Windows
Analysis Report
http://dasmalwerk.eu/
Overview
Detection
Score: | 56 |
Range: | 0 - 100 |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
chrome.exe (PID: 5916 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --s tart-maxim ized "abou t:blank" MD5: E81F54E6C1129887AEA47E7D092680BF) chrome.exe (PID: 4328 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" --ty pe=utility --utility -sub-type= network.mo jom.Networ kService - -lang=en-U S --servic e-sandbox- type=none --no-pre-r ead-main-d ll --field -trial-han dle=2020,i ,119016372 8719312340 5,16153164 5785124138 47,262144 --disable- features=O ptimizatio nGuideMode lDownloadi ng,Optimiz ationHints ,Optimizat ionHintsFe tching,Opt imizationT argetPredi ction --va riations-s eed-versio n --mojo-p latform-ch annel-hand le=1740 /p refetch:3 MD5: E81F54E6C1129887AEA47E7D092680BF)
chrome.exe (PID: 6964 cmdline:
"C:\Progra m Files\Go ogle\Chrom e\Applicat ion\chrome .exe" "htt p://dasmal werk.eu/" MD5: E81F54E6C1129887AEA47E7D092680BF)
- cleanup
- • AV Detection
- • Phishing
- • Compliance
- • Networking
- • System Summary
Click to jump to signature section
AV Detection |
---|
Source: | Avira URL Cloud: |
Source: | Avira URL Cloud: |
Source: | HTTP Parser: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | TCP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: | ||
Source: | HTTPS traffic detected: |
Source: | Classification label: |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Window detected: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | Acquire Infrastructure | Valid Accounts | Windows Management Instrumentation | Path Interception | 1 Process Injection | 1 Process Injection | OS Credential Dumping | System Service Discovery | Remote Services | Data from Local System | 1 Encrypted Channel | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | Scheduled Task/Job | Boot or Logon Initialization Scripts | Boot or Logon Initialization Scripts | Rootkit | LSASS Memory | Application Window Discovery | Remote Desktop Protocol | Data from Removable Media | 3 Non-Application Layer Protocol | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | Obfuscated Files or Information | Security Account Manager | Query Registry | SMB/Windows Admin Shares | Data from Network Shared Drive | 4 Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | Binary Padding | NTDS | System Network Configuration Discovery | Distributed Component Object Model | Input Capture | 3 Ingress Tool Transfer | Traffic Duplication | Data Destruction |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Avira URL Cloud | malware | ||
0% | Avira URL Cloud | safe | ||
0% | Avira URL Cloud | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
ie02.ingress.herokuapp.com | 46.137.15.86 | true | false | high | |
d3v17f49c4gdd3.cloudfront.net | 54.230.31.32 | true | false | unknown | |
dasmalwerk.eu | 15.197.142.173 | true | false | unknown | |
d1iy6che4tyjhe.cloudfront.net | 143.204.29.6 | true | false | unknown | |
www.google.com | 108.177.122.105 | true | false | high | |
das-malwerk.herokuapp.com | unknown | unknown | false | unknown | |
www.herokucdn.com | unknown | unknown | false | high | |
www.heroku.com | unknown | unknown | false | high |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
false | high | ||
true |
| unknown | |
true | unknown | ||
false |
| unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false | high |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
143.204.29.6 | d1iy6che4tyjhe.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
54.230.31.32 | d3v17f49c4gdd3.cloudfront.net | United States | 16509 | AMAZON-02US | false | |
15.197.142.173 | dasmalwerk.eu | United States | 7430 | TANDEMUS | false | |
46.137.15.86 | ie02.ingress.herokuapp.com | Ireland | 16509 | AMAZON-02US | false | |
108.177.122.105 | www.google.com | United States | 15169 | GOOGLEUS | false |
IP |
---|
192.168.2.6 |
Joe Sandbox version: | 42.0.0 Malachite |
Analysis ID: | 1668629 |
Start date and time: | 2025-04-18 19:09:09 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 3m 10s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | browseurl.jbs |
Sample URL: | http://dasmalwerk.eu/ |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 134, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 10 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Detection: | MAL |
Classification: | mal56.win@25/4@12/6 |
- Exclude process from analysis
(whitelisted): MpCmdRun.exe, S IHClient.exe, conhost.exe, svc host.exe, TextInputHost.exe - Excluded IPs from analysis (wh
itelisted): 23.76.34.6, 173.19 4.219.84, 108.177.122.139, 108 .177.122.138, 108.177.122.101, 108.177.122.100, 108.177.122. 113, 108.177.122.102, 64.233.1 85.94, 64.233.177.113, 64.233. 177.101, 64.233.177.100, 64.23 3.177.139, 64.233.177.138, 64. 233.177.102, 74.125.21.101, 74 .125.21.139, 74.125.21.100, 74 .125.21.113, 74.125.21.138, 74 .125.21.102, 142.250.9.138, 14 2.250.9.101, 142.250.9.102, 14 2.250.9.113, 142.250.9.100, 14 2.250.9.139, 199.232.210.172, 64.233.185.139, 64.233.185.102 , 64.233.185.138, 64.233.185.1 13, 64.233.185.100, 64.233.185 .101, 172.253.124.138, 172.253 .124.101, 172.253.124.139, 172 .253.124.100, 172.253.124.113, 172.253.124.102, 74.125.138.1 02, 74.125.138.113, 74.125.138 .138, 74.125.138.139, 74.125.1 38.100, 74.125.138.101, 172.25 3.124.94, 142.251.15.94, 4.175 .87.197 - Excluded domains from analysis
