Windows
Analysis Report
Quotation2025-0107pdf.exe
Overview
General Information
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- Quotation2025-0107pdf.exe (PID: 7332 cmdline:
"C:\Users\ user\Deskt op\Quotati on2025-010 7pdf.exe" MD5: FF0A37E1048052C58526A9C38EFC1954) - powershell.exe (PID: 7524 cmdline:
"C:\Window s\System32 \WindowsPo werShell\v 1.0\powers hell.exe" Add-MpPref erence -Ex clusionPat h "C:\User s\user\Des ktop\Quota tion2025-0 107pdf.exe " MD5: C32CA4ACFCC635EC1EA6ED8A34DF5FAC) - conhost.exe (PID: 7532 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - powershell.exe (PID: 7564 cmdline:
"C:\Window s\System32 \WindowsPo werShell\v 1.0\powers hell.exe" Add-MpPref erence -Ex clusionPat h "C:\User s\user\App Data\Roami ng\mexnJki vovwH.exe" MD5: C32CA4ACFCC635EC1EA6ED8A34DF5FAC) - conhost.exe (PID: 7588 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - WmiPrvSE.exe (PID: 7924 cmdline:
C:\Windows \system32\ wbem\wmipr vse.exe -s ecured -Em bedding MD5: 60FF40CFD7FB8FE41EE4FE9AE5FE1C51) - schtasks.exe (PID: 7604 cmdline:
"C:\Window s\System32 \schtasks. exe" /Crea te /TN "Up dates\mexn JkivovwH" /XML "C:\U sers\user\ AppData\Lo cal\Temp\t mp2404.tmp " MD5: 48C2FE20575769DE916F48EF0676A965) - conhost.exe (PID: 7644 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - Quotation2025-0107pdf.exe (PID: 7772 cmdline:
"C:\Users\ user\Deskt op\Quotati on2025-010 7pdf.exe" MD5: FF0A37E1048052C58526A9C38EFC1954)
- mexnJkivovwH.exe (PID: 7908 cmdline:
C:\Users\u ser\AppDat a\Roaming\ mexnJkivov wH.exe MD5: FF0A37E1048052C58526A9C38EFC1954) - schtasks.exe (PID: 8080 cmdline:
"C:\Window s\System32 \schtasks. exe" /Crea te /TN "Up dates\mexn JkivovwH" /XML "C:\U sers\user\ AppData\Lo cal\Temp\t mp36D0.tmp " MD5: 48C2FE20575769DE916F48EF0676A965) - conhost.exe (PID: 8088 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - mexnJkivovwH.exe (PID: 8124 cmdline:
"C:\Users\ user\AppDa ta\Roaming \mexnJkivo vwH.exe" MD5: FF0A37E1048052C58526A9C38EFC1954)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Loki Password Stealer (PWS), LokiBot | "Loki Bot is a commodity malware sold on underground sites which is designed to steal private data from infected machines, and then submit that info to a command and control host via HTTP POST. This private data includes stored passwords, login credential information from Web browsers, and a variety of cryptocurrency wallets." - PhishMeLoki-Bot employs function hashing to obfuscate the libraries utilized. While not all functions are hashed, a vast majority of them are.Loki-Bot accepts a single argument/switch of -u that simply delays execution (sleeps) for 10 seconds. This is used when Loki-Bot is upgrading itself.The Mutex generated is the result of MD5 hashing the Machine GUID and trimming to 24-characters. For example: B7E1C2CC98066B250DDB2123.Loki-Bot creates a hidden folder within the %APPDATA% directory whose name is supplied by the 8th thru 13th characters of the Mutex. For example: %APPDATA%\ C98066\.There can be four files within the hidden %APPDATA% directory at any given time: .exe, .lck, .hdb and .kdb. They will be named after characters 13 thru 18 of the Mutex. For example: 6B250D. Below is the explanation of their purpose:FILE EXTENSIONFILE DESCRIPTION.exeA copy of the malware that will execute every time the user account is logged into.lckA lock file created when either decrypting Windows Credentials or Keylogging to prevent resource conflicts.hdbA database of hashes for data that has already been exfiltrated to the C2 server.kdbA database of keylogger data that has yet to be sent to the C2 serverIf the user is privileged, Loki-Bot sets up persistence within the registry under HKEY_LOCAL_MACHINE. If not, it sets up persistence under HKEY_CURRENT_USER.The first packet transmitted by Loki-Bot contains application data.The second packet transmitted by Loki-Bot contains decrypted Windows credentials.The third packet transmitted by Loki-Bot is the malware requesting C2 commands from the C2 server. By default, Loki-Bot will send this request out every 10 minutes after the initial packet it sent.Communications to the C2 server from the compromised host contain information about the user and system including the username, hostname, domain, screen resolution, privilege level, system architecture, and Operating System.The first WORD of the HTTP Payload represents the Loki-Bot version.The second WORD of the HTTP Payload is the Payload Type. Below is the table of identified payload types:BYTEPAYLOAD TYPE0x26Stolen Cryptocurrency Wallet0x27Stolen Application Data0x28Get C2 Commands from C2 Server0x29Stolen File0x2APOS (Point of Sale?)0x2BKeylogger Data0x2CScreenshotThe 11th byte of the HTTP Payload begins the Binary ID. This might be useful in tracking campaigns or specific threat actors. This value value is typically ckav.ru. If you come across a Binary ID that is different from this, take note!Loki-Bot encrypts both the URL and the registry key used for persistence using Triple DES encryption.The Content-Key HTTP Header value is the result of hashing the HTTP Header values that precede it. This is likely used as a protection against researchers who wish to poke and prod at Loki-Bots C2 infrastructure.Loki-Bot can accept the following instructions from the C2 Server:BYTEINSTRUCTION DESCRIPTION0x00Download EXE & Execute0x01Download DLL & Load #10x02Download DLL & Load #20x08Delete HDB File0x09Start Keylogger0x0AMine & Steal Data0x0EExit Loki-Bot0x0FUpgrade Loki-Bot0x10Change C2 Polling Frequency0x11Delete Executables & ExitSuricata SignaturesRULE SIDRULE NAME2024311ET TROJAN Loki Bot Cryptocurrency Wallet Exfiltration Detected2024312ET TROJAN Loki Bot Application/Credential Data Exfiltration Detected M12024313ET TROJAN Loki Bot Request for C2 Commands Detected M12024314ET TROJAN Loki Bot File Exfiltration Detected2024315ET TROJAN Loki Bot Keylogger Data Exfiltration Detected M12024316ET TROJAN Loki Bot Screenshot Exfiltration Detected2024317ET TROJAN Loki Bot Application/Credential Data Exfiltration Detected M22024318ET TROJAN Loki Bot Request for C2 Commands Detected M22024319ET TROJAN Loki Bot Keylogger Data Exfiltration Detected M2 |
{"C2 list": ["http://kbfvzoboss.bid/alien/fre.php", "http://alphastand.trade/alien/fre.php", "http://alphastand.win/alien/fre.php", "http://alphastand.top/alien/fre.php"]}
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot_1 | Yara detected Lokibot | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot | Yara detected Lokibot | Joe Security | ||
JoeSecurity_aPLib_compressed_binary | Yara detected aPLib compressed binary | Joe Security | ||
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
Windows_Trojan_Lokibot_1f885282 | unknown | unknown |
| |
Windows_Trojan_Lokibot_0f421617 | unknown | unknown |
| |
Click to see the 57 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
JoeSecurity_PureLogStealer | Yara detected PureLog Stealer | Joe Security | ||
Click to see the 84 entries |
System Summary |
---|
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: Roberto Rodriguez @Cyb3rWard0g (rule), oscd.community (improvements): |
Persistence and Installation Behavior |
---|
Source: | Author: Joe Security: |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:01.519943+0100 | 2024312 | 1 | A Network Trojan was detected | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.466654+0100 | 2024312 | 1 | A Network Trojan was detected | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:00.796955+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.602114+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.490438+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.412187+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.187246+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.083804+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.974835+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.073415+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.223373+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.117368+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.004316+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.932697+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.805465+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.769592+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.694494+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.621099+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.524599+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.413561+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.319720+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.208840+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.190721+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.083462+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.973870+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.880636+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.829746+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.723358+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.582510+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.619054+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.504390+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.382420+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.256603+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.155614+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.032901+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.924411+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.814297+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.704114+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.588546+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.473584+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.360546+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.253004+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.116039+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.987508+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.861754+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.736881+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.630025+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.529692+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.411818+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.293457+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.179130+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.074620+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.984690+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.862472+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.758629+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.655150+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.567085+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.479625+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.584481+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.446641+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.333834+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.237309+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.121179+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.003527+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.878899+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.752916+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.662274+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.549471+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.476176+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.420628+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.289917+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.157706+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.168337+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.065316+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.983613+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.036766+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.925247+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.841098+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.953872+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.973579+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.849018+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.804831+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.682925+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.566164+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.615544+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.538604+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.414906+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.330905+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.254058+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.161672+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.052352+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.970591+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.885204+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.771343+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.680964+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.568840+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.482591+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.418199+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.283218+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.183439+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.064766+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.993234+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.894254+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.815203+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.704614+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.618568+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.510581+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.427169+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.300156+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.178680+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.221421+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.104720+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.073014+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.978438+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.848723+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.736292+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.784973+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.642095+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.553437+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.465759+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.347194+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.222675+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.621252+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.519173+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.412870+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.462921+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.340598+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.239632+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.128389+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.979403+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.024157+0100 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:31:59.242781+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50139 | TCP |
2025-01-07T12:32:03.316472+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49739 | TCP |
2025-01-07T12:32:04.346344+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49740 | TCP |
2025-01-07T12:32:05.262504+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49741 | TCP |
2025-01-07T12:32:07.009649+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49742 | TCP |
2025-01-07T12:32:07.939892+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49743 | TCP |
2025-01-07T12:32:08.824777+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49744 | TCP |
2025-01-07T12:32:09.737549+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49745 | TCP |
2025-01-07T12:32:10.807324+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49746 | TCP |
2025-01-07T12:32:11.922696+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49747 | TCP |
2025-01-07T12:32:12.858606+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49749 | TCP |
2025-01-07T12:32:13.761638+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49751 | TCP |
2025-01-07T12:32:14.651917+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49754 | TCP |
2025-01-07T12:32:15.599338+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49756 | TCP |
2025-01-07T12:32:16.538409+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49758 | TCP |
2025-01-07T12:32:17.450376+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49759 | TCP |
2025-01-07T12:32:18.370632+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49760 | TCP |
2025-01-07T12:32:19.260027+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49761 | TCP |
2025-01-07T12:32:20.166304+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49762 | TCP |
2025-01-07T12:32:21.060111+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49763 | TCP |
2025-01-07T12:32:21.999489+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49764 | TCP |
2025-01-07T12:32:22.924878+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49765 | TCP |
2025-01-07T12:32:23.824756+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49766 | TCP |
2025-01-07T12:32:24.703088+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49767 | TCP |
2025-01-07T12:32:25.629186+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49768 | TCP |
2025-01-07T12:32:26.582437+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49769 | TCP |
2025-01-07T12:32:27.435344+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49770 | TCP |
2025-01-07T12:32:28.347249+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49771 | TCP |
2025-01-07T12:32:29.354116+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49772 | TCP |
2025-01-07T12:32:30.226727+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49773 | TCP |
2025-01-07T12:32:31.100067+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49774 | TCP |
2025-01-07T12:32:31.994435+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49775 | TCP |
2025-01-07T12:32:32.896298+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49776 | TCP |
2025-01-07T12:32:33.776885+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49777 | TCP |
2025-01-07T12:32:34.670302+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49778 | TCP |
2025-01-07T12:32:35.562339+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49779 | TCP |
2025-01-07T12:32:36.439728+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49780 | TCP |
2025-01-07T12:32:37.329468+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49781 | TCP |
2025-01-07T12:32:38.197506+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49782 | TCP |
2025-01-07T12:32:39.109271+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49783 | TCP |
2025-01-07T12:32:39.962119+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49784 | TCP |
2025-01-07T12:32:40.845506+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49785 | TCP |
2025-01-07T12:32:41.710383+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49786 | TCP |
2025-01-07T12:32:42.595767+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49787 | TCP |
2025-01-07T12:32:43.485712+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49788 | TCP |
2025-01-07T12:32:44.373199+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49789 | TCP |
2025-01-07T12:32:45.265357+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49790 | TCP |
2025-01-07T12:32:46.125040+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49791 | TCP |
2025-01-07T12:32:47.031149+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49792 | TCP |
2025-01-07T12:32:47.919801+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49793 | TCP |
2025-01-07T12:32:48.826184+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49794 | TCP |
2025-01-07T12:32:49.717963+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49795 | TCP |
2025-01-07T12:32:50.614088+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49796 | TCP |
2025-01-07T12:32:51.499943+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49798 | TCP |
2025-01-07T12:32:52.427147+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49799 | TCP |
2025-01-07T12:32:53.328635+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49800 | TCP |
2025-01-07T12:32:54.431309+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49801 | TCP |
2025-01-07T12:32:55.301802+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49803 | TCP |
2025-01-07T12:32:56.189746+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49804 | TCP |
2025-01-07T12:32:57.078314+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49810 | TCP |
2025-01-07T12:32:57.967104+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49816 | TCP |
2025-01-07T12:32:58.858821+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49822 | TCP |
2025-01-07T12:32:59.725632+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49828 | TCP |
2025-01-07T12:33:00.612312+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49837 | TCP |
2025-01-07T12:33:01.502409+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49843 | TCP |
2025-01-07T12:33:02.400864+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49849 | TCP |
2025-01-07T12:33:03.290840+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49857 | TCP |
2025-01-07T12:33:04.233933+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49863 | TCP |
2025-01-07T12:33:05.139877+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49869 | TCP |
2025-01-07T12:33:06.016218+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49875 | TCP |
2025-01-07T12:33:06.899543+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49882 | TCP |
2025-01-07T12:33:07.927128+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49888 | TCP |
2025-01-07T12:33:08.813925+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49898 | TCP |
2025-01-07T12:33:09.729144+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49904 | TCP |
2025-01-07T12:33:10.776074+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49910 | TCP |
2025-01-07T12:33:11.664061+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49918 | TCP |
2025-01-07T12:33:12.599063+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49927 | TCP |
2025-01-07T12:33:13.822457+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49933 | TCP |
2025-01-07T12:33:14.703463+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49941 | TCP |
2025-01-07T12:33:15.589754+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49950 | TCP |
2025-01-07T12:33:16.534583+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49956 | TCP |
2025-01-07T12:33:17.420281+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49962 | TCP |
2025-01-07T12:33:18.323422+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49968 | TCP |
2025-01-07T12:33:19.388466+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49974 | TCP |
2025-01-07T12:33:20.267460+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49985 | TCP |
2025-01-07T12:33:21.183793+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49991 | TCP |
2025-01-07T12:33:22.102226+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 49997 | TCP |
2025-01-07T12:33:22.993264+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50003 | TCP |
2025-01-07T12:33:23.910512+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50010 | TCP |
2025-01-07T12:33:24.790680+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50019 | TCP |
2025-01-07T12:33:25.731038+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50026 | TCP |
2025-01-07T12:33:26.615954+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50032 | TCP |
2025-01-07T12:33:27.509460+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50038 | TCP |
2025-01-07T12:33:28.411500+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50045 | TCP |
2025-01-07T12:33:29.326539+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50054 | TCP |
2025-01-07T12:33:30.205109+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50060 | TCP |
2025-01-07T12:33:31.138590+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50067 | TCP |
2025-01-07T12:33:32.026118+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50073 | TCP |
2025-01-07T12:33:32.925198+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50079 | TCP |
2025-01-07T12:33:33.842894+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50086 | TCP |
2025-01-07T12:33:34.755137+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50094 | TCP |
2025-01-07T12:33:35.668143+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50100 | TCP |
2025-01-07T12:33:36.547440+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50106 | TCP |
2025-01-07T12:33:37.467122+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50112 | TCP |
2025-01-07T12:33:38.356590+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50114 | TCP |
2025-01-07T12:33:39.284335+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50115 | TCP |
2025-01-07T12:33:40.154005+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50116 | TCP |
2025-01-07T12:33:41.031213+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50117 | TCP |
2025-01-07T12:33:42.073941+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50118 | TCP |
2025-01-07T12:33:42.948672+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50119 | TCP |
2025-01-07T12:33:43.915043+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50120 | TCP |
2025-01-07T12:33:44.826511+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50121 | TCP |
2025-01-07T12:33:45.698774+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50122 | TCP |
2025-01-07T12:33:46.590607+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50123 | TCP |
2025-01-07T12:33:47.646236+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50124 | TCP |
2025-01-07T12:33:48.501354+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50125 | TCP |
2025-01-07T12:33:49.405760+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50126 | TCP |
2025-01-07T12:33:50.313200+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50127 | TCP |
2025-01-07T12:33:51.196923+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50128 | TCP |
2025-01-07T12:33:52.082481+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50129 | TCP |
2025-01-07T12:33:53.261119+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50130 | TCP |
2025-01-07T12:33:54.365193+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50131 | TCP |
2025-01-07T12:33:55.268000+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50132 | TCP |
2025-01-07T12:33:56.172324+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50133 | TCP |
2025-01-07T12:33:57.179973+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50134 | TCP |
2025-01-07T12:33:58.093795+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50135 | TCP |
2025-01-07T12:33:58.984297+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50136 | TCP |
2025-01-07T12:33:59.837375+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50137 | TCP |
2025-01-07T12:34:00.727211+0100 | 2025483 | 1 | A Network Trojan was detected | 94.156.177.41 | 80 | 192.168.2.4 | 50138 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:03.275190+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.338995+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.248744+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.009365+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.935086+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.818254+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:09.731700+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.797050+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.917927+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.853819+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.756413+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.647155+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.593522+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.533683+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.445085+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.365851+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.255213+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.161554+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.055285+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.994686+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.907710+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.819944+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.698249+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.606968+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.577641+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.430547+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.316402+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.349357+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.221935+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.091089+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.988683+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.891493+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.772124+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.665544+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.557501+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.434903+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.324672+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.192729+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.104383+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.957327+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.840674+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.705575+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.591000+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.480919+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.368376+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.260532+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.120173+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.026386+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.914990+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.821374+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.713193+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.609302+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.495138+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.422354+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.323679+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.426552+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.294818+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.184948+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.071831+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.962291+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.853828+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.720354+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.607397+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.490314+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.396007+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.285971+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.228379+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.135088+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.011427+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.894211+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.922188+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.808854+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:09.719346+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.771269+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.659311+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.593371+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.817700+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.698696+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.583031+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.529723+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.415506+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.317821+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.383367+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.262019+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.160919+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.097407+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.988429+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.905645+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.785850+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.726265+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.611215+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.495067+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.406726+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.321667+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.200229+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.133820+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.021373+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.920405+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.838131+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.750375+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.663277+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.542571+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.462301+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.351026+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.277673+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.149202+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.026481+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.069136+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.943866+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.909799+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.821678+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.694009+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.585711+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.641378+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.495517+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.400961+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.308279+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.192040+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.077623+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.256311+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.360403+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.263205+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.154405+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.175145+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.088991+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.979379+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.832529+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:00.722379+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.830408+0100 