 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.762511969 CET | 80 | 58043 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:01.762772083 CET | 80 | 61064 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:01.762859106 CET | 58043 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.763215065 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.765031099 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:01.884553909 CET | 80 | 61064 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:03.559776068 CET | 80 | 61064 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:03.560200930 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:03.567137957 CET | 62148 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:03.567187071 CET | 443 | 62148 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:03.571233988 CET | 62148 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:03.572164059 CET | 62148 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:03.572192907 CET | 443 | 62148 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:04.297888041 CET | 60319 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.297914028 CET | 62148 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.297916889 CET | 60345 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.302012920 CET | 62729 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.421550035 CET | 23588 | 62729 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:04.423831940 CET | 62729 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.431344986 CET | 62729 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.434205055 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.434211016 CET | 62823 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.435555935 CET | 62825 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.553057909 CET | 23588 | 62729 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:04.556922913 CET | 80 | 62823 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:04.556936026 CET | 80 | 61064 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:04.556998968 CET | 62823 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.557027102 CET | 61064 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.557542086 CET | 23588 | 62825 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:04.557610989 CET | 62825 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.557611942 CET | 62823 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:04.558063984 CET | 62825 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:04.679348946 CET | 80 | 62823 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:04.679506063 CET | 23588 | 62825 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:08.443718910 CET | 62823 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:08.443783998 CET | 62825 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.443811893 CET | 62729 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.444664955 CET | 49177 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.564882040 CET | 23588 | 49177 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:08.564965963 CET | 49177 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.567744970 CET | 49177 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.575658083 CET | 49188 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.580957890 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:08.687309027 CET | 23588 | 49177 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:08.695533037 CET | 23588 | 49188 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:08.695626974 CET | 49188 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.696515083 CET | 49188 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:08.700591087 CET | 80 | 49190 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:08.700664997 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:08.701653957 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:08.816450119 CET | 23588 | 49188 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:08.821238041 CET | 80 | 49190 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:11.078775883 CET | 80 | 49190 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:11.079165936 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:11.082441092 CET | 50769 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:11.082480907 CET | 443 | 50769 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:11.082660913 CET | 50769 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:11.083834887 CET | 50769 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:11.083847046 CET | 443 | 50769 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:12.579716921 CET | 49177 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.579718113 CET | 49188 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.579781055 CET | 50769 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.580739975 CET | 51340 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.697007895 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.697453976 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.697669983 CET | 51418 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.700686932 CET | 23588 | 51340 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:12.700761080 CET | 51340 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.701181889 CET | 51340 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.972760916 CET | 80 | 51417 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:12.972826958 CET | 80 | 49190 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:12.972860098 CET | 23588 | 51418 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:12.972891092 CET | 23588 | 51340 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:12.972884893 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.972924948 CET | 49190 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.972954988 CET | 51418 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:12.983561039 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:12.983938932 CET | 51418 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:13.103691101 CET | 80 | 51417 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:13.104260921 CET | 23588 | 51418 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:14.681391954 CET | 80 | 51417 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:14.682367086 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:14.874464989 CET | 52053 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:14.874516964 CET | 443 | 52053 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:14.874579906 CET | 52053 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:14.875824928 CET | 52053 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:14.875838995 CET | 443 | 52053 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:16.595175028 CET | 51340 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.595335007 CET | 52053 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.595345020 CET | 51418 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.596265078 CET | 52889 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.711635113 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.711970091 CET | 52994 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.715218067 CET | 52993 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.715936899 CET | 23588 | 52889 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:16.716034889 CET | 52889 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.716223955 CET | 52889 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.832670927 CET | 80 | 52994 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:16.832766056 CET | 52994 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.833144903 CET | 80 | 51417 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:16.833394051 CET | 51417 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.835917950 CET | 23588 | 52993 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:16.836052895 CET | 52993 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.837280035 CET | 23588 | 52889 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:16.839204073 CET | 52994 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:16.839675903 CET | 52993 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:16.958904982 CET | 80 | 52994 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:16.959160089 CET | 23588 | 52993 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:20.614466906 CET | 52994 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:20.614490032 CET | 52993 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.614528894 CET | 52889 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.616466045 CET | 55567 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.732594967 CET | 55602 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.736165047 CET | 23588 | 55567 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:20.736254930 CET | 55567 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.740609884 CET | 55604 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:20.741781950 CET | 55567 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.852438927 CET | 23588 | 55602 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:20.852549076 CET | 55602 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.852978945 CET | 55602 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:20.860238075 CET | 80 | 55604 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:20.860352993 CET | 55604 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:20.860780954 CET | 55604 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:20.861360073 CET | 23588 | 55567 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:20.972511053 CET | 23588 | 55602 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:20.980242968 CET | 80 | 55604 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:24.626516104 CET | 55567 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.626566887 CET | 55602 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.626595020 CET | 55604 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:24.627439976 CET | 57794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.746141911 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:24.748398066 CET | 23588 | 57794 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:24.748773098 CET | 57903 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.748837948 CET | 57794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.749413013 CET | 57794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.865742922 CET | 80 | 57901 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:24.865849018 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:24.866692066 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:24.868402004 CET | 23588 | 57903 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:24.868505955 CET | 57903 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.868876934 CET | 23588 | 57794 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:24.869019985 CET | 57903 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:24.986264944 CET | 80 | 57901 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:24.988513947 CET | 23588 | 57903 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:26.715501070 CET | 80 | 57901 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:26.715574980 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:26.740834951 CET | 59065 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:26.740948915 CET | 443 | 59065 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:26.741024971 CET | 59065 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:26.742109060 CET | 59065 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:26.742146969 CET | 443 | 59065 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:28.642235041 