(whitelisted): fs.microsoft.c om, accounts.google.com, slscr .update.microsoft.com, ctldl.w indowsupdate.com, clientservic es.googleapis.com, fs-wildcard .microsoft.com.edgekey.net, fs -wildcard.microsoft.com.edgeke y.net.globalredir.akadns.net, e16604.dscf.akamaiedge.net, fe 3cr.delivery.mp.microsoft.com, clients2.google.com, edgedl.m e.gvt1.com, redirector.gvt1.co m, update.googleapis.com, clie nts.l.google.com, prod.fs.micr osoft.com.akadns.net, c.pki.go og - Not all processes where analyz
ed, report is missing behavior information - Report size getting too big, t
oo many NtOpenFile calls found . - VT rate limit hit for: http:/
/dasmalwerk.eu/
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 4810 |
Entropy (8bit): | 5.244178467368151 |
Encrypted: | false |
SSDEEP: | 96:Gr7FCUCEFCBSbBVpdtWFj774q1+kk+O5wrBh0eQZVGtO:Gr74bE4k/tWF7hWEDsgO |
MD5: | 3604480F330BA55A1FB300A55319F907 |
SHA1: | 01CF4F79AF4ACA2C0C7DD0727A73BA5799D37868 |
SHA-256: | 5485A924900FCEE105A2A32EA75BF01F6107CCE493EAC7066C4301F86B99C691 |
SHA-512: | 92D3967BA226B5F0E0CE09F06984327B9C00C9B700C3BBC4A2F3D8DFF72681D7424746DFBE817AF57E3AAE8BE0F93FA749DAE4C870653B2C41BFC82F202C65E5 |
Malicious: | false |
Reputation: | low |
URL: | https://www.herokucdn.com/error-pages/no-such-app.html |
Preview: |
Process: | C:\Program Files\Google\Chrome\Application\chrome.exe |
File Type: | |
Category: | downloaded |
Size (bytes): | 363 |
Entropy (8bit): | 5.041211080760603 |
Encrypted: | false |
SSDEEP: | 6:B8FQtJCc4svmo9cL/sGcmSRgkhdwZ3TXCwFWAEdkx0smHqd5/05YmWALxL:BMQtJOo99ISRujXHWAEdkx0smHC5/ORx |
MD5: | 55F58B66B63EEDE1D0BDFDFF29D7C008 |
SHA1: | B9B6B18892CD45880F924ACB49F13C7F1B917DB3 |
SHA-256: | BA45ED11664D18E506D180050D0A3940C1D0AF12A6C22DF158A0861A97825903 |
SHA-512: | E1540EE596941B4DAA2B87868523B95470E085491B4BBC5AF670CC5FCE6C7EADDC2CAC9389654F834278D763B83DC0036F58AA91F0F991AA5B5A64140AE73597 |
Malicious: | false |
Reputation: | low |
URL: | http://dasmalwerk.eu/ |
Preview: |
Download Network PCAP: filtered – full
- Total Packets: 82
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 18, 2025 19:10:12.256642103 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:12.568865061 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:13.006308079 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 18, 2025 19:10:13.178153992 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:14.381329060 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:16.787561893 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:21.756598949 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:22.694082975 CEST | 49672 | 443 | 192.168.2.6 | 204.79.197.203 |
Apr 18, 2025 19:10:25.737387896 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:25.737438917 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:25.737503052 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:25.737622976 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:25.737642050 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:25.950316906 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:25.950406075 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:25.952029943 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:25.952042103 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:25.952248096 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:25.991733074 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:27.962022066 CEST | 49699 | 443 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:27.962055922 CEST | 443 | 49699 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:27.962219954 CEST | 49699 | 443 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:27.962451935 CEST | 49699 | 443 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:27.962467909 CEST | 443 | 49699 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:28.041641951 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:28.042076111 CEST | 49701 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:28.143214941 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:28.143320084 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:28.143821955 CEST | 80 | 49701 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:28.143887043 CEST | 49701 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:30.363369942 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:30.465130091 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:30.485903978 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:30.526518106 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:30.668721914 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:30.668804884 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:30.668872118 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:30.669019938 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:30.669034958 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.326257944 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.326338053 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:31.329230070 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:31.329251051 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.329540014 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.348083973 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:31.366167068 CEST | 49678 | 443 | 192.168.2.6 | 20.42.65.91 |