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:03.275190+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.338995+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.248744+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.009365+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.935086+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.818254+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:09.731700+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.797050+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.917927+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.853819+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.756413+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.647155+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.593522+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.533683+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.445085+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.365851+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.255213+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.161554+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.055285+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.994686+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.907710+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.819944+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.698249+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.606968+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.577641+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.430547+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.316402+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.349357+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.221935+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.091089+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.988683+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.891493+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.772124+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.665544+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.557501+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.434903+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.324672+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.192729+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.104383+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.957327+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.840674+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.705575+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.591000+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.480919+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.368376+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.260532+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.120173+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.026386+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.914990+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.821374+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.713193+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.609302+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.495138+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.422354+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.323679+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.426552+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.294818+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.184948+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.071831+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.962291+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.853828+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.720354+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.607397+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.490314+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.396007+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.285971+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.228379+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.135088+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.011427+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.894211+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.922188+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.808854+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:09.719346+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.771269+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.659311+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.593371+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.817700+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.698696+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.583031+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.529723+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.415506+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.317821+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.383367+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.262019+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.160919+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.097407+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.988429+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.905645+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.785850+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.726265+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.611215+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.495067+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.406726+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.321667+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.200229+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.133820+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.021373+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.920405+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.838131+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.750375+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.663277+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.542571+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.462301+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.351026+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.277673+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.149202+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.026481+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.069136+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.943866+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.909799+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.821678+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.694009+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.585711+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.641378+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.495517+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.400961+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.308279+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.192040+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.077623+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.256311+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.360403+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.263205+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.154405+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.175145+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.088991+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.979379+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.832529+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:00.722379+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.830408+0100 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:00.796955+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.602114+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.490438+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.412187+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.187246+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.083804+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.974835+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.073415+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.223373+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.117368+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.004316+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.932697+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.805465+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.769592+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.694494+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.621099+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.524599+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.413561+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.319720+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.208840+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.190721+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.083462+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.973870+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.880636+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.829746+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.723358+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.582510+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.619054+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.504390+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.382420+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.256603+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.155614+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.032901+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.924411+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.814297+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.704114+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.588546+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.473584+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.360546+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.253004+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.116039+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.987508+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.861754+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.736881+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.630025+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.529692+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.411818+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.293457+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.179130+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.074620+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.984690+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.862472+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.758629+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.655150+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.567085+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.479625+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.584481+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.446641+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.333834+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.237309+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.121179+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.003527+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.878899+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.752916+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.662274+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.549471+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.476176+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.420628+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.289917+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.157706+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.168337+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.065316+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.983613+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.036766+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.925247+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.841098+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.953872+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.973579+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.849018+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.804831+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.682925+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.566164+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.615544+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.538604+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.414906+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.330905+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.254058+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.161672+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.052352+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.970591+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.885204+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.771343+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.680964+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.568840+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.482591+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.418199+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.283218+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.183439+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.064766+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.993234+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.894254+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.815203+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.704614+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.618568+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.510581+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.427169+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.300156+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.178680+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.221421+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.104720+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.073014+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.978438+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.848723+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.736292+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.784973+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.642095+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.553437+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.465759+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.347194+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.222675+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.621252+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.519173+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.412870+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.462921+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.340598+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.239632+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.128389+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.979403+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.024157+0100 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:32:00.796955+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.602114+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.490438+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.412187+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.187246+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.083804+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.974835+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.073415+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.223373+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.117368+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.004316+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.932697+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.805465+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.769592+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.694494+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.621099+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.524599+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.413561+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.319720+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.208840+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.190721+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.083462+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.973870+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.880636+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.829746+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.723358+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.582510+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.619054+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.504390+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.382420+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.256603+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.155614+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.032901+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.924411+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.814297+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.704114+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.588546+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.473584+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.360546+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.253004+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.116039+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.987508+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.861754+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.736881+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.630025+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.529692+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.411818+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.293457+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.179130+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.074620+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.984690+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.862472+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.758629+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.655150+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.567085+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.479625+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.584481+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.446641+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.333834+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.237309+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.121179+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.003527+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.878899+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.752916+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.662274+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.549471+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.476176+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.420628+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.289917+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.157706+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.168337+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.065316+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.983613+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.036766+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.925247+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.841098+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.953872+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.973579+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.849018+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.804831+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.682925+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.566164+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.615544+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.538604+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.414906+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.330905+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.254058+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.161672+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.052352+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.970591+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.885204+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.771343+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.680964+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.568840+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.482591+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.418199+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.283218+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.183439+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.064766+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.993234+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.894254+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.815203+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.704614+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.618568+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.510581+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.427169+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.300156+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.178680+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.221421+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.104720+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.073014+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.978438+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.848723+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.736292+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.784973+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.642095+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.553437+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.465759+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.347194+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.222675+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.621252+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.519173+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.412870+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.462921+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.340598+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.239632+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.128389+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.979403+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.024157+0100 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Malware Configuration Extractor: |
Source: | ReversingLabs: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: |
Source: | Joe Sandbox ML: |
Compliance |
---|
Source: | Unpacked PE file: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | Code function: | 0_2_0305C36C | |
Source: | Code function: | 0_2_0305DE68 | |
Source: | Code function: | 9_2_023FC36C | |
Source: | Code function: | 9_2_023FDE68 |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: |
Source: | IP Address: |
Source: | ASN Name: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: |
Source: | Code function: | 13_2_00404ED4 |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Code function: | 0_2_018C07F4 | |
Source: | Code function: | 0_2_018C9751 | |
Source: | Code function: | 9_2_00A707F4 | |
Source: | Code function: | 9_2_00A79751 |
Source: | Code function: | 0_2_018C9558 | |
Source: | Code function: | 0_2_018C8568 | |
Source: | Code function: | 0_2_018C1CE8 | |
Source: | Code function: | 0_2_018C1478 | |
Source: | Code function: | 0_2_018C2710 | |
Source: | Code function: | 0_2_018CA298 | |
Source: | Code function: | 0_2_018C3610 | |
Source: | Code function: | 0_2_018C5DC8 | |
Source: | Code function: | 0_2_018C35F9 | |
Source: | Code function: | 0_2_018C5908 | |
Source: | Code function: | 0_2_018C5918 | |
Source: | Code function: | 0_2_018C9547 | |
Source: | Code function: | 0_2_018C08D8 | |
Source: | Code function: | 0_2_018C8828 | |
Source: | Code function: | 0_2_018C143F | |
Source: | Code function: | 0_2_018C8838 | |
Source: | Code function: | 0_2_018C9860 | |
Source: | Code function: | 0_2_018C9870 | |
Source: | Code function: | 0_2_018C5BD0 | |
Source: | Code function: | 0_2_018C5BE0 | |
Source: | Code function: | 0_2_018C1728 | |
Source: | Code function: | 0_2_018C3A8A | |
Source: | Code function: | 0_2_018C56D0 | |
Source: | Code function: | 0_2_018C56E0 | |
Source: | Code function: | 0_2_0305C324 | |
Source: | Code function: | 0_2_03051478 | |
Source: | Code function: | 0_2_0305C318 | |
Source: | Code function: | 0_2_0305D351 | |
Source: | Code function: | 0_2_0305B208 | |
Source: | Code function: | 0_2_030591EC | |
Source: | Code function: | 0_2_03051469 | |
Source: | Code function: | 0_2_0A08B260 | |
Source: | Code function: | 0_2_0A08B2BC | |
Source: | Code function: | 0_2_0A087394 | |
Source: | Code function: | 0_2_0A08CF30 | |
Source: | Code function: | 0_2_0A084D38 | |
Source: | Code function: | 0_2_0A1B38C0 | |
Source: | Code function: | 0_2_0A1B0730 | |
Source: | Code function: | 0_2_0A1BCB50 | |
Source: | Code function: | 0_2_0A1BB8B0 | |
Source: | Code function: | 0_2_0A1B38D9 | |
Source: | Code function: | 0_2_0A1B2C68 | |
Source: | Code function: | 0_2_0A1BB00E | |
Source: | Code function: | 0_2_0A1BB040 | |
Source: | Code function: | 0_2_0A1B0720 | |
Source: | Code function: | 0_2_0A1B0428 | |
Source: | Code function: | 0_2_0A1B0448 | |
Source: | Code function: | 0_2_0A1BB478 | |
Source: | Code function: | 0_2_0A1BD538 | |
Source: | Code function: | 0_2_12512A30 | |
Source: | Code function: | 9_2_00A7A298 | |
Source: | Code function: | 9_2_00A71CE8 | |
Source: | Code function: | 9_2_00A71478 | |
Source: | Code function: | 9_2_00A78570 | |
Source: | Code function: | 9_2_00A79558 | |
Source: | Code function: | 9_2_00A73610 | |
Source: | Code function: | 9_2_00A72710 | |
Source: | Code function: | 9_2_00A708D8 | |
Source: | Code function: | 9_2_00A78828 | |
Source: | Code function: | 9_2_00A78838 | |
Source: | Code function: | 9_2_00A79860 | |
Source: | Code function: | 9_2_00A79870 | |
Source: | Code function: | 9_2_00A75908 | |
Source: | Code function: | 9_2_00A75918 | |
Source: | Code function: | 9_2_00A7A288 | |
Source: | Code function: | 9_2_00A73A90 | |
Source: | Code function: | 9_2_00A75BE0 | |
Source: | Code function: | 9_2_00A713EC | |
Source: | Code function: | 9_2_00A75BD0 | |
Source: | Code function: | 9_2_00A7A5A5 | |
Source: | Code function: | 9_2_00A75DC8 | |
Source: | Code function: | 9_2_00A73518 | |
Source: | Code function: | 9_2_00A79547 | |
Source: | Code function: | 9_2_00A756E0 | |
Source: | Code function: | 9_2_00A756D0 | |
Source: | Code function: | 9_2_00A71728 | |
Source: | Code function: | 9_2_023FC324 | |
Source: | Code function: | 9_2_023FD387 | |
Source: | Code function: | 9_2_023F1478 | |
Source: | Code function: | 9_2_023FB208 | |
Source: | Code function: | 9_2_023FB203 | |
Source: | Code function: | 9_2_023F91EC | |
Source: | Code function: | 9_2_023F1469 | |
Source: | Code function: | 9_2_04A92238 | |
Source: | Code function: | 9_2_04A92DEF | |
Source: | Code function: | 9_2_08F338E8 | |
Source: | Code function: | 9_2_08F30730 | |
Source: | Code function: | 9_2_08F338D9 | |
Source: | Code function: | 9_2_08F3D818 | |
Source: | Code function: | 9_2_08F3BB90 | |
Source: | Code function: | 9_2_08F3CE30 | |
Source: | Code function: | 9_2_08F3B320 | |
Source: | Code function: | 9_2_08F30448 | |
Source: | Code function: | 9_2_08F30428 | |
Source: | Code function: | 9_2_08F3B758 | |
Source: | Code function: | 9_2_08F30720 | |
Source: | Code function: | 13_2_0040549C | |
Source: | Code function: | 13_2_004029D4 |
Source: | Static PE information: |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Static PE information: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: | ||
Source: | Cryptographic APIs: |
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: | ||
Source: | Security API names: |
Source: | Classification label: |
Source: | Code function: | 13_2_0040434D |
Source: | File created: | Jump to behavior |
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: | ||
Source: | Mutant created: |
Source: | File created: | Jump to behavior |
Source: | Static PE information: |
Source: | Static file information: |
Source: | File read: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | File read: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | |||
Source: | Process created: |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: | |||
Source: | Section loaded: |
Source: | Key value queried: | Jump to behavior |
Source: | Window detected: |
Source: | File opened: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Static PE information: |
Source: | Static PE information: |
Data Obfuscation |
---|
Source: | Unpacked PE file: |
Source: | Unpacked PE file: |
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | .Net Code: | ||
Source: | .Net Code: | ||
Source: | .Net Code: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Code function: | 0_2_018C6F64 | |
Source: | Code function: | 0_2_018C6A5E | |
Source: | Code function: | 0_2_0A1B6817 | |
Source: | Code function: | 0_2_0A1B682B | |
Source: | Code function: | 0_2_0A1B89DD | |
Source: | Code function: | 0_2_0A1B3FA8 | |
Source: | Code function: | 0_2_0A1B67F3 | |
Source: | Code function: | 9_2_00A76A5E | |
Source: | Code function: | 9_2_00A76F64 | |
Source: | Code function: | 13_2_00402AD4 | |
Source: | Code function: | 13_2_00402AFC |
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: | ||
Source: | High entropy of concatenated method names: |
Source: | File created: | Jump to dropped file |
Boot Survival |
---|
Source: | Process created: |
Hooking and other Techniques for Hiding and Protection |
---|
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: | |||
Source: | Process information set: |
Malware Analysis System Evasion |
---|
Source: | File source: | ||
Source: | File source: |
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: | |||
Source: | Memory allocated: |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep count: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: |
Source: | Last function: | ||
Source: | Last function: |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Process information queried: | Jump to behavior |
Source: | Code function: | 13_2_0040317B |
Source: | Code function: | 13_2_00402B7C |
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior |
Source: | Memory allocated: | Jump to behavior |
HIPS / PFW / Operating System Protection Evasion |
---|
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: |
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | |||
Source: | Process created: |
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | |||
Source: | Queries volume information: | |||
Source: | Queries volume information: | |||
Source: | Queries volume information: | |||
Source: | Queries volume information: |
Source: | Key value queried: | Jump to behavior |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Source: | File opened: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Source: | Code function: | 13_2_0040D069 | |
Source: | Code function: | 13_2_0040D069 |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Remote Access Functionality |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | 1 Scheduled Task/Job | 1 Scheduled Task/Job | 111 Process Injection | 1 Masquerading | 2 OS Credential Dumping | 111 Security Software Discovery | Remote Services | 1 Email Collection | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | 1 DLL Side-Loading | 1 Scheduled Task/Job | 11 Disable or Modify Tools | 2 Credentials in Registry | 1 Process Discovery | Remote Desktop Protocol | 11 Archive Collected Data | 3 Ingress Tool Transfer | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | 1 DLL Side-Loading | 31 Virtualization/Sandbox Evasion | Security Account Manager | 31 Virtualization/Sandbox Evasion | SMB/Windows Admin Shares | 2 Data from Local System | 2 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 111 Process Injection | NTDS | 1 Application Window Discovery | Distributed Component Object Model | Input Capture | 112 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 11 Deobfuscate/Decode Files or Information | LSA Secrets | 1 File and Directory Discovery | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 4 Obfuscated Files or Information | Cached Domain Credentials | 13 System Information Discovery | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 42 Software Packing | DCSync | Remote System Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | 1 DLL Side-Loading | Proc Filesystem | System Owner/User Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Joe Sandbox ML | |||
24% | ReversingLabs | Win32.Ransomware.Loki |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
true |
| unknown | |
false | high | ||
false | high | ||
false | high |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high | |||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
94.156.177.41 | unknown | Bulgaria | 43561 | NET1-ASBG | true |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1585262 |
Start date and time: | 2025-01-07 12:31:06 +01:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 6m 24s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 18 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | Quotation2025-0107pdf.exe |
Detection: | MAL |
Classification: | mal100.troj.spyw.evad.winEXE@19/17@0/1 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, WMIADAP.exe, SIHClient.exe, conhost.exe, svchost.exe
- Excluded IPs from analysis (whitelisted): 184.28.90.27, 172.202.163.200, 13.107.246.45
- Excluded domains from analysis (whitelisted): fs.microsoft.com, ocsp.digicert.com, slscr.update.microsoft.com, otelrules.azureedge.net, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com
- Not all processes where analyzed, report is missing behavior information
- Report size exceeded maximum capacity and may have missing behavior information.