CET | 57794 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.642268896 CET | 57903 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.642296076 CET | 59065 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:28.642868996 CET | 60254 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.758487940 CET | 60361 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.759953976 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:28.760240078 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:28.762727022 CET | 23588 | 60254 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:28.762890100 CET | 60254 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.763494015 CET | 60254 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.878726959 CET | 23588 | 60361 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:28.879009962 CET | 60361 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.879760981 CET | 80 | 60362 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:28.879812956 CET | 80 | 57901 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:28.879837990 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:28.879859924 CET | 57901 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:28.883018017 CET | 23588 | 60254 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:28.893871069 CET | 60361 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:28.893976927 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:29.014086008 CET | 23588 | 60361 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:29.014234066 CET | 80 | 60362 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:30.696933985 CET | 80 | 60362 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:30.697074890 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:30.702667952 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:30.702792883 CET | 443 | 61403 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:30.702891111 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:30.703542948 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:30.703583956 CET | 443 | 61403 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:32.537683964 CET | 443 | 61403 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:32.537817955 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:32.538503885 CET | 443 | 61403 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:32.538578033 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:32.676772118 CET | 60361 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.676810980 CET | 60254 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.688107967 CET | 62635 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.807842970 CET | 23588 | 62635 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:32.807919979 CET | 62635 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.816405058 CET | 62635 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.828305006 CET | 62667 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.936444998 CET | 23588 | 62635 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:32.948012114 CET | 23588 | 62667 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:32.948215008 CET | 62667 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:32.954329014 CET | 62667 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:33.073959112 CET | 23588 | 62667 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:34.422697067 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.422806978 CET | 443 | 61403 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:34.422904968 CET | 61403 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.611198902 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.611530066 CET | 63422 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.731652021 CET | 80 | 63422 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:34.731729984 CET | 63422 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.732237101 CET | 80 | 60362 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:34.732419968 CET | 60362 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.732695103 CET | 63422 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:34.852158070 CET | 80 | 63422 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:36.083749056 CET | 62635 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.083794117 CET | 62667 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.083800077 CET | 63422 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:36.196530104 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:36.197942972 CET | 64311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.202577114 CET | 64313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.317475080 CET | 80 | 64310 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:36.317508936 CET | 23588 | 64311 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:36.317594051 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:36.317686081 CET | 64311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.318475008 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:36.318864107 CET | 64311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.323188066 CET | 23588 | 64313 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:36.323268890 CET | 64313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.323465109 CET | 64313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:36.442864895 CET | 80 | 64310 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:36.442878962 CET | 23588 | 64311 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:36.446234941 CET | 23588 | 64313 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:38.041745901 CET | 80 | 64310 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:38.041831970 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:38.045327902 CET | 65484 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:38.045391083 CET | 443 | 65484 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:38.045516014 CET | 65484 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:38.046004057 CET | 65484 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:38.046013117 CET | 443 | 65484 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:40.204174995 CET | 64311 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.204221010 CET | 64313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.204245090 CET | 65484 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.205455065 CET | 50290 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.319259882 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.319689989 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.321093082 CET | 50408 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.325160980 CET | 23588 | 50290 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:40.325227022 CET | 50290 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.332423925 CET | 50290 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.439348936 CET | 80 | 50407 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:40.439379930 CET | 80 | 64310 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:40.439475060 CET | 64310 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.439486027 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.440642118 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:40.443380117 CET | 23588 | 50408 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:40.443654060 CET | 50408 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.443932056 CET | 50408 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:40.452794075 CET | 23588 | 50290 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:40.560535908 CET | 80 | 50407 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:40.563802004 CET | 23588 | 50408 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:42.322608948 CET | 80 | 50407 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:42.322679043 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:42.325488091 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:42.325552940 CET | 443 | 51650 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:42.325700998 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:42.326960087 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:42.326978922 CET | 443 | 51650 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:44.151889086 CET | 443 | 51650 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:44.152009964 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:44.152679920 CET | 443 | 51650 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:44.153736115 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:44.220150948 CET | 50408 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.220249891 CET | 50290 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.220869064 CET | 52832 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.408857107 CET | 52878 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.487613916 CET | 23588 | 52832 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:44.487768888 CET | 52832 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.488199949 CET | 52832 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.528937101 CET | 23588 | 52878 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:44.529062986 CET | 52878 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.533876896 CET | 52878 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:44.607790947 CET | 23588 | 52832 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:44.653487921 CET | 23588 | 52878 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:45.759814024 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:45.759911060 CET | 443 | 51650 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:45.759979963 CET | 51650 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:45.881273985 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:45.881692886 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:46.001282930 CET | 80 | 50407 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:46.001324892 CET | 80 | 53368 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:46.001432896 CET | 50407 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:46.001435041 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:46.002109051 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:46.121721029 CET | 80 | 53368 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:47.818226099 CET | 80 | 53368 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:47.818286896 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:47.866609097 CET | 54791 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:47.866668940 CET | 443 | 54791 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:47.866929054 CET | 54791 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:47.868967056 CET | 54791 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:47.868976116 CET | 443 | 54791 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:48.433805943 CET | 54791 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.433842897 CET | 52832 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.433897972 CET | 52878 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.466167927 CET | 54804 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.585943937 CET | 23588 | 54804 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:48.586039066 CET | 54804 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.589313030 CET | 54804 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.603214979 CET | 54823 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.606996059 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.607310057 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.708863974 CET | 23588 | 54804 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:48.723617077 CET | 23588 | 54823 