Apr 18, 2025 19:10:31.388268948 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.566042900 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.566127062 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.566179037 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:31.582669020 CEST | 49703 | 443 | 192.168.2.6 | 46.137.15.86 |
Apr 18, 2025 19:10:31.582704067 CEST | 443 | 49703 | 46.137.15.86 | 192.168.2.6 |
Apr 18, 2025 19:10:31.781126022 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:31.781176090 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:31.781250000 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:31.781425953 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:31.781440973 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:31.995670080 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:31.995951891 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.059357882 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.059390068 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.059776068 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.062340021 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.104276896 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.195518970 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.195789099 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.195825100 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.195895910 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.195925951 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.195944071 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.196631908 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.196690083 CEST | 443 | 49706 | 54.230.31.32 | 192.168.2.6 |
Apr 18, 2025 19:10:32.196743011 CEST | 49706 | 443 | 192.168.2.6 | 54.230.31.32 |
Apr 18, 2025 19:10:32.317076921 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:32.436577082 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:10:32.479151964 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:35.943403006 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:35.943476915 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:35.943538904 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:36.689024925 CEST | 49698 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:10:36.689054012 CEST | 443 | 49698 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:10:39.682425022 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:39.682533026 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:10:39.682637930 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:39.682796001 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:39.682813883 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:10:39.900055885 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:10:39.900217056 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:39.901293993 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:39.901307106 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:10:39.901654005 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:10:39.944605112 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:10:57.975991964 CEST | 49699 | 443 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:10:58.020277023 CEST | 443 | 49699 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:09.888048887 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:11:09.888118982 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:11:09.888175011 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:11:10.698926926 CEST | 49710 | 443 | 192.168.2.6 | 143.204.29.6 |
Apr 18, 2025 19:11:10.698956013 CEST | 443 | 49710 | 143.204.29.6 | 192.168.2.6 |
Apr 18, 2025 19:11:13.148534060 CEST | 49701 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:13.250498056 CEST | 80 | 49701 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:17.444514036 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:17.548690081 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:23.253695965 CEST | 443 | 49680 | 2.23.227.215 | 192.168.2.6 |
Apr 18, 2025 19:11:23.253721952 CEST | 443 | 49680 | 2.23.227.215 | 192.168.2.6 |
Apr 18, 2025 19:11:23.253845930 CEST | 49680 | 443 | 192.168.2.6 | 2.23.227.215 |
Apr 18, 2025 19:11:23.253890038 CEST | 49680 | 443 | 192.168.2.6 | 2.23.227.215 |
Apr 18, 2025 19:11:25.696422100 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:25.696481943 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:25.696607113 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:25.696837902 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:25.696852922 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:25.905734062 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:25.906243086 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:25.906270027 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:28.276681900 CEST | 80 | 49701 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:28.276758909 CEST | 49701 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:28.696858883 CEST | 49701 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:28.798871994 CEST | 80 | 49701 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:32.437457085 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:32.437575102 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:32.696650982 CEST | 49700 | 80 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:32.798587084 CEST | 80 | 49700 | 15.197.142.173 | 192.168.2.6 |