- Report size getting too big, too many NtCreateKey calls found.
- Report size getting too big, too many NtOpenKeyEx calls found.
- Report size getting too big, too many NtProtectVirtualMemory calls found.
- Report size getting too big, too many NtQueryValueKey calls found.
Time | Type | Description |
---|---|---|
06:31:56 | API Interceptor | |
06:31:58 | API Interceptor | |
06:32:01 | API Interceptor | |
11:32:00 | Task Scheduler |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
94.156.177.41 | Get hash | malicious | Lokibot | Browse |
| |
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | Lokibot, PureLog Stealer | Browse |
| ||
Get hash | malicious | Lokibot, PureLog Stealer | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | HTMLPhisher, Lokibot | Browse |
| ||
Get hash | malicious | Lokibot | Browse |
| ||
Get hash | malicious | Cobalt Strike, Lokibot | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
NET1-ASBG | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
C:\Users\user\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\Quotation2025-0107pdf.exe.log
Download File
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1216 |
Entropy (8bit): | 5.34331486778365 |
Encrypted: | false |
SSDEEP: | 24:ML9E4KiE4Kx1qE4qXKDE4KhKiKhPKIE4oKNzKoZAE4Kze0E4x84j:MxHKiHKx1qHiYHKh3oPtHo6hAHKze0HJ |
MD5: | 8B21C0FDF91680677FEFC8890882FD1F |
SHA1: | E15AC7685BFC89F63015C29DE7F6BCE7A1A9F0E7 |
SHA-256: | E2F188397C73C8150EE6F09E833E4D1ABA01293CCFDFED61981F5F66660731F9 |
SHA-512: | 1EFDF56115A8688CA2380F3047A28CA3E03C74369C3A377050066A56B8171AD756F7DD7AA29F5648A84D16812D1B422749259ED47447713E9B3A0834CE361BE7 |
Malicious: | true |
Preview: |
Process: | C:\Users\user\AppData\Roaming\mexnJkivovwH.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1216 |
Entropy (8bit): | 5.34331486778365 |
Encrypted: | false |
SSDEEP: | 24:ML9E4KiE4Kx1qE4qXKDE4KhKiKhPKIE4oKNzKoZAE4Kze0E4x84j:MxHKiHKx1qHiYHKh3oPtHo6hAHKze0HJ |
MD5: | 8B21C0FDF91680677FEFC8890882FD1F |
SHA1: | E15AC7685BFC89F63015C29DE7F6BCE7A1A9F0E7 |
SHA-256: | E2F188397C73C8150EE6F09E833E4D1ABA01293CCFDFED61981F5F66660731F9 |
SHA-512: | 1EFDF56115A8688CA2380F3047A28CA3E03C74369C3A377050066A56B8171AD756F7DD7AA29F5648A84D16812D1B422749259ED47447713E9B3A0834CE361BE7 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\StartupProfileData-NonInteractive
Download File
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 2232 |
Entropy (8bit): | 5.380805901110357 |
Encrypted: | false |
SSDEEP: | 48:lylWSU4y4RQmFoUeWmfgZ9tK8NPZHUm7u1iMuge//8PUyus:lGLHyIFKL3IZ2KRH9Oug8s |
MD5: | F9B7CF60C22DBE6B73266580FFD54629 |
SHA1: | 05ED734C0A5EF2ECD025D4E39321ECDC96612623 |
SHA-256: | 880A3240A482AB826198F84F548F4CB5B906E4A2D7399D19E3EF60916B8D2D89 |
SHA-512: | F55EFB17C1A45D594D165B9DC4FA2D1364B38AA2B0D1B3BAAE6E1E14B8F3BD77E3A28B7D89FA7F6BF3EEF3652434228B1A42BF9851F2CFBB6A7DCC0254AAAE38 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1578 |
Entropy (8bit): | 5.109490627150337 |
Encrypted: | false |
SSDEEP: | 24:2di4+S2qh11hXy1mvWUnrKMhEMOFGpwOzNgU3ODOiIQRvh7hwrgXuNta4+xvn:cge1wYrFdOFzOzN33ODOiDdKrsuT1yv |
MD5: | 224FCB103E17065CEFD6151E048226D7 |
SHA1: | 236687AFABE3832DC5F1C32C87B9D0CD17AE046D |
SHA-256: | 990A26A889F82959DF42AD1979EAD9F9E1DD923E98B53E53D9EEF07E4374156D |
SHA-512: | 5DD118F7C51CAED3D316440CB14238B80D0E10CE577024346ADC6DF82BDDD01DFD12AD08C232AD12AE847D47705167756279D62B525C45A2C657CE43D3C4AD09 |
Malicious: | true |
Preview: |
Process: | C:\Users\user\AppData\Roaming\mexnJkivovwH.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1578 |
Entropy (8bit): | 5.109490627150337 |
Encrypted: | false |
SSDEEP: | 24:2di4+S2qh11hXy1mvWUnrKMhEMOFGpwOzNgU3ODOiIQRvh7hwrgXuNta4+xvn:cge1wYrFdOFzOzN33ODOiDdKrsuT1yv |
MD5: | 224FCB103E17065CEFD6151E048226D7 |
SHA1: | 236687AFABE3832DC5F1C32C87B9D0CD17AE046D |
SHA-256: | 990A26A889F82959DF42AD1979EAD9F9E1DD923E98B53E53D9EEF07E4374156D |
SHA-512: | 5DD118F7C51CAED3D316440CB14238B80D0E10CE577024346ADC6DF82BDDD01DFD12AD08C232AD12AE847D47705167756279D62B525C45A2C657CE43D3C4AD09 |
Malicious: | false |
Preview: |
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:U:U |
MD5: | C4CA4238A0B923820DCC509A6F75849B |
SHA1: | 356A192B7913B04C54574D18C28D46E6395428AB |
SHA-256: | 6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B |
SHA-512: | 4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1002\bc49718863ee53e026d805ec372039e9_9e146be9-c76a-4720-bcdb-53011b87bd06
Download File
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 46 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:: |
MD5: | D898504A722BFF1524134C6AB6A5EAA5 |
SHA1: | E0FDC90C2CA2A0219C99D2758E68C18875A3E11E |
SHA-256: | 878F32F76B159494F5A39F9321616C6068CDB82E88DF89BCC739BBC1EA78E1F9 |
SHA-512: | 26A4398BFFB0C0AEF9A6EC53CD3367A2D0ABF2F70097F711BBBF1E9E32FD9F1A72121691BB6A39EEB55D596EDD527934E541B4DEFB3B1426B1D1A6429804DC61 |
Malicious: | false |
Preview: |
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 725512 |
Entropy (8bit): | 7.401624367154157 |
Encrypted: | false |
SSDEEP: | 12288:mfuj5rWYMV+I4MVKWTwxAVNhpDsWpwEQx4JNXwwaFi3oqW8JdKPCTjcZPq0vzkR:gSrGRgMwxAVNvlvXw5LAdKKn8M |
MD5: | FF0A37E1048052C58526A9C38EFC1954 |
SHA1: | CDB18E6094372C6AB8280723BB9C64B9BA8269DA |
SHA-256: | 9E39A3FC8FCA2CC19C64E0C75E88F897A7D07F43D3430596FECDCCAE2B36D680 |
SHA-512: | 5EBF8FB73960113811B77534BD773F1C541FB381775E7944CC9CA8D0D48FB2E07D8D63163B074E8DAC89D61AA698325AE2FA020A1B15695F0EF87531F6FEA411 |
Malicious: | true |
Antivirus: |
|
Preview: |
Process: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 26 |
Entropy (8bit): | 3.95006375643621 |
Encrypted: | false |
SSDEEP: | 3:ggPYV:rPYV |
MD5: | 187F488E27DB4AF347237FE461A079AD |
SHA1: | 6693BA299EC1881249D59262276A0D2CB21F8E64 |
SHA-256: | 255A65D30841AB4082BD9D0EEA79D49C5EE88F56136157D8D6156AEF11C12309 |
SHA-512: | 89879F237C0C051EBE784D0690657A6827A312A82735DA42DAD5F744D734FC545BEC9642C19D14C05B2F01FF53BC731530C92F7327BB7DC9CDE1B60FB21CD64E |
Malicious: | true |
Preview: |
File type: | |
Entropy (8bit): | 7.401624367154157 |
TrID: |
|
File name: | Quotation2025-0107pdf.exe |
File size: | 725'512 bytes |
MD5: | ff0a37e1048052c58526a9c38efc1954 |
SHA1: | cdb18e6094372c6ab8280723bb9c64b9ba8269da |
SHA256: | 9e39a3fc8fca2cc19c64e0c75e88f897a7d07f43d3430596fecdccae2b36d680 |
SHA512: | 5ebf8fb73960113811b77534bd773f1c541fb381775e7944cc9ca8d0d48fb2e07d8d63163b074e8dac89d61aa698325ae2fa020a1b15695f0ef87531f6fea411 |
SSDEEP: | 12288:mfuj5rWYMV+I4MVKWTwxAVNhpDsWpwEQx4JNXwwaFi3oqW8JdKPCTjcZPq0vzkR:gSrGRgMwxAVNvlvXw5LAdKKn8M |
TLSH: | 48F48B492355E4CDD0D70ABC5893FFB795104D484A22C2C247EEB9A7369B98EBA0F1C7 |
File Content Preview: | MZ......................@...............................................!..L.!This program cannot be run in DOS mode....$.......PE..L.....}g..............0.................. ........@.. ....................... ............`................................ |
Icon Hash: | 13294d96922b2b0f |
Entrypoint: | 0x4add8e |
Entrypoint Section: | .text |
Digitally signed: | true |
Imagebase: | 0x400000 |
Subsystem: | windows gui |
Image File Characteristics: | EXECUTABLE_IMAGE, 32BIT_MACHINE |
DLL Characteristics: | HIGH_ENTROPY_VA, DYNAMIC_BASE, NX_COMPAT, NO_SEH, TERMINAL_SERVER_AWARE |
Time Stamp: | 0x677D0404 [Tue Jan 7 10:37:56 2025 UTC] |
TLS Callbacks: | |
CLR (.Net) Version: | |
OS Version Major: | 4 |
OS Version Minor: | 0 |
File Version Major: | 4 |
File Version Minor: | 0 |
Subsystem Version Major: | 4 |
Subsystem Version Minor: | 0 |
Import Hash: | f34d5f2d4577ed6d9ceec516c1f5a744 |
Signature Valid: | false |
Signature Issuer: | CN=COMODO RSA Code Signing CA, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB |
Signature Validation Error: | The digital signature of the object did not verify |
Error Number: | -2146869232 |
Not Before, Not After |
|
Subject Chain |
|
Version: | 3 |
Thumbprint MD5: | DABD77E44EF6B3BB91740FA46696B779 |
Thumbprint SHA-1: | 5B9E273CF11941FD8C6BE3F038C4797BBE884268 |
Thumbprint SHA-256: | 4CD3325617EBB63319BA6E8F2A74B0B8CCA58920B48D8026EBCA2C756630D570 |
Serial: | 7C1118CBBADC95DA3752C46E47A27438 |
Instruction |
---|
jmp dword ptr [00402000h] |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
add byte ptr [eax], al |
Name | Virtual Address | Virtual Size | Is in Section |
---|---|---|---|
IMAGE_DIRECTORY_ENTRY_EXPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IMPORT | 0xadd3c | 0x4f | .text |
IMAGE_DIRECTORY_ENTRY_RESOURCE | 0xae000 | 0x19f0 | .rsrc |
IMAGE_DIRECTORY_ENTRY_EXCEPTION | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_SECURITY | 0xadc00 | 0x3608 | |
IMAGE_DIRECTORY_ENTRY_BASERELOC | 0xb0000 | 0xc | .reloc |
IMAGE_DIRECTORY_ENTRY_DEBUG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COPYRIGHT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_GLOBALPTR | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_TLS | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_IAT | 0x2000 | 0x8 | .text |
IMAGE_DIRECTORY_ENTRY_DELAY_IMPORT | 0x0 | 0x0 | |
IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR | 0x2008 | 0x48 | .text |
IMAGE_DIRECTORY_ENTRY_RESERVED | 0x0 | 0x0 |
Name | Virtual Address | Virtual Size | Raw Size | MD5 | Xored PE | ZLIB Complexity | File Type | Entropy | Characteristics |
---|---|---|---|---|---|---|---|---|---|
.text | 0x2000 | 0xabd94 | 0xabe00 | 89156d02495e78914c1eb5dbd6714be4 | False | 0.7683068181818182 | data | 7.401526227264673 | IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ |
.rsrc | 0xae000 | 0x19f0 | 0x1a00 | 0f8b6e63385fd4d0d405f5a16f287bae | False | 0.6604567307692307 | data | 6.061547500887534 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_READ |
.reloc | 0xb0000 | 0xc | 0x200 | 27c632a4aa502aed1d4875d325175a71 | False | 0.044921875 | data | 0.10191042566270775 | IMAGE_SCN_CNT_INITIALIZED_DATA, IMAGE_SCN_MEM_DISCARDABLE, IMAGE_SCN_MEM_READ |
Name | RVA | Size | Type | Language | Country | ZLIB Complexity |
---|---|---|---|---|---|---|
RT_ICON | 0xae118 | 0x468 | Device independent bitmap graphic, 16 x 32 x 32, image size 1088 | 0.8129432624113475 | ||
RT_ICON | 0xae580 | 0x10a8 | Device independent bitmap graphic, 32 x 64 x 32, image size 4224 | 0.7136491557223265 | ||
RT_GROUP_ICON | 0xaf628 | 0x22 | data | 0.9411764705882353 | ||
RT_VERSION | 0xaf64c | 0x3a0 | data | 0.4170258620689655 |
DLL | Import |
---|---|
mscoree.dll | _CorExeMain |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2025-01-07T12:31:59.242781+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50139 | TCP |
2025-01-07T12:32:00.796955+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:00.796955+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:00.796955+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.519943+0100 | 2024312 | ET MALWARE LokiBot Application/Credential Data Exfiltration Detected M1 | 1 | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:01.754699+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.466654+0100 | 2024312 | ET MALWARE LokiBot Application/Credential Data Exfiltration Detected M1 | 1 | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:02.549908+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.275190+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.275190+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.316472+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49739 | TCP |
2025-01-07T12:32:03.602114+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.602114+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:03.602114+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.338995+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.338995+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.346344+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49740 | TCP |
2025-01-07T12:32:04.490438+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.490438+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:04.490438+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.248744+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.248744+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.262504+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49741 | TCP |
2025-01-07T12:32:05.412187+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.412187+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:05.412187+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.009365+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.009365+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.009649+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49742 | TCP |
2025-01-07T12:32:07.187246+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.187246+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.187246+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.935086+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.935086+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:07.939892+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49743 | TCP |
2025-01-07T12:32:08.083804+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.083804+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.083804+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.818254+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.818254+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.824777+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49744 | TCP |
2025-01-07T12:32:08.974835+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.974835+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:08.974835+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:09.731700+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:09.731700+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:09.737549+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49745 | TCP |
2025-01-07T12:32:10.073415+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.073415+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.073415+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.797050+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.797050+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:10.807324+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49746 | TCP |
2025-01-07T12:32:11.223373+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.223373+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.223373+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.917927+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.917927+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:11.922696+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49747 | TCP |
2025-01-07T12:32:12.117368+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.117368+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.117368+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.853819+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.853819+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:12.858606+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49749 | TCP |
2025-01-07T12:32:13.004316+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.004316+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.004316+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.756413+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.756413+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.761638+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49751 | TCP |
2025-01-07T12:32:13.932697+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.932697+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:13.932697+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.647155+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.647155+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.651917+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49754 | TCP |
2025-01-07T12:32:14.805465+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.805465+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:14.805465+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.593522+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.593522+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.599338+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49756 | TCP |
2025-01-07T12:32:15.769592+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.769592+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:15.769592+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.533683+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.533683+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.538409+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49758 | TCP |
2025-01-07T12:32:16.694494+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.694494+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:16.694494+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.445085+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.445085+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.450376+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49759 | TCP |
2025-01-07T12:32:17.621099+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.621099+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:17.621099+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.365851+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.365851+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.370632+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49760 | TCP |
2025-01-07T12:32:18.524599+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.524599+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:18.524599+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.255213+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.255213+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.260027+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49761 | TCP |
2025-01-07T12:32:19.413561+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.413561+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:19.413561+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.161554+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.161554+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.166304+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49762 | TCP |
2025-01-07T12:32:20.319720+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.319720+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:20.319720+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.055285+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.055285+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.060111+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49763 | TCP |
2025-01-07T12:32:21.208840+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.208840+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.208840+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.994686+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.994686+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:21.999489+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49764 | TCP |
2025-01-07T12:32:22.190721+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.190721+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.190721+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.907710+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.907710+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:22.924878+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49765 | TCP |
2025-01-07T12:32:23.083462+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.083462+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.083462+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.819944+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.819944+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.824756+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49766 | TCP |
2025-01-07T12:32:23.973870+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.973870+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:23.973870+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.698249+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.698249+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.703088+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49767 | TCP |
2025-01-07T12:32:24.880636+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.880636+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:24.880636+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.606968+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.606968+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.629186+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49768 | TCP |
2025-01-07T12:32:25.829746+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.829746+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:25.829746+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.577641+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.577641+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.582437+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49769 | TCP |
2025-01-07T12:32:26.723358+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.723358+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:26.723358+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.430547+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.430547+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.435344+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49770 | TCP |
2025-01-07T12:32:27.582510+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.582510+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:27.582510+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.316402+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.316402+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.347249+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49771 | TCP |
2025-01-07T12:32:28.619054+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.619054+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:28.619054+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.349357+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.349357+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.354116+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49772 | TCP |
2025-01-07T12:32:29.504390+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.504390+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:29.504390+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.221935+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.221935+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.226727+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49773 | TCP |
2025-01-07T12:32:30.382420+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.382420+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:30.382420+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.091089+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.091089+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.100067+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49774 | TCP |
2025-01-07T12:32:31.256603+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.256603+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.256603+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.988683+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.988683+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:31.994435+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49775 | TCP |
2025-01-07T12:32:32.155614+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.155614+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.155614+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.891493+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.891493+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:32.896298+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49776 | TCP |
2025-01-07T12:32:33.032901+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.032901+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.032901+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.772124+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.772124+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.776885+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49777 | TCP |
2025-01-07T12:32:33.924411+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.924411+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:33.924411+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.665544+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.665544+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.670302+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49778 | TCP |
2025-01-07T12:32:34.814297+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.814297+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:34.814297+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.557501+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.557501+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.562339+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49779 | TCP |
2025-01-07T12:32:35.704114+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.704114+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:35.704114+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.434903+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.434903+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.439728+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49780 | TCP |
2025-01-07T12:32:36.588546+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.588546+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:36.588546+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.324672+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.324672+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.329468+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49781 | TCP |
2025-01-07T12:32:37.473584+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.473584+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:37.473584+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.192729+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.192729+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.197506+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49782 | TCP |
2025-01-07T12:32:38.360546+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.360546+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:38.360546+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.104383+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.104383+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.109271+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49783 | TCP |
2025-01-07T12:32:39.253004+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.253004+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.253004+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.957327+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.957327+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:39.962119+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49784 | TCP |
2025-01-07T12:32:40.116039+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.116039+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.116039+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.840674+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.840674+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.845506+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49785 | TCP |
2025-01-07T12:32:40.987508+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.987508+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:40.987508+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.705575+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.705575+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.710383+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49786 | TCP |
2025-01-07T12:32:41.861754+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.861754+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:41.861754+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.591000+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.591000+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.595767+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49787 | TCP |
2025-01-07T12:32:42.736881+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.736881+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:42.736881+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.480919+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.480919+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.485712+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49788 | TCP |
2025-01-07T12:32:43.630025+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.630025+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:43.630025+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.368376+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.368376+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.373199+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49789 | TCP |
2025-01-07T12:32:44.529692+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.529692+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:44.529692+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.260532+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.260532+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.265357+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49790 | TCP |
2025-01-07T12:32:45.411818+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.411818+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:45.411818+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.120173+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.120173+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.125040+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49791 | TCP |
2025-01-07T12:32:46.293457+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.293457+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:46.293457+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.026386+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.026386+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.031149+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49792 | TCP |
2025-01-07T12:32:47.179130+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.179130+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.179130+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.914990+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.914990+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:47.919801+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49793 | TCP |
2025-01-07T12:32:48.074620+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.074620+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.074620+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.821374+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.821374+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.826184+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49794 | TCP |
2025-01-07T12:32:48.984690+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.984690+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:48.984690+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.713193+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.713193+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.717963+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49795 | TCP |
2025-01-07T12:32:49.862472+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.862472+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:49.862472+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.609302+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.609302+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.614088+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49796 | TCP |
2025-01-07T12:32:50.758629+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.758629+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:50.758629+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.495138+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.495138+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.499943+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49798 | TCP |
2025-01-07T12:32:51.655150+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.655150+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:51.655150+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.422354+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.422354+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.427147+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49799 | TCP |
2025-01-07T12:32:52.567085+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.567085+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:52.567085+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.323679+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.323679+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.328635+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49800 | TCP |
2025-01-07T12:32:53.479625+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.479625+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:53.479625+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.426552+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.426552+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.431309+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49801 | TCP |
2025-01-07T12:32:54.584481+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.584481+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:54.584481+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.294818+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.294818+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.301802+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49803 | TCP |
2025-01-07T12:32:55.446641+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.446641+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:55.446641+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.184948+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.184948+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.189746+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49804 | TCP |
2025-01-07T12:32:56.333834+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.333834+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:56.333834+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.071831+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.071831+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.078314+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49810 | TCP |
2025-01-07T12:32:57.237309+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.237309+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.237309+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.962291+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.962291+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:57.967104+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49816 | TCP |
2025-01-07T12:32:58.121179+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.121179+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.121179+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.853828+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.853828+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:58.858821+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49822 | TCP |
2025-01-07T12:32:59.003527+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.003527+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.003527+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.720354+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.720354+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.725632+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49828 | TCP |
2025-01-07T12:32:59.878899+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.878899+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:32:59.878899+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.607397+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.607397+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.612312+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49837 | TCP |