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:48.723700047 CET | 54823 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.724044085 CET | 54823 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:48.727288008 CET | 80 | 54824 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:48.727375031 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.727757931 CET | 80 | 53368 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:48.727828026 CET | 53368 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.728028059 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:48.845545053 CET | 23588 | 54823 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:48.848674059 CET | 80 | 54824 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:50.547456026 CET | 80 | 54824 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:50.547672033 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:50.672265053 CET | 55957 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:50.672307014 CET | 443 | 55957 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:50.672395945 CET | 55957 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:50.712429047 CET | 55957 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:50.712456942 CET | 443 | 55957 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:52.594919920 CET | 54823 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.595125914 CET | 55957 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.595139027 CET | 54804 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.713757038 CET | 56890 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.714771986 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.715354919 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.715756893 CET | 56893 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.833677053 CET | 23588 | 56890 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:52.833853006 CET | 56890 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.834722996 CET | 56890 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.835138083 CET | 80 | 54824 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:52.835153103 CET | 80 | 56892 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:52.835202932 CET | 54824 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.835279942 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.835381985 CET | 23588 | 56893 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:52.835452080 CET | 56893 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.836296082 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:52.836488008 CET | 56893 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:52.955065966 CET | 23588 | 56890 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:52.956576109 CET | 80 | 56892 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:52.956716061 CET | 23588 | 56893 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:54.668972015 CET | 80 | 56892 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:54.669044971 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:54.688473940 CET | 58306 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:54.688539028 CET | 443 | 58306 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:54.688632965 CET | 58306 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:54.689795971 CET | 58306 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:54.689815998 CET | 443 | 58306 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:56.748970985 CET | 58306 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:56.749020100 CET | 56890 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.749141932 CET | 56893 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.750369072 CET | 59231 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.869934082 CET | 23588 | 59231 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:56.870016098 CET | 59231 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.870379925 CET | 59231 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.871695995 CET | 59313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.872481108 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:56.872828007 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:56.989897966 CET | 23588 | 59231 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:56.991513014 CET | 23588 | 59313 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:56.991592884 CET | 59313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.992275000 CET | 80 | 59314 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:56.993143082 CET | 59313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:36:56.993324041 CET | 80 | 56892 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:56.993376017 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:56.993376017 CET | 56892 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:56.995450974 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:57.112663031 CET | 23588 | 59313 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:36:57.114882946 CET | 80 | 59314 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:58.732543945 CET | 80 | 59314 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:58.732633114 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:58.741523981 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:58.741627932 CET | 443 | 60620 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:36:58.741710901 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:58.743642092 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:36:58.743674994 CET | 443 | 60620 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:00.649457932 CET | 443 | 60620 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:00.649578094 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:00.650234938 CET | 443 | 60620 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:00.650386095 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:00.876746893 CET | 59231 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:00.876780987 CET | 59313 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:00.877686977 CET | 61952 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:00.997287035 CET | 23588 | 61952 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:00.997387886 CET | 61952 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:00.998501062 CET | 61952 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:01.103604078 CET | 62045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:01.118195057 CET | 23588 | 61952 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:01.223381996 CET | 23588 | 62045 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:01.223460913 CET | 62045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:01.225375891 CET | 62045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:01.345917940 CET | 23588 | 62045 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:02.536020041 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.536134958 CET | 443 | 60620 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:02.536293030 CET | 60620 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.650284052 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.650924921 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.770680904 CET | 80 | 59314 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:02.770776033 CET | 59314 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.773611069 CET | 80 | 62377 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:02.773919106 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.775393009 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:02.895032883 CET | 80 | 62377 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:04.473983049 CET | 80 | 62377 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:04.474073887 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:04.488447905 CET | 63551 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:04.488523960 CET | 443 | 63551 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:04.488626003 CET | 63551 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:04.489355087 CET | 63551 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:04.489373922 CET | 443 | 63551 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:05.001203060 CET | 62045 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.001243114 CET | 63551 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.001270056 CET | 61952 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.001990080 CET | 63790 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.118150949 CET | 63809 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.118236065 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.118426085 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.121505976 CET | 23588 | 63790 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:05.121602058 CET | 63790 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.121875048 CET | 63790 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.239053011 CET | 23588 | 63809 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:05.239121914 CET | 80 | 63810 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:05.239130974 CET | 63809 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.239132881 CET | 80 | 62377 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:05.239175081 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.239207029 CET | 62377 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.239483118 CET | 63809 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:05.239799976 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:05.241436958 CET | 23588 | 63790 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:05.358922958 CET | 23588 | 63809 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:05.359240055 CET | 80 | 63810 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:06.982880116 CET | 80 | 63810 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:06.983025074 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.216377974 CET | 64603 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.216437101 CET | 443 | 64603 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:07.217262983 CET | 64603 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.218295097 CET | 64603 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.218308926 CET | 443 | 64603 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:07.518572092 CET | 64603 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.518666983 CET | 63790 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.518717051 CET | 63809 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.645761013 CET | 64715 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.648968935 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.649265051 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.655323029 CET | 64718 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.766356945 CET | 23588 | 64715 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:07.766583920 CET | 64715 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.767843962 CET | 64715 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.769457102 CET | 80 | 64717 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:07.769547939 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.769594908 CET | 80 | 63810 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:07.769650936 CET | 63810 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.770389080 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:07.774921894 CET | 23588 | 64718 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:07.775024891 CET | 64718 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.775340080 CET | 64718 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:07.887434006 CET | 23588 | 64715 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:07.889822006 