Apr 18, 2025 19:11:35.971450090 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:35.971539974 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:35.971669912 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:36.696727037 CEST | 49715 | 443 | 192.168.2.6 | 108.177.122.105 |
Apr 18, 2025 19:11:36.696749926 CEST | 443 | 49715 | 108.177.122.105 | 192.168.2.6 |
Apr 18, 2025 19:11:43.022825003 CEST | 49699 | 443 | 192.168.2.6 | 15.197.142.173 |
Apr 18, 2025 19:11:43.022851944 CEST | 443 | 49699 | 15.197.142.173 | 192.168.2.6 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Apr 18, 2025 19:10:21.555093050 CEST | 53 | 54178 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:21.556617975 CEST | 53 | 56276 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:22.380804062 CEST | 53 | 58210 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:22.510232925 CEST | 53 | 60970 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:25.633502007 CEST | 61101 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:25.633640051 CEST | 64579 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:25.736504078 CEST | 53 | 64579 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:25.736717939 CEST | 53 | 61101 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:27.353586912 CEST | 51603 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:27.353852034 CEST | 50129 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:27.381266117 CEST | 49763 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:27.381511927 CEST | 58780 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:27.741533995 CEST | 53 | 58780 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:27.961281061 CEST | 53 | 49763 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:27.976136923 CEST | 53 | 51603 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:28.350392103 CEST | 53 | 50129 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:30.546869993 CEST | 53719 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:30.547282934 CEST | 57226 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:30.655211926 CEST | 53 | 53719 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:30.655962944 CEST | 53 | 57226 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:31.671468019 CEST | 55306 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:31.671808958 CEST | 61209 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:31.775500059 CEST | 53 | 55306 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:31.777760029 CEST | 53 | 61209 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:39.452903032 CEST | 53 | 55836 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:39.549310923 CEST | 61071 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:39.549514055 CEST | 49152 | 53 | 192.168.2.6 | 1.1.1.1 |
Apr 18, 2025 19:10:39.656200886 CEST | 53 | 49152 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:39.681427002 CEST | 53 | 61071 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:10:58.253138065 CEST | 53 | 65049 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:11:10.326261997 CEST | 138 | 138 | 192.168.2.6 | 192.168.2.255 |
Apr 18, 2025 19:11:20.878514051 CEST | 53 | 55408 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:11:21.194302082 CEST | 53 | 56896 | 1.1.1.1 | 192.168.2.6 |
Apr 18, 2025 19:11:24.002618074 CEST | 53 | 61532 | 1.1.1.1 | 192.168.2.6 |
Timestamp | Source IP | Dest IP | Checksum | Code | Type |
---|---|---|---|---|---|
Apr 18, 2025 19:10:28.350487947 CEST | 192.168.2.6 | 1.1.1.1 | c22c | (Port unreachable) | Destination Unreachable |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Apr 18, 2025 19:10:25.633502007 CEST | 192.168.2.6 | 1.1.1.1 | 0xf3e8 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:25.633640051 CEST | 192.168.2.6 | 1.1.1.1 | 0xc302 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 18, 2025 19:10:27.353586912 CEST | 192.168.2.6 | 1.1.1.1 | 0x5c64 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:27.353852034 CEST | 192.168.2.6 | 1.1.1.1 | 0x10bb | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 18, 2025 19:10:27.381266117 CEST | 192.168.2.6 | 1.1.1.1 | 0xcbc6 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:27.381511927 CEST | 192.168.2.6 | 1.1.1.1 | 0xb6e1 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 18, 2025 19:10:30.546869993 CEST | 192.168.2.6 | 1.1.1.1 | 0xf5d1 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:30.547282934 CEST | 192.168.2.6 | 1.1.1.1 | 0x3657 | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 18, 2025 19:10:31.671468019 CEST | 192.168.2.6 | 1.1.1.1 | 0xe5b4 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:31.671808958 CEST | 192.168.2.6 | 1.1.1.1 | 0x94dc | Standard query (0) | 65 | IN (0x0001) | false | |