2025-01-07T12:33:00.752916+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.752916+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:00.752916+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.490314+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.490314+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.502409+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49843 | TCP |
2025-01-07T12:33:01.662274+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.662274+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:01.662274+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.396007+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.396007+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.400864+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49849 | TCP |
2025-01-07T12:33:02.549471+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.549471+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:02.549471+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.285971+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.285971+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.290840+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49857 | TCP |
2025-01-07T12:33:03.476176+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.476176+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:03.476176+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.228379+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.228379+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.233933+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49863 | TCP |
2025-01-07T12:33:04.420628+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.420628+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:04.420628+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.135088+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.135088+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.139877+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49869 | TCP |
2025-01-07T12:33:05.289917+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.289917+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:05.289917+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.011427+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.011427+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.016218+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49875 | TCP |
2025-01-07T12:33:06.157706+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.157706+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.157706+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.894211+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.894211+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:06.899543+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49882 | TCP |
2025-01-07T12:33:07.168337+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.168337+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.168337+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.922188+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.922188+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:07.927128+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49888 | TCP |
2025-01-07T12:33:08.065316+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.065316+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.065316+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.808854+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.808854+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.813925+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49898 | TCP |
2025-01-07T12:33:08.983613+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.983613+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:08.983613+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:09.719346+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:09.719346+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:09.729144+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49904 | TCP |
2025-01-07T12:33:10.036766+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.036766+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.036766+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.771269+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.771269+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.776074+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49910 | TCP |
2025-01-07T12:33:10.925247+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.925247+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:10.925247+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.659311+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.659311+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.664061+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49918 | TCP |
2025-01-07T12:33:11.841098+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.841098+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:11.841098+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.593371+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.593371+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.599063+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49927 | TCP |
2025-01-07T12:33:12.953872+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.953872+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:12.953872+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.817700+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.817700+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.822457+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49933 | TCP |
2025-01-07T12:33:13.973579+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.973579+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:13.973579+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.698696+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.698696+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.703463+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49941 | TCP |
2025-01-07T12:33:14.849018+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.849018+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:14.849018+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.583031+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.583031+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.589754+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49950 | TCP |
2025-01-07T12:33:15.804831+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.804831+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:15.804831+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.529723+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.529723+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.534583+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49956 | TCP |
2025-01-07T12:33:16.682925+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.682925+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:16.682925+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.415506+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.415506+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.420281+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49962 | TCP |
2025-01-07T12:33:17.566164+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.566164+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:17.566164+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.317821+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.317821+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.323422+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49968 | TCP |
2025-01-07T12:33:18.615544+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.615544+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:18.615544+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.383367+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.383367+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.388466+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49974 | TCP |
2025-01-07T12:33:19.538604+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.538604+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:19.538604+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.262019+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.262019+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.267460+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49985 | TCP |
2025-01-07T12:33:20.414906+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.414906+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:20.414906+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.160919+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.160919+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.183793+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49991 | TCP |
2025-01-07T12:33:21.330905+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.330905+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:21.330905+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.097407+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.097407+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.102226+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 49997 | TCP |
2025-01-07T12:33:22.254058+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.254058+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.254058+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.988429+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.988429+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:22.993264+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50003 | TCP |
2025-01-07T12:33:23.161672+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.161672+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.161672+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.905645+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.905645+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:23.910512+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50010 | TCP |
2025-01-07T12:33:24.052352+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.052352+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.052352+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.785850+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.785850+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.790680+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50019 | TCP |
2025-01-07T12:33:24.970591+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.970591+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:24.970591+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.726265+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.726265+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.731038+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50026 | TCP |
2025-01-07T12:33:25.885204+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.885204+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:25.885204+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.611215+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.611215+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.615954+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50032 | TCP |
2025-01-07T12:33:26.771343+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.771343+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:26.771343+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.495067+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.495067+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.509460+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50038 | TCP |
2025-01-07T12:33:27.680964+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.680964+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:27.680964+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.406726+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.406726+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.411500+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50045 | TCP |
2025-01-07T12:33:28.568840+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.568840+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:28.568840+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.321667+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.321667+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.326539+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50054 | TCP |
2025-01-07T12:33:29.482591+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.482591+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:29.482591+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.200229+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.200229+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.205109+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50060 | TCP |
2025-01-07T12:33:30.418199+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.418199+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:30.418199+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.133820+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.133820+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.138590+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50067 | TCP |
2025-01-07T12:33:31.283218+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.283218+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:31.283218+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.021373+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.021373+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.026118+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50073 | TCP |
2025-01-07T12:33:32.183439+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.183439+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.183439+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.920405+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.920405+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:32.925198+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50079 | TCP |
2025-01-07T12:33:33.064766+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.064766+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.064766+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.838131+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.838131+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.842894+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50086 | TCP |
2025-01-07T12:33:33.993234+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.993234+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:33.993234+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.750375+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.750375+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.755137+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50094 | TCP |
2025-01-07T12:33:34.894254+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.894254+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:34.894254+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.663277+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.663277+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.668143+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50100 | TCP |
2025-01-07T12:33:35.815203+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.815203+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:35.815203+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.542571+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.542571+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.547440+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50106 | TCP |
2025-01-07T12:33:36.704614+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.704614+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:36.704614+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.462301+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.462301+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.467122+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50112 | TCP |
2025-01-07T12:33:37.618568+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.618568+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:37.618568+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.351026+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.351026+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.356590+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50114 | TCP |
2025-01-07T12:33:38.510581+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.510581+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:38.510581+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.277673+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.277673+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.284335+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50115 | TCP |
2025-01-07T12:33:39.427169+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.427169+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:39.427169+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.149202+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.149202+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.154005+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50116 | TCP |
2025-01-07T12:33:40.300156+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.300156+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:40.300156+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.026481+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.026481+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.031213+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50117 | TCP |
2025-01-07T12:33:41.178680+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.178680+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:41.178680+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.069136+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.069136+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.073941+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50118 | TCP |
2025-01-07T12:33:42.221421+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.221421+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.221421+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.943866+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.943866+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:42.948672+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50119 | TCP |
2025-01-07T12:33:43.104720+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.104720+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.104720+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.909799+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.909799+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:43.915043+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50120 | TCP |
2025-01-07T12:33:44.073014+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.073014+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.073014+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.821678+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.821678+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.826511+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50121 | TCP |
2025-01-07T12:33:44.978438+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.978438+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:44.978438+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.694009+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.694009+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.698774+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50122 | TCP |
2025-01-07T12:33:45.848723+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.848723+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:45.848723+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.585711+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.585711+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.590607+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50123 | TCP |
2025-01-07T12:33:46.736292+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.736292+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:46.736292+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.641378+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.641378+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.646236+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50124 | TCP |
2025-01-07T12:33:47.784973+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.784973+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:47.784973+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.495517+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.495517+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.501354+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50125 | TCP |
2025-01-07T12:33:48.642095+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.642095+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:48.642095+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.400961+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.400961+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.405760+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50126 | TCP |
2025-01-07T12:33:49.553437+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.553437+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:49.553437+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.308279+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.308279+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.313200+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50127 | TCP |
2025-01-07T12:33:50.465759+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.465759+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:50.465759+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.192040+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.192040+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.196923+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50128 | TCP |
2025-01-07T12:33:51.347194+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.347194+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:51.347194+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.077623+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.077623+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.082481+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50129 | TCP |
2025-01-07T12:33:52.222675+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.222675+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:52.222675+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.256311+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.256311+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.261119+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50130 | TCP |
2025-01-07T12:33:53.621252+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.621252+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:53.621252+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.360403+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.360403+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.365193+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50131 | TCP |
2025-01-07T12:33:54.519173+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.519173+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:54.519173+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.263205+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.263205+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.268000+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50132 | TCP |
2025-01-07T12:33:55.412870+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.412870+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:55.412870+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.154405+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.154405+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.172324+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50133 | TCP |
2025-01-07T12:33:56.462921+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.462921+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:56.462921+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.175145+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.175145+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.179973+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50134 | TCP |
2025-01-07T12:33:57.340598+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.340598+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:57.340598+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.088991+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.088991+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.093795+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50135 | TCP |
2025-01-07T12:33:58.239632+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.239632+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.239632+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.979379+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.979379+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:58.984297+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50136 | TCP |
2025-01-07T12:33:59.128389+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.128389+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.128389+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.832529+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.832529+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.837375+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50137 | TCP |
2025-01-07T12:33:59.979403+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.979403+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:33:59.979403+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:00.722379+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:00.722379+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:00.727211+0100 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 94.156.177.41 | 80 | 192.168.2.4 | 50138 | TCP |
2025-01-07T12:34:01.024157+0100 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.024157+0100 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.024157+0100 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.830408+0100 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
2025-01-07T12:34:01.830408+0100 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Jan 7, 2025 12:32:00.784879923 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:00.789793015 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:00.789906025 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:00.792104959 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:00.796874046 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:00.796955109 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:00.801721096 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.519831896 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.519906044 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.519942999 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.519984961 CET | 49735 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.524682999 CET | 80 | 49735 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.742580891 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.747385979 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.747620106 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.749722958 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.754550934 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:01.754698992 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:01.759449959 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.466386080 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.466466904 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.466654062 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.466944933 CET | 49737 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.471434116 CET | 80 | 49737 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.538327932 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.543133974 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.543251991 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.545078993 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.549812078 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:02.549907923 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:02.554666042 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.274969101 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.275142908 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.275190115 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.311649084 CET | 49739 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.316472054 CET | 80 | 49739 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.590361118 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.595285892 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.595364094 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.597286940 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.602046967 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:03.602113962 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:03.606889963 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.338901043 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.338921070 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.338994980 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.339142084 CET | 49740 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.346343994 CET | 80 | 49740 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.478646994 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.483460903 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.483536959 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.485605955 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.490382910 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:04.490437984 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:04.495224953 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.248064995 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.248744011 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.248794079 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.248902082 CET | 49741 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.262504101 CET | 80 | 49741 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.400047064 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.404875994 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.405174971 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.407216072 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.412033081 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:05.412187099 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:05.416913986 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009295940 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009313107 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009321928 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009365082 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.009385109 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009390116 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.009397030 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.009423971 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.009649038 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.009685040 CET | 49742 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.014422894 CET | 80 | 49742 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.175117970 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.180131912 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.180447102 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.182356119 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.187123060 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.187246084 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.192037106 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.934948921 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.935051918 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:07.935086012 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.935131073 CET | 49743 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:07.939892054 CET | 80 | 49743 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.072083950 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.076869965 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.076950073 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.078979969 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.083748102 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.083803892 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.088547945 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.818167925 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.818183899 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.818253994 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.818291903 CET | 49744 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.824776888 CET | 80 | 49744 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.963063955 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.967874050 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.967951059 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.969996929 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.974788904 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:08.974834919 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:08.979600906 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:09.731591940 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:09.731682062 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:09.731699944 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:09.731729984 CET | 49745 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:09.737549067 CET | 80 | 49745 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:09.874725103 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.066015959 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:10.066101074 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.068161011 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.073365927 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:10.073415041 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.078521013 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:10.792685986 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:10.792732000 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:10.797049999 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.802589893 CET | 49746 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:10.807323933 CET | 80 | 49746 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.202034950 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.207722902 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.207797050 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.218591928 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.223319054 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.223372936 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.228126049 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.917833090 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.917920113 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:11.917927027 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.917968035 CET | 49747 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:11.922696114 CET | 80 | 49747 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.105216980 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.110073090 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.110140085 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.112540960 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.117273092 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.117367983 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.122143030 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.853677034 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.853790045 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.853818893 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.853866100 CET | 49749 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.858606100 CET | 80 | 49749 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.992696047 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.997459888 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:12.997628927 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:12.999502897 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.004266977 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.004316092 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.009094954 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.756208897 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.756342888 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.756412983 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.756839037 CET | 49751 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.761637926 CET | 80 | 49751 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.916678905 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.921565056 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.921648026 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.924335957 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.931710958 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:13.932697058 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:13.937436104 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.646960020 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.647092104 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.647155046 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.647190094 CET | 49754 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.651916981 CET | 80 | 49754 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.793473959 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.798624992 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.798700094 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.800632954 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.805407047 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:14.805464983 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:14.810216904 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.593087912 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.593401909 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.593522072 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.593522072 CET | 49756 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.599338055 CET | 80 | 49756 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.756079912 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.760942936 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.761075974 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.764664888 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.769471884 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:15.769592047 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:15.774332047 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.533528090 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.533673048 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.533683062 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.533713102 CET | 49758 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.538408995 CET | 80 | 49758 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.682502031 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.687429905 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.687501907 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.689625978 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.694442034 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:16.694494009 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:16.699290037 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.444952011 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.444998980 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.445085049 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.445331097 CET | 49759 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.450376034 CET | 80 | 49759 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.609324932 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.614093065 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.614217043 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.616255999 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.621049881 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:17.621098995 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:17.625921965 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.365715981 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.365777969 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.365850925 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.365896940 CET | 49760 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.370631933 CET | 80 | 49760 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.512625933 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.517462969 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.517539024 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.519838095 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.524538994 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:18.524599075 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:18.529349089 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.255095005 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.255143881 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.255213022 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.255258083 CET | 49761 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.260026932 CET | 80 | 49761 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.401726007 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.406513929 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.406598091 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.408777952 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.413511038 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:19.413561106 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:19.418283939 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.161349058 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.161427975 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.161554098 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.161554098 CET | 49762 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.166304111 CET | 80 | 49762 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.307646990 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.312530041 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.312824011 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.314740896 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.319586039 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:20.319720030 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:20.324559927 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.055150032 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.055262089 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.055284977 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.055448055 CET | 49763 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.060111046 CET | 80 | 49763 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.195571899 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.200897932 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.200973034 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.203125954 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.208796024 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.208839893 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.213546991 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.994616032 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.994631052 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.994640112 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:21.994685888 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.994716883 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.994716883 CET | 49764 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:21.999489069 CET | 80 | 49764 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.174820900 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.179678917 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.179876089 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.185805082 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.190634012 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.190721035 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.195482016 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.906075954 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.906260014 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:22.907710075 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.920079947 CET | 49765 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:22.924877882 CET | 80 | 49765 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.069264889 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.074100018 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.074220896 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.078553915 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.083334923 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.083462000 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.088294029 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.819855928 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.819912910 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.819943905 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.819976091 CET | 49766 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.824755907 CET | 80 | 49766 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.961863995 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.966806889 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.966881037 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.969023943 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.973822117 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:23.973870039 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:23.978713036 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.698086023 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.698137045 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.698249102 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.698249102 CET | 49767 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.703088045 CET | 80 | 49767 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.862596989 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.867563963 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.867660046 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.875807047 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.880567074 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:24.880635977 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:24.885471106 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.606833935 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.606872082 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.606967926 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.624356985 CET | 49768 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.629185915 CET | 80 | 49768 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.818254948 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.823084116 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.823156118 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.824960947 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.829705000 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:25.829746008 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:25.834505081 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.577548981 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.577641010 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.577671051 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.577716112 CET | 49769 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.582437038 CET | 80 | 49769 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.711381912 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.716252089 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.716329098 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.718461037 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.723297119 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:26.723357916 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:26.729289055 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.430458069 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.430476904 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.430546999 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.430546999 CET | 49770 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.435343981 CET | 80 | 49770 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.570641041 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.575476885 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.575673103 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.577661037 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.582458973 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:27.582509995 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:27.587279081 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.316294909 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.316330910 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.316401958 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.342448950 CET | 49771 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.347249031 CET | 80 | 49771 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.606966972 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.611800909 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.611865997 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.614263058 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.619009972 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:28.619054079 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:28.623843908 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.349251032 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.349322081 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.349356890 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.349390984 CET | 49772 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.354115963 CET | 80 | 49772 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.492511034 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.497399092 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.497567892 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.499579906 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.504339933 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:29.504390001 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:29.509110928 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.221826077 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.221914053 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.221935034 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.221967936 CET | 49773 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.226727009 CET | 80 | 49773 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.370486975 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.375319958 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.375519991 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.377583981 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.382375002 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:30.382420063 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:30.387238026 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.090928078 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.090975046 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.091089010 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.095319986 CET | 49774 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.100066900 CET | 80 | 49774 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.243015051 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.248189926 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.248260975 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.250375986 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.256553888 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.256603003 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.261343002 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.988487959 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.988609076 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:31.988682985 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.989700079 CET | 49775 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:31.994435072 CET | 80 | 49775 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.140525103 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.147083998 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.147154093 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.149305105 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.155565023 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.155613899 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.161897898 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.891259909 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.891320944 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:32.891493082 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.891539097 CET | 49776 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:32.896297932 CET | 80 | 49776 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.021183968 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.025952101 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.026021957 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.028031111 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.032846928 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.032901049 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.037724972 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.772023916 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.772099018 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.772124052 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.772147894 CET | 49777 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.776885033 CET | 80 | 49777 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.911725998 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.916560888 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.916637897 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.918819904 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.924356937 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:33.924411058 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:33.929934025 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.665445089 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.665544033 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.665618896 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.665663004 CET | 49778 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.670301914 CET | 80 | 49778 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.802526951 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.807374954 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.807456017 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.809441090 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.814224958 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:34.814296961 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:34.819117069 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.557409048 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.557501078 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.557590008 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.557636976 CET | 49779 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.562339067 CET | 80 | 49779 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.692531109 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.697366953 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.697537899 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.699280977 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.704044104 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:35.704113960 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:35.708832979 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.434782982 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.434833050 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.434902906 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.434942961 CET | 49780 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.439728022 CET | 80 | 49780 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.568737030 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.573637962 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.574681997 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.583699942 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.588476896 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:36.588546038 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:36.593347073 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.324584961 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.324605942 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.324671984 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.324695110 CET | 49781 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.329468012 CET | 80 | 49781 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.461569071 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.466445923 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.466519117 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.468777895 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.473543882 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:37.473583937 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:37.478353024 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.192630053 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.192702055 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.192728996 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.192754030 CET | 49782 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.197505951 CET | 80 | 49782 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.348732948 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.353553057 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.353615046 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.355763912 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.360497952 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:38.360546112 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:38.365258932 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.104120970 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.104302883 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.104382992 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.104433060 CET | 49783 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.109271049 CET | 80 | 49783 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.241365910 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.246179104 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.246247053 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.248174906 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.252926111 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.253004074 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.257805109 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.957216978 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.957326889 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.957412004 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:39.957456112 CET | 49784 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:39.962119102 CET | 80 | 49784 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.103116035 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.108005047 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.108149052 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.109919071 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.114725113 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.116039038 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.120793104 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.837862968 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.837949038 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.840673923 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.840719938 CET | 49785 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.845505953 CET | 80 | 49785 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.974325895 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.980818987 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.980886936 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.982682943 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.987442017 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:40.987508059 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:40.993767977 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.705457926 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.705574989 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.705602884 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.705739021 CET | 49786 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.710382938 CET | 80 | 49786 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.850157976 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.855065107 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.855134964 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.856955051 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.861704111 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:41.861753941 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:41.866514921 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.590842962 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.590935946 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.591000080 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.591031075 CET | 49787 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.595767021 CET | 80 | 49787 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.725212097 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.730037928 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.730127096 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.732088089 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.736828089 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:42.736881018 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:42.741592884 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.480823994 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.480856895 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.480918884 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.480918884 CET | 49788 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.485712051 CET | 80 | 49788 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.618115902 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.623039007 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.623112917 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.625214100 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.629977942 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:43.630024910 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:43.634859085 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.368278027 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.368310928 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.368376017 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.368432045 CET | 49789 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.373198986 CET | 80 | 49789 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.517612934 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.522655010 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.522747040 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.524878025 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.529629946 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:44.529691935 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:44.534554005 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.260442972 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.260531902 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.260551929 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.260596991 CET | 49790 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.265357018 CET | 80 | 49790 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.399280071 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.404417992 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.404485941 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.406728983 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.411777973 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:45.411818027 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:45.416610003 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.120095968 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.120111942 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.120172977 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.120218039 CET | 49791 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.125040054 CET | 80 | 49791 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.281068087 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.285933018 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.286652088 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.288589954 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.293401003 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:46.293457031 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:46.298285007 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.026279926 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.026355028 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.026386023 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.026626110 CET | 49792 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.031148911 CET | 80 | 49792 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.167046070 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.171920061 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.172008038 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.173974037 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.179080963 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.179130077 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.184211016 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.914865971 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.914987087 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:47.914989948 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.915066004 CET | 49793 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:47.919800997 CET | 80 | 49793 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.059319973 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.064145088 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.066673994 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.068721056 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.073527098 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.074620008 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.079456091 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.821242094 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.821373940 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.821407080 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.821547031 CET | 49794 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.826184034 CET | 80 | 49794 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.972311974 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.977732897 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.977921963 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.979871988 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.984630108 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:48.984689951 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:48.989559889 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.713093996 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.713180065 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.713192940 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.713224888 CET | 49795 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.717962980 CET | 80 | 49795 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.850661039 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.855456114 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.855542898 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.857615948 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.862410069 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:49.862472057 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:49.867280006 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.609062910 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.609169006 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.609302044 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.609327078 CET | 49796 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.614088058 CET | 80 | 49796 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.745088100 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.749927998 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.750747919 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.752672911 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.757401943 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:50.758629084 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:50.763410091 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.495048046 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.495120049 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.495137930 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.495162010 CET | 49798 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.499943018 CET | 80 | 49798 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.643075943 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.647857904 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.647922993 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.650327921 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.655108929 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:51.655149937 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:51.659898996 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.422197104 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.422244072 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.422353983 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.422435999 CET | 49799 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.427146912 CET | 80 | 49799 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.555294037 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.560137987 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.562263012 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.562263012 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.567028046 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:52.567085028 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:52.571862936 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.323579073 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.323678970 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.323688984 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.323735952 CET | 49800 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.328634977 CET | 80 | 49800 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.465456009 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.470395088 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.470464945 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.472599030 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.479583979 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:53.479624987 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:53.484376907 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.426455021 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.426552057 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.426630974 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.426687002 CET | 49801 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.431308985 CET | 80 | 49801 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.572699070 CET | 49803 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.577450991 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.577538013 CET | 49803 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.579602957 CET | 49803 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.584427118 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:54.584481001 CET | 49803 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:54.589190006 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.294728041 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.294744968 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.294817924 CET | 49803 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:55.301801920 CET | 80 | 49803 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.434415102 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:55.439234972 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.439332008 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:55.441423893 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:55.446171045 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:55.446640968 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:55.451416969 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.184849024 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.184931993 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.184947968 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.184969902 CET | 49804 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.189745903 CET | 80 | 49804 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.321898937 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.326725006 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.326797962 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.328866005 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.333759069 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:56.333833933 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:56.338625908 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.071692944 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.071755886 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.071830988 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.071871042 CET | 49810 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.078314066 CET | 80 | 49810 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.225609064 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.230422020 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.230504990 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.232475996 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.237248898 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.237308979 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.242152929 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.962167978 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.962248087 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:57.962291002 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.962354898 CET | 49816 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:57.967103958 CET | 80 | 49816 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.109059095 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.113850117 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.113923073 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.116379976 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.121129036 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.121179104 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.125999928 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.853651047 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.853777885 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.853827953 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.853852987 CET | 49822 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.858820915 CET | 80 | 49822 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.991285086 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.996074915 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:58.996201038 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:58.998151064 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.003479004 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.003526926 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.008280993 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.720252037 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.720354080 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.720401049 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.720460892 CET | 49828 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.725631952 CET | 80 | 49828 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.867017031 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.871812105 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.871882915 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.874048948 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.878860950 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:32:59.878899097 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:32:59.883693933 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.607234955 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.607271910 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.607397079 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.607397079 CET | 49837 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.612312078 CET | 80 | 49837 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.741080046 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.745939970 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.748003960 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.748003960 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.752837896 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:00.752916098 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:00.757694006 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.490128040 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.490262985 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.490314007 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.497617960 CET | 49843 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.502408981 CET | 80 | 49843 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.650482893 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.655236006 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.655293941 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.657417059 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.662220001 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:01.662273884 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:01.667234898 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.395831108 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.395926952 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.396007061 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.396050930 CET | 49849 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.400863886 CET | 80 | 49849 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.537677050 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.542591095 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.542663097 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.544653893 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.549427986 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:02.549470901 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:02.554238081 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.285850048 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.285927057 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.285970926 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.285995007 CET | 49857 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.290839911 CET | 80 | 49857 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.462819099 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.467781067 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.467902899 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.469852924 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.476130009 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:03.476176023 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:03.482533932 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.228163004 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.228307009 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.228379011 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.228429079 CET | 49863 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.233932972 CET | 80 | 49863 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.406363964 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.411245108 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.412720919 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.415663958 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.420433998 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:04.420628071 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:04.425352097 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.134998083 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.135087967 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.135118961 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.135163069 CET | 49869 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.139877081 CET | 80 | 49869 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.278178930 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.282953978 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.283031940 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.285053968 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.289798975 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:05.289916992 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:05.294703007 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.011332035 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.011426926 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.011795044 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.011837006 CET | 49875 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.016217947 CET | 80 | 49875 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.145920992 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.150787115 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.150860071 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.152837992 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.157651901 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.157706022 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.162524939 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.893781900 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.894026995 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:06.894211054 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.894798994 CET | 49882 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:06.899543047 CET | 80 | 49882 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.154788971 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.159559011 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.160630941 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.163446903 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.168262959 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.168337107 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.173115015 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.922079086 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.922122002 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:07.922188044 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.922239065 CET | 49888 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:07.927128077 CET | 80 | 49888 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.053467035 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.058278084 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.058351040 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.060486078 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.065268993 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.065315962 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.070409060 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.808722019 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.808830976 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.808854103 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.808938980 CET | 49898 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.813925028 CET | 80 | 49898 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.969389915 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.974257946 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.974337101 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.978569984 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.983428001 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:08.983613014 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:08.988763094 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:09.719271898 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:09.719286919 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:09.719346046 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:09.722878933 CET | 49904 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:09.729144096 CET | 80 | 49904 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.016612053 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.021416903 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.021488905 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.029778004 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.034533024 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.036766052 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.041574001 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.771178007 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.771269083 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.771295071 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.771342039 CET | 49910 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.776073933 CET | 80 | 49910 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.912518978 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.918090105 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.918162107 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.920401096 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.925198078 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:10.925246954 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:10.929976940 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.659181118 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.659311056 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.659317970 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.659455061 CET | 49918 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.664061069 CET | 80 | 49918 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.827766895 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.832880974 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.833245993 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.835064888 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.840806961 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:11.841098070 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:11.846179962 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.593288898 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.593302965 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.593370914 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.594269991 CET | 49927 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.599062920 CET | 80 | 49927 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.941828966 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.946635962 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.946701050 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.949012995 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.953819990 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:12.953871965 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:12.958637953 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.817610025 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.817699909 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.817750931 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.817797899 CET | 49933 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.822457075 CET | 80 | 49933 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.960181952 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.966712952 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.966783047 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.968759060 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.973505020 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:13.973578930 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:13.978425026 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.698565960 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.698667049 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.698695898 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.698791981 CET | 49941 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.703463078 CET | 80 | 49941 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.834830999 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.839720011 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.839831114 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.841795921 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.848956108 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:14.849018097 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:14.853802919 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.582880974 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.582971096 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.583030939 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.584968090 CET | 49950 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.589754105 CET | 80 | 49950 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.791383982 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.796957970 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.797030926 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.799093008 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.804716110 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:15.804831028 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:15.810432911 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.529642105 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.529664993 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.529722929 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.529810905 CET | 49956 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.534583092 CET | 80 | 49956 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.667615891 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.672544956 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.672940016 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.678096056 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.682877064 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:16.682924986 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:16.687742949 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.415369034 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.415433884 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.415505886 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.415505886 CET | 49962 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.420280933 CET | 80 | 49962 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.554431915 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.559251070 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.559397936 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.561273098 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.565990925 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:17.566164017 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:17.570962906 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.317682028 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.317740917 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.317821026 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.318675041 CET | 49968 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.323421955 CET | 80 | 49968 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.602014065 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.607136965 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.607232094 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.609121084 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.615494013 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:18.615544081 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:18.620286942 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.383115053 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.383264065 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.383367062 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.383609056 CET | 49974 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.388465881 CET | 80 | 49974 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.525440931 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.530216932 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.530611038 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.532592058 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.537415028 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:19.538604021 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:19.543373108 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.261940002 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.261953115 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.262018919 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.262061119 CET | 49985 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.267460108 CET | 80 | 49985 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.403203011 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.407983065 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.408055067 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.410084963 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.414829969 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:20.414906025 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:20.419663906 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.160782099 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.160830975 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.160918951 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.178946972 CET | 49991 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.183793068 CET | 80 | 49991 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.318325996 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.323159933 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.323235035 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.325269938 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.330847025 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:21.330904961 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:21.335665941 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.097130060 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.097255945 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.097407103 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.097407103 CET | 49997 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.102226019 CET | 80 | 49997 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.242222071 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.247098923 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.247183084 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.249197006 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.254008055 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.254057884 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.258831024 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.988300085 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.988389969 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:22.988429070 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.990591049 CET | 50003 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:22.993263960 CET | 80 | 50003 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.148838043 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.153657913 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.154599905 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.156584024 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.161437035 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.161672115 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.166906118 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.905446053 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.905601025 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:23.905644894 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.905769110 CET | 50010 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:23.910511971 CET | 80 | 50010 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.040652990 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.045422077 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.045480013 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.047564983 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.052295923 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.052351952 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.057151079 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.784308910 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.784404993 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.785850048 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.785896063 CET | 50019 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.790679932 CET | 80 | 50019 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.957200050 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.962120056 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.962613106 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.964627981 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.969351053 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:24.970591068 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:24.975440979 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.726171970 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.726219893 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.726264954 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.726308107 CET | 50026 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.731038094 CET | 80 | 50026 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.873310089 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.878139973 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.878211975 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.880321026 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.885154963 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:25.885204077 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:25.889990091 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.611114979 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.611215115 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.611401081 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.611480951 CET | 50032 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.615953922 CET | 80 | 50032 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.759593964 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.764415979 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.764508009 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.766432047 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.771280050 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:26.771342993 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:26.776120901 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.494731903 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.494987011 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.495066881 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.504703999 CET | 50038 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.509459972 CET | 80 | 50038 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.666724920 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.671503067 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.671567917 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.673785925 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.680917025 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:27.680963993 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:27.685692072 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.405051947 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.405152082 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.406725883 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.406764984 CET | 50045 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.411499977 CET | 80 | 50045 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.551503897 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.557313919 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.557389021 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.559421062 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.565232038 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:28.568840027 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:28.573657036 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.321559906 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.321608067 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.321666956 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.321718931 CET | 50054 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.326539040 CET | 80 | 50054 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.462855101 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.467741966 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.467822075 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.469875097 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.482518911 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:29.482590914 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:29.487478018 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.200114965 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.200176954 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.200228930 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.200268984 CET | 50060 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.205108881 CET | 80 | 50060 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.406280041 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.411034107 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.411087036 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.413436890 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.418154001 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:30.418199062 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:30.422964096 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.133711100 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.133764982 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.133820057 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.133843899 CET | 50067 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.138590097 CET | 80 | 50067 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.271514893 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.276336908 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.276846886 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.278424025 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.283157110 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:31.283217907 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:31.289557934 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.021081924 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.021229029 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.021373034 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.021440029 CET | 50073 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.026118040 CET | 80 | 50073 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.171457052 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.176341057 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.176422119 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.178493023 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.183348894 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.183439016 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.188204050 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.920279026 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.920404911 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.920422077 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:32.920476913 CET | 50079 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:32.925198078 CET | 80 | 50079 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.053169012 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.057952881 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.058020115 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.059987068 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.064702988 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.064765930 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.069494009 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.838028908 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.838130951 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.838265896 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.838311911 CET | 50086 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.842894077 CET | 80 | 50086 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.979660034 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.984483004 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.986406088 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.988398075 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.993185997 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:33.993233919 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:33.997956038 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.750180006 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.750336885 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.750375032 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.750396967 CET | 50094 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.755136967 CET | 80 | 50094 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.882469893 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.887276888 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.887346029 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.889396906 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.894205093 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:34.894253969 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:34.899009943 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.663187027 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.663212061 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.663276911 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.663352966 CET | 50100 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.668143034 CET | 80 | 50100 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.803492069 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.808423042 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.808506966 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.810368061 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.815129995 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:35.815202951 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:35.820004940 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.542372942 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.542499065 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.542571068 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.542618036 CET | 50106 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.547440052 CET | 80 | 50106 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.687772989 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.692729950 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.696587086 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.698333025 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.703113079 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:36.704613924 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:36.709422112 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.462203979 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.462301016 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.462388992 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.462435007 CET | 50112 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.467122078 CET | 80 | 50112 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.603075027 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.607911110 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.610598087 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.612569094 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.617314100 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:37.618567944 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:37.623332977 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.350887060 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.351026058 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.351347923 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.351393938 CET | 50114 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.356590033 CET | 80 | 50114 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.494554996 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.499471903 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.502593994 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.504566908 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.509394884 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:38.510581017 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:38.515451908 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.277570963 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.277673006 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.277898073 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.277951956 CET | 50115 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.284334898 CET | 80 | 50115 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.411498070 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.416373968 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.418602943 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.422327995 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.427095890 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:39.427169085 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:39.431932926 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.149019003 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.149137974 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.149202108 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.149240017 CET | 50116 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.154005051 CET | 80 | 50116 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.288362026 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.293416977 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.293476105 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.295356035 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.300112009 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:40.300156116 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:40.304872990 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.026386976 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.026480913 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.026499033 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.026542902 CET | 50117 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.031213045 CET | 80 | 50117 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.166425943 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.171977997 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.172171116 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.173887968 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.178627968 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:41.178679943 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:41.183511972 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.068989992 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.069103956 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.069135904 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.069168091 CET | 50118 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.073940992 CET | 80 | 50118 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.209722996 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.214534998 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.214622974 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.216561079 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.221343040 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.221421003 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.226161957 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.943598986 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.943655014 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:42.943866014 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.943892956 CET | 50119 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:42.948672056 CET | 80 | 50119 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.089346886 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.094284058 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.096824884 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.098558903 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.103275061 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.104720116 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.109559059 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.909679890 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.909739017 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:43.909799099 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.909837008 CET | 50120 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:43.915043116 CET | 80 | 50120 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.058743000 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.064562082 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.064640999 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.067322969 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.072971106 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.073014021 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.078706980 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.821574926 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.821636915 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.821677923 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.821702003 CET | 50121 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.826510906 CET | 80 | 50121 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.966283083 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.971124887 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.971687078 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.973629951 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.978377104 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:44.978437901 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:44.983220100 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.693907022 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.694009066 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.694027901 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.694075108 CET | 50122 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.698774099 CET | 80 | 50122 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.836766005 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.841600895 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.841671944 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.843873024 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.848674059 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:45.848722935 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:45.853475094 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.585503101 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.585649014 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.585711002 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.585751057 CET | 50123 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.590606928 CET | 80 | 50123 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.724631071 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.729445934 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.729527950 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.731494904 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.736218929 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:46.736291885 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:46.741086006 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.641290903 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.641319990 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.641377926 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.641412020 CET | 50124 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.646235943 CET | 80 | 50124 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.773051023 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.778207064 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.778271914 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.780200005 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.784935951 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:47.784972906 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:47.789711952 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.495321035 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.495516062 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.495517015 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.495770931 CET | 50125 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.501353979 CET | 80 | 50125 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.630312920 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.635166883 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.635241032 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.637233973 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.642028093 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:48.642095089 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:48.646922112 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.400657892 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.400752068 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.400960922 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.400960922 CET | 50126 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.405760050 CET | 80 | 50126 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.541573048 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.546516895 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.546646118 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.548605919 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.553371906 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:49.553436995 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:49.558242083 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.308175087 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.308247089 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.308279037 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.308316946 CET | 50127 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.313199997 CET | 80 | 50127 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.453671932 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.458703041 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.458931923 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.460906982 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.465702057 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:50.465759039 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:50.470571041 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.191889048 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.192025900 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.192039967 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.192080975 CET | 50128 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.196923018 CET | 80 | 50128 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.335407019 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.340281010 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.340362072 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.342359066 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.347120047 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:51.347193956 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:51.351957083 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.077549934 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.077575922 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.077622890 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.077656031 CET | 50129 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.082480907 CET | 80 | 50129 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.210675955 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.215564966 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.215636969 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.217780113 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.222628117 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:52.222675085 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:52.227426052 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.256197929 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.256233931 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.256246090 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.256310940 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.256354094 CET | 50130 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.261118889 CET | 80 | 50130 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.609107971 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.614001989 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.614085913 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.616158962 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.620896101 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:53.621252060 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:53.626000881 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.360265017 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.360343933 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.360403061 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.360430956 CET | 50131 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.365192890 CET | 80 | 50131 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.507390022 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.512236118 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.512322903 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.514339924 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.519119978 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:54.519172907 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:54.524010897 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.261075974 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.263113022 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.263205051 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.263248920 CET | 50132 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.267999887 CET | 80 | 50132 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.400938988 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.405919075 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.405992031 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.408056021 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.412822962 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:55.412869930 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:55.417695045 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.154334068 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.154349089 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.154405117 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.167496920 CET | 50133 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.172323942 CET | 80 | 50133 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.450910091 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.455753088 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.455821991 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.458128929 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.462874889 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:56.462920904 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:56.467672110 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.175021887 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.175091982 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.175144911 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.175179958 CET | 50134 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.179972887 CET | 80 | 50134 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.324886084 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.329741955 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.332804918 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.334798098 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.339726925 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:57.340598106 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:57.345369101 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.088736057 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.088917017 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.088990927 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.089026928 CET | 50135 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.093795061 CET | 80 | 50135 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.227827072 CET | 50136 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.232640982 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.232728004 CET | 50136 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.234776974 CET | 50136 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.239554882 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.239631891 CET | 50136 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.245035887 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.979218006 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.979330063 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:58.979378939 CET | 50136 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:58.984297037 CET | 80 | 50136 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.116538048 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.121347904 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.121423960 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.123577118 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.128354073 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.128388882 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.133160114 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.832437992 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.832453966 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.832529068 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.832592964 CET | 50137 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.837374926 CET | 80 | 50137 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.967458963 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.972311974 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.972384930 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.974517107 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.979356050 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:33:59.979403019 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:33:59.984196901 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:00.722080946 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:00.722198009 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:00.722378969 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:00.722472906 CET | 50138 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:00.727210999 CET | 80 | 50138 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.011744976 CET | 50139 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:01.016669035 CET | 80 | 50139 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.017076969 CET | 50139 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:01.019305944 CET | 50139 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:01.024106026 CET | 80 | 50139 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.024157047 CET | 50139 | 80 | 192.168.2.4 | 94.156.177.41 |
Jan 7, 2025 12:34:01.028882027 CET | 80 | 50139 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.830324888 CET | 80 | 50139 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.830348015 CET | 80 | 50139 | 94.156.177.41 | 192.168.2.4 |
Jan 7, 2025 12:34:01.830408096 CET | 50139 | 80 | 192.168.2.4 | 94.156.177.41 |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.4 | 49735 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:00.792104959 CET | 243 | OUT | |
Jan 7, 2025 12:32:00.796955109 CET | 176 | OUT | |
Jan 7, 2025 12:32:01.519831896 CET | 185 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.4 | 49737 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:01.749722958 CET | 243 | OUT | |
Jan 7, 2025 12:32:01.754698992 CET | 176 | OUT | |
Jan 7, 2025 12:32:02.466386080 CET | 185 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.4 | 49739 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:02.545078993 CET | 243 | OUT | |
Jan 7, 2025 12:32:02.549907923 CET | 149 | OUT | |
Jan 7, 2025 12:32:03.274969101 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.4 | 49740 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:03.597286940 CET | 243 | OUT | |
Jan 7, 2025 12:32:03.602113962 CET | 149 | OUT | |
Jan 7, 2025 12:32:04.338901043 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.4 | 49741 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:04.485605955 CET | 243 | OUT | |
Jan 7, 2025 12:32:04.490437984 CET | 149 | OUT | |
Jan 7, 2025 12:32:05.248064995 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.4 | 49742 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:05.407216072 CET | 243 | OUT | |
Jan 7, 2025 12:32:05.412187099 CET | 149 | OUT | |
Jan 7, 2025 12:32:07.009295940 CET | 193 | IN | |
Jan 7, 2025 12:32:07.009385109 CET | 193 | IN | |
Jan 7, 2025 12:32:07.009649038 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.4 | 49743 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:07.182356119 CET | 243 | OUT | |
Jan 7, 2025 12:32:07.187246084 CET | 149 | OUT | |
Jan 7, 2025 12:32:07.934948921 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.4 | 49744 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:08.078979969 CET | 243 | OUT | |
Jan 7, 2025 12:32:08.083803892 CET | 149 | OUT | |
Jan 7, 2025 12:32:08.818167925 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.4 | 49745 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:08.969996929 CET | 243 | OUT | |
Jan 7, 2025 12:32:08.974834919 CET | 149 | OUT | |
Jan 7, 2025 12:32:09.731591940 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.4 | 49746 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:10.068161011 CET | 243 | OUT | |
Jan 7, 2025 12:32:10.073415041 CET | 149 | OUT | |
Jan 7, 2025 12:32:10.792685986 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.4 | 49747 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:11.218591928 CET | 243 | OUT | |
Jan 7, 2025 12:32:11.223372936 CET | 149 | OUT | |
Jan 7, 2025 12:32:11.917833090 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.4 | 49749 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:12.112540960 CET | 243 | OUT | |
Jan 7, 2025 12:32:12.117367983 CET | 149 | OUT | |
Jan 7, 2025 12:32:12.853677034 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.4 | 49751 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:12.999502897 CET | 243 | OUT | |
Jan 7, 2025 12:32:13.004316092 CET | 149 | OUT | |
Jan 7, 2025 12:32:13.756208897 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.4 | 49754 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:13.924335957 CET | 243 | OUT | |
Jan 7, 2025 12:32:13.932697058 CET | 149 | OUT | |
Jan 7, 2025 12:32:14.646960020 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.4 | 49756 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:14.800632954 CET | 243 | OUT | |
Jan 7, 2025 12:32:14.805464983 CET | 149 | OUT | |
Jan 7, 2025 12:32:15.593087912 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.4 | 49758 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:15.764664888 CET | 243 | OUT | |
Jan 7, 2025 12:32:15.769592047 CET | 149 | OUT | |
Jan 7, 2025 12:32:16.533528090 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.4 | 49759 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:16.689625978 CET | 243 | OUT | |
Jan 7, 2025 12:32:16.694494009 CET | 149 | OUT | |
Jan 7, 2025 12:32:17.444952011 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.4 | 49760 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:17.616255999 CET | 243 | OUT | |
Jan 7, 2025 12:32:17.621098995 CET | 149 | OUT | |
Jan 7, 2025 12:32:18.365715981 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.4 | 49761 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:18.519838095 CET | 243 | OUT | |
Jan 7, 2025 12:32:18.524599075 CET | 149 | OUT | |
Jan 7, 2025 12:32:19.255095005 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.4 | 49762 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:19.408777952 CET | 243 | OUT | |
Jan 7, 2025 12:32:19.413561106 CET | 149 | OUT | |
Jan 7, 2025 12:32:20.161349058 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.4 | 49763 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:20.314740896 CET | 243 | OUT | |
Jan 7, 2025 12:32:20.319720030 CET | 149 | OUT | |
Jan 7, 2025 12:32:21.055150032 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
21 | 192.168.2.4 | 49764 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:21.203125954 CET | 243 | OUT | |
Jan 7, 2025 12:32:21.208839893 CET | 149 | OUT | |
Jan 7, 2025 12:32:21.994616032 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
22 | 192.168.2.4 | 49765 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:22.185805082 CET | 243 | OUT | |
Jan 7, 2025 12:32:22.190721035 CET | 149 | OUT | |
Jan 7, 2025 12:32:22.906075954 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
23 | 192.168.2.4 | 49766 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:23.078553915 CET | 243 | OUT | |
Jan 7, 2025 12:32:23.083462000 CET | 149 | OUT | |
Jan 7, 2025 12:32:23.819855928 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
24 | 192.168.2.4 | 49767 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:23.969023943 CET | 243 | OUT | |
Jan 7, 2025 12:32:23.973870039 CET | 149 | OUT | |
Jan 7, 2025 12:32:24.698086023 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
25 | 192.168.2.4 | 49768 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:24.875807047 CET | 243 | OUT | |
Jan 7, 2025 12:32:24.880635977 CET | 149 | OUT | |
Jan 7, 2025 12:32:25.606833935 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
26 | 192.168.2.4 | 49769 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:25.824960947 CET | 243 | OUT | |
Jan 7, 2025 12:32:25.829746008 CET | 149 | OUT | |
Jan 7, 2025 12:32:26.577548981 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
27 | 192.168.2.4 | 49770 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:26.718461037 CET | 243 | OUT | |
Jan 7, 2025 12:32:26.723357916 CET | 149 | OUT | |
Jan 7, 2025 12:32:27.430458069 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
28 | 192.168.2.4 | 49771 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:27.577661037 CET | 243 | OUT | |
Jan 7, 2025 12:32:27.582509995 CET | 149 | OUT | |
Jan 7, 2025 12:32:28.316294909 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
29 | 192.168.2.4 | 49772 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:28.614263058 CET | 243 | OUT | |
Jan 7, 2025 12:32:28.619054079 CET | 149 | OUT | |
Jan 7, 2025 12:32:29.349251032 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
30 | 192.168.2.4 | 49773 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:29.499579906 CET | 243 | OUT | |
Jan 7, 2025 12:32:29.504390001 CET | 149 | OUT | |
Jan 7, 2025 12:32:30.221826077 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
31 | 192.168.2.4 | 49774 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:30.377583981 CET | 243 | OUT | |
Jan 7, 2025 12:32:30.382420063 CET | 149 | OUT | |
Jan 7, 2025 12:32:31.090928078 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
32 | 192.168.2.4 | 49775 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:31.250375986 CET | 243 | OUT | |
Jan 7, 2025 12:32:31.256603003 CET | 149 | OUT | |
Jan 7, 2025 12:32:31.988487959 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
33 | 192.168.2.4 | 49776 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:32.149305105 CET | 243 | OUT | |
Jan 7, 2025 12:32:32.155613899 CET | 149 | OUT | |
Jan 7, 2025 12:32:32.891259909 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
34 | 192.168.2.4 | 49777 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:33.028031111 CET | 243 | OUT | |
Jan 7, 2025 12:32:33.032901049 CET | 149 | OUT | |
Jan 7, 2025 12:32:33.772023916 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
35 | 192.168.2.4 | 49778 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:33.918819904 CET | 243 | OUT | |
Jan 7, 2025 12:32:33.924411058 CET | 149 | OUT | |
Jan 7, 2025 12:32:34.665445089 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
36 | 192.168.2.4 | 49779 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:34.809441090 CET | 243 | OUT | |
Jan 7, 2025 12:32:34.814296961 CET | 149 | OUT | |
Jan 7, 2025 12:32:35.557409048 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
37 | 192.168.2.4 | 49780 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:35.699280977 CET | 243 | OUT | |
Jan 7, 2025 12:32:35.704113960 CET | 149 | OUT | |
Jan 7, 2025 12:32:36.434782982 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
38 | 192.168.2.4 | 49781 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:36.583699942 CET | 243 | OUT | |
Jan 7, 2025 12:32:36.588546038 CET | 149 | OUT | |
Jan 7, 2025 12:32:37.324584961 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
39 | 192.168.2.4 | 49782 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:37.468777895 CET | 243 | OUT | |
Jan 7, 2025 12:32:37.473583937 CET | 149 | OUT | |
Jan 7, 2025 12:32:38.192630053 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
40 | 192.168.2.4 | 49783 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:38.355763912 CET | 243 | OUT | |
Jan 7, 2025 12:32:38.360546112 CET | 149 | OUT | |
Jan 7, 2025 12:32:39.104120970 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
41 | 192.168.2.4 | 49784 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:39.248174906 CET | 243 | OUT | |
Jan 7, 2025 12:32:39.253004074 CET | 149 | OUT | |
Jan 7, 2025 12:32:39.957216978 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
42 | 192.168.2.4 | 49785 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:40.109919071 CET | 243 | OUT | |
Jan 7, 2025 12:32:40.116039038 CET | 149 | OUT | |
Jan 7, 2025 12:32:40.837862968 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
43 | 192.168.2.4 | 49786 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:40.982682943 CET | 243 | OUT | |
Jan 7, 2025 12:32:40.987508059 CET | 149 | OUT | |
Jan 7, 2025 12:32:41.705457926 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
44 | 192.168.2.4 | 49787 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:41.856955051 CET | 243 | OUT | |
Jan 7, 2025 12:32:41.861753941 CET | 149 | OUT | |
Jan 7, 2025 12:32:42.590842962 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
45 | 192.168.2.4 | 49788 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:42.732088089 CET | 243 | OUT | |
Jan 7, 2025 12:32:42.736881018 CET | 149 | OUT | |
Jan 7, 2025 12:32:43.480823994 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
46 | 192.168.2.4 | 49789 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:43.625214100 CET | 243 | OUT | |
Jan 7, 2025 12:32:43.630024910 CET | 149 | OUT | |
Jan 7, 2025 12:32:44.368278027 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
47 | 192.168.2.4 | 49790 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:44.524878025 CET | 243 | OUT | |
Jan 7, 2025 12:32:44.529691935 CET | 149 | OUT | |
Jan 7, 2025 12:32:45.260442972 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
48 | 192.168.2.4 | 49791 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:45.406728983 CET | 243 | OUT | |
Jan 7, 2025 12:32:45.411818027 CET | 149 | OUT | |
Jan 7, 2025 12:32:46.120095968 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
49 | 192.168.2.4 | 49792 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:46.288589954 CET | 243 | OUT | |
Jan 7, 2025 12:32:46.293457031 CET | 149 | OUT | |
Jan 7, 2025 12:32:47.026279926 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
50 | 192.168.2.4 | 49793 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:47.173974037 CET | 243 | OUT | |
Jan 7, 2025 12:32:47.179130077 CET | 149 | OUT | |
Jan 7, 2025 12:32:47.914865971 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
51 | 192.168.2.4 | 49794 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:48.068721056 CET | 243 | OUT | |
Jan 7, 2025 12:32:48.074620008 CET | 149 | OUT | |
Jan 7, 2025 12:32:48.821242094 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
52 | 192.168.2.4 | 49795 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:48.979871988 CET | 243 | OUT | |
Jan 7, 2025 12:32:48.984689951 CET | 149 | OUT | |
Jan 7, 2025 12:32:49.713093996 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
53 | 192.168.2.4 | 49796 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:49.857615948 CET | 243 | OUT | |
Jan 7, 2025 12:32:49.862472057 CET | 149 | OUT | |
Jan 7, 2025 12:32:50.609062910 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
54 | 192.168.2.4 | 49798 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:50.752672911 CET | 243 | OUT | |
Jan 7, 2025 12:32:50.758629084 CET | 149 | OUT | |
Jan 7, 2025 12:32:51.495048046 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
55 | 192.168.2.4 | 49799 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:51.650327921 CET | 243 | OUT | |
Jan 7, 2025 12:32:51.655149937 CET | 149 | OUT | |
Jan 7, 2025 12:32:52.422197104 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
56 | 192.168.2.4 | 49800 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:52.562263012 CET | 243 | OUT | |
Jan 7, 2025 12:32:52.567085028 CET | 149 | OUT | |
Jan 7, 2025 12:32:53.323579073 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
57 | 192.168.2.4 | 49801 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:53.472599030 CET | 243 | OUT | |
Jan 7, 2025 12:32:53.479624987 CET | 149 | OUT | |
Jan 7, 2025 12:32:54.426455021 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
58 | 192.168.2.4 | 49803 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:54.579602957 CET | 243 | OUT | |
Jan 7, 2025 12:32:54.584481001 CET | 149 | OUT | |
Jan 7, 2025 12:32:55.294728041 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
59 | 192.168.2.4 | 49804 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:55.441423893 CET | 243 | OUT | |
Jan 7, 2025 12:32:55.446640968 CET | 149 | OUT | |
Jan 7, 2025 12:32:56.184849024 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
60 | 192.168.2.4 | 49810 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:56.328866005 CET | 243 | OUT | |
Jan 7, 2025 12:32:56.333833933 CET | 149 | OUT | |
Jan 7, 2025 12:32:57.071692944 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
61 | 192.168.2.4 | 49816 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:57.232475996 CET | 243 | OUT | |
Jan 7, 2025 12:32:57.237308979 CET | 149 | OUT | |
Jan 7, 2025 12:32:57.962167978 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
62 | 192.168.2.4 | 49822 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:58.116379976 CET | 243 | OUT | |
Jan 7, 2025 12:32:58.121179104 CET | 149 | OUT | |
Jan 7, 2025 12:32:58.853651047 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
63 | 192.168.2.4 | 49828 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:58.998151064 CET | 243 | OUT | |
Jan 7, 2025 12:32:59.003526926 CET | 149 | OUT | |
Jan 7, 2025 12:32:59.720252037 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
64 | 192.168.2.4 | 49837 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:32:59.874048948 CET | 243 | OUT | |
Jan 7, 2025 12:32:59.878899097 CET | 149 | OUT | |
Jan 7, 2025 12:33:00.607234955 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
65 | 192.168.2.4 | 49843 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:00.748003960 CET | 243 | OUT | |
Jan 7, 2025 12:33:00.752916098 CET | 149 | OUT | |
Jan 7, 2025 12:33:01.490128040 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
66 | 192.168.2.4 | 49849 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:01.657417059 CET | 243 | OUT | |
Jan 7, 2025 12:33:01.662273884 CET | 149 | OUT | |
Jan 7, 2025 12:33:02.395831108 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
67 | 192.168.2.4 | 49857 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:02.544653893 CET | 243 | OUT | |
Jan 7, 2025 12:33:02.549470901 CET | 149 | OUT | |
Jan 7, 2025 12:33:03.285850048 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
68 | 192.168.2.4 | 49863 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:03.469852924 CET | 243 | OUT | |
Jan 7, 2025 12:33:03.476176023 CET | 149 | OUT | |
Jan 7, 2025 12:33:04.228163004 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
69 | 192.168.2.4 | 49869 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:04.415663958 CET | 243 | OUT | |
Jan 7, 2025 12:33:04.420628071 CET | 149 | OUT | |
Jan 7, 2025 12:33:05.134998083 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
70 | 192.168.2.4 | 49875 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:05.285053968 CET | 243 | OUT | |
Jan 7, 2025 12:33:05.289916992 CET | 149 | OUT | |
Jan 7, 2025 12:33:06.011332035 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
71 | 192.168.2.4 | 49882 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:06.152837992 CET | 243 | OUT | |
Jan 7, 2025 12:33:06.157706022 CET | 149 | OUT | |
Jan 7, 2025 12:33:06.893781900 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
72 | 192.168.2.4 | 49888 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:07.163446903 CET | 243 | OUT | |
Jan 7, 2025 12:33:07.168337107 CET | 149 | OUT | |
Jan 7, 2025 12:33:07.922079086 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
73 | 192.168.2.4 | 49898 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:08.060486078 CET | 243 | OUT | |
Jan 7, 2025 12:33:08.065315962 CET | 149 | OUT | |
Jan 7, 2025 12:33:08.808722019 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
74 | 192.168.2.4 | 49904 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:08.978569984 CET | 243 | OUT | |
Jan 7, 2025 12:33:08.983613014 CET | 149 | OUT | |
Jan 7, 2025 12:33:09.719271898 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
75 | 192.168.2.4 | 49910 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:10.029778004 CET | 243 | OUT | |
Jan 7, 2025 12:33:10.036766052 CET | 149 | OUT | |
Jan 7, 2025 12:33:10.771178007 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
76 | 192.168.2.4 | 49918 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:10.920401096 CET | 243 | OUT | |
Jan 7, 2025 12:33:10.925246954 CET | 149 | OUT | |
Jan 7, 2025 12:33:11.659181118 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
77 | 192.168.2.4 | 49927 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:11.835064888 CET | 243 | OUT | |
Jan 7, 2025 12:33:11.841098070 CET | 149 | OUT | |
Jan 7, 2025 12:33:12.593288898 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
78 | 192.168.2.4 | 49933 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:12.949012995 CET | 243 | OUT | |
Jan 7, 2025 12:33:12.953871965 CET | 149 | OUT | |
Jan 7, 2025 12:33:13.817610025 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
79 | 192.168.2.4 | 49941 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:13.968759060 CET | 243 | OUT | |
Jan 7, 2025 12:33:13.973578930 CET | 149 | OUT | |
Jan 7, 2025 12:33:14.698565960 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
80 | 192.168.2.4 | 49950 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:14.841795921 CET | 243 | OUT | |
Jan 7, 2025 12:33:14.849018097 CET | 149 | OUT | |
Jan 7, 2025 12:33:15.582880974 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
81 | 192.168.2.4 | 49956 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:15.799093008 CET | 243 | OUT | |
Jan 7, 2025 12:33:15.804831028 CET | 149 | OUT | |
Jan 7, 2025 12:33:16.529642105 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
82 | 192.168.2.4 | 49962 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:16.678096056 CET | 243 | OUT | |
Jan 7, 2025 12:33:16.682924986 CET | 149 | OUT | |
Jan 7, 2025 12:33:17.415369034 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
83 | 192.168.2.4 | 49968 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:17.561273098 CET | 243 | OUT | |
Jan 7, 2025 12:33:17.566164017 CET | 149 | OUT | |
Jan 7, 2025 12:33:18.317682028 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
84 | 192.168.2.4 | 49974 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:18.609121084 CET | 243 | OUT | |
Jan 7, 2025 12:33:18.615544081 CET | 149 | OUT | |
Jan 7, 2025 12:33:19.383115053 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
85 | 192.168.2.4 | 49985 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:19.532592058 CET | 243 | OUT | |
Jan 7, 2025 12:33:19.538604021 CET | 149 | OUT | |
Jan 7, 2025 12:33:20.261940002 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
86 | 192.168.2.4 | 49991 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:20.410084963 CET | 243 | OUT | |
Jan 7, 2025 12:33:20.414906025 CET | 149 | OUT | |
Jan 7, 2025 12:33:21.160782099 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
87 | 192.168.2.4 | 49997 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:21.325269938 CET | 243 | OUT | |
Jan 7, 2025 12:33:21.330904961 CET | 149 | OUT | |
Jan 7, 2025 12:33:22.097130060 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
88 | 192.168.2.4 | 50003 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:22.249197006 CET | 243 | OUT | |
Jan 7, 2025 12:33:22.254057884 CET | 149 | OUT | |
Jan 7, 2025 12:33:22.988300085 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
89 | 192.168.2.4 | 50010 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:23.156584024 CET | 243 | OUT | |
Jan 7, 2025 12:33:23.161672115 CET | 149 | OUT | |
Jan 7, 2025 12:33:23.905446053 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
90 | 192.168.2.4 | 50019 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:24.047564983 CET | 243 | OUT | |
Jan 7, 2025 12:33:24.052351952 CET | 149 | OUT | |
Jan 7, 2025 12:33:24.784308910 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
91 | 192.168.2.4 | 50026 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:24.964627981 CET | 243 | OUT | |
Jan 7, 2025 12:33:24.970591068 CET | 149 | OUT | |
Jan 7, 2025 12:33:25.726171970 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
92 | 192.168.2.4 | 50032 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:25.880321026 CET | 243 | OUT | |
Jan 7, 2025 12:33:25.885204077 CET | 149 | OUT | |
Jan 7, 2025 12:33:26.611114979 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
93 | 192.168.2.4 | 50038 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:26.766432047 CET | 243 | OUT | |
Jan 7, 2025 12:33:26.771342993 CET | 149 | OUT | |
Jan 7, 2025 12:33:27.494731903 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
94 | 192.168.2.4 | 50045 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:27.673785925 CET | 243 | OUT | |
Jan 7, 2025 12:33:27.680963993 CET | 149 | OUT | |
Jan 7, 2025 12:33:28.405051947 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
95 | 192.168.2.4 | 50054 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:28.559421062 CET | 243 | OUT | |
Jan 7, 2025 12:33:28.568840027 CET | 149 | OUT | |
Jan 7, 2025 12:33:29.321559906 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
96 | 192.168.2.4 | 50060 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:29.469875097 CET | 243 | OUT | |
Jan 7, 2025 12:33:29.482590914 CET | 149 | OUT | |
Jan 7, 2025 12:33:30.200114965 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
97 | 192.168.2.4 | 50067 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:30.413436890 CET | 243 | OUT | |
Jan 7, 2025 12:33:30.418199062 CET | 149 | OUT | |
Jan 7, 2025 12:33:31.133711100 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
98 | 192.168.2.4 | 50073 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:31.278424025 CET | 243 | OUT | |
Jan 7, 2025 12:33:31.283217907 CET | 149 | OUT | |
Jan 7, 2025 12:33:32.021081924 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
99 | 192.168.2.4 | 50079 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:32.178493023 CET | 243 | OUT | |
Jan 7, 2025 12:33:32.183439016 CET | 149 | OUT | |
Jan 7, 2025 12:33:32.920279026 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
100 | 192.168.2.4 | 50086 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:33.059987068 CET | 243 | OUT | |
Jan 7, 2025 12:33:33.064765930 CET | 149 | OUT | |
Jan 7, 2025 12:33:33.838028908 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
101 | 192.168.2.4 | 50094 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:33.988398075 CET | 243 | OUT | |
Jan 7, 2025 12:33:33.993233919 CET | 149 | OUT | |
Jan 7, 2025 12:33:34.750180006 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
102 | 192.168.2.4 | 50100 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:34.889396906 CET | 243 | OUT | |
Jan 7, 2025 12:33:34.894253969 CET | 149 | OUT | |
Jan 7, 2025 12:33:35.663187027 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
103 | 192.168.2.4 | 50106 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:35.810368061 CET | 243 | OUT | |
Jan 7, 2025 12:33:35.815202951 CET | 149 | OUT | |
Jan 7, 2025 12:33:36.542372942 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
104 | 192.168.2.4 | 50112 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:36.698333025 CET | 243 | OUT | |
Jan 7, 2025 12:33:36.704613924 CET | 149 | OUT | |
Jan 7, 2025 12:33:37.462203979 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
105 | 192.168.2.4 | 50114 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:37.612569094 CET | 243 | OUT | |
Jan 7, 2025 12:33:37.618567944 CET | 149 | OUT | |
Jan 7, 2025 12:33:38.350887060 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
106 | 192.168.2.4 | 50115 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:38.504566908 CET | 243 | OUT | |
Jan 7, 2025 12:33:38.510581017 CET | 149 | OUT | |
Jan 7, 2025 12:33:39.277570963 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
107 | 192.168.2.4 | 50116 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:39.422327995 CET | 243 | OUT | |
Jan 7, 2025 12:33:39.427169085 CET | 149 | OUT | |
Jan 7, 2025 12:33:40.149019003 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
108 | 192.168.2.4 | 50117 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:40.295356035 CET | 243 | OUT | |
Jan 7, 2025 12:33:40.300156116 CET | 149 | OUT | |
Jan 7, 2025 12:33:41.026386976 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
109 | 192.168.2.4 | 50118 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:41.173887968 CET | 243 | OUT | |
Jan 7, 2025 12:33:41.178679943 CET | 149 | OUT | |
Jan 7, 2025 12:33:42.068989992 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
110 | 192.168.2.4 | 50119 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:42.216561079 CET | 243 | OUT | |
Jan 7, 2025 12:33:42.221421003 CET | 149 | OUT | |
Jan 7, 2025 12:33:42.943598986 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
111 | 192.168.2.4 | 50120 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:43.098558903 CET | 243 | OUT | |
Jan 7, 2025 12:33:43.104720116 CET | 149 | OUT | |
Jan 7, 2025 12:33:43.909679890 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
112 | 192.168.2.4 | 50121 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:44.067322969 CET | 243 | OUT | |
Jan 7, 2025 12:33:44.073014021 CET | 149 | OUT | |
Jan 7, 2025 12:33:44.821574926 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
113 | 192.168.2.4 | 50122 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:44.973629951 CET | 243 | OUT | |
Jan 7, 2025 12:33:44.978437901 CET | 149 | OUT | |
Jan 7, 2025 12:33:45.693907022 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
114 | 192.168.2.4 | 50123 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:45.843873024 CET | 243 | OUT | |
Jan 7, 2025 12:33:45.848722935 CET | 149 | OUT | |
Jan 7, 2025 12:33:46.585503101 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
115 | 192.168.2.4 | 50124 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:46.731494904 CET | 243 | OUT | |
Jan 7, 2025 12:33:46.736291885 CET | 149 | OUT | |
Jan 7, 2025 12:33:47.641290903 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
116 | 192.168.2.4 | 50125 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:47.780200005 CET | 243 | OUT | |
Jan 7, 2025 12:33:47.784972906 CET | 149 | OUT | |
Jan 7, 2025 12:33:48.495321035 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
117 | 192.168.2.4 | 50126 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:48.637233973 CET | 243 | OUT | |
Jan 7, 2025 12:33:48.642095089 CET | 149 | OUT | |
Jan 7, 2025 12:33:49.400657892 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
118 | 192.168.2.4 | 50127 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:49.548605919 CET | 243 | OUT | |
Jan 7, 2025 12:33:49.553436995 CET | 149 | OUT | |
Jan 7, 2025 12:33:50.308175087 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
119 | 192.168.2.4 | 50128 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:50.460906982 CET | 243 | OUT | |
Jan 7, 2025 12:33:50.465759039 CET | 149 | OUT | |
Jan 7, 2025 12:33:51.191889048 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
120 | 192.168.2.4 | 50129 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:51.342359066 CET | 243 | OUT | |
Jan 7, 2025 12:33:51.347193956 CET | 149 | OUT | |
Jan 7, 2025 12:33:52.077549934 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
121 | 192.168.2.4 | 50130 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:52.217780113 CET | 243 | OUT | |
Jan 7, 2025 12:33:52.222675085 CET | 149 | OUT | |
Jan 7, 2025 12:33:53.256197929 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
122 | 192.168.2.4 | 50131 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:53.616158962 CET | 243 | OUT | |
Jan 7, 2025 12:33:53.621252060 CET | 149 | OUT | |
Jan 7, 2025 12:33:54.360265017 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
123 | 192.168.2.4 | 50132 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:54.514339924 CET | 243 | OUT | |
Jan 7, 2025 12:33:54.519172907 CET | 149 | OUT | |
Jan 7, 2025 12:33:55.261075974 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
124 | 192.168.2.4 | 50133 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:55.408056021 CET | 243 | OUT | |
Jan 7, 2025 12:33:55.412869930 CET | 149 | OUT | |
Jan 7, 2025 12:33:56.154334068 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
125 | 192.168.2.4 | 50134 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:56.458128929 CET | 243 | OUT | |
Jan 7, 2025 12:33:56.462920904 CET | 149 | OUT | |
Jan 7, 2025 12:33:57.175021887 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
126 | 192.168.2.4 | 50135 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:57.334798098 CET | 243 | OUT | |
Jan 7, 2025 12:33:57.340598106 CET | 149 | OUT | |
Jan 7, 2025 12:33:58.088736057 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
127 | 192.168.2.4 | 50136 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:58.234776974 CET | 243 | OUT | |
Jan 7, 2025 12:33:58.239631891 CET | 149 | OUT | |
Jan 7, 2025 12:33:58.979218006 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
128 | 192.168.2.4 | 50137 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:59.123577118 CET | 243 | OUT | |
Jan 7, 2025 12:33:59.128388882 CET | 149 | OUT | |
Jan 7, 2025 12:33:59.832437992 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
129 | 192.168.2.4 | 50138 | 94.156.177.41 | 80 | 7772 | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:33:59.974517107 CET | 243 | OUT | |
Jan 7, 2025 12:33:59.979403019 CET | 149 | OUT | |
Jan 7, 2025 12:34:00.722080946 CET | 193 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port |
---|---|---|---|---|
130 | 192.168.2.4 | 50139 | 94.156.177.41 | 80 |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Jan 7, 2025 12:34:01.019305944 CET | 243 | OUT | |
Jan 7, 2025 12:34:01.024157047 CET | 149 | OUT | |
Jan 7, 2025 12:34:01.830324888 CET | 193 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 06:31:54 |
Start date: | 07/01/2025 |
Path: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xce0000 |
File size: | 725'512 bytes |
MD5 hash: | FF0A37E1048052C58526A9C38EFC1954 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 2 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xb20000 |
File size: | 433'152 bytes |
MD5 hash: | C32CA4ACFCC635EC1EA6ED8A34DF5FAC |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 3 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7699e0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 4 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xb20000 |
File size: | 433'152 bytes |
MD5 hash: | C32CA4ACFCC635EC1EA6ED8A34DF5FAC |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 5 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7699e0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 6 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\SysWOW64\schtasks.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x430000 |
File size: | 187'904 bytes |
MD5 hash: | 48C2FE20575769DE916F48EF0676A965 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 7 |
Start time: | 06:31:57 |
Start date: | 07/01/2025 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7699e0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 8 |
Start time: | 06:31:58 |
Start date: | 07/01/2025 |
Path: | C:\Users\user\Desktop\Quotation2025-0107pdf.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x4e0000 |
File size: | 725'512 bytes |
MD5 hash: | FF0A37E1048052C58526A9C38EFC1954 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | false |
Target ID: | 9 |
Start time: | 06:32:00 |
Start date: | 07/01/2025 |
Path: | C:\Users\user\AppData\Roaming\mexnJkivovwH.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x90000 |
File size: | 725'512 bytes |
MD5 hash: | FF0A37E1048052C58526A9C38EFC1954 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 10 |
Start time: | 06:32:00 |
Start date: | 07/01/2025 |
Path: | C:\Windows\System32\wbem\WmiPrvSE.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff693ab0000 |
File size: | 496'640 bytes |
MD5 hash: | 60FF40CFD7FB8FE41EE4FE9AE5FE1C51 |
Has elevated privileges: | true |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 11 |
Start time: | 06:32:03 |
Start date: | 07/01/2025 |
Path: | C:\Windows\SysWOW64\schtasks.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x430000 |
File size: | 187'904 bytes |
MD5 hash: | 48C2FE20575769DE916F48EF0676A965 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 12 |
Start time: | 06:32:03 |
Start date: | 07/01/2025 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff7699e0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 13 |
Start time: | 06:32:03 |
Start date: | 07/01/2025 |
Path: | C:\Users\user\AppData\Roaming\mexnJkivovwH.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x8c0000 |
File size: | 725'512 bytes |
MD5 hash: | FF0A37E1048052C58526A9C38EFC1954 |
Has elevated privileges: | false |
Has administrator privileges: | false |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Has exited: | true |
Execution Graph
Execution Coverage: | 14.6% |
Dynamic/Decrypted Code Coverage: | 100% |
Signature Coverage: | 6.8% |
Total number of Nodes: | 219 |
Total number of Limit Nodes: | 14 |
Graph
Function 0A1B0730 Relevance: 8.5, Strings: 6, Instructions: 1029COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C35F9 Relevance: 2.8, Strings: 2, Instructions: 292COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C3610 Relevance: 2.8, Strings: 2, Instructions: 290COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C143F Relevance: 2.7, Strings: 2, Instructions: 211COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C1478 Relevance: 2.7, Strings: 2, Instructions: 195COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C07F4 Relevance: 1.6, APIs: 1, Instructions: 103nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9751 Relevance: 1.6, APIs: 1, Instructions: 102nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018CA298 Relevance: 1.5, Strings: 1, Instructions: 258COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A08B260 Relevance: .5, Instructions: 505COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 12512A30 Relevance: .4, Instructions: 405COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03051469 Relevance: .3, Instructions: 272COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03051478 Relevance: .3, Instructions: 265COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305C324 Relevance: .3, Instructions: 253COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305C318 Relevance: .2, Instructions: 224COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305D351 Relevance: .2, Instructions: 219COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C8568 Relevance: .2, Instructions: 175COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C1CE8 Relevance: .2, Instructions: 174COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B38C0 Relevance: .2, Instructions: 150COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9547 Relevance: .1, Instructions: 135COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9558 Relevance: .1, Instructions: 133COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C2710 Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B38D9 Relevance: .1, Instructions: 66COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDF34 Relevance: 7.3, APIs: 1, Strings: 3, Instructions: 326processCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDF40 Relevance: 7.3, APIs: 1, Strings: 3, Instructions: 321processCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03058628 Relevance: 6.1, APIs: 4, Instructions: 139threadCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03058638 Relevance: 6.1, APIs: 4, Instructions: 128threadCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03056250 Relevance: 1.7, APIs: 1, Instructions: 228COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305CF24 Relevance: 1.7, APIs: 1, Instructions: 192COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305CF30 Relevance: 1.7, APIs: 1, Instructions: 182COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03050006 Relevance: 1.6, APIs: 1, Instructions: 145COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A0857B8 Relevance: 1.6, APIs: 1, Instructions: 128COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A0857C0 Relevance: 1.6, APIs: 1, Instructions: 126COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03050040 Relevance: 1.6, APIs: 1, Instructions: 123COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305887A Relevance: 1.6, APIs: 1, Instructions: 113COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDD0A Relevance: 1.6, APIs: 1, Instructions: 110COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03058880 Relevance: 1.6, APIs: 1, Instructions: 108COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDD10 Relevance: 1.6, APIs: 1, Instructions: 106COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C8444 Relevance: 1.6, APIs: 1, Instructions: 105memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDA90 Relevance: 1.6, APIs: 1, Instructions: 103memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BDA98 Relevance: 1.6, APIs: 1, Instructions: 101memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BD968 Relevance: 1.6, APIs: 1, Instructions: 99threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305C424 Relevance: 1.6, APIs: 1, Instructions: 97COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C8468 Relevance: 1.6, APIs: 1, Instructions: 94memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BD970 Relevance: 1.6, APIs: 1, Instructions: 94threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 12511BF9 Relevance: 1.6, APIs: 1, Instructions: 90windowCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 12511C00 Relevance: 1.6, APIs: 1, Instructions: 85windowCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9EA0 Relevance: 1.6, APIs: 1, Instructions: 81COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 03056440 Relevance: 1.6, APIs: 1, Instructions: 76COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BD440 Relevance: 1.6, APIs: 1, Instructions: 75threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BD448 Relevance: 1.6, APIs: 1, Instructions: 73threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9EAC Relevance: 1.3, APIs: 1, Instructions: 73COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0127D3EC Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0128D01C Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0128D1D4 Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0127D3E7 Relevance: .1, Instructions: 56COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0128D1CF Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0128D017 Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A084D38 Relevance: 6.9, Strings: 5, Instructions: 621COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B0720 Relevance: 4.0, Strings: 3, Instructions: 239COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C5BD0 Relevance: 3.9, Strings: 3, Instructions: 118COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C5BE0 Relevance: 3.9, Strings: 3, Instructions: 114COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C1728 Relevance: 2.8, Strings: 2, Instructions: 253COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B0428 Relevance: 1.4, Strings: 1, Instructions: 168COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B0448 Relevance: 1.4, Strings: 1, Instructions: 159COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C56D0 Relevance: 1.4, Strings: 1, Instructions: 121COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C3A8A Relevance: 1.4, Strings: 1, Instructions: 118COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C56E0 Relevance: 1.4, Strings: 1, Instructions: 113COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305B208 Relevance: .3, Instructions: 315COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BCB50 Relevance: .3, Instructions: 312COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BB8B0 Relevance: .3, Instructions: 312COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BB040 Relevance: .3, Instructions: 312COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BB478 Relevance: .3, Instructions: 312COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BD538 Relevance: .3, Instructions: 312COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A087394 Relevance: .3, Instructions: 280COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 030591EC Relevance: .3, Instructions: 264COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A08B2BC Relevance: .2, Instructions: 213COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A08CF30 Relevance: .2, Instructions: 212COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C5908 Relevance: .2, Instructions: 188COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1B2C68 Relevance: .2, Instructions: 188COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C5918 Relevance: .2, Instructions: 185COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C8838 Relevance: .2, Instructions: 158COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0A1BB00E Relevance: .2, Instructions: 153COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C8828 Relevance: .2, Instructions: 152COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C5DC8 Relevance: .1, Instructions: 112COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305DE68 Relevance: .1, Instructions: 93COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0305C36C Relevance: .1, Instructions: 88COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9870 Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C9860 Relevance: .1, Instructions: 71COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 018C08D8 Relevance: .1, Instructions: 65COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 14.3% |
Dynamic/Decrypted Code Coverage: | 100% |
Signature Coverage: | 0% |
Total number of Nodes: | 261 |
Total number of Limit Nodes: | 21 |
Graph
Function 00A707F4 Relevance: 1.6, APIs: 1, Instructions: 103nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A79751 Relevance: 1.6, APIs: 1, Instructions: 101nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3E214 Relevance: 7.3, APIs: 1, Strings: 3, Instructions: 325processCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3E220 Relevance: 7.3, APIs: 1, Strings: 3, Instructions: 321processCOMMON
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F8628 Relevance: 6.1, APIs: 4, Instructions: 138threadCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F8638 Relevance: 6.1, APIs: 4, Instructions: 128threadCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Control-flow Graph
APIs |
|
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A781A0 Relevance: 1.9, APIs: 1, Instructions: 438memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F6250 Relevance: 1.7, APIs: 1, Instructions: 227COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F001C Relevance: 1.6, APIs: 1, Instructions: 145COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F0040 Relevance: 1.6, APIs: 1, Instructions: 123COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F887B Relevance: 1.6, APIs: 1, Instructions: 112COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DFE8 Relevance: 1.6, APIs: 1, Instructions: 109COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F8880 Relevance: 1.6, APIs: 1, Instructions: 108COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DD70 Relevance: 1.6, APIs: 1, Instructions: 107memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DFF0 Relevance: 1.6, APIs: 1, Instructions: 106COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DD78 Relevance: 1.6, APIs: 1, Instructions: 101memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DC48 Relevance: 1.6, APIs: 1, Instructions: 99threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023FC424 Relevance: 1.6, APIs: 1, Instructions: 97COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A78468 Relevance: 1.6, APIs: 1, Instructions: 94memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3DC50 Relevance: 1.6, APIs: 1, Instructions: 94threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 04A911B0 Relevance: 1.6, APIs: 1, Instructions: 88windowCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 04A911B8 Relevance: 1.6, APIs: 1, Instructions: 85windowCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A79EA0 Relevance: 1.6, APIs: 1, Instructions: 81COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A7A7B0 Relevance: 1.6, APIs: 1, Instructions: 81COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 023F6440 Relevance: 1.6, APIs: 1, Instructions: 76COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3D725 Relevance: 1.6, APIs: 1, Instructions: 75threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 08F3D728 Relevance: 1.6, APIs: 1, Instructions: 73threadCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A7A8A8 Relevance: 1.3, APIs: 1, Instructions: 75COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00A79EAC Relevance: 1.3, APIs: 1, Instructions: 73COMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006ED4D8 Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0080D1D4 Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0080D01C Relevance: .1, Instructions: 72COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 006ED4D3 Relevance: .1, Instructions: 56COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0080D017 Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0080D1CF Relevance: .1, Instructions: 53COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 3% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 1.3% |
Total number of Nodes: | 300 |
Total number of Limit Nodes: | 13 |
Graph
Function 00402B7C Relevance: 3.0, APIs: 2, Instructions: 20memoryCOMMON
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404DF3 Relevance: 1.5, APIs: 1, Instructions: 13networkCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00402C1F Relevance: 1.5, APIs: 1, Instructions: 12libraryCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00413A3F Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 0040D069 Relevance: 12.6, Strings: 10, Instructions: 138COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404ED4 Relevance: 1.5, APIs: 1, Instructions: 9networkCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 0040317B Relevance: .0, Instructions: 46COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404E17 Relevance: 7.6, APIs: 5, Instructions: 72networkCOMMON
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|