CET | 80 | 64717 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:07.894954920 CET | 23588 | 64718 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:09.575462103 CET | 80 | 64717 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:09.575587034 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:09.591331959 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:09.591382027 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:09.591630936 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:09.683914900 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:09.683934927 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:11.554908991 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:11.555066109 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:11.555706024 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:11.555982113 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:11.642376900 CET | 64715 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:11.642579079 CET | 64718 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:11.643481016 CET | 50543 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:11.765625000 CET | 23588 | 50543 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:11.765700102 CET | 50543 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:11.770831108 CET | 50543 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:11.891180992 CET | 23588 | 50543 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:12.004265070 CET | 50608 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:12.124125957 CET | 23588 | 50608 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:12.124205112 CET | 50608 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:12.126693010 CET | 50608 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:12.246392012 CET | 23588 | 50608 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:13.573978901 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.574076891 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:13.574321985 CET | 443 | 49251 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:13.574399948 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.574399948 CET | 49251 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.719305038 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.719660044 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.839224100 CET | 80 | 51632 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:13.839306116 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.839375973 CET | 80 | 64717 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:13.839441061 CET | 64717 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.840508938 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:13.960167885 CET | 80 | 51632 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:15.634984970 CET | 80 | 51632 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:15.635195017 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:15.657020092 CET | 52665 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:15.657097101 CET | 443 | 52665 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:15.657252073 CET | 52665 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:15.657500029 CET | 52665 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:15.657517910 CET | 443 | 52665 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:15.818984032 CET | 50608 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:15.819026947 CET | 50543 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:15.819056988 CET | 52665 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:15.900742054 CET | 52686 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.020535946 CET | 23588 | 52686 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:16.020637035 CET | 52686 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.189594030 CET | 52686 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.237232924 CET | 52688 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.237350941 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:16.237600088 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:16.309221983 CET | 23588 | 52686 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:16.357059956 CET | 23588 | 52688 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:16.357131958 CET | 52688 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.357139111 CET | 80 | 52689 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:16.357181072 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:16.357449055 CET | 80 | 51632 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:16.357491970 CET | 51632 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:16.358040094 CET | 52688 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:16.358164072 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:16.477511883 CET | 23588 | 52688 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:16.477621078 CET | 80 | 52689 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:18.875391006 CET | 80 | 52689 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:18.875741959 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:19.266244888 CET | 53480 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:19.266371965 CET | 443 | 53480 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:19.266452074 CET | 53480 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:19.323415995 CET | 53480 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:19.323451996 CET | 443 | 53480 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:20.197770119 CET | 53480 | 443 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.197833061 CET | 52688 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.197839975 CET | 52686 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.232716084 CET | 53487 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.351953983 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.352251053 CET | 53533 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.352477074 CET | 53534 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.352483988 CET | 23588 | 53487 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:20.352580070 CET | 53487 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.353724957 CET | 53487 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.471946001 CET | 80 | 53533 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:20.472043991 CET | 80 | 52689 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:20.472083092 CET | 23588 | 53534 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:20.472083092 CET | 53533 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.472100019 CET | 52689 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.472134113 CET | 53534 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.473211050 CET | 23588 | 53487 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:20.473606110 CET | 53533 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:20.473736048 CET | 53534 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:20.593967915 CET | 80 | 53533 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:20.594010115 CET | 23588 | 53534 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:22.180335999 CET | 80 | 53533 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:22.180428982 CET | 53533 | 80 | 192.168.2.5 | 116.133.8.92 |
Dec 19, 2024 15:37:42.238637924 CET | 23588 | 53487 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:42.238712072 CET | 53487 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:42.379195929 CET | 23588 | 53534 | 107.160.131.254 | 192.168.2.5 |
Dec 19, 2024 15:37:42.379327059 CET | 53534 | 23588 | 192.168.2.5 | 107.160.131.254 |
Dec 19, 2024 15:37:52.180843115 CET | 80 | 53533 | 116.133.8.92 | 192.168.2.5 |
Dec 19, 2024 15:37:52.181045055 CET | 53533 | 80 | 192.168.2.5 | 116.133.8.92 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Dec 19, 2024 15:33:40.355006933 CET | 53194 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:33:41.301969051 CET | 53 | 53194 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:33:44.970244884 CET | 54947 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:33:45.109034061 CET | 53 | 54947 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:33:46.495070934 CET | 54251 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:33:47.156048059 CET | 53 | 54251 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:33:50.021511078 CET | 51059 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:33:50.158442974 CET | 53 | 51059 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:33:54.955218077 CET | 57871 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:33:55.093219042 CET | 53 | 57871 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:00.003022909 CET | 58361 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:00.140690088 CET | 53 | 58361 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:04.986938000 CET | 56278 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:05.124629974 CET | 53 | 56278 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:10.003093004 CET | 56552 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:10.140242100 CET | 53 | 56552 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:15.002093077 CET | 50321 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:15.139043093 CET | 53 | 50321 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:20.001096964 CET | 63205 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:20.300326109 CET | 53 | 63205 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:25.048120022 CET | 62641 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:25.185214043 CET | 53 | 62641 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:29.969777107 CET | 51117 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:30.108648062 CET | 53 | 51117 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:35.016968966 CET | 50746 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:35.156018972 CET | 53 | 50746 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:40.002347946 CET | 59981 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:40.139429092 CET | 53 | 59981 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:44.974052906 CET | 54897 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:45.112746954 CET | 53 | 54897 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:49.972300053 CET | 51930 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:50.114772081 CET | 53 | 51930 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:54.971774101 CET | 65306 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:34:55.109922886 CET | 53 | 65306 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:34:59.957334995 CET | 53402 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:00.097459078 CET | 53 | 53402 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:04.957099915 CET | 53130 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:05.095418930 CET | 53 | 53130 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:09.955538988 CET | 53895 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:10.093132973 CET | 53 | 53895 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:14.954390049 CET | 62749 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:15.093050003 CET | 53 | 62749 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:19.443984032 CET | 63968 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:19.955075026 CET | 57207 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:20.092782974 CET | 53 | 57207 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:20.453860044 CET | 63968 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:20.521703005 CET | 53 | 63968 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:20.590581894 CET | 53 | 63968 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:24.955771923 CET | 54940 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:25.092708111 CET | 53 | 54940 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:29.998543024 CET | 53189 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:30.135504007 CET | 53 | 53189 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:34.964662075 CET | 51736 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:35.102523088 CET | 53 | 51736 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:39.955399036 CET | 60753 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:40.093573093 CET | 53 | 60753 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:44.955001116 CET | 53278 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:45.092281103 CET | 53 | 53278 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:49.953890085 CET | 59478 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:50.091487885 CET | 53 | 59478 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:54.955257893 CET | 62387 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:35:55.093406916 CET | 53 | 62387 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:35:59.958185911 CET | 54771 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:00.096070051 CET | 53 | 54771 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:04.955344915 CET | 59935 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:05.092508078 CET | 53 | 59935 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:09.954659939 CET | 52481 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:10.092348099 CET | 53 | 52481 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:14.960405111 CET | 59471 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:15.098854065 CET | 53 | 59471 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:19.954546928 CET | 60042 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:20.091823101 CET | 53 | 60042 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:24.954143047 CET | 60142 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:25.091156006 CET | 53 | 60142 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:30.036650896 CET | 50285 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:30.173522949 CET | 53 | 50285 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:34.958167076 CET | 56182 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:35.095870972 CET | 53 | 56182 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:39.954237938 CET | 57763 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:40.091298103 CET | 53 | 57763 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:44.956803083 CET | 56519 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:45.093962908 CET | 53 | 56519 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:49.955600977 CET | 63337 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:50.092592001 CET | 53 | 63337 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:54.954875946 CET | 55421 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:36:55.094722033 CET | 53 | 55421 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:36:59.960388899 CET | 61143 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:37:00.097734928 CET | 53 | 61143 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:37:04.955233097 CET | 51543 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:37:05.092519045 CET | 53 | 51543 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:37:09.955809116 CET | 50239 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:37:10.092896938 CET | 53 | 50239 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:37:14.954476118 CET | 52003 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:37:15.091443062 CET | 53 | 52003 | 1.1.1.1 | 192.168.2.5 |
Dec 19, 2024 15:37:19.983213902 CET | 60715 | 53 | 192.168.2.5 | 1.1.1.1 |
Dec 19, 2024 15:37:20.120533943 CET | 53 | 60715 | 1.1.1.1 | 192.168.2.5 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Dec 19, 2024 15:33:40.355006933 CET | 192.168.2.5 | 1.1.1.1 | 0x9c32 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:44.970244884 CET | 192.168.2.5 | 1.1.1.1 | 0x390e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:46.495070934 CET | 192.168.2.5 | 1.1.1.1 | 0xe157 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:50.021511078 CET | 192.168.2.5 | 1.1.1.1 | 0x402 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:54.955218077 CET | 192.168.2.5 | 1.1.1.1 | 0x4ed2 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:00.003022909 CET | 192.168.2.5 | 1.1.1.1 | 0x4a20 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:04.986938000 CET | 192.168.2.5 | 1.1.1.1 | 0xd5b3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:10.003093004 CET | 192.168.2.5 | 1.1.1.1 | 0x6390 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:15.002093077 CET | 192.168.2.5 | 1.1.1.1 | 0xcd14 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:20.001096964 CET | 192.168.2.5 | 1.1.1.1 | 0xf81 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:25.048120022 CET | 192.168.2.5 | 1.1.1.1 | 0x9293 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:29.969777107 CET | 192.168.2.5 | 1.1.1.1 | 0xf602 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:35.016968966 CET | 192.168.2.5 | 1.1.1.1 | 0x57cf | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:40.002347946 CET | 192.168.2.5 | 1.1.1.1 | 0x4e75 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:44.974052906 CET | 192.168.2.5 | 1.1.1.1 | 0x34a0 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:49.972300053 CET | 192.168.2.5 | 1.1.1.1 | 0x5c97 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:54.971774101 CET | 192.168.2.5 | 1.1.1.1 | 0x61d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:59.957334995 CET | 192.168.2.5 | 1.1.1.1 | 0xfe75 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:04.957099915 CET | 192.168.2.5 | 1.1.1.1 | 0x740d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:09.955538988 CET | 192.168.2.5 | 1.1.1.1 | 0x1b56 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:14.954390049 CET | 192.168.2.5 | 1.1.1.1 | 0x3368 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:19.443984032 CET | 192.168.2.5 | 1.1.1.1 | 0x2d0c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:19.955075026 CET | 192.168.2.5 | 1.1.1.1 | 0x5d3b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:20.453860044 CET | 192.168.2.5 | 1.1.1.1 | 0x2d0c | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:24.955771923 CET | 192.168.2.5 | 1.1.1.1 | 0x638b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:29.998543024 CET | 192.168.2.5 | 1.1.1.1 | 0x622b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:34.964662075 CET | 192.168.2.5 | 1.1.1.1 | 0xe8df | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:39.955399036 CET | 192.168.2.5 | 1.1.1.1 | 0x576f | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:44.955001116 CET | 192.168.2.5 | 1.1.1.1 | 0xba7e | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:49.953890085 CET | 192.168.2.5 | 1.1.1.1 | 0xe7aa | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:54.955257893 CET | 192.168.2.5 | 1.1.1.1 | 0x6552 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:59.958185911 CET | 192.168.2.5 | 1.1.1.1 | 0xf021 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:04.955344915 CET | 192.168.2.5 | 1.1.1.1 | 0x1af9 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:09.954659939 CET | 192.168.2.5 | 1.1.1.1 | 0x388a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:14.960405111 CET | 192.168.2.5 | 1.1.1.1 | 0x3c46 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:19.954546928 CET | 192.168.2.5 | 1.1.1.1 | 0x8c8d | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:24.954143047 CET | 192.168.2.5 | 1.1.1.1 | 0xad45 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:30.036650896 CET | 192.168.2.5 | 1.1.1.1 | 0xea7a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:34.958167076 CET | 192.168.2.5 | 1.1.1.1 | 0x31fd | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:39.954237938 CET | 192.168.2.5 | 1.1.1.1 | 0x526b | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:44.956803083 CET | 192.168.2.5 | 1.1.1.1 | 0x2e78 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:49.955600977 CET | 192.168.2.5 | 1.1.1.1 | 0xefb8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:54.954875946 CET | 192.168.2.5 | 1.1.1.1 | 0x710a | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:59.960388899 CET | 192.168.2.5 | 1.1.1.1 | 0xfef4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:04.955233097 CET | 192.168.2.5 | 1.1.1.1 | 0xe7f3 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:09.955809116 CET | 192.168.2.5 | 1.1.1.1 | 0x2f11 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:14.954476118 CET | 192.168.2.5 | 1.1.1.1 | 0x4eac | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:19.983213902 CET | 192.168.2.5 | 1.1.1.1 | 0xedc7 | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Dec 19, 2024 15:33:41.301969051 CET | 1.1.1.1 | 192.168.2.5 | 0x9c32 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:45.109034061 CET | 1.1.1.1 | 192.168.2.5 | 0x390e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:47.156048059 CET | 1.1.1.1 | 192.168.2.5 | 0xe157 | No error (0) | blogx.sina.com.cn | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 15:33:47.156048059 CET | 1.1.1.1 | 192.168.2.5 | 0xe157 | No error (0) | 116.133.8.92 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 15:33:50.158442974 CET | 1.1.1.1 | 192.168.2.5 | 0x402 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:33:55.093219042 CET | 1.1.1.1 | 192.168.2.5 | 0x4ed2 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:00.140690088 CET | 1.1.1.1 | 192.168.2.5 | 0x4a20 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:05.124629974 CET | 1.1.1.1 | 192.168.2.5 | 0xd5b3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:10.140242100 CET | 1.1.1.1 | 192.168.2.5 | 0x6390 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:15.139043093 CET | 1.1.1.1 | 192.168.2.5 | 0xcd14 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:20.300326109 CET | 1.1.1.1 | 192.168.2.5 | 0xf81 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:25.185214043 CET | 1.1.1.1 | 192.168.2.5 | 0x9293 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:30.108648062 CET | 1.1.1.1 | 192.168.2.5 | 0xf602 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:35.156018972 CET | 1.1.1.1 | 192.168.2.5 | 0x57cf | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:40.139429092 CET | 1.1.1.1 | 192.168.2.5 | 0x4e75 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:45.112746954 CET | 1.1.1.1 | 192.168.2.5 | 0x34a0 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:50.114772081 CET | 1.1.1.1 | 192.168.2.5 | 0x5c97 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:34:55.109922886 CET | 1.1.1.1 | 192.168.2.5 | 0x61d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:00.097459078 CET | 1.1.1.1 | 192.168.2.5 | 0xfe75 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:05.095418930 CET | 1.1.1.1 | 192.168.2.5 | 0x740d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:10.093132973 CET | 1.1.1.1 | 192.168.2.5 | 0x1b56 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:15.093050003 CET | 1.1.1.1 | 192.168.2.5 | 0x3368 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:20.092782974 CET | 1.1.1.1 | 192.168.2.5 | 0x5d3b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:20.521703005 CET | 1.1.1.1 | 192.168.2.5 | 0x2d0c | No error (0) | blogx.sina.com.cn | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 15:35:20.521703005 CET | 1.1.1.1 | 192.168.2.5 | 0x2d0c | No error (0) | 116.133.8.92 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 15:35:20.590581894 CET | 1.1.1.1 | 192.168.2.5 | 0x2d0c | No error (0) | blogx.sina.com.cn | CNAME (Canonical name) | IN (0x0001) | false | ||
Dec 19, 2024 15:35:20.590581894 CET | 1.1.1.1 | 192.168.2.5 | 0x2d0c | No error (0) | 116.133.8.92 | A (IP address) | IN (0x0001) | false | ||
Dec 19, 2024 15:35:25.092708111 CET | 1.1.1.1 | 192.168.2.5 | 0x638b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:30.135504007 CET | 1.1.1.1 | 192.168.2.5 | 0x622b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:35.102523088 CET | 1.1.1.1 | 192.168.2.5 | 0xe8df | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:40.093573093 CET | 1.1.1.1 | 192.168.2.5 | 0x576f | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:45.092281103 CET | 1.1.1.1 | 192.168.2.5 | 0xba7e | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:50.091487885 CET | 1.1.1.1 | 192.168.2.5 | 0xe7aa | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:35:55.093406916 CET | 1.1.1.1 | 192.168.2.5 | 0x6552 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:00.096070051 CET | 1.1.1.1 | 192.168.2.5 | 0xf021 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:05.092508078 CET | 1.1.1.1 | 192.168.2.5 | 0x1af9 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:10.092348099 CET | 1.1.1.1 | 192.168.2.5 | 0x388a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:15.098854065 CET | 1.1.1.1 | 192.168.2.5 | 0x3c46 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:20.091823101 CET | 1.1.1.1 | 192.168.2.5 | 0x8c8d | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:25.091156006 CET | 1.1.1.1 | 192.168.2.5 | 0xad45 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:30.173522949 CET | 1.1.1.1 | 192.168.2.5 | 0xea7a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:35.095870972 CET | 1.1.1.1 | 192.168.2.5 | 0x31fd | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:40.091298103 CET | 1.1.1.1 | 192.168.2.5 | 0x526b | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:45.093962908 CET | 1.1.1.1 | 192.168.2.5 | 0x2e78 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:50.092592001 CET | 1.1.1.1 | 192.168.2.5 | 0xefb8 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:36:55.094722033 CET | 1.1.1.1 | 192.168.2.5 | 0x710a | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:00.097734928 CET | 1.1.1.1 | 192.168.2.5 | 0xfef4 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:05.092519045 CET | 1.1.1.1 | 192.168.2.5 | 0xe7f3 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:10.092896938 CET | 1.1.1.1 | 192.168.2.5 | 0x2f11 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:15.091443062 CET | 1.1.1.1 | 192.168.2.5 | 0x4eac | Name error (3) | none | none | A (IP address) | IN (0x0001) | false | |
Dec 19, 2024 15:37:20.120533943 CET | 1.1.1.1 | 192.168.2.5 | 0xedc7 | Name error (3) | none | none | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 49718 | 107.160.131.253 | 18659 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:17.452064037 CET | 171 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 49719 | 107.163.56.110 | 18530 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:17.452320099 CET | 185 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 49792 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:43.586338043 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 49794 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:43.586730957 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 49814 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:45.629937887 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 49815 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:45.631921053 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.5 | 49832 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:47.392971039 CET | 118 | OUT | |
Dec 19, 2024 15:33:49.117685080 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.5 | 49857 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:49.679462910 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.5 | 49859 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:49.928164005 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.5 | 49860 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:49.928282976 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.5 | 49897 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:53.697033882 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.5 | 49899 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:53.818470955 CET | 118 | OUT | |
Dec 19, 2024 15:33:56.329720974 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.5 | 49900 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:53.818614960 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.5 | 49938 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:57.912029982 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.5 | 49943 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:58.177066088 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.5 | 49944 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:33:58.177181959 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.5 | 49980 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:02.044260025 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.5 | 49982 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:02.158725023 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.5 | 49983 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:02.159209013 CET | 118 | OUT | |
Dec 19, 2024 15:34:03.882188082 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.5 | 50026 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:06.062958956 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.5 | 50028 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:06.170423985 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
21 | 192.168.2.5 | 50029 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:06.185621977 CET | 118 | OUT | |
Dec 19, 2024 15:34:07.900721073 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
22 | 192.168.2.5 | 50072 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:10.077888966 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
23 | 192.168.2.5 | 50073 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:10.211318970 CET | 118 | OUT | |
Dec 19, 2024 15:34:11.998063087 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
24 | 192.168.2.5 | 50074 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:10.224524975 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
25 | 192.168.2.5 | 50121 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:14.206903934 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
26 | 192.168.2.5 | 50123 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:14.320843935 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
27 | 192.168.2.5 | 50124 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:14.329119921 CET | 118 | OUT | |
Dec 19, 2024 15:34:16.124452114 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
28 | 192.168.2.5 | 50166 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:18.218353033 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
29 | 192.168.2.5 | 50168 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:18.348444939 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
30 | 192.168.2.5 | 50169 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:18.348536015 CET | 118 | OUT | |
Dec 19, 2024 15:34:20.060470104 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
31 | 192.168.2.5 | 50208 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:22.340991974 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
32 | 192.168.2.5 | 50210 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:22.453018904 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
33 | 192.168.2.5 | 50211 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:22.470470905 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
34 | 192.168.2.5 | 50256 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:26.361413002 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
35 | 192.168.2.5 | 50260 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:26.470549107 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
36 | 192.168.2.5 | 50261 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:26.470716953 CET | 118 | OUT | |
Dec 19, 2024 15:34:28.300256968 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
37 | 192.168.2.5 | 50308 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:30.385987997 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
38 | 192.168.2.5 | 50311 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:30.507567883 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
39 | 192.168.2.5 | 50312 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:30.517781973 CET | 118 | OUT | |
Dec 19, 2024 15:34:30.875124931 CET | 118 | OUT | |
Dec 19, 2024 15:34:32.273067951 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
40 | 192.168.2.5 | 50371 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:34.511729002 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
41 | 192.168.2.5 | 50373 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:34.648057938 CET | 118 | OUT | |
Dec 19, 2024 15:34:37.014148951 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
42 | 192.168.2.5 | 50374 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:34.649018049 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
43 | 192.168.2.5 | 50436 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:38.644294977 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
44 | 192.168.2.5 | 50442 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:38.750360012 CET | 118 | OUT | |
Dec 19, 2024 15:34:40.492660999 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
45 | 192.168.2.5 | 50443 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:38.750665903 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
46 | 192.168.2.5 | 50510 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:42.637887955 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
47 | 192.168.2.5 | 50514 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:42.751437902 CET | 118 | OUT | |
Dec 19, 2024 15:34:44.460810900 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
48 | 192.168.2.5 | 50515 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:42.751759052 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
49 | 192.168.2.5 | 50597 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:46.948242903 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
50 | 192.168.2.5 | 50599 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:46.948417902 CET | 118 | OUT | |
Dec 19, 2024 15:34:50.609566927 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
51 | 192.168.2.5 | 50600 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:46.948545933 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
52 | 192.168.2.5 | 50690 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:50.678437948 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
53 | 192.168.2.5 | 50692 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:50.783268929 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
54 | 192.168.2.5 | 50694 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:50.801126957 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
55 | 192.168.2.5 | 50815 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:54.687002897 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
56 | 192.168.2.5 | 50820 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:54.800615072 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
57 | 192.168.2.5 | 50821 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:54.800981998 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
58 | 192.168.2.5 | 50962 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:58.704050064 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
59 | 192.168.2.5 | 50967 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:58.814078093 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
60 | 192.168.2.5 | 50968 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:34:58.815144062 CET | 118 | OUT | |
Dec 19, 2024 15:35:00.530720949 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
61 | 192.168.2.5 | 51148 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:02.731898069 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
62 | 192.168.2.5 | 51158 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:02.858628035 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
63 | 192.168.2.5 | 51159 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:02.858999014 CET | 118 | OUT | |
Dec 19, 2024 15:35:04.602087975 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
64 | 192.168.2.5 | 51331 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:06.982213974 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
65 | 192.168.2.5 | 51337 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:07.116161108 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
66 | 192.168.2.5 | 51338 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:07.122026920 CET | 118 | OUT | |
Dec 19, 2024 15:35:08.941135883 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
67 | 192.168.2.5 | 51553 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:11.125632048 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
68 | 192.168.2.5 | 51561 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:11.248106956 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
69 | 192.168.2.5 | 51564 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:11.264411926 CET | 118 | OUT | |
Dec 19, 2024 15:35:13.774283886 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
70 | 192.168.2.5 | 51803 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:15.263513088 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
71 | 192.168.2.5 | 51810 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:15.378885984 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
72 | 192.168.2.5 | 51811 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:15.380764008 CET | 118 | OUT | |
Dec 19, 2024 15:35:17.090538979 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
73 | 192.168.2.5 | 52806 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:19.306094885 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
74 | 192.168.2.5 | 52999 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:19.565332890 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
75 | 192.168.2.5 | 53337 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:20.644289017 CET | 118 | OUT | |
Dec 19, 2024 15:35:22.454828978 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
76 | 192.168.2.5 | 55397 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:23.551124096 CET | 118 | OUT | |
Dec 19, 2024 15:35:25.922816992 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
77 | 192.168.2.5 | 55398 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:23.553046942 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
78 | 192.168.2.5 | 55399 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:23.554677963 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
79 | 192.168.2.5 | 58021 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:27.710355997 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
80 | 192.168.2.5 | 58024 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:28.026566982 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
81 | 192.168.2.5 | 58026 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:28.037859917 CET | 118 | OUT | |
Dec 19, 2024 15:35:29.752093077 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
82 | 192.168.2.5 | 59600 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:31.848117113 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
83 | 192.168.2.5 | 59713 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:31.922398090 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
84 | 192.168.2.5 | 59752 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:31.957998037 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
85 | 192.168.2.5 | 62269 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:35.986850977 CET | 118 | OUT | |
Dec 19, 2024 15:35:37.694819927 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
86 | 192.168.2.5 | 62270 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:35.990951061 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
87 | 192.168.2.5 | 62271 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:35.991053104 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
88 | 192.168.2.5 | 64965 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:39.807642937 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
89 | 192.168.2.5 | 65081 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:40.000137091 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
90 | 192.168.2.5 | 65116 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:40.126209974 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
91 | 192.168.2.5 | 65117 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:40.127289057 CET | 118 | OUT | |
Dec 19, 2024 15:35:41.868916035 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
92 | 192.168.2.5 | 51043 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:44.125111103 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
93 | 192.168.2.5 | 51144 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:44.251338005 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
94 | 192.168.2.5 | 51145 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:44.251538038 CET | 118 | OUT | |
Dec 19, 2024 15:35:45.970633984 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
95 | 192.168.2.5 | 53634 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:48.248791933 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
96 | 192.168.2.5 | 53691 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:48.365900993 CET | 118 | OUT | |
Dec 19, 2024 15:35:50.736736059 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
97 | 192.168.2.5 | 53692 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:48.365900993 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
98 | 192.168.2.5 | 55778 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:52.264977932 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
99 | 192.168.2.5 | 55835 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:52.408742905 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
100 | 192.168.2.5 | 55836 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:52.409044981 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
101 | 192.168.2.5 | 57965 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:56.285142899 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
102 | 192.168.2.5 | 58043 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:56.396898985 CET | 118 | OUT | |
Dec 19, 2024 15:35:58.175431013 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
103 | 192.168.2.5 | 58045 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:35:56.403100014 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
104 | 192.168.2.5 | 60319 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:00.296431065 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
105 | 192.168.2.5 | 60345 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:00.428411007 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
106 | 192.168.2.5 | 61064 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:01.765031099 CET | 118 | OUT | |
Dec 19, 2024 15:36:03.559776068 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
107 | 192.168.2.5 | 62729 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:04.431344986 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
108 | 192.168.2.5 | 62823 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:04.557611942 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
109 | 192.168.2.5 | 62825 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:04.558063984 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
110 | 192.168.2.5 | 49177 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:08.567744970 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
111 | 192.168.2.5 | 49188 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:08.696515083 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
112 | 192.168.2.5 | 49190 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:08.701653957 CET | 118 | OUT | |
Dec 19, 2024 15:36:11.078775883 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
113 | 192.168.2.5 | 51340 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:12.701181889 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
114 | 192.168.2.5 | 51417 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:12.983561039 CET | 118 | OUT | |
Dec 19, 2024 15:36:14.681391954 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
115 | 192.168.2.5 | 51418 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:12.983938932 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
116 | 192.168.2.5 | 52889 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:16.716223955 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
117 | 192.168.2.5 | 52994 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:16.839204073 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
118 | 192.168.2.5 | 52993 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:16.839675903 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
119 | 192.168.2.5 | 55567 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:20.741781950 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
120 | 192.168.2.5 | 55602 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:20.852978945 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
121 | 192.168.2.5 | 55604 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:20.860780954 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
122 | 192.168.2.5 | 57794 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:24.749413013 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
123 | 192.168.2.5 | 57901 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:24.866692066 CET | 118 | OUT | |
Dec 19, 2024 15:36:26.715501070 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
124 | 192.168.2.5 | 57903 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:24.869019985 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
125 | 192.168.2.5 | 60254 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:28.763494015 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
126 | 192.168.2.5 | 60361 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:28.893871069 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
127 | 192.168.2.5 | 60362 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:28.893976927 CET | 118 | OUT | |
Dec 19, 2024 15:36:30.696933985 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
128 | 192.168.2.5 | 62635 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:32.816405058 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
129 | 192.168.2.5 | 62667 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:32.954329014 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
130 | 192.168.2.5 | 63422 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:34.732695103 CET | 118 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
131 | 192.168.2.5 | 64310 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:36.318475008 CET | 118 | OUT | |
Dec 19, 2024 15:36:38.041745901 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
132 | 192.168.2.5 | 64311 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:36.318864107 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
133 | 192.168.2.5 | 64313 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:36.323465109 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
134 | 192.168.2.5 | 50290 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:40.332423925 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
135 | 192.168.2.5 | 50407 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:40.440642118 CET | 118 | OUT | |
Dec 19, 2024 15:36:42.322608948 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
136 | 192.168.2.5 | 50408 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:40.443932056 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
137 | 192.168.2.5 | 52832 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:44.488199949 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
138 | 192.168.2.5 | 52878 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:44.533876896 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
139 | 192.168.2.5 | 53368 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:46.002109051 CET | 118 | OUT | |
Dec 19, 2024 15:36:47.818226099 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
140 | 192.168.2.5 | 54804 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:48.589313030 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
141 | 192.168.2.5 | 54823 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:48.724044085 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
142 | 192.168.2.5 | 54824 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:48.728028059 CET | 118 | OUT | |
Dec 19, 2024 15:36:50.547456026 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
143 | 192.168.2.5 | 56890 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:52.834722996 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
144 | 192.168.2.5 | 56892 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:52.836296082 CET | 118 | OUT | |
Dec 19, 2024 15:36:54.668972015 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
145 | 192.168.2.5 | 56893 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:52.836488008 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
146 | 192.168.2.5 | 59231 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:56.870379925 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
147 | 192.168.2.5 | 59313 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:56.993143082 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
148 | 192.168.2.5 | 59314 | 116.133.8.92 | 80 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:36:56.995450974 CET | 118 | OUT | |
Dec 19, 2024 15:36:58.732543945 CET | 371 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
149 | 192.168.2.5 | 61952 | 107.160.131.254 | 23588 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Dec 19, 2024 15:37:00.998501062 CET | 187 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.5 | 50003 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:34:05 UTC | 142 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.5 | 50097 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:34:13 UTC | 142 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.5 | 50187 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:34:22 UTC | 142 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.5 | 50283 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:34:30 UTC | 142 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.5 | 51237 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:35:06 UTC | 142 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.5 | 51452 | 116.133.8.92 | 443 | 5400 | C:\Windows\SysWOW64\rundll32.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-12-19 14:35:10 UTC | 142 | OUT |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\loaddll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x120000 |
File size: | 126'464 bytes |
MD5 hash: | 51E6071F9CBA48E79F10C84515AAE618 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 1 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6d64d0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 2 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\cmd.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 236'544 bytes |
MD5 hash: | D0FCE3AFA6AA1D58CE9FA336CC2B675B |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 3 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | false |
Target ID: | 4 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 5 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\cmd.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 236'544 bytes |
MD5 hash: | D0FCE3AFA6AA1D58CE9FA336CC2B675B |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 6 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6d64d0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 7 |
Start time: | 09:33:14 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\PING.EXE |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe10000 |
File size: | 18'944 bytes |
MD5 hash: | B3624DD758CCECF93A1226CEF252CA12 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 9 |
Start time: | 09:33:17 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 10 |
Start time: | 09:33:20 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 13 |
Start time: | 09:33:20 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\WerFault.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x170000 |
File size: | 483'680 bytes |
MD5 hash: | C31336C1EFC2CCB44B4326EA793040F2 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 15 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 16 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 17 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 19 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\cmd.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 236'544 bytes |
MD5 hash: | D0FCE3AFA6AA1D58CE9FA336CC2B675B |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 20 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6d64d0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 21 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\WerFault.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x170000 |
File size: | 483'680 bytes |
MD5 hash: | C31336C1EFC2CCB44B4326EA793040F2 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 22 |
Start time: | 09:33:23 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\PING.EXE |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe10000 |
File size: | 18'944 bytes |
MD5 hash: | B3624DD758CCECF93A1226CEF252CA12 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 25 |
Start time: | 09:33:50 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 26 |
Start time: | 09:33:51 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\cmd.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 236'544 bytes |
MD5 hash: | D0FCE3AFA6AA1D58CE9FA336CC2B675B |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 27 |
Start time: | 09:33:51 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6d64d0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 28 |
Start time: | 09:33:51 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\PING.EXE |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe10000 |
File size: | 18'944 bytes |
MD5 hash: | B3624DD758CCECF93A1226CEF252CA12 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 29 |
Start time: | 09:33:59 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\rundll32.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x580000 |
File size: | 61'440 bytes |
MD5 hash: | 889B99C52A60DD49227C5E485A016679 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 30 |
Start time: | 09:33:59 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\cmd.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 236'544 bytes |
MD5 hash: | D0FCE3AFA6AA1D58CE9FA336CC2B675B |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 31 |
Start time: | 09:33:59 |
Start date: | 19/12/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6d64d0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Target ID: | 32 |
Start time: | 09:33:59 |
Start date: | 19/12/2024 |
Path: | C:\Windows\SysWOW64\PING.EXE |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xe10000 |
File size: | 18'944 bytes |
MD5 hash: | B3624DD758CCECF93A1226CEF252CA12 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Has exited: | true |
Execution Graph
Execution Coverage: | 4.5% |
Dynamic/Decrypted Code Coverage: | 99.6% |
Signature Coverage: | 1.2% |
Total number of Nodes: | 251 |
Total number of Limit Nodes: | 11 |
Graph
Control-flow Graph
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003FB7 Relevance: 1.5, APIs: 1, Instructions: 4processCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10006EDE Relevance: 21.2, APIs: 5, Strings: 7, Instructions: 174sleepfileCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10006499 Relevance: 14.3, APIs: 5, Strings: 3, Instructions: 272timeCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10005DB4 Relevance: 14.1, APIs: 1, Strings: 7, Instructions: 116timeCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10006CF7 Relevance: 14.1, APIs: 2, Strings: 6, Instructions: 72timeCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000826C Relevance: 12.1, APIs: 2, Strings: 6, Instructions: 145sleepCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10006A6E Relevance: 8.8, APIs: 3, Strings: 2, Instructions: 58sleepthreadCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10008567 Relevance: 7.6, APIs: 2, Strings: 3, Instructions: 79sleepCOMMON
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000841C Relevance: 6.1, APIs: 2, Strings: 2, Instructions: 119sleepCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10007101 Relevance: 4.6, APIs: 2, Strings: 1, Instructions: 95sleepCOMMON
Control-flow Graph
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 100081F7 Relevance: 3.0, APIs: 1, Strings: 1, Instructions: 48sleepCOMMON
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003F0A Relevance: 1.5, APIs: 1, Instructions: 10networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003FF7 Relevance: 1.5, APIs: 1, Instructions: 5COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10004104 Relevance: 1.5, APIs: 1, Instructions: 4COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000400A Relevance: 1.5, APIs: 1, Instructions: 3COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10004092 Relevance: 1.5, APIs: 1, Instructions: 3registryCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003EB4 Relevance: 1.5, APIs: 1, Instructions: 3networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003F58 Relevance: 1.5, APIs: 1, Instructions: 3networkCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003F72 Relevance: 1.5, APIs: 1, Instructions: 3COMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000B224 Relevance: 1.6, Strings: 1, Instructions: 400COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000AEC0 Relevance: 1.5, Strings: 1, Instructions: 266COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10003F63 Relevance: 1.5, APIs: 1, Instructions: 4shutdownCOMMON
APIs |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 100121ED Relevance: 1.5, Strings: 1, Instructions: 216COMMON
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000B70D Relevance: .1, Instructions: 104COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10008AAD Relevance: .0, Instructions: 32COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1001E1FE Relevance: .0, Instructions: 30COMMON
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
|
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 1000570F Relevance: 17.6, APIs: 5, Strings: 5, Instructions: 102filethreadCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 100053B7 Relevance: 15.9, APIs: 6, Strings: 3, Instructions: 179sleepfileCOMMON
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 10004351 Relevance: 9.1, APIs: 2, Strings: 4, Instructions: 64sleepCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 100087F4 Relevance: 6.0, APIs: 2, Strings: 2, Instructions: 32sleepCOMMON
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
|
Joe Sandbox IDA Plugin |
|
Similarity |
|