Apr 18, 2025 19:10:39.549310923 CEST | 192.168.2.6 | 1.1.1.1 | 0xdd40 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Apr 18, 2025 19:10:39.549514055 CEST | 192.168.2.6 | 1.1.1.1 | 0xb2f | Standard query (0) | 65 | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Apr 18, 2025 19:10:25.736504078 CEST | 1.1.1.1 | 192.168.2.6 | 0xc302 | No error (0) | 65 | IN (0x0001) | false | |||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.105 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.103 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.104 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.106 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.99 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:25.736717939 CEST | 1.1.1.1 | 192.168.2.6 | 0xf3e8 | No error (0) | 108.177.122.147 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:27.961281061 CEST | 1.1.1.1 | 192.168.2.6 | 0xcbc6 | No error (0) | 15.197.142.173 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:27.961281061 CEST | 1.1.1.1 | 192.168.2.6 | 0xcbc6 | No error (0) | 3.33.152.147 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:27.976136923 CEST | 1.1.1.1 | 192.168.2.6 | 0x5c64 | No error (0) | 15.197.142.173 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:27.976136923 CEST | 1.1.1.1 | 192.168.2.6 | 0x5c64 | No error (0) | 3.33.152.147 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:30.655211926 CEST | 1.1.1.1 | 192.168.2.6 | 0xf5d1 | No error (0) | ie02.ingress.herokuapp.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:30.655211926 CEST | 1.1.1.1 | 192.168.2.6 | 0xf5d1 | No error (0) | 46.137.15.86 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:30.655211926 CEST | 1.1.1.1 | 192.168.2.6 | 0xf5d1 | No error (0) | 54.73.53.134 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:30.655211926 CEST | 1.1.1.1 | 192.168.2.6 | 0xf5d1 | No error (0) | 54.220.192.176 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:30.655962944 CEST | 1.1.1.1 | 192.168.2.6 | 0x3657 | No error (0) | va03.ingress.herokuapp.com | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.775500059 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5b4 | No error (0) | d3v17f49c4gdd3.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.775500059 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5b4 | No error (0) | 54.230.31.32 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.775500059 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5b4 | No error (0) | 54.230.31.113 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.775500059 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5b4 | No error (0) | 54.230.31.23 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.775500059 CEST | 1.1.1.1 | 192.168.2.6 | 0xe5b4 | No error (0) | 54.230.31.53 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:31.777760029 CEST | 1.1.1.1 | 192.168.2.6 | 0x94dc | No error (0) | d3v17f49c4gdd3.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.656200886 CEST | 1.1.1.1 | 192.168.2.6 | 0xb2f | No error (0) | d1iy6che4tyjhe.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.681427002 CEST | 1.1.1.1 | 192.168.2.6 | 0xdd40 | No error (0) | d1iy6che4tyjhe.cloudfront.net | CNAME (Canonical name) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.681427002 CEST | 1.1.1.1 | 192.168.2.6 | 0xdd40 | No error (0) | 143.204.29.6 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.681427002 CEST | 1.1.1.1 | 192.168.2.6 | 0xdd40 | No error (0) | 143.204.29.119 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.681427002 CEST | 1.1.1.1 | 192.168.2.6 | 0xdd40 | No error (0) | 143.204.29.82 | A (IP address) | IN (0x0001) | false | ||
Apr 18, 2025 19:10:39.681427002 CEST | 1.1.1.1 | 192.168.2.6 | 0xdd40 | No error (0) | 143.204.29.55 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 49700 | 15.197.142.173 | 80 | 4328 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Apr 18, 2025 19:10:30.363369942 CEST | 428 | OUT | |
Apr 18, 2025 19:10:30.485903978 CEST | 619 | IN | |
Apr 18, 2025 19:10:32.317076921 CEST | 370 | OUT | |
Apr 18, 2025 19:10:32.436577082 CEST | 138 | IN | |
Apr 18, 2025 19:11:17.444514036 CEST | 6 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49701 | 15.197.142.173 | 80 | 4328 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Apr 18, 2025 19:11:13.148534060 CEST | 6 | OUT |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.6 | 49703 | 46.137.15.86 | 443 | 4328 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-18 17:10:31 UTC | 724 | OUT | |
2025-04-18 17:10:31 UTC | 192 | IN | |
2025-04-18 17:10:31 UTC | 548 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.6 | 49706 | 54.230.31.32 | 443 | 4328 | C:\Program Files\Google\Chrome\Application\chrome.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2025-04-18 17:10:32 UTC | 758 | OUT | |
2025-04-18 17:10:32 UTC | 574 | IN | |
2025-04-18 17:10:32 UTC | 3198 | IN | |
2025-04-18 17:10:32 UTC | 1612 | IN |
Click to jump to process
Click to jump to process
Click to jump to process
Target ID: | 1 |
Start time: | 13:10:13 |
Start date: | 18/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 2 |
Start time: | 13:10:19 |
Start date: | 18/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | false |
Target ID: | 6 |
Start time: | 13:10:26 |
Start date: | 18/04/2025 |
Path: | C:\Program Files\Google\Chrome\Application\chrome.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff63b000000 |
File size: | 3'388'000 bytes |
MD5 hash: | E81F54E6C1129887AEA47E7D092680BF |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |